Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Resolve vulnerabilities #1210

Merged
merged 1 commit into from
Nov 27, 2024
Merged

Resolve vulnerabilities #1210

merged 1 commit into from
Nov 27, 2024

Conversation

mkouzel-yext
Copy link
Contributor

Updated @babel/preset-env to 7.23.2 and @babel/traverse to 7.23.2 to address vulnerabilities within package dependencies.

J=VULN-39417
TEST=auto

Updated @babel/preset-env to 7.23.2 and @babel/traverse to 7.23.2 to
address vulnerabilities within package dependencies.

J=VULN-39417
TEST=auto
@mkouzel-yext mkouzel-yext requested a review from a team as a code owner November 21, 2024 15:55
@mkouzel-yext
Copy link
Contributor Author

This updates additional packages in static that I'd overlooked in the previous PR

@coveralls
Copy link

Coverage Status

coverage: 9.074%. remained the same
when pulling 49126f9 on hotfix/v1.34.5
into 1e5d787 on master.

@Fondryext
Copy link
Contributor

To confirm, do we think this also fixes https://yexttest.atlassian.net/browse/VULN-38474, which just got reopened? If so, as long as we can mention it in the commit message (and if you wanna assign that to yourself) I think this is GTG!

@mkouzel-yext
Copy link
Contributor Author

Yes, this PR should also fix that other ticket. I can see that the @babel/traverse version is safe in static/package-lock.json.

@mkouzel-yext mkouzel-yext merged commit e020d06 into master Nov 27, 2024
22 of 23 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants