nodertc/stun

Critical CVE with parse-url dependency

ForgeRubenAguilar opened this issue · 3 comments

CVE-2022-2218 requires updating parse-url to 6.0.1 or higher.

drore commented

Did you find a solution? alternative?

I will fix it in future, parse-url is not necessary.

Is a PR that fixes this welcome?

Any thoughts about also replacing CI with github actions?