From ae9873ff7576a763b0fab250688cab50917d3e2b Mon Sep 17 00:00:00 2001 From: = Date: Mon, 14 Mar 2022 23:49:26 +0300 Subject: [PATCH] Update package-lock.json node-fetch is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor --- package-lock.json | 3 +++ 1 file changed, 3 insertions(+) diff --git a/package-lock.json b/package-lock.json index 76ccf78..8cc4930 100644 --- a/package-lock.json +++ b/package-lock.json @@ -15,6 +15,7 @@ "openpgp": "^5.0.1" }, "devDependencies": { + "node-fetch" : " >=2.6,7 " "@types/jest": "^27.0.3", "@types/node": "^16.11.12", "@typescript-eslint/eslint-plugin": "^5.6.0", @@ -26,6 +27,8 @@ "jest-junit": "^13.0.0", "ts-jest": "^27.1.1", "typescript": "^4.5.3" + +} } }, "node_modules/@actions/core": {