chore: dependency upgrade party - #1979
Conversation
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub. |
|
Warning Review the following alerts detected in dependencies. According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.
|
There was a problem hiding this comment.
Pull request overview
This PR updates dependency versions across the Jetstream Nx monorepo, including a security-motivated override for @xmldom/xmldom, to keep the toolchain and runtime dependencies current.
Changes:
- Bump
@xmldom/xmldomoverride to^0.9.11for the SAML-related dependency chain. - Upgrade a set of devDependencies (e.g., Electron, esbuild, oxfmt/oxlint, Vite) and runtime dependencies (e.g., Next, pg, js-yaml, Sentry, TanStack packages).
Reviewed changes
Copilot reviewed 2 out of 3 changed files in this pull request and generated no comments.
| File | Description |
|---|---|
| pnpm-workspace.yaml | Updates the @xmldom/xmldom override to a newer patched range. |
| package.json | Bumps multiple dependency versions for tooling and app/runtime libraries. |
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
No description provided.