Commit d2e3cb4
committed
fix(security): update league/commonmark to 2.8.2 and symfony/yaml to safe version
Fixes CVE for league/commonmark embed extension allowed_domains bypass.
Fixes CVE-2026-33532 for npm yaml stack overflow via deeply nested collections.
Regenerated composer.lock with correct PHP version constraints.1 parent 3ca0d79 commit d2e3cb4
1 file changed
Lines changed: 595 additions & 395 deletions
0 commit comments