-
-
Notifications
You must be signed in to change notification settings - Fork 8.6k
[nodejs] Update dev dependencies to fix vulnerabilities #16610
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[nodejs] Update dev dependencies to fix vulnerabilities #16610
Conversation
PR Compliance Guide 🔍(Compliance updated until commit 295d209)Below is a summary of compliance checks for this PR:
Compliance status legend🟢 - Fully Compliant🟡 - Partial Compliant 🔴 - Not Compliant ⚪ - Requires Further Human Verification 🏷️ - Compliance label Previous compliance checksCompliance check up to commit b3ef235
Compliance check up to commit 6354826
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
PR Code Suggestions ✨Explore these optional code suggestions:
|
|||||||||||
PR Compliance Guide 🔍Below is a summary of compliance checks for this PR:
Compliance status legend🟢 - Fully Compliant🟡 - Partial Compliant 🔴 - Not Compliant ⚪ - Requires Further Human Verification 🏷️ - Compliance label |
|||||||||||||||||||||||
PR Code Suggestions ✨Explore these optional code suggestions:
|
||||||||||||
harsha509
left a comment
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM!
User description
🔗 Related Issues
Fixes https://github.com/SeleniumHQ/selenium/security/dependabot/197
Fixes https://github.com/SeleniumHQ/selenium/security/dependabot/198
Fixes https://github.com/SeleniumHQ/selenium/security/dependabot/202
Fixes https://github.com/SeleniumHQ/selenium/security/dependabot/203
Fixes https://github.com/SeleniumHQ/selenium/security/dependabot/219
Fixes https://github.com/SeleniumHQ/selenium/security/dependabot/220
💥 What does this PR do?
This PR updates JavaScript packages and generates a new
pnpm-lock.yamlto address security vulnerabilities in dependencies.🔄 Types of changes
PR Type
Enhancement
Description
Updates dev dependencies to fix security vulnerabilities
Upgrades @bazel/runfiles, eslint, and related packages
Updates testing and build tool dependencies
Regenerates pnpm-lock.yaml with updated versions
Diagram Walkthrough
File Walkthrough
package.json
Update JavaScript dev dependencies versionsjavascript/selenium-webdriver/package.json
package.json
Update grid UI build and test dependenciesjavascript/grid-ui/package.json
pnpm-lock.yaml
Regenerate pnpm lockfilepnpm-lock.yaml
CHANGES.md
Document dependency updatesjavascript/selenium-webdriver/CHANGES.md