You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
lodash <=4.17.20
Severity: critical
Regular Expression Denial of Service (ReDoS) in lodash - https://github.com/advisories/GHSA-x5rq-j2xg-h7qm
Prototype Pollution in lodash - https://github.com/advisories/GHSA-4xc9-xhrj-v574
Regular Expression Denial of Service (ReDoS) in lodash - https://github.com/advisories/GHSA-29mw-wpgm-hmr9
Prototype Pollution in lodash - https://github.com/advisories/GHSA-p6mc-m468-83gw
Command Injection in lodash - https://github.com/advisories/GHSA-35jh-r3h4-6jhm
Prototype Pollution in lodash - https://github.com/advisories/GHSA-fvqr-27wr-82fm
Prototype Pollution in lodash - https://github.com/advisories/GHSA-jf85-cpcp-j695
Will install @frctl/[email protected], which is outside the stated dependency range
node_modules/vorpal/node_modules/inquirer/node_modules/lodash
inquirer <=0.11.4
Depends on vulnerable versions of lodash
node_modules/vorpal/node_modules/inquirer
vorpal *
Depends on vulnerable versions of inquirer
node_modules/vorpal
I updated to the latest versions but latest fractal still has the old version of lodash with the volnrability
The text was updated successfully, but these errors were encountered:
I would be so happy if this fix could be made supporting "@frctl/nunjucks": "^1.0.3", because we have hundreds of components and would take considerable time to redo them all for nunjucks v2
OZZlE
changed the title
Regular Expression Denial of Service (ReDoS) in lodash
Critical Volnerability in Vorpal - Regular Expression Denial of Service (ReDoS) in old lodash
Aug 2, 2024
I updated to the latest versions but latest fractal still has the old version of lodash with the volnrability
The text was updated successfully, but these errors were encountered: