fix: upgrade wrangler to ^4.60.0 to address CVE-2026-0933 (#628)

Upgrade wrangler from 4.58.0 to ^4.60.0 to fix the command injection
vulnerability (CWE-78) in the --commit-hash parameter of wrangler pages
deploy command.

Fixes #627
This commit is contained in:
Dayuan Jiang
2026-01-23 08:38:07 +09:00
committed by GitHub
parent 0baa424bc4
commit dc37ce7fb1
2 changed files with 91 additions and 587 deletions

676
package-lock.json generated

File diff suppressed because it is too large Load Diff