Skip to content

fix: override undici to ^7.0.0#734

Merged
laileni-aws merged 1 commit intoaws:mainfrom
laileni-aws:fix/finding
Feb 12, 2026
Merged

fix: override undici to ^7.0.0#734
laileni-aws merged 1 commit intoaws:mainfrom
laileni-aws:fix/finding

Conversation

@laileni-aws
Copy link
Contributor

Problem

  • The undici dependency version 6.22.0 contains CVE-2026-22036, which is categorized as a "Strong Negative" security issue

Solution

  • override undici to ^7.0.0

License

By submitting this pull request, I confirm that my contribution is made under the terms of the Apache 2.0 license.

@laileni-aws laileni-aws requested a review from a team as a code owner February 12, 2026 00:55
@laileni-aws laileni-aws merged commit 69d984f into aws:main Feb 12, 2026
4 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants