-
Notifications
You must be signed in to change notification settings - Fork 48
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Snyk reports - Prototype Pollution for 4.0.0 #112
Comments
It seems like #108 (the fix for the vulnerability) should be fairly compatible with the 4.0.0 release, despite the different JavaScript languages used in the patch. There's no current branch for v4 releases at the moment, so would the y18n team be willing to publish a new version from the v4 branch? |
@KTOmega @yenanandu I have back-ported the patch. |
@bcoe given that gulp-cli still relies on the 3.x branch, would you consider backporting it to a 3.2.2 release as well ? |
Team - any plans to release a patch version for 4.0.0 to address below issue
https://snyk.io/vuln/SNYK-JS-Y18N-1021887
The text was updated successfully, but these errors were encountered: