microsoft / appcenter-sdk-react-native

Development repository for the App Center SDK for React Native

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

appcenter-link-scripts is using vulnerable version of minimist

peltax opened this issue · comments

Hello,

appcenter-link-scripts has dependency for minimist 1.2.5 which is vulnerable to prototype pollution. Please upgrade to 1.2.6.

GHSA-xvch-5gv4-984h

commented

Hi @peltax , thank you for reaching out! This was fixed in #965.

nice, will updated package get published? Last one is from january.

commented

Hi @peltax , we will release react-native sdk with this fix this month.