apigee-127 / swagger-express

Other
52 stars 58 forks source link

0.10.3 on NPM has a security vulnerability string@3.3.0 #25

Open stdarg opened 6 years ago

stdarg commented 6 years ago

I notice that the master branch no longer uses string@3.3.0 which has a regex DDoS vulnerability. Can we have a 0.10.4 without string@3.3.0? If there are blockers, what are they?