Skip to content

[stable5.11] Fix npm audit - #13454

Open
nextcloud-command wants to merge 1 commit into
stable5.11from
automated/noid/stable5.11-fix-npm-audit
Open

[stable5.11] Fix npm audit#13454
nextcloud-command wants to merge 1 commit into
stable5.11from
automated/noid/stable5.11-fix-npm-audit

Conversation

@nextcloud-command

@nextcloud-command nextcloud-command commented Aug 10, 2026

Copy link
Copy Markdown
Contributor

Audit report

This audit fix resolves 1 of the total 33 vulnerabilities found in your project.

Updated dependencies

Fixed vulnerabilities

dompurify #

  • DOMPurify: IN_PLACE hook removal leaves a detached subtree executable, causing XSS
  • Severity: moderate
  • Reference: GHSA-55q2-fjhq-7xh7
  • Affected versions: <=3.4.12
  • Package usage:
    • node_modules/dompurify

@nextcloud-command
nextcloud-command force-pushed the automated/noid/stable5.11-fix-npm-audit branch 2 times, most recently from e47e36b to e4b9ac8 Compare August 18, 2026 03:24
@ChristophWurst
ChristophWurst enabled auto-merge (squash) August 18, 2026 20:29
Signed-off-by: GitHub <noreply@github.com>
@ChristophWurst
ChristophWurst force-pushed the automated/noid/stable5.11-fix-npm-audit branch from 8acf31c to fa3303c Compare August 19, 2026 07:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant