> [!IMPORTANT] > CLOSE THE ISSUE ONLY IF YOU PLAN TO DEPLOY THE FIX BEFORE THE DEADLINE IN THE TITLE. > > DO NOT MANUALLY MODIFY THE ISSUE TITLE OR TEXT BODY. `npm-brace-expansion >= 2.0.0, < 2.1.3` CODE_REPOSITORY/commercelayer-cli-plugin-seeder <ins>CVE-2026-14257</ins> **HIGH** remediate by: 2026-09-02T03:51:53.093Z - https://github.com/commercelayer/commercelayer-cli-plugin-seeder/security/dependabot/107 > <details><summary>Related URLs</summary> > > - https://github.com/juliangruber/brace-expansion/security/advisories/GHSA-mh99-v99m-4gvg > - https://nvd.nist.gov/vuln/detail/CVE-2026-14257 > - https://github.com/juliangruber/brace-expansion/commit/a1bd33999ea75262c4749fff3bbb0d1372bd07b5 > - https://github.com/juliangruber/brace-expansion > - https://www.npmjs.com/package/brace-expansion > - https://github.com/juliangruber/brace-expansion/pull/129 > - https://github.com/juliangruber/brace-expansion/pull/130 > - https://github.com/juliangruber/brace-expansion/pull/136 > - https://github.com/juliangruber/brace-expansion/commit/139d015104e71433ad52a41d19467c48ecbb2c7d > - https://github.com/juliangruber/brace-expansion/commit/cb4b9e47cc2ec777c14b2b4492fb431a56f6a031 > - https://github.com/juliangruber/brace-expansion/commit/d13ff455a58b0d56704f0111e3c2a0b16ceb06eb > - https://github.com/advisories/GHSA-mh99-v99m-4gvg > > </details> `npm-js-yaml >= 3.0.0, < 3.15.1` CODE_REPOSITORY/commercelayer-cli-plugin-seeder <ins>GHSA-5p4m-2wfm-xmqj</ins> **HIGH** remediate by: 2026-09-10T11:50:25.559Z - https://github.com/commercelayer/commercelayer-cli-plugin-seeder/security/dependabot/117 > <details><summary>Related URLs</summary> > > - https://github.com/nodeca/js-yaml/security/advisories/GHSA-5p4m-2wfm-xmqj > - https://github.com/advisories/GHSA-5p4m-2wfm-xmqj > > </details>
Important
CLOSE THE ISSUE ONLY IF YOU PLAN TO DEPLOY THE FIX BEFORE THE DEADLINE IN THE TITLE.
DO NOT MANUALLY MODIFY THE ISSUE TITLE OR TEXT BODY.
npm-brace-expansion >= 2.0.0, < 2.1.3CODE_REPOSITORY/commercelayer-cli-plugin-seeder CVE-2026-14257 HIGH remediate by: 2026-09-02T03:51:53.093Znpm-js-yaml >= 3.0.0, < 3.15.1CODE_REPOSITORY/commercelayer-cli-plugin-seeder GHSA-5p4m-2wfm-xmqj HIGH remediate by: 2026-09-10T11:50:25.559Z