Skip to content

fix: upgrade cypress to fix several CVEs#222

Merged
roedoejet merged 1 commit intomainfrom
dev.bump-cypress
Aug 28, 2023
Merged

fix: upgrade cypress to fix several CVEs#222
roedoejet merged 1 commit intomainfrom
dev.bump-cypress

Conversation

@joanise
Copy link
Copy Markdown
Member

@joanise joanise commented Aug 21, 2023

Only partially fixes the dependabot alerts, unfortunately, but moves in the right direction anyway. Looking at the cypress project on github, it looks like the full fix will be deferred to the next major release, 13, because it requires some breaking changes. But moving to the latest cypress 12.x.y seems like the right thing to do at the moment anyway.

@github-actions
Copy link
Copy Markdown
Contributor

PR Preview Action v1.4.4
🚀 Deployed preview to https://ReadAlongs.github.io/Web-Component/pr-preview/pr-222/
on branch gh-pages at 2023-08-21 15:50 UTC

@joanise joanise requested a review from roedoejet August 21, 2023 19:44
@roedoejet roedoejet merged commit 8683f9e into main Aug 28, 2023
@roedoejet roedoejet deleted the dev.bump-cypress branch August 28, 2023 15:16
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants