Skip to content

⚠️ LOW security issue [dependabot:npm/@babel/core] in @babel/core #50

Description

@jlocke2

Dependabot detected 1 open advisor(y/ies) in @babel/core (npm) in PipelineDeals/pipeline-js-api-client.
Bumping @babel/core to a non-vulnerable version should clear all of them in one change.

Priority: low (highest in group) · Due: 2026-09-24 (soonest alert deadline)

Alerts:

  • GHSA-4x5r-pxfx-6jf8 — low, detected 2026-06-26, due 2026-09-24 — @babel/core: Arbitrary File Read via sourceMappingURL Comment

Auto-filed & deduped by dependency. Auto-closes when no open Dependabot alert remains for this package. Don't open a second ticket for another @babel/core alert — it belongs here.

Metadata

Metadata

Assignees

Labels

dependabotDependency vulnerability (Dependabot)lowLow severitysecuritySecurity vulnerability (Dependabot)

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions