Skip to content

Update remark-parse to newest version #5543

@aaron-ngt

Description

@aaron-ngt

We are getting a security flag for remark-parse because of its use of trim@0.0.1.

All versions of package trim lower than 0.0.3 are vulnerable to Regular Expression Denial of Service (ReDoS) via trim().

The newest version, 10.x, eliminates the Trim dependency entirely. Making the switch would be most good, Newland. Most good.

Metadata

Metadata

Assignees

No one assigned

    Labels

    dependenciesPRs that update a dependency filestale-issue(Don't delete - used for automation)stale-issue-closed(Don't delete - used for automation)

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions