Skip to content

Status of the yargs-parser vulnerability fix in gulp package #2490

Answered by phated
andrzejgorgon asked this question in Help
Discussion options

You must be logged in to vote

Hey @andrzejgorgon! A lot of people don't realize that SemVer already solves this. We rely on it heavily for these fixes to propagate up to gulp. Basically, you just need to remove your lockfile and update your dependencies.

Replies: 2 comments

Comment options

You must be logged in to vote
0 replies
Answer selected by phated
Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Help
Labels
None yet
2 participants