Skip to content

fix(deps): update fast-uri to 3.1.6 - #279

Closed
Waishnav wants to merge 1 commit into
mainfrom
fix/fast-uri-3-1-6
Closed

fix(deps): update fast-uri to 3.1.6#279
Waishnav wants to merge 1 commit into
mainfrom
fix/fast-uri-3-1-6

Conversation

@Waishnav

Copy link
Copy Markdown
Owner

Issue #266 correctly identified fast-uri@3.1.2 in the transitive MCP SDK → Ajv dependency chain. Ajv already allows the patched 3.x release, so this refreshes the lockfile to 3.1.6 without adding a direct dependency or an override.

The report suggested 3.1.3, but later fast-uri advisories affect subsequent 3.x releases as well; 3.1.6 is the current patched 3.x target.

Closes #266.

@chatgpt-codex-connector

Copy link
Copy Markdown

You have reached your Codex usage limits for code reviews. You can see your limits in the Codex usage dashboard.
To continue using code reviews, you can upgrade your account or add credits to your account and enable them for code reviews in your settings.

@coderabbitai

coderabbitai Bot commented Aug 31, 2026

Copy link
Copy Markdown

Important

Review skipped

Review was skipped due to path filters

⛔ Files ignored due to path filters (1)
  • package-lock.json is excluded by !**/package-lock.json

CodeRabbit blocks several paths by default. You can override this behavior by explicitly including those paths in the path filters. For example, including **/dist/** will override the default block on the dist directory, by removing the pattern from both the lists.

⚙️ Run configuration

Configuration used: Repository UI

Review profile: CHILL

Plan: Pro Plus

Run ID: f8d63e57-2c86-4b14-8204-f24b4383623a

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@Waishnav Waishnav closed this Aug 31, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Possible fix(deps): 3 vulnerable dependencies in package-lock.json

1 participant