Repository navigation
fix(deps): update oclif packages j:cdx-227 - #1542
Open
renovate-coveo[bot] wants to merge 1 commit into
Open
renovate-coveo[bot] wants to merge 1 commit into
renovate-coveo[bot] wants to merge 1 commit into
StepSecurity Actions Security / StepSecurity Required Checks
succeeded
Oct 5, 2026 in 0s
StepSecurity Required Checks
Finished StepSecurity Required Checks
- Script Injection Check - Checks for script injection vulnerabilities in the PR
- PyPI Compromised Packages Check - Checks for compromised PyPI package versions in the PR
- NPM Package Cooldown Check - Fails if any package version in the PR was released within the configured cooldown period, helping to avoid brand-new (and potentially unreviewed or malicious) releases
- NPM Compromised Packages Check - Checks for compromised npm package versions in the PR
- Pwn Request Vulnerabilities Check - Checks for Pwn Request vulnerabilities in the PR via risky triggers
Approve a check
If you need to approve a check, [please open a ticket with the SOC](https://coveord.atlassian.net/servicedesk/customer/portal/116/group/640/create/1324) Unsure whether the check should be approved? Open a ticket as wellPlease include a link to the check.
We can create an exclusion if the call is expected. In the ticket, please specify the expected scope of the call: job, workflow, repository, or the entire org.
Re-run a check
To re-run a check, go to Conversation and add the following comment:@stepsecurity-app checks re-run
The check should re-run automatically. If it does not, open a ticket with the SOC
Please include a link to the check.
No check should take more than 15 minutes. You can re-run a check if it does.
Details
✅ Script Injection Vulnerabilities Check
No Script Injection vulnerabilities found in this PR.
✅ Pwn Request Vulnerabilities Check
No Pwn Request vulnerabilities found in this PR.
✅ PyPI Compromised Packages Check
No compromised PyPI package versions found in current PR.
✅ NPM Compromised Packages Check
No Compromised npm packages are added in current PR.
✅ NPM Package Cooldown Check
No npm package upgrades to recent releases found in current PR.
The following npm packages are inspected in current PR (showing first 10 of 31 packages)
| Package Name | Previous Version | Current Version | file | Current Version Release Date |
|---|---|---|---|---|
| lodash.template | 4.18.1 | package-lock.json | 2026-04-01T21:06:59Z | |
| nock | 13.3.1 | 13.5.6 | package-lock.json | 2024-11-09T18:16:27Z |
| @oclif/core | 1.24.0 | 2.16.0 | package-lock.json | 2024-04-08T18:41:24Z |
| @oclif/color | 1.0.4 | 1.0.13 | package-lock.json | 2023-10-17T02:33:07Z |
| @oclif/plugin-not-found | 2.3.23 | 2.4.3 | package-lock.json | 2023-10-03T02:30:32Z |
| oclif | 3.4.3 | 3.17.2 | packages/cli/core/package.json | 2023-09-28T19:10:00Z |
| oclif | 3.4.3 | 3.17.2 | package.json | 2023-09-28T19:10:00Z |
| oclif | 3.4.3 | 3.17.2 | packages/cli/source/package.json | 2023-09-28T19:10:00Z |
| oclif | 3.4.3 | 3.17.2 | package-lock.json | 2023-09-28T19:10:00Z |
| @oclif/plugin-help | 5.1.23 | 5.2.20 | package-lock.json | 2023-09-28T02:31:42Z |
Loading