immer vulnerability resolution for Docusaurus 1.14.6? #4093
Unanswered
JGibson2019
asked this question in
Q&A
Replies: 1 comment 5 replies
-
Same issue with Docusaurus 2. |
Beta Was this translation helpful? Give feedback.
5 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
It's come to our attention that Docusaurus 1.14.6 is dependent on react-dev-utils@9.1.0, which has a dependency on immer 1.10.0. This immer version has vulnerabilities, and the earliest fixed version is 8.0.1. I'm curious if the Docusaurus team has a solution for this and has a timeline on a fix for those of us still using Docusaurus 1?
Beta Was this translation helpful? Give feedback.
All reactions