Upgrading vulnerable component- css-what@3.4.2 in @svgr/plugin-svgo@5.5.0 #691
-
Hi Greg, as per the below link, the above mentioned component needs to be upgraded to a version greater than or equal to 5.0.1 https://snyk.io/vuln/npm:css-what But your component @svgr/plugin-svgo@5.5.0 has a dependency on svgo@1.3.2 which in turn has a dependency on css-select@2.1.0 and which has the vulnerable component css-what@3.4.2. Thanks and regards, |
Beta Was this translation helpful? Give feedback.
Replies: 1 comment
-
I don't provide support on SVGR v5, please upgrade or submit an issue in create-react-app project. |
Beta Was this translation helpful? Give feedback.
I don't provide support on SVGR v5, please upgrade or submit an issue in create-react-app project.