Skip to content

Commit d2e3cb4

Browse files
fix(security): update league/commonmark to 2.8.2 and symfony/yaml to safe version
Fixes CVE for league/commonmark embed extension allowed_domains bypass. Fixes CVE-2026-33532 for npm yaml stack overflow via deeply nested collections. Regenerated composer.lock with correct PHP version constraints.
1 parent 3ca0d79 commit d2e3cb4

1 file changed

Lines changed: 595 additions & 395 deletions

File tree

0 commit comments

Comments
 (0)