Vuln GHSA-w5hq-g745-h8pq sur uuid <10.0.0 #85

Closed
opened 2026-05-02 16:13:29 +00:00 by defenseur-auto-bot · 0 comments
Collaborator

Vuln GHSA-w5hq-g745-h8pq detectee (uuid <10.0.0, manque de bounds check v3/v5/v6).
18 findings transitifs simpl-liste (Expo).
Fix: override uuid ^11.0.0 (CJS, uuid@11.1.1) — version minimale compatible GHSA et CommonJS.
Risque QA: faible — uuid@11 est la cible recommandee npm pour CJS, smoke tests 6/6 pass.
Source: defenseur-simpl-liste 2026-05-02.

Vuln GHSA-w5hq-g745-h8pq detectee (uuid <10.0.0, manque de bounds check v3/v5/v6). 18 findings transitifs simpl-liste (Expo). Fix: override uuid ^11.0.0 (CJS, uuid@11.1.1) — version minimale compatible GHSA et CommonJS. Risque QA: faible — uuid@11 est la cible recommandee npm pour CJS, smoke tests 6/6 pass. Source: defenseur-simpl-liste 2026-05-02.
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference: maximus/simpl-liste#85
No description provided.