2 lodash vulnerabilities found in yarn.lock Remediation Upgrade lodash to version 4.17.13 or later. For example: lodash@^4.17.13: version "4.17.13" https://github.com/lodash/lodash/pull/4336 https://nvd.nist.gov/vuln/detail/CVE-2019-1010266