fix: update vulnerable dependencies (picomatch, node-forge, tar, undici, brace-expansion, yaml) #26
Labels
No labels
source:analyste
source:defenseur
source:human
source:medic
status:approved
status:blocked
status:in-progress
status:needs-fix
status:ready
status:review
status:triage
type:bug
type:feature
type:infra
type:refactor
type:schema
type:security
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference: maximus/simpl-liste#26
Loading…
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Vulnerabilités détectées par defenseur-simpl
Scan de sécurité ayant identifié 6 vulnérabilités (4 HIGH, 2 moderate). Toutes sont des dépendances transitives.
Travail à faire
npm audit fixnpm auditne rapporte plus de vulnérabilitésnpm start)Fichiers concernés
package-lock.json— seul fichier modifié (mises à jour transitives)Critères d'acceptation
npm auditrapporte 0 vulnérabilitésnpm startdémarre sans erreurpackage.jsonComplexité
Simple —
npm audit fix, mises à jour patch/minor uniquementSource: defenseur-simpl security scan
fix: update vulnerable dependencies (picomatch, node-forge, tar, undici)to fix: update vulnerable dependencies (picomatch, node-forge, tar, undici, brace-expansion, yaml)