Skip to content

🔒 Add script tag validation to satisfy SNYK-JS-TSUP-9056218#1314

Merged
sxzz merged 1 commit into
egoist:mainfrom
benhoad:test-patch-SNYK-JS-TSUP-9056218
Nov 12, 2025
Merged

🔒 Add script tag validation to satisfy SNYK-JS-TSUP-9056218#1314
sxzz merged 1 commit into
egoist:mainfrom
benhoad:test-patch-SNYK-JS-TSUP-9056218

Conversation

@benhoad

@benhoad benhoad commented Mar 6, 2025

Copy link
Copy Markdown
Contributor

Applied suggested fix from https://gist.github.com/jackfromeast/36f98bf7542d11835c883c1d175d9b92

Current test suite passes; investigating extended test to specifically target the CVE scenario.

@codesandbox

codesandbox Bot commented Mar 6, 2025

Copy link
Copy Markdown

Review or Edit in CodeSandbox

Open the branch in Web EditorVS CodeInsiders

Open Preview

@vercel

vercel Bot commented Mar 6, 2025

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for Git ↗︎

Name Status Preview Comments Updated (UTC)
tsup ✅ Ready (Inspect) Visit Preview 💬 Add feedback May 28, 2025 2:43am

@kishorchouhan

Copy link
Copy Markdown

When can we expect it to be merged?

@benhoad
benhoad force-pushed the test-patch-SNYK-JS-TSUP-9056218 branch from 57ab6f2 to 9414332 Compare May 28, 2025 02:43
@benhoad benhoad changed the title Add script tag validation to satisfy SNYK-JS-TSUP-9056218 🔒 Add script tag validation to satisfy SNYK-JS-TSUP-9056218 May 28, 2025
@shadabfaisal7

Copy link
Copy Markdown

@benhoad when is this getting merged?

@benhoad

benhoad commented Jun 4, 2025

Copy link
Copy Markdown
Contributor Author

@shadabfaisal7 @kishorchouhan It's awaiting review by @egoist

@kishorchouhan

Copy link
Copy Markdown

@egoist Can you please review this to solve the long due vuln on priority?
Screenshot 2025-06-16 at 3 01 08 PM

@charIeszhao

Copy link
Copy Markdown

@egoist Hello, could you please take a look at this? Thanks

@tylor-metrics

Copy link
Copy Markdown

I am assuming this will not make it in since the repo has gone into maintenance.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

7 participants