vercel-ai-v3.0.2
Vercel AI SDK Provider (v3.0.2)
Security 1
- Tightened js-yaml pnpm overrides to close a newer CVE range not covered by previous floors
From Mem0
Security:
- Dependencies: Tightened the
js-yamlpnpm overrides from<3.15.0 → >=3.15.0 <4.0.0/>=4.0.0 <4.3.0 → >=4.3.0 <5.0.0to<3.15.1 → >=3.15.1 <4.0.0/>=4.0.0 <4.3.1 → >=4.3.1 <5.0.0, closing a newer CVE range the previous floors didn't cover, as part of a wider dependency patch sweep across the pnpm workspaces (#7032)