From d38f344dbca9696d88e0f055b2b4c7dd150708a7 Mon Sep 17 00:00:00 2001 From: Jonathan Niles Date: Wed, 7 Nov 2018 01:44:09 +0100 Subject: [PATCH] fix(package): bump lodash version (#3203) Bumps lodash to 4.17.5 avoid medium severity vulnerability (https://nvd.nist.gov/vuln/detail/CVE-2018-3721) found in 4.17.4. Closes #3177. --- package.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/package.json b/package.json index b3877257d..ad7f5e355 100644 --- a/package.json +++ b/package.json @@ -383,7 +383,7 @@ "graceful-fs": "^4.1.2", "http-proxy": "^1.13.0", "isbinaryfile": "^3.0.0", - "lodash": "^4.17.4", + "lodash": "^4.17.5", "log4js": "^3.0.0", "mime": "^2.3.1", "minimatch": "^3.0.2",