github hankscafe/omnibus v1.0.6-beta.006
Omnibus v1.0.6-beta.006

one month ago

v1.0.6-beta.006 - Patch NPM and Alpine OS vulnerabilities

  • Updated package.json to explicitly override and hoist picomatch@4.0.4 and �race-expansion@5.0.5, resolving CVE-2026-33671, CVE-2026-33672, and CVE-2026-33750.
  • Regenerated package-lock.json from scratch to ensure flat, secure dependency resolution and strip out vulnerable nested fallbacks.
  • Updated Dockerfile to execute �pk update && apk upgrade --no-cache in the final
    unner stage, mitigating the Alpine �usybox vulnerability (CVE-2025-60876).

Don't miss a new omnibus release

NewReleases is sending notifications on new releases.