Istanbul: Depends on handlebars v4.0.1 which has a severe security vulnerability

Created on 26 Sep 2019  路  3Comments  路  Source: gotwarlost/istanbul

Most helpful comment

BTW, I'm fully aware that this package is deprecated, but a lot of projects still depend on it, hence why I think a release just to update the dependencies would be justified.

All 3 comments

Also see: https://app.snyk.io/vuln/npm:istanbul

@gotwarlost , any ETA on this?

BTW, I'm fully aware that this package is deprecated, but a lot of projects still depend on it, hence why I think a release just to update the dependencies would be justified.

+1

Was this page helpful?
0 / 5 - 0 ratings