Skip to content

fix(deps): upgrade deps to resolve 4 security alerts #7328

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 6 commits into from
Jun 6, 2025
Merged

Conversation

serhalp
Copy link
Member

@serhalp serhalp commented Jun 4, 2025

Summary

This is just the result of running npm audit fix.

Previously:

4 vulnerabilities (1 low, 2 moderate, 1 high)

After:

0 vulnerabilities

Fixes #7327.

It looks like Dependabot malfunctioned in #7322.

This is just the result of running `npm audit fix`.

Previously:
```
4 vulnerabilities (1 low, 2 moderate, 1 high)
```

After:
```
0 vulnerabilities
```

Fixes #7327.

It looks like Dependabot malfunctioned in #7322.
Copy link

github-actions bot commented Jun 4, 2025

📊 Benchmark results

Comparing with 464ce11

  • Dependency count: 1,128 ⬇️ 0.35% decrease vs. 464ce11
  • Package size: 280 MB ⬇️ 3.67% decrease vs. 464ce11
  • Number of ts-expect-error directives: 399 (no change)

@serhalp serhalp marked this pull request as ready for review June 4, 2025 19:50
@serhalp serhalp requested a review from a team as a code owner June 4, 2025 19:50
@serhalp serhalp enabled auto-merge (squash) June 6, 2025 15:15
@serhalp serhalp removed the request for review from a team June 6, 2025 15:15
@serhalp serhalp merged commit 2991b9f into main Jun 6, 2025
47 checks passed
@serhalp serhalp deleted the fix/npm-audit-fix branch June 6, 2025 15:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Please bump tar-fs dependencies in package-lock.json
2 participants