-
Notifications
You must be signed in to change notification settings - Fork 12k
Closed
Labels
area: @angular-devkit/build-angularfreq1: lowOnly reported by a handful of users who observe it rarelyOnly reported by a handful of users who observe it rarelyseverity6: securitytype: bug/fix
Milestone
Description
🐞 Bug report
Our security check tool is throwing a vulnerability issue with acorn 6.3.0
Description
@angular-devkit/build-angular@0.901.7 is dependent on less version 3.11.1 which has dependency with acorn@6.3.0.
Possible Fix
We think we can solve this issue by updating less to version 3.11.3
Please have a look on pull request #17898
Metadata
Metadata
Assignees
Labels
area: @angular-devkit/build-angularfreq1: lowOnly reported by a handful of users who observe it rarelyOnly reported by a handful of users who observe it rarelyseverity6: securitytype: bug/fix