Commit b028354
committed
security: fix npm audit vulnerabilities
Fixed 6 vulnerabilities (4 high, 2 moderate):
- brace-expansion: ReDoS vulnerability
- braces: Uncontrolled resource consumption
- cross-spawn: ReDoS vulnerability
- glob-parent: ReDoS vulnerability
- micromatch: ReDoS vulnerability
- minimatch: ReDoS vulnerability
Remaining 4 moderate vulnerabilities are in esbuild/vite/vitest chain
and require a breaking change upgrade to vitest 4.x (dev dependency only,
does not affect production builds).1 parent ca16e82 commit b028354
1 file changed
+145
-339
lines changed
0 commit comments