You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I'm one of the maintainers of xmldom, thx for already filing this issue.
I'm happy to file an upgrade PR and fix any regressions that we find along the way if it is wanted (#18 was not even landed since March).
Just reply or ping me.
karfau
added a commit
to karfau/xml-core
that referenced
this issue
Dec 26, 2021
Switching from package `xmldom` to `@xmldom/xmldom`, which resolves the security issue present in latest xmldom version 0.6.0:
GHSA-5fg8-2547-mr8q
The reason is that the maintainers were forced to switch to a scoped package since 0.7.0:
xmldom/xmldom#271
- I used node 12 to run `yarn`.
- It already executed some checks, there is a warning, but it didn't fail
- fixesPeculiarVentures#21
xmldom is renamed to @xmldom/xmldom because of security issue https://npmjs.com/advisories/1769
Details are here xmldom/xmldom#271
The text was updated successfully, but these errors were encountered: