covidwatchorg / portal

Covid Watch Portal web app for diagnosis verification
Apache License 2.0
8 stars 3 forks source link

Upgrade dot-prop depdenency to remove security vulnerability #357

Closed whaber closed 4 years ago

whaber commented 4 years ago

Project is using 4.2.0 which has a critical security vulnerability (Direct Request (Forced Browsing) in dot-prop )

Upgrade dependency to 5.2.0: https://www.npmjs.com/package/dot-prop/v/5.2.0