-
Notifications
You must be signed in to change notification settings - Fork 133
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
SNOW-982793 SNOW-993512: SNYK-JS-INFLIGHT-6095116: High Vulnerability via glob -> inflight #720
Comments
thank you for raising this issue - already in progress under #714 |
PR is merged and will be part of the next release, expected by latest next week |
released with 1.9.2, closing |
reopening because it looks like its not that easy to get rid of
|
seems like rimraf should be upgraded to atleast v4.2.0? |
indeed there are multiple options (override dependency, replace |
fix in progress under #742 (removing |
PR merged and now
will be part of the next (January) release, expected within 2 weeks |
released with snowflake-sdk 1.9.3 |
https://github.com/snowflakedb/snowflake-connector-nodejs/blob/master/package.json#L25
https://security.snyk.io/vuln/SNYK-JS-INFLIGHT-6095116
fix is to upgrade glob version to v9+ which no longer depends on the vulnerable package: isaacs/inflight-DEPRECATED-DO-NOT-USE#5 (comment)
The text was updated successfully, but these errors were encountered: