Skip to content

Handle vulnerabilities - #20

Merged
js-soft-ops merged 1 commit into
mainfrom
handle-vulnerabilities
Aug 18, 2026
Merged

Handle vulnerabilities#20
js-soft-ops merged 1 commit into
mainfrom
handle-vulnerabilities

Conversation

@js-soft-ops

Copy link
Copy Markdown

This PR was created automatically because npm audit found vulnerabilities.

Advisory ID Severity Action
GHSA-23c5-xmqv-rm74 High Added Exception
GHSA-3ppc-4f35-3m26 High Added Exception
GHSA-52cp-r559-cp3m High Added Exception
GHSA-5p4m-2wfm-xmqj High Added Exception
GHSA-7r86-cg39-jmmj High Added Exception
GHSA-h67p-54hq-rp68 Medium Added Exception
GHSA-mh29-5h37-fv8m Medium Added Exception
GHSA-vpq2-c234-7xj6 Low Added Exception
GHSA-w5hq-g745-h8pq Medium Added Exception

Workflow run: https://github.com/nmshd/typescript-ioc/actions/runs/32093123573

@js-soft-ops js-soft-ops added the chore Some routine work like updating dependencies label Aug 18, 2026
@js-soft-ops
js-soft-ops requested review from a team, Milena-Czierlinski and tnotheis August 18, 2026 02:49
@js-soft-npm-audit-approver

Copy link
Copy Markdown

Automatic approval was not made because .nsprc adds 9 exception(s), which is more than 2.

1 similar comment
@js-soft-npm-audit-approver

Copy link
Copy Markdown

Automatic approval was not made because .nsprc adds 9 exception(s), which is more than 2.

@js-soft-ops
js-soft-ops enabled auto-merge (squash) August 18, 2026 02:49
@js-soft-ops
js-soft-ops merged commit dd178de into main Aug 18, 2026
2 checks passed
@js-soft-ops
js-soft-ops deleted the handle-vulnerabilities branch August 18, 2026 05:56
@tnotheis

Copy link
Copy Markdown
Member

I approved this because there have been that many vulnerabilities since a long time already. They only were excluded because the audit had been limited to dev dependencies before.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

chore Some routine work like updating dependencies

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants