snyk / nodejs-lockfile-parser

Generate a Snyk dependency tree from package-lock.json or yarn.lock file
Other
57 stars 28 forks source link

fix: remove lodash.set since it brings high vuln #134

Closed dkontorovskyy closed 2 years ago

dkontorovskyy commented 2 years ago

What this does

Remove lodash.set since it brings high vuln

snyksec commented 2 years ago

:tada: This PR is included in version 1.37.3 :tada:

The release is available on:

Your semantic-release bot :package::rocket: