Skip to content

fixed 31 high severity vulnerabilities#295

Merged
ash-wright123 merged 7 commits intomasterfrom
aw/fix_vulnerabilities
Feb 25, 2026
Merged

fixed 31 high severity vulnerabilities#295
ash-wright123 merged 7 commits intomasterfrom
aw/fix_vulnerabilities

Conversation

@ash-wright123
Copy link
Collaborator

@ash-wright123 ash-wright123 commented Feb 24, 2026

Run no harm testing.

@mwclemy
Copy link
Collaborator

mwclemy commented Feb 24, 2026

I'm seeing this error trying to launch connect:

Screenshot 2026-02-24 at 14 25 04

mwclemy
mwclemy previously approved these changes Feb 24, 2026
Copy link
Collaborator

@mwclemy mwclemy left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Looks good!

@Jameson13B
Copy link
Collaborator

I would like to look into the vulnerability that is coming from the package to MXConnect:

raja@2.0.0 /Users/jameson.brown/repos/connect-widget
├─┬ @mxenabled/connect-widget@2.19.0 overridden
│ └─┬ vite-plugin-dts@4.2.4
│   ├─┬ @microsoft/api-extractor@7.47.7
│   │ └── minimatch@3.0.8

Looks like it is the vite-plugin-dts package. Do you see issues with this on the package side? When linked and audit is run, does it solve this on the MX side? I can pull down and test but just checking with y'all as well.

@ash-wright123 ash-wright123 merged commit 7b72526 into master Feb 25, 2026
6 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants