Open mijorus opened 3 years ago
Describe the bug lqip depends on an outdated version of jimp, that includes url-regex, a library with an High-severity vulnerability.
lqip
url-regex
To Reproduce Install lqip-loader
lqip-loader
Additional context Possible fix: require @memrise/lqip-loader this unofficial community package instead
Describe the bug
lqip
depends on an outdated version of jimp, that includesurl-regex
, a library with an High-severity vulnerability.To Reproduce Install
lqip-loader
Additional context Possible fix: require @memrise/lqip-loader this unofficial community package instead