Skip to content
This repository has been archived by the owner on Sep 14, 2022. It is now read-only.

lodash version causing node vulnerability audit #580

Open
joeyjmorales opened this issue Jan 8, 2019 · 1 comment
Open

lodash version causing node vulnerability audit #580

joeyjmorales opened this issue Jan 8, 2019 · 1 comment

Comments

@joeyjmorales
Copy link

Please see PR: #579

Thanks!

@andyedwardsibm
Copy link

We'd like this as well, but I notice that since the package.json file has ^4.17.2 it should already be picking up the latest version of 4.17.*

I'm more worried about package.json still containing a version number of 0.7.5. There have been several updates to package.json in the last 4 years, but never a new release or a new publish to npm, so none of the changes are actually getting through to a released version.

Looking at #570 it looks like this repo might spring back into life again soon though.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants