Bump @mitre/saf from 1.4.22 to 1.5.1
Merged
Number: #79
Type: Pull Request
State: Merged
Type: Pull Request
State: Merged
Author:
dependabot[bot]
Association: Contributor
Comments: 0
Association: Contributor
Comments: 0
Created:
October 02, 2025 at 12:04 AM UTC
(9 months ago)
(9 months ago)
Updated:
October 02, 2025 at 12:04 AM UTC
(9 months ago)
(9 months ago)
Merged:
October 02, 2025 at 12:04 AM UTC
(9 months ago)
by github-actions[bot]
(9 months ago)
by github-actions[bot]
Time to Close:
less than a minute
Labels:
dependencies javascript
dependencies javascript
Description:
Bumps @mitre/saf from 1.4.22 to 1.5.1.
Release notes
Sourced from @mitre/saf's releases.
1.5.1
What's New
- license and notice clarification
@Amndeep7(#5005)- Ironbank workflow improvements
@Amndeep7(#5004)- pin fast-glob to 3.3.3
@Amndeep7(#5003)- sonarqube 'warming up' period note
@Amndeep7(#4764)- Sonarqube fixes
@Amndeep7(#4493)- Use the iron bank action
@Amndeep7(#4607)- Ensure that the SAF CLI tests for the case where a dev dependency is used in production code
@Amndeep7(#4434)- Vitest
@Amndeep7(#4249)Dependency Updates
- Bump eslint from 9.35.0 to 9.36.0 @dependabot[bot] (#4880)
- Bump
@eslint/jsfrom 9.35.0 to 9.36.0 @dependabot[bot] (#4881)- Bump
@stylistic/eslint-pluginfrom 5.3.1 to 5.4.0 @dependabot[bot] (#4884)- Bump
@aws-sdk/util-locate-windowfrom 3.873.0 to 3.893.0 @dependabot[bot] (#4885)- Bump cssstyle from 5.3.0 to 5.3.1 @dependabot[bot] (#4890)
- Bump tldts from 7.0.14 to 7.0.16 @dependabot[bot] (#4892)
- Bump
@typescript-eslint/eslint-pluginfrom 8.44.1 to 8.45.0 @dependabot[bot] (#4942)- Bump
@azure/msal-browserfrom 4.24.0 to 4.24.1 @dependabot[bot] (#4957)- Bump electron-to-chromium from 1.5.224 to 1.5.227 @dependabot[bot] (#4935)
- Bump
@smithy/signature-v4from 5.2.1 to 5.3.0 @dependabot[bot] (#4948)- Bump
@asamuzakjp/dom-selectorfrom 6.5.6 to 6.5.7 @dependabot[bot] (#4971)- Bump
@types/jsdomfrom 21.1.7 to 27.0.0 @dependabot[bot] (#4940)- Bump
@smithy/hash-stream-nodefrom 4.1.1 to 4.2.0 @dependabot[bot] (#4952)- Bump
@smithy/invalid-dependencyfrom 4.1.1 to 4.2.0 @dependabot[bot] (#4990)- Bump
@smithy/util-waiterfrom 4.1.1 to 4.2.0 @dependabot[bot] (#4967)- Bump
@smithy/util-body-length-nodefrom 4.1.0 to 4.2.0 @dependabot[bot] (#4991)- Bump
@smithy/util-endpointsfrom 3.1.2 to 3.2.0 @dependabot[bot] (#4996)- Bump
@smithy/eventstream-serde-config-resolverfrom 4.2.1 to 4.3.0 @dependabot[bot] (#4992)- Bump
@aws-sdk/client-securityhubfrom 3.896.0 to 3.899.0 @dependabot[bot] (#4932)- Bump typescript from 5.9.2 to 5.9.3 @dependabot[bot] (#4972)
- Bump winston from 3.17.0 to 3.18.3 @dependabot[bot] (#4997)
- Bump npm from 10.9.3 to 10.9.4 @dependabot[bot] (#4998)
- Bump
@types/nodefrom 24.5.2 to 24.6.1 @dependabot[bot] (#4993)- Bump
@smithy/hash-blob-browserfrom 4.1.1 to 4.2.0 @dependabot[bot] (#4964)- Bump
@smithy/chunked-blob-reader-nativefrom 4.1.0 to 4.2.0 @dependabot[bot] (#4962)- Bump
@oclif/plugin-pluginsfrom 5.4.47 to 5.4.48 @dependabot[bot] (#4931)- Bump
@microsoft/microsoft-graph-typesfrom 2.40.0 to 2.43.0 @dependabot[bot] (#4983)- Bump dotenv from 17.2.2 to 17.2.3 @dependabot[bot] (#4943)
- Bump
@smithy/eventstream-serde-browserfrom 4.1.1 to 4.2.0 @dependabot[bot] (#4979)- Bump rollup from 4.52.2 to 4.52.3 @dependabot[bot] (#4945)
- Bump
@smithy/util-defaults-mode-browserfrom 4.1.5 to 4.2.0 @dependabot[bot] (#4956)- Bump
@smithy/hash-nodefrom 4.1.1 to 4.2.0 @dependabot[bot] (#5001)- Bump caniuse-lite from 1.0.30001745 to 1.0.30001746 @dependabot[bot] (#4982)
- Bump
@smithy/md5-jsfrom 4.1.1 to 4.2.0 @dependabot[bot] (#4977)- Bump baseline-browser-mapping from 2.8.7 to 2.8.9 @dependabot[bot] (#4944)
- Bump oclif from 4.22.24 to 4.22.27 @dependabot[bot] (#4938)
- Bump typescript-eslint from 8.44.1 to 8.45.0 @dependabot[bot] (#4936)
... (truncated)
Commits
de4de561.5.10d3fd231.4.224c92e31match what's on ironbank now (#5005)729b012Ironbank workflow improvements (#5004)db41a80pin fast-glob to 3.3.3 (#5003)c6213ddMerge pull request #4880 from mitre/dependabot/npm_and_yarn/eslint-9.36.046e0c9dMerge branch 'main' into dependabot/npm_and_yarn/eslint-9.36.03edd768Bump@eslint/jsfrom 9.35.0 to 9.36.0 (#4881)03ef3bcMerge pull request #4884 from mitre/dependabot/npm_and_yarn/stylistic/eslint-...63cb64dMerge branch 'main' into dependabot/npm_and_yarn/stylistic/eslint-plugin-5.4.0- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Pull Request Statistics
Commits:
1
1
Files Changed:
1
1
Additions:
+3488
+3488
Deletions:
-6292
-6292
Package Dependencies
Technical Details
| ID: | 9149469 |
| UUID: | 2880041713 |
| Node ID: | PR_kwDOG6KC-86rqfLx |
| Host: | GitHub |
| Repository: | mitre/saf-lambda-function |
| Merge State: | Unknown |