dvajs / dva

🌱 React and redux based, lightweight and elm-style framework. (Inspired by elm and choo)
https://dvajs.com/
MIT License
16.24k stars 3.17k forks source link

CVE-2021-23436 #2475

Closed xiaowj closed 2 years ago

xiaowj commented 2 years ago

dva-immer@^1.0.0: version "1.0.0" dependencies: "@babel/runtime" "^7.0.0" immer "^8.0.4"

https://github.com/advisories/GHSA-33f9-j839-rf8h

immer在9.0.6版本之前有漏洞,名称:CVE-2021-23436