-
Notifications
You must be signed in to change notification settings - Fork 50
Open
Labels
dependenciesPull requests that update a dependency filePull requests that update a dependency file
Milestone
Description
Our (Gitlab) based security scanner flagged up an issue in Execa 1.0.0, which was in our dependency chain via shx and shelljs. Shelljs was fixed in April (shelljs/shelljs#1216) and it was updated in shx in May (0f1ea07), fixing the security issue, but the latest release of shx (0.4.0) was done in March.
Please publish a new version so that any users of shx can update. It's not a huge security issue for us, it's just the security dashboard being a bit panicky.
truebden
Metadata
Metadata
Assignees
Labels
dependenciesPull requests that update a dependency filePull requests that update a dependency file