Skip to content
This repository was archived by the owner on Jan 27, 2026. It is now read-only.

Conversation

@ona-security-engineer
Copy link

Automated security fix by Ona Agent.

Summary

Upgrades glob from 10.4.5 to 10.5.0 to remediate CVE-2025-64756.

Vulnerability Details

Changes

  • Added overrides section to frontend/package.json to force glob@^10.5.0
  • Updated frontend/package-lock.json with the patched version

Verification

  • ✅ All 70 tests pass

Resolves: JONAS-31

Add overrides section to frontend/package.json to force glob@^10.5.0,
remediating command injection vulnerability in glob CLI.

Co-authored-by: Ona <[email protected]>
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants