Skip to content

Bump uuid and @azure/msal-node in /tests/DevApps/SidecarAdapter/typescript - #3826

Merged
bgavrilMS merged 1 commit into
masterfrom
dependabot/npm_and_yarn/tests/DevApps/SidecarAdapter/typescript/multi-587bae8f7b
May 25, 2026
Merged

Bump uuid and @azure/msal-node in /tests/DevApps/SidecarAdapter/typescript#3826
bgavrilMS merged 1 commit into
masterfrom
dependabot/npm_and_yarn/tests/DevApps/SidecarAdapter/typescript/multi-587bae8f7b

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github May 21, 2026

Copy link
Copy Markdown
Contributor

Removes uuid. It's no longer used after updating ancestor dependency @azure/msal-node. These dependencies need to be updated together.

Removes uuid

Updates @azure/msal-node from 3.8.0 to 5.2.2

Release notes

Sourced from @​azure/msal-node's releases.

@​azure/msal-angular v5.2.2

5.2.2

Tue, 28 Apr 2026 21:30:33 GMT

Patches

  • Bump @​azure/msal-browser to v5.9.0 (beachball)

@​azure/msal-node-extensions v5.2.2

5.2.2

Tue, 19 May 2026 19:29:14 GMT

Patches

  • Bump @​azure/msal-common to v16.6.2 (beachball)

@​azure/msal-node v5.2.2

5.2.2

Tue, 19 May 2026 19:29:14 GMT

Patches

  • Bump @​azure/msal-common to v16.6.2 (beachball)

@​azure/msal-react v5.2.1

5.2.1

Wed, 01 Apr 2026 20:09:00 GMT

Patches

@​azure/msal-angular v5.2.1

5.2.1

Tue, 21 Apr 2026 22:41:19 GMT

Patches

  • Bump @​azure/msal-browser to v5.8.0 (beachball)

@​azure/msal-node-extensions v5.2.1

5.2.1

Mon, 11 May 2026 21:48:15 GMT

... (truncated)

Commits
  • 738ade6 check account loginHint before idTokenClaims setting logoutHint (#8591)
  • 1fff290 Add allowPlatformBrokerWithDOM experimental config flag (#8589)
  • 99e0895 Custom Auth: add requestInterceptor for custom x-* request headers (#8587)
  • ce50f41 Post-release PR (#8585)
  • c661401 Complete test tenant migration (#8584)
  • bbcc105 Add browser compatibility guidelines and review instructions for msal-browser...
  • d7a7eb5 Add issuer validation check whenever MSAL JS performs OIDC endpoint discovery...
  • 9884a71 Post-release PR (#8583)
  • b4e498c Stop looking in localStorage for temporary cache (#8579)
  • 1b261b4 Bump uuid and @​actions/core in /.github/actions/issue_template_bot (#8571)
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies javascript Pull requests that update javascript code labels May 21, 2026
@dependabot
dependabot Bot requested a review from a team as a code owner May 21, 2026 20:34
Removes [uuid](https://github.com/uuidjs/uuid). It's no longer used after updating ancestor dependency [@azure/msal-node](https://github.com/AzureAD/microsoft-authentication-library-for-js). These dependencies need to be updated together.


Removes `uuid`

Updates `@azure/msal-node` from 3.8.0 to 5.2.2
- [Release notes](https://github.com/AzureAD/microsoft-authentication-library-for-js/releases)
- [Commits](AzureAD/microsoft-authentication-library-for-js@msal-node-v3.8.0...msal-node-v5.2.2)

---
updated-dependencies:
- dependency-name: "@azure/msal-node"
  dependency-version: 5.2.2
  dependency-type: direct:development
- dependency-name: uuid
  dependency-version:
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/tests/DevApps/SidecarAdapter/typescript/multi-587bae8f7b branch from 04881b9 to 73ba352 Compare May 25, 2026 13:10
@bgavrilMS
bgavrilMS merged commit 8cc29dc into master May 25, 2026
4 checks passed
@bgavrilMS
bgavrilMS deleted the dependabot/npm_and_yarn/tests/DevApps/SidecarAdapter/typescript/multi-587bae8f7b branch May 25, 2026 14:01
This was referenced May 25, 2026
github-actions Bot pushed a commit to EelcoLos/nx-tinkering that referenced this pull request May 26, 2026
Updated
[Microsoft.Identity.Web](https://github.com/AzureAD/microsoft-identity-web)
from 4.9.0 to 4.10.0.

<details>
<summary>Release notes</summary>

_Sourced from [Microsoft.Identity.Web's
releases](https://github.com/AzureAD/microsoft-identity-web/releases)._

## 4.10.0

### New features
- Add `WithExtraBodyParameters` fluent API for attaching extra body
parameters to token acquisition requests. See
[#​3819](AzureAD/microsoft-identity-web#3819).
- Add `IConfidentialClientApplicationProvider` extensibility interface
and `CachePartitionKey` support for silent token acquisition. See
[#​3822](AzureAD/microsoft-identity-web#3822).

### Bug fixes
- Redirect URI sanitization in authorization scenarios; centralize
redirect URI validation in a shared helper. See
[#​3825](AzureAD/microsoft-identity-web#3825).
- Reject dSTS-shaped `Authority` values with a clearer exception,
steering users to use `Instance` + `TenantId` instead. See
[#​3805](AzureAD/microsoft-identity-web#3805).
- Improve regex handling and adding length/timeout safeguards for
SameSite User Agent. See
[#​3811](AzureAD/microsoft-identity-web#3811).

### Behavior changes
- **B2C OpenID Connect event handler: LRU cache for issuer address.**
Issuer address lookups in the B2C OIDC event handler are now cached with
an LRU cache, improving performance for repeated lookups. See
[#​3821](AzureAD/microsoft-identity-web#3821).

### Dependencies updates
- Update MSAL.NET to 4.84.1. See
[#​3822](AzureAD/microsoft-identity-web#3822).
- Pin `Microsoft.Kiota.Abstractions` to 1.22.0 for GraphServiceClient.
See
[#​3817](AzureAD/microsoft-identity-web#3817).
- Bump `uuid` and `@​azure/msal-node` in SidecarAdapter TypeScript test
app. See
[#​3826](AzureAD/microsoft-identity-web#3826).
- Bump `qs` in SidecarAdapter TypeScript test app. See
[#​3829](AzureAD/microsoft-identity-web#3829).

Commits viewable in [compare
view](AzureAD/microsoft-identity-web@4.9.0...4.10.0).
</details>

[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=Microsoft.Identity.Web&package-manager=nuget&previous-version=4.9.0&new-version=4.10.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore <dependency name> major version` will close this
group update PR and stop Dependabot creating any more for the specific
dependency's major version (unless you unignore this specific
dependency's major version or upgrade to it yourself)
- `@dependabot ignore <dependency name> minor version` will close this
group update PR and stop Dependabot creating any more for the specific
dependency's minor version (unless you unignore this specific
dependency's minor version or upgrade to it yourself)
- `@dependabot ignore <dependency name>` will close this group update PR
and stop Dependabot creating any more for the specific dependency
(unless you unignore this specific dependency or upgrade to it yourself)
- `@dependabot unignore <dependency name>` will remove all of the ignore
conditions of the specified dependency
- `@dependabot unignore <dependency name> <ignore condition>` will
remove the ignore condition of the specified dependency and ignore
conditions


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Eelco Los <5102501+EelcoLos@users.noreply.github.com>
This was referenced Jul 13, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant