30
Affected versions of the package are vulnerable to overly permissive cross-domain whitelisting when the corsOrigins environment variable is set to '*'.
You're affected if you are using a version which is within vulnerability ranges.
Upgrade uppy library to patch version.