Skip to content

Conversation

@massakam
Copy link
Contributor

@massakam massakam commented Jun 20, 2025

Motivation

The currently used version of brace-expansion contains the following vulnerability:
https://www.cve.org/CVERecord?id=CVE-2025-5889

Modifications

Upgraded brace-expansion by running npm audit fix.

Verifying this change

  • Make sure that the change passes the CI checks.

Documentation

  • doc-not-needed

@massakam massakam added this to the 1.14.0 milestone Jun 20, 2025
@massakam massakam self-assigned this Jun 20, 2025
@shibd shibd merged commit 9529355 into apache:master Jun 24, 2025
12 checks passed
@massakam massakam deleted the upgrade-brace-expansion branch June 24, 2025 02:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants