Skip to content

Commit 6f2c3d9

Browse files
authored
fix(deps): resolve Dependabot security alerts (#20)
Bump @modelcontextprotocol/sdk to ^1.29.0 to address ReDoS (GHSA-8r9q-7v3j-jr4g) and DNS rebinding (GHSA-w48q-cv73-mx4w) advisories. Run npm audit fix to update transitive dependencies js-yaml, minimatch, flatted, picomatch, ajv, and brace-expansion. Resolves all 9 open Dependabot alerts; npm audit reports 0 vulnerabilities.
1 parent 2e23cf2 commit 6f2c3d9

2 files changed

Lines changed: 956 additions & 98 deletions

File tree

0 commit comments

Comments
 (0)