Uploaded image for project: 'JOC - JS7 Operations Center'
  1. JOC - JS7 Operations Center
  2. JOC-2214

Upgrade ajv version 6.12.6 to 8.18.0 due to 3rd-party vulnerability CVE-2025-69873

    XMLWordPrintable

Details

    • CVE-2025-69873

    Description

      Impact

      • Development dependency used for build-time schema validation.
      • ajv is not included in production bundle. There is no run-time exposure.

      Maintainer Note

      • The issue is dismissed for releases in branch 2.5 as version 8.18.0 of ajv requires upgrading to Angular 21.
      • The upgrade of the Angular framework is a too big change for the LTS phase in branch 2.5.

      Attachments

        Activity

          People

            ZTNEERAJ303 Neeraj Patidar
            ap Andreas Püschel
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: