Please update the moment dependency to be at least 2.11.2, as this package has security issues. This version is currently locked in package.json CVE-2016-4055 at https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4055