GitToTheHub commented on PR #965:
URL: https://github.com/apache/cordova-lib/pull/965#issuecomment-3481419470

   Can this be merged? This fixes `npm audit` with the warning:
   
   ```bash
   # npm audit report
   
   tar  7.5.1
   Severity: moderate
   node-tar has a race condition leading to uninitialized memory exposure - 
https://github.com/advisories/GHSA-29xp-372q-xqph
   fix available via `npm audit fix`
   node_modules/tar
   
   1 moderate severity vulnerability
   
   To address all issues, run:
     npm audit fix
   ```


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to