| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Download Repo ZIP] [Original HTTPS Page] |
There was a problem hiding this comment.
Can we teach Dependabot to look in the subfolder?
Sorry, something went wrong.
I'll look into it after this PR! |
Sorry, something went wrong.
| Back | FazBrowse Home | New Git URL |
The dependencies we use when building the runner can't be automatically updated by Dependabot since they are in a package.json in a sub-folder rather than in the main one. Nonetheless, we should still occasionally update them. In particular, there is currently an alert on one of the transitive dependencies being affected by this CVE (GHSA-ww39-953v-wcq6), which I believe will be resolved by this update.