Hi,
We have updated the url-parse-lax package to the latest version(5.0.0)
The latest version of url-parse-lax has 2 Critical vulnerabilities(CVE-2022-2216, CVE-2022-2900) with scores 9.8 and 9.1 respectively.
1 High vulnerability(CVE-2022-2900) with score 7.5.
And 3 Medium level Vulnerabilities(CVE-2022-2217, CVE-2022-2218, CVE-2022-3224) with socres 6.1, 6.1, 6.1 respectively.
Is there a way to fix those vulnerabilities. If so, can you please let us know how to do?
And Latest Version was published on 08/10/2021. Can you please also state the release date of next version?
Pay now to fund the work behind this issue.
Get updates on progress being made.
Maintainer is rewarded once the issue is completed.
You're funding impactful open source efforts
You want to contribute to this effort
You want to get funding like this too