EasyPost / easypost-node

EasyPost Shipping API Client Library for Node
https://easypost.com/docs/api
MIT License
139 stars 54 forks source link

[chore] Temporarily suppress CVE for superagent #448

Closed nwithan8 closed 7 months ago

nwithan8 commented 7 months ago

Description

formidible, a transitive dependency of superagent, has a CVE open for it. No patch is currently available. This PR temporarily suppresses audit warnings regarding the CVE to unblock our CI. The suppressant expires in six months, at which time we will re-evaluate the CVE.

Testing

Pull Request Type

Please select the option(s) that are relevant to this PR.