fix(deps): bump runner dependencies to resolve 4 Dependabot security alerts#1358
Conversation
…alerts - authlib 1.6.6 → 1.6.11 (CSRF via cache) - Mako 1.3.10 → 1.3.11 (path traversal via double-slash URI) - python-multipart 0.0.22 → 0.0.26 (CVE-2026-40347, DoS via large preamble) - pytest 9.0.2 → 9.0.3 (CVE-2025-71176, tmpdir handling) Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
✅ Deploy Preview for cheerful-kitten-f556a0 ready!
To edit notification comments on pull requests, go to your Netlify project configuration. |
|
Important Review skippedReview was skipped due to path filters ⛔ Files ignored due to path filters (1)
CodeRabbit blocks several paths by default. You can override this behavior by explicitly including those paths in the path filters. For example, including ⚙️ Run configurationConfiguration used: Path: .coderabbit.yaml Review profile: CHILL Plan: Pro Plus Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
✨ Finishing Touches🧪 Generate unit tests (beta)
✨ Simplify code
Comment |
Summary
uv.lockto resolve 4 active Dependabot security alertsTest plan
🤖 Generated with Claude Code