fontmin-webpack
fontmin-webpack copied to clipboard
fontmin-webpack brings an insecure version of glob-parent
[email protected] requires glob-parent@^3.1.0 via a transitive dependency on [email protected]
This version is vulnerable to https://github.com/advisories/GHSA-ww39-953v-wcq6.
We are experiencing the same issue. Any chance to resolve this?
Any updates here? This vulnerability is marked as "severe" and it has been month since this issue was posted. Did anybody find a workaround?