Skip to content

Release 4.52.0#1008

Merged
m-salaudeen merged 9 commits into
masterfrom
release
Sep 30, 2025
Merged

Release 4.52.0#1008
m-salaudeen merged 9 commits into
masterfrom
release

Conversation

@m-salaudeen
Copy link
Copy Markdown
Collaborator

Summary

Reviews Required

  • Dev
  • Test
  • Tech Author
  • Product Owner

Checklist

  • Brief description of work completed, and any technical decisions made as part of the PR
  • PR link added as a comment to the relevant JIRA ticket
  • PR link shared on Slack and/or Teams
  • 2 reviews received
  • Tester approval

simonlabarere and others added 9 commits September 15, 2025 09:44
* CCM-4996: Remove channel enriched from GET message endpoint

* CCM-4996: Remove channel enriched from GET message endpoint

* CCM-4996: Remove channel enriched from GET message endpoint
* Linting fixes to README.md

* Add details of using asdf to install necessary tools

* Fix the build status badge
* CCM-6437: Fix Sonar security issues

* CCM-6437: Fix Sonar consistency issues

* CCM-6437: Fix various SonarCloud issues and code smells

* CCM-6437: test

* CCM-6437: Remove generate_error_with_custom_detail function

* CCM-6437: test

* CCM-6437: fix Sonar cognitive complexity issues

* CCM-6437: fix Sonar Maintainability issue

* CCM-6437: fix Sonar Maintainability issues

* CCM-6437: test

* CCM-6437: fix Sonar Maintainability issues

* CCM-6437: test

* CCM-6437: test

* CCM-6437: test

* CCM-6437: test

* CCM-6437: disable sonar in SetResponseDefaults.js

* CCM-6437: bump ZAP base image from 2.15 to 2.16.1

* CCM-6437: bump ZAP base image from 2.15 to 2.16.1
* Bump sphinx-markdown-builder from 0.6.7 to 0.6.8

Bumps [sphinx-markdown-builder](https://github.com/liran-funaro/sphinx-markdown-builder) from 0.6.7 to 0.6.8.
- [Commits](liran-funaro/sphinx-markdown-builder@0.6.7...0.6.8)

---
updated-dependencies:
- dependency-name: sphinx-markdown-builder
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump pytest-asyncio from 0.20.3 to 0.24.0

Bumps [pytest-asyncio](https://github.com/pytest-dev/pytest-asyncio) from 0.20.3 to 0.24.0.
- [Release notes](https://github.com/pytest-dev/pytest-asyncio/releases)
- [Commits](pytest-dev/pytest-asyncio@v0.20.3...v0.24.0)

---
updated-dependencies:
- dependency-name: pytest-asyncio
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump notifications-python-client from 9.1.0 to 10.0.1

Bumps [notifications-python-client](https://github.com/alphagov/notifications-python-client) from 9.1.0 to 10.0.1.
- [Changelog](https://github.com/alphagov/notifications-python-client/blob/main/CHANGELOG.md)
- [Commits](alphagov/notifications-python-client@9.1.0...10.0.1)

---
updated-dependencies:
- dependency-name: notifications-python-client
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump semver from 3.0.2 to 3.0.4

Bumps [semver](https://github.com/python-semver/python-semver) from 3.0.2 to 3.0.4.
- [Release notes](https://github.com/python-semver/python-semver/releases)
- [Changelog](https://github.com/python-semver/python-semver/blob/master/CHANGELOG.rst)
- [Commits](python-semver/python-semver@3.0.2...3.0.4)

---
updated-dependencies:
- dependency-name: semver
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump pytest from 8.3.4 to 8.3.5

Bumps [pytest](https://github.com/pytest-dev/pytest) from 8.3.4 to 8.3.5.
- [Release notes](https://github.com/pytest-dev/pytest/releases)
- [Changelog](https://github.com/pytest-dev/pytest/blob/main/CHANGELOG.rst)
- [Commits](pytest-dev/pytest@8.3.4...8.3.5)

---
updated-dependencies:
- dependency-name: pytest
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump the npm_and_yarn group with 4 updates

Bumps the npm_and_yarn group with 4 updates: [form-data](https://github.com/form-data/form-data), [@redocly/cli](https://github.com/Redocly/redocly-cli), [jose](https://github.com/panva/jose) and [newman](https://github.com/postmanlabs/newman).


Updates `form-data` from 4.0.0 to 4.0.4
- [Release notes](https://github.com/form-data/form-data/releases)
- [Changelog](https://github.com/form-data/form-data/blob/master/CHANGELOG.md)
- [Commits](form-data/form-data@v4.0.0...v4.0.4)

Updates `@redocly/cli` from 1.34.4 to 1.34.5
- [Release notes](https://github.com/Redocly/redocly-cli/releases)
- [Changelog](https://github.com/Redocly/redocly-cli/blob/@redocly/cli@1.34.5/docs/changelog.md)
- [Commits](https://github.com/Redocly/redocly-cli/compare/@redocly/cli@1.34.4...@redocly/cli@1.34.5)

Updates `jose` from 4.14.4 to 5.6.3
- [Release notes](https://github.com/panva/jose/releases)
- [Changelog](https://github.com/panva/jose/blob/main/CHANGELOG.md)
- [Commits](panva/jose@v4.14.4...v5.6.3)

Updates `newman` from 6.1.3 to 6.2.0
- [Changelog](https://github.com/postmanlabs/newman/blob/develop/CHANGELOG.yaml)
- [Commits](postmanlabs/newman@v6.1.3...v6.2.0)

---
updated-dependencies:
- dependency-name: form-data
  dependency-version: 4.0.4
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: "@redocly/cli"
  dependency-version: 1.34.5
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: jose
  dependency-version: 5.6.3
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: newman
  dependency-version: 6.2.0
  dependency-type: direct:development
  dependency-group: npm_and_yarn
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump nodemon from 3.1.9 to 3.1.10 in /sandbox

Bumps [nodemon](https://github.com/remy/nodemon) from 3.1.9 to 3.1.10.
- [Release notes](https://github.com/remy/nodemon/releases)
- [Commits](remy/nodemon@v3.1.9...v3.1.10)

---
updated-dependencies:
- dependency-name: nodemon
  dependency-version: 3.1.10
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump express from 5.0.1 to 5.1.0 in /sandbox

Bumps [express](https://github.com/expressjs/express) from 5.0.1 to 5.1.0.
- [Release notes](https://github.com/expressjs/express/releases)
- [Changelog](https://github.com/expressjs/express/blob/master/History.md)
- [Commits](expressjs/express@v5.0.1...v5.1.0)

---
updated-dependencies:
- dependency-name: express
  dependency-version: 5.1.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump eslint-plugin-unicorn from 45.0.2 to 56.0.1

Bumps [eslint-plugin-unicorn](https://github.com/sindresorhus/eslint-plugin-unicorn) from 45.0.2 to 56.0.1.
- [Release notes](https://github.com/sindresorhus/eslint-plugin-unicorn/releases)
- [Commits](sindresorhus/eslint-plugin-unicorn@v45.0.2...v56.0.1)

---
updated-dependencies:
- dependency-name: eslint-plugin-unicorn
  dependency-version: 56.0.1
  dependency-type: direct:development
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump eslint-plugin-workspaces from 0.7.0 to 0.11.0

Bumps [eslint-plugin-workspaces](https://github.com/joshuajaco/eslint-plugin-workspaces) from 0.7.0 to 0.11.0.
- [Release notes](https://github.com/joshuajaco/eslint-plugin-workspaces/releases)
- [Changelog](https://github.com/joshuajaco/eslint-plugin-workspaces/blob/main/CHANGELOG.md)
- [Commits](joshuajaco/eslint-plugin-workspaces@v0.7.0...v0.11.0)

---
updated-dependencies:
- dependency-name: eslint-plugin-workspaces
  dependency-version: 0.11.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump mocha from 10.7.3 to 11.7.2 in /sandbox

Bumps [mocha](https://github.com/mochajs/mocha) from 10.7.3 to 11.7.2.
- [Release notes](https://github.com/mochajs/mocha/releases)
- [Changelog](https://github.com/mochajs/mocha/blob/main/CHANGELOG.md)
- [Commits](mochajs/mocha@v10.7.3...v11.7.2)

---
updated-dependencies:
- dependency-name: mocha
  dependency-version: 11.7.2
  dependency-type: direct:development
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump eslint-plugin-sonarjs from 0.16.0 to 3.0.5

Bumps [eslint-plugin-sonarjs](https://github.com/SonarSource/SonarJS) from 0.16.0 to 3.0.5.
- [Release notes](https://github.com/SonarSource/SonarJS/releases)
- [Commits](https://github.com/SonarSource/SonarJS/commits)

---
updated-dependencies:
- dependency-name: eslint-plugin-sonarjs
  dependency-version: 3.0.5
  dependency-type: direct:development
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>

* CCM-11961: Audit fixed various vulnerabilities

* CCM-11961: Updated supertest in /sandbox and other vulnerabilities

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
@m-salaudeen m-salaudeen merged commit c95d491 into master Sep 30, 2025
13 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

6 participants