Skip to content

Conversation

@rjrudin
Copy link
Contributor

@rjrudin rjrudin commented Nov 19, 2025

Resolves a CVE

Copilot AI review requested due to automatic review settings November 19, 2025 15:11
Copy link

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

This PR updates several development dependencies to resolve a CVE vulnerability, with primary focus on upgrading mocha and js-yaml packages. The changes also include related updates to ESLint tooling and removal of a duplicate js-yaml entry.

Key Changes:

  • Upgraded mocha from ^11.7.4 to ^11.7.5 and js-yaml from 4.1.0 to 4.1.1 to address CVE
  • Updated @typescript-eslint packages and eslint to compatible versions
  • Removed duplicate js-yaml entry from possiblyUnused section

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

@rjrudin rjrudin merged commit d56f8df into develop Nov 19, 2025
1 check passed
@rjrudin rjrudin deleted the feature/bump-mocha branch November 19, 2025 15:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants