Conversation
Co-authored-by: Mariano Fuentes <marfuen98@gmail.com>
|
The latest updates on your projects. Learn more about Vercel for GitHub. 2 Skipped Deployments
|
🔒 Comp AI - Security Review🔴 Risk Level: HIGH3 OSV/npm CVEs found (2 high, 1 low). Code paths accept or store HTML/SVG and raw metadata — risk of stored XSS and unsafe file handling. 📦 Dependency Vulnerabilities🟠 NPM Packages (HIGH)Risk Score: 8/10 | Summary: 2 high, 1 low CVEs found
🛡️ Code Security AnalysisView 6 file(s) with issues🔴 apps/api/src/attachments/attachments.service.ts (HIGH Risk)
Recommendations:
🟡 apps/api/src/attachments/upload-attachment.dto.ts (MEDIUM Risk)
Recommendations:
🔴 apps/api/src/tasks/attachments.service.ts (HIGH Risk)
Recommendations:
🔴 apps/api/src/tasks/dto/upload-attachment.dto.ts (HIGH Risk)
Recommendations:
🟡 apps/app/src/app/(app)/[orgId]/tasks/[taskId]/components/TaskBody.tsx (MEDIUM Risk)
Recommendations:
🔴 packages/docs/openapi.json (HIGH Risk)
Recommendations:
💡 RecommendationsView 3 recommendation(s)
Powered by Comp AI - AI that handles compliance for you. Reviewed Nov 20, 2025 |
|
|
|
🎉 This PR is included in version 1.61.0 🎉 The release is available on GitHub release Your semantic-release bot 📦🚀 |
This is an automated pull request to release the candidate branch into production, which will trigger a deployment.
It was created by the [Production PR] action.