Sam N
02/15/2022, 6:34 PMyarn audit as part of the build process? Are there any plans to fix the vm2 vulnerabilities: https://github.com/advisories/GHSA-6pw2-5hjv-9pf7?Frank
Frank
Frank
Frank
vm2 is a dependency of CDK, and the version is pinned to ^3.9.3. The lock file shows 3.9.6 is being used. So it seems we are not vulnerable to this?Frank