dominictarr / rc

The non-configurable configuration loader for lazy people.
Other
1.02k stars 97 forks source link

update minimist to avoid prototype pollution #115

Closed adymorz closed 4 years ago

cloakedninjas commented 4 years ago

@dominictarr Could you push that merge button and publish an npm release please ? 😺

CodeByBranden commented 4 years ago

@dominictarr I also second what @cloakedninjas said 👍🏼

dominictarr commented 4 years ago

https://github.com/dominictarr/rc/pull/114

rc already resolves the latest version, you should just need to reinstall. if the security nag. please post an issue about npm audit to fix the false positives.