Skip to content

Use node24 on runners#662

Merged
yxxhero merged 2 commits intohelmfile:mainfrom
Cardds:chore/upgrade-node-version
Mar 21, 2026
Merged

Use node24 on runners#662
yxxhero merged 2 commits intohelmfile:mainfrom
Cardds:chore/upgrade-node-version

Conversation

@Cardds
Copy link
Copy Markdown
Contributor

@Cardds Cardds commented Mar 18, 2026

Fixes #661

@Cardds Cardds marked this pull request as draft March 20, 2026 14:59
Upgrades flatted from 3.3.3 to 3.42
* flatted vulnerable to unbounded recursion DoS in parse() revive phase - GHSA-25h7-pfq9-p65f

Upgrades undici from 6.23.0 to 6.24.1
* Undici: Malicious WebSocket 64-bit length overflows parser and crashes the client - GHSA-f269-vfmq-vjvj
* Undici has an HTTP Request/Response Smuggling issue - GHSA-2mjp-6q6p-2qxm
* Undici has Unbounded Memory Consumption in WebSocket permessage-deflate Decompression - GHSA-vrm6-8vpv-qv8q
* Undici has Unhandled Exception in WebSocket Client Due to Invalid server_max_window_bits Validation - GHSA-v9p9-hfj2-hcw8
* Undici has CRLF Injection in undici via `upgrade` option - GHSA-4992-7rv2-5pvq
@Cardds Cardds marked this pull request as ready for review March 20, 2026 15:08
@yxxhero yxxhero merged commit adb1303 into helmfile:main Mar 21, 2026
12 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Node20 EOL - Upgrade to Node24

2 participants