Skip to content

fix markdown-it CVE-2026-2327#3077

Merged
Gerrit0 merged 1 commit intoTypeStrong:masterfrom
maerzhase:feat/up-markdown-it-for-CVE-2026-2327
Feb 20, 2026
Merged

fix markdown-it CVE-2026-2327#3077
Gerrit0 merged 1 commit intoTypeStrong:masterfrom
maerzhase:feat/up-markdown-it-for-CVE-2026-2327

Conversation

@maerzhase
Copy link
Copy Markdown
Contributor

@maerzhase maerzhase commented Feb 16, 2026

Updated the markdown-it dependency to fix ReDoS Vulnerability. This has no breaking changes and is a simple security fix.

Link: https://www.sentinelone.com/vulnerability-database/cve-2026-2327/

Checklist

  • pnpm build compiles successfully
  • pnpm test passes (1041 passing)
  • pnpm run lint passes with 0 warnings

Closes #3080

@Gerrit0 Gerrit0 merged commit 831c9f4 into TypeStrong:master Feb 20, 2026
8 checks passed
@Gerrit0
Copy link
Copy Markdown
Collaborator

Gerrit0 commented Feb 20, 2026

Thanks!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Transitive minimatch dependency vulnerable to ReDoS (CVE-2026-26996)

2 participants