snyk / nodejs-lockfile-parser

Generate a Snyk dependency tree from package-lock.json or yarn.lock file
Other
59 stars 28 forks source link

feat: use patched @snyk/graphlib #71

Closed lili2311 closed 4 years ago

lili2311 commented 4 years ago

What this does

Use patched @snyk/graphlib to remove vulnerable lodash https://github.com/snyk/snyk/pull/1093

snyksec commented 4 years ago

:tada: This PR is included in version 1.22.0 :tada:

The release is available on:

Your semantic-release bot :package::rocket: