-
Notifications
You must be signed in to change notification settings - Fork 1
Open
Description
Find more live information in Aikido here: https://app.aikido.dev/queue?sidebarIssue=16045364&groupId=37390&sidebarIssueTask=1261455&sidebarTab=tasks
Scope
This task includes issues in the following code repository:
- ts-defold.github.io: yarn.lock
TLDR
Minimist <=1.2.5 is vulnerable to Prototype Pollution via file index.js, function setKey() (lines 69-95).
How to fix
We recommend updating from 1.2.5 to 1.2.6.