Skip to content

Commit 17ef476

Browse files
spawniaclaude
andauthored
fix(deps): update glob and js-yaml to fix security vulnerabilities (#319)
- glob 10.3.10 → 10.5.0 (CVE command injection) - glob 11.0.3 → 11.1.0 (CVE command injection) - js-yaml 3.14.1 → 3.14.2 (prototype pollution) - js-yaml 4.1.0 → 4.1.1 (prototype pollution) 🤖 Generated with [Claude Code](https://claude.com/claude-code) Co-authored-by: Claude <noreply@anthropic.com>
1 parent b768be0 commit 17ef476

1 file changed

Lines changed: 30 additions & 29 deletions

File tree

yarn.lock

Lines changed: 30 additions & 29 deletions
Original file line numberDiff line numberDiff line change
@@ -9436,33 +9436,34 @@ __metadata:
94369436
linkType: hard
94379437

94389438
"glob@npm:^10.2.2, glob@npm:^10.3.10":
9439-
version: 10.3.10
9440-
resolution: "glob@npm:10.3.10"
9439+
version: 10.5.0
9440+
resolution: "glob@npm:10.5.0"
94419441
dependencies:
94429442
foreground-child: "npm:^3.1.0"
9443-
jackspeak: "npm:^2.3.5"
9444-
minimatch: "npm:^9.0.1"
9445-
minipass: "npm:^5.0.0 || ^6.0.2 || ^7.0.0"
9446-
path-scurry: "npm:^1.10.1"
9443+
jackspeak: "npm:^3.1.2"
9444+
minimatch: "npm:^9.0.4"
9445+
minipass: "npm:^7.1.2"
9446+
package-json-from-dist: "npm:^1.0.0"
9447+
path-scurry: "npm:^1.11.1"
94479448
bin:
94489449
glob: dist/esm/bin.mjs
9449-
checksum: 10c0/13d8a1feb7eac7945f8c8480e11cd4a44b24d26503d99a8d8ac8d5aefbf3e9802a2b6087318a829fad04cb4e829f25c5f4f1110c68966c498720dd261c7e344d
9450+
checksum: 10c0/100705eddbde6323e7b35e1d1ac28bcb58322095bd8e63a7d0bef1a2cdafe0d0f7922a981b2b48369a4f8c1b077be5c171804534c3509dfe950dde15fbe6d828
94509451
languageName: node
94519452
linkType: hard
94529453

94539454
"glob@npm:^11.0.0, glob@npm:^11.0.3":
9454-
version: 11.0.3
9455-
resolution: "glob@npm:11.0.3"
9455+
version: 11.1.0
9456+
resolution: "glob@npm:11.1.0"
94569457
dependencies:
94579458
foreground-child: "npm:^3.3.1"
94589459
jackspeak: "npm:^4.1.1"
9459-
minimatch: "npm:^10.0.3"
9460+
minimatch: "npm:^10.1.1"
94609461
minipass: "npm:^7.1.2"
94619462
package-json-from-dist: "npm:^1.0.0"
94629463
path-scurry: "npm:^2.0.0"
94639464
bin:
94649465
glob: dist/esm/bin.mjs
9465-
checksum: 10c0/7d24457549ec2903920dfa3d8e76850e7c02aa709122f0164b240c712f5455c0b457e6f2a1eee39344c6148e39895be8094ae8cfef7ccc3296ed30bce250c661
9466+
checksum: 10c0/1ceae07f23e316a6fa74581d9a74be6e8c2e590d2f7205034dd5c0435c53f5f7b712c2be00c3b65bf0a49294a1c6f4b98cd84c7637e29453b5aa13b79f1763a2
94669467
languageName: node
94679468
linkType: hard
94689469

@@ -10624,16 +10625,16 @@ __metadata:
1062410625
languageName: node
1062510626
linkType: hard
1062610627

10627-
"jackspeak@npm:^2.3.5":
10628-
version: 2.3.6
10629-
resolution: "jackspeak@npm:2.3.6"
10628+
"jackspeak@npm:^3.1.2":
10629+
version: 3.4.3
10630+
resolution: "jackspeak@npm:3.4.3"
1063010631
dependencies:
1063110632
"@isaacs/cliui": "npm:^8.0.2"
1063210633
"@pkgjs/parseargs": "npm:^0.11.0"
1063310634
dependenciesMeta:
1063410635
"@pkgjs/parseargs":
1063510636
optional: true
10636-
checksum: 10c0/f01d8f972d894cd7638bc338e9ef5ddb86f7b208ce177a36d718eac96ec86638a6efa17d0221b10073e64b45edc2ce15340db9380b1f5d5c5d000cbc517dc111
10637+
checksum: 10c0/6acc10d139eaefdbe04d2f679e6191b3abf073f111edf10b1de5302c97ec93fffeb2fdd8681ed17f16268aa9dd4f8c588ed9d1d3bffbbfa6e8bf897cbb3149b9
1063710638
languageName: node
1063810639
linkType: hard
1063910640

@@ -11639,25 +11640,25 @@ __metadata:
1163911640
linkType: hard
1164011641

1164111642
"js-yaml@npm:^3.13.1":
11642-
version: 3.14.1
11643-
resolution: "js-yaml@npm:3.14.1"
11643+
version: 3.14.2
11644+
resolution: "js-yaml@npm:3.14.2"
1164411645
dependencies:
1164511646
argparse: "npm:^1.0.7"
1164611647
esprima: "npm:^4.0.0"
1164711648
bin:
1164811649
js-yaml: bin/js-yaml.js
11649-
checksum: 10c0/6746baaaeac312c4db8e75fa22331d9a04cccb7792d126ed8ce6a0bbcfef0cedaddd0c5098fade53db067c09fe00aa1c957674b4765610a8b06a5a189e46433b
11650+
checksum: 10c0/3261f25912f5dd76605e5993d0a126c2b6c346311885d3c483706cd722efe34f697ea0331f654ce27c00a42b426e524518ec89d65ed02ea47df8ad26dcc8ce69
1165011651
languageName: node
1165111652
linkType: hard
1165211653

1165311654
"js-yaml@npm:^4.1.0":
11654-
version: 4.1.0
11655-
resolution: "js-yaml@npm:4.1.0"
11655+
version: 4.1.1
11656+
resolution: "js-yaml@npm:4.1.1"
1165611657
dependencies:
1165711658
argparse: "npm:^2.0.1"
1165811659
bin:
1165911660
js-yaml: bin/js-yaml.js
11660-
checksum: 10c0/184a24b4eaacfce40ad9074c64fd42ac83cf74d8c8cd137718d456ced75051229e5061b8633c3366b8aada17945a7a356b337828c19da92b51ae62126575018f
11661+
checksum: 10c0/561c7d7088c40a9bb53cc75becbfb1df6ae49b34b5e6e5a81744b14ae8667ec564ad2527709d1a6e7d5e5fa6d483aa0f373a50ad98d42fde368ec4a190d4fae7
1166111662
languageName: node
1166211663
linkType: hard
1166311664

@@ -12255,7 +12256,7 @@ __metadata:
1225512256
languageName: node
1225612257
linkType: hard
1225712258

12258-
"lru-cache@npm:^10.0.1, lru-cache@npm:^10.4.3, lru-cache@npm:^9.1.1 || ^10.0.0":
12259+
"lru-cache@npm:^10.0.1, lru-cache@npm:^10.2.0, lru-cache@npm:^10.4.3":
1225912260
version: 10.4.3
1226012261
resolution: "lru-cache@npm:10.4.3"
1226112262
checksum: 10c0/ebd04fbca961e6c1d6c0af3799adcc966a1babe798f685bb84e6599266599cd95d94630b10262f5424539bc4640107e8a33aa28585374abf561d30d16f4b39fb
@@ -12553,7 +12554,7 @@ __metadata:
1255312554
languageName: node
1255412555
linkType: hard
1255512556

12556-
"minimatch@npm:^10.0.3":
12557+
"minimatch@npm:^10.0.3, minimatch@npm:^10.1.1":
1255712558
version: 10.1.1
1255812559
resolution: "minimatch@npm:10.1.1"
1255912560
dependencies:
@@ -12580,7 +12581,7 @@ __metadata:
1258012581
languageName: node
1258112582
linkType: hard
1258212583

12583-
"minimatch@npm:^9.0.1, minimatch@npm:^9.0.4, minimatch@npm:^9.0.5":
12584+
"minimatch@npm:^9.0.4, minimatch@npm:^9.0.5":
1258412585
version: 9.0.5
1258512586
resolution: "minimatch@npm:9.0.5"
1258612587
dependencies:
@@ -13799,13 +13800,13 @@ __metadata:
1379913800
languageName: node
1380013801
linkType: hard
1380113802

13802-
"path-scurry@npm:^1.10.1":
13803-
version: 1.10.1
13804-
resolution: "path-scurry@npm:1.10.1"
13803+
"path-scurry@npm:^1.11.1":
13804+
version: 1.11.1
13805+
resolution: "path-scurry@npm:1.11.1"
1380513806
dependencies:
13806-
lru-cache: "npm:^9.1.1 || ^10.0.0"
13807+
lru-cache: "npm:^10.2.0"
1380713808
minipass: "npm:^5.0.0 || ^6.0.2 || ^7.0.0"
13808-
checksum: 10c0/e5dc78a7348d25eec61ab166317e9e9c7b46818aa2c2b9006c507a6ff48c672d011292d9662527213e558f5652ce0afcc788663a061d8b59ab495681840c0c1e
13809+
checksum: 10c0/32a13711a2a505616ae1cc1b5076801e453e7aae6ac40ab55b388bb91b9d0547a52f5aaceff710ea400205f18691120d4431e520afbe4266b836fadede15872d
1380913810
languageName: node
1381013811
linkType: hard
1381113812

0 commit comments

Comments
 (0)