Keysat 3a601e166a Bump multer 1.4.5-lts.1 -> ^2.0.1 (DoS CVEs)
multer 1.x is affected by CVE-2025-47944/47935/48997/7338 (malformed
multipart crashes the process / leaks memory). 2.x raises catchable
errors instead. Usage (diskStorage + .single("file")) is unchanged.
Commit the server lockfile so the Dockerfile's npm-ci path pins the fix.
2026-06-13 16:23:26 -05:00
2026-05-11 20:14:50 -05:00
2026-05-11 20:03:27 -05:00
2026-05-11 20:03:27 -05:00
2026-05-11 20:03:27 -05:00
2026-05-11 20:03:27 -05:00
2026-05-11 20:03:27 -05:00
2026-05-11 20:03:27 -05:00
2026-05-11 20:14:50 -05:00
2026-05-11 20:03:27 -05:00
2026-05-11 20:03:27 -05:00
2026-05-11 20:03:27 -05:00
S
Description
No description provided
873 KiB
Languages
JavaScript 58.2%
HTML 23.6%
TypeScript 17%
Shell 0.7%
Makefile 0.3%
Other 0.2%