fix(deps): vuln axios (minor → 1.19.0) [example] - #1356
fix(deps): vuln axios (minor → 1.19.0) [example]#1356gh-worker-campaigns-3e9aa4[bot] wants to merge 2 commits into
Conversation
There was a problem hiding this comment.
Pull request overview
Note
Copilot could not run the full agentic suite for this review because it was automatically requested on a bot-authored pull request. Request a review from Copilot under Reviewers to retry with the full agentic suite. Improved support for bot-authored pull requests is coming soon.
This PR updates the example app’s Axios dependency and refreshes yarn.lock, pulling in a broad set of transitive dependency upgrades (notably across Babel and npm CLI packages).
Changes:
- Bump
axiosinexample/package.jsonfrom1.15.1to1.19.0 - Regenerate
yarn.lock, consolidating/removing older subdependency entries and upgrading multiple transitive packages (e.g., Babel,@npmcli/*)
Reviewed changes
Copilot reviewed 1 out of 2 changed files in this pull request and generated no comments.
| File | Description |
|---|---|
| yarn.lock | Lockfile refresh with wide-ranging transitive dependency upgrades that accompany the Axios bump. |
| example/package.json | Updates the example app’s direct axios dependency version. |
💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.
Co-authored-by: gh-worker-campaigns-3e9aa4[bot] <244854796+gh-worker-campaigns-3e9aa4[bot]@users.noreply.github.com>
Co-authored-by: gh-worker-campaigns-3e9aa4[bot] <244854796+gh-worker-campaigns-3e9aa4[bot]@users.noreply.github.com>
Auto-rebase completeBranch is up to date with Auto-Rebase · Add |
e2865a4 to
c7b1978
Compare
Summary: High-severity security update — 1 package upgraded (MINOR changes included)
Manifests changed:
example(yarn)✅ Action Required: Please review the changes below. If they look good, approve and merge this PR.
Updates
Security Details
🚨 Critical & High Severity (2 fixed)
ℹ️ Other Vulnerabilities (18)
ReadableStreamuploads bypassmaxBodyLengthmaxBodyLengthReview Checklist
Standard review:
Update Mode: all_vulns
🤖 Generated by DataDog Automated Dependency Management System