jasonsims / aws-cloudfront-sign

Utility module for AWS CloudFront
MIT License
176 stars 80 forks source link

fix: update lodash version to cover it's vulnerabilities #68

Closed bogdan-karlenko closed 2 years ago

bogdan-karlenko commented 2 years ago

Update lodash dependency from 4.17.19 to 4.17.21 Covering library vulnerabilities patched in 4.17.21 such as: Command Injection: https://github.com/advisories/GHSA-35jh-r3h4-6jhm Regular Expression Denial of Service (ReDoS): https://github.com/advisories/GHSA-29mw-wpgm-hmr9