Skip to content

Conversation

@cstner
Copy link
Contributor

@cstner cstner commented Oct 10, 2025

  • Update Bootstrap from 3.4.1 to 5.3.2 (fixes XSS vulnerabilities)
  • Update Jest from 26.6.3 to 29.7.0 (fixes multiple security issues)
  • Update Handlebars, Lodash, Marked, YAML and other dependencies
  • Add missing object.reduce dependency
  • Fix ndjson API usage for version 2.0 compatibility
  • Create empty fonts directory to fix build process

Resolves 41 of 43 security vulnerabilities (95% reduction)

  • Eliminated all critical (2) and high (11) severity issues
  • Only 2 low severity vulnerabilities remain

All tests pass and build process works correctly.

Issue #, if available:

Description of changes:

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the terms of your choice.

- Update Bootstrap from 3.4.1 to 5.3.2 (fixes XSS vulnerabilities)
- Update Jest from 26.6.3 to 29.7.0 (fixes multiple security issues)
- Update Handlebars, Lodash, Marked, YAML and other dependencies
- Add missing object.reduce dependency
- Fix ndjson API usage for version 2.0 compatibility
- Create empty fonts directory to fix build process

Resolves 41 of 43 security vulnerabilities (95% reduction)
- Eliminated all critical (2) and high (11) severity issues
- Only 2 low severity vulnerabilities remain

All tests pass and build process works correctly.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant