Skip to content

chore: release-1.9: update protobufjs to fix CVE-2026-41242#4770

Open
kim-tsao wants to merge 1 commit intoredhat-developer:release-1.9from
kim-tsao:release-1.9_update_protobufjs
Open

chore: release-1.9: update protobufjs to fix CVE-2026-41242#4770
kim-tsao wants to merge 1 commit intoredhat-developer:release-1.9from
kim-tsao:release-1.9_update_protobufjs

Conversation

@kim-tsao
Copy link
Copy Markdown
Member

@kim-tsao kim-tsao commented May 6, 2026

Description

Please explain the changes you made here.

Which issue(s) does this PR fix

  • Updated google-gax to update protobufjs
  • Ran a yarn up -R protobufjs
  • Added @protobufjs/inquire v1.1.0 resolutions to backstage-plugin-kubernetes-backend and backstage-plugin-techdocs-backend to pin transitive dependencies in embedded modules

PR acceptance criteria

Please make sure that the following steps are complete:

  • GitHub Actions are completed and successful
  • Unit Tests are updated and passing
  • E2E Tests are updated and passing
  • Documentation is updated if necessary (requirement for new features)
  • Add a screenshot if the change is UX/UI related

How to test changes / Special notes to the reviewer

@openshift-ci openshift-ci Bot requested review from alizard0 and imykhno May 6, 2026 17:10
@github-actions
Copy link
Copy Markdown
Contributor

github-actions Bot commented May 6, 2026

The container image build workflow finished with status: failure.

Signed-off-by: Kim Tsao <ktsao@redhat.com>
@kim-tsao kim-tsao force-pushed the release-1.9_update_protobufjs branch from b42b535 to 6de0a01 Compare May 6, 2026 17:54
@sonarqubecloud
Copy link
Copy Markdown

sonarqubecloud Bot commented May 6, 2026

@github-actions
Copy link
Copy Markdown
Contributor

github-actions Bot commented May 6, 2026

Image was built and published successfully. It is available at:

@kim-tsao
Copy link
Copy Markdown
Member Author

kim-tsao commented May 6, 2026

/retest

@openshift-ci
Copy link
Copy Markdown

openshift-ci Bot commented May 6, 2026

@kim-tsao: The following test failed, say /retest to rerun all failed tests or /retest-required to rerun all mandatory failed tests:

Test name Commit Details Required Rerun command
ci/prow/e2e-ocp-helm 6de0a01 link true /test e2e-ocp-helm

Full PR test history. Your PR dashboard.

Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here.

@imykhno
Copy link
Copy Markdown
Contributor

imykhno commented May 7, 2026

/tests e2e-ocp-helm

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants