Skip to content

Conversation

@ruyadorno
Copy link
Contributor

I just recently released path-complete-extname@1.0.0 in order to mitigate a vulnerability report that traces back to the original node@0.10 implementation in which the module was based on.

The solution was to rewrite the module basing it in the current node implementation and publish a new major version. I'm reaching out to all libraries described on npm dependencies list to make sure they can all get the new patched version as soon as possible.

I decided for a major release in order to be able to properly follow semver from now on and to properly reflect the stable state of the library that has been around for 4 years 😊

Let me know if there are any concerns and please feel free to review all the code changes.

Best,

Ruy Adorno

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants