Skip to content

Conversation

@ivonaest
Copy link
Contributor

@ivonaest ivonaest commented Feb 5, 2026

Summary

  1. Why:
    To remove CVEs:

  2. What:

Additional evidence

Partial output from security scanner Trivy:
cve playwright jws

Categorization

  • security/CVE

Signed-off-by: ivonaest <ivona.cvije@est.tech>
@ivonaest
Copy link
Contributor Author

ivonaest commented Feb 5, 2026

@microsoft-github-policy-service agree company="Ericsson Software Technology"

@ivonaest ivonaest marked this pull request as draft February 6, 2026 11:06
@ivonaest ivonaest marked this pull request as ready for review February 6, 2026 11:09
@ivonaest ivonaest changed the title Bump jsonwebtoken from 9.0.2 to 9.0.3 chore(deps): bump jsonwebtoken from 9.0.2 to 9.0.3 Feb 6, 2026
@Skn0tt
Copy link
Member

Skn0tt commented Feb 9, 2026

This is a false alarm from your scanner. utils/flakiness-dashboard does not make it into any of our shipped products.

Copy link
Member

@Skn0tt Skn0tt left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

the patch looks fine

@Skn0tt Skn0tt merged commit 8f729ba into microsoft:main Feb 9, 2026
29 of 32 checks passed
@ivonaest ivonaest deleted the fix/jws_update branch February 9, 2026 10:23
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants