Skip to content

fix(deps): resolve lodash security vulnerability#3255

Open
Xilis wants to merge 1 commit intonestjs:masterfrom
Xilis:fix/lodash-security-vulnerability
Open

fix(deps): resolve lodash security vulnerability#3255
Xilis wants to merge 1 commit intonestjs:masterfrom
Xilis:fix/lodash-security-vulnerability

Conversation

@Xilis
Copy link

@Xilis Xilis commented Jan 27, 2026

Update node-emoji from 1.11.0 to 2.2.0 and bump lodash subdependency to 4.17.23

Refs: CVE-2025-13465

PR Checklist

Please check if your PR fulfills the following requirements:

PR Type

What kind of change does this PR introduce?

[x] Bugfix
[ ] Feature
[ ] Code style update (formatting, local variables)
[ ] Refactoring (no functional changes, no api changes)
[ ] Build related changes
[ ] CI related changes
[ ] Other... Please describe:

What is the current behavior?

Issue Number: N/A

What is the new behavior?

Does this PR introduce a breaking change?

[ ] Yes
[x] No

Other information

Update node-emoji from 1.11.0 to 2.2.0 and bump lodash subdependency to 4.17.23

Refs: CVE-2025-13465
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant