Skip to content

chore(deps): fix 4 open Dependabot alert(s)#1564

Closed
power-pages-github-app[bot] wants to merge 1 commit intomainfrom
copilot/dependabot-autofix-24874482756
Closed

chore(deps): fix 4 open Dependabot alert(s)#1564
power-pages-github-app[bot] wants to merge 1 commit intomainfrom
copilot/dependabot-autofix-24874482756

Conversation

@power-pages-github-app
Copy link
Copy Markdown
Contributor

Summary

Fixes 4 open Dependabot alert(s) as enumerated by npm audit (COPILOT_GITHUB_TOKEN was not configured in this workflow run, so npm audit was used as the security advisory source — it draws from the same GitHub Advisory Database).

Alerts addressed

Collateral changes

None. Only overrides entries in package.json were modified — no direct or parent dependencies were bumped.

Verification

  • npm run build: PASS (pre-existing CI-only missing module warning for telemetry-generated/buildRegionConfiguration is unrelated to these changes)
  • npm test: PASS (95/95 tests passing)

- Add brace-expansion ^1.1.13 override under @vscode/vsce (GHSA-f886-m6hf-6m8v)
- Add path-to-regexp ^8.4.0 override under @vscode/test-web (GHSA-j3q9-mxjg-w52f, GHSA-27v5-c462-wpq7)
- Add uuid ^14.0.0 global override (GHSA-w5hq-g745-h8pq)
@power-pages-github-app power-pages-github-app Bot requested review from a team as code owners April 24, 2026 06:01
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant