Skip to content

[VANTA] [VULNERABILITY] <HIGH> CVE-2026-12590, CVE-2026-13676, CVE-2026-16221 and others, fix before 2026-08-24 #810

Description

@commercelayer-ci

Important

CLOSE THE ISSUE ONLY IF YOU PLAN TO DEPLOY THE FIX BEFORE THE DEADLINE IN THE TITLE.

DO NOT MANUALLY MODIFY THE ISSUE TITLE OR TEXT BODY.

npm-fast-uri >= 3.0.0, < 3.1.3 CODE_REPOSITORY/commercelayer-react-components CVE-2026-13676 HIGH remediate by: 2026-08-24T12:04:39.448Z

Related URLs

npm-fast-uri >= 3.0.0, <= 3.1.3 CODE_REPOSITORY/commercelayer-react-components CVE-2026-16221 HIGH remediate by: 2026-08-24T19:55:24.037Z

Related URLs

npm-postcss <= 8.5.17 CODE_REPOSITORY/commercelayer-react-components GHSA-r28c-9q8g-f849 HIGH remediate by: 2026-09-01T03:46:38.360Z

Related URLs

npm-fast-uri >= 3.0.0, < 3.1.5 CODE_REPOSITORY/commercelayer-react-components CVE-2026-18446 HIGH remediate by: 2026-09-04T19:44:09.272Z

Related URLs

npm-body-parser < 1.20.6 CODE_REPOSITORY/commercelayer-react-components CVE-2026-12590 LOW remediate by: 2026-10-27T03:42:40.032Z

Related URLs

Metadata

Metadata

Labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions