Lodash update #2937
Unanswered
marek-tabor
asked this question in
Q&A
Lodash update
#2937
Replies: 2 comments 2 replies
-
Formik does not restrict lodash to specific version. You can uninstall and install formik again to update lockfile. |
Beta Was this translation helpful? Give feedback.
1 reply
-
Hey @marek-tabor thanks for raising this concern, we have raised a PR bumping lodash to the latest - #2938 Feel free to mark the discussion as resolved, when you are able to use the latest lodash |
Beta Was this translation helpful? Give feedback.
1 reply
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Hi,
I would like to ask if you can Upgrade lodash to version 4.17.20 or higher? Formik uses an old version of lodash which according to Snyk is not very secure https://snyk.io/vuln/SNYK-JS-LODASH-590103.
If that is a big issue for you, is there a way to force point formik to use lodash version provided by myself?
Beta Was this translation helpful? Give feedback.
All reactions