SFDX-Data-Move-Utility icon indicating copy to clipboard operation
SFDX-Data-Move-Utility copied to clipboard

Lodash Pick causes a security issue

Open bcgilliom opened this issue 2 years ago • 0 comments

It seems the guidance is to no longer use the individual imports (they are basically deprecated) the security issue is fixed in the main package as of 4.17.19, but I think the individual packages (like pick) didn't get repacked on npm?

https://github.com/advisories/GHSA-p6mc-m468-83gw

https://github.com/lodash/lodash/issues/5809

bcgilliom avatar Feb 09 '24 19:02 bcgilliom