Skip to content

fix(deps): update axios to 1.15.0 to resolve SSRF and DoS vulnerabilities (Dependabot #53)#73

Merged
flynncao merged 2 commits intomainfrom
copilot/main
Apr 13, 2026
Merged

fix(deps): update axios to 1.15.0 to resolve SSRF and DoS vulnerabilities (Dependabot #53)#73
flynncao merged 2 commits intomainfrom
copilot/main

Conversation

Copy link
Copy Markdown
Contributor

Copilot AI commented Apr 13, 2026

  • Add pnpm.overrides in package.json to pin picomatch@<2.3.22.3.2 and picomatch@>=4.0.0 <4.0.44.0.4
  • Run pnpm install to update pnpm-lock.yaml
  • Verified: picomatch@2.3.1 → 2.3.2, picomatch@4.0.2 → 4.0.4 in lock file

@flynncao flynncao merged commit 88766e8 into main Apr 13, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants