Change Request: Bumb js-yaml to version 4.3.2 to fix security vulnerability
envgap__eslint__eslintrc-241
01 / FAILURE SIGNATURE
As reported upstream
No identifying execution failure has been captured.
Not a benchmark task.
- The project already builds and runs before the fix, so there is nothing to repair.
02 / ENVIRONMENT RECIPE
- Base commit
5b4abc9c74dd92b9eb782ca81d559a88906509e9- Manifest
package.json- Reproduce
Awaiting issue-specific recipe- Run under trace
Awaiting a meaningful runtime command
03 / ORIGINAL ISSUE TEXT
eslint/eslintrc #241 · read the original issue
### What problem do you want to solve? There is a CSSV3 impact on js-yaml:4.3.1 - bumping the version to 4.3.2 fixes this ### What do you think is the correct solution? Bumping the version of js-yaml to 4.3.2 ### Participation - [x] I am willing to submit a pull request for this change. ### AI acknowledgment - [x] I did not use AI to generate this issue report. - [ ] (If the above is not checked) I have reviewed the AI-generated content before submitting. ### Additional comments _No response_
04 / LABELS
Labels from the report text only; not yet run
No supported category has been assigned.
Label rules and the text that matched
[]