Skip to content

Conversation

@nextcloud-command
Copy link
Contributor

@nextcloud-command nextcloud-command commented Mar 16, 2025

Audit report

This audit fix resolves 1 of the total 16 vulnerabilities found in your project.

Updated dependencies

Fixed vulnerabilities

vite #

  • Vite's server.fs.deny bypassed with /. for files under project root
  • Severity: moderate
  • Reference: GHSA-859w-5945-r5v3
  • Affected versions: 6.2.0 - 6.2.6
  • Package usage:
    • node_modules/vite

@nextcloud-command nextcloud-command added 3. to review dependencies Pull requests that update a dependency file labels Mar 16, 2025
@nextcloud-command nextcloud-command force-pushed the automated/noid/master-fix-npm-audit branch from 4334d08 to 10c60be Compare March 23, 2025 03:22
@nextcloud-command nextcloud-command force-pushed the automated/noid/master-fix-npm-audit branch 2 times, most recently from ea78101 to 1fe801d Compare April 6, 2025 03:35
@nextcloud-command nextcloud-command force-pushed the automated/noid/master-fix-npm-audit branch 2 times, most recently from 5ba970e to 6c26256 Compare April 20, 2025 03:41
@nextcloud-command nextcloud-command force-pushed the automated/noid/master-fix-npm-audit branch from 6c26256 to ce8d09c Compare April 27, 2025 03:46
@nextcloud-command nextcloud-command force-pushed the automated/noid/master-fix-npm-audit branch from ce8d09c to dfd2103 Compare May 4, 2025 03:45
@susnux susnux merged commit 6865ff4 into master May 6, 2025
41 checks passed
@susnux susnux deleted the automated/noid/master-fix-npm-audit branch May 6, 2025 12:00
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

3. to review dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants