storybook-deployer
storybook-deployer copied to clipboard
[Bug] Critical vulnerability in due to outdated dependency `git-url-parse`
Describe the bug
Critical vulnerability related to git-url-parse
sub dependency parse-url
. It is not possible to fix it in my projects by yarn resolutions since is related to major version upgrades containing Breaking Changes. To fix it, git-url-parse
must be upgraded to version 12.
Obs: also high and moderate vulnerabilities are going to be fixed by this dependency upgrade.
Steps to reproduce the behaviour
- clone repo;
- run
yarn
; - run
yarn audit
;
Expected behaviour
No critical and high vulnerabilities.
Screenshots and/or logs
data:image/s3,"s3://crabby-images/66dc3/66dc36d5556e2976e5b2da4da6abdf7e5c27517a" alt="Screenshot 2022-07-15 at 12 20 05"
data:image/s3,"s3://crabby-images/edc33/edc33c15d37c3d938c92054c42fed3e71f801787" alt="Screenshot 2022-07-15 at 12 29 00"
Environment
- Node.js version: v16.13.1
- NPM version: 8.1.2