Skip to content

Conversation

@Chathula
Copy link

Updates

  • Affected products

Comments
Still npm audit shows this as a vulnerability even though I use version 10.4.16 of the package. it asks to update to version 11.0.16 to fix it which is impossible to do due to breaking changes.

@github-actions github-actions bot changed the base branch from main to Chathula/advisory-improvement-5461 April 15, 2025 08:26
@JonathanLEvans
Copy link

Hi @Chathula, we have been unable to reproduce this behavior. Is it possible there was a caching issue or you have a vulnerable indirect dependency?

@Chathula
Copy link
Author

Hi @Chathula, we have been unable to reproduce this behavior. Is it possible there was a caching issue or you have a vulnerable indirect dependency?

Now it is fine. Maybe a caching issue. I will close this PR

@Chathula Chathula closed this Apr 17, 2025
@github-actions github-actions bot deleted the Chathula-GHSA-cj7v-w2c7-cp7c branch April 17, 2025 14:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants