Skip to content

Chore(deps): Bump lodash from 4.17.21 to 4.18.1 in /defenders#1455

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/defenders/lodash-4.18.1
Open

Chore(deps): Bump lodash from 4.17.21 to 4.18.1 in /defenders#1455
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/defenders/lodash-4.18.1

Chore(deps): Bump lodash from 4.17.21 to 4.18.1 in /defenders

8c73607
Select commit
Loading
Failed to load commit list.
StepSecurity Actions Security / StepSecurity Required Checks succeeded Apr 6, 2026 in 0s

StepSecurity Required Checks

Finished StepSecurity Required Checks

  • Script Injection Check - Checks for script injection vulnerabilities in the PR
  • NPM Compromised Packages Check - Checks for compromised npm package versions in the PR
  • NPM Package Cooldown Check - Fails if any package version in the PR was released within the configured cooldown period, helping to avoid brand-new (and potentially unreviewed or malicious) releases
  • Pwn Request Vulnerabilities Check - Checks for Pwn Request vulnerabilities in the PR via risky triggers

Details

✅ Script Injection Vulnerabilities Check

No Script Injection vulnerabilities found in this PR.

✅ Pwn Request Vulnerabilities Check

No Pwn Request vulnerabilities found in this PR.

✅ NPM Compromised Packages Check

No Compromised npm packages are added in current PR.

✅ NPM Package Cooldown Check

No npm package upgrades to recent releases found in current PR.

The following npm packages are inspected in current PR

Package Name Previous Version Current Version file Current Version Release Date
lodash 4.17.21 4.18.1 yarn.lock 2026-04-01T21:01:20Z
fsevents 2.3.3 yarn.lock 2023-08-21T16:24:22Z
keccak 3.0.3 3.0.3 yarn.lock 2022-12-28T23:50:10Z
qs 6.5.3 6.11.0 yarn.lock 2022-06-27T04:49:53Z
querystring 0.2.1 0.2.1 yarn.lock 2021-02-15T14:38:16Z
uuid 8.0.0 8.0.0 yarn.lock 2020-04-29T20:42:26Z
buffer 4.9.2 4.9.2 yarn.lock 2019-11-08T23:47:16Z
ieee754 1.1.13 1.1.13 yarn.lock 2019-03-26T05:33:59Z
2-thenable 1.0.0 1.0.0 yarn.lock 2019-01-16T16:05:32Z
punycode 2.1.0 2.1.1 yarn.lock 2018-05-22T02:46:47Z
safe-buffer 5.2.1 5.1.2 yarn.lock 2018-04-25T20:10:24Z
string_decoder 1.1.1 1.1.1 yarn.lock 2018-03-30T08:14:15Z