Skip to content

[patch] Fix mout vulnerabilities#2438

Merged
Jialecl merged 4 commits intomasterfrom
PelayoFelgueroso/fix-mout_vulnerability
Mar 19, 2026
Merged

[patch] Fix mout vulnerabilities#2438
Jialecl merged 4 commits intomasterfrom
PelayoFelgueroso/fix-mout_vulnerability

Conversation

@PelayoFelgueroso
Copy link
Collaborator

Checklist
(Check off all the items before submitting)

  • Build process is done without errors. All tests pass in the /lib directory.
  • Self-reviewed the code before submitting.
  • Meets accessibility standards.
  • Added/updated documentation to /website as needed.
  • Added/updated tests as needed.

Purpose
Add npm overrides in root and apps/website package.json to force mout@1.2.4

…abilities

- Add npm overrides in root and apps/website package.json to force mout@1.2.4
- Resolves CVE-2020-7792 (GHSA-pc58-wgmc-hfjr) and CVE-2022-21213 (GHSA-vvv8-xw5f-3f88)
- Note: npm audit db has not yet updated to recognize 1.2.4 as patched, but GitHub Advisory Database confirms the fix
- Transitive dependency via @adobe/leonardo-contrast-colors > ciebase/ciecam02 > mout
@Jialecl Jialecl merged commit 873178c into master Mar 19, 2026
1 check passed
@Jialecl Jialecl deleted the PelayoFelgueroso/fix-mout_vulnerability branch March 19, 2026 10:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants