From f6978ced12c7c6fb0068b61de5025d3f9bfd5246 Mon Sep 17 00:00:00 2001 From: Walker Clem <51654951+wclem4@users.noreply.github.com> Date: Mon, 22 Feb 2021 12:53:59 -0500 Subject: [PATCH] update immer to 8.0.1 to address vulnerability (#10412) Resolves #10411 Bumps immer version to 8.0.1 to address the prototype pollution vulnerability with the current 7.0.9 version. --- packages/react-dev-utils/package.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/packages/react-dev-utils/package.json b/packages/react-dev-utils/package.json index 458b82ae254..41a43923e1e 100644 --- a/packages/react-dev-utils/package.json +++ b/packages/react-dev-utils/package.json @@ -65,7 +65,7 @@ "global-modules": "2.0.0", "globby": "11.0.1", "gzip-size": "5.1.1", - "immer": "7.0.9", + "immer": "8.0.1", "is-root": "2.1.0", "loader-utils": "2.0.0", "open": "^7.0.2",