fix(deps): vuln minor upgrades — 9 packages (minor: 4 · patch: 5) #285
Conversation
Release Notesaxios (1.13.6 → 1.15.1) — GitHub Releasev1.15.1This release ships a coordinated set of security hardening fixes across headers, body/redirect limits, multipart handling, and XSRF/prototype-pollution vectors, alongside a broad sweep of bug fixes, test migrations, and threat-model documentation updates. 🔒 Security Fixes
🚀 New Features
🐛 Bug Fixes
(truncated) v1.15.0This release delivers two critical security patches, adds runtime support for Deno and Bun, and includes significant CI hardening, documentation improvements, and routine dependency updates.
|
|
Hey, sorry for the noise. This was caused by a bug in our automated dependency update system that incorrectly included upstream changelog content in PR comments, triggering notifications to external contributors. The feature flag has been turned off and we're working on a fix. Sorry about that again. |
Summary: Security update — 9 packages upgraded (MINOR changes included)
Manifests changed:
.(yarn)✅ Action Required: Please review the changes below. If they look good, approve and merge this PR.
Updates
Packages marked with "-" are updated due to dependency constraints.
Security Details
ℹ️ Other Vulnerabilities (2)
Review Checklist
Standard review:
Update Mode: Vulnerability Remediation
🤖 Generated by DataDog Automated Dependency Management System