Skip to content

Commit 37bb41e

Browse files
chore: upgrade @opentelemetry/core to ^2.8.0 to address CVE-2026-54285
Co-authored-by: linear-code[bot] <222613912+linear-code[bot]@users.noreply.github.com>
1 parent ed74594 commit 37bb41e

3 files changed

Lines changed: 9 additions & 37 deletions

File tree

CHANGELOG.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -18,6 +18,7 @@ and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0
1818
- Upgraded `dompurify` to `^3.4.11`. [#1332](https://github.com/sourcebot-dev/sourcebot/pull/1332)
1919
- Upgraded `nodemailer` to `^8.0.9`. [#1331](https://github.com/sourcebot-dev/sourcebot/pull/1331)
2020
- Upgraded `nodemailer` to `^8.0.11`. [#1328](https://github.com/sourcebot-dev/sourcebot/pull/1328)
21+
- Upgraded `@opentelemetry/core` to `^2.8.0`. [#1335](https://github.com/sourcebot-dev/sourcebot/pull/1335)
2122

2223
## [5.0.3] - 2026-06-17
2324

package.json

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -40,6 +40,10 @@
4040
"sucrase/glob": "^10.5.0",
4141
"rimraf@npm:5.0.10/glob": "^10.5.0",
4242
"@opentelemetry/resources": "2.5.1",
43+
"@opentelemetry/core@npm:2.0.1": "^2.8.0",
44+
"@opentelemetry/core@npm:2.2.0": "^2.8.0",
45+
"@opentelemetry/core@npm:2.5.0": "^2.8.0",
46+
"@opentelemetry/core@npm:2.5.1": "^2.8.0",
4347
"path-to-regexp@0.1.12": "0.1.13",
4448
"path-to-regexp@^8": "^8.4.0",
4549
"picomatch@^4": "^4.0.4",

yarn.lock

Lines changed: 4 additions & 37 deletions
Original file line numberDiff line numberDiff line change
@@ -4752,47 +4752,14 @@ __metadata:
47524752
languageName: node
47534753
linkType: hard
47544754

4755-
"@opentelemetry/core@npm:2.0.1":
4756-
version: 2.0.1
4757-
resolution: "@opentelemetry/core@npm:2.0.1"
4758-
dependencies:
4759-
"@opentelemetry/semantic-conventions": "npm:^1.29.0"
4760-
peerDependencies:
4761-
"@opentelemetry/api": ">=1.0.0 <1.10.0"
4762-
checksum: 10c0/d587b1289559757d80da98039f9f57612f84f72ec608cd665dc467c7c6c5ce3a987dfcc2c63b521c7c86ce984a2552b3ead15a0dc458de1cf6bde5cdfe4ca9d8
4763-
languageName: node
4764-
linkType: hard
4765-
4766-
"@opentelemetry/core@npm:2.2.0":
4767-
version: 2.2.0
4768-
resolution: "@opentelemetry/core@npm:2.2.0"
4769-
dependencies:
4770-
"@opentelemetry/semantic-conventions": "npm:^1.29.0"
4771-
peerDependencies:
4772-
"@opentelemetry/api": ">=1.0.0 <1.10.0"
4773-
checksum: 10c0/f618b63f2f560d052791d2406b1411722aa4b0585031242e6906f869f0a707ffe725c4b29bf18aed1f202e1ab5dfc3a9f769c517ac8521338b33ac8c4265fba9
4774-
languageName: node
4775-
linkType: hard
4776-
4777-
"@opentelemetry/core@npm:2.5.0":
4778-
version: 2.5.0
4779-
resolution: "@opentelemetry/core@npm:2.5.0"
4780-
dependencies:
4781-
"@opentelemetry/semantic-conventions": "npm:^1.29.0"
4782-
peerDependencies:
4783-
"@opentelemetry/api": ">=1.0.0 <1.10.0"
4784-
checksum: 10c0/5bc67c74513036bb5a22955027382f24cff405601837546e66588ef9c87c161b7e872ed1ac63d910f88288ec1c0f00fc5ea5e750c9d63b2dabd3ab4a30fcf7b8
4785-
languageName: node
4786-
linkType: hard
4787-
4788-
"@opentelemetry/core@npm:2.5.1, @opentelemetry/core@npm:^2.0.0, @opentelemetry/core@npm:^2.5.1":
4789-
version: 2.5.1
4790-
resolution: "@opentelemetry/core@npm:2.5.1"
4755+
"@opentelemetry/core@npm:^2.0.0, @opentelemetry/core@npm:^2.5.1, @opentelemetry/core@npm:^2.8.0":
4756+
version: 2.8.0
4757+
resolution: "@opentelemetry/core@npm:2.8.0"
47914758
dependencies:
47924759
"@opentelemetry/semantic-conventions": "npm:^1.29.0"
47934760
peerDependencies:
47944761
"@opentelemetry/api": ">=1.0.0 <1.10.0"
4795-
checksum: 10c0/cbaf36953364d1295ef2ff4587c3f99eca121c7c2dbd2553699100ccbd91017f20fb1a710ac76fad832d9762dc98ae009ce0e96ab8fb00e5b539dc401d57f217
4762+
checksum: 10c0/35b8a464b359a0699fcbcea8c11a883f0f634ee7638719b89fa0c0cbbaaa38c57db22e9ac19ffb15ce18014751dc7db11a26d7fb6ad6259f89a26bdc4d167e4b
47964763
languageName: node
47974764
linkType: hard
47984765

0 commit comments

Comments
 (0)