Commit dbea8be
chore(deps): bump path-to-regexp to 0.1.12
Adds a parent-scoped yarn resolution to force express@4.19.2's
path-to-regexp dependency from 0.1.7 to 0.1.12, patching
ReDoS vulnerability (affected range: < 0.1.12).
The 7.x consumers are unaffected.
Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>1 parent 5a14e8e commit dbea8be
2 files changed
Lines changed: 5 additions & 4 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
60 | 60 | | |
61 | 61 | | |
62 | 62 | | |
| 63 | + | |
63 | 64 | | |
64 | 65 | | |
65 | 66 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
28302 | 28302 | | |
28303 | 28303 | | |
28304 | 28304 | | |
28305 | | - | |
28306 | | - | |
28307 | | - | |
28308 | | - | |
| 28305 | + | |
| 28306 | + | |
| 28307 | + | |
| 28308 | + | |
28309 | 28309 | | |
28310 | 28310 | | |
28311 | 28311 | | |
| |||
0 commit comments