update semver to address Regular Expression Denial of Service (ReDoS)#14
update semver to address Regular Expression Denial of Service (ReDoS)#14eahefnawy merged 1 commit intoserverless:masterfrom
Conversation
|
Hello @surajsnair92! Thanks for opening this PR, I'm facing the same problem in a repository. @MichaelRBond Can you approve this PR and release a new version with the fix? |
|
I can approve the PR, but, i am not a maintainer on this repo so I cannot merge or release a new version. |
|
@MichaelRBond Great, thanks for your quickly response. Let's await to @ArtificerEntertainment to merge and release the fix. We're looking forward to it. |
|
@medikoo Can you merge it? |
|
@gustavosimon I'm no longer with Serverless Inc. and I don't have rights to manage contributions here. I believe you need to reach out to @austencollins or @Mmarzex |
|
@Mmarzex can you merge it? |
1 similar comment
|
@Mmarzex can you merge it? |
|
Any luck with this? |
|
Will this fix be merged any time soon ? @austencollins @Mmarzex |
|
Waiting for the merge here too |
|
We've scheduled this to be reviewed an merged over the next few days. thanks for the notifications. |
|
Published to npm. |
semver module for serverless-plugin-log-retention is old. npm audit report shows that it is high on vulnerability.