Skip to content

fix(lsp): Update potentially vulnerable deps in vscode client#35963

Merged
Mangern merged 1 commit intomasterfrom
magnus/brace-expansion-vuln
Feb 19, 2026
Merged

fix(lsp): Update potentially vulnerable deps in vscode client#35963
Mangern merged 1 commit intomasterfrom
magnus/brace-expansion-vuln

Conversation

@Mangern
Copy link
Contributor

@Mangern Mangern commented Feb 19, 2026

Update vsce dependency to major version 3, transitively bumping 'brace-expansion', which should fix CVE-2026-25547.
Also bumped deprecated eslint version.

Copy link
Member

@theodorklauritzen theodorklauritzen left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@Mangern Mangern merged commit e94d639 into master Feb 19, 2026
4 checks passed
@Mangern Mangern deleted the magnus/brace-expansion-vuln branch February 19, 2026 08:57
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

Comments