@npmcli/metavuln-calculator
Advanced tools
Comparing version 3.0.0 to 3.0.1
{ | ||
"name": "@npmcli/metavuln-calculator", | ||
"version": "3.0.0", | ||
"version": "3.0.1", | ||
"main": "lib/index.js", | ||
@@ -32,3 +32,3 @@ "files": [ | ||
"devDependencies": { | ||
"@npmcli/template-oss": "^2.7.1", | ||
"@npmcli/template-oss": "^2.9.2", | ||
"require-inject": "^1.4.4", | ||
@@ -38,5 +38,5 @@ "tap": "^15.1.6" | ||
"dependencies": { | ||
"cacache": "^15.3.0", | ||
"cacache": "^16.0.0", | ||
"json-parse-even-better-errors": "^2.3.1", | ||
"pacote": "^13.0.1", | ||
"pacote": "^13.0.3", | ||
"semver": "^7.3.5" | ||
@@ -48,4 +48,4 @@ }, | ||
"templateOSS": { | ||
"version": "2.7.1" | ||
"version": "2.9.2" | ||
} | ||
} |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
0
- Removed@npmcli/fs@1.1.1(transitive)
- Removed@npmcli/move-file@1.1.2(transitive)
- Removedcacache@15.3.0(transitive)
- Removedlru-cache@6.0.0(transitive)
- Removedssri@8.0.1(transitive)
- Removedunique-filename@1.1.1(transitive)
- Removedunique-slug@2.0.2(transitive)
Updatedcacache@^16.0.0
Updatedpacote@^13.0.3