Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Vulnerable dependency on immer v8.0.1 #17041

Closed
andig opened this issue Dec 19, 2021 · 1 comment
Closed

Vulnerable dependency on immer v8.0.1 #17041

andig opened this issue Dec 19, 2021 · 1 comment

Comments

@andig
Copy link

andig commented Dec 19, 2021

6.4.9 depends on react-dev-utils 11.0.4 which uses immer 8.0.1. While this seems to be compile-time only it shows up in dependabot alerts. I believe this might be fixed by upgrading to react-dev-utils 12.0

@mheob
Copy link

mheob commented Dec 20, 2021

This is a duplicate of #16093.

@andig andig closed this as completed Dec 20, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants