Skip to content

T130: take the patched transitive - #21

Closed
tomj12k wants to merge 1 commit into
mainfrom
security/deps-advisories
Closed

tomj12k wants to merge 1 commit into
mainfrom
security/deps-advisories

Conversation

@tomj12k

@tomj12k tomj12k commented Sep 16, 2026

Copy link
Copy Markdown
Contributor

One high-severity advisory against a transitive dependency.

The remedy needed no constraint change — the declared range already permitted
the patched release, so the lockfile was the only thing holding the old one.

One to none. Typecheck clean; 18 tests across three suites pass.

Tracked as T130.

One high-severity advisory, and the remedy needed no constraint change: the
declared range already permitted the patched release, so the lockfile was the
only thing holding the old one.

One to none. Typecheck clean, 18 tests across three suites pass.

See T130.
@tomj12k

tomj12k commented Sep 16, 2026

Copy link
Copy Markdown
Contributor Author

Reopened on security/t130: the branch convention is security/t### with nothing appended, so a public reader gets the identifier and nothing else.

@tomj12k tomj12k closed this Sep 16, 2026
@tomj12k
tomj12k deleted the security/deps-advisories branch September 16, 2026 19:45
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant