This project has a nested dependency on node-fetch@2.6.1, which is vulnerable to [CVE-2022-0235](https://github.com/advisories/GHSA-r683-j2x4-v87g) and [CVE-2020-15168](https://github.com/advisories/GHSA-w7rc-rwvf-8q5r) This needs to be updated to node-fetch@2.6.7