Uploaded image for project: 'Qpid Dispatch'
  1. Qpid Dispatch
  2. DISPATCH-1741

Update console dependency for yargs-parser to avoid security warning

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Closed
    • Major
    • Resolution: Fixed
    • 1.13.0
    • 1.13.0
    • Console
    • None

    Description

      A new security vulnerability was identified with the released version of yargs-parser.
      The dependency path is
      react-scripts > webpack-dev-server > yargs > yargs-parser

      Since react-scripts has not been updated to require the version of yargs-parser that fixes the vulnerability, the package-lock.json file needs to be updated manually to require yargs-parser version 13.1.2

      See https://github.com/facebook/create-react-app/issues/9033 for a discussion on the issue with react-scripts.

      Attachments

        Activity

          People

            eallen Ernest Allen
            eallen Ernest Allen
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: