Skip to content

Commit 483e553

Browse files
B4nanclaude
andcommitted
fix: resolve tar security vulnerability in website
Add yarn resolutions to fix high-severity tar vulnerability (requires 7.5.7) in transitive dependencies. Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
1 parent adf0bdb commit 483e553

File tree

2 files changed

+8
-5
lines changed

2 files changed

+8
-5
lines changed

website/package.json

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -47,5 +47,8 @@
4747
"rimraf": "^6.0.0",
4848
"typescript": "^5.0.0"
4949
},
50-
"packageManager": "yarn@4.12.0"
50+
"packageManager": "yarn@4.12.0",
51+
"resolutions": {
52+
"tar": "7.5.7"
53+
}
5154
}

website/yarn.lock

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -16920,16 +16920,16 @@ __metadata:
1692016920
languageName: node
1692116921
linkType: hard
1692216922

16923-
"tar@npm:^7.5.2":
16924-
version: 7.5.6
16925-
resolution: "tar@npm:7.5.6"
16923+
"tar@npm:7.5.7":
16924+
version: 7.5.7
16925+
resolution: "tar@npm:7.5.7"
1692616926
dependencies:
1692716927
"@isaacs/fs-minipass": "npm:^4.0.0"
1692816928
chownr: "npm:^3.0.0"
1692916929
minipass: "npm:^7.1.2"
1693016930
minizlib: "npm:^3.1.0"
1693116931
yallist: "npm:^5.0.0"
16932-
checksum: 10c0/08af3807035957650ad5f2a300c49ca4fe0566ac0ea5a23741a5b5103c6da42891a9eeaed39bc1fbcf21c5cac4dc846828a004727fb08b9d946322d3144d1fd2
16932+
checksum: 10c0/51f261afc437e1112c3e7919478d6176ea83f7f7727864d8c2cce10f0b03a631d1911644a567348c3063c45abdae39718ba97abb073d22aa3538b9a53ae1e31c
1693316933
languageName: node
1693416934
linkType: hard
1693516935

0 commit comments

Comments
 (0)