Skip to content

Commit aa6be23

Browse files
authored
chore: Bump various packages to mitigate CVEs. (#2922)
1 parent a2763b0 commit aa6be23

6 files changed

Lines changed: 1862 additions & 1565 deletions

File tree

.ado/publish.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -38,7 +38,7 @@ extends:
3838
os: windows
3939
sdl:
4040
componentgovernance:
41-
ignoreDirectories: $(Build.SourcesDirectory)/packages/helloworld
41+
ignoreDirectories: $(Build.SourcesDirectory)/private/helloworld
4242
credscan:
4343
suppressionsFile: .ado/CredScanSuppressions.json
4444
eslint:

docsite/package.json

Lines changed: 12 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -15,8 +15,8 @@
1515
"typecheck": "tsc"
1616
},
1717
"dependencies": {
18-
"@docusaurus/core": "3.8.1",
19-
"@docusaurus/preset-classic": "3.8.1",
18+
"@docusaurus/core": "3.10.0",
19+
"@docusaurus/preset-classic": "3.10.0",
2020
"@mdx-js/react": "^3.0.0",
2121
"@types/react": "^19.0.0",
2222
"clsx": "^2.0.0",
@@ -25,9 +25,9 @@
2525
"react-dom": "^19.0.0"
2626
},
2727
"devDependencies": {
28-
"@docusaurus/module-type-aliases": "3.8.1",
29-
"@docusaurus/tsconfig": "3.8.1",
30-
"@docusaurus/types": "3.8.1",
28+
"@docusaurus/module-type-aliases": "3.10.0",
29+
"@docusaurus/tsconfig": "3.10.0",
30+
"@docusaurus/types": "3.10.0",
3131
"typescript": "~5.8.3"
3232
},
3333
"browserslist": {
@@ -45,5 +45,11 @@
4545
"engines": {
4646
"node": ">=18.0"
4747
},
48-
"packageManager": "yarn@4.9.1"
48+
"packageManager": "yarn@4.9.1",
49+
"resolutions": {
50+
"webpack": ">=5.104.1 <5.106.0"
51+
},
52+
"_resolution_justifications": {
53+
"webpack": "Earlier versions of webpack are affected by CVE-2025-68458, but versions >=5.106.0 doesn't work with docusaurus, which is being worked on: https://github.com/facebook/docusaurus/issues/11923"
54+
}
4955
}

0 commit comments

Comments
 (0)