Comparing version 4.0.0 to 4.0.1
@@ -5,2 +5,9 @@ # Change Log | ||
### 4.0.1 (2020-11-30) | ||
### Bug Fixes | ||
* address prototype pollution issue ([#108](https://www.github.com/yargs/y18n/issues/108)) ([a9ac604](https://www.github.com/yargs/y18n/commit/a9ac604abf756dec9687be3843e2c93bfe581f25)) | ||
<a name="4.0.0"></a> | ||
@@ -7,0 +14,0 @@ # [4.0.0](https://github.com/yargs/y18n/compare/v3.2.1...v4.0.0) (2017-10-10) |
@@ -14,3 +14,3 @@ var fs = require('fs') | ||
// internal stuff. | ||
this.cache = {} | ||
this.cache = Object.create(null) | ||
this.writeQueue = [] | ||
@@ -17,0 +17,0 @@ } |
{ | ||
"name": "y18n", | ||
"version": "4.0.0", | ||
"version": "4.0.1", | ||
"description": "the bare-bones internationalization library used by yargs", | ||
@@ -5,0 +5,0 @@ "main": "index.js", |
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
10681
0