Skip to content

Conversation

@kim-tsao
Copy link
Member

Hey, I just made a Pull Request!

Fixes:
https://issues.redhat.com/browse/RHIDP-11317

CVE-2025-15284 (qs bump to 6.14.1)

  • Updated with yarn up -R express body-parser qs

CVE-2026-22029 (@remix-run/router bump to 1.23.2)
CVE-2025-68470 (react-router bump to 6.30.2)

  • Updated with yarn up -R react-router react-router-dom

CVE-2025-65945 (jws bump to 3.2.3 and 4.0.1)

GHSA-8j8c-7jfh-h6hx (js-yaml bump to 4.1.1) - supersedes #1913

✔️ Checklist

  • A changeset describing the change and affected packages. (more info)
  • Added or Updated documentation
  • Tests for new functionality and regression tests for bug fixes
  • Screenshots attached (for UI changes)

@sonarqubecloud
Copy link

@kim-tsao kim-tsao changed the title chore: fix orchestrator cves chore(orchestrator): fix multiple CVEs Jan 10, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant