From 4b41d5f5eca5b7e3fbe219dbbe9733e24697f02e Mon Sep 17 00:00:00 2001 From: "copilot-swe-agent[bot]" <198982749+Copilot@users.noreply.github.com> Date: Thu, 22 Jan 2026 13:44:02 +0000 Subject: [PATCH 1/2] Initial plan From 1da687b32d262d3b2d1c16349612eca40c966eea Mon Sep 17 00:00:00 2001 From: "copilot-swe-agent[bot]" <198982749+Copilot@users.noreply.github.com> Date: Thu, 22 Jan 2026 13:46:20 +0000 Subject: [PATCH 2/2] Upgrade tar dependency from 7.5.2 to 7.5.4 to fix CVE-2026-23950 Co-authored-by: cclauss <3709715+cclauss@users.noreply.github.com> --- package.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/package.json b/package.json index ae60687844..fd7fdba34c 100644 --- a/package.json +++ b/package.json @@ -29,7 +29,7 @@ "nopt": "^9.0.0", "proc-log": "^6.0.0", "semver": "^7.3.5", - "tar": "^7.5.2", + "tar": "^7.5.4", "tinyglobby": "^0.2.12", "which": "^6.0.0" },