kevva / bin-wrapper

Binary wrapper that makes your programs seamlessly available as local dependencies

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Outdated `bin-version-check` dependency - needs version bumping

KenjiDuggan opened this issue · comments

I believe the bin-version-check package should be updated to the latest version of 5.0.0 which would remove the high CVE found here caused by a downstream dependency semver-regex
Screen Shot 2022-06-07 at 12 39 00 AM

Thanks for the great work!
I would like to get rid of this vulnerability
Would it be possible to upgrade bin-version-check to version 5.0.0 to remove semver-regex dependency ?

@kevva Need this as well as I have warnings on my projects :/