Skip to content

Conversation

@nextcloud-command
Copy link
Contributor

@nextcloud-command nextcloud-command commented Mar 16, 2025

Audit report

This audit fix resolves 1 of the total 17 vulnerabilities found in your project.

Updated dependencies

Fixed vulnerabilities

vite #

  • Vite's server.fs.deny bypassed with /. for files under project root
  • Severity: moderate
  • Reference: GHSA-859w-5945-r5v3
  • Affected versions: 0.11.0 - 6.1.6
  • Package usage:
    • node_modules/vite

@nextcloud-command nextcloud-command added 3. to review dependencies Pull requests that update a dependency file labels Mar 16, 2025
@nextcloud-command nextcloud-command force-pushed the automated/noid/stable31-fix-npm-audit branch 2 times, most recently from bb76360 to 7dc2cfa Compare March 30, 2025 03:35
@nextcloud-command nextcloud-command force-pushed the automated/noid/stable31-fix-npm-audit branch from 7dc2cfa to 655e338 Compare April 6, 2025 03:35
@nextcloud-command nextcloud-command force-pushed the automated/noid/stable31-fix-npm-audit branch 2 times, most recently from 81cc3df to 175c815 Compare April 20, 2025 03:28
@nextcloud-command nextcloud-command force-pushed the automated/noid/stable31-fix-npm-audit branch from 175c815 to 8fbb65c Compare April 27, 2025 03:40
@nextcloud-command nextcloud-command force-pushed the automated/noid/stable31-fix-npm-audit branch from 8fbb65c to a9d3250 Compare May 4, 2025 03:39
@susnux susnux merged commit 437f631 into stable31 May 6, 2025
40 of 41 checks passed
@susnux susnux deleted the automated/noid/stable31-fix-npm-audit branch May 6, 2025 12:02
@blizzz blizzz mentioned this pull request May 6, 2025
10 tasks
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

3. to review dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants