v2.1.2
Small release.
- Bump dependencies up to their latest versions
- Pin a transitive dependency (
tunnel-agent
) to their latest version to address a possible vulnerability.
Yarn users will get the second fix, however npm users will not (as npm doesn't support the resolutions
field in the package.json
).
It shouldn't be a problem however as the vulnerable line is never called in this library or any of its dependencies as far as I can tell.
For more information see #60