Skip to content

[deps]: Lock file maintenance - #1065

Merged
JaredScar merged 4 commits into
mainfrom
renovate/lock-file-maintenance
Mar 31, 2026
Merged

[deps]: Lock file maintenance#1065
JaredScar merged 4 commits into
mainfrom
renovate/lock-file-maintenance

Conversation

@renovate

@renovate renovate Bot commented Mar 30, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Update Change
lockFileMaintenance All locks refreshed

🔧 This Pull Request updates lock files to use the latest dependency versions.


Configuration

📅 Schedule: Branch creation - "every 2nd week starting on the 2 week of the year before 4am on Monday" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate
renovate Bot requested a review from a team as a code owner March 30, 2026 02:18
@renovate
renovate Bot requested a review from sven-bitwarden March 30, 2026 02:18
@bitwarden-bot bitwarden-bot changed the title [deps]: Lock file maintenance [PM-34325] [deps]: Lock file maintenance Mar 30, 2026
@bitwarden-bot

Copy link
Copy Markdown

Internal tracking:

@codecov

codecov Bot commented Mar 30, 2026

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 7.07%. Comparing base (c689296) to head (05843f6).
⚠️ Report is 6 commits behind head on main.
✅ All tests successful. No failed tests found.

❗ There is a different number of reports uploaded between BASE (c689296) and HEAD (05843f6). Click for more details.

HEAD has 1 upload less than BASE
Flag BASE (c689296) HEAD (05843f6)
2 1
Additional details and impacted files
@@            Coverage Diff            @@
##             main   #1065      +/-   ##
=========================================
- Coverage   15.40%   7.07%   -8.33%     
=========================================
  Files          67      67              
  Lines        2798    2798              
  Branches      483     483              
=========================================
- Hits          431     198     -233     
- Misses       2264    2569     +305     
+ Partials      103      31      -72     

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@renovate renovate Bot changed the title [PM-34325] [deps]: Lock file maintenance [deps]: Lock file maintenance Mar 30, 2026
@renovate
renovate Bot force-pushed the renovate/lock-file-maintenance branch from d284050 to ed71132 Compare March 30, 2026 20:01
@vincentsalucci
vincentsalucci requested review from JaredScar and removed request for sven-bitwarden March 30, 2026 21:13
JaredScar
JaredScar previously approved these changes Mar 31, 2026
@renovate

renovate Bot commented Mar 31, 2026

Copy link
Copy Markdown
Contributor Author

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.

You can manually request rebase by checking the rebase/retry box above.

⚠️ Warning: custom changes will be lost.

@sonarqubecloud

Copy link
Copy Markdown

@github-actions

Copy link
Copy Markdown
Contributor

Logo
Checkmarx One – Scan Summary & Detailsbf439425-d7b0-4f52-b6ad-8acab7e04573


New Issues (2) Checkmarx found the following issues in this Pull Request
# Severity Issue Source File / Package Checkmarx Insight
1 HIGH CVE-2026-33894 Npm-node-forge-1.3.2
detailsRecommended version: 1.4.0
Description: Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0, RSASSA PKCS#1 v1.5 s...
Attack Vector: NETWORK
Attack Complexity: LOW
Vulnerable Package
2 MEDIUM Use_Of_Hardcoded_Password /utils/openldap/config-fixtures.ts: 21
detailsThe application uses the hard-coded password "admin" for authentication purposes, either using it to verify users' identities, or to access anothe...
Attack Vector

Fixed Issues (2) Great job! The following issues were fixed in this Pull Request
Severity Issue Source File / Package
CRITICAL CVE-2026-33937 Npm-handlebars-4.7.8
HIGH CVE-2026-4926 Npm-path-to-regexp-8.3.0

@JaredScar
JaredScar merged commit aebb1a2 into main Mar 31, 2026
30 of 31 checks passed
@JaredScar
JaredScar deleted the renovate/lock-file-maintenance branch March 31, 2026 17:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants