oracle / netsuite-suitecloud-sdk

SuiteCloud Software Development Kit (SuiteCloud SDK) are the set of tools that allow you to customize accounts and create SuiteApps through SuiteCloud Development Framework (SDF).

Home Page:https://www.netsuite.com/

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Bump vm2 to resolve critical CVE

ZackKanter opened this issue · comments

There's a Dependabot PR open for bumping vm2 from 3.9.17 to 3.9.18. This would resolve the critical CVE in vm2 3.9.17 that currently affects this repo. It would be great to get this merged ASAP.

Ah, I see that the release 23.1 branch removes vm2 altogether.

Hi Zack,
Thanks for pointing out.
Yes we are in the process of releasing a new version that even removes completely vm2. It would be ready soon.
Regards

Hi again,
We have just released version 1.7.3 on npm. Please check it out.
This version removes entirely vm2 dependency so the CVE does not longer apply on it.
Regards.

Hi again,
We have just released version 1.7.3 on npm. Please check it out.
This version removes entirely vm2 dependency so the CVE does not longer apply on it.
Regards.

This worked as expected – thank you!

Screenshot 2023-05-26 at 8 16 55 AM