Skip to content

Fix Rollup path traversal vulnerability#5

Open
redaphid wants to merge 2 commits intomasterfrom
fix/rollup-path-traversal-vulnerability
Open

Fix Rollup path traversal vulnerability#5
redaphid wants to merge 2 commits intomasterfrom
fix/rollup-path-traversal-vulnerability

Conversation

@redaphid
Copy link
Copy Markdown

Summary

  • Updates rollup from 4.57.1 to 4.59.0 to fix the Arbitrary File Write via Path Traversal vulnerability (>= 4.40.2 required)

Test plan

  • Verify lockfile has rollup >= 4.40.2 (now at 4.59.0)
  • Verify build still works

🤖 Generated with Claude Code

redaphid and others added 2 commits March 16, 2026 15:47
@cloudflare-workers-and-pages
Copy link
Copy Markdown

cloudflare-workers-and-pages Bot commented Mar 16, 2026

Deploying sink with  Cloudflare Pages  Cloudflare Pages

Latest commit: 8d14602
Status: ✅  Deploy successful!
Preview URL: https://0b118b15.sink-2zy.pages.dev
Branch Preview URL: https://fix-rollup-path-traversal-vu.sink-2zy.pages.dev

View logs

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant