Skip to content

[main] Fix npm audit - #2123

Merged
enjeck merged 1 commit into
mainfrom
automated/noid/main-fix-npm-audit
Nov 7, 2025
Merged

[main] Fix npm audit#2123
enjeck merged 1 commit into
mainfrom
automated/noid/main-fix-npm-audit

Conversation

@nextcloud-command

Copy link
Copy Markdown
Contributor

Audit report

This audit fix resolves 1 of the total 14 vulnerabilities found in your project.

Updated dependencies

Fixed vulnerabilities

vite #

  • vite allows server.fs.deny bypass via backslash on Windows
  • Severity: moderate
  • Reference: GHSA-93m4-6634-74q7
  • Affected versions: 7.1.0 - 7.1.10
  • Package usage:
    • node_modules/vite

@nextcloud-command nextcloud-command added 3. to review Waiting for reviews dependencies Pull requests that update a dependency file labels Oct 26, 2025
@enjeck
enjeck force-pushed the automated/noid/main-fix-npm-audit branch from 874f796 to fe394b4 Compare October 29, 2025 05:11
@nextcloud-command
nextcloud-command force-pushed the automated/noid/main-fix-npm-audit branch from 7ec018f to 7c9eef5 Compare November 2, 2025 03:29
Signed-off-by: GitHub <noreply@github.com>
@enjeck
enjeck force-pushed the automated/noid/main-fix-npm-audit branch from 7c9eef5 to 5ef502d Compare November 7, 2025 10:06
@enjeck
enjeck merged commit 43101b9 into main Nov 7, 2025
57 of 59 checks passed
@enjeck
enjeck deleted the automated/noid/main-fix-npm-audit branch November 7, 2025 10:55
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

3. to review Waiting for reviews dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants