Bump qs to 6.15.2 to address CVE GHSA-q8mj-m7cp-5q26
envgap__expressjs__express-7304
01 / FAILURE SIGNATURE
As reported upstream
No identifying execution failure has been captured.
Not a benchmark task.
- The project already builds and runs before the fix, so there is nothing to repair.
02 / ENVIRONMENT RECIPE
- Base commit
dae209ae6559c29cfca2a1f4414c51d89ea643d5- Manifest
package.json- Reproduce
Awaiting issue-specific recipe- Run under trace
Awaiting a meaningful runtime command
03 / ORIGINAL ISSUE TEXT
expressjs/express #7304 · read the original issue
https://github.com/advisories/GHSA-q8mj-m7cp-5q26 Change here: https://github.com/expressjs/express/blob/dae209ae6559c29cfca2a1f4414c51d89ea643d5/package.json#L55
04 / LABELS
Labels from the report text only; not yet run
No supported category has been assigned.
Label rules and the text that matched
[]