silvermine / videojs-quality-selector

MIT License
180 stars 55 forks source link

Package depends on vulnerable versions of underscore #72

Closed zapalagrzegorz closed 3 years ago

zapalagrzegorz commented 3 years ago

Hi,

I got message with npm audit that: @silvermine/videojs-quality-selector * Depends on vulnerable versions of underscore node_modules/@silvermine/videojs-quality-selector

Can you bump up dependency underscore to to 1.12.1 or higher, which is unaffected by the vulnerability .

Thank you in advance.

jthomerson commented 3 years ago

See #73

jthomerson commented 3 years ago

Fixed in + @silvermine/videojs-quality-selector@1.2.5