Skip to content

chore(deps): bump fast-uri to 3.1.8 and browserslist to 4.29.1 [security] - #23

Merged
yevhenpylyp-del merged 1 commit into
mainfrom
chore/bump-fast-uri-and-browserslist
Sep 28, 2026
Merged

yevhenpylyp-del merged 1 commit into
mainfrom
chore/bump-fast-uri-and-browserslist

Conversation

@yevhenpylyp-del

@yevhenpylyp-del yevhenpylyp-del commented Sep 28, 2026 •

Copy link
Copy Markdown
Contributor

What/Why/How?

Resolves vulneabilitie findings. The only change is to package-lock.json:

All dependents' declared ranges already allow these versions.

Reference

Testing

  • npm ci installs cleanly
  • npx @redocly/cli@latest lint passes (CI step)

…ity]

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>

@redocly redocly Bot left a comment •

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

cafe

AI Review: 🟢 Completed

Note

Low Risk

Dependency-only update in package-lock.json addressing security vulnerabilities without altering source code, runtime application logic, or API definitions.

Overview

Updates package-lock.json to bump fast-uri (3.1.5 to 3.1.8) and browserslist (4.28.2 to 4.29.1) alongside transitive data packages (baseline-browser-mapping, caniuse-lite, electron-to-chromium, node-releases, and update-browserslist-db) to remediate reported security vulnerabilities.

Changed pages

No pages affected.

Open preview

@yevhenpylyp-del
yevhenpylyp-del marked this pull request as ready for review September 28, 2026 11:29
@yevhenpylyp-del
yevhenpylyp-del requested review from DmitryAnansky and removed request for Daryna-del September 28, 2026 11:55
@yevhenpylyp-del
yevhenpylyp-del merged commit dda39af into main Sep 28, 2026
7 checks passed
@yevhenpylyp-del
yevhenpylyp-del deleted the chore/bump-fast-uri-and-browserslist branch September 28, 2026 13:29
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants