grafana / grafana/usage-stats-handler

Dependency Dashboard

Open
#41 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
JavaScript
Stars
1
Forks
1
PR merge metrics
No merged PRs in 30d

Description

This issue lists Renovate updates and detected dependencies. Read the [Dependency Dashboard](https://docs.renovatebot.com/key-concepts/dashboard/) docs to learn more.

## Abandoned Dependencies

The following dependencies have not received updates for an extended period and may be unmaintained.

View abandoned dependencies (1)

> [!NOTE]
Packages are marked as abandoned when they exceed the [`abandonmentThreshold`](https://docs.renovatebot.com/configuration-options/#abandonmentthreshold) since their last release. Unlike deprecated packages with official notices, abandonment is detected by release inactivity.
>
| Datasource | Package | Last Updated |
|------------|------|-------------|
| npm | [graphite](https://redirect.github.com/felixge/node-graphite) | `2022-07-14` |

## Pending Status Checks

The following updates await pending status checks. To force their creation now, click on a checkbox below.

- [ ] [chore(deps): update node.js to 50c8e8c](../pull/58)

## Open

The following updates have all been created. To force a retry/rebase of any, click on a checkbox below.

- [ ] [fix(security/high/usage-stats-handler): update dependency lodash to v4.18.1 [security]](../pull/64)
- [ ] [chore(deps): update dependency commander to v14.0.3](../pull/59)
- [ ] [chore(deps): update dependency express to v4.22.2](../pull/60)
- [ ] [fix(deps): update dependency commander to v15](../pull/66)
- [ ] [fix(deps): update dependency express to v5](../pull/61)
- [ ] [chore(deps): lock file maintenance](../pull/62)
- [ ] **Click on this checkbox to rebase all open PRs at once**

## Vulnerabilities

> [!IMPORTANT]
> `2`/`2` CVEs have Renovate fixes.

npm

usage-stats-handler/package.json

lodash

- [GHSA-f23m-r3pf-42rh](https://osv.dev/vulnerability/GHSA-f23m-r3pf-42rh) (fixed in >= 4.18.0)
- [GHSA-r5fr-rjxr-66jc](https://osv.dev/vulnerability/GHSA-r5fr-rjxr-66jc) (fixed in >= 4.18.0)

## Detected Dependencies

dockerfile (1)

usage-stats-handler/Dockerfile (1)

- `node 24-alpine@sha256:cd6fb7efa6490f039f3471a189214d5f548c11df1ff9e5b181aa49e22c14383e` → [Updates: `24-alpine`]

npm (1)

usage-stats-handler/package.json (4)

- `commander ^14.0.2` → [Updates: `^14.0.2`, `^15.0.0`]
- `express ^4.21.2` → [Updates: `^4.21.2`, `^5.0.0`]
- `graphite 0.1.5`
- `lodash ^4.17.21` → [Updates: `^4.17.21`]

---
## Need help?
You can ask for more help in the following Slack channel: #proj-renovate-self-hosted. In that channel you can also find ADR and FAQ docs in the Resources section.

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.