Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Fix npm vulnerability #1492

Closed
wants to merge 1 commit into from
Closed

Fix npm vulnerability #1492

wants to merge 1 commit into from

Conversation

haesung3
Copy link

@haesung3 haesung3 commented Jun 14, 2021

Update css-select
High vulnerability observed in one of the dependencies of this package (css-select). Users of svgo have inherited the potential denial of service vulnerability
Screen Shot 2021-06-14 at 2 45 11 PM
I have bumped up the version of css-select to mitigate the vulnerability of this package.
Screen Shot 2021-06-14 at 2 44 27 PM
All tests are passing after the version upgrade.

Update css-select
@haesung3 haesung3 closed this Jun 14, 2021
@AlexSnowLeo
Copy link

@haesung3 why you are closed this PR?

@haesung3
Copy link
Author

@haesung3 why you are closed this PR?

This is a duplicate PR. #1485

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants