Skip to content

fix: Addressed security vulnerability by updating brace-expansion#140

Merged
jkalandaibm merged 1 commit intomasterfrom
update-brace-expansion
Jun 19, 2025
Merged

fix: Addressed security vulnerability by updating brace-expansion#140
jkalandaibm merged 1 commit intomasterfrom
update-brace-expansion

Conversation

@jkalandaibm
Copy link
Copy Markdown
Collaborator

@jkalandaibm jkalandaibm commented Jun 19, 2025

dependency: none

PR summary

The Issue is addressing the following vulnerability

image

https://github.com/IBM/networking-java-sdk/security/dependabot/24

Fixes: package brace-expansion was identified to have a vulnerability. A new patched version was released addressing the very vulnerability, consequently I'm updating the version 2.0.2

PR Checklist

Please make sure that your PR fulfills the following requirements:

  • The commit message follows the Angular Commit Message Guidelines.
  • Tests for the changes have been added (for bug fixes / features)
  • Docs have been added / updated (for bug fixes / features)

PR Type

  • Bugfix
  • Feature
  • Code style update (formatting, local variables)
  • Refactoring (no functional changes, no api changes)
  • New tests
  • Build/CI related changes
  • Documentation content changes
  • Other (please describe)

What is the current behavior?

Behavior wasn't altered

What is the new behavior?

Behavior wasn't altered

Does this PR introduce a breaking change?

  • Yes
  • No

Other information

dependency: none
Signed-off-by: jkalanda <jkalanda@us.ibm.com>
@jkalandaibm jkalandaibm force-pushed the update-brace-expansion branch from 801ed96 to f2d4549 Compare June 19, 2025 15:48
@jkalandaibm jkalandaibm changed the title fix: Fixed security alert by updating brace-expansion fix: Addressed security vulnerability by updating brace-expansion Jun 19, 2025
@jkalandaibm jkalandaibm merged commit e09770c into master Jun 19, 2025
4 checks passed
@jkalandaibm jkalandaibm deleted the update-brace-expansion branch June 19, 2025 17:07
MalarvizhiK pushed a commit that referenced this pull request Jun 19, 2025
## [0.39.1](0.39.0...0.39.1) (2025-06-19)

### Bug Fixes

* Addressed security vulnerability by updating brace-expansion([#140](#140)) ([e09770c](e09770c))
@MalarvizhiK
Copy link
Copy Markdown
Member

🎉 This PR is included in version 0.39.1 🎉

The release is available on GitHub release

Your semantic-release bot 📦🚀

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants