Skip to content

chore(deps): fix high vulnerability due to flatted#1555

Open
guoda-puidokaite wants to merge 4 commits intomainfrom
guoda-test
Open

chore(deps): fix high vulnerability due to flatted#1555
guoda-puidokaite wants to merge 4 commits intomainfrom
guoda-test

Conversation

@guoda-puidokaite
Copy link
Contributor

@guoda-puidokaite guoda-puidokaite commented Mar 20, 2026

Summary

There's a new high vulnerability alert due to transitive dependency flatted coming from eslint and @vitest/ui.

Screenshot 2026-03-23 at 10 13 07

Fixed by:

  • upgrading eslint
  • locking @vitest/ui>flatted at >=3.4.2, as there's no newer version of @vitest/ui

Checklist

  • I have performed a self-review of my code.
  • I have commented my code, particularly in hard-to-understand areas.
  • I have added tests that prove my fix is effective or that my feature works.
  • New and existing unit tests pass locally with my changes.
  • I have made corresponding changes to the documentation (if applicable).
  • My changes generate no new warnings or errors.
  • I have created a changeset for my changes.

PR Manifesto

Review the PR Manifesto for best practises.

@changeset-bot
Copy link

changeset-bot bot commented Mar 20, 2026

🦋 Changeset detected

Latest commit: 245093d

The changes in this PR will be included in the next version bump.

This PR includes changesets to release 5 packages
Name Type
@cloudoperators/juno-config Patch
@cloudoperators/juno-app-template Patch
@cloudoperators/juno-app-heureka Patch
@cloudoperators/juno-app-carbon Patch
@cloudoperators/juno-app-greenhouse Patch

Not sure what this means? Click here to learn what changesets are.

Click here if you're a maintainer who wants to add another changeset to this PR

@github-actions
Copy link
Contributor

github-actions bot commented Mar 20, 2026

PR Preview Action v1.8.1

🚀 View preview at
https://cloudoperators.github.io/juno/pr-preview/pr-1555/

Built to branch gh-pages at 2026-03-20 10:57 UTC.
Preview will be ready when the GitHub Pages deployment is complete.

@guoda-puidokaite guoda-puidokaite self-assigned this Mar 23, 2026
@guoda-puidokaite guoda-puidokaite changed the title test chore(deps): fix flatted high vulnerability Mar 23, 2026
@guoda-puidokaite guoda-puidokaite changed the title chore(deps): fix flatted high vulnerability chore(deps): fix high vulnerability due to flatted Mar 23, 2026
@guoda-puidokaite guoda-puidokaite marked this pull request as ready for review March 23, 2026 09:16
@guoda-puidokaite guoda-puidokaite requested a review from a team as a code owner March 23, 2026 09:16
@guoda-puidokaite guoda-puidokaite added app Any app that is not specific label that lives under apps/ dependencies labels Mar 23, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

app Any app that is not specific label that lives under apps/ dependencies

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant