Update vulnerable packages to latest supported versions#33
Open
amccarthy1 wants to merge 2 commits into
Open
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Fixes #32
(I hope)
There are many security advisories out for some dependencies of this project. I know it was last updated 8 years ago, but many packages still have this somewhere in their dependency trees, so it's good to fix these updates and keep everybody's code secure.
Notes:
globbyto latest, as the latest few major versions dropped support for commonjs modules. Other packages were updated to their latest versions (I left devDependencies alone, as I was having trouble getting things to build correctly otherwise)There is a minor formatting change to the output of this package with this; some of the test files output some tags on a single line instead of multiple lines. Otherwise the tests seem unaffected.
Let me know if there's a better way to test this than running the test suite and I'd be happy to help out.