Skip to content

fix(deps): Bump diff to 5.2.2#19228

Open
chargome wants to merge 1 commit intodevelopfrom
fix/bump-diff-5.2.2
Open

fix(deps): Bump diff to 5.2.2#19228
chargome wants to merge 1 commit intodevelopfrom
fix/bump-diff-5.2.2

Conversation

@chargome
Copy link
Member

@chargome chargome commented Feb 7, 2026

Bump diff from 5.1.0 to 5.2.2 to address CVE-2026-24001 (DoS via unbounded memory allocation in parsePatch and applyPatch).

Bump diff from 5.1.0 to 5.2.2 to address CVE-2026-24001 (DoS via
unbounded memory allocation in parsePatch and applyPatch).

Co-Authored-By: Claude <noreply@anthropic.com>
@chargome chargome self-assigned this Feb 7, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant