Skip to content

fix: address Prototype Pollution via parse() in NodeJS flatted#445

Merged
paulo-ferraz-oliveira merged 1 commit intomainfrom
fix/flatted-3.4.2
Mar 28, 2026
Merged

fix: address Prototype Pollution via parse() in NodeJS flatted#445
paulo-ferraz-oliveira merged 1 commit intomainfrom
fix/flatted-3.4.2

Conversation

@paulo-ferraz-oliveira
Copy link
Copy Markdown
Collaborator

Description

Dependabot can't seem to handle https://github.com/erlef/setup-beam/security/dependabot/49, so I'm hand-rolling it.

Ran npm audit fix, locally.

@paulo-ferraz-oliveira
Copy link
Copy Markdown
Collaborator Author

@starbelly, adding you FYI, but this is a pretty boring one...

@paulo-ferraz-oliveira paulo-ferraz-oliveira merged commit 5dfda65 into main Mar 28, 2026
78 checks passed
@paulo-ferraz-oliveira paulo-ferraz-oliveira deleted the fix/flatted-3.4.2 branch March 28, 2026 23:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant