[Snyk] Security upgrade @pulumi/pulumi from 3.77.1 to 3.113.0#7696
[Snyk] Security upgrade @pulumi/pulumi from 3.77.1 to 3.113.0#7696rubenfiszel wants to merge 1 commit intomainfrom
Conversation
…json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-DIFF-14917201
Deploying windmill with
|
| Latest commit: |
bc3ddf3
|
| Status: | ✅ Deploy successful! |
| Preview URL: | https://b3417be7.windmill.pages.dev |
| Branch Preview URL: | https://snyk-fix-d54a48a6f10844bc3cc.windmill.pages.dev |
|
Claude finished @rubenfiszel's task in 1m 43s —— View job Reviewing PR #7696
Review SummaryThis PR is an automated security fix from Snyk that upgrades Vulnerability Fixed: SNYK-JS-DIFF-14917201 - Regular Expression Denial of Service (ReDoS) in the ObservationsPositive Aspects:
Notable Changes:
Considerations:
RecommendationApprove - This is a low-risk security upgrade affecting only benchmarking code. The PR correctly addresses the ReDoS vulnerability. Testing InstructionsThis PR affects the Navigate to the benchmarks section (if exposed in the app) or manually inspect that the Pulumi benchmark scripts still execute correctly after the dependency upgrade. Since this is benchmarking code not exposed in the main application UI, no in-app testing is required. The changes can be verified by running |
Snyk has created this PR to fix 1 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
benchmarks/pulumi/package.jsonbenchmarks/pulumi/package-lock.jsonVulnerabilities that will be fixed with an upgrade:
SNYK-JS-DIFF-14917201
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Regular Expression Denial of Service (ReDoS)