Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We鈥檒l occasionally send you account related emails.

Already on GitHub? Sign in to your account

Dependency security issue is-svg@4.1.0 #72

Closed
carloscuesta opened this issue May 11, 2021 · 0 comments 路 Fixed by #73
Closed

Dependency security issue is-svg@4.1.0 #72

carloscuesta opened this issue May 11, 2021 · 0 comments 路 Fixed by #73

Comments

@carloscuesta
Copy link
Contributor

Hello! 馃憢馃徏

I saw that this package uses a dependency called is-svg@4.1.0 on a version that has a security vulnerability; as reported in Snyk.

"is-svg": "^4.1.0",

Fortunately this has been fixed on is-svg@4.3.0, according to the changelog of the library there are no breaking changes so we should be able to upgrade without any problems.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant