zcreativelabs / react-simple-maps

Beautiful React SVG maps with d3-geo and topojson using a declarative api.
https://www.react-simple-maps.io/
MIT License
3.07k stars 424 forks source link

Upgrade d3-color #278

Open kodermax opened 2 years ago

kodermax commented 2 years ago

Hi,

d3-color version<3.0.0 that is used in some of your packages is vulnerable to ReDoS, hence it would be a good idea to bump this (if possible) in your next release.

Thank you for providing a great visualization tool!

convict-git commented 1 year ago

Hi, any update on this? Are we planning to upgrade d3-color to ^3.1.0 in any future releases?

vixalien commented 5 months ago

It seems d3 has been upgraded but a new version has not been published for 2 years.