The package currently depends on [email protected], which is dependant on brace-expansion@"^1.1.7" . This version of brace expansion comes with a security issue, that has since been fixed. An updated version of minimatch is available as well.
Please update the dependency minimatch.