Skip to content

Please bump @datadog/datadog-ci or unpin it #696

@JamiesWhiteShirt

Description

@JamiesWhiteShirt

Keeping up with @datadog/datadog-ci's releases is especially important now that @datadog/datadog-ci is pinning all its dependencies. I would like to be able to upgrade @datadog/datadog-ci to get newer versions that remove the dependency on axios and upgrade to fast-xml-parser to >=5.5.7 to fix CVE-2026-26278.

I think the best solution would be for serverless-plugin-datadog to unpin its dependency on @datadog/datadog-ci. You own that package, and you already trust simple-git to be unpinned.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions