-
-
Notifications
You must be signed in to change notification settings - Fork 68
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
nth-check dependency v1.0.2 is vulnerable #743
Comments
That site doesn't have an vulnerabilities listed:
|
The range for nth-check allows for the current version. An npm audit --fix will resolve any issue you have. |
Oh my god you're right sorry... the issue is that react-scripts@5.0.0 is using some older libraries downstream |
For projects using Create React App, the fix is a breaking change and as configured it will install Not exactly what I hoped to see. |
@gaearon has written a great explanation of how to deal with and think about this: facebook/create-react-app#11174 |
Good to know, thanks.
|
Hi there, I got an alert from Snyk;
https://snyk.io/vuln/npm:css-select@2.1.0
css-select uses an old version of nth-check... needs to be upgraded to v2.0.1 or later. Thanks.
The text was updated successfully, but these errors were encountered: