Skip to content

Bump dependencies#2164

Open
C85297 wants to merge 2 commits intogchq:masterfrom
C85297:bump-dependencies
Open

Bump dependencies#2164
C85297 wants to merge 2 commits intogchq:masterfrom
C85297:bump-dependencies

Conversation

@C85297
Copy link
Member

@C85297 C85297 commented Jan 28, 2026

Bump various NPM dependencies which have vulnerabilities or sub-dependencies with vulnerabilities.
I believe I've avoided any breaking changes which would affect us except jsonwebtoken, for which I've updated the code to retain the previous behaviour.

@C85297 C85297 self-assigned this Jan 28, 2026
@C85297 C85297 added the dependencies Pull requests that update a dependency file label Jan 28, 2026
@CLAassistant
Copy link

CLAassistant commented Jan 28, 2026

CLA assistant check
All committers have signed the CLA.

@C85297 C85297 force-pushed the bump-dependencies branch 4 times, most recently from 8ea5e37 to 524ea9b Compare January 29, 2026 11:20
@GCHQDeveloper581 GCHQDeveloper581 self-requested a review January 29, 2026 11:47
@C85297 C85297 force-pushed the bump-dependencies branch 2 times, most recently from 6236075 to 62b3a0f Compare January 29, 2026 12:37
@C85297 C85297 force-pushed the bump-dependencies branch from 62b3a0f to 1815c04 Compare January 29, 2026 13:01
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants