hannoeru / vite-plugin-pages

File system based route generator for ⚡️Vite
MIT License
1.84k stars 127 forks source link

Vulnerability : Update yaml to 2.2.2 #406

Closed Neogeekmo closed 10 months ago

Neogeekmo commented 1 year ago

Describe the bug

Hello,

Snyk is reporting a security issue on package yaml which is part of your dependency :

└─┬ /vite-plugin-pages@0.29.0(vite@4.2.1):
  └── yaml: 2.2.1

Reproduction

no link

System Info

System:
    OS: Linux 5.15 Debian GNU/Linux 11 (bullseye) 11 (bullseye)
    CPU: (12) x64 12th Gen Intel(R) Core(TM) i7-1265U
    Memory: 5.09 GB / 15.47 GB
    Container: Yes
    Shell: 5.1.4 - /bin/bash
  Binaries:
    Node: 18.15.0 - /usr/local/bin/node
    Yarn: 1.22.19 - /usr/local/bin/yarn
    npm: 9.5.0 - /usr/local/bin/npm

+ package 
    "vue": "^2.7.14",
    "vite": "^4.2.1",
    "vite-plugin-pages": "^0.29.0",

Used Package Manager

pnpm

Validations