-
-
Notifications
You must be signed in to change notification settings - Fork 32.6k
Closed
Description
Hi,
Is there any plan to bum [email protected] to 2.0.2 to address CVE-2025-5889.
Rgds
{
"Target": "Node.js",
"Class": "lang-pkgs",
"Type": "node-pkg",
"Vulnerabilities": [
{
"VulnerabilityID": "",
"PkgID": "[email protected]",
"PkgName": "brace-expansion",
"PkgPath": "opt/node/lib/node_modules/npm/node_modules/brace-expansion/package.json",
"PkgIdentifier": {
"PURL": "pkg:npm/[email protected]",
"UID": "f7064848b69f9c00"
},
"InstalledVersion": "2.0.1",
"FixedVersion": "2.0.2, 1.1.12, 3.0.1, 4.0.1",
"Status": "fixed",
"Layer": {
"Digest": "sha256:07ac928e322a60aad69b8ace00c0df1352491c9e060d6f5fdc70ed63fb2e6337",
"DiffID": "sha256:2eac788af8f932875e7aad62c6becd316aefb825d6045fb9dcdb777a83d92ab3"
},
Metadata
Metadata
Assignees
Labels
No labels