Skip to content

Commit a4b0bbb

Browse files
fix(deps): update dependency title to v4 (#3719)
* fix(deps): update dependency title to v4 * Create chatty-knives-hang.md --------- Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com> Co-authored-by: Dimitri POSTOLOV <[email protected]>
1 parent 81acda0 commit a4b0bbb

File tree

3 files changed

+116
-107
lines changed

3 files changed

+116
-107
lines changed

.changeset/chatty-knives-hang.md

Lines changed: 7 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,7 @@
1+
---
2+
"nextra": patch
3+
---
4+
5+
fix(deps): update dependency title to v4
6+
7+
> This fix ReDoS vulnerability exposed via title → clipboardy → execa → cross-spawn dependency chain

packages/nextra/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -160,7 +160,7 @@
160160
"remark-smartypants": "^3.0.0",
161161
"shiki": "^1.0.0",
162162
"slash": "^5.1.0",
163-
"title": "^3.5.3",
163+
"title": "^4.0.0",
164164
"unist-util-remove": "^4.0.0",
165165
"unist-util-visit": "^5.0.0",
166166
"yaml": "^2.3.2",

0 commit comments

Comments
 (0)