microsoft / botframework-cli

CLI Tools for the Microsoft Bot Framework
Other
176 stars 129 forks source link

fix: Remove CVE-2021-4435 vulnerability #1364

Closed JhontSouth closed 6 months ago

JhontSouth commented 7 months ago

minor

Description

This PR updates the version of rush to include the new file configuration pnpm-config to use the globalOverrides property and update yarn package to avoid the CVE-2021-4435 vulnerability.

Specific Changes

Testing

The following image shows the yarn version installed after the update. image

tracyboehrer commented 7 months ago

@JhontSouth Can you look at the conflicts?