Updated axios, playwright versions to resolve dependencies #6018
+18
−34
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
What
Updated
axiosto^1.12.2andplaywright(includingplaywright-core) to^1.55.1across the entire repository by addingglobalOverridesincommon/config/rush/pnpm-config.json.Why
To address security vulnerabilities found in older versions of
axios(< 1.12.2) andplaywright(1.55.0). These dependencies were being pulled in transitively by other packages, soglobalOverrideswas used to enforce the secure versions repository-wide.How Tested
rush update --fullandrush update --full --variant stableto regenerate lockfiles.common/config/rush/pnpm-lock.yamlto ensureaxiosandplaywrightversions are updated and overrides are applied.Process & policy checklist
Is this a breaking change?