Skip to content

Should update moment dependency to >2.19.3 (ReDOS vulnerability) #655

Closed
@marcuscarr

Description

moment-timezone still allows versions of moment (>= 2.9.0) that contain a vulnerability. The dependency version should be bumped to the fix, >2.19.3.

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions