Skip to content

Conversation

@massakam
Copy link
Contributor

@massakam massakam commented Jun 20, 2025

Motivation

The currently used version of brace-expansion contains the following vulnerability:
https://www.cve.org/CVERecord?id=CVE-2025-5889

Modifications

Upgraded brace-expansion by running npm audit fix.

Verifying this change

  • Make sure that the change passes the CI checks.

Documentation

  • doc-not-needed
@massakam massakam added this to the 1.14.0 milestone Jun 20, 2025
@massakam massakam self-assigned this Jun 20, 2025
@shibd shibd merged commit 9529355 into apache:master Jun 24, 2025
12 checks passed
@massakam massakam deleted the upgrade-brace-expansion branch June 24, 2025 02:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment