Skip to content

dependabot#21 - audit glob vulnerability#64

Merged
fredrikbryntesson merged 1 commit intomasterfrom
glob-audit-fix
Nov 21, 2025
Merged

dependabot#21 - audit glob vulnerability#64
fredrikbryntesson merged 1 commit intomasterfrom
glob-audit-fix

Conversation

@ChriJ
Copy link
Contributor

@ChriJ ChriJ commented Nov 20, 2025

Change

Packages have changed version in the package-lock file after running "npm audit fix"

Rationale

Dependabot found a vulnerability in the package glob

Impact

Vulnerability found should not exist

Risk

  • The change does not increase the risk to the system and does therefore not require any extra risk analysis.
  • A separate risk analysis has been performed and is linked below.

Rollback

  • Rollback is performed by reverting the merge and redeploy.
  • Rollback of this change requires special actions as outlined below.

@ChriJ ChriJ requested a review from a team as a code owner November 20, 2025 15:50
@fredrikbryntesson fredrikbryntesson merged commit 7f08c8f into master Nov 21, 2025
4 checks passed
@fredrikbryntesson fredrikbryntesson deleted the glob-audit-fix branch November 21, 2025 20:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants