thomaseizinger/keep-a-changelog-new-release

Update remark-parse version to fix security vulnerability

Opened this issue ยท 1 comments

๐Ÿ‘‹๐Ÿผ Hey @thomaseizinger!
Nice to meet you!

I am using your action to update the app's CHANGELOG but I found there is a high-security vulnerability on one of the dependencies (remark-parse) you are using as you can see in this security report from the Synk tool:

CleanShot 2024-04-16 at 13 58 54@2x

I would like to keep using your action, but for that, it is mandatory that this vulnerability be fixed. Could we do a quick update on this dependency to the 9.0.0 version?

Thanks in advance ๐Ÿ™‚

I would like to keep using your action, but for that, it is mandatory that this vulnerability be fixed. Could we do a quick update on this dependency to the 9.0.0 version?

SUre! PRs welcome!