Skip to content

deps: bump npm security fixes in /api#4907

Open
raelga wants to merge 2 commits intomainfrom
deps/npm-security-fixes
Open

deps: bump npm security fixes in /api#4907
raelga wants to merge 2 commits intomainfrom
deps/npm-security-fixes

Conversation

@raelga
Copy link
Copy Markdown
Collaborator

@raelga raelga commented Apr 16, 2026

AROSLSRE-657

What

Bumps npm security dependencies in /api/package-lock.json:

  • lodash-es 4.17.23 → 4.18.1
  • picomatch 2.3.1 → 2.3.2
  • brace-expansion 5.0.4 → 5.0.5, 1.1.12 → 1.1.14
  • yaml 2.8.2 → 2.8.3

Regenerated Go models under internal/api/v20251223preview/generated/ with autorest core 3.10.9 (was 3.10.8). Changes are limited to the version comment in the header and minor field reordering — no functional changes.

Why

Testing

No tests — dependency version bumps and deterministic code regeneration only.

Special notes for your reviewer

Regeneration was necessary because ci/prow/api-validation regenerates models and checks for drift.

Closes #4732
Closes #4660
Closes #4636
Closes #4635

Copilot AI review requested due to automatic review settings April 16, 2026 17:25
@openshift-ci openshift-ci bot requested review from bennerv and mbarnes April 16, 2026 17:25
Copy link
Copy Markdown
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot wasn't able to review any files in this pull request.

Files not reviewed (1)
  • api/package-lock.json: Language not supported

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Comment thread api/package-lock.json
Copilot AI review requested due to automatic review settings April 16, 2026 20:01
@raelga raelga force-pushed the deps/npm-security-fixes branch from 9c3a401 to 713d3a2 Compare April 16, 2026 20:01
Copy link
Copy Markdown
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot wasn't able to review any files in this pull request.

Files not reviewed (1)
  • api/package-lock.json: Language not supported

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Comment thread api/package-lock.json
@raelga raelga force-pushed the deps/npm-security-fixes branch from 713d3a2 to 7e0f958 Compare April 16, 2026 21:55
@openshift-ci
Copy link
Copy Markdown

openshift-ci bot commented Apr 17, 2026

@raelga: The following test failed, say /retest to rerun all failed tests or /retest-required to rerun all mandatory failed tests:

Test name Commit Details Required Rerun command
ci/prow/cspr 7e0f958 link true /test cspr

Full PR test history. Your PR dashboard.

Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here.

@raelga raelga force-pushed the deps/npm-security-fixes branch from 7e0f958 to ba5b5d5 Compare April 17, 2026 06:52
Copilot AI review requested due to automatic review settings April 17, 2026 06:52
Copy link
Copy Markdown
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot wasn't able to review any files in this pull request.

Files not reviewed (1)
  • api/package-lock.json: Language not supported

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Comment thread api/package-lock.json
Copilot AI review requested due to automatic review settings April 17, 2026 07:15
@raelga raelga force-pushed the deps/npm-security-fixes branch from e9e3df8 to ba5b5d5 Compare April 17, 2026 07:16
Copy link
Copy Markdown
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot wasn't able to review any files in this pull request.

Files not reviewed (1)
  • api/package-lock.json: Language not supported

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

@inbharajmani
Copy link
Copy Markdown
Collaborator

/lgtm
/approve

@openshift-ci
Copy link
Copy Markdown

openshift-ci bot commented Apr 17, 2026

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: inbharajmani, raelga

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants