Skip to content

[stable33] Fix npm audit - #945

Open
nextcloud-command wants to merge 1 commit into
stable33from
automated/noid/stable33-fix-npm-audit
Open

[stable33] Fix npm audit#945
nextcloud-command wants to merge 1 commit into
stable33from
automated/noid/stable33-fix-npm-audit

Conversation

@nextcloud-command

@nextcloud-command nextcloud-command commented Jul 19, 2026

Copy link
Copy Markdown
Contributor

Audit report

This audit fix resolves 1 of the total 45 vulnerabilities found in your project.

Updated dependencies

Fixed vulnerabilities

dompurify #

  • DOMPurify: CUSTOM_ELEMENT_HANDLING bypasses afterSanitizeElements for allowed custom elements.
  • Severity: low
  • Reference: GHSA-c2j3-45gr-mqc4
  • Affected versions: <=3.4.11
  • Package usage:
    • node_modules/dompurify

@nextcloud-command nextcloud-command added 3. to review dependencies Pull requests that update a dependency file labels Jul 19, 2026
@nextcloud-command
nextcloud-command force-pushed the automated/noid/stable33-fix-npm-audit branch from 10ed1c0 to 62c3592 Compare July 31, 2026 12:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

3. to review dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant