Skip to content

[INTERNAL] Bump http-proxy-agent from 5.0.0 to 7.0.2#1320

Closed
d3xter666 wants to merge 1 commit intov4from
bump-http-proxy-agent
Closed

[INTERNAL] Bump http-proxy-agent from 5.0.0 to 7.0.2#1320
d3xter666 wants to merge 1 commit intov4from
bump-http-proxy-agent

Conversation

@d3xter666
Copy link
Copy Markdown
Member

http-proxy-agent is a transitive dependency of local-web-server.
As one of dependants of http-proxy-agent has security vulnerability and the local-web-server still does not have a patch for that, the safest way is to bump the next closest transitive dependency.

We use the local-web-server locally and for development purposes only to serve the documentation.
This way the security audit is easier for maintenantce

@d3xter666 d3xter666 requested a review from a team March 6, 2026 07:20
@d3xter666
Copy link
Copy Markdown
Member Author

Not relevant anymore

@d3xter666 d3xter666 closed this Mar 17, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant