Skip to content

Commit 2d2e454

Browse files
committed
deps: svgo 4.1.0 (CVE-2026-84369, CVE-2026-84370)
Both open Dependabot alerts on the site are svgo removeScripts sanitization bypasses, fixed in 4.1.0. Lockfile bumped; build clean.
1 parent 997c0bc commit 2d2e454

2 files changed

Lines changed: 18 additions & 16 deletions

File tree

package-lock.json

Lines changed: 17 additions & 16 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

package.json

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -36,6 +36,7 @@
3636
"astro": "^7.0.0",
3737
"interscript": "^5.2.1",
3838
"onnxruntime-web": "^1.29.0",
39+
"svgo": "^4.1.0",
3940
"tailwindcss": "^4.0.0",
4041
"vue": "^3.5.42"
4142
},

0 commit comments

Comments
 (0)