Commit 3008ec6
Docs npm-tar vulnerability (#680)
Fix npm-tar vulnerability (CVE-2026-23745) by upgrading to 7.5.4
- Added pnpm override to force tar >= 7.5.3
- Updated pnpm-lock.yaml to use tar@7.5.4
- Resolves TOO-351
Co-authored-by: Cursor Agent <cursoragent@cursor.com>1 parent ae46ddf commit 3008ec6
2 files changed
Lines changed: 13 additions & 5 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
104 | 104 | | |
105 | 105 | | |
106 | 106 | | |
107 | | - | |
| 107 | + | |
| 108 | + | |
| 109 | + | |
| 110 | + | |
| 111 | + | |
| 112 | + | |
108 | 113 | | |
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.
0 commit comments