Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Upgrade pnpm to fix pnpm config in CI #511

Merged
merged 1 commit into from Feb 7, 2023

Conversation

CobyPear
Copy link
Member

@CobyPear CobyPear commented Feb 7, 2023

What changes were made?

  • Upgrade pnpm to 7.26.3 in all relevant docs and configs including CI

Where were the changes made?

How have the changes been tested?

build, test and ran all packages and starters

Additional information

Some relevant issues here:
pnpm/pnpm#5621
pnpm/pnpm#5829

Don't forget to add a changeset if needed!

@CobyPear CobyPear added decoupled-kit Relating to the project or monorepo itself ci/cd dependencies Dependency management labels Feb 7, 2023
@changeset-bot
Copy link

changeset-bot bot commented Feb 7, 2023

⚠️ No Changeset found

Latest commit: 843c6be

Merging this PR will not cause a version bump for any packages. If these changes should not result in a new version, you're good to go. If these changes should result in a version bump, you need to add a changeset.

This PR includes no changesets

When changesets are added to this PR, you'll see the packages that this PR includes changesets for and the associated semver types

Click here to learn what changesets are, and how to add one.

Click here if you're a maintainer who wants to add a changeset to this PR

@guardrails
Copy link

guardrails bot commented Feb 7, 2023

⚠️ We detected 13 security issues in this pull request:

Vulnerable Libraries (13)
Severity Details
Medium pkg:npm/serve-handler@6.1.5@6.1.5 (t) - no patch available
Critical pkg:npm/socket.io@3.1.2@3.1.2 (t) - no patch available
High pkg:npm/loader-utils@3.2.1@3.2.1 (t) - no patch available
Medium pkg:npm/react@18.2.0@18.2.0 (t) - no patch available
Medium pkg:npm/react@17.0.2@17.0.2 (t) - no patch available
High pkg:npm/prismjs@1.29.0@1.29.0 (t) - no patch available
High pkg:npm/trim@1.0.1@1.0.1 (t) - no patch available
Critical pkg:npm/socket.io-parser@4.0.5@4.0.5 (t) - no patch available
High pkg:npm/shelljs@0.8.5@0.8.5 (t) - no patch available
High pkg:npm/loader-utils@2.0.4@2.0.4 (t) - no patch available
Critical pkg:npm/uglify-js@3.17.4@3.17.4 (t) - no patch available
Low pkg:npm/node-fetch@2.6.9@2.6.9 (t) - no patch available
Medium pkg:npm/ua-parser-js@0.7.32@0.7.32 (t) - no patch available

More info on how to fix Vulnerable Libraries in JavaScript.


👉 Go to the dashboard for detailed results.

📥 Happy? Share your feedback with us.

@backlineint backlineint merged commit c69e544 into pantheon-systems:canary Feb 7, 2023
@CobyPear CobyPear deleted the pnpm-upgrade branch February 7, 2023 17:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
ci/cd decoupled-kit Relating to the project or monorepo itself dependencies Dependency management
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants