Skip to content

Bump lodash#1152

Merged
andrejak merged 1 commit intomainfrom
andreja/tsp-1310-resolve-security-vulnerabilities-on-public-sdk-repo-4
Apr 20, 2026
Merged

Bump lodash#1152
andrejak merged 1 commit intomainfrom
andreja/tsp-1310-resolve-security-vulnerabilities-on-public-sdk-repo-4

Conversation

@andrejak
Copy link
Copy Markdown
Contributor

Last version bump in this round of fixes, to address: https://github.com/duffelhq/duffel-api-javascript/security/dependabot

@andrejak andrejak force-pushed the andreja/tsp-1310-resolve-security-vulnerabilities-on-public-sdk-repo-4 branch from f7a6ba2 to a203fce Compare April 20, 2026 10:13
@andrejak andrejak marked this pull request as ready for review April 20, 2026 10:13
@andrejak andrejak requested a review from a team as a code owner April 20, 2026 10:13
@andrejak andrejak enabled auto-merge April 20, 2026 10:13
@andrejak andrejak requested a review from igorp1 April 20, 2026 14:41
Copy link
Copy Markdown
Contributor

@igorp1 igorp1 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

idk that we should edit the lock file itself, right?

Are we missing a resolution on package.json or something like that?

@andrejak andrejak merged commit 9f8e5ea into main Apr 20, 2026
5 checks passed
@andrejak andrejak deleted the andreja/tsp-1310-resolve-security-vulnerabilities-on-public-sdk-repo-4 branch April 20, 2026 14:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants