microsoft / beachball

The Sunniest Semantic Version Bumper

Home Page:https://microsoft.github.io/beachball

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

High-severity vulnerabilities in indirect dependencies: parse-url and parse-path

m-akinc opened this issue · comments

Running npm audit against a project depending on Beachball 2.24.0 (the current latest release) reports high-severity security vulnerabilities in packages parse-url and parse-path:
image