Commit 12feb34
committed
chore: upgrade protobufjs to ^7.6.5 to address CVE-2026-59877
Refreshes the yarn.lock entry for protobufjs from 7.6.4 to 7.6.5 to
address CVE-2026-59877 (DoS via infinite loop in .proto option parsing).
All existing ^7.x ranges already admit the patched version.
Generated with [Linear](https://linear.app/sourcebot/issue/SOU-1556/sourcebot-devsourcebot-cve-2026-59877-protobufjs-denial-of-service-via#agent-session-2252c8a0)
Co-authored-by: linear-code[bot] <222613912+linear-code[bot]@users.noreply.github.com>1 parent fbfea1a commit 12feb34
2 files changed
Lines changed: 6 additions & 3 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
7 | 7 | | |
8 | 8 | | |
9 | 9 | | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
10 | 13 | | |
11 | 14 | | |
12 | 15 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
20244 | 20244 | | |
20245 | 20245 | | |
20246 | 20246 | | |
20247 | | - | |
20248 | | - | |
| 20247 | + | |
| 20248 | + | |
20249 | 20249 | | |
20250 | 20250 | | |
20251 | 20251 | | |
| |||
20258 | 20258 | | |
20259 | 20259 | | |
20260 | 20260 | | |
20261 | | - | |
| 20261 | + | |
20262 | 20262 | | |
20263 | 20263 | | |
20264 | 20264 | | |
| |||
0 commit comments