garycourt / uri-js

An RFC 3986 compliant, scheme extendable URI parsing/validating/normalizing/resolving library for JavaScript
Other
305 stars 69 forks source link

Package Vulnerability: path-parse: 1.0.5 #84

Open oliviercperrier opened 1 year ago

oliviercperrier commented 1 year ago

Hi,

there is currently a security vulnerability in path-parse:1.0.5 (https://github.com/advisories/GHSA-hj48-42vr-x3v9)

I've noticed that the last version on uri-js (4.4.1) is still using path-parse:1.0.5.

This vulnerability is fixed in path-parse:1.0.7 or greater

Thanks

justin-caribou commented 1 year ago

bumping this request