fix: patch 8/9 npm audit vulnerabilities via pnpm.overrides #92

Merged
privilegedescalation-engineer[bot] merged 1 commits from fix/npm-audit-vulnerabilities into main 2026-03-21 23:45:32 +00:00

1 Commits

Author SHA1 Message Date
Gandalf the Greybeard 2c80d0451e fix: patch 8 of 9 npm vulnerabilities via pnpm.overrides
Move vulnerability overrides from npm-format top-level `overrides` to
pnpm-format `pnpm.overrides`. Add flatted override to patch the
high-severity prototype pollution CVE. All 5 high + 3 moderate severity
issues are now resolved.

Remaining: elliptic (low, no patch available upstream).

Co-Authored-By: Paperclip <noreply@paperclip.ing>
2026-03-21 22:41:32 +00:00