-
Task
-
Resolution: Won't Do
-
Major
-
None
-
None
-
None
-
False
-
-
False
-
-
Update package.json to resolve vulns found by snyk (most issues are through deps, not directly OCMUI)
Current vulnerabilities list as of March, 2025
1) Upgrade axios to 1.8.2 (Med)
2) Upgrade semver to 5.7.2, 6.3.1, 7.5.2 - we are fine but some deps use a lower version (AI, storybook, eslint)
3) path-to-regexp to 0.1.10, 1.9.0, 3.3.0 (react router, express)
4) nanoid to 3.3.8, 5.0.9 (postcss)
- is cloned by
-
OCMUI-3225 (chore)[Snyk vulnerabilities]: Update semver and deps that use it
-
- Closed
-