I am using v0.9.5 however `npm audit`shows that a vulnerable version of lodash is used in this version. I can see that this problem was fixed in #40 however this fix has not been released or pushed to NPM. Please release and push this to NPM.