Commit 98095b9
fix: patch protobufjs + basic-ftp + regenerate lockfile for xmldom/axios overrides
- Add protobufjs (^7.5.5) override to patch arbitrary code execution (APS-18824, GHSA-xq3m-2v4x-88gg)
- Add basic-ftp (>=5.2.2) override to patch FTP CRLF command injection (APS-18663, GHSA-chqc-8p9q-pq6q)
- Regenerate package-lock.json so existing @xmldom/xmldom (APS-18823) and axios (APS-18720) overrides take effect
Resulting installed versions:
@xmldom/xmldom 0.9.8 -> 0.9.10
axios 1.13.2 -> 1.15.1
basic-ftp 5.2.0 -> 5.3.0
protobufjs 7.5.4 -> 7.5.5
Co-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>1 parent dfb1b20 commit 98095b9
2 files changed
Lines changed: 1141 additions & 490 deletions
0 commit comments