Skip to content

fix: brace-expansion regular expression denial of service vulnerability#15637

Merged
FelixMalfait merged 1 commit intomainfrom
dependabot-238
Nov 5, 2025
Merged

fix: brace-expansion regular expression denial of service vulnerability#15637
FelixMalfait merged 1 commit intomainfrom
dependabot-238

Conversation

@mabdullahabaid
Copy link
Copy Markdown
Member

Resolves Dependabot Alert 238 - brace-expansion regular expression denial of service vulnerability.

This alert was closed yesterday, but yarn.lock went back to the previous versions somehow when an unrelated PR was reverted. Therefore, creating a PR again.

Versions on main:

image

Updated versions in the PR:

image

@greptile-apps
Copy link
Copy Markdown
Contributor

greptile-apps bot commented Nov 5, 2025

Skipped: No reviewable files found. Found: (yarn.lock)

@FelixMalfait FelixMalfait merged commit da1399a into main Nov 5, 2025
61 checks passed
@FelixMalfait FelixMalfait deleted the dependabot-238 branch November 5, 2025 13:34
@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Nov 5, 2025

Thanks @mabdullahabaid for your contribution!
This marks your 46th PR on the repo. You're top 1% of all our contributors 🎉
See contributor page - Share on LinkedIn - Share on Twitter

Contributions

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants