Conversation
- next: 15.5.9 → 15.5.10 (GHSA-h25m-26qc-wcjf) - @isaacs/brace-expansion: 5.0.0 → >=5.0.1 (CVE-2026-25547) - fast-xml-parser: 5.2.5 → >=5.3.4 (CVE-2026-25128)
|
|
No actionable comments were generated in the recent review. 🎉 📝 WalkthroughWalkthroughConfiguration updates to dependency management: two new pnpm package overrides added to Changes
Estimated code review effort🎯 1 (Trivial) | ⏱️ ~3 minutes Poem
🚥 Pre-merge checks | ✅ 4✅ Passed checks (4 passed)
✏️ Tip: You can configure your own custom pre-merge checks in the settings. ✨ Finishing touches🧪 Generate unit tests (beta)
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
Summary
Addresses Vanta HIGH vulnerabilities with SLAs Feb 28 – Mar 14.
Supersedes Dependabot PR #269 (major version bump to next 16.x not needed — patch to 15.5.10 is sufficient).
Linear Issues
Test plan
pnpm installcompletes without errorspnpm buildsucceeds across all 5 workspace packagesSummary by CodeRabbit