Skip to content
This repository has been archived by the owner on Sep 9, 2019. It is now read-only.

Npm Audit warnings #2

Open
wants to merge 1 commit into
base: master
Choose a base branch
from
Open

Conversation

relvao
Copy link

@relvao relvao commented Oct 17, 2018

We're getting a high vulnerability "Regular Expression Denial of Service" in minimatch and updating jscodeshift to ^0.5.0 seems to fix it

We're getting a high vulnerability "Regular Expression Denial of Service" in minimatch and updating jscodeshift to ^0.5.0 seems to fix it
@usulpro
Copy link
Member

usulpro commented Oct 18, 2018

Hi @relvao, Thanks for your help!
BTW the best way to get Storybook CLI is to switch to @storybook/cli package. It's maintained alongside with the other Storybook packages and you are always sure you have the actual version

@usulpro
Copy link
Member

usulpro commented Oct 18, 2018

@ndelangen Do we still want to maintain this package? As I guess it's a bit outdated?

@relvao
Copy link
Author

relvao commented Oct 18, 2018

@usulpro Ah, OK. We'll try that.

@ndelangen
Copy link

Planned to merge into monorepo at some point. Just haven't found the time to do that just yet.

I guess we could make this package actually install @storybook/cli@latest and 'proxy' it?

@ndelangen
Copy link

Thanks for reporting @relvao

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Development

Successfully merging this pull request may close these issues.

3 participants