Skip to content

[stable31] Fix npm audit#3447

Open
nextcloud-command wants to merge 1 commit intostable31from
automated/noid/stable31-fix-npm-audit
Open

[stable31] Fix npm audit#3447
nextcloud-command wants to merge 1 commit intostable31from
automated/noid/stable31-fix-npm-audit

Conversation

@nextcloud-command
Copy link
Copy Markdown
Contributor

@nextcloud-command nextcloud-command commented Mar 8, 2026

Audit report

This audit fix resolves 1 of the total 55 vulnerabilities found in your project.

Updated dependencies

Fixed vulnerabilities

qs #

  • qs's arrayLimit bypass in comma parsing allows denial of service
  • Severity: low (CVSS 3.7)
  • Reference: GHSA-w7fw-mjwx-w883
  • Affected versions: 6.7.0 - 6.14.1
  • Package usage:
    • node_modules/qs

@nextcloud-command nextcloud-command added 3. to review Waiting for reviews dependencies Pull requests that update a dependency file labels Mar 8, 2026
@nextcloud-command nextcloud-command force-pushed the automated/noid/stable31-fix-npm-audit branch 2 times, most recently from f62e8c1 to 4f51258 Compare March 22, 2026 03:55
Signed-off-by: GitHub <noreply@github.com>
@nextcloud-command nextcloud-command force-pushed the automated/noid/stable31-fix-npm-audit branch from 4f51258 to ace1bbc Compare March 29, 2026 04:02
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

3. to review Waiting for reviews dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant