fix(deps): vuln minor upgrades — 15 packages (minor: 3 · patch: 12) [ui]#83
Conversation
Release Noteshandlebars (4.7.8 → 4.7.9) — GitHub Release
dompurify (3.2.6 → 3.2.7) — GitHub Release
@babel/cli (7.27.2 → 7.28.6) — GitHub Releasev7.28.6v7.28.6 (2026-01-12)Thanks @kadhirash and @kolvian for your first PRs! 🐛 Bug Fix
💅 Polish
🏠 Internal
(truncated) v7.28.5v7.28.5 (2025-10-23)Thank you @CO0Ki3, @Olexandr88, and @youthfulhps for your first PRs! 👓 Spec Compliance
🐛 Bug Fix
(truncated — see source for full notes) @babel/core (7.26.10 → 7.29.0) — GitHub Releasev7.29.0v7.29.0 (2026-01-31)Thanks @simbahax for your first PR! 🚀 New Feature
🐛 Bug Fix
🏃♀️ Performance
Committers: 6
v7.28.6v7.28.6 (2026-01-12)Thanks @kadhirash and @kolvian for your first PRs! 🐛 Bug Fix
💅 Polish
🏠 Internal(truncated — see source for full notes) webpack (5.94.0 → 5.106.2) — GitHub Releasev5.106.2Patch Changes
v5.106.1Patch Changes
v5.106.0Minor Changes
(truncated — see source for full notes) @babel/eslint-parser (7.27.1 → 7.27.5) — GitHub Releasev7.27.5v7.27.5 (2025-06-03)Thanks @NullVoxPopuli for your first PR! 🐛 Bug Fix
💅 Polish
Committers: 4
v7.27.4v7.27.4 (2025-05-30)👓 Spec Compliance
💅 Polish
🔬 Output optimization
(truncated) v7.27.3v7.27.3 (2025-05-27)🐛 Bug Fix
(truncated — see source for full notes) @babel/plugin-transform-block-scoping (7.27.1 → 7.27.5) — GitHub Releasev7.27.5v7.27.5 (2025-06-03)Thanks @NullVoxPopuli for your first PR! 🐛 Bug Fix
💅 Polish
Committers: 4
v7.27.4v7.27.4 (2025-05-30)👓 Spec Compliance
💅 Polish
🔬 Output optimization
(truncated) v7.27.3v7.27.3 (2025-05-27)🐛 Bug Fix
(truncated — see source for full notes) asn1js (3.0.6 → 3.0.10) — GitHub Releasev3.0.10What's Changed
Full Changelog: PeculiarVentures/ASN1.js@v3.0.9...v3.0.10 v3.0.7What's Changed
New Contributors
Full Changelog: PeculiarVentures/ASN1.js@v3.0.6...v3.0.7 codemirror (5.65.19 → 5.65.21) — ChangelogBug fixesBetter handle configuration objects with a null prototype. kotlin mode: Fix tokenizing of unsigned long literals. d3-format (3.1.0 → 3.1.2) — GitHub Releasev3.1.2
v3.1.1
eslint-config-prettier (9.1.0 → 9.1.2) — Changeloghttps://github.com/prettier/eslint-config-prettier/blob/main/CHANGELOG.md pvutils (1.1.3 → 1.1.5) — Changeloghttps://github.com/PeculiarVentures/pvutils/blob/master/CHANGELOG.md shell-quote (1.8.2 → 1.8.3) — ChangelogFixed
Generated by ADMS Sources: 9 GitHub Releases, 4 Changelogs, 2 not available. |
|
Hey, sorry for the noise. This was caused by a bug in our automated dependency update system that incorrectly included upstream changelog content in PR comments, triggering notifications to external contributors. The feature flag has been turned off and we're working on a fix. Sorry about that again. |
Summary: Critical-severity security update — 15 packages upgraded (MINOR changes included)
Manifests changed:
ui(yarn)✅ Action Required: Please review the changes below. If they look good, approve and merge this PR.
Updates
Packages marked with "-" are updated due to dependency constraints.
Security Details
🚨 Critical & High Severity (10 fixed)
ℹ️ Other Vulnerabilities (19)
Review Checklist
Standard review:
Update Mode: Vulnerability Remediation (Critical/High)
🤖 Generated by DataDog Automated Dependency Management System