This site is an independent open-source project and is not affiliated with, endorsed by, or sponsored by npm, Inc. or GitHub, Inc. The name “npm” is a registered trademark of npm, Inc., used here solely to describe compatibility and reference publicly available npm package data.
Version Details and Security Vulnerabilities
📦
conventional-recommended-bump
6.0.9
Comparision Betweeen 6.0.9 and 6.0.5
Identify the differences between the current version of the package and the previous one.
Version
Dependencies
8
8
Dev Dependencies
0
0
Peer Dependencies
0
0
Distributed Files
7
7
Unpacked Size
30.99 KB
30.23 KB
Security Vulnerabilities
Security Details
Comprehensive list of direct or transitive vulnerabilities for version 6.0.9 of the package conventional-recommended-bump.
All Security Vulnerabilities
All the vulnerabilities related to the version 6.0.9 of the package
Summary:
Command Injection in lodash
Details:
lodash versions prior to 4.17.21 are vulnerable to Command Injection via the template function.