[email protected] depends on [email protected] package which also has a vulnerable dependency '[email protected]'.
As per 'isaacs/inflight-DEPRECATED-DO-NOT-USE#18' vulnerable dependency is being fixed in [email protected].
✅ What did you expect to see?
Cucumber lib using an updated version of glob. > 9.0.0 without any vulnerabilities
📦 Which tool/library version are you using?
4.0.1
🔬 How could we reproduce it?
Steps to reproduce the behavior:
Install [email protected]
npm ls inflight
Observe that archiver-utils is dependent is [email protected] -> [email protected]
[email protected] depends on [email protected] package which also has a vulnerable dependency '[email protected]'.
As per 'isaacs/inflight-DEPRECATED-DO-NOT-USE#18' vulnerable dependency is being fixed in [email protected].
✅ What did you expect to see?
Cucumber lib using an updated version of glob. > 9.0.0 without any vulnerabilities
📦 Which tool/library version are you using?
4.0.1
🔬 How could we reproduce it?
Steps to reproduce the behavior:
Install [email protected]
npm ls inflight
Observe that archiver-utils is dependent is [email protected] -> [email protected]