SIGN IN SIGN UP

chore: patch dependabot security alerts (#2588)

## Summary
- Add pnpm overrides for patched transitive dependency versions flagged
by Dependabot
- Refresh pnpm lockfile to resolve vulnerable @babel/core,
@grpc/grpc-js, form-data, protobufjs, esbuild, shell-quote, tmp, uuid,
and ws versions
- Leaves only the low-severity elliptic advisory, which currently has no
patched version

## Testing
- sfw pnpm install --offline --frozen-lockfile
- pnpm audit --json (1 remaining low elliptic advisory, no patched
version)
- pnpm lint

Co-authored-by: John Kennedy <jkennedyvz@users.noreply.github.com>
J
John Kennedy committed
041c0e81c9b4882aad9f917a442f6d3219a35a91
Parent: 8fb6376
Committed by GitHub <noreply@github.com> on 7/6/2026, 12:46:07 AM