From 9ca459f18f5722431cd46ccb8858580de2061003 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Eligio=20Mari=C3=B1o?= <22875166+gmeligio@users.noreply.github.com> Date: Tue, 31 Mar 2026 22:59:33 +0200 Subject: [PATCH] fix(deps): bump yaml from 2.8.2 to 2.8.3 (#432) - Bumps `yaml` from 2.8.2 to 2.8.3 in `docs/src/package-lock.json` - Fixes CVE-2026-33532: Stack Overflow via deeply nested YAML collections (medium severity) - Resolves https://github.com/gmeligio/flutter-docker-image/security/dependabot/9 --- docs/src/package-lock.json | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/docs/src/package-lock.json b/docs/src/package-lock.json index 5ef7cc1..d846416 100644 --- a/docs/src/package-lock.json +++ b/docs/src/package-lock.json @@ -3213,9 +3213,9 @@ } }, "node_modules/yaml": { - "version": "2.8.2", - "resolved": "https://registry.npmjs.org/yaml/-/yaml-2.8.2.tgz", - "integrity": "sha512-mplynKqc1C2hTVYxd0PU2xQAc22TI1vShAYGksCCfxbn/dFwnHTNi1bvYsBTkhdUNtGIf5xNOg938rrSSYvS9A==", + "version": "2.8.3", + "resolved": "https://registry.npmjs.org/yaml/-/yaml-2.8.3.tgz", + "integrity": "sha512-AvbaCLOO2Otw/lW5bmh9d/WEdcDFdQp2Z2ZUH3pX9U2ihyUY0nvLv7J6TrWowklRGPYbB/IuIMfYgxaCPg5Bpg==", "license": "ISC", "bin": { "yaml": "bin.mjs"