Skip to content

orchestrator 1.9 CVE-2026-33228 and CVE-2026-32141#2857

Merged
lholmquist merged 1 commit intoworkspace/orchestratorfrom
orchestrator-1.9-cve-flatted-3.4.2
Apr 21, 2026
Merged

orchestrator 1.9 CVE-2026-33228 and CVE-2026-32141#2857
lholmquist merged 1 commit intoworkspace/orchestratorfrom
orchestrator-1.9-cve-flatted-3.4.2

Conversation

@lholmquist
Copy link
Copy Markdown
Member

Hey, I just made a Pull Request!

fix: ran yarn up -R flatted

Related to https://redhat.atlassian.net/browse/RHIDP-13183 and https://redhat.atlassian.net/browse/RHIDP-13181

✔️ Checklist

  • A changeset describing the change and affected packages. (more info)
  • Added or Updated documentation
  • Tests for new functionality and regression tests for bug fixes
  • Screenshots attached (for UI changes)

@rhdh-qodo-merge
Copy link
Copy Markdown

Code Review by Qodo

Grey Divider

No Changes in PR

Qodo reviewed your PR and found no changes in the code

Grey Divider

Qodo Logo

@rhdh-qodo-merge
Copy link
Copy Markdown

Review Summary by Qodo

Fix CVE-2026-33228 and CVE-2026-32141 by upgrading flatted to 3.4.2

🐞 Bug fix

Grey Divider

Walkthroughs

Description
• Updates flatted dependency to version 3.4.2 to address CVE-2026-33228 and CVE-2026-32141
• Runs yarn up -R flatted to upgrade the package and its dependents
• Resolves security vulnerabilities in the orchestrator 1.9 release
Diagram
flowchart LR
  A["flatted<br/>dependency"] -- "upgrade to<br/>3.4.2" --> B["Security<br/>vulnerabilities<br/>fixed"]
  B --> C["CVE-2026-33228<br/>CVE-2026-32141<br/>resolved"]
Loading

Grey Divider

File Changes

Grey Divider

Qodo Logo

@sonarqubecloud
Copy link
Copy Markdown

@lholmquist lholmquist merged commit e51b966 into workspace/orchestrator Apr 21, 2026
11 checks passed
@lholmquist lholmquist deleted the orchestrator-1.9-cve-flatted-3.4.2 branch April 21, 2026 16:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant