미출시
수정됨
- Dev-tooling supply-chain advisories cleared. Bumped the transitive dev-only dependencies in
package-lock.json— esbuild0.28.0 → 0.28.1(GHSA-g7r4-m6w7-qqqr, GHSA-gv7w-rqvm-qjhr), vite8.0.14 → 8.0.16(CVE-2026-53571), vitest4.1.7 → 4.1.9, tsx4.22.3 → 4.22.4.npm auditis back to 0 vulnerabilities. Nooverrideswere needed (every parent range already allowed the patched versions) andpackage.jsonis unchanged. These packages are test/build tooling and never ship in the published npm package, so end users were not exposed — this is dashboard/hygiene cleanup.