chore: bump dependency overrides and packageManager#264
chore: bump dependency overrides and packageManager#264sriramveeraghanta merged 1 commit intomasterfrom
Conversation
Bumps pinned overrides (lodash-es 4.17.23 → 4.18.1, adds dompurify 3.4.0 and vite 6.4.2) and updates pnpm to 10.33.0 to pick up upstream security and maintenance fixes.
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
|
No actionable comments were generated in the recent review. 🎉 ℹ️ Recent review info⚙️ Run configurationConfiguration used: defaults Review profile: CHILL Plan: Pro Run ID: ⛔ Files ignored due to path filters (1)
📒 Files selected for processing (1)
📝 WalkthroughWalkthroughUpdated Changes
Estimated code review effort🎯 1 (Trivial) | ⏱️ ~3 minutes Poem
🚥 Pre-merge checks | ✅ 5✅ Passed checks (5 passed)
✏️ Tip: You can configure your own custom pre-merge checks in the settings. ✨ Finishing Touches🧪 Generate unit tests (beta)
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
Summary
lodash-es4.17.23 → 4.18.1, adddompurify3.4.0 andvite6.4.2packageManagerto pnpm 10.33.0pnpm-lock.yamlaccordinglyThese override bumps pick up upstream security and maintenance fixes (GitHub reports 8 Dependabot vulnerabilities on the default branch).
Test plan
pnpm install --frozen-lockfilesucceeds in CIpnpm check:formatpassespnpm build(VitePress) completes successfullypnpm devrenders the site locally without regressionsSummary by CodeRabbit