Skip to content

Commit d1b15ab

Browse files
committed
fix: sonatype-2022-3677 in node-fetch 2.6.7
1 parent 0c71a49 commit d1b15ab

File tree

2 files changed

+1
-5
lines changed

2 files changed

+1
-5
lines changed

dev-auditjs.json

-4
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,4 @@
11
{
22
"ignore": [
3-
{
4-
"id": "sonatype-2022-3677",
5-
"reason": "node-fetch @ all have possible vulnerability regarding Exposure of Sensitive Information to an Unauthorized Actor. ignoring while researching solutions, 07/11/2022"
6-
}
73
]
84
}

package.json

+1-1
Original file line numberDiff line numberDiff line change
@@ -97,7 +97,7 @@
9797
"https-proxy-agent": "^5.0.0",
9898
"js-yaml": "3.13.1",
9999
"log4js": "^6.4.0",
100-
"node-fetch": "^2.6.7",
100+
"node-fetch": "^2.6.8",
101101
"node-persist": "^3.1.0",
102102
"ora": "^4.0.3",
103103
"read-installed": "~4.0.3",

0 commit comments

Comments
 (0)