-
Notifications
You must be signed in to change notification settings - Fork 87
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
rc
is unhealthy dependency
#146
Comments
tl;dr: I suggest to replace the GitHub has published an advisory on 10 Dec 2020 (CVE-2020-7788):
@goatandsheep has created the fork |
Submitting from phone, so untested.
I have to correct my previous comment that was based on a wrong understanding of semver. The Switching to the fork may still be the better option because its maintainer looks more eager to maintain it. |
rc package seems to be abandoned by it's author years ago and doesn't get the security updates : https://github.com/dominictarr/rc/issues
If it can't be brought back to life then it would be better to replace it with something else.
The text was updated successfully, but these errors were encountered: