You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Very much depends (no pun indented). I'd try to avoid upgrading major versions when possible.
It will probably need analysis of whether the problem really affects us:
Some vulnerabilities may not affect our code.
Some vulnerabilities may only be in devDependencies, so they only affect the build (which may mean possibly leaking env variables but if we don't do builds ...).
https://github.com/datoszs/czech-lawyers/security/dependabot/91
Is it relevant to take the pain of upgrading through the dependency hell?
The text was updated successfully, but these errors were encountered: