umi-request icon indicating copy to clipboard operation
umi-request copied to clipboard

fix: upgrade [email protected]

Open billfeller opened this issue 3 years ago • 3 comments

升级 isomorphic-fetch 版本为 3.0.0 将 node-fetch 依赖版本升级为 2.6.7 ,修复 node-fetch (< 2.6.7) 漏洞 CVE-2022-0235 http://horus.oa.com/advisory/HOSA-h0oi-ipysan7q4

@sorrycc

billfeller avatar Jan 25 '22 09:01 billfeller

ping status ?

AND should fix #225

magicdawn avatar Apr 23 '22 06:04 magicdawn

Anyone please review and merge this.

yinyanfr avatar May 27 '22 19:05 yinyanfr

maybe we should have more people with merge rights here?... snyk still reporting the issue... i don't know even if need node-fetch at all lately with fetch introduced natively... maybe there is a need for refactored umi-request that targets 'everything new' ?...

skitsanos avatar Jul 22 '22 09:07 skitsanos