High vulnerability found in react-scripts > fsevents >tar #6852
Closed
Description
Is this a bug report?
(write your answer here)
It's a vulnerability issue. tar package under react-scripts > fsevents is vulnerable to Arbitrary File Overwrite which is a high vulnerability. Please update all the tar dependencies under react-scripts package to 4.4.2 and above to remediate the issue.
Metadata
Assignees
Labels
No labels