From 0d481095aaaa0a4080d1ddb8bf9941e64d80ebc9 Mon Sep 17 00:00:00 2001 From: fengmk2 Date: Thu, 19 Dec 2024 14:48:55 +0800 Subject: [PATCH] feat: security fix on vant package (#262) see https://github.com/youzan/vant/releases/tag/v4.9.15 ## Summary by CodeRabbit - **New Features** - Enhanced tracking of problematic versions for the `vant` package with new version mappings. - Added links to relevant release notes for affected versions. --- package.json | 42 ++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 42 insertions(+) diff --git a/package.json b/package.json index cebe29a..c48caaf 100644 --- a/package.json +++ b/package.json @@ -1183,6 +1183,48 @@ "version": "1.9.0", "reason": "https://github.com/pillarjs/path-to-regexp/security/advisories/GHSA-9wv6-86v2-598j" } + }, + "vant": { + "4.9.14": { + "version": "4.9.15", + "reason": "https://github.com/youzan/vant/releases/tag/v4.9.15" + }, + "4.9.13": { + "version": "4.9.15", + "reason": "https://github.com/youzan/vant/releases/tag/v4.9.15" + }, + "4.9.12": { + "version": "4.9.15", + "reason": "https://github.com/youzan/vant/releases/tag/v4.9.15" + }, + "4.9.11": { + "version": "4.9.15", + "reason": "https://github.com/youzan/vant/releases/tag/v4.9.15" + }, + "3.6.15": { + "version": "3.6.16", + "reason": "https://github.com/youzan/vant/releases/tag/v4.9.15" + }, + "3.6.14": { + "version": "3.6.16", + "reason": "https://github.com/youzan/vant/releases/tag/v4.9.15" + }, + "3.6.13": { + "version": "3.6.16", + "reason": "https://github.com/youzan/vant/releases/tag/v4.9.15" + }, + "2.13.5": { + "version": "2.13.6", + "reason": "https://github.com/youzan/vant/releases/tag/v4.9.15" + }, + "2.13.4": { + "version": "2.13.6", + "reason": "https://github.com/youzan/vant/releases/tag/v4.9.15" + }, + "2.13.3": { + "version": "2.13.6", + "reason": "https://github.com/youzan/vant/releases/tag/v4.9.15" + } } } }