Skip to content

fix: fix vuln CVE-2026-44705 BED-8394#2834

Open
Holocraft wants to merge 1 commit into
stage/v9.2.0from
BED-8394-staging
Open

fix: fix vuln CVE-2026-44705 BED-8394#2834
Holocraft wants to merge 1 commit into
stage/v9.2.0from
BED-8394-staging

Conversation

@Holocraft
Copy link
Copy Markdown
Contributor

@Holocraft Holocraft commented May 27, 2026

Description

This fix patches the tmp package which has a high severity vulnerability.
More here: GHSA-ph9p-34f9-6g65

Motivation and Context

Resolves: BED-8394

How Has This Been Tested?

Manually

Screenshots (optional):

Types of changes

  • Bug fix (non-breaking change which fixes an issue)

Checklist:

@Holocraft Holocraft self-assigned this May 27, 2026
@Holocraft Holocraft added the bug Something isn't working label May 27, 2026
@Holocraft Holocraft requested review from a team as code owners May 27, 2026 20:27
@Holocraft Holocraft added the dependencies Pull requests that update a dependency file label May 27, 2026
@coderabbitai
Copy link
Copy Markdown
Contributor

coderabbitai Bot commented May 27, 2026

Important

Review skipped

Auto reviews are disabled on base/target branches other than the default branch.

Please check the settings in the CodeRabbit UI or the .coderabbit.yaml file in this repository. To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration

Configuration used: Repository YAML (base), Organization UI (inherited)

Review profile: CHILL

Plan: Pro

Run ID: 6a2bec6a-e7f1-440d-ae2e-ec5f1686bc29

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review
✨ Finishing Touches
🧪 Generate unit tests (beta)
  • Create PR with unit tests
  • Commit unit tests in branch BED-8394-staging

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands and usage tips.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

bug Something isn't working dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant