Would you accept a PR that upgraded the `request` peer dependency to `^2.68` in order to fix this security vulnerability: https://nvd.nist.gov/vuln/detail/CVE-2017-16026