Skip to content

Conversation

@karen-avetisyan-mc
Copy link
Contributor

@karen-avetisyan-mc karen-avetisyan-mc commented Nov 24, 2025

Summary

Overview

This pull request addresses a reported security vulnerability (CVE-2024-57699) in the json-smart dependency. The following changes have been made to ensure the project remains secure and up-to-date:

Key Changes

Updated json-smart Dependency: Upgraded to version 2.6.0 to resolve the CVE-2024-57699 security issue.
Updated json-path Dependency: Upgraded to the latest version to fix transitive dependency issues related to json-smart.

Impact

These updates mitigate known security risks and improve overall dependency hygiene. No changes were made to application logic or functionality.

Copy link
Contributor

@ShimonaR-MC ShimonaR-MC left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

approved

@ShimonaR-MC ShimonaR-MC merged commit c5d3e3a into main Nov 25, 2025
9 of 11 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants