Skip to content

Conversation

@sjinks
Copy link
Member

@sjinks sjinks commented Feb 10, 2026

Dependency CVE Severity Description
@isaacs/brace-expansion CVE-2026-25547 high Uncontrolled Resource Consumption
lodash CVE-2025-13465 moderate Prototype Pollution
axios CVE-2026-25639 high Denial of Service

@github-actions
Copy link
Contributor

github-actions bot commented Feb 10, 2026

Dependency Review

✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.

Scanned Files

None

@sonarqubecloud
Copy link

@sjinks sjinks merged commit 98dcdc5 into trunk Feb 10, 2026
19 checks passed
@sjinks sjinks deleted the fix/deps branch February 10, 2026 20:16
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants