Skip to content

Conversation

@peterpeterparker
Copy link
Member

@peterpeterparker peterpeterparker commented Apr 8, 2025

Motivation

Another week, anoter security issue in vite. Similarly to latest incidents (#610 and #614), we are not affected but, for the state of the art, let's bump vite to resolve CVE-2025-31486.

Changes

  • Bump vite v6.2.5
  • Bumo related dev dependencies

@peterpeterparker peterpeterparker requested review from a team as code owners April 8, 2025 06:38
Copy link
Contributor

@AntonioVentilii AntonioVentilii left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thank you for the fix!

@peterpeterparker peterpeterparker merged commit ba7d441 into main Apr 8, 2025
11 checks passed
@peterpeterparker peterpeterparker deleted the build/vite--CVE-2025-31486 branch April 8, 2025 07:45
bitdivine pushed a commit that referenced this pull request Apr 10, 2025
# Motivation

Another day, anoter security issue in vite. Similarly to latest
incidents (#610, #614 and #617), we are not affected but, for the state
of the art, let's bump vite to resolve
[GHSA-356w-63v5-8wf4](GHSA-356w-63v5-8wf4).

# Changes

- Bump vite v6.2.6
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants