clonn / slack-node-sdk

slack.com, slack, node sdk
MIT License
167 stars 32 forks source link

Please consider updating "requestretry" dependency, to pick up vulnerability fixes. #48

Open compilenix opened 5 years ago

compilenix commented 5 years ago

slack-node currently depends on requestretry version 1.2.2 which is affacted by CVE-2018-1000620.

Recommended action: update the dependency requestretry to version >=2.0.0.