Skip to content

fix(security): patch 3 packages against 12 vulnerabilities (2 via override) - #92

Open
repowarden-app[bot] wants to merge 1 commit into
masterfrom
repowarden/security-patch-1785946248654
Open

fix(security): patch 3 packages against 12 vulnerabilities (2 via override)#92
repowarden-app[bot] wants to merge 1 commit into
masterfrom
repowarden/security-patch-1785946248654

Conversation

@repowarden-app

@repowarden-app repowarden-app Bot commented Aug 5, 2026

Copy link
Copy Markdown

What this PR does

Direct dependency bumps (1)

Transitive overrides (2)

These are deps of your deps. RepoWarden added a overrides block to the root package.json so npm forces the patched version when it resolves the lockfile.

Remediation pending (2)

These vulns don't yet have a published fixed version, so RepoWarden can't auto-patch them. They'll be picked up automatically once a fix lands upstream.

Testing checklist

  • CI passes
  • No regressions in dependent code (override-based fixes can shift transitive behaviour)
  • Lockfile diff looks reasonable

🤖 Generated by RepoWarden

📋 Track this task in RepoWarden

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants