Skip to content

Resolve open Dependabot vulnerability alerts - #140

Merged
alexmontesg merged 1 commit into
mainfrom
bugfix/GH-139-resolve-open-dependabo
Oct 5, 2026
Merged

alexmontesg merged 1 commit into
mainfrom
bugfix/GH-139-resolve-open-dependabo

Conversation

@alexmontesg

Copy link
Copy Markdown
Contributor

Closes #139

Remove the unused npm dependency from code, whose bundled node_modules
carried vulnerable ip-address, undici and brace-expansion copies, and
raise brace-expansion overrides in cleanup-storage.

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
@sonarqubecloud

sonarqubecloud Bot commented Oct 5, 2026

Copy link
Copy Markdown

@alexmontesg
alexmontesg marked this pull request as ready for review October 5, 2026 10:38
@alexmontesg
alexmontesg requested a review from a team as a code owner October 5, 2026 10:38
@alexmontesg
alexmontesg merged commit 847a67c into main Oct 5, 2026
11 checks passed
@alexmontesg
alexmontesg deployed to azure-develop October 5, 2026 10:45 — with GitHub Actions Active

This branch was successfully deployed

1 active deployment
azure-develop — 5474fcec Deployed Oct 5, 2026 by alexmontesg via Deploy to Container Apps #500
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Resolve open Dependabot vulnerability alerts

2 participants