Commit 19b8991
committed
chore(deps): bump node-fetch in /functions from ^2.6.7 to ^2.6.13
2.6.7 has a known high-severity vulnerability: CVE-2022-0235
(exposure of sensitive information to an unauthorized actor via
redirect to a non-HTTP URL such as file://, which can leak sensitive
host data). Fixed in 2.6.8+. Staying on v2 because v3 is ESM-only
and the functions package uses CommonJS.1 parent 8776698 commit 19b8991
1 file changed
Lines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
18 | 18 | | |
19 | 19 | | |
20 | 20 | | |
21 | | - | |
| 21 | + | |
22 | 22 | | |
23 | 23 | | |
24 | 24 | | |
| |||
0 commit comments