Skip to content

[stable34] Fix npm audit#8739

Open
nextcloud-command wants to merge 1 commit into
stable34from
automated/noid/stable34-fix-npm-audit
Open

[stable34] Fix npm audit#8739
nextcloud-command wants to merge 1 commit into
stable34from
automated/noid/stable34-fix-npm-audit

Conversation

@nextcloud-command

@nextcloud-command nextcloud-command commented Jun 14, 2026

Copy link
Copy Markdown
Collaborator

Audit report

This audit fix resolves 1 of the total 36 vulnerabilities found in your project.

Updated dependencies

Fixed vulnerabilities

markdown-it #

  • markdown-it: Quadratic complexity DoS in smartquotes rule via replaceAt string operations
  • Severity: moderate (CVSS 5.3)
  • Reference: GHSA-6v5v-wf23-fmfq
  • Affected versions: <=14.1.1
  • Package usage:
    • node_modules/markdown-it

@AndyScherzinger AndyScherzinger force-pushed the automated/noid/stable34-fix-npm-audit branch from 8600876 to 0108587 Compare June 18, 2026 11:26
Signed-off-by: GitHub <noreply@github.com>
@nextcloud-command nextcloud-command force-pushed the automated/noid/stable34-fix-npm-audit branch from 0108587 to 092f66a Compare June 21, 2026 04:23
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

3. to review dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants