The last version of expo-video-player ( 2.2.0 ) it's depends on vulnerable versions of expo and generate errors on building app.
This problem was blocking us during 3 weeks ago.
To Reproduce
Steps to reproduce the behavior:
"expo": "^47.0.0",
"react": "18.1.0",
Additional information:
json5 <1.0.2
Severity: high
Prototype Pollution in JSON5 via Parse Method - https://github.com/advisories/GHSA-9c47-m6qq-7p4h
No fix available
node_modules/find-babel-config/node_modules/json5
find-babel-config <=1.2.0
Depends on vulnerable versions of json5
node_modules/find-babel-config
babel-plugin-module-resolver 2.3.0 - 4.1.0
Depends on vulnerable versions of find-babel-config
node_modules/babel-plugin-module-resolver
babel-preset-expo
Depends on vulnerable versions of babel-plugin-module-resolver
node_modules/babel-preset-expo
expo >=14.0.0
Depends on vulnerable versions of babel-preset-expo
node_modules/expo
expo-video-player
Depends on vulnerable versions of expo
node_modules/expo-video-player
Describe the bug
The last version of expo-video-player ( 2.2.0 ) it's depends on vulnerable versions of expo and generate errors on building app.
This problem was blocking us during 3 weeks ago.
To Reproduce Steps to reproduce the behavior: "expo": "^47.0.0", "react": "18.1.0",
Additional information:
json5 <1.0.2 Severity: high Prototype Pollution in JSON5 via Parse Method - https://github.com/advisories/GHSA-9c47-m6qq-7p4h No fix available node_modules/find-babel-config/node_modules/json5 find-babel-config <=1.2.0 Depends on vulnerable versions of json5 node_modules/find-babel-config babel-plugin-module-resolver 2.3.0 - 4.1.0 Depends on vulnerable versions of find-babel-config node_modules/babel-plugin-module-resolver babel-preset-expo Depends on vulnerable versions of babel-plugin-module-resolver node_modules/babel-preset-expo expo >=14.0.0 Depends on vulnerable versions of babel-preset-expo node_modules/expo expo-video-player Depends on vulnerable versions of expo node_modules/expo-video-player