unicef / magicbox-latlon-admin-server

API that takes latitude/longitude pairs and returns an ID and metadata for the administrative boundaries they're located within
BSD 3-Clause "New" or "Revised" License
1 stars 2 forks source link

Resolve CVE-2018-3721: update eslint (4.10.0 to 5.12.0) #14

Closed jwflory closed 5 years ago

jwflory commented 5 years ago

https://nvd.nist.gov/vuln/detail/CVE-2018-3721

This commit resolves CVE-2018-3721 with the lodash package, a sub-dependency of eslint. I verified and updated packages to resolve the CVE with instruction from npm audit.