docsifyjs / docsifyjs/docsify-cli
Dependency Marked 1.2.9 npm module is having a high vulnerability open
Abierto
- Lenguaje dominante
- JavaScript
- Estrellas
- 782
- Forks
- 166
- Merge medio
- 10 h 49 min
- PR fusionados (30 d)
- 1
Descripción
Dependency module Marked 1.2.9 npm module is having a high vulnerability open.
https://github.com/advisories/GHSA-rrrm-qjm4-v8hf
Marked-1.2.9 is a transient dependency for parent module docsify-cli.
docsify-cli latest version is 4.4.4 which is still using marked-1.2.9 .
Request you move to upgrade dependency module Marked with version > 4.0.10 so that the vulnerability can be fixed and consumers of docsify-cli can use the latest version with no vulnerabilities
Guía de contribución
Evaluación
Este issue todavía no se ha evaluado.