Skip to content

Conversation

@cat2608
Copy link
Contributor

@cat2608 cat2608 commented Sep 13, 2023

This PR upgrades azure-pipelines-task-lib from 3.3.1 to 3.4.0 in the root folder and from 2.9.3 to 3.4.0 in snykTask folder.

Additional tasks:

  • Commit package-lock.json files
  • Add node_modules to .eslintignore
  • Use npm ci when building for PROD

HEAD-248

@CLAassistant
Copy link

CLAassistant commented Sep 13, 2023

CLA assistant check
All committers have signed the CLA.

@jessehouwing
Copy link
Contributor

jessehouwing commented Sep 13, 2023

A fix is in the works and should be releasing soon.

microsoft/azure-pipelines-task-lib#961

@cat2608 cat2608 force-pushed the fix/HEAD-248-resolve-vuln branch from ef8d4b8 to 8cb3fe4 Compare September 14, 2023 10:22
@cat2608 cat2608 marked this pull request as ready for review September 14, 2023 14:10
@cat2608 cat2608 requested a review from a team as a code owner September 14, 2023 14:10
@cat2608 cat2608 force-pushed the fix/HEAD-248-resolve-vuln branch from a7e31e4 to 3ba60e1 Compare September 18, 2023 14:56
@cat2608 cat2608 changed the title chore: ignore vuln with no available upgrades fix: upgrade azure-pipelines-task-lib dependency Sep 18, 2023
@cat2608 cat2608 changed the title fix: upgrade azure-pipelines-task-lib dependency fix: upgrade azure-pipelines-task-lib dependency [HEAD-248] Sep 19, 2023
@cat2608 cat2608 merged commit 40e65b5 into develop Sep 19, 2023
@cat2608 cat2608 deleted the fix/HEAD-248-resolve-vuln branch September 19, 2023 09:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants