Skip to content

Commit 94eff86

Browse files
fix handlebars, serialize-javascript and path-to-regexp sec vuln (#23400)
1 parent 34166ed commit 94eff86

2 files changed

Lines changed: 598 additions & 478 deletions

File tree

ui/package.json

Lines changed: 5 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -34,16 +34,17 @@
3434
"@babel/runtime@<7.26.10": ">=7.26.10",
3535
"cross-spawn@<6.0.6": ">=6.0.6",
3636
"cross-spawn@>=7.0.0 <7.0.5": ">=7.0.5",
37-
"path-to-regexp@<0.1.12": ">=0.1.12",
37+
"path-to-regexp@<0.1.13": "=0.1.13",
3838
"prismjs@<1.30.0": ">=1.30.0",
3939
"on-headers@<1.1.0": ">=1.1.0",
4040
"tmp@<=0.2.3": ">=0.2.4",
4141
"rollup@<2.80.0": ">=2.80.0",
42-
"qs": ">=6.14.1",
42+
"qs": ">=6.14.2",
4343
"underscore": ">=1.13.8",
4444
"immutable": ">=5.1.5",
45-
"serialize-javascript@<=7.0.2": ">=7.0.3",
46-
"socket.io-parser@<4.2.6": ">=4.2.6"
45+
"serialize-javascript@<=7.0.4": ">=7.0.5",
46+
"socket.io-parser@<4.2.6": ">=4.2.6",
47+
"handlebars@<4.7.9": ">=4.7.9"
4748
}
4849
}
4950
}

0 commit comments

Comments
 (0)