dillonzq / LoveIt

❤️A clean, elegant but advanced blog theme for Hugo 一个简洁、优雅且高效的 Hugo 主题
https://hugoloveit.com
MIT License
3.34k stars 1.07k forks source link

[BUG] New dependabot alert: xml2js is vulnerable to prototype pollution #818

Open geraldohomero opened 1 year ago

geraldohomero commented 1 year ago

image

thomas-louvigne commented 1 year ago

It is beaucause algolia used an old version of his client... We should update or remove it.