Open ChidanandanP opened 2 years ago
Hi Team, there is a high vulnerability found in ansi-regex library for Regular Expression Denial of Service (ReDoS). This library is used by inquirer v8.2.0.
Please increase the inquirer library to latest version. Already a PR is open for that, please merge it as soon as possible: https://github.com/commitizen/cz-cli/pull/874
Refer the below urls to find more about vulnerability
https://snyk.io/advisor/npm-package/inquirer https://snyk.io/vuln/npm:ansi-regex
https://github.com/commitizen/cz-cli/pull/874 has been merged and new release is out with the changes included. This can be closed.
Hi Team, there is a high vulnerability found in ansi-regex library for Regular Expression Denial of Service (ReDoS). This library is used by inquirer v8.2.0.
Please increase the inquirer library to latest version. Already a PR is open for that, please merge it as soon as possible: https://github.com/commitizen/cz-cli/pull/874
Refer the below urls to find more about vulnerability
https://snyk.io/advisor/npm-package/inquirer https://snyk.io/vuln/npm:ansi-regex