fix(security): update qs package to fix vulnerability CVE-2025-15284 (#5686)

fixes: qs's arrayLimit bypass in its bracket notation allows DoS via memory exhaustion
This commit is contained in:
Joe Boccanfuso authored and GitHub committed 2026-01-05 12:23:34 -05:00
1 parent 50f6b52bbd
commit ca364a3af7
5 files changed
+175 -181

No files matched your search

+2 -1
View File
@@ -153,7 +153,8 @@
"@babel/runtime-corejs2": "7.26.10",
"tapable": "2.2.2",
"@cornerstonejs/codec-openjpeg": "1.3.0",
"node-forge": "1.3.2"
"node-forge": "1.3.2",
"qs": "6.14.1"
},
"packageManager": "yarn@1.22.22+sha512.a6b2f7906b721bba3d67d4aff083df04dad64c399707841b7acf00f6b133b7ac24255f2652fa22ae3534329dc6180534e98d17432037ff6fd140556e2bb3137e"
}