argv-minus-one / dmg-license

Generate license agreements for macOS .dmg files
MIT License
19 stars 6 forks source link

Dependabot alerts: ansi-regex is vulnerable to Inefficient Regular Expression Complexity #9

Closed tm-sthm closed 2 years ago

tm-sthm commented 2 years ago

Please update the affected packages.

Dependabot alerts: https://github.com/advisories/GHSA-93q8-gq69-wqmw

affected npm package: cli-truncate@^1.1.0

oliverschwendener commented 2 years ago

Is cli-truncate even used? As far as I see it's specified in package.json but not used in the code, or am I missing something?

argv-minus-one commented 2 years ago

Done in release 1.0.10.