Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Upgrade yargs dependency to 17.x #4938

Closed
apupier opened this issue Oct 26, 2022 · 2 comments
Closed

Upgrade yargs dependency to 17.x #4938

apupier opened this issue Oct 26, 2022 · 2 comments
Labels
duplicate been there, done that, got the t-shirt... stale this has been inactive for a while...

Comments

@apupier
Copy link

apupier commented Oct 26, 2022

Is your feature request related to a problem or a nice-to-have?? Please describe.
with npm audit:

ansi-regex  5.0.0
Severity: high
Inefficient Regular Expression Complexity in chalk/ansi-regex - https://github.com/advisories/GHSA-93q8-gq69-wqmw
fix available via `npm audit fix`
node_modules/mocha/node_modules/ansi-regex
└─┬ mocha@10.1.0
  └─┬ yargs@16.2.0
    └─┬ cliui@7.0.4
      └─┬ strip-ansi@6.0.0
        └── ansi-regex@5.0.0

Describe the solution you'd like

latest yargs 17.6.0 contains a more up to date version without the issue https://github.com/yargs/yargs/blob/6cd8e2d6a45bd4ed3521b196b14ef408b0222eee/package.json#L56

Describe alternatives you've considered

16.2.0 is the latest 16.x release and doesn't contian teh fix

Additional context
Add any other context or screenshots about the feature request here.

@apupier apupier added the type: feature enhancement proposal label Oct 26, 2022
apupier added a commit to apupier/mocha that referenced this issue Oct 31, 2022
@juergba juergba added duplicate been there, done that, got the t-shirt... and removed type: feature enhancement proposal labels Oct 31, 2022
@juergba
Copy link
Contributor

juergba commented Oct 31, 2022

duplicate of #4903

@github-actions
Copy link
Contributor

github-actions bot commented Mar 1, 2023

This issue hasn't had any recent activity, and I'm labeling it stale. Remove the label or comment or this issue will be closed in 14 days. Thanks for contributing to Mocha!

@github-actions github-actions bot added the stale this has been inactive for a while... label Mar 1, 2023
@github-actions github-actions bot closed this as not planned Won't fix, can't repro, duplicate, stale Mar 17, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
duplicate been there, done that, got the t-shirt... stale this has been inactive for a while...
Projects
None yet
Development

Successfully merging a pull request may close this issue.

2 participants