Commit 1872bb1
committed
chore: exclude tar CVE GHSA-r6q2-hw4h-h46w in .iyarc
Exclude the tar vulnerability instead of bumping version because:
- Lerna requires tar v6, but fix only exists in v7.5.4+
- Forcing tar v7.x breaks lerna publishing
- This is a race condition in tar's path reservation system
Ticket: SC-50301 parent 31d8394 commit 1872bb1
1 file changed
Lines changed: 1 addition & 1 deletion
0 commit comments