Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix: Updates to latest transitive dependencies to address dependabot alerts #413

Merged
merged 1 commit into from
Dec 18, 2023

Conversation

geofflamrock
Copy link
Contributor

There are a couple of dependabot alerts that are outstanding on this repo, including one that is critical.

This PR updates to the latest transitive dependencies by running npm audit fix to resolve these plus some others highlighted by npm.

@geofflamrock geofflamrock requested a review from a team December 18, 2023 02:57
@geofflamrock geofflamrock removed the request for review from jbristowe December 18, 2023 02:57
@geofflamrock geofflamrock changed the title Updates to latest transitive dependencies to resolve CVEs Updates to latest transitive dependencies to address dependabot alerts Dec 18, 2023
@geofflamrock geofflamrock changed the title Updates to latest transitive dependencies to address dependabot alerts fix: Updates to latest transitive dependencies to address dependabot alerts Dec 18, 2023
@geofflamrock geofflamrock merged commit 2efe771 into main Dec 18, 2023
7 checks passed
@geofflamrock geofflamrock deleted the geoffl/fix-dependabot-cve branch December 18, 2023 03:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants