Skip to content

deps(dev)(deps-dev): bump @types/node from 25.6.0 to 25.6.2#17

Open
dependabot[bot] wants to merge 2 commits into
mainfrom
dependabot/npm_and_yarn/types/node-25.6.2
Open

deps(dev)(deps-dev): bump @types/node from 25.6.0 to 25.6.2#17
dependabot[bot] wants to merge 2 commits into
mainfrom
dependabot/npm_and_yarn/types/node-25.6.2

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github May 11, 2026

Bumps @types/node from 25.6.0 to 25.6.2.

Commits

@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github May 11, 2026

Labels

The following labels could not be found: dependencies, npm. Please create them before Dependabot can add them to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/types/node-25.6.2 branch from afec1e6 to 51201d5 Compare May 17, 2026 18:52
Bumps [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) from 25.6.0 to 25.6.2.
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)

---
updated-dependencies:
- dependency-name: "@types/node"
  dependency-version: 25.6.2
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@reaatech reaatech force-pushed the dependabot/npm_and_yarn/types/node-25.6.2 branch from 51201d5 to b942868 Compare May 17, 2026 19:00
No breakage from the @types/node 25.6.0 → 25.6.2 bump — build, lint,
typecheck, and unit tests all pass. The Security Audit failure is
caused by pre-existing vulnerabilities in transitive deps unrelated
to @types/node:

  - fast-uri (low): packages/mcp-server > @modelcontextprotocol/sdk > ajv > fast-uri
  - hono (moderate, 2 advisories): packages/mcp-server > @modelcontextprotocol/sdk > hono
  - ip-address (moderate): packages/mcp-server > @modelcontextprotocol/sdk
    > express-rate-limit > ip-address

These require upstream fixes in @modelcontextprotocol/sdk, not in this PR.
@reaatech
Copy link
Copy Markdown
Owner

⚠️ Dependabot fix attempt produced no changes

Opencode investigated the CI failure for @types/node from 25.6.0 → 25.6.2 but did not produce a fix. Leaving open for human review.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant