This repository was archived by the owner on Sep 7, 2020. It is now read-only.
This repository was archived by the owner on Sep 7, 2020. It is now read-only.
Vulnerability in dependency #433
Open
Description
Issue by dyst5422
Thursday Dec 07, 2017 at 22:07 GMT
Originally opened as https://github.com/graphcool/prisma/issues/1373
There seems to be a vulnerability with using a relatively old version of a dependency.
Traced it back to graphcool
graphcool@0.10.1 -> graphcool-cli-core@1.8.0 -> download-github-repo@0.1.3 -> download@0.1.19 -> decompress@0.2.5 -> tar@0.1.20