npm-upgrade icon indicating copy to clipboard operation
npm-upgrade copied to clipboard

Update npm-check-updates dependency to avoid ANSI-REGEX vulnerabilities

Open santinozaracho opened this issue 3 years ago • 0 comments

Update npm-check-updates dependency to avoid ANSI-REGEX vulnerabilities:

  • Filename: ansi-regex:3.0.0 | Reference: 1081982 | CVSS Score: 7.0 | Category: | ansi-regex is vulnerable to Inefficient Regular Expression Complexity which could lead to a denial of service.
  • Filename: ansi-regex:4.1.0 | Reference: 1081983 | CVSS Score: 7.0 | Category: | ansi-regex is vulnerable to Inefficient Regular Expression Complexity which could lead to a denial of service

santinozaracho avatar Sep 28 '22 14:09 santinozaracho