Security issue thrown by a dependency
done
Hello,
I recently got notified by the dependabot that I have a high vulnerability coming from the `valibot` dependency version you're using.
The same issue comes from the fact you're still using `@gcornut/valibot-json-schema` with an older and vulnerable version of the `valibot` package, which is deprecated and needs to be replaced with `https://github.com/open-circle/valibot/tree/main/packages/to-json-schema`
Could you take some time to updated that to the latest: `1.2.0`?
关闭于 2025-12-15 1 条评论