Skip to content

[PB-4995] fix(security): resolve critical form-data boundary vulnerability" --body "Fixes critical CVE in form-data dependency by updating to secure version >=4.0.4#36

Merged
apsantiso merged 1 commit into
masterfrom
PB-4995/fix/critical-form-data-boundary-vulnerability
Sep 19, 2025
Merged

[PB-4995] fix(security): resolve critical form-data boundary vulnerability" --body "Fixes critical CVE in form-data dependency by updating to secure version >=4.0.4#36
apsantiso merged 1 commit into
masterfrom
PB-4995/fix/critical-form-data-boundary-vulnerability

Conversation

@douglas-xt
Copy link
Copy Markdown
Contributor

  • Addresses unsafe random function in boundary generation
  • Updated packages:
    • axios: ^1.8.4 → ^1.12.2
    • @types/supertest: ^6.0.2 → ^6.0.3
    • supertest: ^7.0.0 → ^7.1.4

@apsantiso apsantiso merged commit 23ce267 into master Sep 19, 2025
4 of 5 checks passed
@apsantiso apsantiso deleted the PB-4995/fix/critical-form-data-boundary-vulnerability branch September 19, 2025 12:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants