Closed
Description
A critically rated CVE, CVE-2021-44906, is present in npm v6, minimist version 1.2.5 is vulnerable and the issue is fixed in 1.2.6.
I'm happy to submit a new package-lock.json after running npm audit fix
. Doesn't look like any other files need updated based on the history of package-lock.json on v6 branch.