Skip to content

Commit 79a02b4

Browse files
chargomeclaude
andcommitted
fix(deps): Bump vite to 5.4.21
Addresses CVE-2025-62522 (GHSA-93m4-6634-74q7), a medium severity server.fs.deny bypass via backslash on Windows in vite dev server. Co-Authored-By: Claude <noreply@anthropic.com>
1 parent 3580d70 commit 79a02b4

File tree

1 file changed

+3
-3
lines changed

1 file changed

+3
-3
lines changed

yarn.lock

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -31932,9 +31932,9 @@ vite@^4.4.9:
3193231932
fsevents "~2.3.2"
3193331933

3193431934
vite@^5.0.0, vite@^5.4.11, vite@^5.4.5:
31935-
version "5.4.19"
31936-
resolved "https://registry.yarnpkg.com/vite/-/vite-5.4.19.tgz#20efd060410044b3ed555049418a5e7d1998f959"
31937-
integrity sha512-qO3aKv3HoQC8QKiNSTuUM1l9o/XX3+c+VTgLHbJWHZGeTPVAg2XwazI9UWzoxjIJCGCV2zU60uqMzjeLZuULqA==
31935+
version "5.4.21"
31936+
resolved "https://registry.npmjs.org/vite/-/vite-5.4.21.tgz"
31937+
integrity sha512-o5a9xKjbtuhY6Bi5S3+HvbRERmouabWbyUcpXXUA1u+GNUKoROi9byOJ8M0nHbHYHkYICiMlqxkg1KkYmm25Sw==
3193831938
dependencies:
3193931939
esbuild "^0.21.3"
3194031940
postcss "^8.4.43"

0 commit comments

Comments
 (0)