npm audit security vulnerability in semver <= 7.5.2 #2163
Open
Description
npm audit gives warning about the indirect semver
dependency:
semver
<-- normalize-package-data
<-- read-pkg
<-- read-pkg-up
Updating to latest version of read-pkg-up
should mitigate this.
Metadata
Assignees
Labels
No labels