Skip to content

fix(deps): remediate dependency vulnerabilities - #346

Merged
Sawtaytoes merged 1 commit into
mainfrom
fix/dependency-security
Oct 4, 2026
Merged

Sawtaytoes merged 1 commit into
mainfrom
fix/dependency-security

Conversation

@Sawtaytoes

Copy link
Copy Markdown
Owner

Update vulnerable dependencies and regenerate the lockfile. Keep existing major lines where possible; use scoped compatibility overrides for legacy transitive requirements.

Upgrade sharp to the fixed 0.35 line and scope UUID 11.1.1 overrides to the embedded broker libraries.

Validation: local tests, typecheck, build, lint passed. Dependency audit has no unmitigated advisories; deprecation notices are separate from vulnerabilities. CI must pass before merge.

@github-actions

github-actions Bot commented Oct 4, 2026

Copy link
Copy Markdown

Visual regression — queuepilot (vrt)

✅ No visual changes.

changed new deleted unchanged
0 0 0 48

Open the full diff report

@Sawtaytoes
Sawtaytoes merged commit 9aaa05c into main Oct 4, 2026
5 checks passed
@Sawtaytoes
Sawtaytoes deleted the fix/dependency-security branch October 4, 2026 04:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant