jakezatecky / react-dual-listbox

A feature-rich dual listbox for React.
https://jakezatecky.github.io/react-dual-listbox/
MIT License
110 stars 58 forks source link

Lodash Security Vulnerabilities #147

Closed narayanan79 closed 3 years ago

narayanan79 commented 3 years ago

Describe the bug Lodash v4.17.5 used here is having Security Vulnerabilities. https://snyk.io/vuln/npm:lodash@4.17.5

Reproduction steps NA

Expected behavior Bump the lodash version to latest 4.17.21

Screenshots image

lordsonvimal commented 3 years ago

Hi. We are blocked in using this package as this vulnerability is present. Please upgrade lodash ASAP

logeshpaul commented 3 years ago

I would be great if this is addressed

jakezatecky commented 3 years ago

Released via v2.1.2 on npm.

logeshpaul commented 3 years ago

Thanks @jakezatecky :)

narayanan79 commented 3 years ago

Highly appreciate the quick resolution @jakezatecky 💯