fix: upgrade glob to 11.1.0, 10.5.0 (CVE-2025-64756)#7773
fix: upgrade glob to 11.1.0, 10.5.0 (CVE-2025-64756)#7773orbisai0security wants to merge 1 commit into
Conversation
Automated dependency upgrade by OrbisAI Security
✅ Deploy Preview for mermaid-js ready!
To edit notification comments on pull requests, go to your Netlify project configuration. |
|
@mermaid-js/examples
mermaid
@mermaid-js/layout-elk
@mermaid-js/layout-tidy-tree
@mermaid-js/mermaid-zenuml
@mermaid-js/parser
@mermaid-js/tiny
commit: |
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## develop #7773 +/- ##
=======================================
Coverage 3.26% 3.26%
=======================================
Files 599 599
Lines 60839 60839
Branches 917 917
=======================================
Hits 1986 1986
Misses 58853 58853
Flags with carried forward coverage won't be shown. Click here to find out more. 🚀 New features to boost your workflow:
|
|
The latest updates on your projects. Learn more about Argos notifications ↗︎
|
Summary
Upgrade glob from 10.4.5 to 11.1.0, 10.5.0 to fix CVE-2025-64756.
Vulnerability
CVE-2025-64756pnpm-lock.yamlDescription: glob: glob: Command Injection Vulnerability via Malicious Filenames
Changes
package.jsonpnpm-lock.yamlVerification
Automated security fix by OrbisAI Security