Skip to content

[JS] Package depends on unmaintained library node-external-editor #3382

@electrical

Description

@electrical

The library https://github.com/mrkmg/node-external-editor hasn't been updated in over 5 years and has old dependencies.
One of them GHSA-52f5-9888-hmc6 is now causing a security concern.
It doesn't look like the owner of node-external-editor is going to do anything about it.
If genkit requires the functionality, I would advice to find a suitable replacement, or bring that library in-house to maintain it.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    Status

    No status

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions