Skip to content
This repository has been archived by the owner on Jun 6, 2023. It is now read-only.

Latest version has vulnerable dependency #75

Open
andreisaikouski opened this issue May 29, 2023 · 0 comments
Open

Latest version has vulnerable dependency #75

andreisaikouski opened this issue May 29, 2023 · 0 comments

Comments

@andreisaikouski
Copy link

as per npm audit using paperspace-node@0.2.4

yargs-parser  <=5.0.0
Severity: moderate
yargs-parser Vulnerable to Prototype Pollution - https://github.com/advisories/GHSA-p9pc-299p-vxgp
No fix available
node_modules/paperspace-node/node_modules/yargs-parser
  yargs  4.0.0-alpha1 - 7.0.0-alpha.3 || 7.1.1
  Depends on vulnerable versions of yargs-parser
  node_modules/paperspace-node/node_modules/yargs
    paperspace-node  *
    Depends on vulnerable versions of yargs
    node_modules/paperspace-node
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant