Skip to content

[stable31] Fix npm audit#3399

Closed
nextcloud-command wants to merge 0 commit intostable31from
automated/noid/stable31-fix-npm-audit
Closed

[stable31] Fix npm audit#3399
nextcloud-command wants to merge 0 commit intostable31from
automated/noid/stable31-fix-npm-audit

Conversation

@nextcloud-command
Copy link
Contributor

@nextcloud-command nextcloud-command commented Feb 1, 2026

Audit report

This audit fix resolves 1 of the total 105 vulnerabilities found in your project.

Updated dependencies

Fixed vulnerabilities

qs #

  • qs's arrayLimit bypass in comma parsing allows denial of service
  • Severity: low (CVSS 3.7)
  • Reference: GHSA-w7fw-mjwx-w883
  • Affected versions: 6.7.0 - 6.14.1
  • Package usage:
    • node_modules/qs

@nextcloud-command nextcloud-command added 3. to review Waiting for reviews dependencies Pull requests that update a dependency file labels Feb 1, 2026
@nextcloud-command nextcloud-command force-pushed the automated/noid/stable31-fix-npm-audit branch 2 times, most recently from b217605 to 29be7e1 Compare February 15, 2026 03:56
@nextcloud-command nextcloud-command force-pushed the automated/noid/stable31-fix-npm-audit branch from 29be7e1 to 1d85dd7 Compare February 22, 2026 03:49
@nextcloud-command nextcloud-command force-pushed the automated/noid/stable31-fix-npm-audit branch from 1d85dd7 to 3576435 Compare March 1, 2026 03:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

3. to review Waiting for reviews dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant