Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Vulnerabilities in Dependencies in Yarn 1.22.19 to 1.22.22 #9113

Open
ayoubhessoune opened this issue Nov 5, 2024 · 0 comments
Open

Vulnerabilities in Dependencies in Yarn 1.22.19 to 1.22.22 #9113

ayoubhessoune opened this issue Nov 5, 2024 · 0 comments

Comments

@ayoubhessoune
Copy link

ayoubhessoune commented Nov 5, 2024

Vulnerabilities in Dependencies in Yarn 1.22.19 to 1.22.22

Description

Yarn versions 1.22.19 to 1.22.22 have security vulnerabilities in its dependencies, specifically braces. The affected and patched versions are as follows:

1. Braces

  • Affected versions:
    • <3.0.0
  • Patched versions:
  • 3.0.3

GitHub Advisory Links

Request

Could these dependencies be updated to the patched versions in Yarn 1.22.19 to 1.22.22 ? Thank you.

@ayoubhessoune ayoubhessoune changed the title Vulnerabilities in Dependencies in Yarn 1.22.19 Vulnerabilities in Dependencies in Yarn 1.22.19 to 1.22.22 Nov 27, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant