Skip to content

Conversation

@CodePoetPro
Copy link

Summary

This PR resolves all npm audit vulnerabilities with minimal code changes.

Changes

  • Update glob from 10.3.12 to 10.5.0 (fixes high severity command injection)
  • Update @nestjs/common and @nestjs/core from 10.3.8 to 10.4.20 (fixes moderate/high severity vulnerabilities)
  • Update lint-staged from 15.2.2 to 15.5.2 (fixes moderate severity ReDoS)
  • Update nodemailer from 6.9.13 to 7.0.11 (fixes moderate severity vulnerabilities)
  • Add overrides to force all nodemailer dependencies to use 7.0.11

Results

  • Before: 10 vulnerabilities (3 low, 4 moderate, 3 high)
  • After: 0 vulnerabilities

All changes are version updates only - no code changes required.

- Update glob from 10.3.12 to 10.5.0 (fixes high severity command injection)
- Update @nestjs/common and @nestjs/core from 10.3.8 to 10.4.20 (fixes moderate/high severity vulnerabilities)
- Update lint-staged from 15.2.2 to 15.5.2 (fixes moderate severity ReDoS)
- Update nodemailer from 6.9.13 to 7.0.11 (fixes moderate severity vulnerabilities)
- Add overrides to force all nodemailer dependencies to use 7.0.11

Resolves all 10 vulnerabilities (3 low, 4 moderate, 3 high) to 0 vulnerabilities.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant