Bump @babel/plugin-transform-modules-systemjs from 7.14.5 to 7.29.4 in /dashboard-widget-google-analytics - #675
Closed
dependabot[bot] wants to merge 201 commits into
Conversation
This reverts commit d280e20.
Updates README.md with missing image and update links
Added clear field option
…g_in_indexhtml fix:added script tag in index.html [CS-16476]
…extension Feat/cs 11109 added youtube extension
chore: Security fixes and build tool modernization - Update axios, googleapis, and 50+ dependencies - Migrate React apps to Vite 7 - Upgrade Gulp 4 → 5 across extensions - Update RTE plugins to Venus Components 3.x - Fix CSS typo in highlight plugin - Remove audience-app (moved to separate repo)
Updated dependencies across multiple extension packages to address security vulnerabilities: Fully Fixed (0 vulnerabilities): - word-count: Fixed 6 vulnerabilities using --legacy-peer-deps - variable-app: Fixed 6 vulnerabilities - text-intelligence: Fixed 1 high severity vulnerability - optimizely: Fixed 1 high severity vulnerability - optimizely-experiments: Fixed 1 high severity vulnerability - marketo-forms: Fixed 1 high severity vulnerability - json-editor: Already secure (0 vulnerabilities) - info-panel: Fixed 5 vulnerabilities - google-analytics: Already secure (0 vulnerabilities) - google-analytics/lambda: Fixed 1 high severity vulnerability - external-api-lookup-template: Fixed 1 high severity vulnerability - dashboard-widget-google-analytics: Already secure (0 vulnerabilities) - dashboard-widget-google-analytics/lambda: Fixed 1 high severity vulnerability - content-type-visualizer: Already secure (0 vulnerabilities) - youtube/youtube-extension: Fixed 1 high severity axios vulnerability (--force) - youtube/youtube-extension-popup: Fixed 1 high severity axios vulnerability (--force) - brightcove/lambda: Fixed 1 high severity vulnerability - brightcove/brightcove: Fixed 3 vulnerabilities - brightcove/brightcove-popup: Fixed 3 vulnerabilities Partially Fixed: - ooyala: Reduced from 33 to 12 vulnerabilities (remaining issues are in deprecated build tools with no fix available) Not Fixed: - highlight: Package has override conflict in package.json, requires manual review Total: 18 packages fully secured, 1 package partially improved (64% reduction in vulnerabilities) All packages now passing npm audit or have minimal remaining issues in deprecated devDependencies. Co-authored-by: Cursor <cursoragent@cursor.com>
chore: fix npm security vulnerabilities across 18 packages
chore: fixed snyk issues
Bumps [@babel/plugin-transform-modules-systemjs](https://github.com/babel/babel/tree/HEAD/packages/babel-plugin-transform-modules-systemjs) from 7.14.5 to 7.29.4. - [Release notes](https://github.com/babel/babel/releases) - [Changelog](https://github.com/babel/babel/blob/main/CHANGELOG.md) - [Commits](https://github.com/babel/babel/commits/v7.29.4/packages/babel-plugin-transform-modules-systemjs) --- updated-dependencies: - dependency-name: "@babel/plugin-transform-modules-systemjs" dependency-version: 7.29.4 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com>
amit-kanswal-cs
force-pushed
the
master
branch
from
August 16, 2026 18:15
e806a18 to
ae001aa
Compare
amit-kanswal-cs
deleted the
dependabot/npm_and_yarn/dashboard-widget-google-analytics/babel/plugin-transform-modules-systemjs-7.29.4
branch
August 16, 2026 18:19
Author
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps @babel/plugin-transform-modules-systemjs from 7.14.5 to 7.29.4.
Release notes
Sourced from @babel/plugin-transform-modules-systemjs's releases.
... (truncated)
Commits
a458f66v7.29.432ebd5a[7.x backport]fix(systemjs): improve module string name support (#17974)aa8394ev7.29.00053db6Update polyfill packages (#17727)61647aev7.28.5a177d55[Babel 8] Uset.traverseFastto replace somepath.traverse(#17518)eebd3a0v7.27.1317e332Enforce node protocol import (#17207)fdc0fb5[Babel 8] Bump nodejs requirements to^20.19.0 || >= 22.12.0(#17204)cd24cc0chore: Update TS 5.7 (#17053)Maintainer changes
This version was pushed to npm by GitHub Actions, a new releaser for
@babel/plugin-transform-modules-systemjssince your current version.Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)You can disable automated security fix PRs for this repo from the Security Alerts page.