Closed
Description
Hi,
I sent this issue to npm support but they referred me back here :)
In a recent advisory on npmjs a vulnerability was disclosed: https://www.npmjs.com/advisories/1500/versions
It doesn't report 5.0.1
as unaffected while it DOES include 5.0.0-security.0
as unafffected -- and this is additionally inconsistent with the Snyk report here: https://snyk.io/vuln/SNYK-JS-YARGSPARSER-560381
Is it possible to get this remedied? Sorry if this is the wrong place to ask, but NPM support wasn't getting my anywhere so far :)
Metadata
Metadata
Assignees
Labels
No labels