Skip to content

Please upgrade formidable to latest (v3 /v4) #1985

Open
@tunnckoCore

Description

@tunnckoCore

Lead maintainer of formidable here.

Any particular reason why you're using v1? You're using pretty old and flaky version, with obscure APIs.

Please upgrade to latest, and prepare for v4 which is written in TypeScript and modern stack & APIs like Fetch/Request/Response/ReadableStream, and there is no buffering or writing to disk. You can try the formidable@next dist-tag.

Trying to ditch people of the v1 for years, yet it has 2 million downloads and many vulnerabilities.
Trying to narrow down from where these 2M are coming from and how much should we care about that version.

I'm seeing you're using it for testing only, but still. Everything except v3 is deprecated and vulnerable.
At least migrate to v3, it still has CJS support if that's a must. Tho, the v4 have both CJS & ESM too and work down to Node v14.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions