paulmillr / chokidar

Minimal and efficient cross-platform file watching library
https://paulmillr.com
MIT License
10.8k stars 574 forks source link

CVE-2024-4068 - update braces to ^3.0.3 #1321

Closed y-nk closed 2 months ago

y-nk commented 2 months ago

Related: https://github.com/advisories/GHSA-grv7-fg5c-xmjg

Blocking several packages, but for my own case: mjml > mjml-cli > chokidar > braces

paulmillr commented 2 months ago

https://stackoverflow.com/questions/22343224/whats-the-difference-between-tilde-and-caret-in-package-json