Skip to content

chore: fix thrift vulnerability#69

Merged
lenchv merged 1 commit into
lenchv:masterfrom
alfred-orcrist:fix-audit
May 7, 2026
Merged

chore: fix thrift vulnerability#69
lenchv merged 1 commit into
lenchv:masterfrom
alfred-orcrist:fix-audit

Conversation

@alfred-orcrist
Copy link
Copy Markdown
Contributor

Security vulnerability in thrift < 0.23.0 causes audits to fail in dependent projects.

This PR updates thrift to a version with a fix for GHSA-r67j-r569-jrwp

No lock file changes, due to package-lock=false in .npmrc

There seem to be no breaking changes in thrift@0.21.0 through 0.23.0. Locally all tests passed.

updates thrift package to a version with a fix for GHSA-r67j-r569-jrwp
@lenchv lenchv merged commit 63ae0db into lenchv:master May 7, 2026
1 check failed
@lenchv
Copy link
Copy Markdown
Owner

lenchv commented May 7, 2026

@alfred-orcrist all good, released v1.0.1 🚀
thanks for the contribution ❤️

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants