segmentio / typewriter

Type safety + intellisense for your Segment analytics
https://segment.com/docs/protocols/typewriter/
MIT License
227 stars 53 forks source link

Security vulnerability due to an outdated plugin #314

Open krishSagar opened 9 months ago

krishSagar commented 9 months ago

Hi, A Dependabot security scan flagged this plugin for a high security vulnerability, upon further inspecting I noticed that the quicktype-core plugin you're using is outdated and one of its dependency has a high severity vulnerability.

Unfortunately I'm unable to raise a PR to patch this. Therefore raising it here so that it can get corrected. It's a small step that can have a significant positive impact on the overall security of this plugin.

Thanks for the great work.

image
sepowitz commented 8 months ago

Hey there, also curious about this, not seeing a lot of activity on this repo, is this still being actively developed/maintained?

budaovidiu commented 7 months ago

hey. I would also appreciate to have a fix for this.

milkman4 commented 7 months ago

Yes please!

erinlz commented 6 months ago

+1, could still use this