Closed cgewecke closed 5 years ago
There is command injection vulnerability in web pack > css-loader > macaddress. I've opened an issue over there but they closed it right away. https://github.com/webpack-contrib/css-loader/issues/719
This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs. Thank you for your contributions.
This issue has been closed, but can be re-opened if further comments indicate that the problem persists. Feel free to tag maintainers if no there is no reply to further comments.
Referring over here from truffle 941. It looks like the loader was never brought into the suite, and it's not receiving ongoing maintenance. Simplest solution might be to try to bump its deps? @DiscRiskandBisque What do you think?