philosowaffle / vs-openapi-designer

OpenApi Designer Extension for VS Code
https://marketplace.visualstudio.com/items?itemName=philosowaffle.openapi-designer
GNU General Public License v3.0
15 stars 2 forks source link

Update url-parse dependency #10

Open philosowaffle opened 6 years ago

philosowaffle commented 6 years ago

Incorrect parsing in url-parse <1.4.3 returns wrong hostname which leads to multiple vulnerabilities such as SSRF, Op...

package-lock.json update suggested: url-parse ~> 1.4.3

philosowaffle commented 6 years ago

This is Dev dependency pulled in by VS Code.