CLIUI is using string-width 4.2.0, strip-ansi 6.0.0, and wrap-ansi 7.0.0 which all use ansi-regex 5.0.1 which contains a known vulnerability (https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3807). Updating these packages to the new major version will resolve this vulnerability
The new major versions are a challenge due to changes in supported runtimes. However, we wanted to find a way forward to have word wrapping supported in ESM anyway.
CLIUI is using string-width 4.2.0, strip-ansi 6.0.0, and wrap-ansi 7.0.0 which all use ansi-regex 5.0.1 which contains a known vulnerability (https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3807). Updating these packages to the new major version will resolve this vulnerability