microsoft-healthcare-madison / argonaut-subscription-client-ui

Client UI for testing the Argonaut Subscription changes.
MIT License
1 stars 2 forks source link

security alert discovered in a dependency #12

Closed barabo closed 5 years ago

barabo commented 5 years ago

https://github.com/microsoft-healthcare-madison/argonaut-subscription-client-ui/network/alerts

I'm not sure if this is of critical importance, but there is a big scary warning on the github landing page for this project because of the detected vulnerability. It would probably be good to remedy it, if possible.

GinoCanessa commented 5 years ago

Should be cleared, added a peer dependency in the root of the project to ensure that a lower version of lodash is never used.

jmandel commented 5 years ago

(Do note that the big scary warnings aren't visible to the public, just as an FYI. They still deserve attention of course :))