Old version of `static-module` is used which is using old version of `quote-stream` which is using old version of `minimist` with a [CVE](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-7598)