Open
Description
Hello !!
It has been identified that [email protected] introduces a missing release of resource after effective lifetime vulnerability via a transitive dependency. The vulnerability is linked to the package [email protected], as reported in the Snyk vulnerability database: SNYK-JS-INFLIGHT-6095116.
Vulnerability Path:
Severity: Medium Severity
Recommended Actions:
Currently, no patch or upgrade is available to address this vulnerability. I recommend that the team investigate possible mitigations, whether by updating or removing the affected transitive dependencies, or by finding alternative solutions to reduce the security risk.
Thank you for your attention to this issue.
Metadata
Assignees
Labels
No labels
Activity