Skip to content

fix(mrt-utilities): bump qs to 6.14.1 for vulnerability remediation#361

Merged
bendvc merged 1 commit intomainfrom
bendvc/patch_qs_lib
Apr 20, 2026
Merged

fix(mrt-utilities): bump qs to 6.14.1 for vulnerability remediation#361
bendvc merged 1 commit intomainfrom
bendvc/patch_qs_lib

Conversation

@bendvc
Copy link
Copy Markdown
Collaborator

@bendvc bendvc commented Apr 20, 2026

Summary

  • Updates qs in @salesforce/mrt-utilities from 6.14.0 to 6.14.1 to address a known vulnerability.
  • Regenerates pnpm-lock.yaml so the lockfile reflects the patched dependency.
  • Adds a changeset (patch) for @salesforce/mrt-utilities to capture this security fix in release notes.

Test plan

  • Verified packages/mrt-utilities/package.json now pins qs to 6.14.1.
  • Verified lockfile entry for @salesforce/mrt-utilities resolves qs to 6.14.1.
  • Confirmed no lint diagnostics on changed files.

@bendvc bendvc requested a review from clavery as a code owner April 20, 2026 16:14
@bendvc bendvc merged commit ba2bca5 into main Apr 20, 2026
3 checks passed
@bendvc bendvc deleted the bendvc/patch_qs_lib branch April 20, 2026 16:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants