fix(cost-management): bump yarn.lock packages for Dependabot CVEs - #4520
fix(cost-management): bump yarn.lock packages for Dependabot CVEs#4520kim-tsao wants to merge 1 commit into
Conversation
Signed-off-by: Kim Tsao <ktsao@redhat.com> Co-authored-by: Cursor <cursoragent@cursor.com>
PR Summary by QodoFix cost-management CVEs with dependency lockfile upgrades
AI Description
Diagram
High-Level Assessment
Files changed (1)
|
|
Code Review by Qodo🐞 Bugs (0) 📘 Rule violations (0) 📎 Requirement gaps (0)
Great, no issues found!Qodo reviewed your code and found no material issues that require reviewTip of the day💡 Did you know, you can describe a rule in plain language on the Rules page and Qodo drafts it for you |
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## main #4520 +/- ##
=======================================
Coverage 62.00% 62.00%
=======================================
Files 2597 2597
Lines 104302 104302
Branches 29307 29304 -3
=======================================
Hits 64671 64671
- Misses 39032 39036 +4
+ Partials 599 595 -4
*This pull request uses carry forward flags. Click here to find out more. Continue to review full report in Codecov by Harness.
🚀 New features to boost your workflow:
|
|
superseded by #4572 |



Summary
yarn up -Ronworkspaces/cost-managementfor open Dependabot alert packages, thenyarn installandyarn dedupe.react-router/react-router-domon the same patch (co-bump; auto-included react-router-dom).Fully fixed
Partial leftovers
Unchanged