From bb51a67f587dad82bbfa753de47bafce5f6542fa Mon Sep 17 00:00:00 2001 From: emizzle Date: Thu, 11 Jul 2019 14:24:01 +1000 Subject: [PATCH] fix(@vue/cli-service): Update lodash.defaultsdeep Update `lodash.defaultsdeep` to version `^4.6.1`. This is causing a high severity vulnerability in our repo. Fixed in https://github.com/lodash/lodash/pull/4336. --- packages/@vue/cli-service/package.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/packages/@vue/cli-service/package.json b/packages/@vue/cli-service/package.json index 0293b1bde3..ef0345fd66 100644 --- a/packages/@vue/cli-service/package.json +++ b/packages/@vue/cli-service/package.json @@ -56,7 +56,7 @@ "hash-sum": "^1.0.2", "html-webpack-plugin": "^3.2.0", "launch-editor-middleware": "^2.2.1", - "lodash.defaultsdeep": "^4.6.0", + "lodash.defaultsdeep": "^4.6.1", "lodash.mapvalues": "^4.6.0", "lodash.transform": "^4.6.0", "mini-css-extract-plugin": "^0.6.0",