We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
unzipper seems unmaintained for quite some time now, last publish was 2 years ago https://www.npmjs.com/package/unzipper https://github.com/ZJONSSON/node-unzipper It has a depdency on an archived an unmaintained fstream ZJONSSON/node-unzipper#261 which leads to a CVE reported by npm audit
minimist <1.2.6 Severity: critical Prototype Pollution in minimist - https://github.com/advisories/GHSA-xvch-5gv4-984h fix available via `npm audit fix` node_modules/minimist
it would be nice to move away from unzipper and use a maintained dependency.
The text was updated successfully, but these errors were encountered:
Use unzip-stream instead of unzipper
7f83374
unzipper seems unmaintained for quite some time now, last publish was 2 years ago https://www.npmjs.com/package/unzipper https://github.com/ZJONSSON/node-unzipper It has a dependency on an archived an unmaintained fstream ZJONSSON/node-unzipper#261 which leads to a CVE reported by npm audit fixes microsoft#166
fix: remove dependency on unzipper package
b87c3c6
Fixes #197 Fixes #166
4bc98a7
e055202
Successfully merging a pull request may close this issue.
unzipper seems unmaintained for quite some time now, last publish was 2 years ago https://www.npmjs.com/package/unzipper https://github.com/ZJONSSON/node-unzipper
It has a depdency on an archived an unmaintained fstream ZJONSSON/node-unzipper#261 which leads to a CVE reported by npm audit
it would be nice to move away from unzipper and use a maintained dependency.
The text was updated successfully, but these errors were encountered: