Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

While upgrading swagger2openapi module with latest version @7.0.8, dependency module node-fetch is not updated to latest version #546

Open
SaitejaChavva opened this issue Feb 3, 2022 · 3 comments

Comments

@SaitejaChavva
Copy link

SaitejaChavva commented Feb 3, 2022

While upgrading typescript-rest-swagger module with latest version @1.1.7, internal dependency swagger2openapi module also upgraded to its latest version @7.0.8, but dependency module node-fetch is not updated to latest version

As per npm, node fetch latest version is 3.2.0, but while upgrading swagger2openapi with latest version, node-fetch version taken as @2.6.7. Due to this reason, we are facing security issues.

Please find below attached snapshot for the issue, issue was notified on JFROG
image

Kindly update on the above issue, whether node-fetch dependency of the swagger2openapi module will be upgraded.

@SaitejaChavva
Copy link
Author

SaitejaChavva commented Feb 22, 2022

Hi,

Any update/suggestions on mentioned request? Please do the needful ASAP

@SaitejaChavva
Copy link
Author

Hi,

Is there any suggestions on mentioned request? Kindly let us know

@vikasjagdale92
Copy link

Hi,

I am also getting the same security issue. Could you please update it.
@SaitejaChavva do you have any updates on it?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants