Skip to content

Fix js-yaml audit vulnerability - #1228

Merged
brunoborges merged 1 commit into
mainfrom
brunoborges-fix-npm-audit
Aug 7, 2026
Merged

Fix js-yaml audit vulnerability#1228
brunoborges merged 1 commit into
mainfrom
brunoborges-fix-npm-audit

Conversation

@brunoborges

Copy link
Copy Markdown
Contributor

Description:
Upgrade the transitive js-yaml dependency from 3.15.0 to 3.15.1, resolving high-severity advisory GHSA-5p4m-2wfm-xmqj. npm audit now reports zero vulnerabilities.

Related issue:
N/A

Check list:

  • Ran npm run check locally (format, lint, build, test) and all checks pass.
  • Documentation changes are not required.
  • Tests were not added or updated because this is a lockfile-only transitive dependency patch.

Upgrade the transitive js-yaml dependency to 3.15.1 to resolve GHSA-5p4m-2wfm-xmqj.\n\nCo-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com>
@brunoborges
brunoborges requested a review from a team as a code owner August 7, 2026 03:07
Copilot AI lite review requested due to automatic review settings August 7, 2026 03:07

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot wasn't able to review any files in this pull request.

@brunoborges
brunoborges merged commit a52a3de into main Aug 7, 2026
85 checks passed
@brunoborges
brunoborges deleted the brunoborges-fix-npm-audit branch August 7, 2026 03:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants