Skip to content

Handle vulnerabilities - #8

Closed
js-soft-ops wants to merge 1 commit into
mainfrom
handle-vulnerabilities
Closed

Handle vulnerabilities#8
js-soft-ops wants to merge 1 commit into
mainfrom
handle-vulnerabilities

Conversation

@js-soft-ops

@js-soft-ops js-soft-ops commented Aug 11, 2026

Copy link
Copy Markdown
Contributor

This PR was created automatically because npm audit found vulnerabilities.

Advisory ID Severity Action
GHSA-67mh-4wv8-2f99 Medium Added Exception

Workflow run: https://github.com/js-soft/npm-audit-approver/actions/runs/31483729565

@js-soft-ops js-soft-ops added the dependencies Pull requests that update dependencies label Aug 11, 2026
@js-soft-npm-audit-approver

Copy link
Copy Markdown

Automatic approval was not made because .nsprc adds exception(s) that are not low or medium severity: GHSA-67mh-4wv8-2f99:missing-severity.

1 similar comment
@js-soft-npm-audit-approver

Copy link
Copy Markdown

Automatic approval was not made because .nsprc adds exception(s) that are not low or medium severity: GHSA-67mh-4wv8-2f99:missing-severity.

@js-soft-ops

Copy link
Copy Markdown
Contributor Author

The attempt to merge this pull request while bypassing branch protection rules failed.

The most likely cause is that the user behind the workflow token is not allowed to bypass branch protection rules. To fix this, grant the js-soft-ops user permission to bypass the repository's branch protection rules, then rerun the workflow.

Fallback: normal auto-merge has been enabled for this pull request.

@js-soft-ops
js-soft-ops enabled auto-merge (squash) August 11, 2026 10:32
@js-soft-ops
js-soft-ops force-pushed the handle-vulnerabilities branch from c755562 to 7157bae Compare August 11, 2026 10:47
@js-soft-ops

Copy link
Copy Markdown
Contributor Author

The attempt to merge this pull request while bypassing branch protection rules failed.

The most likely cause is that the user behind the workflow token is not allowed to bypass branch protection rules. To fix this, grant the js-soft-ops user permission to bypass the repository's branch protection rules, then rerun the workflow.

Fallback: normal auto-merge has been enabled for this pull request.

@tnotheis tnotheis closed this Aug 11, 2026
auto-merge was automatically disabled August 11, 2026 10:48

Pull request was closed

@tnotheis
tnotheis deleted the handle-vulnerabilities branch August 11, 2026 10:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update dependencies

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants