High level vulnerability in ajv@6.12.x
envgap__eslint__eslintrc-216
01 / FAILURE SIGNATURE
As reported upstream
No identifying execution failure has been captured.
Not a benchmark task.
- The project already builds and runs before the fix, so there is nothing to repair.
02 / ENVIRONMENT RECIPE
- Base commit
245ada592eef13bb457f30ecd8b5cb9cfb4da0a9- Manifest
package.json- Reproduce
Awaiting issue-specific recipe- Run under trace
Awaiting a meaningful runtime command
03 / ORIGINAL ISSUE TEXT
eslint/eslintrc #216 · read the original issue
Associated line in package.json: https://github.com/eslint/eslintrc/blob/245ada592eef13bb457f30ecd8b5cb9cfb4da0a9/package.json#L65 Snyk vulnerability: https://security.snyk.io/vuln/SNYK-JS-AJV-15274295 ajv has released a new tag (8.18.0) which fixes the vulnerability. Is it possible to update eslintrc 3.3.3 to fix this vulnerability?
04 / LABELS
Labels from the report text only; not yet run
No supported category has been assigned.
Label rules and the text that matched
[]