You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Bumping this - version 12.0.0 and later of make-fetch-happen removes the socks-proxy-agent so should resolve this by getting rid of ip in the chain entirely.
npm-check-updates
node >= 14.14
Lately I started to get some security vulnerability from this package.
└─┬ [email protected]
└─┬ [email protected]
└─┬ [email protected]
└─┬ [email protected]
└── [email protected]
socks package in this version uses "ip" version "2.0.0" - full issue description nodejs/node#51848
Here is another report of this issue - npm/cli#7223
Will be happy if you can update versions accordingly to remove this issued dependency.
Steps to Reproduce
Steps:
Run CI with [email protected] installed
Current Behavior
Display security vulnerability.
Expected Behavior
The text was updated successfully, but these errors were encountered: