-
-
Notifications
You must be signed in to change notification settings - Fork 36
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Please update to chokidar 2.x to avoid ReDOS vulnerability #47
Comments
Quick heads up, looks like the dependency |
@mysticatea could you take a look at this please? |
@mysticatea Reviving this discussion again. Would you be able to get the new version published? Let me know if I can help. |
Any update on this? cpx 1.50 is latest and still contains vulnerabilities
Need to use glob-parent 5.1.2 and braces 2.3.1 |
@lietusme this project clearly looks abandoned, so you might want to explore its alive fork https://github.com/bcomnes/cpx2 (basically drop-in replacement). |
https://snyk.io/test/npm/chokidar/1.7.0
The text was updated successfully, but these errors were encountered: