Closed
Description
Is this a bug report?
no
Can you also reproduce the problem with npm 4.x?
Yes
Environment
Irrelevant
Actual Behavior
There is a vulnerability identified by NSP in the version of url-loader currently set as a dependency.
"[email protected] > [email protected] > [email protected] "
url-loader has fixed this issue since 0.6.