This release includes 1 security fix for security teams reviewing exposed deployments.
Published 10mo
MCP Developer Tools
✓ No known CVEs patched
This release patches 1 known CVE
Topics
mcp
mcp-server
model-context-protocol
model-context-protocol-servers
sonarcloud
sonarqube
+1 more
typescript
Affected surfaces
deps
Summary
AI summaryMinor fixes and improvements.
Full changelog
Patch Changes
-
#291
3e74093- chore: update dependencies- Update pino from 9.10.0 to 9.11.0 (production dependency - bug fixes and performance improvements)
- Update @commitlint/cli from 19.8.1 to 20.0.0 (dev dependency - major version with improved TypeScript support)
- Update @commitlint/config-conventional from 19.8.1 to 20.0.0 (dev dependency)
- Update @cyclonedx/cdxgen from 11.7.0 to 11.8.0 (dev dependency - enhanced SBOM generation)
- Update jsonc-eslint-parser from 2.4.0 to 2.4.1 (dev dependency - bug fixes)
- Update vite from 7.1.5 to 7.1.7 (dev dependency - security fixes and improvements)
All tests passing with 100% compatibility.
Security Fixes
- vite upgraded to 7.1.7 – includes security fixes
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About sapientpants/sonarqube-mcp-server
A Model Context Protocol (MCP) server that integrates with SonarQube to provide AI assistants with access to code quality metrics, issues, and quality gate statuses
Beta — feedback welcome: [email protected]