fix(deps): vuln uuid (major → 14.0.1) [packages/react-native-babel-plugin] - #1357
Conversation
There was a problem hiding this comment.
Pull request overview
Note
Copilot could not run the full agentic suite for this review because it was automatically requested on a bot-authored pull request. Request a review from Copilot under Reviewers to retry with the full agentic suite. Improved support for bot-authored pull requests is coming soon.
This PR updates JavaScript/Node dependencies, primarily bumping uuid and refreshing the Yarn lockfile to reflect newer transitive package versions.
Changes:
- Bump
uuidfrom^8.3.2to^14.0.1inpackages/react-native-babel-plugin. - Regenerate
yarn.lock, resulting in many dependency upgrades/dedupes across Babel and npmcli-related packages. - Introduce new transitive dependency entries (e.g.,
@gar/promise-retry) via updated packages.
Reviewed changes
Copilot reviewed 1 out of 2 changed files in this pull request and generated 1 comment.
| File | Description |
|---|---|
| yarn.lock | Updates lockfile to newer resolved versions (Babel, npmcli, debug, etc.) and dedupes entries after dependency bump(s). |
| packages/react-native-babel-plugin/package.json | Upgrades uuid major version for the React Native Babel plugin package. |
💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.
| "fast-glob": "^3.3.3", | ||
| "svgo": "^4.0.1", | ||
| "uuid": "^8.3.2" | ||
| "uuid": "^14.0.1" |
Co-authored-by: gh-worker-campaigns-3e9aa4[bot] <244854796+gh-worker-campaigns-3e9aa4[bot]@users.noreply.github.com>
Co-authored-by: gh-worker-campaigns-3e9aa4[bot] <244854796+gh-worker-campaigns-3e9aa4[bot]@users.noreply.github.com>
Auto-rebase completeBranch is up to date with Auto-Rebase · Add |
b8fe880 to
1226c35
Compare
Summary: Security update — 1 package upgraded (MAJOR changes included)
Manifests changed:
packages/react-native-babel-plugin(yarn)✅ Action Required: Please review the changes below. If they look good, approve and merge this PR.
Updates
Warning
Major Version Upgrade
This update includes major version changes that may contain breaking changes. Please:
Security Details
ℹ️ Other Vulnerabilities (3)
v3/v5/v6whenbufis providedReview Checklist
Extra review is recommended for this update:
Update Mode: all_vulns
🤖 Generated by DataDog Automated Dependency Management System