Open WilliamHolmes opened 1 year ago
Any update?
I guess there's a dependency on this ticket
https://github.com/rxaviers/cldr-data-npm/pull/85 would fix it, opened two weeks ago. Any maintainers around to let us know if that can be merged?
add
"overrides": {
"axios": "latest"
},
to package.json resolve this issue for me
A vulnerable version of the axios package is being included by cldr-data-downloader
https://www.cve.org/CVERecord?id=CVE-2023-45857