Skip to content

Bump ajv dependency to fix CVE-2025-69873 #2548

@zacharyzboncak-qipath

Description

@zacharyzboncak-qipath

Is your feature request related to a problem? Please describe.

Theajv dependency of jsonforms has a vulnerability: https://www.mend.io/vulnerability-database/CVE-2025-69873/.

Jsonforms currently uses ajv version 8.6.1. The latest release of ajv fixes this vulnerability.

Please bump the ajv dependency of jsonforms to 8.18.0.

Describe the solution you'd like

Simply bump the version to close the vulnerability.

Describe alternatives you've considered

“This is the way.” - Din Djarin

Package

Core

Additional context

No response

Metadata

Metadata

Assignees

No one assigned

    Labels

    dependenciesPull requests that update a dependency file

    Type

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions