Skip to content

chore(deps): js-yaml has prototype pollution in merge#10

Merged
roman-sainchuk merged 1 commit into
mainfrom
chore/cve-2025-64718
Jan 14, 2026
Merged

chore(deps): js-yaml has prototype pollution in merge#10
roman-sainchuk merged 1 commit into
mainfrom
chore/cve-2025-64718

Conversation

@roman-sainchuk
Copy link
Copy Markdown
Contributor

What/Why/How?

js-yaml package has prototype pollution in merge. Fixed by running npm audit fix.

Reference

Closes https://github.com/Redocly/json-to-json-schema/security/dependabot/22
Closes https://github.com/Redocly/json-to-json-schema/security/dependabot/21

Testing

Screenshots (optional)

Check yourself

  • Code is linted
  • Tested with dependencies
  • All new/updated code is covered with tests

Security

  • Security impact of change has been considered
  • Code follows company security practices and guidelines

@roman-sainchuk roman-sainchuk merged commit dc9d77d into main Jan 14, 2026
5 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants