Commit 1575e29
authored
chore(deps): bump tar-fs from 2.1.3 to 2.1.4 (#7395)
# Motivation
To handle the following vulnerability:
```
tar-fs 2.0.0 - 2.1.3
Severity: high
tar-fs has a symlink validation bypass if destination directory is predictable with a specific tarball - GHSA-vj76-c3g6-qr5v
fix available via `npm audit fix`
node_modules/tar-fs
```
# Changes
- Bump the version with `npm audit fix`
# Tests
- CI should pass
# Todos
- [x] Accessibility (a11y) – any impact?
- [x] Changelog – is it needed?1 parent 639ee93 commit 1575e29
1 file changed
+3
-3
lines changedSome generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.
0 commit comments