-
Notifications
You must be signed in to change notification settings - Fork 170
Open
Description
Hi. I found that you are using less version where exists dependency to minimist package, but miminist has a new version now: 1.2.3. Could you keep this info for changing less version after they update this dependency?
Moderate Prototype Pollution
Package minimist
Patched in >=1.2.3
Dependency of grunt-contrib-less [dev]
Path grunt-contrib-less > less > mkdirp > minimist
More info https://npmjs.com/advisories/1179
buddh4 and tuxgasy
Metadata
Metadata
Assignees
Labels
No labels