Skip to content

Resolve high severity security vulnerabilities#176

Merged
bencollen33 merged 1 commit into
masterfrom
vuln-updates
May 27, 2026
Merged

Resolve high severity security vulnerabilities#176
bencollen33 merged 1 commit into
masterfrom
vuln-updates

Conversation

@bencollen33
Copy link
Copy Markdown
Contributor

  • Bump axios from 1.11.0 to 1.15.2 (production dep) to patch 4 CVEs: prototype pollution, header injection, NO_PROXY bypass
  • Add resolutions for devDep vulnerabilities: @babel/traverse, braces, cross-spawn, flatted, json5, marked, minimatch, minimist, picomatch, semver

- Bump axios from 1.11.0 to 1.15.2 (production dep) to patch 4 CVEs:
  prototype pollution, header injection, NO_PROXY bypass
- Add resolutions for devDep vulnerabilities: @babel/traverse, braces,
  cross-spawn, flatted, json5, marked, minimatch, minimist, picomatch, semver

Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
@bencollen33 bencollen33 requested a review from a team as a code owner May 27, 2026 21:23
@sonarqubecloud
Copy link
Copy Markdown

@bencollen33 bencollen33 merged commit 0884c71 into master May 27, 2026
2 checks passed
@bencollen33 bencollen33 deleted the vuln-updates branch May 27, 2026 21:29
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants