Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update old indirect dependencies #2787

Open
wants to merge 3 commits into
base: main
Choose a base branch
from
Open

Conversation

mtrmac
Copy link
Collaborator

@mtrmac mtrmac commented Mar 13, 2025

Bots generally update direct dependencies, and dependencies with known vulnerabilities.

For indirect dependencies which are over a year old, and either have a newer tagged release or haven’t been using a tagged release anyway, update to the latest version.

(This does nothing about dependencies with no upstream activity, or officially deprecated or even archived.)

@mtrmac mtrmac force-pushed the old-deps branch 2 times, most recently from f7b79d2 to f70a3a2 Compare March 18, 2025 19:47
@mtrmac mtrmac force-pushed the old-deps branch 2 times, most recently from ecf12b7 to 0d84bb4 Compare March 26, 2025 19:21
mtrmac added 3 commits April 1, 2025 20:11
Signed-off-by: Miloslav Trmač <mitr@redhat.com>
Signed-off-by: Miloslav Trmač <mitr@redhat.com>
Signed-off-by: Miloslav Trmač <mitr@redhat.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant