From 8cc005a2b8825ef7da210e083790c817866363f2 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 23 Apr 2026 04:03:24 +0000 Subject: [PATCH 1/3] fix: upgrade @opentelemetry/exporter-prometheus from 0.57.2 to 0.214.0 Snyk has created this PR to upgrade @opentelemetry/exporter-prometheus from 0.57.2 to 0.214.0. See this package in yarn: @opentelemetry/exporter-prometheus See this project in Snyk: https://app.snyk.io/org/cloudinaryltd/project/49b18dd8-4139-4a46-8963-719d2e981418?utm_source=github&utm_medium=referral&page=upgrade-pr --- package.json | 2 +- yarn.lock | 35 ++++++++++++++++++++++++++++++++++- 2 files changed, 35 insertions(+), 2 deletions(-) diff --git a/package.json b/package.json index d0a235b..609b7a5 100644 --- a/package.json +++ b/package.json @@ -9,7 +9,7 @@ }, "dependencies": { "@opentelemetry/api": "^1.9.1", - "@opentelemetry/exporter-prometheus": "^0.57.2", + "@opentelemetry/exporter-prometheus": "^0.214.0", "@opentelemetry/instrumentation-express": "^0.49.0", "@opentelemetry/instrumentation-http": "^0.57.2", "@opentelemetry/resources": "^1.30.1", diff --git a/yarn.lock b/yarn.lock index 1dc26c0..18bb6c2 100644 --- a/yarn.lock +++ b/yarn.lock @@ -122,6 +122,13 @@ dependencies: "@opentelemetry/semantic-conventions" "1.28.0" +"@opentelemetry/core@2.6.1": + version "2.6.1" + resolved "https://registry.yarnpkg.com/@opentelemetry/core/-/core-2.6.1.tgz#a59d22a9ae3be80bb41b280bbbe1fe9fbdb6c2a5" + integrity sha512-8xHSGWpJP9wBxgBpnqGL0R3PbdWQndL1Qp50qrg71+B28zK5OQmUgcDKLJgzyAAV38t4tOyLMGDD60LneR5W8g== + dependencies: + "@opentelemetry/semantic-conventions" "^1.29.0" + "@opentelemetry/core@^2.0.0": version "2.7.0" resolved "https://registry.yarnpkg.com/@opentelemetry/core/-/core-2.7.0.tgz#41ebcd3033f69e48e719266524877f8fef75bc03" @@ -202,7 +209,7 @@ "@opentelemetry/resources" "1.30.1" "@opentelemetry/sdk-metrics" "1.30.1" -"@opentelemetry/exporter-prometheus@0.57.2", "@opentelemetry/exporter-prometheus@^0.57.2": +"@opentelemetry/exporter-prometheus@0.57.2": version "0.57.2" resolved "https://registry.yarnpkg.com/@opentelemetry/exporter-prometheus/-/exporter-prometheus-0.57.2.tgz#b9dadca23e75c0adf9cfbecf20986f89fc24189a" integrity sha512-VqIqXnuxWMWE/1NatAGtB1PvsQipwxDcdG4RwA/umdBcW3/iOHp0uejvFHTRN2O78ZPged87ErJajyUBPUhlDQ== @@ -211,6 +218,16 @@ "@opentelemetry/resources" "1.30.1" "@opentelemetry/sdk-metrics" "1.30.1" +"@opentelemetry/exporter-prometheus@^0.214.0": + version "0.214.0" + resolved "https://registry.yarnpkg.com/@opentelemetry/exporter-prometheus/-/exporter-prometheus-0.214.0.tgz#84b847d43040f1e89c4f6f11f699bff03c1e391f" + integrity sha512-4TGYoZKebUWVuYkV6r5wS2dUF4zH7EbWFw/Uqz1ZM1tGHQeFT9wzHGXq3iSIXMUrwu5jRdxjfMaXrYejPu2kpQ== + dependencies: + "@opentelemetry/core" "2.6.1" + "@opentelemetry/resources" "2.6.1" + "@opentelemetry/sdk-metrics" "2.6.1" + "@opentelemetry/semantic-conventions" "^1.29.0" + "@opentelemetry/exporter-trace-otlp-grpc@0.57.2": version "0.57.2" resolved "https://registry.yarnpkg.com/@opentelemetry/exporter-trace-otlp-grpc/-/exporter-trace-otlp-grpc-0.57.2.tgz#1c1e593a987c211a0e9134037b7a2a7f3836f8ba" @@ -352,6 +369,14 @@ "@opentelemetry/core" "1.30.1" "@opentelemetry/semantic-conventions" "1.28.0" +"@opentelemetry/resources@2.6.1": + version "2.6.1" + resolved "https://registry.yarnpkg.com/@opentelemetry/resources/-/resources-2.6.1.tgz#e1b02772c5f65c0e074d59e4743188f7575e97c7" + integrity sha512-lID/vxSuKWXM55XhAKNoYXu9Cutoq5hFdkbTdI/zDKQktXzcWBVhNsOkiZFTMU9UtEWuGRNe0HUgmsFldIdxVA== + dependencies: + "@opentelemetry/core" "2.6.1" + "@opentelemetry/semantic-conventions" "^1.29.0" + "@opentelemetry/sdk-logs@0.57.2": version "0.57.2" resolved "https://registry.yarnpkg.com/@opentelemetry/sdk-logs/-/sdk-logs-0.57.2.tgz#ddc9d1e2b86052b4b6bb954dd90fa3878bed8a23" @@ -369,6 +394,14 @@ "@opentelemetry/core" "1.30.1" "@opentelemetry/resources" "1.30.1" +"@opentelemetry/sdk-metrics@2.6.1": + version "2.6.1" + resolved "https://registry.yarnpkg.com/@opentelemetry/sdk-metrics/-/sdk-metrics-2.6.1.tgz#9cdc9e636ec31399f228f23d9663beda5e63ee56" + integrity sha512-9t9hJHX15meBy2NmTJxL+NJfXmnausR2xUDvE19XQce0Qi/GBtDGamU8nS1RMbdgDmhgpm3VaOu2+fiS/SfTpQ== + dependencies: + "@opentelemetry/core" "2.6.1" + "@opentelemetry/resources" "2.6.1" + "@opentelemetry/sdk-node@^0.57.2": version "0.57.2" resolved "https://registry.yarnpkg.com/@opentelemetry/sdk-node/-/sdk-node-0.57.2.tgz#27597c99d3062a3be7c02ace3cc596a02fd31996" From ebc20e20e4a197824955282296b90a7f75f1fdb1 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 27 Apr 2026 18:18:15 +0000 Subject: [PATCH 2/3] fix: upgrade @opentelemetry/exporter-prometheus from 0.57.2 to 0.214.0 Snyk has created this PR to upgrade @opentelemetry/exporter-prometheus from 0.57.2 to 0.214.0. See this package in yarn: @opentelemetry/exporter-prometheus See this project in Snyk: https://app.snyk.io/org/cloudinaryltd/project/49b18dd8-4139-4a46-8963-719d2e981418?utm_source=github&utm_medium=referral&page=upgrade-pr From 6fc598be3047c1c7a23d1254f5d6ca0df3872ab5 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 8 May 2026 03:15:56 +0000 Subject: [PATCH 3/3] fix: upgrade @opentelemetry/exporter-prometheus from 0.57.2 to 0.214.0 Snyk has created this PR to upgrade @opentelemetry/exporter-prometheus from 0.57.2 to 0.214.0. See this package in yarn: @opentelemetry/exporter-prometheus See this project in Snyk: https://app.snyk.io/org/cloudinaryltd/project/49b18dd8-4139-4a46-8963-719d2e981418?utm_source=github&utm_medium=referral&page=upgrade-pr