Skip to content

[Feedback]: Critical npm audit vulnerability #136

@xadamxk

Description

@xadamxk

What's on your mind?

The current version of @onesignal/node-onesignal (5.2.0-beta1) has a critical vulnerability with the dependency form-data version 2.5.0.

This dependency needs to be updated to atleast version 2.5.4 to fix this from being flagged by NPM.

Is someone able to address this? Can I help in any way?

Thanks

Code of Conduct

  • I agree to follow this project's Code of Conduct

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions