yeoman / update-notifier

Update notifications for your CLI app
BSD 2-Clause "Simplified" License
1.76k stars 132 forks source link

Bump 'latest-version' package to fix security vulnerability in subdependency #222

Closed santi closed 2 years ago

santi commented 2 years ago

Fix just released in v7.0.0 of latest-version, which no longer uses a package that then again depends in a vulnerable version of got package.

@sindresorhus Could you approve workflow run and merge when you have time? This package already requires Node 14, so we should be good2go.