jaxxstorm / action-install-gh-release

GitHub Action to install the Github Release binaries
Apache License 2.0
75 stars 32 forks source link

Semver 6.3.0 Vulnerability #91

Closed schmidtw closed 3 weeks ago

schmidtw commented 3 months ago

Hello,

I'm working on some unrelated updates & noticed Semver 6.3.0 is used & has been marked vulnerable by synk: https://security.snyk.io/package/npm/semver/6.3.0

jaxxstorm commented 3 weeks ago

Merged the update here