Commit c258b9d
fix: add @xmldom/xmldom override to patch XML injection vulnerability (APS-18524)
Adds npm override for @xmldom/xmldom >=0.9.9 to fix GHSA-wh4c-j3r5-mjhp
(XML injection via unsafe CDATA serialization, CVSS 7.5).
The package is a transitive dev dependency.
Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>1 parent 3584970 commit c258b9d
1 file changed
Lines changed: 2 additions & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
29 | 29 | | |
30 | 30 | | |
31 | 31 | | |
32 | | - | |
| 32 | + | |
| 33 | + | |
33 | 34 | | |
34 | 35 | | |
0 commit comments