Skip to content

Upgrade lodash from 4.17.21 to 4.17.23 to address Prototype Pollution vulnerability#2090

Merged
AJIXuMuK merged 1 commit intopnp:devfrom
akshataggrwal:fix/lodash-version
Feb 28, 2026
Merged

Upgrade lodash from 4.17.21 to 4.17.23 to address Prototype Pollution vulnerability#2090
AJIXuMuK merged 1 commit intopnp:devfrom
akshataggrwal:fix/lodash-version

Conversation

@akshataggrwal
Copy link
Copy Markdown
Contributor

Q A
Bug fix? [ ]
New feature? [ ]
New sample? [ ]
Related issues? fixes #X, partially #Y, mentioned in #Z

What's in this Pull Request?

This PR upgrades lodash from 4.17.21 to 4.17.23 to address a known Prototype Pollution vulnerability reported in earlier versions.

@AJIXuMuK AJIXuMuK added this to the 3.24.0 milestone Feb 28, 2026
@AJIXuMuK AJIXuMuK merged commit 96ec108 into pnp:dev Feb 28, 2026
1 check passed
@AJIXuMuK
Copy link
Copy Markdown
Collaborator

Thank you @akshataggrwal!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants