chore(deps): update dependency mcp-neo4j-cypher to v0.6.0#528
chore(deps): update dependency mcp-neo4j-cypher to v0.6.0#528renovate[bot] wants to merge 1 commit intomainfrom
Conversation
|
You are seeing this message because GitHub Code Scanning has recently been set up for this repository, or this pull request contains the workflow file for the Code Scanning tool. What Enabling Code Scanning Means:
For more information about GitHub Code Scanning, check out the documentation. |
🔒 MCP Security Scan Results✅ mcp-neo4j-cypher
Summary: Scanned 1 MCP server(s), all passed security checks. ✅ |
ba50f61 to
0d0dff1
Compare
|
@renovatebot rebase |
0d0dff1 to
0bd1a6b
Compare
Triage: build-containers blocked by genuine upstream CVEsLocal Grype scan (DB 2026-04-27) of the 0.6.0 image surfaces these HIGH/CRITICAL findings (severity-cutoff: high, only-fixed: true):
These are genuine upstream CVEs, not false positives. The fastmcp findings are blocked by the package's own constraint Recommendation: Hold this bump. Upstream needs to widen |
ae3c9f0 to
699d441
Compare
This PR contains the following updates:
0.5.3→0.6.0Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.