Skip to content

chore: Override version for vulnerable transitive dependencies#2460

Draft
manishdait wants to merge 3 commits into
hiero-ledger:mainfrom
manishdait:chore/dependabot-alerts
Draft

chore: Override version for vulnerable transitive dependencies#2460
manishdait wants to merge 3 commits into
hiero-ledger:mainfrom
manishdait:chore/dependabot-alerts

Conversation

@manishdait

@manishdait manishdait commented Jul 21, 2026

Copy link
Copy Markdown
Contributor

Description:
This PR updates .github/scripts/package.json overrides version to fix dependabot security alerts for transitive deps.

Related issue(s):

Fixes #2461

Notes for reviewer:

Checklist

  • Documented (Code comments, README, etc.)
  • Tested (unit, integration, etc.)

Signed-off-by: Manish Dait <daitmanish88@gmail.com>
Signed-off-by: Manish Dait <daitmanish88@gmail.com>
@hiero-ledger hiero-ledger deleted a comment from github-actions Bot Jul 21, 2026
@github-actions github-actions Bot added approved Issue has been approved by team member scope: CI/CD involves continuous integration or delivery labels Jul 21, 2026
Signed-off-by: Manish Dait <daitmanish88@gmail.com>
@manishdait manishdait added the time pass Need to wait certain amount of time label Jul 21, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

approved Issue has been approved by team member scope: CI/CD involves continuous integration or delivery time pass Need to wait certain amount of time

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Fix transitive vulnerabilities alerts for js-yaml and brace-expansion

1 participant