Skip to content

STOP-5061 -- Fixed critical vulnerabilities#206

Open
SB-ChetanKorde wants to merge 3 commits intomasterfrom
fix-critical-vulnerabilities
Open

STOP-5061 -- Fixed critical vulnerabilities#206
SB-ChetanKorde wants to merge 3 commits intomasterfrom
fix-critical-vulnerabilities

Conversation

@SB-ChetanKorde
Copy link

Motivation and Context

We got critical vulnerabilities to fix from this ui-kit repo.

#InsertIssueNumberHere

Description

we updated the ui-kit to resolve all critical vulnerabilities and then fixed remaining moderate/low severity vulnerabilities (mostly via dependency/security-related changes) and pushed them on fix-critical-vulnerabilities

How Has This Been Tested?

Note : This repo is working on node 12 version and also use python2.7 version which is outdated, still we resolved critical/potential vulnerabilities with existing versions. we install all packages using command : yarn install --ignore-engines (this way it will not give node-gyp error for old python syntax for print statement.)

Critical vulnerabilities are fixed-

Perform unit testing and verification as below -

Run storybook - yarn storybook

Run yarn build

Run yarn build.tw

Run yarn build.styles

Run yarn test

@SB-ChetanKorde SB-ChetanKorde changed the title STOP-5061 : Fixed critical vulnerabilities STOP-5061 -- Fixed critical vulnerabilities Feb 24, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant