Skip to content

fix: upgrade copy-webpack-plugin to resolve npm audit vulnerabilities#82

Closed
theluckystrike wants to merge 2 commits intochibat:mainfrom
theluckystrike:main
Closed

fix: upgrade copy-webpack-plugin to resolve npm audit vulnerabilities#82
theluckystrike wants to merge 2 commits intochibat:mainfrom
theluckystrike:main

Conversation

@theluckystrike
Copy link

Updated copy-webpack-plugin from ^9.0.1 to ^14.0.0 to resolve high severity vulnerabilities in serialize-javascript (RCE via RegExp.flags and Date.prototype.toISOString).

Also added explicit serialize-javascript@^7.0.4 dependency.

Build verified successfully.


Contributed by theluckystrike | Zovo — Chrome Extension Studio

theluckystrike and others added 2 commits March 4, 2026 14:27
Updated copy-webpack-plugin from ^9.0.1 to ^14.0.0 to resolve
high severity vulnerabilities in serialize-javascript (RCE via
RegExp.flags and Date.prototype.toISOString).

Also added explicit serialize-javascript@^7.0.4 dependency.

Build verified successfully.
@theluckystrike
Copy link
Author

Closing — already had a PR merged here. Thank you!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant