Skip to content

Update tar to fix security vulnerability#126

Merged
sachinh-amazon merged 1 commit intoaws:mainfrom
sachinh-amazon:main
Feb 4, 2026
Merged

Update tar to fix security vulnerability#126
sachinh-amazon merged 1 commit intoaws:mainfrom
sachinh-amazon:main

Conversation

@sachinh-amazon
Copy link
Contributor

Issue

V2092375461

Description of Changes

The Security Scan workflow was failing because of a vulnerability in the tar package. This PR updates the tar to a version where the vulnerability is patched.

Testing

Security scan was successful in fork after the update: https://github.com/sachinh-amazon/code-editor/actions/runs/21595830546

Screenshots/Videos

N/A

Additional Notes

N/A

Backporting

Yes, change will be back-ported to the 1.0 branch in a separate PR.


By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the terms of your choice.

@sachinh-amazon sachinh-amazon merged commit 72e798b into aws:main Feb 4, 2026
1 check passed
azmkercso added a commit to azmkercso/code-editor that referenced this pull request Feb 4, 2026
commit 72e798b
Author: sachinh-amazon <188173965+sachinh-amazon@users.noreply.github.com>
Date:   Wed Feb 4 11:12:28 2026 +0100

    Update tar to fix security vulnerability (aws#126)

commit 21cff70
Author: feiyangliu2023 <160760826+feiyangliu2023@users.noreply.github.com>
Date:   Mon Feb 2 14:04:58 2026 +0100

    fix failure during sync to gitfarm (aws#124)

    Co-authored-by: Feiyang Liu <lfeiyang@amazon.nl>

commit 636d03d
Author: sachinh-amazon <188173965+sachinh-amazon@users.noreply.github.com>
Date:   Thu Jan 29 13:26:34 2026 +0100

    Add SageMaker version patch in main (aws#123)

commit a078792
Author: sachinh-amazon <188173965+sachinh-amazon@users.noreply.github.com>
Date:   Thu Jan 29 10:14:59 2026 +0100

    Build on ubuntu-22.04 and fix the sagemaker ui poststart up patch(aws#121)

commit e686f07
Author: Chunqiu Lu <chunqilu@amazon.nl>
Date:   Tue Jan 27 14:45:46 2026 +0100

    override undici for remote distribution (aws#118)
azmkercso added a commit to azmkercso/code-editor that referenced this pull request Feb 4, 2026
commit 72e798b
Author: sachinh-amazon <188173965+sachinh-amazon@users.noreply.github.com>
Date:   Wed Feb 4 11:12:28 2026 +0100

    Update tar to fix security vulnerability (aws#126)

commit 21cff70
Author: feiyangliu2023 <160760826+feiyangliu2023@users.noreply.github.com>
Date:   Mon Feb 2 14:04:58 2026 +0100

    fix failure during sync to gitfarm (aws#124)

    Co-authored-by: Feiyang Liu <lfeiyang@amazon.nl>

commit 636d03d
Author: sachinh-amazon <188173965+sachinh-amazon@users.noreply.github.com>
Date:   Thu Jan 29 13:26:34 2026 +0100

    Add SageMaker version patch in main (aws#123)

commit a078792
Author: sachinh-amazon <188173965+sachinh-amazon@users.noreply.github.com>
Date:   Thu Jan 29 10:14:59 2026 +0100

    Build on ubuntu-22.04 and fix the sagemaker ui poststart up patch(aws#121)

commit e686f07
Author: Chunqiu Lu <chunqilu@amazon.nl>
Date:   Tue Jan 27 14:45:46 2026 +0100

    override undici for remote distribution (aws#118)
chunqilu pushed a commit that referenced this pull request Feb 5, 2026
chunqilu added a commit that referenced this pull request Feb 5, 2026
* adopt vscode/proxy-agent (#116)

* override undici for remote distribution (#118)

* Update tar to fix security vulnerability (#126)

---------

Co-authored-by: sachinh-amazon <188173965+sachinh-amazon@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants