feat(ee): merge Workspace into the monorepo as a built-in extension - #3455
4 new alerts including 3 medium severity security vulnerabilities
New alerts in code changed by this pull request
Security Alerts:
- 3 medium
- 1 low
Alerts not introduced by this pull request might have been detected because the code changes were too large.
See annotations below for details.
Annotations
Check warning on line 1 in pnpm-lock.yaml
Code scanning / Trivy
Node.js Adapter for Hono: Path traversal in `serve-static` on Windows via encoded backslash (`%5C`) Medium
Check warning on line 1 in pnpm-lock.yaml
Code scanning / Trivy
postcss: PostCSS: Information disclosure via crafted sourceMappingURL Medium
Check warning on line 1 in pnpm-lock.yaml
Code scanning / Trivy
DOMPurify: IN_PLACE hook removal leaves a detached subtree executable, causing XSS Medium
Check notice on line 1 in pnpm-lock.yaml
Code scanning / Trivy
DOMPurify: `CUSTOM_ELEMENT_HANDLING` bypasses `afterSanitizeElements` for allowed custom elements. Low