microsoft / botframework-cli

CLI Tools for the Microsoft Bot Framework
Other
177 stars 128 forks source link

fix: Remove CVE-2023-0842 vulnerability #1372

Closed JhontSouth closed 4 months ago

JhontSouth commented 4 months ago

minor

Description

This PR sets the version of the package xml2js to ^0.5.0 and avoids the CVE-2023-0842 vulnerability.

Specific Changes

Testing

The following image shows the xml2js version installed after the override. image