-
-
Notifications
You must be signed in to change notification settings - Fork 3.1k
Closed
Labels
type: choregenerally involving deps, tooling, configuration, etc.generally involving deps, tooling, configuration, etc.
Milestone
Description
glob version 3.2.11 includes a dependency on minimatch 0.3.0, which contains a DoS vulnerability as documented here:
https://nodesecurity.io/advisories/118
This should be resolvable by updating to the current version of glob, which uses the up-to-date minimatch version.
sporkmonger, gagern and PavelVanecek
Metadata
Metadata
Assignees
Labels
type: choregenerally involving deps, tooling, configuration, etc.generally involving deps, tooling, configuration, etc.