Skip to content

fix(dependabot): Resolve tar vulnerability via yarn resolutions #11434

fix(dependabot): Resolve tar vulnerability via yarn resolutions

fix(dependabot): Resolve tar vulnerability via yarn resolutions #11434

Triggered via pull request February 3, 2026 10:27
Status Failure
Total duration 3m 12s
Artifacts

dependency-review.yml Required

on: pull_request
dependency-review
3m 8s
dependency-review
Fit to window
Zoom out
Zoom in

Annotations

2 errors and 10 warnings
dependency-review
$GITHUB_STEP_SUMMARY upload aborted, supports content up to a size of 1024k, got 1734k. For more information see: https://docs.github.com/actions/using-workflows/workflow-commands-for-github-actions#adding-a-markdown-summary
dependency-review
Dependency review detected vulnerable packages.
OpenSSF Scorecard Warning
npm/copy-anything has an OpenSSF Scorecard of 2.7, which is less than this repository's threshold of 3.
OpenSSF Scorecard Warning
npm/broccoli-node-info has an OpenSSF Scorecard of 2.8, which is less than this repository's threshold of 3.
OpenSSF Scorecard Warning
npm/babel-import-util has an OpenSSF Scorecard of 2.6, which is less than this repository's threshold of 3.
OpenSSF Scorecard Warning
npm/babel-import-util has an OpenSSF Scorecard of 2.6, which is less than this repository's threshold of 3.
OpenSSF Scorecard Warning
npm/assert-never has an OpenSSF Scorecard of 2.7, which is less than this repository's threshold of 3.
OpenSSF Scorecard Warning
npm/aproba has an OpenSSF Scorecard of 1.9, which is less than this repository's threshold of 3.
OpenSSF Scorecard Warning
npm/amqplib has an OpenSSF Scorecard of 2.8, which is less than this repository's threshold of 3.
OpenSSF Scorecard Warning
npm/agent-base has an OpenSSF Scorecard of 2.9, which is less than this repository's threshold of 3.
OpenSSF Scorecard Warning
npm/@jridgewell/resolve-uri has an OpenSSF Scorecard of 2.5, which is less than this repository's threshold of 3.
OpenSSF Scorecard Warning
npm/@babel/preset-modules has an OpenSSF Scorecard of 2.9, which is less than this repository's threshold of 3.