Skip to content

build(deps): bump protobufjs from 7.5.4 to 7.5.6#18010

Open
dependabot[bot] wants to merge 1 commit intodevfrom
dependabot/npm_and_yarn/protobufjs-7.5.5
Open

build(deps): bump protobufjs from 7.5.4 to 7.5.6#18010
dependabot[bot] wants to merge 1 commit intodevfrom
dependabot/npm_and_yarn/protobufjs-7.5.5

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Apr 21, 2026

Bumps protobufjs from 7.5.4 to 7.5.6.

Release notes

Sourced from protobufjs's releases.

protobufjs: v7.5.6

7.5.6 (2026-04-27)

Bug Fixes

  • Backport input hardening and CLI fixes to 7.x (#2173) (75392ea)

v7.5.5

This release backports two reported security issues to 7.x branch.

  • fix: do not allow setting __proto__ in Message constructor (#2126)
  • fix: filter invalid characters from the type name (#2127)

Full Changelog: protobufjs/protobuf.js@protobufjs-v7.5.4...protobufjs-v7.5.5

Changelog

Sourced from protobufjs's changelog.

7.5.6 (2026-04-27)

Bug Fixes

  • Backport input hardening and CLI fixes to 7.x (#2173) (75392ea)
Commits
Maintainer changes

This version was pushed to npm by GitHub Actions, a new releaser for protobufjs since your current version.


@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Apr 21, 2026
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Apr 21, 2026
@netlify
Copy link
Copy Markdown

netlify Bot commented Apr 21, 2026

Deploy Preview for ethereumorg ready!

Name Link
🔨 Latest commit a7c4678
🔍 Latest deploy log https://app.netlify.com/projects/ethereumorg/deploys/69f9a3bb7e6c7a0008b03463
😎 Deploy Preview https://deploy-preview-18010.ethereum.it
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.
Lighthouse
Lighthouse
7 paths audited
Performance: 67 (🟢 up 2 from production)
Accessibility: 96 (no change from production)
Best Practices: 100 (no change from production)
SEO: 98 (🔴 down 1 from production)
PWA: 59 (no change from production)
View the detailed breakdown and full score reports

To edit notification comments on pull requests, go to your Netlify project configuration.

@github-actions github-actions Bot added the dependencies 📦 Changes related to project dependencies label Apr 21, 2026
@wackerow
Copy link
Copy Markdown
Member

@dependabot recreate

@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/protobufjs-7.5.5 branch from 3b17d36 to 4db2f18 Compare April 21, 2026 16:55
@wackerow wackerow added the Status: Blocked 🛑 This is blocked label Apr 21, 2026
@wackerow
Copy link
Copy Markdown
Member

bump protobufjs from 7.5.4 to 7.5.5

Does not appear to be doing that

@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/protobufjs-7.5.5 branch from 4db2f18 to 00ea7f4 Compare April 28, 2026 00:39
Bumps [protobufjs](https://github.com/protobufjs/protobuf.js) from 7.5.4 to 7.5.6.
- [Release notes](https://github.com/protobufjs/protobuf.js/releases)
- [Changelog](https://github.com/protobufjs/protobuf.js/blob/protobufjs-v7.5.6/CHANGELOG.md)
- [Commits](protobufjs/protobuf.js@protobufjs-v7.5.4...protobufjs-v7.5.6)

---
updated-dependencies:
- dependency-name: protobufjs
  dependency-version: 7.5.5
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot changed the title build(deps): bump protobufjs from 7.5.4 to 7.5.5 build(deps): bump protobufjs from 7.5.4 to 7.5.6 May 5, 2026
@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/protobufjs-7.5.5 branch from 00ea7f4 to a7c4678 Compare May 5, 2026 08:00
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies 📦 Changes related to project dependencies dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code Status: Blocked 🛑 This is blocked

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant