Skip to content

Upgrade chokidar to 4.x #2117

@yeikel

Description

@yeikel

The project currently relies on an unsupported version of chokidar:

"chokidar": "^3.5.1",

This introduces transitive insecure dependencies, including CVE-2024-4068.

Upgrading to chokidar v4 should be considered to address these issues

└─┬ @redocly/cli@1.34.3
  └─┬ chokidar@3.5.3
    └── braces@3.0.2

Additional context: paulmillr/chokidar#1428

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions