Skip to content

Commit 4eb4b56

Browse files
committed
[INTERNAL] Bump tar from 7.5.6 to 7.5.7
Resolves alerts for several security advisories such as: GHSA-34x7-hfp2-rc4v As per our assessment those vulnerabilities are not exploitable in the context of UI5 CLI. The override for tar is specifically defined where necessary in order to not downgrade tar in case a new major version is being used by other dependencies.
1 parent ea4e521 commit 4eb4b56

2 files changed

Lines changed: 4 additions & 4 deletions

File tree

package-lock.json

Lines changed: 3 additions & 3 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -66,7 +66,7 @@
6666
},
6767
"overrides": {
6868
"pacote@19": {
69-
"tar": "^7.5.6"
69+
"tar": "^7.5.7"
7070
}
7171
}
7272
}

0 commit comments

Comments
 (0)