Skip to content

Conversation

@jcdc-bot
Copy link
Collaborator

snyk-top-banner

Snyk has created this PR to fix 1 vulnerabilities in the npm dependencies of this project.

Snyk changed the following file(s):

  • src/jcdcdev.Umbraco.ExtendedMarkdownEditor.Client/package.json
  • src/jcdcdev.Umbraco.ExtendedMarkdownEditor.Client/package-lock.json

Vulnerabilities that will be fixed with an upgrade:

Issue Score
medium severity Directory Traversal
SNYK-JS-VITE-13644406
  172  

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Directory Traversal

… src/jcdcdev.Umbraco.ExtendedMarkdownEditor.Client/package-lock.json to reduce vulnerabilities

The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-JS-VITE-13644406
@jcdc-bot
Copy link
Collaborator Author

Snyk checks have passed. No issues have been found so far.

Status Scanner Critical High Medium Low Total (0)
Open Source Security 0 0 0 0 0 issues

💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse.

@github-actions github-actions bot requested a review from jcdcdev October 27, 2025 09:17
@jcdcdev jcdcdev merged commit e8ae227 into dev/v16 Oct 28, 2025
3 checks passed
@github-actions github-actions bot changed the title [Snyk] Security upgrade vite from 7.1.10 to 7.1.11 16.0.4-alpha0006 Oct 28, 2025
@github-actions github-actions bot added the ✅ released Indicates that the release has been successfully published. label Oct 28, 2025
@github-actions github-actions bot changed the title 16.0.4-alpha0006 16.0.4-alpha0006 (released) Oct 28, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

✅ released Indicates that the release has been successfully published.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants