fix(security): fix high severity dev dependencies#1469
Conversation
|
Coverage Impact This PR will not change total coverage. 🚦 See full report on Qlty Cloud »🛟 Help
|
5260a7c to
67f7b96
Compare
Remove tar, jws and validator resolutions: - tar: v6.2.1 and v7.5.7 resolve naturally without forcing v7 on v6 consumers - jws: v3.2.3 and v4.0.1 resolve naturally without forcing v4 on v3 consumers - validator: already resolves to 13.15.26 without any override Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
Review: Root resolutions cleanupResolutions removed (commit 50ec62f)
Resolutions kept (justified)
Verification
Additional noteThe NestJS bump from v10 to v11 in |
Revert NestJS v11 in
|
- Remove jws resolution: v3.2.3 and v4.0.1 resolve naturally as separate entries, both are safe - Remove validator resolution: already resolves to 13.15.26 without any override - Keep tar resolution (^7.5.7): yarn v1 deduplication requires it to silence audit warnings for lerna transitive deps Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
01dc7f6 to
c31d7b8
Compare
## @forestadmin/ai-proxy [1.4.3](https://github.com/ForestAdmin/agent-nodejs/compare/@forestadmin/ai-proxy@1.4.2...@forestadmin/ai-proxy@1.4.3) (2026-02-13) ### Bug Fixes * **security:** fix high severity dev dependencies ([#1469](#1469)) ([dac484e](dac484e))
## @forestadmin/forestadmin-client [1.37.12](https://github.com/ForestAdmin/agent-nodejs/compare/@forestadmin/forestadmin-client@1.37.11...@forestadmin/forestadmin-client@1.37.12) (2026-02-13) ### Bug Fixes * **security:** fix high severity dev dependencies ([#1469](#1469)) ([dac484e](dac484e)) ### Dependencies * **@forestadmin/ai-proxy:** upgraded to 1.4.3
## @forestadmin/agent-client [1.4.8](https://github.com/ForestAdmin/agent-nodejs/compare/@forestadmin/agent-client@1.4.7...@forestadmin/agent-client@1.4.8) (2026-02-13) ### Bug Fixes * **security:** fix high severity dev dependencies ([#1469](#1469)) ([dac484e](dac484e)) ### Dependencies * **@forestadmin/forestadmin-client:** upgraded to 1.37.12
## @forestadmin/mcp-server [1.8.3](https://github.com/ForestAdmin/agent-nodejs/compare/@forestadmin/mcp-server@1.8.2...@forestadmin/mcp-server@1.8.3) (2026-02-13) ### Bug Fixes * **security:** fix high severity dev dependencies ([#1469](#1469)) ([dac484e](dac484e)) ### Dependencies * **@forestadmin/agent-client:** upgraded to 1.4.8 * **@forestadmin/forestadmin-client:** upgraded to 1.37.12
## @forestadmin/agent [1.72.9](https://github.com/ForestAdmin/agent-nodejs/compare/@forestadmin/agent@1.72.8...@forestadmin/agent@1.72.9) (2026-02-13) ### Bug Fixes * **security:** fix high severity dev dependencies ([#1469](#1469)) ([dac484e](dac484e)) ### Dependencies * **@forestadmin/ai-proxy:** upgraded to 1.4.3 * **@forestadmin/forestadmin-client:** upgraded to 1.37.12 * **@forestadmin/mcp-server:** upgraded to 1.8.3
## @forestadmin/agent-testing [1.0.13](https://github.com/ForestAdmin/agent-nodejs/compare/@forestadmin/agent-testing@1.0.12...@forestadmin/agent-testing@1.0.13) (2026-02-13) ### Bug Fixes * **security:** fix high severity dev dependencies ([#1469](#1469)) ([dac484e](dac484e)) ### Dependencies * **@forestadmin/agent-client:** upgraded to 1.4.8 * **@forestadmin/forestadmin-client:** upgraded to 1.37.12 * **@forestadmin/agent:** upgraded to 1.72.9

Definition of Done
General
Security