GoogleChrome / workbox

📦 Workbox: JavaScript libraries for Progressive Web Apps

Home Page:https://developers.google.com/web/tools/workbox/

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

'Got' dependency has security issue (dependabot)

MyMediaMagnet opened this issue · comments

Library Affected:
workbox-cli@7.1.0 (npm)

Browser & Platform:
All

Issue or Feature Request Description:
Dependabot is reporting the following alert for a dependency of workbox-cli:

'got' (npm) allows a redirect to a UNIX socket

This is the dependency tree for this package:

workbox-cli@7.1.0
update-notifier@4.1.3
latest-version@5.1.0
package-json@6.5.0
got@9.6.0

The earliest fixed version is got@11.8.5

Any patch for this?