Alex Criollo

Results 2 comments of Alex Criollo

> The latest release (https://github.com/scniro/react-codemirror2/tree/7.1.0) has the following in the package.json file : > > https://github.com/scniro/react-codemirror2/blob/cc3a47d0707b060bf1a1e42ccb258b9b7c0882fd/package.json#L56 > > I think the reason is that npm is reading the peer dependancy...

Don't install taffydb, it had a high vulnerability: taffydb * Severity: high TaffyDB can allow access to any data items in the DB - https://github.com/advisories/GHSA-mxhp-79qh-mcx6 No fix available node_modules/taffydb **1...