Skip to content

Package update and audit fix - #68

Open
daniellmorrisGP wants to merge 36 commits into
valtech-sd:masterfrom
GiganticPlayground:package-update-and-audit-fix
Open

Package update and audit fix#68
daniellmorrisGP wants to merge 36 commits into
valtech-sd:masterfrom
GiganticPlayground:package-update-and-audit-fix

Conversation

@daniellmorrisGP

@daniellmorrisGP daniellmorrisGP commented Apr 21, 2026

Copy link
Copy Markdown

Update dependencies: rules-js, amqp-cacoon, coronado-bridge

  • Switch @valtech-sd/rules-js to rules-js GitHub fork (^1.1.1)
  • Bump amqp-cacoon to ^3.6.0
  • Bump coronado-bridge to ^2.4.0
  • Update import in src/index.ts to match new rules-js package name
  • Remove trailing whitespace from README.md

Fix npm audit vulnerabilities

  • Upgrade mocha ^9 → ^11.0.0 and nodemon ^2 → ^3.0.0
  • Upgrade @types/mocha ^9 → ^10.0.0 to match mocha v11
  • Add npm overrides to force diff ^9.0.0 and serialize-javascript ^7.0.5,
    working around mocha@11.7.5 bundling still-vulnerable versions internally
  • Resolves 18 vulnerabilities (3 low, 3 moderate, 12 high) → 0

daniellmorrisGP and others added 30 commits December 7, 2023 12:26
…one_support

Add timezone support scheduler input
Wait for any pending tasks to complete before exiting

- ClickUp: CU-86dtk2747
…eg-Rowe/title-data-change-detection

wait for pending tasks on exit
…g-Rowe/v2.16.1

Fixed missing version update in package.json
…-execution-speed

Remove cloneDeep in every closure call
- Switch @valtech-sd/rules-js to rules-js GitHub fork (^1.1.1)
- Bump amqp-cacoon to ^3.6.0
- Bump coronado-bridge to ^2.4.0
- Update import in src/index.ts to match new rules-js package name
- Remove trailing whitespace from README.md
- Upgrade mocha ^9 → ^11.0.0 and nodemon ^2 → ^3.0.0
- Upgrade @types/mocha ^9 → ^10.0.0 to match mocha v11
- Add npm overrides to force diff ^9.0.0 and serialize-javascript ^7.0.5,
  working around mocha@11.7.5 bundling still-vulnerable versions internally
- Resolves 18 vulnerabilities (3 low, 3 moderate, 12 high) → 0
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants