From 016a1ef4e4f4412824c5b723b9703a2279dcf935 Mon Sep 17 00:00:00 2001 From: Dan J Miller Date: Fri, 18 Aug 2023 12:58:08 -0230 Subject: [PATCH] Remove GHSA-h755-8qp9-cq8 from advisory exclusions because yarn audit output no longer flags that advisory --- .iyarc | 5 ----- 1 file changed, 5 deletions(-) diff --git a/.iyarc b/.iyarc index 9e16de044..cea1e59eb 100644 --- a/.iyarc +++ b/.iyarc @@ -4,8 +4,3 @@ GHSA-257v-vj4p-3w2h # request library is subject to SSRF. # addressed by temporary patch in .yarn/patches/request-npm-2.88.2-f4a57c72c4.patch GHSA-p8p7-x288-28g6 - -# Prototype pollution -# Not easily patched -# Minimal risk to us because we're using lockdown which also prevents this case of prototype pollution -GHSA-h755-8qp9-cq85