Skip to content

chore(deps): run npm audit fix#1406

Merged
jamesiri merged 1 commit intomasterfrom
jamiemagee/npm-audit-fix
Jan 20, 2026
Merged

chore(deps): run npm audit fix#1406
jamesiri merged 1 commit intomasterfrom
jamiemagee/npm-audit-fix

Conversation

@JamieMagee
Copy link
Copy Markdown
Contributor

@JamieMagee JamieMagee commented Jan 20, 2026

Summary

  • Runs npm audit fix to apply safe, non-breaking security fixes
  • Fixes undici vulnerability (unbounded decompression chain in HTTP responses)

Stack

This is part 1 of a 3-part stacked PR:

  1. This PR - npm audit fix
  2. chore(deps): update body-parser and semver to latest patch versions #1407 - Update patch dependencies
  3. chore(deps): update vso-node-api to 6.5.0 #1408 - Update vso-node-api

Fixes undici vulnerability (unbounded decompression chain)
@jamesiri jamesiri merged commit b57d9b9 into master Jan 20, 2026
4 checks passed
@jamesiri jamesiri deleted the jamiemagee/npm-audit-fix branch January 20, 2026 19:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants