-
Notifications
You must be signed in to change notification settings - Fork 99
Closed
Description
portfinder is currently using async@^2.6.2 which has a known Prototype Pollution vulnerability
async@^3.2.2 addresses this vulnerability
Additional information:
NVD: https://nvd.nist.gov/vuln/detail/CVE-2021-43138
Snyk: https://security.snyk.io/vuln/SNYK-JS-ASYNC-2441827
val2207, c-ryan-k, jwace81, jviudes, JasonDuquain and 41 more
Metadata
Metadata
Assignees
Labels
No labels