-
Notifications
You must be signed in to change notification settings - Fork 35
Open
Description
ora dependency introduces deep unsafe dependency [email protected]:
https://nvd.nist.gov/vuln/detail/CVE-2021-3807
https://security.snyk.io/vuln/SNYK-JS-ANSIREGEX-1583908
This would likely be fixed by uprading ora which seems like it could be easy enough given the simple use?
Metadata
Metadata
Assignees
Labels
No labels