Skip to content

build(deps): bump protobufjs from 7.5.4 to 7.5.6#18010

Closed
dependabot[bot] wants to merge 1 commit into
devfrom
dependabot/npm_and_yarn/protobufjs-7.5.5
Closed

build(deps): bump protobufjs from 7.5.4 to 7.5.6#18010
dependabot[bot] wants to merge 1 commit into
devfrom
dependabot/npm_and_yarn/protobufjs-7.5.5

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Apr 21, 2026

Bumps protobufjs from 7.5.4 to 7.5.6.

Release notes

Sourced from protobufjs's releases.

protobufjs: v7.5.6

7.5.6 (2026-04-27)

Bug Fixes

  • Backport input hardening and CLI fixes to 7.x (#2173) (75392ea)

v7.5.5

This release backports two reported security issues to 7.x branch.

  • fix: do not allow setting __proto__ in Message constructor (#2126)
  • fix: filter invalid characters from the type name (#2127)

Full Changelog: protobufjs/protobuf.js@protobufjs-v7.5.4...protobufjs-v7.5.5

Changelog

Sourced from protobufjs's changelog.

7.5.6 (2026-04-27)

Bug Fixes

  • Backport input hardening and CLI fixes to 7.x (#2173) (75392ea)
Commits
Maintainer changes

This version was pushed to npm by GitHub Actions, a new releaser for protobufjs since your current version.


@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Apr 21, 2026
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Apr 21, 2026
@netlify
Copy link
Copy Markdown

netlify Bot commented Apr 21, 2026

Deploy Preview for ethereumorg ready!

Name Link
🔨 Latest commit a7c4678
🔍 Latest deploy log https://app.netlify.com/projects/ethereumorg/deploys/69f9a3bb7e6c7a0008b03463
😎 Deploy Preview https://deploy-preview-18010.ethereum.it
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.
Lighthouse
Lighthouse
7 paths audited
Performance: 67 (🟢 up 2 from production)
Accessibility: 96 (no change from production)
Best Practices: 100 (no change from production)
SEO: 98 (🔴 down 1 from production)
PWA: 59 (no change from production)
View the detailed breakdown and full score reports

To edit notification comments on pull requests, go to your Netlify project configuration.

@github-actions github-actions Bot added the dependencies 📦 Changes related to project dependencies label Apr 21, 2026
@wackerow
Copy link
Copy Markdown
Member

@dependabot recreate

@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/protobufjs-7.5.5 branch from 3b17d36 to 4db2f18 Compare April 21, 2026 16:55
@wackerow wackerow added the Status: Blocked 🛑 This is blocked label Apr 21, 2026
@wackerow
Copy link
Copy Markdown
Member

bump protobufjs from 7.5.4 to 7.5.5

Does not appear to be doing that

@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/protobufjs-7.5.5 branch from 4db2f18 to 00ea7f4 Compare April 28, 2026 00:39
Bumps [protobufjs](https://github.com/protobufjs/protobuf.js) from 7.5.4 to 7.5.6.
- [Release notes](https://github.com/protobufjs/protobuf.js/releases)
- [Changelog](https://github.com/protobufjs/protobuf.js/blob/protobufjs-v7.5.6/CHANGELOG.md)
- [Commits](protobufjs/protobuf.js@protobufjs-v7.5.4...protobufjs-v7.5.6)

---
updated-dependencies:
- dependency-name: protobufjs
  dependency-version: 7.5.5
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot changed the title build(deps): bump protobufjs from 7.5.4 to 7.5.5 build(deps): bump protobufjs from 7.5.4 to 7.5.6 May 5, 2026
@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/protobufjs-7.5.5 branch from 00ea7f4 to a7c4678 Compare May 5, 2026 08:00
@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github May 12, 2026

Superseded by #18177.

@dependabot dependabot Bot closed this May 12, 2026
@dependabot dependabot Bot deleted the dependabot/npm_and_yarn/protobufjs-7.5.5 branch May 12, 2026 20:49
@github-actions github-actions Bot added the abandoned This has been abandoned or will not be implemented label May 12, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

abandoned This has been abandoned or will not be implemented dependencies 📦 Changes related to project dependencies dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code Status: Blocked 🛑 This is blocked

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant