8000 fix(deps): update undici transitive dependency by MikeMcC399 · Pull Request #1463 · cypress-io/github-action · GitHub
[go: up one dir, main page]

Skip to content

Conversation

MikeMcC399
Copy link
Collaborator

Situation

npm audit and dependabot report a low severity vulnerability CVE-2025-47279 in undici:

Change

npm audit fix is used to update the undici dependencies as follows:

updated to undici@5.29.0 in action
updated to undici@6.21.3 for markdown-link-check
@MikeMcC399 MikeMcC399 added the bug Something isn't working label May 16, 2025
@MikeMcC399 MikeMcC399 self-assigned this May 16, 2025
@cypress-app-bot
Copy link

@MikeMcC399 MikeMcC399 marked this pull request as ready for review May 16, 2025 12:02
@jennifer-shehane jennifer-shehane merged commit a04b1ce into cypress-io:master May 16, 2025
80 checks passed
@MikeMcC399 MikeMcC399 deleted the update/undici branch May 16, 2025 16:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

bug Something isn't working

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

0