Update vulnerable npm dependencies
envgap__microsoft__node-jsonc-parser-135
01 / FAILURE SIGNATURE
As reported upstream
No identifying execution failure has been captured.
Not a benchmark task.
- In a clean container the reported failure did not reproduce, or the known fix did not make the project run.
02 / ENVIRONMENT RECIPE
- Base commit
ee57b71dad28a973488b02d5577778c54784d76a- Manifest
package.json- Reproduce
Awaiting issue-specific recipe- Run under trace
Awaiting a meaningful runtime command
03 / ORIGINAL ISSUE TEXT
microsoft/node-jsonc-parser #135 · read the original issue
Component Governance reports these npm dependency updates are available in the VS Code feed: - `brace-expansion`: `1.1.16` -> `1.1.17` - `brace-expansion`: `5.0.7` -> `5.0.8` Update the applicable distinct dependency paths and validate with relevant tests, linting, and build. Do not use dependency overrides, resolutions, `--force`, `--legacy-peer-deps`, or equivalent force flags.
04 / LABELS
Labels from the report text only; not yet run
No supported category has been assigned.
Label rules and the text that matched
[]