Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix: upgrade dependencies to avoid potentially vulnerable deps #171

Merged
merged 3 commits into from
Nov 7, 2024

Conversation

AdrianDsg
Copy link
Contributor

@AdrianDsg AdrianDsg commented Oct 29, 2024

Hi,
Currently this project is using several outdated dependencies and therefore likely vulnerable for attacks using CVE-2024-4068.

This pull request upgrades the outdated dependencies.

Regards,
Adrian

Fixes #170

@ajaguar
Copy link

ajaguar commented Oct 29, 2024

I also create a issue for that: #170

@meeroslav meeroslav changed the title upgrade dependencies fix: upgrade dependencies to avoid potentially vulnerable deps Nov 7, 2024
@meeroslav meeroslav merged commit e2e6dc8 into nrwl:main Nov 7, 2024
7 checks passed
@AdrianDsg AdrianDsg deleted the adriandsg-upgrade-dependencies branch November 12, 2024 08:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Critical dep finding braces
3 participants