commitizen / commitizen/cz-cli
Minimist dependent package vulnerability due to older version usage
オープン
- 主要言語
- JavaScript
- スター
- 17.5k
- フォーク
- 566
- 平均マージ
- 8時間 16分
- マージ済み PR(30日)
- 1
説明
Hi,
We are using commitizen package in our microservice api. As we know commitizen has a dependency on minimist package and it shows us a vulnerablility during our docker image scan.

Could you guys please update your package to a newer version or may be upgrade the minimist package to it's fixed version which is **1.2.6**?
Hope to see the resolution soon on this issue. Thanks !
コントリビューションガイド
評価
この issue はまだ評価されていません。