Skip to content

Conversation

@nextcloud-command
Copy link
Contributor

@nextcloud-command nextcloud-command commented Dec 14, 2025

Audit report

This audit fix resolves 2 of the total 24 vulnerabilities found in your project.

Updated dependencies

Fixed vulnerabilities

@nextcloud/dialogs #

  • Caused by vulnerable dependency:
  • Affected versions: 7.0.0-rc.0 - 7.1.0
  • Package usage:
    • node_modules/@nextcloud/dialogs

diff #

  • jsdiff has a Denial of Service vulnerability in parsePatch and applyPatch
  • Severity: low
  • Reference: GHSA-73rr-hh4g-fpgx
  • Affected versions: <8.0.3
  • Package usage:
    • node_modules/diff

@nextcloud-command nextcloud-command added 3. to review dependencies Pull requests that update a dependency file labels Dec 14, 2025
@enjeck enjeck force-pushed the automated/noid/main-fix-npm-audit branch from b83b08a to e449c75 Compare December 16, 2025 05:26
@nextcloud-command nextcloud-command force-pushed the automated/noid/main-fix-npm-audit branch from e449c75 to bc2e4a0 Compare December 28, 2025 03:32
@nextcloud-command nextcloud-command force-pushed the automated/noid/main-fix-npm-audit branch from bc2e4a0 to 0843146 Compare January 4, 2026 03:37
@nextcloud-command nextcloud-command force-pushed the automated/noid/main-fix-npm-audit branch from 0843146 to a78e350 Compare January 11, 2026 03:47
Signed-off-by: GitHub <noreply@github.com>
@nextcloud-command nextcloud-command force-pushed the automated/noid/main-fix-npm-audit branch from a78e350 to 6923c89 Compare January 18, 2026 03:38
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

3. to review dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants