Skip to content

Bump dependencies#2164

Closed
C85297 wants to merge 3 commits intogchq:masterfrom
C85297:bump-dependencies
Closed

Bump dependencies#2164
C85297 wants to merge 3 commits intogchq:masterfrom
C85297:bump-dependencies

Conversation

@C85297
Copy link
Member

@C85297 C85297 commented Jan 28, 2026

Bump various NPM dependencies which have vulnerabilities or sub-dependencies with vulnerabilities.
I believe I've avoided any breaking changes which would affect us except jsonwebtoken, for which I've updated the code to retain the previous behaviour.

@C85297 C85297 self-assigned this Jan 28, 2026
@C85297 C85297 added the dependencies Pull requests that update a dependency file label Jan 28, 2026
@CLAassistant
Copy link

CLAassistant commented Jan 28, 2026

CLA assistant check
All committers have signed the CLA.

@C85297 C85297 force-pushed the bump-dependencies branch 4 times, most recently from 8ea5e37 to 524ea9b Compare January 29, 2026 11:20
@GCHQDeveloper581 GCHQDeveloper581 self-requested a review January 29, 2026 11:47
@C85297 C85297 force-pushed the bump-dependencies branch 2 times, most recently from 6236075 to 62b3a0f Compare January 29, 2026 12:37
@C85297 C85297 force-pushed the bump-dependencies branch from 62b3a0f to 1815c04 Compare January 29, 2026 13:01
@C85297
Copy link
Member Author

C85297 commented Feb 18, 2026

Going to split this up into separate PRs

@C85297 C85297 closed this Feb 18, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

Comments