Skip to content

Out of date packages failing snyk tests #1976

Closed
@Sammaye

Description

@Sammaye

V 11.2.1

I recently added this to one of my projects and instantly snyk notified me or dependency related CVEs, the ones it listed were:

Screenshot 2022-11-14 195620

From what I can see taffydb is not even used by the lib directly but instead via the jsdoc plugin so not sure why that's flagging on production level install.

Also not sure about uglify.

Can these be fixed by any chance?

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions