Skip to content

deps: [UIE-10721] - Bump tsup and vite to fix vulnerabilities#13559

Merged
pmakode-akamai merged 7 commits intolinode:developfrom
pmakode-akamai:bump-tsup-and-vite-to-resolve-rollup-vuln
Apr 7, 2026
Merged

deps: [UIE-10721] - Bump tsup and vite to fix vulnerabilities#13559
pmakode-akamai merged 7 commits intolinode:developfrom
pmakode-akamai:bump-tsup-and-vite-to-resolve-rollup-vuln

Conversation

@pmakode-akamai
Copy link
Copy Markdown
Contributor

@pmakode-akamai pmakode-akamai commented Apr 6, 2026

Description 📝

Bump tsup and vite to fix Rollup vulnerability.

Changes 🔄

  • Bump tsup from ^8.4.0 to ^8.5.1
  • Bump vite from ^7.2.2 to ^7.3.2

How to test 🧪

Verification steps

  • Ensure the app builds without any errors
  • Ensure no regressions are observed in CM
  • Ensure running pnpm audit shows a reduction in the vulnerability count as mentioned above (3 High and 1 Moderate)
Author Checklists

As an Author, to speed up the review process, I considered 🤔

👀 Doing a self review
❔ Our contribution guidelines
🤏 Splitting feature into small PRs
➕ Adding a changeset
🧪 Providing/improving test coverage
🔐 Removing all sensitive information from the code and PR description
🚩 Using a feature flag to protect the release
👣 Providing comprehensive reproduction steps
📑 Providing or updating our documentation
🕛 Scheduling a pair reviewing session
📱 Providing mobile support
♿ Providing accessibility support

  • I have read and considered all applicable items listed above.

As an Author, before moving this PR from Draft to Open, I confirmed ✅

  • All tests and CI checks are passing
  • TypeScript compilation succeeded without errors
  • Code passes all linting rules

@pmakode-akamai pmakode-akamai self-assigned this Apr 6, 2026
@pmakode-akamai pmakode-akamai added Dependencies Pull requests that update a dependency file Security Pull requests that address a security vulnerability labels Apr 6, 2026
@pmakode-akamai pmakode-akamai marked this pull request as ready for review April 6, 2026 13:14
@pmakode-akamai pmakode-akamai requested a review from a team as a code owner April 6, 2026 13:14
@pmakode-akamai pmakode-akamai changed the title deps: Bump tsup and vite to fix vulnerabilities deps: [UIE-10721] - Bump tsup and vite to fix vulnerabilities Apr 7, 2026
@linode-gh-bot
Copy link
Copy Markdown

Cloud Manager UI test results

🔺 1 failing test on test run #3 ↗︎

❌ Failing✅ Passing↪️ Skipped🕐 Duration
1 Failing901 Passing11 Skipped42m 9s

Details

Failing Tests
SpecTest
object-storage.e2e.spec.tsCloud Manager Cypress Tests→object storage end-to-end tests » can update bucket access

Troubleshooting

Use this command to re-run the failing tests:

pnpm cy:run -s "cypress/e2e/core/objectStorage/object-storage.e2e.spec.ts"

@github-project-automation github-project-automation Bot moved this from Review to Approved in Cloud Manager Apr 7, 2026
@pmakode-akamai pmakode-akamai merged commit 4f36980 into linode:develop Apr 7, 2026
34 of 35 checks passed
@github-project-automation github-project-automation Bot moved this from Approved to Merged in Cloud Manager Apr 7, 2026
bbanucha-akamai pushed a commit to bbanucha-akamai/linode-manager that referenced this pull request Apr 8, 2026
…node#13559)

* Bump tsup to fix vuln

* Bump vite

* Added changeset: Bump `tsup` from `8.4.0` to `8.5.1`

* Added changeset: Bump `tsup` from `8.4.0` to `8.5.1`

* Added changeset: Bump `vite` from `7.2.2` to `7.3.1`

* Bump vite
grevanak-akamai pushed a commit that referenced this pull request Apr 23, 2026
…3559)

* Bump tsup to fix vuln

* Bump vite

* Added changeset: Bump `tsup` from `8.4.0` to `8.5.1`

* Added changeset: Bump `tsup` from `8.4.0` to `8.5.1`

* Added changeset: Bump `vite` from `7.2.2` to `7.3.1`

* Bump vite
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Dependencies Pull requests that update a dependency file Security Pull requests that address a security vulnerability

Projects

Archived in project

Development

Successfully merging this pull request may close these issues.

4 participants