Skip to content

Bump @modelcontextprotocol/sdk and @angular/cli in /flink-runtime-web/web-dashboard - #32

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/flink-runtime-web/web-dashboard/multi-a02d49999e
Open

Bump @modelcontextprotocol/sdk and @angular/cli in /flink-runtime-web/web-dashboard#32
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/flink-runtime-web/web-dashboard/multi-a02d49999e

Conversation

@dependabot

@dependabotdependabotBot commented on behalf of githubFeb 6, 2026

Copy link
Copy Markdown

Bumps @modelcontextprotocol/sdk to 1.26.0 and updates ancestor dependency @angular/cli. These dependencies need to be updated together.

Updates @modelcontextprotocol/sdk from 1.13.3 to 1.26.0

Release notes

Sourced from @​modelcontextprotocol/sdk's releases.

v1.26.0

Addresses "Sharing server/transport instances can leak cross-client response data" in this GHSA GHSA-345p-7cg4-v4c7

What's Changed

New Contributors

Full Changelog: modelcontextprotocol/typescript-sdk@v1.25.3...v1.26.0

v1.25.3

What's Changed

Full Changelog: modelcontextprotocol/typescript-sdk@v1.25.2...v1.25.3

v1.25.2

What's Changed

New Contributors

Full Changelog: modelcontextprotocol/typescript-sdk@1.25.1...v1.25.2

1.25.1

What's Changed

Full Changelog: modelcontextprotocol/typescript-sdk@1.25.0...1.25.1

1.25.0

What's Changed

... (truncated)

Commits
  • fe9c07b chore: bump version to 1.26.0 (#1479)
  • 4f01e7e fix: add non-null assertions for optional setupServer fields in stateful test
  • a05be17 Merge commit from fork
  • 50d9fa3 Fix #1430: Client Credentials providers scopes support (backported) (#1442)
  • aa81a66 fix(deps): resolve npm audit vulnerabilities and bump dependencies (v1.x back...
  • 6aba065 chore: bump v1.25.3 for backport fixes (#1412)
  • 6e8f7e1 fix: prevent Hono from overriding global Response object (v1.x) (#1411)
  • 12ae856 [v1.x backport] Use correct schema for client sampling validation when tools ...
  • b392f02 fix: prevent ReDoS in UriTemplate regex patterns (v1.x backport) (#1365)
  • a0c9b13 fix: README badges links destinations (#907)
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by pcarleton, a new releaser for @​modelcontextprotocol/sdk since your current version.


Updates @angular/cli from 20.1.3 to 21.1.3

Release notes

Sourced from @​angular/cli's releases.

21.1.3

@​schematics/angular

CommitDescription
fix - a18196a10warn when production configuration is missing for service worker

@​angular-devkit/build-angular

CommitDescription
fix - 6d05d27caaddress Node.js deprecation DEP0190

21.1.2

@​angular-devkit/schematics-cli

CommitDescription
fix - e7458c81dAdd boolean type inference for 'true' and 'false' string values in argument parsing

@​angular-devkit/architect

CommitDescription
fix - d66f1fe64Add boolean type inference for 'true' and 'false' string values in argument parsing

@​angular/build

CommitDescription
fix - 80911af67loosen Vitest dependency checks when runnerConfig is used
fix - 2d30639d3support merging coverage thresholds with Vitest runnerConfig

21.1.1

@​schematics/angular

CommitDescription
fix - 9da6d8fa7correct vscode MCP configuration for new projects
fix - 361758c75remove special characters from jasmine-vitest report filename

@​angular/cli

CommitDescription
fix - 151b69587Remove nonexistent link from MCP response

@​angular/build

CommitDescription
fix - 1b7e3307aallow application assets in workspace root
fix - d1e596dc5prevent incorrect catch binding removal in downleveled for-await
fix - 98ef0981aupdate undici to v7.18.2

21.1.0

@​schematics/angular

CommitDescription
feat - 36cf3afb4add browserMode option to jasmine-vitest schematic
feat - e71a72ffdgenerate detailed migration report for refactor-jasmine-vitest
fix - 18cf6c51badd MCP configuration file to new workspaces

@​angular/cli

... (truncated)

Changelog

Sourced from @​angular/cli's changelog.

21.1.3 (2026-02-05)

@​schematics/angular

CommitTypeDescription
a18196a10fixwarn when production configuration is missing for service worker

@​angular-devkit/build-angular

CommitTypeDescription
6d05d27cafixaddress Node.js deprecation DEP0190

21.2.0-next.0 (2026-01-28)

@​angular/cli

CommitTypeDescription
0dd04f289featadd markdown files to Prettier's formatting list
fbae1b6abfeatautomatic formatting files modified by schematics
98a24d040featstandardize MCP tools around workspace/project options
d9cd609c5fixcorrectly parse scoped packages in yarn classic list output
5b05f2500fixenable shell option for Prettier execution on Windows platforms

@​schematics/angular

CommitTypeDescription
aa7381efdfeatadd a '.prettierrc' file to generated workspaces and add Prettier as dev dependency
f80db6fb7featadd ng-add support for Vitest browser providers

@​angular-devkit/build-angular

CommitTypeDescription
b4a8d198cfixaddress Node.js deprecation DEP0190

@​angular/build

CommitTypeDescription
0b4982720fixadjust sourcemap sources when Vitest wrapper is bypassed

... (truncated)

Commits
  • 0a8860d release: cut the v21.1.3 release
  • e80d7c5 build: update dependency @​modelcontextprotocol/sdk to v1.26.0
  • f6cc58c build: update webpack dependency to version 5.105.0
  • 133cf28 build: update cross-repo angular dependencies to v21.1.3
  • ed0b4c5 build: update rules_browsers digest to e08ae33
  • 31931f6 build: update github/codeql-action action to v4.32.1
  • 94a830c build: update dependency @​modelcontextprotocol/sdk to v1.25.3
  • 7a2ec50 build: update cross-repo angular dependencies
  • d5a8314 build: configure Jasmine to allow duplicate describe block names
  • f4c14f0 build: lock file maintenance
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [@modelcontextprotocol/sdk](https://github.com/modelcontextprotocol/typescript-sdk) to 1.26.0 and updates ancestor dependency [@angular/cli](https://github.com/angular/angular-cli). These dependencies need to be updated together.
Updates `@modelcontextprotocol/sdk` from 1.13.3 to 1.26.0
- [Release notes](https://github.com/modelcontextprotocol/typescript-sdk/releases)
- [Commits](modelcontextprotocol/typescript-sdk@1.13.3...v1.26.0)
Updates `@angular/cli` from 20.1.3 to 21.1.3
- [Release notes](https://github.com/angular/angular-cli/releases)
- [Changelog](https://github.com/angular/angular-cli/blob/main/CHANGELOG.md)
- [Commits](angular/angular-cli@20.1.3...v21.1.3)
---
updated-dependencies:
- dependency-name: "@modelcontextprotocol/sdk"
dependency-version: 1.26.0
dependency-type: indirect
- dependency-name: "@angular/cli"
dependency-version: 21.1.3
dependency-type: direct:development
...
Signed-off-by: dependabot[bot] <support@github.com>
@dependabotdependabotBot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Feb 6, 2026
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependenciesPull requests that update a dependency filejavascriptPull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants