chore(deps): bump undici from 7.28.0 to 7.29.0 - #274
Conversation
|
PR author is in the excluded authors list. |
|
Dependabot triage tracking note for this cycle (2026-08-08) is posted on #269 (GitHub Issues are disabled on this repo) — covers this PR plus #271, #272, #273, #269. This PR: Generated by Claude Code |
|
Dependabot triage tracking note for this cycle (2026-08-09) is posted on #269 (GitHub Issues are still disabled on this repo) — covers this PR plus #271, #272, #273, #269. This PR: Generated by Claude Code |
|
Dependabot triage tracking note for this cycle (2026-08-12) is posted on #271 (Issues are disabled on this repo; old host #269 was closed/superseded on 08-11, #271 is the new host) — covers this PR plus #272, #273, #275, #276, #277. This PR remains the outlier of the batch: all 7 checks still failing, unchanged since the 2026-08-04 run (no rebase/new commit since). Given it carries 5 real CVE fixes in Generated by Claude Code |
Bumps [undici](https://github.com/nodejs/undici) from 7.28.0 to 7.29.0. - [Release notes](https://github.com/nodejs/undici/releases) - [Commits](nodejs/undici@v7.28.0...v7.29.0) --- updated-dependencies: - dependency-name: undici dependency-version: 7.29.0 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com>
f6390fa to
d0a9b4f
Compare
Dependabot PR Review — 2026-08-29Note: Issues are disabled on this repo, so this review is posted directly on each of the 6 currently-open Dependabot PRs instead of a shared tracking issue (the process used on Purchasely-Firebase-Extension#498 and purchasely-support-app#266). Nothing has been merged, approved, or closed — this PR will only be merged after an explicit human go-ahead comment on it.
On this PR: this Generated by Claude Code |
Dependabot PR Review — 2026-08-31Note: Issues are disabled on this repo, so this review is posted directly on each of the 6 currently-open Dependabot PRs instead of a shared tracking issue. Nothing has been merged, approved, or closed — this PR will only be merged after an explicit human go-ahead comment on it.
Correction on #273/#272: every prior rebase request on those two PRs (2026-08-27, 2026-08-29, 2026-08-30) was posted as On this PR: unchanged — all 7 CI jobs still fail ( Generated by Claude Code |
|
Dependabot triage tracking note for this cycle (2026-09-02) is posted on #288 (new host — Issues are disabled on this repo) — covers this PR plus #287, #277, #276, #275, #273, #272. This PR: Generated by Claude Code |
|
Looks like undici is up-to-date now, so this is no longer needed. |
Bumps undici from 7.28.0 to 7.29.0.
Release notes
Sourced from undici's releases.
Commits
9e38fc1Bumped v7.29.0 (#5590)d887e34fix: validate coerced header values for CRLF (#5579)33928bcfix: validate blob body content type98011a8fix(cache): harden cache directive parsing4a9dafbtest(retry): correct broken content-range fixtures in retry-handler.js1b5a531fix(retry): reject partial content length mismatch466e99dtest: cover crash on mixed unqualified and qualified private cache directives9f10f1efix: handle empty qualified private cache directive3bf91ddfix: harden cookie domain, path, and unparsed attribute validation