npm audit report
json5 <1.0.2
Severity: high
Prototype Pollution in JSON5 via Parse Method - GHSA-9c47-m6qq-7p4h
No fix available
node_modules/loader-utils/node_modules/json5
loader-utils <=1.4.0
Depends on vulnerable versions of json5
node_modules/loader-utils
css-loader 0.6.0 - 0.26.1
Depends on vulnerable versions of loader-utils
node_modules/css-loader
file-loader 0.5.0 - 0.10.0
Depends on vulnerable versions of loader-utils
node_modules/file-loader
string-replace-webpack-plugin *
Depends on vulnerable versions of css-loader
Depends on vulnerable versions of file-loader
Depends on vulnerable versions of loader-utils
Depends on vulnerable versions of style-loader
node_modules/string-replace-webpack-plugin
style-loader 0.8.2 - 0.13.1
Depends on vulnerable versions of loader-utils
node_modules/style-loader
6 vulnerabilities (1 high, 5 critical)
To address issues that do not require attention, run:
npm audit fix
Some issues need review, and may require choosing
a different dependency.