Skip to content

chore(deps): update to latest versions, remove overrides#33472

Merged
alexslavr merged 1 commit into
26_1from
lavrov/sbom-alerts-26_1
Apr 30, 2026
Merged

chore(deps): update to latest versions, remove overrides#33472
alexslavr merged 1 commit into
26_1from
lavrov/sbom-alerts-26_1

Conversation

@alexslavr
Copy link
Copy Markdown
Contributor

No description provided.

@alexslavr alexslavr requested a review from a team April 30, 2026 11:17
@alexslavr alexslavr self-assigned this Apr 30, 2026
@alexslavr alexslavr added the dependencies Pull requests that update a dependency file label Apr 30, 2026
Copilot AI review requested due to automatic review settings April 30, 2026 11:17
@alexslavr alexslavr added the 26_1 label Apr 30, 2026
Copy link
Copy Markdown
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Updates the isolated packages/sbom workspace lockfile to newer transitive dependency versions and removes the local pnpm overrides previously used to force specific patched transitive versions.

Changes:

  • Removed pnpm.overrides from packages/sbom/package.json.
  • Regenerated packages/sbom/pnpm-lock.yaml to newer transitive dependency versions (e.g., @cyclonedx/cdxgen, undici, tar, qs, etc.).
  • Removed the lockfile settings.overrides section accordingly.

Reviewed changes

Copilot reviewed 1 out of 2 changed files in this pull request and generated 2 comments.

File Description
packages/sbom/package.json Removes SBOM workspace-specific pnpm overrides, leaving only packageManager and dev dependency on @devexpress/sbom-toolkit.
packages/sbom/pnpm-lock.yaml Updates and re-resolves SBOM workspace transitive dependencies; drops overrides from lockfile settings.
Files not reviewed (1)
  • packages/sbom/pnpm-lock.yaml: Language not supported

Comment thread packages/sbom/package.json
Comment thread packages/sbom/pnpm-lock.yaml
@alexslavr alexslavr merged commit a8c31b1 into 26_1 Apr 30, 2026
102 checks passed
@alexslavr alexslavr deleted the lavrov/sbom-alerts-26_1 branch April 30, 2026 11:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

26_1 dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants