Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

More audit updates #5086

Merged
merged 2 commits into from
Oct 3, 2023
Merged

More audit updates #5086

merged 2 commits into from
Oct 3, 2023

Conversation

jinchung
Copy link
Member

@jinchung jinchung commented Oct 2, 2023

Fixes APP-832

@linear
Copy link

linear bot commented Oct 2, 2023

APP-832 Vulnerability: GHSA-m95q-7qp3-xv42 and GHSA-gxpj-cx7g-858c

Advisory title: Zod denial of service vulnerability

Advisory URL: GHSA-m95q-7qp3-xv42

Advisory title: Regular Expression Denial of Service in debug

Advisory URL: GHSA-gxpj-cx7g-858c

Copy link
Contributor

@skylarbarrera skylarbarrera left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

this seems fine but these seem like we can use bump the packages instead of ignoring

@jinchung
Copy link
Member Author

jinchung commented Oct 3, 2023

this seems fine but these seem like we can use bump the packages instead of ignoring

you can check my comment in Linear ticket

@jinchung jinchung merged commit 5e6e784 into develop Oct 3, 2023
@jinchung jinchung deleted the @jin/audit-updates branch October 3, 2023 13:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants