codatio / codat-js

Javascript Client Library for Codat accounting data API
Apache License 2.0
4 stars 0 forks source link

Security Vulnerability in Dependency - Cryptiles #29

Closed ibarsi closed 4 years ago

ibarsi commented 4 years ago

There's a public high vulnerability npm advisory against the version of cryptiles used in the latest published version of codat. There is a fix in the next major version bump of cryptiles to fix this vulnerability.

This issue is concerned with bumping cryptiles to the minimum safe version to avoid exposing consumers of codat.