Skip to content

Vulnerable to CVE-2026-8657 #59

Description

@jimmythomson

The jsondiffpatch dependency is vulnerable to https://www.cve.org/CVERecord?id=CVE-2026-8657 and flagged as high priority in our Snyk scans. It's fixed in 0.7.6. I appreciate that jsondiffpatch is ESM only after 0.5 which will make the change non-trivial.

Thanks.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions