Files
trading_bot_v4/package-lock.json
copilot-swe-agent[bot] fcc74d5b4d fix: Resolve npm audit security vulnerabilities
- Update next from 15.5.0-15.5.6 to 15.5.7 (Critical RCE fixed)
- Update glob from 10.2.0-10.4.5 to 10.5.0 (High command injection fixed)
- Update js-yaml from 4.0.0-4.1.0 to 4.1.1 (Moderate prototype pollution fixed)
- Build verified successful after updates

Remaining unfixable vulnerabilities (transitive deps in @drift-labs/sdk):
- bigint-buffer (high) - requires breaking change to SDK
- nanoid (moderate) - requires breaking change to SDK

Security: Fixes 3 of 5 vulnerabilities, remaining are in third-party SDK

Co-authored-by: mindesbunister <32161838+mindesbunister@users.noreply.github.com>
2025-12-05 08:53:29 +00:00

472 KiB