Skip to content

Commit 650a279

Browse files
committed
🔒️(secu) fix CVE-2026-26996 with minimatch
We get a warning about a vulnerability in minimatch 3.1.2. We ugrade to 10.2.2 to fix the issue.
1 parent f1ac939 commit 650a279

File tree

2 files changed

+2
-47
lines changed

2 files changed

+2
-47
lines changed

src/frontend/package.json

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -36,6 +36,7 @@
3636
"@types/react": "19.2.14",
3737
"@types/react-dom": "19.2.3",
3838
"eslint": "10.0.1",
39+
"minimatch": "10.2.2",
3940
"prosemirror-view": "1.41.6",
4041
"react": "19.2.4",
4142
"react-dom": "19.2.4",

src/frontend/yarn.lock

Lines changed: 1 addition & 47 deletions
Original file line numberDiff line numberDiff line change
@@ -8289,11 +8289,6 @@ bail@^2.0.0:
82898289
resolved "https://registry.yarnpkg.com/bail/-/bail-2.0.2.tgz#d26f5cd8fe5d6f832a31517b9f7c356040ba6d5d"
82908290
integrity sha512-0xO6mYd7JB2YesxDKplafRpsiOzPt9V02ddPCLbY1xYGPOX24NTyN50qnUxgCPcSoYMhKpAuBTjQoRZCAkUDRw==
82918291

8292-
balanced-match@^1.0.0:
8293-
version "1.0.2"
8294-
resolved "https://registry.yarnpkg.com/balanced-match/-/balanced-match-1.0.2.tgz#e83e3a7e3f300b34cb9d87f615fa0cbf357690ee"
8295-
integrity sha512-3oSeUO0TMV67hN1AmbXsK4yaqU7tjiHlbxRDZOpH0KW9+CeX4bRAaX0Anxt0tx2MrpRpWwQaPwIlISEJhYU5Pw==
8296-
82978292
balanced-match@^2.0.0:
82988293
version "2.0.0"
82998294
resolved "https://registry.yarnpkg.com/balanced-match/-/balanced-match-2.0.0.tgz#dc70f920d78db8b858535795867bf48f820633d9"
@@ -8375,21 +8370,6 @@ boolbase@^1.0.0:
83758370
resolved "https://registry.yarnpkg.com/boolbase/-/boolbase-1.0.0.tgz#68dff5fbe60c51eb37725ea9e3ed310dcc1e776e"
83768371
integrity sha512-JZOSA7Mo9sNGB8+UjSgzdLtokWAky1zbztM3WRLCbZ70/3cTANmQmOdR7y2g+J0e2WXywy1yS468tY+IruqEww==
83778372

8378-
brace-expansion@^1.1.7:
8379-
version "1.1.12"
8380-
resolved "https://registry.yarnpkg.com/brace-expansion/-/brace-expansion-1.1.12.tgz#ab9b454466e5a8cc3a187beaad580412a9c5b843"
8381-
integrity sha512-9T9UjW3r0UW5c1Q7GTwllptXwhvYmEzFhzMfZ9H7FQWt+uZePjZPjBP/W1ZEyZ1twGWom5/56TF4lPcqjnDHcg==
8382-
dependencies:
8383-
balanced-match "^1.0.0"
8384-
concat-map "0.0.1"
8385-
8386-
brace-expansion@^2.0.1:
8387-
version "2.0.2"
8388-
resolved "https://registry.yarnpkg.com/brace-expansion/-/brace-expansion-2.0.2.tgz#54fc53237a613d854c7bd37463aad17df87214e7"
8389-
integrity sha512-Jt0vHyM+jmUBqojB7E1NIYadt0vI0Qxjxd2TErW94wDz+E2LAm5vKMXXwg6ZZBTHPuUlDgQHKXvjGBdfcF1ZDQ==
8390-
dependencies:
8391-
balanced-match "^1.0.0"
8392-
83938373
brace-expansion@^5.0.2:
83948374
version "5.0.3"
83958375
resolved "https://registry.yarnpkg.com/brace-expansion/-/brace-expansion-5.0.3.tgz#6a9c6c268f85b53959ec527aeafe0f7300258eef"
@@ -8849,11 +8829,6 @@ compute-scroll-into-view@^3.1.0:
88498829
resolved "https://registry.yarnpkg.com/compute-scroll-into-view/-/compute-scroll-into-view-3.1.1.tgz#02c3386ec531fb6a9881967388e53e8564f3e9aa"
88508830
integrity sha512-VRhuHOLoKYOy4UbilLbUzbYg93XLjv2PncJC50EuTWPA3gaja1UjBsUP/D/9/juV3vQFr6XBEzn9KCAHdUvOHw==
88518831

8852-
concat-map@0.0.1:
8853-
version "0.0.1"
8854-
resolved "https://registry.yarnpkg.com/concat-map/-/concat-map-0.0.1.tgz#d8a96bd77fd68df7793a73036a3ba0d5405d477b"
8855-
integrity sha512-/Srv4dswyQNBfohGpz9o6Yb3Gz3SrUDqBH5rTuhGR7ahtlbYKnVxw2bCFMRljaA7EXHaXZ8wsHdodFvbkhKmqg==
8856-
88578832
content-disposition@^1.0.0:
88588833
version "1.0.0"
88598834
resolved "https://registry.yarnpkg.com/content-disposition/-/content-disposition-1.0.0.tgz#844426cb398f934caefcbb172200126bc7ceace2"
@@ -13022,34 +12997,13 @@ minimalistic-assert@^1.0.1:
1302212997
resolved "https://registry.yarnpkg.com/minimalistic-assert/-/minimalistic-assert-1.0.1.tgz#2e194de044626d4a10e7f7fbc00ce73e83e4d5c7"
1302312998
integrity sha512-UtJcAD4yEaGtjPezWuO9wC4nwUnVH/8/Im3yEHQP4b67cXlD/Qr9hdITCU1xDbSEXg2XKNaP8jsReV7vQd00/A==
1302412999

13025-
minimatch@^10.2.1:
13000+
minimatch@10.2.2, minimatch@^10.2.1, minimatch@^3.0.2, minimatch@^3.0.4, minimatch@^3.1.1, minimatch@^3.1.2, minimatch@^5.0.1, minimatch@^9.0.0, minimatch@^9.0.4, minimatch@^9.0.5:
1302613001
version "10.2.2"
1302713002
resolved "https://registry.yarnpkg.com/minimatch/-/minimatch-10.2.2.tgz#361603ee323cfb83496fea2ae17cc44ea4e1f99f"
1302813003
integrity sha512-+G4CpNBxa5MprY+04MbgOw1v7So6n5JY166pFi9KfYwT78fxScCeSNQSNzp6dpPSW2rONOps6Ocam1wFhCgoVw==
1302913004
dependencies:
1303013005
brace-expansion "^5.0.2"
1303113006

13032-
minimatch@^3.0.2, minimatch@^3.0.4, minimatch@^3.1.1, minimatch@^3.1.2:
13033-
version "3.1.2"
13034-
resolved "https://registry.yarnpkg.com/minimatch/-/minimatch-3.1.2.tgz#19cd194bfd3e428f049a70817c038d89ab4be35b"
13035-
integrity sha512-J7p63hRiAjw1NDEww1W7i37+ByIrOWO5XQQAzZ3VOcL0PNybwpfmV/N05zFAzwQ9USyEcX6t3UO+K5aqBQOIHw==
13036-
dependencies:
13037-
brace-expansion "^1.1.7"
13038-
13039-
minimatch@^5.0.1:
13040-
version "5.1.6"
13041-
resolved "https://registry.yarnpkg.com/minimatch/-/minimatch-5.1.6.tgz#1cfcb8cf5522ea69952cd2af95ae09477f122a96"
13042-
integrity sha512-lKwV/1brpG6mBUFHtb7NUmtABCb2WZZmm2wNiOA5hAb8VdCS4B3dtMWyvcoViccwAW/COERjXLt0zP1zXUN26g==
13043-
dependencies:
13044-
brace-expansion "^2.0.1"
13045-
13046-
minimatch@^9.0.0, minimatch@^9.0.4, minimatch@^9.0.5:
13047-
version "9.0.5"
13048-
resolved "https://registry.yarnpkg.com/minimatch/-/minimatch-9.0.5.tgz#d74f9dd6b57d83d8e98cfb82133b03978bc929e5"
13049-
integrity sha512-G6T0ZX48xgozx7587koeX9Ys2NYy6Gmv//P89sEte9V9whIapMNF4idKxnW2QtCcLiTWlb/wfCabAtAFWhhBow==
13050-
dependencies:
13051-
brace-expansion "^2.0.1"
13052-
1305313007
minimist@^1.2.0, minimist@^1.2.5, minimist@^1.2.6:
1305413008
version "1.2.8"
1305513009
resolved "https://registry.yarnpkg.com/minimist/-/minimist-1.2.8.tgz#c1a464e7693302e082a075cee0c057741ac4772c"

0 commit comments

Comments
 (0)