Skip to content
This repository has been archived by the owner on Jun 11, 2024. It is now read-only.

Update nodejs version to use LTS (12.22.2) #6548

Closed
ManuGowda opened this issue Jul 2, 2021 · 0 comments
Closed

Update nodejs version to use LTS (12.22.2) #6548

ManuGowda opened this issue Jul 2, 2021 · 0 comments

Comments

@ManuGowda
Copy link
Contributor

ManuGowda commented Jul 2, 2021

Description

Update nodejs version to use LTS (12.22.2)

Motivation

Current Node.js version 12.22.1

Release: https://nodejs.org/en/blog/release/v12.22.2/

Bug: GHSA-vx3p-948g-6vhq

npm upgrade - ssri Regular Expression Denial of Service (ReDoS) (High) (CVE-2021-27290)
This is a vulnerability in the ssri npm module which may be vulnerable to denial of service attacks.

You can read more about it in https://github.com/advisories/GHSA-vx3p-948g-6vhq

Impacts:

All versions of the 12.x release line
Versions of the 14.x release line before 14.17.0 which included an update to the latest npm 6.

Additional Information

  • Update .nvmrc
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

No branches or pull requests

1 participant