Skip to content

chore(deps): bump yauzl to ^3.2.1#5950

Merged
antonis merged 2 commits intomainfrom
antonis/bump-yauzl
Apr 2, 2026
Merged

chore(deps): bump yauzl to ^3.2.1#5950
antonis merged 2 commits intomainfrom
antonis/bump-yauzl

Conversation

@antonis
Copy link
Copy Markdown
Contributor

@antonis antonis commented Apr 2, 2026

Scoped resolution for @appium/support@7.0.6/yauzl to bump from 3.2.0 to 3.2.1. Dev-only dependency.

https://github.com/getsentry/sentry-react-native/security/dependabot/453

Fixes Dependabot alert for yauzl off-by-one error.

https://github.com/getsentry/sentry-react-native/security/dependabot/453

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Apr 2, 2026

Semver Impact of This PR

None (no version bump detected)

📋 Changelog Preview

This is how your changes will appear in the changelog.
Entries from this PR are highlighted with a left border (blockquote style).


  • chore(deps): bump yauzl to ^3.2.1 by antonis in #5950
  • chore(deps): bump brace-expansion to ^2.0.3 by antonis in #5951
  • chore(deps): bump @xmldom/xmldom to fix XML injection by antonis in #5952

🤖 This preview updates automatically when you update the PR.

@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Apr 2, 2026

Fails
🚫 Pull request is not ready for merge, please add the "ready-to-merge" label to the pull request

Generated by 🚫 dangerJS against f1c479e

@antonis antonis marked this pull request as ready for review April 2, 2026 09:50
Copy link
Copy Markdown
Collaborator

@lucas-zimerman lucas-zimerman left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM!

@antonis antonis enabled auto-merge (squash) April 2, 2026 11:23
@antonis antonis merged commit db746e1 into main Apr 2, 2026
41 of 54 checks passed
@antonis antonis deleted the antonis/bump-yauzl branch April 2, 2026 11:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants