{"id":1896,"name":"glob","ecosystem":"npm","repository_url":"https://github.com/isaacs/node-glob","issues_count":8542,"created_at":"2025-06-06T15:01:52.576Z","updated_at":"2025-06-06T15:01:52.576Z","purl":"pkg:npm/glob","metadata":{"id":1780428,"name":"glob","ecosystem":"npm","description":"the most correct and second fastest glob implementation in JavaScript","homepage":"https://github.com/isaacs/node-glob#readme","licenses":"ISC","normalized_licenses":["ISC"],"repository_url":"https://github.com/isaacs/node-glob","keywords_array":[],"namespace":null,"versions_count":157,"first_release_published_at":"2011-01-13T20:36:17.606Z","latest_release_published_at":"2025-04-23T16:02:34.141Z","latest_release_number":"11.0.2","last_synced_at":"2025-06-06T00:01:50.403Z","created_at":"2022-04-09T16:28:42.670Z","updated_at":"2025-06-06T00:23:39.855Z","registry_url":"https://www.npmjs.com/package/glob","install_command":"npm install glob","documentation_url":null,"metadata":{"funding":{"url":"https://github.com/sponsors/isaacs"},"dist-tags":{"legacy":"4.5.3","v7-legacy":"7.2.0","legacy-v10":"10.4.5","latest":"11.0.2"}},"repo_metadata":{"id":710940,"uuid":"357681","full_name":"isaacs/node-glob","owner":"isaacs","description":"glob functionality for node.js","archived":false,"fork":false,"pushed_at":"2025-04-23T16:02:21.000Z","size":2619,"stargazers_count":8611,"open_issues_count":22,"forks_count":487,"subscribers_count":93,"default_branch":"main","last_synced_at":"2025-06-03T05:23:52.239Z","etag":null,"topics":[],"latest_commit_sha":null,"homepage":"","language":"TypeScript","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"isc","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/isaacs.png","metadata":{"files":{"readme":"README.md","changelog":"changelog.md","contributing":"CONTRIBUTING.md","funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null,"zenodo":null},"funding":{"github":["isaacs"]}},"created_at":"2009-11-02T05:02:29.000Z","updated_at":"2025-06-02T14:58:42.000Z","dependencies_parsed_at":"2024-05-09T16:02:16.926Z","dependency_job_id":"0963a077-17ac-4c2c-970c-1d4e3504e698","html_url":"https://github.com/isaacs/node-glob","commit_stats":{"total_commits":716,"total_committers":50,"mean_commits":14.32,"dds":0.08798882681564246,"last_synced_commit":"08958fa38ac1a59f82b0cf912208ec9548fb28cc"},"previous_names":[],"tags_count":171,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/isaacs","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/refs/heads/main","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/sbom","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":257844055,"owners_count":22611445,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"},"owner_record":{"login":"isaacs","name":"isaacs","uuid":"9287","kind":"user","description":"npm inventor, founder npm, Inc.\r\nFormer Node BDFL.\r\nAll opinions are my own. Literally all of them. I own them all.","email":"","website":"http://blog.izs.me","location":"Oakland CA","twitter":"izs","company":"vlt.sh","icon_url":"https://avatars.githubusercontent.com/u/9287?u=55c7d6ddb9f37d0ad9785c313b50d737d58bf79b\u0026v=4","repositories_count":468,"last_synced_at":"2025-06-05T03:58:54.683Z","metadata":{"has_sponsors_listing":true,"funding":{"github":["isaacs"]}},"html_url":"https://github.com/isaacs","funding_links":["https://github.com/sponsors/isaacs"],"total_stars":38306,"followers":15529,"following":5,"created_at":"2022-11-02T16:19:00.493Z","updated_at":"2025-06-05T03:58:54.683Z","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/isaacs","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/isaacs/repositories"},"tags":[{"name":"v11.0.2","sha":"fd61f2410b4356f202f645661cfa175152702ae6","kind":"tag","published_at":"2025-04-23T16:02:17.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v11.0.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v11.0.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v11.0.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v11.0.2/manifests"},{"name":"v11.0.1","sha":"148ef611eec9454201b1f2e81721e6fa00582043","kind":"tag","published_at":"2025-01-10T06:57:34.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v11.0.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v11.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v11.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v11.0.1/manifests"},{"name":"v10.4.5","sha":"1f0c1ca01a5f256cd17f543f83e9aaeedd133939","kind":"tag","published_at":"2024-07-09T08:15:27.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.4.5","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.4.5","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.4.5","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.4.5/manifests"},{"name":"v11.0.0","sha":"561601d9d14935970ea78b0c1ca3a25addbf5379","kind":"tag","published_at":"2024-07-08T22:16:08.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v11.0.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v11.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v11.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v11.0.0/manifests"},{"name":"v10.4.4","sha":"78275168e1bbc7a61e372af1ba58307c27faf0cb","kind":"tag","published_at":"2024-07-08T22:14:14.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.4.4","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.4.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.4.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.4.4/manifests"},{"name":"v10.4.3","sha":"c14b787771f269651f27f6207aaf410fe171f0b6","kind":"tag","published_at":"2024-07-06T04:04:04.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.4.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.4.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.4.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.4.3/manifests"},{"name":"v10.4.2","sha":"eef7ea35afe511079c5bf83862ed57ece2bbf7fa","kind":"tag","published_at":"2024-06-19T01:54:17.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.4.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.4.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.4.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.4.2/manifests"},{"name":"v10.4.1","sha":"3cb1ed75b2631a567030131f422b961818bedf76","kind":"tag","published_at":"2024-05-24T06:01:09.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.4.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.4.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.4.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.4.1/manifests"},{"name":"v10.4.0","sha":"f0bd1e848c3c36c094f7613d114fd69fcc880f73","kind":"tag","published_at":"2024-05-24T01:04:42.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.4.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.4.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.4.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.4.0/manifests"},{"name":"v10.3.16","sha":"b27429849a6e8bc11a042811a939d02cbf5b100d","kind":"tag","published_at":"2024-05-21T19:14:10.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.16","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.16","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.16","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.16/manifests"},{"name":"v10.3.15","sha":"921c4b91d49a8b38c48087279bad42785503cfbb","kind":"tag","published_at":"2024-05-12T02:47:42.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.15","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.15","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.15","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.15/manifests"},{"name":"v10.3.14","sha":"4da30cd93831047441f726fd6335e607e9b03c4a","kind":"tag","published_at":"2024-05-09T14:52:34.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.14","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.14","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.14","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.14/manifests"},{"name":"v10.3.13","sha":"d6a9d05d150f18e9db4278dfb71ba104b2b5b7c0","kind":"tag","published_at":"2024-05-09T13:50:12.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.13","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.13","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.13","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.13/manifests"},{"name":"v10.3.12","sha":"d5b6b5d10ac1b83725e6f42649c0e874e76ea602","kind":"tag","published_at":"2024-03-28T16:13:33.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.12","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.12","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.12","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.12/manifests"},{"name":"v10.3.11","sha":"e667dcbc5e5077e24efc867dbde1737d7ad98bd8","kind":"tag","published_at":"2024-03-28T15:58:52.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.11","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.11","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.11","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.11/manifests"},{"name":"v10.3.10","sha":"4f18d23772133e11b1ccc4b8d7f729dddca206e3","kind":"tag","published_at":"2023-09-27T05:59:34.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.10","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.10","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.10","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.10/manifests"},{"name":"v10.3.9","sha":"b35083a9375824b2110a9ff36e2f0c75d6f64cdb","kind":"tag","published_at":"2023-09-26T07:21:43.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.9","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.9","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.9","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.9/manifests"},{"name":"v10.3.8","sha":"a6372733753d5b61f2a3136c321fb69063ef82fa","kind":"tag","published_at":"2023-09-26T06:10:08.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.8","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.8","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.8","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.8/manifests"},{"name":"v10.3.7","sha":"1d3fdd22d4f398abe32d344a69fce27207d59cab","kind":"tag","published_at":"2023-09-24T21:53:35.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.7","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.7","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.7","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.7/manifests"},{"name":"v10.3.6","sha":"5cedf2c640c23c077474c8d9cb33e820e18fdafc","kind":"tag","published_at":"2023-09-23T00:52:27.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.6","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.6","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.6","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.6/manifests"},{"name":"v10.3.5","sha":"d15c680d602ef63c39d34b401be9fd0ba2c9195c","kind":"tag","published_at":"2023-09-20T23:02:55.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.5","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.5","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.5","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.5/manifests"},{"name":"v10.3.4","sha":"8d7992f1a5b74930918c523a31a061519e86aedf","kind":"tag","published_at":"2023-08-30T22:45:04.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.4","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.4/manifests"},{"name":"v10.3.3","sha":"8c371a3eaacaa0783c34bda13d32fca3219017d3","kind":"tag","published_at":"2023-07-08T21:38:41.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.3/manifests"},{"name":"v10.3.2","sha":"44d2773f51e7e64a3a2774a3b0fa80e693973324","kind":"tag","published_at":"2023-07-08T00:18:17.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.2/manifests"},{"name":"v10.3.1","sha":"8efc5e7c3abaa70db031a9f93ed37d4935df6486","kind":"tag","published_at":"2023-06-27T23:02:01.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.1/manifests"},{"name":"v10.3.0","sha":"157373b836ed9c48e204252951c2470117917606","kind":"tag","published_at":"2023-06-21T19:07:06.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.3.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.3.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.3.0/manifests"},{"name":"v10.2.7","sha":"d64372edd2d7f7471dab23dd5aba253d4fdfcc37","kind":"tag","published_at":"2023-06-06T19:08:00.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.2.7","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.2.7","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.2.7","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.2.7/manifests"},{"name":"v10.2.6","sha":"676bbefed4e9277eeadd0f48f7a6d9e3d36b4a18","kind":"tag","published_at":"2023-05-20T20:55:27.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.2.6","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.2.6","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.2.6","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.2.6/manifests"},{"name":"v10.2.5","sha":"52da30846a89fe4fa3350a91247c2be49cb80828","kind":"tag","published_at":"2023-05-17T21:24:05.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.2.5","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.2.5","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.2.5","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.2.5/manifests"},{"name":"v10.2.4","sha":"b1014e9521290c6cf8bbc21bc8819a20bc04300b","kind":"tag","published_at":"2023-05-15T04:44:36.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.2.4","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.2.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.2.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.2.4/manifests"},{"name":"v10.2.3","sha":"8bd4777025ad93f9ad02016d7f914fd1e5573bbb","kind":"tag","published_at":"2023-05-09T23:12:01.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.2.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.2.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.2.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.2.3/manifests"},{"name":"v10.2.2","sha":"464f441d8ea83a0365bc944d840a633568363046","kind":"tag","published_at":"2023-04-23T00:16:17.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.2.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.2.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.2.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.2.2/manifests"},{"name":"v10.2.1","sha":"541ed06b6df509e7ec6fdd07b5b0533872d1a49e","kind":"tag","published_at":"2023-04-17T22:21:21.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.2.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.2.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.2.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.2.1/manifests"},{"name":"v10.1.0","sha":"bfc1c9fb2e3c2fdb9e19b3206548c14ac95aa141","kind":"tag","published_at":"2023-04-14T23:15:43.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.1.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.1.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.1.0/manifests"},{"name":"v10.0.0","sha":"93efe71400d4b046ee3c20af8cd17a6f46ac7876","kind":"tag","published_at":"2023-04-09T22:26:34.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v10.0.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v10.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v10.0.0/manifests"},{"name":"v9.3.5","sha":"760ad8bacb9ba3dc66ede885b416968fb41c8685","kind":"tag","published_at":"2023-04-09T20:30:27.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v9.3.5","html_url":"https://github.com/isaacs/node-glob/releases/tag/v9.3.5","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.3.5","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.3.5/manifests"},{"name":"v9.3.4","sha":"10a3212439792480b46dfb4d63f94ca6b3d917f2","kind":"tag","published_at":"2023-04-02T03:44:13.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v9.3.4","html_url":"https://github.com/isaacs/node-glob/releases/tag/v9.3.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.3.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.3.4/manifests"},{"name":"v9.3.3","sha":"d0c915a162612554c49ef5476d822e6807db62d9","kind":"tag","published_at":"2023-04-02T03:36:38.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v9.3.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v9.3.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.3.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.3.3/manifests"},{"name":"v9.3.2","sha":"3426f33533ed4c4a262a093009ce55e69491fd6b","kind":"tag","published_at":"2023-03-22T18:49:09.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v9.3.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v9.3.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.3.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.3.2/manifests"},{"name":"v9.3.1","sha":"facdded226e924bdf778f02e71796e6dea06402b","kind":"tag","published_at":"2023-03-21T00:02:43.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v9.3.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v9.3.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.3.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.3.1/manifests"},{"name":"v9.3.0","sha":"db4504c01be525adda213ece56c0e12db1042e1f","kind":"tag","published_at":"2023-03-14T13:02:56.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v9.3.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v9.3.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.3.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.3.0/manifests"},{"name":"v9.2.1","sha":"c8b33163b9940fa2d35284dd1c6e2ea32d2ebe39","kind":"tag","published_at":"2023-03-03T00:39:55.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v9.2.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v9.2.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.2.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.2.1/manifests"},{"name":"v9.2.0","sha":"6dcdd41b0f306ef9cdb5b8580a9e269a23252991","kind":"tag","published_at":"2023-03-02T23:04:14.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v9.2.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v9.2.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.2.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.2.0/manifests"},{"name":"v9.1.2","sha":"02790d6b1e3b0fd14fc4271056ecde115d869a06","kind":"tag","published_at":"2023-03-01T19:07:00.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v9.1.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v9.1.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.1.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.1.2/manifests"},{"name":"v9.1.1","sha":"15d797d74913609b134ee54acaf348426650271b","kind":"tag","published_at":"2023-03-01T18:48:51.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v9.1.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v9.1.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.1.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.1.1/manifests"},{"name":"v9.1.0","sha":"531e1cce7910fc8d362d5d5f4132d9b65029c64d","kind":"tag","published_at":"2023-03-01T07:38:29.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v9.1.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v9.1.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.1.0/manifests"},{"name":"v9.0.2","sha":"281e91edb5176c3594c60f6e28655ce29e421044","kind":"tag","published_at":"2023-02-28T21:31:26.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v9.0.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v9.0.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.0.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.0.2/manifests"},{"name":"v9.0.1","sha":"bedc98cfbb12f68e588c5f774d8bab5380fb6552","kind":"tag","published_at":"2023-02-27T20:55:27.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v9.0.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v9.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.0.1/manifests"},{"name":"v9.0.0","sha":"a68703e61894ef260323dcc9f95b21f17197d951","kind":"tag","published_at":"2023-02-27T20:51:15.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v9.0.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v9.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v9.0.0/manifests"},{"name":"v8.1.0","sha":"1b6bf20239a4c3bd73cacc82daa86bb7cf409398","kind":"tag","published_at":"2023-01-14T22:35:14.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v8.1.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v8.1.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v8.1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v8.1.0/manifests"},{"name":"v7.2.3","sha":"c3cd57ae128faa0e9190492acc743bb779ac4054","kind":"tag","published_at":"2022-05-15T14:43:23.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.2.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.2.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.2.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.2.3/manifests"},{"name":"v8.0.3","sha":"d844b2c1debfb7a408a8a219aea6cd5c66cfdea4","kind":"tag","published_at":"2022-05-13T17:08:13.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v8.0.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v8.0.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v8.0.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v8.0.3/manifests"},{"name":"v7.2.2","sha":"fd05f3d0687c7c911ba24585049329bca9a4218b","kind":"tag","published_at":"2022-05-13T17:07:19.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.2.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.2.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.2.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.2.2/manifests"},{"name":"v8.0.2","sha":"d13cb0692910fa2b9b16a1c8393cb9d687c83722","kind":"tag","published_at":"2022-05-12T18:51:38.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v8.0.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v8.0.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v8.0.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v8.0.2/manifests"},{"name":"v8.0.1","sha":"55ebc0b473f250f698156060277390dbdb103e62","kind":"tag","published_at":"2022-04-11T17:24:44.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v8.0.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v8.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v8.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v8.0.1/manifests"},{"name":"v8.0.0","sha":"0004d831a36e1259780ec62a2af97b9f6727ae0c","kind":"tag","published_at":"2022-03-21T16:27:02.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v8.0.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v8.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v8.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v8.0.0/manifests"},{"name":"v7.2.1","sha":"965f939a2871dbd207375d2e6e254bbd37740a33","kind":"tag","published_at":"2022-02-13T04:25:14.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.2.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.2.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.2.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.2.1/manifests"},{"name":"v7.2.0","sha":"3bfec21dd180ddf4672880176ad33af6296a167e","kind":"tag","published_at":"2021-09-22T23:36:07.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.2.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.2.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.2.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.2.0/manifests"},{"name":"v7.1.7","sha":"ce43ea071e270f4992d0cd321002816f9aa61de4","kind":"tag","published_at":"2021-05-06T21:41:56.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.1.7","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.1.7","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.7","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.7/manifests"},{"name":"v7.1.6","sha":"f5a57d3d6e19b324522a3fa5bdd5075fd1aa79d1","kind":"tag","published_at":"2019-11-06T22:05:02.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.1.6","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.1.6","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.6","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.6/manifests"},{"name":"v7.1.5","sha":"768cf33c9f3aa0f6d1ae0f9eb75f7424e7ea5cb2","kind":"tag","published_at":"2019-10-21T17:07:15.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.1.5","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.1.5","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.5","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.5/manifests"},{"name":"v7.1.4","sha":"2da9af3ed730811d0fe743bec1281e169374428e","kind":"tag","published_at":"2019-05-08T00:44:46.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.1.4","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.1.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.4/manifests"},{"name":"v7.1.3","sha":"8882c8fccabbe459465e73cc2581e121a5fdd25b","kind":"tag","published_at":"2018-08-27T05:04:28.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.1.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.1.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.3/manifests"},{"name":"v7.1.2","sha":"8fa8d561e08c9eed1d286c6a35be2cd8123b2fb7","kind":"tag","published_at":"2017-05-19T20:15:20.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.1.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.1.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.2/manifests"},{"name":"v7.1.1","sha":"bc8d43b736a98a9e289fdfceee9266cff35e5742","kind":"tag","published_at":"2016-10-07T21:49:42.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.1.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.1.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.1/manifests"},{"name":"v7.1.0","sha":"f65f9eb7eda113528c5257b58fac4ca685ee6c4f","kind":"tag","published_at":"2016-09-20T18:28:39.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.1.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.1.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.1.0/manifests"},{"name":"v7.0.6","sha":"98327d8def195b1ba200217952df8ea829426038","kind":"tag","published_at":"2016-08-24T21:39:13.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.0.6","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.0.6","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.0.6","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.0.6/manifests"},{"name":"v7.0.5","sha":"1319866c764e1a1bb39114dcbc2c1d518bb9b476","kind":"tag","published_at":"2016-06-21T01:05:28.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.0.5","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.0.5","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.0.5","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.0.5/manifests"},{"name":"v7.0.4","sha":"3f883c43fec4f8046cbea9497add3b8ba4ef0a37","kind":"tag","published_at":"2016-06-16T17:29:32.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.0.4","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.0.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.0.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.0.4/manifests"},{"name":"v7.0.3","sha":"2fc2278ab857c7df117213a2fb431de090be6353","kind":"tag","published_at":"2016-03-05T08:28:51.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.0.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.0.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.0.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.0.3/manifests"},{"name":"v7.0.2","sha":"e78b363719d0c807400ba44004d6a8185a208e54","kind":"tag","published_at":"2016-03-05T07:19:18.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.0.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.0.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.0.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.0.2/manifests"},{"name":"v7.0.1","sha":"d5924d3fe6dba126230b53847f327551a42f3824","kind":"tag","published_at":"2016-03-05T06:54:59.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.0.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.0.1/manifests"},{"name":"v7.0.0","sha":"8e8876f84232783fd2db3182af5fa33cc83f1989","kind":"tag","published_at":"2016-02-10T19:27:05.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v7.0.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v7.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v7.0.0/manifests"},{"name":"v6.0.4","sha":"3bd419c538737e56fda7e21c21ff52ca0c198df6","kind":"tag","published_at":"2016-01-08T22:35:32.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v6.0.4","html_url":"https://github.com/isaacs/node-glob/releases/tag/v6.0.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v6.0.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v6.0.4/manifests"},{"name":"v6.0.3","sha":"dd5b255ff9b161d23f81c4d0a381ca46a97d049a","kind":"tag","published_at":"2015-12-28T23:49:43.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v6.0.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v6.0.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v6.0.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v6.0.3/manifests"},{"name":"v6.0.2","sha":"19f5928d703d2ae9beeffe404d53b0fc01b35eca","kind":"tag","published_at":"2015-12-23T18:40:17.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v6.0.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v6.0.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v6.0.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v6.0.2/manifests"},{"name":"v6.0.1","sha":"3741149fe4fe7060794e85da1bd8cecde623d90b","kind":"tag","published_at":"2015-11-11T19:47:11.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v6.0.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v6.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v6.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v6.0.1/manifests"},{"name":"v6.0.0","sha":"47485920f37b9212eec4d393cfa8f274cb4ea0a4","kind":"tag","published_at":"2015-11-11T19:26:19.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v6.0.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v6.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v6.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v6.0.0/manifests"},{"name":"v5.0.15","sha":"3a7e71d453dd80e75b196fd262dd23ed54beeceb","kind":"tag","published_at":"2015-09-27T18:20:47.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.15","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.15","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.15","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.15/manifests"},{"name":"v5.0.14","sha":"c47d4514f8f93f23b589afa18947306116bfe40f","kind":"tag","published_at":"2015-07-15T01:34:46.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.14","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.14","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.14","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.14/manifests"},{"name":"v5.0.13","sha":"507733d3c97f073ac676f58f2b6f2fe4c00f3e1c","kind":"tag","published_at":"2015-07-02T21:29:10.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.13","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.13","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.13","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.13/manifests"},{"name":"v5.0.12","sha":"9439afd114a16460ad29cd2fb23267ddd45dd688","kind":"tag","published_at":"2015-06-27T16:16:12.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.12","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.12","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.12","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.12/manifests"},{"name":"v5.0.11","sha":"38ff16ceb73bd73a69ee769707a0755f86ec2dc3","kind":"tag","published_at":"2015-06-26T21:43:55.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.11","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.11","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.11","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.11/manifests"},{"name":"v5.0.10","sha":"e3cdccc0e295c2e1d5f40cf74c73ea17a8319c5c","kind":"tag","published_at":"2015-05-26T05:54:00.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.10","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.10","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.10","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.10/manifests"},{"name":"v5.0.9","sha":"7530e8887d8c588744e16eed1b5dac797fead705","kind":"tag","published_at":"2015-05-22T11:03:05.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.9","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.9","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.9","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.9/manifests"},{"name":"v5.0.8","sha":"4a66a26923edf97161b5873d74c0fe74e6fbad08","kind":"tag","published_at":"2015-05-21T16:46:40.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.8","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.8","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.8","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.8/manifests"},{"name":"v5.0.7","sha":"cfd963c3c95e51864d69092e32479ddb73c3278e","kind":"tag","published_at":"2015-05-21T16:45:50.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.7","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.7","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.7","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.7/manifests"},{"name":"v5.0.6","sha":"7a0d65d7ed11871be6b5a68dc6f15e3f4b3fb93d","kind":"tag","published_at":"2015-05-12T21:28:51.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.6","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.6","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.6","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.6/manifests"},{"name":"v5.0.5","sha":"9db1a83b44da0c60f5fdd31b28b1f9917ee6316d","kind":"tag","published_at":"2015-04-09T22:29:33.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.5","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.5","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.5","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.5/manifests"},{"name":"v5.0.4","sha":"c443cb723500d3817a4ad0af3e98a22c8f29f5ce","kind":"tag","published_at":"2015-04-09T22:26:50.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.4","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.4/manifests"},{"name":"v5.0.3","sha":"2f63d487885fbb51ec8fcb21229bebd0e515c3fb","kind":"tag","published_at":"2015-03-13T06:08:00.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.3/manifests"},{"name":"v4.5.3","sha":"a4e461ab59a837eee80a4d8dbdbf5ae1054a646f","kind":"tag","published_at":"2015-03-13T06:07:19.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.5.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.5.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.5.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.5.3/manifests"},{"name":"v5.0.2","sha":"87d334f8b6e05c19feb2438c583b1b457a5e106a","kind":"tag","published_at":"2015-03-11T17:48:26.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.2/manifests"},{"name":"v4.5.2","sha":"7a80196eeee070aa09dd33a6183a45f731c42b58","kind":"tag","published_at":"2015-03-11T17:47:57.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.5.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.5.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.5.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.5.2/manifests"},{"name":"v4.5.1","sha":"e01059844faf86a09a3ae2b0382fc57a0ce9e327","kind":"tag","published_at":"2015-03-07T22:52:52.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.5.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.5.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.5.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.5.1/manifests"},{"name":"v5.0.1","sha":"860db3d29b608e7ca3bdb272086c679fa080663d","kind":"tag","published_at":"2015-03-07T22:51:47.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.1/manifests"},{"name":"v5.0.0","sha":"abdad4c2e6b0ff22850401ff746194183b950da1","kind":"tag","published_at":"2015-03-06T07:11:02.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v5.0.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v5.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v5.0.0/manifests"},{"name":"v4.5.0","sha":"e9b8379dd31b66a5353a73193619e2b59287b5ee","kind":"tag","published_at":"2015-03-06T06:34:51.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.5.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.5.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.5.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.5.0/manifests"},{"name":"v4.4.2","sha":"c13abc0df649ec29f8cfec42f818412887736aa1","kind":"tag","published_at":"2015-03-05T02:29:25.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.4.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.4.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.4.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.4.2/manifests"},{"name":"v4.4.1","sha":"a10b0294183788c0e9f56fc3ac88832e2c3513bc","kind":"tag","published_at":"2015-02-26T22:16:16.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.4.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.4.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.4.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.4.1/manifests"},{"name":"v4.4.0","sha":"57e6b293108b48d9771a05e2b9a6a1b12cb81c12","kind":"tag","published_at":"2015-02-18T01:35:13.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.4.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.4.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.4.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.4.0/manifests"},{"name":"v4.3.5","sha":"9de4cb6bfeb9c8458cf188fe91447b99bf8f3cfd","kind":"tag","published_at":"2015-01-15T17:55:15.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.3.5","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.3.5","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.3.5","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.3.5/manifests"},{"name":"v4.3.4","sha":"7ad3aa4a7254e6d20ce6fc71b772a6156935acb0","kind":"tag","published_at":"2015-01-13T08:08:24.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.3.4","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.3.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.3.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.3.4/manifests"},{"name":"v4.3.3","sha":"a4b2cdb3a0026557b2e0930e4687d8d8c51625bf","kind":"tag","published_at":"2015-01-13T00:30:53.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.3.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.3.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.3.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.3.3/manifests"},{"name":"v4.3.2","sha":"941d53c8ab6216f43a6f5e8e01245364ba90cfe9","kind":"tag","published_at":"2014-12-19T01:58:12.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.3.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.3.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.3.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.3.2/manifests"},{"name":"v4.3.1","sha":"bc6458731a67f8864571a989906bc3d8d6f4dd80","kind":"tag","published_at":"2014-12-01T16:31:55.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.3.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.3.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.3.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.3.1/manifests"},{"name":"v4.3.0","sha":"207085343b443a890f8eba225735857900b5892b","kind":"tag","published_at":"2014-12-01T02:12:47.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.3.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.3.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.3.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.3.0/manifests"},{"name":"v4.2.2","sha":"d7625eea7c09602b36a1fb5fe08404ec86917578","kind":"tag","published_at":"2014-11-30T19:13:55.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.2.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.2.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.2.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.2.2/manifests"},{"name":"v4.2.1","sha":"c5313b5e3a5f5227617b40d8914a41d5dfc8c095","kind":"tag","published_at":"2014-11-20T19:01:40.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.2.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.2.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.2.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.2.1/manifests"},{"name":"v4.2.0","sha":"d47ef887ac89464332da4eea2f1ad29dfa4618eb","kind":"tag","published_at":"2014-11-20T01:11:41.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.2.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.2.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.2.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.2.0/manifests"},{"name":"v4.1.6","sha":"e982bbb102583895212266eb153225170f3bdeb9","kind":"tag","published_at":"2014-11-19T23:29:44.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.1.6","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.1.6","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.1.6","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.1.6/manifests"},{"name":"v4.1.5","sha":"c99255fb295b83ac81f0623342bcb921c5c139b4","kind":"tag","published_at":"2014-11-19T05:14:43.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.1.5","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.1.5","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.1.5","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.1.5/manifests"},{"name":"v4.1.4","sha":"bca4480f8c591956e3875c7ac822a86abcbf18f6","kind":"tag","published_at":"2014-11-18T22:14:29.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.1.4","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.1.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.1.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.1.4/manifests"},{"name":"v4.1.3","sha":"260522a60eb5f82802ac3a0c6e56af252f95c10a","kind":"tag","published_at":"2014-11-17T20:02:22.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.1.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.1.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.1.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.1.3/manifests"},{"name":"v4.1.2","sha":"f9076fd1b1b2386adf32316ddbbe03f13d240066","kind":"tag","published_at":"2014-11-17T16:52:44.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.1.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.1.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.1.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.1.2/manifests"},{"name":"v4.1.1","sha":"1fff1157ac0cd542adbc6298b39a3c4f39a1ee2e","kind":"tag","published_at":"2014-11-17T00:26:56.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.1.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.1.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.1.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.1.1/manifests"},{"name":"v4.1.0","sha":"d5384cd2817db4b8027248f329c349c3a200f296","kind":"tag","published_at":"2014-11-17T00:24:15.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.1.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.1.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.1.0/manifests"},{"name":"v4.0.6","sha":"6825c425e738eaffa315d8cdb1a4c3255ededcb3","kind":"tag","published_at":"2014-09-17T19:26:24.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.0.6","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.0.6","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.0.6","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.0.6/manifests"},{"name":"v4.0.5","sha":"a7d85acf4e89fa26d17396ab022ef98fbe1f8a4b","kind":"tag","published_at":"2014-07-28T21:31:05.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.0.5","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.0.5","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.0.5","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.0.5/manifests"},{"name":"v4.0.4","sha":"b7c1296f7fad4eac9fa560058cb6f737ef99d267","kind":"tag","published_at":"2014-07-11T22:29:53.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.0.4","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.0.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.0.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.0.4/manifests"},{"name":"v4.0.3","sha":"3e6881cb2c584f540c814476629b5bbdfccf36f2","kind":"tag","published_at":"2014-06-29T17:22:55.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.0.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.0.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.0.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.0.3/manifests"},{"name":"v4.0.2","sha":"4e85a5bcb2f28f82fa9836b6b2baba8af8e31e96","kind":"tag","published_at":"2014-06-02T01:30:55.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.0.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.0.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.0.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.0.2/manifests"},{"name":"v4.0.1","sha":"0cb424c09289d2299722af9439b395fdef9a31ec","kind":"tag","published_at":"2014-06-02T01:18:38.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.0.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.0.1/manifests"},{"name":"v4.0.0","sha":"865070485630b8f13c632bb6352a2a425011cd2f","kind":"tag","published_at":"2014-05-20T23:32:48.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v4.0.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v4.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v4.0.0/manifests"},{"name":"v3.2.11","sha":"73f57e99510582b2024b762305970ebcf9b70aa2","kind":"tag","published_at":"2014-05-20T23:32:19.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.2.11","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.2.11","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.11","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.11/manifests"},{"name":"v3.2.10","sha":"4e00805b5529af626bf0512d6810c27a96ca2a12","kind":"tag","published_at":"2014-05-19T22:09:44.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.2.10","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.2.10","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.10","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.10/manifests"},{"name":"v3.2.9","sha":"df08d2af0a5220fcce28f007e7e06d54957c3895","kind":"tag","published_at":"2014-02-26T07:34:00.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.2.9","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.2.9","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.9","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.9/manifests"},{"name":"v3.2.8","sha":"59c4314a1a1baf5ebad5aef9d759d614d102d930","kind":"tag","published_at":"2014-01-09T06:01:28.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.2.8","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.2.8","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.8","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.8/manifests"},{"name":"v3.2.7","sha":"74abe41069c02d6ccc9c9225bdd6e307a7e67e18","kind":"tag","published_at":"2013-11-10T16:54:39.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.2.7","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.2.7","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.7","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.7/manifests"},{"name":"v3.2.6","sha":"ea36af491d49503cc0f6de82ebe78582c3b45c61","kind":"tag","published_at":"2013-07-23T17:00:48.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.2.6","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.2.6","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.6","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.6/manifests"},{"name":"v3.2.5","sha":"ae968e0ed54bcfa9e1440670867d8536c5d81996","kind":"tag","published_at":"2013-07-23T16:26:17.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.2.5","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.2.5","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.5","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.5/manifests"},{"name":"v3.2.4","sha":"b903ed57ec57d947344585a1c79f2991200193a6","kind":"tag","published_at":"2013-07-23T15:43:36.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.2.4","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.2.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.4/manifests"},{"name":"v3.2.3","sha":"fd6aca4c0790c56b3b1b8cd9074f68b394974c5c","kind":"tag","published_at":"2013-07-11T07:12:10.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.2.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.2.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.3/manifests"},{"name":"v3.2.2","sha":"b67f845dc0e6a43206c34b459fa5ec2be4c01d91","kind":"tag","published_at":"2013-05-29T00:39:55.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.2.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.2.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.2/manifests"},{"name":"v3.2.1","sha":"94332e0c2ba3c82218852c50f2657b90052f799e","kind":"tag","published_at":"2013-04-21T05:13:43.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.2.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.2.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.1/manifests"},{"name":"v3.2.0","sha":"943699f6bbea755664b6654bd3671d982c08b47a","kind":"tag","published_at":"2013-04-21T05:11:08.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.2.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.2.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.2.0/manifests"},{"name":"v3.1.21","sha":"72165b221f09e5419b92950962249ea611ac2c0f","kind":"tag","published_at":"2013-02-25T16:25:38.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.1.21","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.1.21","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.21","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.21/manifests"},{"name":"v3.1.20","sha":"d3694b1bd4cd3f66f7d0bff104ecf72d68552082","kind":"tag","published_at":"2013-02-09T00:26:20.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.1.20","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.1.20","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.20","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.20/manifests"},{"name":"v3.1.19","sha":"531b1b2c349b84f34f99af01094907f3972243a7","kind":"tag","published_at":"2013-02-06T16:22:10.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.1.19","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.1.19","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.19","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.19/manifests"},{"name":"v3.1.18","sha":"1b70291907b55d062703be363859c1f029f747b3","kind":"tag","published_at":"2013-02-06T00:17:21.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.1.18","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.1.18","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.18","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.18/manifests"},{"name":"v3.1.17","sha":"92d8abee96e32834187d752bddc3e76ffa32f538","kind":"tag","published_at":"2013-01-23T18:40:33.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.1.17","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.1.17","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.17","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.17/manifests"},{"name":"v3.1.16","sha":"b00bd496988568e9b0eb781a5250f15ea229bd6c","kind":"tag","published_at":"2013-01-23T00:49:46.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.1.16","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.1.16","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.16","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.16/manifests"},{"name":"v3.1.15","sha":"17ec0c251ae91b37be57f37b87f3aac313ea39e8","kind":"tag","published_at":"2013-01-22T19:32:04.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.1.15","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.1.15","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.15","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.15/manifests"},{"name":"v3.1.14","sha":"565b15b19cf0f77ccfb57870a630fb318ebaf8d1","kind":"tag","published_at":"2012-10-15T15:34:44.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.1.14","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.1.14","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.14","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.14/manifests"},{"name":"v3.1.13","sha":"c1a41e749bc36e5c96bcc147a1a9cb7f2c0a116b","kind":"tag","published_at":"2012-09-26T22:31:57.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.1.13","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.1.13","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.13","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.13/manifests"},{"name":"v3.1.12","sha":"89a86e1d7046ee18df99cd9d80cba5fa88ae36a7","kind":"tag","published_at":"2012-08-06T21:05:53.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.1.12","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.1.12","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.12","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.12/manifests"},{"name":"v3.1.11","sha":"ab6a2fef23e283954bbda36a20ba11cef2e4fe8f","kind":"tag","published_at":"2012-07-24T18:57:59.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v3.1.11","html_url":"https://github.com/isaacs/node-glob/releases/tag/v3.1.11","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.11","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v3.1.11/manifests"},{"name":"3.1.10","sha":"b6e83d2fa6520bde67ad1cd3a29266c5f6c185af","kind":"tag","published_at":"2012-06-12T03:28:45.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/3.1.10","html_url":"https://github.com/isaacs/node-glob/releases/tag/3.1.10","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.10","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.10/manifests"},{"name":"3.1.9","sha":"8fb3568cd330065173759d1ce8e1c16e6f05d7c1","kind":"tag","published_at":"2012-03-22T01:19:13.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/3.1.9","html_url":"https://github.com/isaacs/node-glob/releases/tag/3.1.9","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.9","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.9/manifests"},{"name":"less-leaky","sha":"a26feebb587452c918a43c360e96651f41524a89","kind":"commit","published_at":"2012-03-18T19:43:33.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/less-leaky","html_url":"https://github.com/isaacs/node-glob/releases/tag/less-leaky","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/less-leaky","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/less-leaky/manifests"},{"name":"3.1.7","sha":"a26feebb587452c918a43c360e96651f41524a89","kind":"commit","published_at":"2012-03-18T19:43:33.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/3.1.7","html_url":"https://github.com/isaacs/node-glob/releases/tag/3.1.7","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.7","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.7/manifests"},{"name":"3.1.6","sha":"1f95e4eeafe78dfe98cee44005712c80e287c50a","kind":"tag","published_at":"2012-03-12T18:03:16.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/3.1.6","html_url":"https://github.com/isaacs/node-glob/releases/tag/3.1.6","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.6","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.6/manifests"},{"name":"3.1.5","sha":"cfc0e715c74f2257778068d5999b5e75b0d73295","kind":"tag","published_at":"2012-03-06T22:45:45.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/3.1.5","html_url":"https://github.com/isaacs/node-glob/releases/tag/3.1.5","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.5","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.5/manifests"},{"name":"3.1.4","sha":"1aa542e56d34613f71be9c49eff229b0e6981980","kind":"tag","published_at":"2012-02-23T21:09:28.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/3.1.4","html_url":"https://github.com/isaacs/node-glob/releases/tag/3.1.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.4/manifests"},{"name":"3.1.3","sha":"f822cebb5637d150ed9a45031a29ea10374a151b","kind":"tag","published_at":"2012-02-23T18:46:59.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/3.1.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/3.1.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.3/manifests"},{"name":"3.1.2","sha":"932620ff69c63451ead23b8d9cd89b7aa61d838d","kind":"tag","published_at":"2012-02-22T23:05:57.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/3.1.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/3.1.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.2/manifests"},{"name":"3.1.1","sha":"87a8cac1646f89bba772e7f1b08194380849e18e","kind":"tag","published_at":"2012-02-22T11:48:53.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/3.1.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/3.1.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.1/manifests"},{"name":"3.1.0","sha":"67bc784a30a80c002c614f62e3d2c33804d23520","kind":"tag","published_at":"2012-02-22T11:10:57.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/3.1.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/3.1.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.1.0/manifests"},{"name":"3.0.1","sha":"a917c8dfeab214518b39da6c1f61bd5be7c67fdb","kind":"tag","published_at":"2012-01-19T00:28:28.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/3.0.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/3.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.0.1/manifests"},{"name":"3.0.0","sha":"e57530ff03d58a3adeb9691df5bbfb8f70f965d1","kind":"tag","published_at":"2012-01-18T02:27:16.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/3.0.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/3.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/3.0.0/manifests"},{"name":"2.1.0","sha":"b9aa17eab69ae9c54fd643e1ede27a05dfed2b0a","kind":"tag","published_at":"2011-11-15T20:32:22.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/2.1.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/2.1.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/2.1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/2.1.0/manifests"},{"name":"2.0.9","sha":"003dfe29e5c172fecc66d63501d299531f24348b","kind":"tag","published_at":"2011-09-30T17:36:59.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/2.0.9","html_url":"https://github.com/isaacs/node-glob/releases/tag/2.0.9","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/2.0.9","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/2.0.9/manifests"},{"name":"2.0.8","sha":"845b89f4b1b32b995622a300656f718b74f0798b","kind":"tag","published_at":"2011-08-25T23:08:45.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/2.0.8","html_url":"https://github.com/isaacs/node-glob/releases/tag/2.0.8","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/2.0.8","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/2.0.8/manifests"},{"name":"2.0.7","sha":"3c1086c5611ec31eccd2fa79794d454b33c4f841","kind":"commit","published_at":"2011-06-14T01:03:03.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/2.0.7","html_url":"https://github.com/isaacs/node-glob/releases/tag/2.0.7","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/2.0.7","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/2.0.7/manifests"},{"name":"v2.0.4","sha":"c1be7190e7c988dfe803127ea98940c7ad8388c6","kind":"tag","published_at":"2011-02-23T21:09:57.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v2.0.4","html_url":"https://github.com/isaacs/node-glob/releases/tag/v2.0.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v2.0.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v2.0.4/manifests"},{"name":"v2.0.3","sha":"b658b1da5d51c6d27648dafbd68eed1ecc27ce44","kind":"commit","published_at":"2011-02-23T06:26:23.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v2.0.3","html_url":"https://github.com/isaacs/node-glob/releases/tag/v2.0.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v2.0.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v2.0.3/manifests"},{"name":"v2.0.2","sha":"b2aca8cf4d02ea8d6830e0ba9ea7b682d96f05d1","kind":"tag","published_at":"2011-02-20T20:30:34.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v2.0.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v2.0.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v2.0.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v2.0.2/manifests"},{"name":"v2.0.1","sha":"507a9dcb8f1f97a17e339aa94fb254bef47c3c67","kind":"tag","published_at":"2011-02-20T20:02:34.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v2.0.1","html_url":"https://github.com/isaacs/node-glob/releases/tag/v2.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v2.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v2.0.1/manifests"},{"name":"v1.1.0","sha":"88897aa90d075e11316fa568ddb47a5eaa9fcc21","kind":"tag","published_at":"2011-01-13T20:29:15.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v1.1.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v1.1.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v1.1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v1.1.0/manifests"},{"name":"v1.0.2","sha":"275e448876f9e4564c6038d54227cc1187148875","kind":"tag","published_at":"2010-09-07T22:52:03.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v1.0.2","html_url":"https://github.com/isaacs/node-glob/releases/tag/v1.0.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v1.0.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v1.0.2/manifests"},{"name":"v1.0.0","sha":"b577e7c0e828bd176a8f38c5201a0014edd62db2","kind":"commit","published_at":"2010-08-13T05:32:28.000Z","download_url":"https://codeload.github.com/isaacs/node-glob/tar.gz/v1.0.0","html_url":"https://github.com/isaacs/node-glob/releases/tag/v1.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v1.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/isaacs%2Fnode-glob/tags/v1.0.0/manifests"}]},"repo_metadata_updated_at":"2025-06-06T00:23:39.854Z","dependent_packages_count":48165,"downloads":856198487,"downloads_period":"last-month","dependent_repos_count":2105034,"rankings":{"downloads":0.0004928368896078224,"dependent_repos_count":0.01382681273621946,"dependent_packages_count":0.0019987273856317237,"stargazers_count":1.0939609957933634,"forks_count":1.6044304941182654,"docker_downloads_count":0.0006297360256099951,"average":0.45255660049144963},"purl":"pkg:npm/glob","advisories":[],"docker_usage_url":"https://docker.ecosyste.ms/usage/npm/glob","docker_dependents_count":71278,"docker_downloads_count":19621421350,"usage_url":"https://repos.ecosyste.ms/usage/npm/glob","dependent_repositories_url":"https://repos.ecosyste.ms/api/v1/usage/npm/glob/dependencies","status":null,"funding_links":["https://github.com/sponsors/isaacs"],"critical":true,"versions_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/packages/glob/versions","version_numbers_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/packages/glob/version_numbers","dependent_packages_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/packages/glob/dependent_packages","related_packages_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/packages/glob/related_packages","maintainers":[{"uuid":"isaacs","login":"isaacs","name":null,"email":"i@izs.me","url":null,"packages_count":488,"html_url":"https://www.npmjs.com/~isaacs","role":null,"created_at":"2022-11-10T11:30:57.543Z","updated_at":"2022-11-10T11:30:57.543Z","packages_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/maintainers/isaacs/packages"}],"registry":{"name":"npmjs.org","url":"https://registry.npmjs.org","ecosystem":"npm","default":true,"packages_count":5005318,"maintainers_count":1012639,"namespaces_count":295318,"keywords_count":699769,"github":"npm","metadata":{"funded_packages_count":150180},"icon_url":"https://github.com/npm.png","created_at":"2022-04-04T15:19:23.081Z","updated_at":"2025-06-05T05:52:15.849Z","packages_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/packages","maintainers_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/maintainers","namespaces_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/namespaces"}},"unique_repositories_count":6092,"unique_repositories_count_past_30_days":60,"recent_issues":[{"uuid":"5684428647","node_id":"PR_kwDOTQDeAc8AAAABGXj8sg","number":12,"state":"open","title":"chore(deps): bump the bun-minor-patch group across 1 directory with 108 updates","user":"dependabot[bot]","labels":[],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-10-02T22:57:37.000Z","updated_at":"2026-10-02T22:57:40.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"bun-minor-patch","update_count":108,"packages":[{"name":"@aws-sdk/client-s3","old_version":"3.933.0","new_version":"3.1141.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"glob","old_version":"13.0.5","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"},{"name":"oxlint","old_version":"1.60.0","new_version":"1.85.0","repository_url":"https://github.com/oxc-project/oxc"},{"name":"prettier","old_version":"3.6.2","new_version":"3.9.9","repository_url":"https://github.com/prettier/prettier"},{"name":"turbo","old_version":"2.10.2","new_version":"2.11.4","repository_url":"https://github.com/vercel/turborepo"},{"name":"acorn","old_version":"8.15.0","new_version":"8.18.0","repository_url":"https://github.com/acornjs/acorn"},{"name":"@opentelemetry/api","old_version":"1.9.0","new_version":"1.9.1","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"@opentelemetry/context-async-hooks","old_version":"2.6.1","new_version":"2.11.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"@opentelemetry/exporter-trace-otlp-http","old_version":"0.214.0","new_version":"0.222.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"@opentelemetry/sdk-trace-base","old_version":"2.6.1","new_version":"2.11.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"rotating-file-stream","old_version":"3.2.9","new_version":"3.2.10","repository_url":"https://github.com/iccicci/rotating-file-stream"},{"name":"@aws-sdk/credential-providers","old_version":"3.1057.0","new_version":"3.1141.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"gitlab-ai-provider","old_version":"6.12.1","new_version":"6.18.0"},{"name":"immer","old_version":"11.1.4","new_version":"11.1.18","repository_url":"https://github.com/immerjs/immer"},{"name":"@parcel/watcher","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"bun-pty","old_version":"0.4.8","new_version":"0.4.10","repository_url":"https://github.com/sursaone/bun-pty"},{"name":"ignore","old_version":"7.0.5","new_version":"7.0.10","repository_url":"https://github.com/kaelzhang/node-ignore"},{"name":"turndown","old_version":"7.2.0","new_version":"7.2.4","repository_url":"https://github.com/mixmark-io/turndown"},{"name":"@ff-labs/fff-bun","old_version":"0.9.4","new_version":"0.11.0","repository_url":"https://github.com/dmtrKovalenko/fff"},{"name":"@types/turndown","old_version":"5.0.5","new_version":"5.0.6","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@parcel/watcher-darwin-arm64","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"@parcel/watcher-darwin-x64","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"@parcel/watcher-linux-arm64-glibc","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"@parcel/watcher-linux-arm64-musl","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"@parcel/watcher-linux-x64-glibc","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"@parcel/watcher-linux-x64-musl","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"@parcel/watcher-win32-arm64","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"@parcel/watcher-win32-x64","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"yaml","old_version":"2.8.3","new_version":"2.9.1","repository_url":"https://github.com/eemeli/yaml"},{"name":"@markdoc/markdoc","old_version":"0.5.9","new_version":"0.5.10","repository_url":"https://github.com/markdoc/markdoc"},{"name":"@vscode/codicons","old_version":"0.0.44","new_version":"0.0.45","repository_url":"https://github.com/microsoft/vscode-codicons"},{"name":"@xyflow/react","old_version":"12.10.2","new_version":"12.12.0","repository_url":"https://github.com/xyflow/xyflow"},{"name":"next","old_version":"16.3.5","new_version":"16.3.6","repository_url":"https://github.com/vercel/next.js"},{"name":"posthog-js","old_version":"1.413.3","new_version":"1.434.14","repository_url":"https://github.com/PostHog/posthog-js"},{"name":"react","old_version":"19.2.8","new_version":"19.3.0","repository_url":"https://github.com/react/react"},{"name":"@types/react","old_version":"19.2.18","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"react-dom","old_version":"19.2.8","new_version":"19.3.0","repository_url":"https://github.com/react/react"},{"name":"@types/react-dom","old_version":"19.2.4","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/react","old_version":"19.2.18","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/react-dom","old_version":"19.2.4","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"autoprefixer","old_version":"10.5.4","new_version":"10.6.1","repository_url":"https://github.com/postcss/autoprefixer"},{"name":"postcss","old_version":"8.5.26","new_version":"8.5.28","repository_url":"https://github.com/postcss/postcss"},{"name":"@clack/prompts","old_version":"1.0.0-alpha.1","new_version":"1.8.1","repository_url":"https://github.com/bombshell-dev/clack"},{"name":"@aws-sdk/client-bedrock-runtime","old_version":"3.1005.0","new_version":"3.1141.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@aws-sdk/credential-provider-ini","old_version":"3.972.31","new_version":"3.973.17","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@lancedb/lancedb","old_version":"0.26.2","new_version":"0.39.0","repository_url":"https://github.com/lancedb/lancedb"},{"name":"@qdrant/js-client-rest","old_version":"1.17.0","new_version":"1.19.0","repository_url":"https://github.com/qdrant/qdrant-js"},{"name":"p-limit","old_version":"7.3.0","new_version":"7.3.3","repository_url":"https://github.com/sindresorhus/p-limit"},{"name":"uuid","old_version":"14.0.0","new_version":"14.0.2","repository_url":"https://github.com/uuidjs/uuid"},{"name":"web-tree-sitter","old_version":"0.25.10","new_version":"0.27.0","repository_url":"https://github.com/tree-sitter/tree-sitter"},{"name":"@kobalte/core","old_version":"0.13.11","new_version":"0.13.14","repository_url":"https://github.com/kobaltedev/kobalte"},{"name":"@solid-primitives/media","old_version":"2.3.3","new_version":"2.3.6","repository_url":"https://github.com/solidjs-community/solid-primitives"},{"name":"@solid-primitives/resize-observer","old_version":"2.1.5","new_version":"2.2.0","repository_url":"https://github.com/solidjs-community/solid-primitives"},{"name":"@solid-primitives/rootless","old_version":"1.5.2","new_version":"1.5.4","repository_url":"https://github.com/solidjs-community/solid-primitives"},{"name":"strip-ansi","old_version":"7.1.2","new_version":"7.2.0","repository_url":"https://github.com/chalk/strip-ansi"},{"name":"@playwright/test","old_version":"1.57.0","new_version":"1.63.0","repository_url":"https://github.com/microsoft/playwright"},{"name":"@storybook/addon-a11y","old_version":"10.2.10","new_version":"10.6.0","repository_url":"https://github.com/storybookjs/storybook"},{"name":"@storybook/addon-docs","old_version":"10.2.10","new_version":"10.6.0","repository_url":"https://github.com/storybookjs/storybook"},{"name":"@storybook/addon-themes","old_version":"10.2.10","new_version":"10.6.0","repository_url":"https://github.com/storybookjs/storybook"},{"name":"storybook","old_version":"10.2.10","new_version":"10.6.0","repository_url":"https://github.com/storybookjs/storybook"},{"name":"storybook-solidjs-vite","old_version":"10.0.9","new_version":"10.7.2","repository_url":"https://github.com/solidjs-community/storybook"},{"name":"vite-plugin-solid","old_version":"2.11.10","new_version":"2.11.14","repository_url":"https://github.com/solidjs/vite-plugin-solid"},{"name":"@anthropic-ai/sdk","old_version":"0.39.0","new_version":"0.128.0","repository_url":"https://github.com/anthropics/anthropic-sdk-typescript"},{"name":"@lottiefiles/dotlottie-web","old_version":"0.63.0","new_version":"0.80.0","repository_url":"https://github.com/LottieFiles/dotlottie-web"},{"name":"lru-cache","old_version":"11.5.2","new_version":"11.5.3","repository_url":"https://github.com/isaacs/node-lru-cache"},{"name":"playwright-core","old_version":"1.57.0","new_version":"1.63.0","repository_url":"https://github.com/microsoft/playwright"},{"name":"solid-js","old_version":"1.9.12","new_version":"1.9.15","repository_url":"https://github.com/solidjs/solid"},{"name":"ws","old_version":"8.21.0","new_version":"8.21.3","repository_url":"https://github.com/websockets/ws"},{"name":"zod","old_version":"4.1.8","new_version":"4.6.5","repository_url":"https://github.com/colinhacks/zod"},{"name":"@axe-core/playwright","old_version":"4.11.3","new_version":"4.13.0","repository_url":"https://github.com/dequelabs/axe-core-npm"},{"name":"@types/vscode","old_version":"1.125.0","new_version":"1.138.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@vscode/test-cli","old_version":"0.0.12","new_version":"0.0.15","repository_url":"https://github.com/Microsoft/vscode-test-cli"},{"name":"babel-preset-solid","old_version":"1.9.12","new_version":"1.9.15","repository_url":"https://github.com/solidjs/solid"},{"name":"esbuild","old_version":"0.27.7","new_version":"0.28.2","repository_url":"https://github.com/evanw/esbuild"},{"name":"happy-dom","old_version":"20.11.1","new_version":"20.14.5","repository_url":"https://github.com/capricorn86/happy-dom"},{"name":"typescript-eslint","old_version":"8.66.0","new_version":"8.70.1","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@smithy/eventstream-codec","old_version":"4.2.14","new_version":"4.5.2","repository_url":"https://github.com/smithy-lang/smithy-typescript"},{"name":"@smithy/util-utf8","old_version":"4.2.2","new_version":"4.5.2","repository_url":"https://github.com/smithy-lang/smithy-typescript"},{"name":"@modelcontextprotocol/sdk","old_version":"1.29.0","new_version":"1.30.1","repository_url":"https://github.com/modelcontextprotocol/typescript-sdk"},{"name":"@octokit/graphql","old_version":"9.0.2","new_version":"9.0.5","repository_url":"https://github.com/octokit/graphql.js"},{"name":"@opentelemetry/sdk-trace-node","old_version":"2.6.1","new_version":"2.11.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"@secretlint/core","old_version":"13.0.5","new_version":"13.0.6","repository_url":"https://github.com/secretlint/secretlint"},{"name":"@secretlint/secretlint-rule-preset-recommend","old_version":"13.0.5","new_version":"13.0.6","repository_url":"https://github.com/secretlint/secretlint"},{"name":"@solid-primitives/event-bus","old_version":"1.1.2","new_version":"1.1.4","repository_url":"https://github.com/solidjs-community/solid-primitives"},{"name":"@solid-primitives/scheduled","old_version":"1.5.2","new_version":"1.5.3","repository_url":"https://github.com/solidjs-community/solid-primitives"},{"name":"@standard-schema/spec","old_version":"1.0.0","new_version":"1.1.0","repository_url":"https://github.com/standard-schema/standard-schema"},{"name":"@zip.js/zip.js","old_version":"2.7.62","new_version":"2.18.2","repository_url":"https://github.com/gildas-lormeau/zip.js"},{"name":"bonjour-service","old_version":"1.3.0","new_version":"1.4.4","repository_url":"https://github.com/onlxltd/bonjour-service"},{"name":"chardet","old_version":"2.1.1","new_version":"2.2.0","repository_url":"https://github.com/runk/node-chardet"},{"name":"decimal.js","old_version":"10.5.0","new_version":"10.6.0","repository_url":"https://github.com/MikeMcl/decimal.js"},{"name":"iconv-lite","old_version":"0.7.2","new_version":"0.7.3","repository_url":"https://github.com/pillarjs/iconv-lite"},{"name":"mammoth","old_version":"1.12.0","new_version":"1.12.3","repository_url":"https://github.com/mwilliamson/mammoth.js"},{"name":"opencode-poe-auth","old_version":"0.0.1","new_version":"0.0.4","repository_url":"https://github.com/poe-platform/poe-code"},{"name":"tree-sitter-bash","old_version":"0.25.0","new_version":"0.25.1","repository_url":"https://github.com/tree-sitter/tree-sitter-bash"},{"name":"tree-sitter-powershell","old_version":"0.25.10","new_version":"0.26.4","repository_url":"https://github.com/airbus-cert/tree-sitter-powershell"},{"name":"yargs","old_version":"18.0.0","new_version":"18.2.0","repository_url":"https://github.com/yargs/yargs"},{"name":"@effect/language-service","old_version":"0.84.2","new_version":"0.87.2","repository_url":"https://github.com/Effect-TS/language-service"},{"name":"@types/yargs","old_version":"17.0.33","new_version":"17.0.35","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"vscode-languageserver-types","old_version":"3.17.5","new_version":"3.18.4","repository_url":"https://github.com/Microsoft/vscode-languageserver-node"},{"name":"@solid-primitives/bounds","old_version":"0.1.3","new_version":"0.1.7","repository_url":"https://github.com/solidjs-community/solid-primitives"},{"name":"@solid-primitives/event-listener","old_version":"2.4.5","new_version":"2.4.6","repository_url":"https://github.com/solidjs-community/solid-primitives"},{"name":"dompurify","old_version":"3.4.13","new_version":"3.4.16","repository_url":"https://github.com/cure53/DOMPurify"},{"name":"katex","old_version":"0.16.27","new_version":"0.18.9","repository_url":"https://github.com/KaTeX/KaTeX"},{"name":"marked-katex-extension","old_version":"5.1.6","new_version":"5.1.13","repository_url":"https://github.com/UziTech/marked-katex-extension"},{"name":"@types/katex","old_version":"0.16.7","new_version":"0.16.8","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@storybook/addon-links","old_version":"10.5.7","new_version":"10.6.0","repository_url":"https://github.com/storybookjs/storybook"},{"name":"@storybook/addon-onboarding","old_version":"10.5.7","new_version":"10.6.0","repository_url":"https://github.com/storybookjs/storybook"},{"name":"@storybook/addon-vitest","old_version":"10.5.7","new_version":"10.6.0","repository_url":"https://github.com/storybookjs/storybook"},{"name":"vite-plugin-icons-spritesheet","old_version":"3.0.1","new_version":"3.1.0","repository_url":"https://github.com/code-forge-io/vite-plugin-icons-spritesheet"},{"name":"@hey-api/openapi-ts","old_version":"0.97.3","new_version":"0.99.0","repository_url":"https://github.com/hey-api/hey-api"}],"path":null,"ecosystem":"npm"},"body":"Bumps the bun-minor-patch group with 108 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@aws-sdk/client-s3](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3) | `3.933.0` | `3.1141.0` |\n| [glob](https://github.com/isaacs/node-glob) | `13.0.5` | `13.0.6` |\n| [oxlint](https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint) | `1.60.0` | `1.85.0` |\n| [prettier](https://github.com/prettier/prettier) | `3.6.2` | `3.9.9` |\n| [turbo](https://github.com/vercel/turborepo) | `2.10.2` | `2.11.4` |\n| [acorn](https://github.com/acornjs/acorn) | `8.15.0` | `8.18.0` |\n| [@opentelemetry/api](https://github.com/open-telemetry/opentelemetry-js) | `1.9.0` | `1.9.1` |\n| [@opentelemetry/context-async-hooks](https://github.com/open-telemetry/opentelemetry-js) | `2.6.1` | `2.11.0` |\n| [@opentelemetry/exporter-trace-otlp-http](https://github.com/open-telemetry/opentelemetry-js) | `0.214.0` | `0.222.0` |\n| [@opentelemetry/sdk-trace-base](https://github.com/open-telemetry/opentelemetry-js) | `2.6.1` | `2.11.0` |\n| [rotating-file-stream](https://github.com/iccicci/rotating-file-stream) | `3.2.9` | `3.2.10` |\n| [@aws-sdk/credential-providers](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/packages/credential-providers) | `3.1057.0` | `3.1141.0` |\n| [gitlab-ai-provider](https://gitlab.com/vglafirov/gitlab-ai-provider) | `6.12.1` | `6.18.0` |\n| [immer](https://github.com/immerjs/immer) | `11.1.4` | `11.1.18` |\n| [@parcel/watcher](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [bun-pty](https://github.com/sursaone/bun-pty) | `0.4.8` | `0.4.10` |\n| [ignore](https://github.com/kaelzhang/node-ignore) | `7.0.5` | `7.0.10` |\n| [turndown](https://github.com/mixmark-io/turndown) | `7.2.0` | `7.2.4` |\n| [@ff-labs/fff-bun](https://github.com/dmtrKovalenko/fff/tree/HEAD/packages/fff) | `0.9.4` | `0.11.0` |\n| [@types/turndown](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/turndown) | `5.0.5` | `5.0.6` |\n| [@parcel/watcher-darwin-arm64](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [@parcel/watcher-darwin-x64](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [@parcel/watcher-linux-arm64-glibc](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [@parcel/watcher-linux-arm64-musl](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [@parcel/watcher-linux-x64-glibc](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [@parcel/watcher-linux-x64-musl](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [@parcel/watcher-win32-arm64](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [@parcel/watcher-win32-x64](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [yaml](https://github.com/eemeli/yaml) | `2.8.3` | `2.9.1` |\n| [@markdoc/markdoc](https://github.com/markdoc/markdoc) | `0.5.9` | `0.5.10` |\n| [@vscode/codicons](https://github.com/microsoft/vscode-codicons) | `0.0.44` | `0.0.45` |\n| [@xyflow/react](https://github.com/xyflow/xyflow/tree/HEAD/packages/react) | `12.10.2` | `12.12.0` |\n| [next](https://github.com/vercel/next.js) | `16.3.5` | `16.3.6` |\n| [posthog-js](https://github.com/PostHog/posthog-js) | `1.413.3` | `1.434.14` |\n| [react](https://github.com/react/react/tree/HEAD/packages/react) | `19.2.8` | `19.3.0` |\n| [@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react) | `19.2.18` | `19.3.0` |\n| [react-dom](https://github.com/react/react/tree/HEAD/packages/react-dom) | `19.2.8` | `19.3.0` |\n| [@types/react-dom](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-dom) | `19.2.4` | `19.3.0` |\n| [@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react) | `19.2.18` | `19.3.0` |\n| [@types/react-dom](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-dom) | `19.2.4` | `19.3.0` |\n| [autoprefixer](https://github.com/postcss/autoprefixer) | `10.5.4` | `10.6.1` |\n| [postcss](https://github.com/postcss/postcss) | `8.5.26` | `8.5.28` |\n| [@clack/prompts](https://github.com/bombshell-dev/clack/tree/HEAD/packages/prompts) | `1.0.0-alpha.1` | `1.8.1` |\n| [@aws-sdk/client-bedrock-runtime](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-bedrock-runtime) | `3.1005.0` | `3.1141.0` |\n| [@aws-sdk/credential-provider-ini](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/packages-internal/credential-provider-ini) | `3.972.31` | `3.973.17` |\n| [@lancedb/lancedb](https://github.com/lancedb/lancedb) | `0.26.2` | `0.39.0` |\n| [@qdrant/js-client-rest](https://github.com/qdrant/qdrant-js/tree/HEAD/packages/js-client-rest) | `1.17.0` | `1.19.0` |\n| [p-limit](https://github.com/sindresorhus/p-limit) | `7.3.0` | `7.3.3` |\n| [uuid](https://github.com/uuidjs/uuid) | `14.0.0` | `14.0.2` |\n| [web-tree-sitter](https://github.com/tree-sitter/tree-sitter/tree/HEAD/lib/binding_web) | `0.25.10` | `0.27.0` |\n| [@kobalte/core](https://github.com/kobaltedev/kobalte) | `0.13.11` | `0.13.14` |\n| [@solid-primitives/media](https://github.com/solidjs-community/solid-primitives) | `2.3.3` | `2.3.6` |\n| [@solid-primitives/resize-observer](https://github.com/solidjs-community/solid-primitives) | `2.1.5` | `2.2.0` |\n| [@solid-primitives/rootless](https://github.com/solidjs-community/solid-primitives) | `1.5.2` | `1.5.4` |\n| [strip-ansi](https://github.com/chalk/strip-ansi) | `7.1.2` | `7.2.0` |\n| [@playwright/test](https://github.com/microsoft/playwright) | `1.57.0` | `1.63.0` |\n| [@storybook/addon-a11y](https://github.com/storybookjs/storybook/tree/HEAD/code/addons/a11y) | `10.2.10` | `10.6.0` |\n| [@storybook/addon-docs](https://github.com/storybookjs/storybook/tree/HEAD/code/addons/docs) | `10.2.10` | `10.6.0` |\n| [@storybook/addon-themes](https://github.com/storybookjs/storybook/tree/HEAD/code/addons/themes) | `10.2.10` | `10.6.0` |\n| [storybook](https://github.com/storybookjs/storybook/tree/HEAD/code/core) | `10.2.10` | `10.6.0` |\n| [storybook-solidjs-vite](https://github.com/solidjs-community/storybook) | `10.0.9` | `10.7.2` |\n| [vite-plugin-solid](https://github.com/solidjs/vite-plugin-solid) | `2.11.10` | `2.11.14` |\n| [@anthropic-ai/sdk](https://github.com/anthropics/anthropic-sdk-typescript) | `0.39.0` | `0.128.0` |\n| [@lottiefiles/dotlottie-web](https://github.com/LottieFiles/dotlottie-web/tree/HEAD/packages/web) | `0.63.0` | `0.80.0` |\n| [lru-cache](https://github.com/isaacs/node-lru-cache) | `11.5.2` | `11.5.3` |\n| [playwright-core](https://github.com/microsoft/playwright) | `1.57.0` | `1.63.0` |\n| [solid-js](https://github.com/solidjs/solid) | `1.9.12` | `1.9.15` |\n| [ws](https://github.com/websockets/ws) | `8.21.0` | `8.21.3` |\n| [zod](https://github.com/colinhacks/zod) | `4.1.8` | `4.6.5` |\n| [@axe-core/playwright](https://github.com/dequelabs/axe-core-npm) | `4.11.3` | `4.13.0` |\n| [@types/vscode](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/vscode) | `1.125.0` | `1.138.0` |\n| [@vscode/test-cli](https://github.com/Microsoft/vscode-test-cli) | `0.0.12` | `0.0.15` |\n| [babel-preset-solid](https://github.com/solidjs/solid) | `1.9.12` | `1.9.15` |\n| [esbuild](https://github.com/evanw/esbuild) | `0.27.7` | `0.28.2` |\n| [happy-dom](https://github.com/capricorn86/happy-dom) | `20.11.1` | `20.14.5` |\n| [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint) | `8.66.0` | `8.70.1` |\n| [@smithy/eventstream-codec](https://github.com/smithy-lang/smithy-typescript/tree/HEAD/packages/eventstream-codec) | `4.2.14` | `4.5.2` |\n| [@smithy/util-utf8](https://github.com/smithy-lang/smithy-typescript/tree/HEAD/packages/util-utf8) | `4.2.2` | `4.5.2` |\n| [@modelcontextprotocol/sdk](https://github.com/modelcontextprotocol/typescript-sdk) | `1.29.0` | `1.30.1` |\n| [@octokit/graphql](https://github.com/octokit/graphql.js) | `9.0.2` | `9.0.5` |\n| [@opentelemetry/sdk-trace-node](https://github.com/open-telemetry/opentelemetry-js) | `2.6.1` | `2.11.0` |\n| [@secretlint/core](https://github.com/secretlint/secretlint) | `13.0.5` | `13.0.6` |\n| [@secretlint/secretlint-rule-preset-recommend](https://github.com/secretlint/secretlint) | `13.0.5` | `13.0.6` |\n| [@solid-primitives/event-bus](https://github.com/solidjs-community/solid-primitives) | `1.1.2` | `1.1.4` |\n| [@solid-primitives/scheduled](https://github.com/solidjs-community/solid-primitives) | `1.5.2` | `1.5.3` |\n| [@standard-schema/spec](https://github.com/standard-schema/standard-schema) | `1.0.0` | `1.1.0` |\n| [@zip.js/zip.js](https://github.com/gildas-lormeau/zip.js) | `2.7.62` | `2.18.2` |\n| [bonjour-service](https://github.com/onlxltd/bonjour-service) | `1.3.0` | `1.4.4` |\n| [chardet](https://github.com/runk/node-chardet) | `2.1.1` | `2.2.0` |\n| [decimal.js](https://github.com/MikeMcl/decimal.js) | `10.5.0` | `10.6.0` |\n| [iconv-lite](https://github.com/pillarjs/iconv-lite) | `0.7.2` | `0.7.3` |\n| [mammoth](https://github.com/mwilliamson/mammoth.js) | `1.12.0` | `1.12.3` |\n| [opencode-poe-auth](https://github.com/poe-platform/poe-code/tree/HEAD/packages/opencode-poe-auth) | `0.0.1` | `0.0.4` |\n| [tree-sitter-bash](https://github.com/tree-sitter/tree-sitter-bash) | `0.25.0` | `0.25.1` |\n| [tree-sitter-powershell](https://github.com/airbus-cert/tree-sitter-powershell) | `0.25.10` | `0.26.4` |\n| [yargs](https://github.com/yargs/yargs) | `18.0.0` | `18.2.0` |\n| [@effect/language-service](https://github.com/Effect-TS/language-service) | `0.84.2` | `0.87.2` |\n| [@types/yargs](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/yargs) | `17.0.33` | `17.0.35` |\n| [vscode-languageserver-types](https://github.com/Microsoft/vscode-languageserver-node/tree/HEAD/types) | `3.17.5` | `3.18.4` |\n| [@solid-primitives/bounds](https://github.com/solidjs-community/solid-primitives) | `0.1.3` | `0.1.7` |\n| [@solid-primitives/event-listener](https://github.com/solidjs-community/solid-primitives) | `2.4.5` | `2.4.6` |\n| [dompurify](https://github.com/cure53/DOMPurify) | `3.4.13` | `3.4.16` |\n| [katex](https://github.com/KaTeX/KaTeX) | `0.16.27` | `0.18.9` |\n| [marked-katex-extension](https://github.com/UziTech/marked-katex-extension) | `5.1.6` | `5.1.13` |\n| [@types/katex](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/katex) | `0.16.7` | `0.16.8` |\n| [@storybook/addon-links](https://github.com/storybookjs/storybook/tree/HEAD/code/addons/links) | `10.5.7` | `10.6.0` |\n| [@storybook/addon-onboarding](https://github.com/storybookjs/storybook/tree/HEAD/code/addons/onboarding) | `10.5.7` | `10.6.0` |\n| [@storybook/addon-vitest](https://github.com/storybookjs/storybook/tree/HEAD/code/addons/vitest) | `10.5.7` | `10.6.0` |\n| [vite-plugin-icons-spritesheet](https://github.com/code-forge-io/vite-plugin-icons-spritesheet) | `3.0.1` | `3.1.0` |\n| [@hey-api/openapi-ts](https://github.com/hey-api/hey-api/tree/HEAD/packages/openapi-ts) | `0.97.3` | `0.99.0` |\n\n\nUpdates `@aws-sdk/client-s3` from 3.933.0 to 3.1141.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/client-s3's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1141.0\u003c/h2\u003e\n\u003ch4\u003e3.1141.0(2026-09-25)\u003c/h4\u003e\n\u003ch5\u003eChores\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecodegen:\u003c/strong\u003e  smithy-aws-typescript-codegen 0.54.0 (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8314\"\u003e#8314\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ad80ce3ebaf394679aabc6e26b2dcd023ce8e010\"\u003ead80ce3e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-connect:\u003c/strong\u003e  Agent Privacy During Hold is a new privacy capability for Amazon Connect Voice that prevents agent audio from being captured in call recordings or Contact Lens conversational analytics during hold. When enabled, agents are automatically muted on entering hold and unmuted on resuming the contact (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/03527f9ea153365c1e3654ac6d3f3e064d06b5d0\"\u003e03527f9e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-qconnect:\u003c/strong\u003e  Release shapes for the proactive agentic recommendations and the multi-knowledge base search features. Increases the maximum length of QuickResponseContent. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e008332b0b70c55d22dfca8a9c2317b67d06a5f3\"\u003ee008332b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent:\u003c/strong\u003e  Adds support for calling VPC configuration API's in Bedrock. These configurations allow the use of On Prem connectors in Bedrock Managed Knowledge bases (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/18524dc69cf36ebbb8bc7bc33e0bce6311dcdb23\"\u003e18524dc6\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-mediaconnect:\u003c/strong\u003e  This release adds support for RTMP push router outputs in AWS Elemental MediaConnect. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/5bd8d80bbca2c1c2545521b03d741b46fccd09b4\"\u003e5bd8d80b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-securityagent:\u003c/strong\u003e  This release adds the ListActorMessages operation, which returns the multi-factor authentication messages received at an actor's server-generated email address (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/10e53d506db74c48b09b94d9b9387b84dd40ed58\"\u003e10e53d50\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-arc-region-switch:\u003c/strong\u003e  Adds a service quota checker to Region switch to verify quota parity between your primary and standby Region, and automatically submit quota limit increases. Adds an optional EC2 Auto Scaling and ECS setting that waits for instances or tasks in the scaled-up Region to be healthy in target groups. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/cca33e380a8985e23a0e3fbb420577aab4b60ac7\"\u003ecca33e38\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agentcore-control:\u003c/strong\u003e  Amazon Bedrock AgentCore Payments now supports credential rotation for payment connectors, letting you rotate API and wallet secrets for Quick Create payment auths from the console. This release also adds Type and Creation type columns to the payment managers views. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/adca591f07c448603de2876faaf7914cad441436\"\u003eadca591f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-neptune-graph:\u003c/strong\u003e  Add GraphIdentifier filter for ListImportTasks (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/9b9aea9b553ba84f006f95da5d8ffd5381cc8a17\"\u003e9b9aea9b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-rekognition:\u003c/strong\u003e  This release adds support for Feedback and Metadata in the GetFaceLivenessSessionResults response. Feedback returns codes explaining why a Face Liveness check produced its result. Metadata includes the client SDK type. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0831c361bb69d44357ff57360db39afdbb149337\"\u003e0831c361\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-glue:\u003c/strong\u003e  add support for table level federation (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/a44458b77853cbb25a9fcb362b0a275d7dc1c69b\"\u003ea44458b7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-wellarchitected:\u003c/strong\u003e  This change releases the Well-Architected Agent, a generative AI service that analyzes a customer's AWS environment and delivers personalized, prioritized recommendations across cost, security, performance, and resilience. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d0656586067f70b8d50000300f04512dd089df96\"\u003ed0656586\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1141.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1140.0\u003c/h2\u003e\n\u003ch4\u003e3.1140.0(2026-09-24)\u003c/h4\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-route53resolver:\u003c/strong\u003e  Documentation updates for Route 53 Resolver. Clarifies which Outpost Resolver operations apply to first-generation AWS Outposts and that Resolver is managed automatically on second-generation Outposts. Adds Local Network Interface subnet compatibility notes for Resolver endpoints. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b4432abaaaf19bf4ac5d4d2b09bcc83e4d5440a0\"\u003eb4432aba\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-iot:\u003c/strong\u003e  Fixed ListV2LoggingLevels and DeleteV2LoggingLevel documentation to include all supported target-types (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4dcf76d527e0c1fe76d64cb8ea444ce62d64135b\"\u003e4dcf76d5\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclients:\u003c/strong\u003e  update client endpoints as of 2026-09-24 (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/29a8566cb4c6eeb0cc554f4ae9bf985160556523\"\u003e29a8566c\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eventbridgev2:\u003c/strong\u003e  Introducing Amazon EventBridge enhanced Custom event bus, a new shareable event bus for organizational-scale event-driven applications feature ordered delivery, deduplication, open event formats, and cross-account bus sharing. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/69fbe6a22fd7810332b0b0356803a0eee3f563cf\"\u003e69fbe6a2\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-datazone:\u003c/strong\u003e  Amazon DataZone now supports the TOOLING blueprint category on CreateEnvironmentBlueprint, UpdateEnvironmentBlueprint, GetEnvironmentBlueprint, and ListEnvironmentBlueprints, for custom tooling blueprints. CreateConnection now accepts roleArn in iamProperties. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/591cd6f5a7b714427cbe87b36b13357d560d48ea\"\u003e591cd6f5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-elasticache:\u003c/strong\u003e  Added tagging support for ElastiCache Global DataStore. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0fa9da5946312f09942dad6f711885855f0d0b8e\"\u003e0fa9da59\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-marketplace-discovery:\u003c/strong\u003e  AWS Marketplace Discovery API now supports localized responses and SigV4a request signing. It returns new fulfillment details, including AMI architecture, EBS volume and security group information, SaaS quick-launch status, and SageMaker input and output MIME types. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/510673e376bbc578d318308136ecb5a841416bc3\"\u003e510673e3\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-redshift-data:\u003c/strong\u003e  Updates to the ListDatabases and WorkgroupName validation (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/218c24e106efe1ad64658984123af6634fc7278d\"\u003e218c24e1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-securityagent:\u003c/strong\u003e  Added support for Confluence export, enabling customers to publish security findings to Confluence pages. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/81408527778af52f0c604a4eaca440f445082f78\"\u003e81408527\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch:\u003c/strong\u003e  This release adds Create, Get, Update, and DeleteResourceMetricsConfiguration to enable detailed metric collection for an AWS resource, and adds UpdateOTelEnrichment plus include and exclude filters on StartOTelEnrichment so you can choose which metric namespaces CloudWatch enriches. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/765cc1ce8f95a4f62d83dc07b81a927d74e09b52\"\u003e765cc1ce\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eventbridge:\u003c/strong\u003e  Adds a ManagedBy field to the DescribeEventBus and ListEventBuses responses, identifying the AWS service that created an event bus on your behalf. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/28a639b27585c85376a4b5db528c31efb80e874d\"\u003e28a639b2\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eTests\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eundici-http-handler:\u003c/strong\u003e  update bidi stream e2e test to nova-2-sonic model (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8313\"\u003e#8313\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d9a37d9d318f2ef7f5bcf6286bf3c7b475e4175b\"\u003ed9a37d9d\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-s3/CHANGELOG.md\"\u003e@​aws-sdk/client-s3's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1140.0...v3.1141.0\"\u003e3.1141.0\u003c/a\u003e (2026-09-25)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1139.0...v3.1140.0\"\u003e3.1140.0\u003c/a\u003e (2026-09-24)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1138.0...v3.1139.0\"\u003e3.1139.0\u003c/a\u003e (2026-09-23)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1137.0...v3.1138.0\"\u003e3.1138.0\u003c/a\u003e (2026-09-22)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1136.0...v3.1137.0\"\u003e3.1137.0\u003c/a\u003e (2026-09-21)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1135.0...v3.1136.0\"\u003e3.1136.0\u003c/a\u003e (2026-09-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1134.0...v3.1135.0\"\u003e3.1135.0\u003c/a\u003e (2026-09-17)\u003c/h1\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/5bc8d9a96936723ac90d721e0c5a2bff7ee8520d\"\u003e\u003ccode\u003e5bc8d9a\u003c/code\u003e\u003c/a\u003e Publish v3.1141.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6050a3813c26795562b5ada8b0d9ea498eb9f8a1\"\u003e\u003ccode\u003e6050a38\u003c/code\u003e\u003c/a\u003e Publish v3.1140.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/03d54a858f80012bbc60046a77242223e8dfd9d9\"\u003e\u003ccode\u003e03d54a8\u003c/code\u003e\u003c/a\u003e Publish v3.1139.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c68e50e4a6e0469a20c2894fe8a29c140553ebb8\"\u003e\u003ccode\u003ec68e50e\u003c/code\u003e\u003c/a\u003e Publish v3.1138.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/9a104768684e8f22d4373fcc5d910711e62676d6\"\u003e\u003ccode\u003e9a10476\u003c/code\u003e\u003c/a\u003e chore(codegen): sync for MetricsRecorder support and core error/retry fixes (...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6b432472f9bdf5437319b9186f706e3af5c9a748\"\u003e\u003ccode\u003e6b43247\u003c/code\u003e\u003c/a\u003e Publish v3.1137.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d6b94db8f4a00cc452dbe0aacb247e8ece3897ea\"\u003e\u003ccode\u003ed6b94db\u003c/code\u003e\u003c/a\u003e Publish v3.1136.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/2d5f18d08aa373d95692d83cb3d60a6a79248fae\"\u003e\u003ccode\u003e2d5f18d\u003c/code\u003e\u003c/a\u003e Publish v3.1135.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0d6310bf6979ddbf737a7e15cfd8d0e7cec07063\"\u003e\u003ccode\u003e0d6310b\u003c/code\u003e\u003c/a\u003e Publish v3.1134.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/615a1ca4661ec0e4cb34b8da89fe60c2419b94d0\"\u003e\u003ccode\u003e615a1ca\u003c/code\u003e\u003c/a\u003e Publish v3.1133.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1141.0/clients/client-s3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `glob` from 13.0.5 to 13.0.6\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/e80cb38ae60d6cbff9e75f39032a994858994d35\"\u003e\u003ccode\u003ee80cb38\u003c/code\u003e\u003c/a\u003e 13.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/9cdbbfff75c64fb158c8842d4d0eb3e908676a41\"\u003e\u003ccode\u003e9cdbbff\u003c/code\u003e\u003c/a\u003e revert tsgo, not ready for test coverage correctness yet\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/89c99ba8e276438b8e31ce878b63186e2cd375b4\"\u003e\u003ccode\u003e89c99ba\u003c/code\u003e\u003c/a\u003e use tsgo compiler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/b7275d54f294174607f544acf07cc7ec526b7878\"\u003e\u003ccode\u003eb7275d5\u003c/code\u003e\u003c/a\u003e update deps, expand engines to include node 18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/942e360a669e0c378c0abd261e7d329ca2cee661\"\u003e\u003ccode\u003e942e360\u003c/code\u003e\u003c/a\u003e update workflows, pull taprc out of package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/4a0d53c7531f3f0df97f9e4d26c78489e7f6d7ef\"\u003e\u003ccode\u003e4a0d53c\u003c/code\u003e\u003c/a\u003e update tap for mockImport bugfix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/ef94ad2696c12129628208cf4e38575e7240c1c4\"\u003e\u003ccode\u003eef94ad2\u003c/code\u003e\u003c/a\u003e update tap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/180c2d43cb135f134c0c5446408dc107c79a5a9b\"\u003e\u003ccode\u003e180c2d4\u003c/code\u003e\u003c/a\u003e update docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/37993c86faddcb780458b2d7ae3c2ead7a84bf31\"\u003e\u003ccode\u003e37993c8\u003c/code\u003e\u003c/a\u003e remove stray console.error in test\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v13.0.5...v13.0.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `oxlint` from 1.60.0 to 1.85.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/oxc-project/oxc/releases\"\u003eoxlint's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eoxlint v1.85.0\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e415b742 oxlint,oxfmt: Do not discover nested config in Vite+ mode (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26763\"\u003e#26763\u003c/a\u003e) (leaysgur)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/oxc-project/oxc/blob/main/npm/oxlint/CHANGELOG.md\"\u003eoxlint's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cp\u003eAll notable changes to this package will be documented in this file.\u003c/p\u003e\n\u003cp\u003eThe format is based on \u003ca href=\"https://keepachangelog.com/en/1.0.0\"\u003eKeep a Changelog\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003e[1.86.0] - 2026-09-28\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e9d80eed linter/react/only-export-components: Support \u003ccode\u003eallowCompoundComponents\u003c/code\u003e (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/27117\"\u003e#27117\u003c/a\u003e) (Kuroda Kayn)\u003c/li\u003e\n\u003cli\u003ee05b155 linter: Add typescript/no-generated-empty-object-type (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26958\"\u003e#26958\u003c/a\u003e) (camc314)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e[1.82.0] - 2026-09-07\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e6a0e19c linter/eslint/no-unmodified-loop-condition: Support \u003ccode\u003echeckConditionalExpressions\u003c/code\u003e option (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26249\"\u003e#26249\u003c/a\u003e) (camc314)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e[1.81.0] - 2026-08-31\u003c/h2\u003e\n\u003ch3\u003e📚 Documentation\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ed5be037 linter/typescript/switch-exhaustiveness-check: Clarify default case comment pattern (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26100\"\u003e#26100\u003c/a\u003e) (camc314)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e[1.79.0] - 2026-08-18\u003c/h2\u003e\n\u003ch3\u003e💥 BREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e8c4552d linter: [\u003cstrong\u003eBREAKING\u003c/strong\u003e] Split react/react-compiler into per-category rules (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25500\"\u003e#25500\u003c/a\u003e) (Boshen)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🐛 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e228e8e0 linter: Resolve inactive React compiler rules (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25830\"\u003e#25830\u003c/a\u003e) (Boshen)\u003c/li\u003e\n\u003cli\u003eaa49d86 linter: Allow spread rule options in config types (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25675\"\u003e#25675\u003c/a\u003e) (ch3rry)\u003c/li\u003e\n\u003cli\u003e36f8451 linter/eslint/no-eval: Align indirect default with ESLint (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25656\"\u003e#25656\u003c/a\u003e) (camc314)\u003c/li\u003e\n\u003cli\u003ebeb724d linter/eslint/no-unused-vars: Report bare underscore parameters (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25663\"\u003e#25663\u003c/a\u003e) (camc314)\u003c/li\u003e\n\u003cli\u003e4004c10 linter/eslint/no-irregular-whitespace: Check comments by default (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25660\"\u003e#25660\u003c/a\u003e) (camc314)\u003c/li\u003e\n\u003cli\u003e285820e linter/no-large-snapshots: Precompile and document allowed snapshot matchers (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25611\"\u003e#25611\u003c/a\u003e) (Mikhail Baev)\u003c/li\u003e\n\u003cli\u003e4df5835 linter: Allow capitalized built-in calls (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25516\"\u003e#25516\u003c/a\u003e) (Boshen)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e[1.78.0] - 2026-08-10\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eccb8fe8 linter/jsdoc: Implement \u003ccode\u003eno-blank-blocks\u003c/code\u003e rule (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25207\"\u003e#25207\u003c/a\u003e) (Mikhail Baev)\u003c/li\u003e\n\u003cli\u003ed4a897c linter/eslint: Implement \u003ccode\u003eone-var\u003c/code\u003e rule (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/24470\"\u003e#24470\u003c/a\u003e) (Cole Ellison)\u003c/li\u003e\n\u003cli\u003e5ab9340 linter/jsx-a11y/anchor-has-content: Add options to match eslint (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/24571\"\u003e#24571\u003c/a\u003e) (Cole Ellison)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🐛 Bug Fixes\u003c/h3\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/288d8cc77984b0a3851c58c423ffe9e6edc79f2e\"\u003e\u003ccode\u003e288d8cc\u003c/code\u003e\u003c/a\u003e release(apps): oxlint v1.85.0 \u0026amp;\u0026amp; oxfmt v0.70.0 (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26903\"\u003e#26903\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/f02a64a517a69a4eaa4ef83b722a3f10cf633f10\"\u003e\u003ccode\u003ef02a64a\u003c/code\u003e\u003c/a\u003e release(apps): oxlint v1.84.0 \u0026amp;\u0026amp; oxfmt v0.69.0 (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26874\"\u003e#26874\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/7bf68f70c20f5329251f19be95076f6eab4fe396\"\u003e\u003ccode\u003e7bf68f7\u003c/code\u003e\u003c/a\u003e release(apps): oxlint v1.83.0 \u0026amp;\u0026amp; oxfmt v0.68.0 (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26631\"\u003e#26631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/b4da00b621ec2f6f67ed218f5366c45ed325331b\"\u003e\u003ccode\u003eb4da00b\u003c/code\u003e\u003c/a\u003e release(apps): oxlint v1.82.0 \u0026amp;\u0026amp; oxfmt v0.67.0 (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26384\"\u003e#26384\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/aa38ddfbea657a9d332f86e42e235ff8cbdcac6d\"\u003e\u003ccode\u003eaa38ddf\u003c/code\u003e\u003c/a\u003e fix(linter/unicorn/numeric-separators-style): correct schema defaults (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26393\"\u003e#26393\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/6a0e19cfaae35ec882de6bc8dde7668d1b0cc58e\"\u003e\u003ccode\u003e6a0e19c\u003c/code\u003e\u003c/a\u003e feat(linter/eslint/no-unmodified-loop-condition): support `checkConditionalEx...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/0b4e2e67f4193e7ebfcc64982275eb583ae82c83\"\u003e\u003ccode\u003e0b4e2e6\u003c/code\u003e\u003c/a\u003e release(apps): oxlint v1.81.0 \u0026amp;\u0026amp; oxfmt v0.66.0 (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26199\"\u003e#26199\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/d5be0375e6303202fcd6d34fa520103eceea0238\"\u003e\u003ccode\u003ed5be037\u003c/code\u003e\u003c/a\u003e docs(linter/typescript/switch-exhaustiveness-check): clarify default case com...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/63bc313934bf1fe94f8e0e6e59336f6036b8506e\"\u003e\u003ccode\u003e63bc313\u003c/code\u003e\u003c/a\u003e chore(npm): update funding URL (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26066\"\u003e#26066\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/97e99b85483776a72928d675cc05b1cfc1130ba0\"\u003e\u003ccode\u003e97e99b8\u003c/code\u003e\u003c/a\u003e release(apps): oxlint v1.80.0 \u0026amp;\u0026amp; oxfmt v0.65.0 (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26045\"\u003e#26045\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/oxc-project/oxc/commits/oxlint_v1.85.0/npm/oxlint\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `prettier` from 3.6.2 to 3.9.9\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/prettier/prettier/releases\"\u003eprettier's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.9.9\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMarkdown: Fix text with \u003ccode\u003e$\u003c/code\u003e been incorrectly parsed as math syntax (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/20140\"\u003e#20140\u003c/a\u003e by \u003ca href=\"https://github.com/fisker\"\u003e\u003ccode\u003e@​fisker\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.9/CHANGELOG.md#399\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMarkdown: Don't let Liquid objects interrupt paragraphs (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/20087\"\u003e#20087\u003c/a\u003e by \u003ca href=\"https://github.com/seiyab\"\u003e\u003ccode\u003e@​seiyab\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.8/CHANGELOG.md#398\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.7\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSupport Angular 22.2\u003c/li\u003e\n\u003cli\u003eFix regressions in v3.9\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.7/CHANGELOG.md#397\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.6\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ePreserve quotes for methods named \u003ccode\u003enew\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19621\"\u003eprettier/prettier#19621\u003c/a\u003e by \u003ca href=\"https://github.com/kovsu\"\u003e\u003ccode\u003e@​kovsu\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSupport \u003ccode\u003eimport defer\u003c/code\u003e in \u003ccode\u003etypescript\u003c/code\u003e parser (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19624\"\u003eprettier/prettier#19624\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19675\"\u003eprettier/prettier#19675\u003c/a\u003e by \u003ca href=\"https://github.com/fisker\"\u003e\u003ccode\u003e@​fisker\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdded a new official plugin \u003ca href=\"https://github.com/prettier/prettier/tree/3.9.6/packages/plugin-yuku\"\u003e\u003ccode\u003e@prettier/plugin-yuku\u003c/code\u003e 🚀\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19628\"\u003eprettier/prettier#19628\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19629\"\u003eprettier/prettier#19629\u003c/a\u003e by \u003ca href=\"https://github.com/fisker\"\u003e\u003ccode\u003e@​fisker\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.6/CHANGELOG.md#396\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.5\u003c/h2\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.5/CHANGELOG.md#395\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAngular: Format \u003ccode\u003e@content(name)\u003c/code\u003e -\u0026gt; \u003ccode\u003e@content (name)\u003c/code\u003e to align with other block syntax (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19499\"\u003e#19499\u003c/a\u003e by \u003ca href=\"https://github.com/fisker\"\u003e\u003ccode\u003e@​fisker\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.4/CHANGELOG.md#394\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMarkdown: Fix unexpected removal of characters in liquid syntax (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19489\"\u003eprettier/prettier#19489\u003c/a\u003e by \u003ca href=\"https://github.com/seiyab\"\u003e\u003ccode\u003e@​seiyab\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTypeScript: Allow decorators to be used with declare on class fields (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19492\"\u003eprettier/prettier#19492\u003c/a\u003e by \u003ca href=\"https://github.com/evoactivity\"\u003e\u003ccode\u003e@​evoactivity\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.3/CHANGELOG.md#393\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eCLI: Fix ignored file has been cached incorrectly (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19483\"\u003e#19483\u003c/a\u003e by \u003ca href=\"https://github.com/kovsu\"\u003e\u003ccode\u003e@​kovsu\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.1/CHANGELOG.md#391\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.0\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/prettier/prettier/compare/3.8.5...3.9.0\"\u003ediff\u003c/a\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/prettier/prettier/blob/main/CHANGELOG.md\"\u003eprettier's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e3.9.9\u003c/h1\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/prettier/prettier/compare/3.9.8...3.9.9\"\u003ediff\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eMarkdown: Fix text with \u003ccode\u003e$\u003c/code\u003e been incorrectly parsed as math syntax (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/20140\"\u003e#20140\u003c/a\u003e by \u003ca href=\"https://github.com/fisker\"\u003e\u003ccode\u003e@​fisker\u003c/code\u003e\u003c/a\u003e)\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cpre lang=\"md\"\u003e\u003ccode\u003e\u0026lt;!-- Input --\u0026gt;\n**Uses $FOO** from `a.sh` and `b.sh`, plus `$BAR` from `c.sh`, before anything else runs here.\n\u003cp\u003e\u0026lt;!-- Prettier 3.9.8 --\u0026gt;\n\u003cstrong\u003eUses $FOO\u003c/strong\u003e from \u003ccode\u003ea.sh\u003c/code\u003e and \u003ccode\u003eb.sh\u003c/code\u003e, plus \u003ccode\u003e$BAR\u003c/code\u003efrom\u003ccode\u003ec.sh\u003c/code\u003e, before anything else runs here.\u003c/p\u003e\n\u003cp\u003e\u0026lt;!-- Prettier 3.9.9 --\u0026gt;\n\u003cstrong\u003eUses $FOO\u003c/strong\u003e from \u003ccode\u003ea.sh\u003c/code\u003e and \u003ccode\u003eb.sh\u003c/code\u003e, plus \u003ccode\u003e$BAR\u003c/code\u003e from \u003ccode\u003ec.sh\u003c/code\u003e, before anything else runs here.\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003ch1\u003e3.9.8\u003c/h1\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/prettier/prettier/compare/3.9.7...3.9.8\"\u003ediff\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eMarkdown: Don't let Liquid objects interrupt paragraphs (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/20087\"\u003e#20087\u003c/a\u003e by \u003ca href=\"https://github.com/seiyab\"\u003e\u003ccode\u003e@​seiyab\u003c/code\u003e\u003c/a\u003e)\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cpre lang=\"markdown\"\u003e\u003ccode\u003e\u0026lt;!-- Input --\u0026gt;\nIf `module` is not a [`WebAssembly.Module`](https://github.com/prettier/prettier/blob/main/en-US/docs/WebAssembly/Reference/JavaScript_interface/Module) object instance, a\n{{jsxref(\u0026quot;TypeError\u0026quot;)}} is thrown.\n\u003cp\u003e\u0026lt;!-- Prettier 3.9.7 --\u0026gt;\nIf \u003ccode\u003emodule\u003c/code\u003e is not a \u003ca href=\"https://github.com/prettier/prettier/blob/main/en-US/docs/WebAssembly/Reference/JavaScript_interface/Module\"\u003e\u003ccode\u003eWebAssembly.Module\u003c/code\u003e\u003c/a\u003e object instance, a\u003c/p\u003e\n\u003cp\u003e{{jsxref(\u0026quot;TypeError\u0026quot;)}} is thrown.\u003c/p\u003e\n\u003cp\u003e\u0026lt;!-- Prettier 3.9.8 --\u0026gt;\nIf \u003ccode\u003emodule\u003c/code\u003e is not a \u003ca href=\"https://github.com/prettier/prettier/blob/main/en-US/docs/WebAssembly/Reference/JavaScript_interface/Module\"\u003e\u003ccode\u003eWebAssembly.Module\u003c/code\u003e\u003c/a\u003e object instance, a\n{{jsxref(\u0026quot;TypeError\u0026quot;)}} is thrown.\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003ch1\u003e3.9.7\u003c/h1\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/prettier/prettier/compare/3.9.6...3.9.7\"\u003ediff\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eMarkdown: Prevent indentation drift in list-item code blocks (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19647\"\u003e#19647\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19990\"\u003e#19990\u003c/a\u003e by \u003ca href=\"https://github.com/Austin1serb\"\u003e\u003ccode\u003e@​Austin1serb\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/giaBaoJS\"\u003e\u003ccode\u003e@​giaBaoJS\u003c/code\u003e\u003c/a\u003e)\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cpre lang=\"markdown\"\u003e\u003ccode\u003e\u0026lt;!-- Input --\u0026gt;\n- [x] short first line.\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/cdd17f2288b28b170a76416c72dac56e3ea5daff\"\u003e\u003ccode\u003ecdd17f2\u003c/code\u003e\u003c/a\u003e Release 3.9.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/dc7b8968e678f51ea00e2be3fe8c717d114691a3\"\u003e\u003ccode\u003edc7b896\u003c/code\u003e\u003c/a\u003e Disable \u003ccode\u003esingleDollarTextMath\u003c/code\u003e in \u003ccode\u003emdast-util-math\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/prettier/prettier/issues/20140\"\u003e#20140\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/f9be58fb8ec62dd47197ea19a30aac5ad26dfee0\"\u003e\u003ccode\u003ef9be58f\u003c/code\u003e\u003c/a\u003e Git blame ignore 3.9.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/88470cb79ca3b757dd6b93906d9a992aa1a456c3\"\u003e\u003ccode\u003e88470cb\u003c/code\u003e\u003c/a\u003e Bump Prettier dependency to 3.9.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/9559cab39eb5082c99a27e8829760c055adba841\"\u003e\u003ccode\u003e9559cab\u003c/code\u003e\u003c/a\u003e Clean changelog_unreleased\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/4fc8ee87465de8d54780273a6996d74e8e9da827\"\u003e\u003ccode\u003e4fc8ee8\u003c/code\u003e\u003c/a\u003e Update dependents count\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/4f2ab6765d7cb29408a2abdac75d023d64d44107\"\u003e\u003ccode\u003e4f2ab67\u003c/code\u003e\u003c/a\u003e Release 3.9.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/3d82af8b15b8e89de20dd05cc65f66ab6d4ce8b0\"\u003e\u003ccode\u003e3d82af8\u003c/code\u003e\u003c/a\u003e Update Regex related dependencies (\u003ca href=\"https://redirect.github.com/prettier/prettier/issues/20082\"\u003e#20082\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/5ec8db1745c2bdcca3706ab8cfbbe5c11fc457c1\"\u003e\u003ccode\u003e5ec8db1\u003c/code\u003e\u003c/a\u003e [3.9.x] Markdown: Don't let Liquid objects interrupt paragraphs (\u003ca href=\"https://redirect.github.com/prettier/prettier/issues/20087\"\u003e#20087\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/5b142ed2bce0095161bf6865af30df2d5ba99466\"\u003e\u003ccode\u003e5b142ed\u003c/code\u003e\u003c/a\u003e Release Release \u003ccode\u003e@​prettier/plugin-hermes\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.2.3, \u003ccode\u003e@​prettier/plugin-oxc\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.2.3, an...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/prettier/prettier/compare/3.6.2...3.9.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for prettier since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `turbo` from 2.10.2 to 2.11.4\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/turborepo/releases\"\u003eturbo's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eTurborepo v2.11.4\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efix: Respect negated global dependencies in affected detection by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14164\"\u003evercel/turborepo#14164\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: Release Turborepo 2.11.3 by \u003ca href=\"https://github.com/github-actions\"\u003e\u003ccode\u003e@​github-actions\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14165\"\u003evercel/turborepo#14165\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Share Go compilation caches across integration tests by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14166\"\u003evercel/turborepo#14166\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: Add injectable manifest loading to repository graphs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14167\"\u003evercel/turborepo#14167\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move Go and Cargo scope planning into crate tests by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14168\"\u003evercel/turborepo#14168\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: Extract subprocess-free Go observation assembly by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14169\"\u003evercel/turborepo#14169\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move Cargo environment hash contracts into crates by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14170\"\u003evercel/turborepo#14170\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move Cargo output layout matrices to repository contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14171\"\u003evercel/turborepo#14171\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Cover Go discovery identities in memory by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14172\"\u003evercel/turborepo#14172\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Cover Go hash inputs in repository contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14174\"\u003evercel/turborepo#14174\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move uv hash input contracts into crates by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14175\"\u003evercel/turborepo#14175\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Cover Go task selection in the engine by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14173\"\u003evercel/turborepo#14173\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Inject uv discovery for native task contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14176\"\u003evercel/turborepo#14176\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Inject query contracts over repository graphs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14177\"\u003evercel/turborepo#14177\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Inject dry-run task summary contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14178\"\u003evercel/turborepo#14178\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Expose prune workspace selection plan by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14179\"\u003evercel/turborepo#14179\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Inject change detection at scope entry point by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14180\"\u003evercel/turborepo#14180\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move uv lock affectedness planning into repository contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14184\"\u003evercel/turborepo#14184\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Use virtual clock for package watcher events by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14181\"\u003evercel/turborepo#14181\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move Cargo task query and dry-run planning into contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14185\"\u003evercel/turborepo#14185\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move uv quality query and dry-run projections into contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14186\"\u003evercel/turborepo#14186\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move JavaScript hash and framework projections into contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14188\"\u003evercel/turborepo#14188\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Cover prune closure and native layout plans in process by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14189\"\u003evercel/turborepo#14189\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Cover mixed-toolchain scope filters through injection by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14190\"\u003evercel/turborepo#14190\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Make package watcher suppression and rediscovery deterministic by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14191\"\u003evercel/turborepo#14191\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Inject watch run lifecycle and event collection by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14192\"\u003evercel/turborepo#14192\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move recursive root-script guard into process-free contract by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14193\"\u003evercel/turborepo#14193\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move Go query and summary parity into crate contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14187\"\u003evercel/turborepo#14187\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Remove duplicate CLI filter matrix cases by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14194\"\u003evercel/turborepo#14194\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Trim duplicate prune materialization cases by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14195\"\u003evercel/turborepo#14195\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Match Go library summary path on Windows by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14197\"\u003evercel/turborepo#14197\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Cover mixed-toolchain watch task selection in process by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14196\"\u003evercel/turborepo#14196\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Preserve Windows SystemRoot in strict-env fixture by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14198\"\u003evercel/turborepo#14198\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Retain real watch smokes after selection migration by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14199\"\u003evercel/turborepo#14199\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Only reject secondary \u003ccode\u003ego.work\u003c/code\u003e files Go reads for workspace members by \u003ca href=\"https://github.com/voiys\"\u003e\u003ccode\u003e@​voiys\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14183\"\u003evercel/turborepo#14183\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Split Go north-star cache invalidation into hash contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14201\"\u003evercel/turborepo#14201\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Avoid deleting built prune output in cross-toolchain prune test by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14202\"\u003evercel/turborepo#14202\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move turbo.json validation cases into crate contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14203\"\u003evercel/turborepo#14203\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: Update with-solid example by \u003ca href=\"https://github.com/vercel-gh-bot-2\"\u003e\u003ccode\u003e@​vercel-gh-bot-2\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14200\"\u003evercel/turborepo#14200\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: Split RunBuilder execution context construction into phases by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14204\"\u003evercel/turborepo#14204\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: Inject remote cache status probe by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14205\"\u003evercel/turborepo#14205\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: Inject inputs into config resolution by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14206\"\u003evercel/turborepo#14206\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: Add affected query APIs to turborepo-query by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14207\"\u003evercel/turborepo#14207\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: Wire CLI through affected query APIs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14208\"\u003evercel/turborepo#14208\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: Add pure microfrontend port resolver by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14209\"\u003evercel/turborepo#14209\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/40c28476951f9498c40555472b799d6a9e6f013d\"\u003e\u003ccode\u003e40c2847\u003c/code\u003e\u003c/a\u003e publish 2.11.4 to registry\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/f74650c96acc8d619eb9b3830fe724970414a344\"\u003e\u003ccode\u003ef74650c\u003c/code\u003e\u003c/a\u003e fix: Put version in \u003ccode\u003eturbo query\u003c/code\u003e JSON output instead of a separate banner (#...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/4d72915a391bc7c33e7cf5f85c9c5fda1a9132ee\"\u003e\u003ccode\u003e4d72915\u003c/code\u003e\u003c/a\u003e test: Move Cargo and Go discovery cases into contracts (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14227\"\u003e#14227\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/8a9a10a9c2435b196595fd5b25189a03d8f98828\"\u003e\u003ccode\u003e8a9a10a\u003c/code\u003e\u003c/a\u003e test: Move Cargo prune layout checks into in-process plan contracts (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14226\"\u003e#14226\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/4b72ac91ef91b9c1e937c6b61f8e1d466ac678f5\"\u003e\u003ccode\u003e4b72ac9\u003c/code\u003e\u003c/a\u003e refactor: Group Run state into execution and services contexts (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14225\"\u003e#14225\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/58a4889a2e6e588481b64fe23d2b8cb14bbedb0f\"\u003e\u003ccode\u003e58a4889\u003c/code\u003e\u003c/a\u003e refactor: Make repository context inputs injectable (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14224\"\u003e#14224\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/813bed0cfe0b1d73fd4f718cf2041b04f03f28b5\"\u003e\u003ccode\u003e813bed0\u003c/code\u003e\u003c/a\u003e fix: Share concurrent remote-cache token recovery (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14223\"\u003e#14223\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/7353b16d16fdc350850350f23fb3a27f09b0e0fc\"\u003e\u003ccode\u003e7353b16\u003c/code\u003e\u003c/a\u003e fix: Coordinate artifact requests after rate limiting (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14221\"\u003e#14221\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/ec329a0fa78be153c195db49eba1e3dcd4b2b037\"\u003e\u003ccode\u003eec329a0\u003c/code\u003e\u003c/a\u003e test: Move affected run planning into RunBuilder contracts (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14212\"\u003e#14212\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/935c9eae1189b89628edb7d7459ee85aeda80f0e\"\u003e\u003ccode\u003e935c9ea\u003c/code\u003e\u003c/a\u003e test: Move config precedence cases into funnel contracts (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14217\"\u003e#14217\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vercel/turborepo/compare/v2.10.2...v2.11.4\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `acorn` from 8.15.0 to 8.18.0\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/d788421b242ddccb28040f1431438ee5cf474208\"\u003e\u003ccode\u003ed788421\u003c/code\u003e\u003c/a\u003e Mark version 8.18.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/b61cb9a4f245c0f7abc8c3ea9f85b5ac8bc5fbce\"\u003e\u003ccode\u003eb61cb9a\u003c/code\u003e\u003c/a\u003e Add startLocation option\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/c8d515c7f9c8baa62bf5ccffba98507b7be46218\"\u003e\u003ccode\u003ec8d515c\u003c/code\u003e\u003c/a\u003e Don't compute curLine when locations are off\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/a7bd3cd15702d28a7c8ef28365b3f04cf00d107c\"\u003e\u003ccode\u003ea7bd3cd\u003c/code\u003e\u003c/a\u003e Reject an unparenthesized arrow function as the left operand of \u003ccode\u003e**\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/b7c31b626e135c4ed130ff5063c44c20ea8e231a\"\u003e\u003ccode\u003eb7c31b6\u003c/code\u003e\u003c/a\u003e Fix mistake in previous patch\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/5c4af50af1536f144f0a4f254c50e5e34c0a2415\"\u003e\u003ccode\u003e5c4af50\u003c/code\u003e\u003c/a\u003e Avoid scanning from start of document in loose parser's resetTo\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/5b9d16c256b81682d2b26246d86387f1d78633e9\"\u003e\u003ccode\u003e5b9d16c\u003c/code\u003e\u003c/a\u003e Mark version 8.17.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/449f9fafb8e8b8fbb218c75da41de2585e7ccfc1\"\u003e\u003ccode\u003e449f9fa\u003c/code\u003e\u003c/a\u003e Make linter happy\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/9e1bced50d3b7c95749ff4682fbbe80b44f97c31\"\u003e\u003ccode\u003e9e1bced\u003c/code\u003e\u003c/a\u003e Add a strict option to turn on strict mode for scripts\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/8a4781267015166036cced10fca2799906222de7\"\u003e\u003ccode\u003e8a47812\u003c/code\u003e\u003c/a\u003e Convert stack overflow errors to SyntaxError instances\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/acornjs/acorn/compare/8.15.0...8.18.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@opentelemetry/api` from 1.9.0 to 1.9.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/releases\"\u003e@​opentelemetry/api's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eapi/v1.9.1\u003c/h2\u003e\n\u003ch2\u003e1.9.1\u003c/h2\u003e\n\u003ch3\u003e:bug: (Bug Fix)\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efix(api): prioritize \u003ccode\u003eesnext\u003c/code\u003e export condition as it is more specific \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/5458\"\u003e#5458\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(api): update diag \u003ccode\u003econsoleLogger\u003c/code\u003e to use original console methods to prevent infinite loop when a console instrumentation is present \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6395\"\u003e#6395\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(api): use \u003ccode\u003eAttributes\u003c/code\u003e instead of deprecated \u003ccode\u003eSpanAttributes\u003c/code\u003e in \u003ccode\u003eSpanOptions\u003c/code\u003e \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6478\"\u003e#6478\u003c/a\u003e \u003ca href=\"https://github.com/overbalance\"\u003e\u003ccode\u003e@​overbalance\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(diag): change types in \u003ccode\u003eDiagComponentLogger\u003c/code\u003e from \u003ccode\u003eany\u003c/code\u003e to \u003ccode\u003eunknown\u003c/code\u003e\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/5478\"\u003e#5478\u003c/a\u003e \u003ca href=\"https://github.com/loganrosen\"\u003e\u003ccode\u003e@​loganrosen\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(api): re-introduce fallback chain for global utils \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6523/\"\u003e#6523\u003c/a\u003e \u003ca href=\"https://github.com/pichlermarc\"\u003e\u003ccode\u003e@​pichlermarc\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e:house: (Internal)\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003erefactor(api): refactor to avoid circular deps by merging observable types into \u003ccode\u003eMetric.ts\u003c/code\u003e \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6441\"\u003e#6441\u003c/a\u003e \u003ca href=\"https://github.com/pichlermarc\"\u003e\u003ccode\u003e@​pichlermarc\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor(api): remove \u0026quot;export *\u0026quot; in favor of explicit named exports \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/4880\"\u003e#4880\u003c/a\u003e \u003ca href=\"https://github.com/robbkidd\"\u003e\u003ccode\u003e@​robbkidd\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: enable tsconfig isolatedModules \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/5697\"\u003e#5697\u003c/a\u003e \u003ca href=\"https://github.com/legendecas\"\u003e\u003ccode\u003e@​legendecas\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: disallow constructor parameter property syntax \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6187\"\u003e#6187\u003c/a\u003e \u003ca href=\"https://github.com/legendecas\"\u003e\u003ccode\u003e@​legendecas\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor(api): remove platform-specific globalThis, use globalThis directly \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6208\"\u003e#6208\u003c/a\u003e \u003ca href=\"https://github.com/overbalance\"\u003e\u003ccode\u003e@​overbalance\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(api): mark ProxyTracerProvider as deprecated \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6328\"\u003e#6328\u003c/a\u003e \u003ca href=\"https://github.com/cjihrig\"\u003e\u003ccode\u003e@​cjihrig\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: enforce \u003ccode\u003eimport type\u003c/code\u003e for type-only imports via ESLint \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6467\"\u003e#6467\u003c/a\u003e \u003ca href=\"https://github.com/overbalance\"\u003e\u003ccode\u003e@​overbalance\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eperf(api): improve isValidSpanId, isValidTraceId performance \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/5714\"\u003e#5714\u003c/a\u003e \u003ca href=\"https://github.com/seemk\"\u003e\u003ccode\u003e@​seemk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/blob/main/CHANGELOG.md\"\u003e@​opentelemetry/api's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.9.1\u003c/h2\u003e\n\u003ch3\u003e:bug: (Bug Fix)\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efix: avoid grpc types dependency \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/3551\"\u003e#3551\u003c/a\u003e \u003ca href=\"https://github.com/flarna\"\u003e\u003ccode\u003e@​flarna\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(otlp-proto-exporter-base): Match Accept header with Content-Type in the proto exporter\n\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/3562\"\u003e#3562\u003c/a\u003e \u003ca href=\"https://github.com/scheler\"\u003e\u003ccode\u003e@​scheler\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: include tracestate in export \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/3569\"\u003e#3569\u003c/a\u003e \u003ca href=\"https://github.com/flarna\"\u003e\u003ccode\u003e@​flarna\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e:house: (Internal)\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003echore: fix cross project links and missing implicitly exported types \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/3533\"\u003e#3533\u003c/a\u003e \u003ca href=\"https://github.com/legendecas\"\u003e\u003ccode\u003e@​legendecas\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(sdk-metrics): add exponential histogram mapping functions \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/3504\"\u003e#3504\u003c/a\u003e \u003ca href=\"https://github.com/mwear\"\u003e\u003ccode\u003e@​mwear\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/279458e7ddf16f7ddca5fe60c78672e05fafce66\"\u003e\u003ccode\u003e279458e\u003c/code\u003e\u003c/a\u003e Release 1.9.1 / 0.35.1 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3573\"\u003e#3573\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/49787433b66a17a1788a20f3a7edda3aa2580890\"\u003e\u003ccode\u003e4978743\u003c/code\u003e\u003c/a\u003e fix(http): remove outgoing headers normalization (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3557\"\u003e#3557\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/d1f9594d0c691a0422c0d56fc8243d84c32324e2\"\u003e\u003ccode\u003ed1f9594\u003c/code\u003e\u003c/a\u003e chore(deps): update dependency rimraf to v4 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3532\"\u003e#3532\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/e0abcc0b3fe49545a7d0a62825e9f9399c178f60\"\u003e\u003ccode\u003ee0abcc0\u003c/code\u003e\u003c/a\u003e fix: remove JSON syntax error and regenerate tsconfig files (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3566\"\u003e#3566\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/a90c558772e049d614f91c8046b60c49f3211de9\"\u003e\u003ccode\u003ea90c558\u003c/code\u003e\u003c/a\u003e fix(sdk-node): register instrumentations early (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3502\"\u003e#3502\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/5b070b80a43f8c29ac1ea87f868b5ba01b11b0a3\"\u003e\u003ccode\u003e5b070b8\u003c/code\u003e\u003c/a\u003e fix: include TraceState in trace exports (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3569\"\u003e#3569\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/dcb09b76d1013c8e8c18fcb7b34e73b876a716f9\"\u003e\u003ccode\u003edcb09b7\u003c/code\u003e\u003c/a\u003e chore(deps): update dependency gh-pages to v5 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3571\"\u003e#3571\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/3bc93a9fa69ad5bcd32966d044781ee7f0eca496\"\u003e\u003ccode\u003e3bc93a9\u003c/code\u003e\u003c/a\u003e feat: exponential histogram - part 1 - mapping functions (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3504\"\u003e#3504\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/3670071468f95ccc73bc2e89fe9d2415803ac3dc\"\u003e\u003ccode\u003e3670071\u003c/code\u003e\u003c/a\u003e fix: avoid grpc types dependency (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3551\"\u003e#3551\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/b5ef0e4625ad7da67bde80dcb4aa451be98e665a\"\u003e\u003ccode\u003eb5ef0e4\u003c/code\u003e\u003c/a\u003e chore: fix proto generation (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3567\"\u003e#3567\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/compare/v1.9.0...v1.9.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​opentelemetry/api\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@opentelemetry/context-async-hooks` from 2.6.1 to 2.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/releases\"\u003e@​opentelemetry/context-async-hooks's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.11.0\u003c/h2\u003e\n\u003ch2\u003e2.11.0\u003c/h2\u003e\n\u003ch3\u003e:rocket: Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efeat(context-async-hooks): implement \u003ccode\u003eattach()\u003c/code\u003e on \u003ccode\u003eAsyncLocalStorageContextManager\u003c/code\u003e \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6845\"\u003e#6845\u003c/a\u003e \u003ca href=\"https://github.com/pichlermarc\"\u003e\u003ccode\u003e@​pichlermarc\u003c/code\u003e\u003c/a\u003e\n\u003cul\u003e\n\u003cli\u003eOn Node.js 25.9+, delegates to \u003ccode\u003eAsyncLocalStorage.withScope()\u003c/code\u003e returning a native \u003ccode\u003eRunScope\u003c/code\u003e. On older Node.js, falls back to \u003ccode\u003eenterWith()\u003c/code\u003e with a manual disposable wrapper.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003efeat(sdk-trace): allow configuring the force flush timeout per call \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6929\"\u003e#6929\u003c/a\u003e \u003ca href=\"https://github.com/LarryHu0217\"\u003e\u003ccode\u003e@​LarryHu0217\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e:bug: Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efix(sdk-metrics): ignore \u003ccode\u003eInfinity\u003c/code\u003e in exponential histograms \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/7015\"\u003e#7015\u003c/...\n\n_Description has been truncated_","html_url":"https://github.com/itv3/zlfcode/pull/12","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/itv3%2Fzlfcode/issues/12","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/12/packages"},{"uuid":"5666681025","node_id":"PR_kwDOChBJFs8AAAABGJapSA","number":1770,"state":"closed","title":"chore(deps): bump glob from 11.1.0 to 13.0.6","user":"dependabot[bot]","labels":["dependencies"],"assignees":[],"locked":false,"comments_count":3,"pull_request":true,"closed_at":"2026-10-01T19:16:36.000Z","author_association":null,"state_reason":null,"created_at":"2026-10-01T17:55:53.000Z","updated_at":"2026-10-01T19:16:45.000Z","time_to_close":4843,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"glob","old_version":"11.1.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"}],"path":null,"ecosystem":"npm"},"body":"Bumps [glob](https://github.com/isaacs/node-glob) from 11.1.0 to 13.0.6.\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-glob/blob/main/changelog.md\"\u003eglob's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003echangeglob\u003c/h1\u003e\n\u003ch2\u003e13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMove the CLI program out to a separate package, \u003ccode\u003eglob-bin\u003c/code\u003e.\nInstall that if you'd like to continue using glob from the\ncommand line.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove the unsafe \u003ccode\u003e--shell\u003c/code\u003e option. The \u003ccode\u003e--shell\u003c/code\u003e option is now\nONLY supported on known shells where the behavior can be\nimplemented safely.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.1\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/isaacs/node-glob/security/advisories/GHSA-5j98-mcp5-4vw2\"\u003eGHSA-5j98-mcp5-4vw2\u003c/a\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--shell\u003c/code\u003e option for the command line, with a warning\nthat this is unsafe. (It will be removed in v12.)\u003c/li\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--cmd-arg\u003c/code\u003e/\u003ccode\u003e-g\u003c/code\u003e as a way to \u003cem\u003esafely\u003c/em\u003e add positional\narguments to the command provided to the CLI tool.\u003c/li\u003e\n\u003cli\u003eDetect commands with space or quote characters on known shells,\nand pass positional arguments to them safely, avoiding\n\u003ccode\u003eshell:true\u003c/code\u003e execution.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node before v20\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eincludeChildMatches: false\u003c/code\u003e option\u003c/li\u003e\n\u003cli\u003eExport the \u003ccode\u003eIgnore\u003c/code\u003e class\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e--default -p\u003c/code\u003e flag to provide a default pattern\u003c/li\u003e\n\u003cli\u003eexclude symbolic links to directories when \u003ccode\u003efollow\u003c/code\u003e and \u003ccode\u003enodir\u003c/code\u003e\nare both set\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd glob cli\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReturn \u003ccode\u003e'.'\u003c/code\u003e instead of the empty string \u003ccode\u003e''\u003c/code\u003e when the current\nworking directory is returned as a match.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eposix: true\u003c/code\u003e option to return \u003ccode\u003e/\u003c/code\u003e delimited paths, even on\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/e80cb38ae60d6cbff9e75f39032a994858994d35\"\u003e\u003ccode\u003ee80cb38\u003c/code\u003e\u003c/a\u003e 13.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/9cdbbfff75c64fb158c8842d4d0eb3e908676a41\"\u003e\u003ccode\u003e9cdbbff\u003c/code\u003e\u003c/a\u003e revert tsgo, not ready for test coverage correctness yet\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/89c99ba8e276438b8e31ce878b63186e2cd375b4\"\u003e\u003ccode\u003e89c99ba\u003c/code\u003e\u003c/a\u003e use tsgo compiler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/b7275d54f294174607f544acf07cc7ec526b7878\"\u003e\u003ccode\u003eb7275d5\u003c/code\u003e\u003c/a\u003e update deps, expand engines to include node 18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/942e360a669e0c378c0abd261e7d329ca2cee661\"\u003e\u003ccode\u003e942e360\u003c/code\u003e\u003c/a\u003e update workflows, pull taprc out of package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/4a0d53c7531f3f0df97f9e4d26c78489e7f6d7ef\"\u003e\u003ccode\u003e4a0d53c\u003c/code\u003e\u003c/a\u003e update tap for mockImport bugfix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/ef94ad2696c12129628208cf4e38575e7240c1c4\"\u003e\u003ccode\u003eef94ad2\u003c/code\u003e\u003c/a\u003e update tap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/180c2d43cb135f134c0c5446408dc107c79a5a9b\"\u003e\u003ccode\u003e180c2d4\u003c/code\u003e\u003c/a\u003e update docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/37993c86faddcb780458b2d7ae3c2ead7a84bf31\"\u003e\u003ccode\u003e37993c8\u003c/code\u003e\u003c/a\u003e remove stray console.error in test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/03ae4c244cac6331817158b0bc12effd30deeb43\"\u003e\u003ccode\u003e03ae4c2\u003c/code\u003e\u003c/a\u003e 13.0.5\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v11.1.0...v13.0.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~isaacs\"\u003eisaacs\u003c/a\u003e, a new releaser for glob since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n","html_url":"https://github.com/JeffreyDavidson/Ringside/pull/1770","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/JeffreyDavidson%2FRingside/issues/1770","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/1770/packages"},{"uuid":"5651790906","node_id":"PR_kwDORNzE7c8AAAABF9eqPA","number":1,"state":"closed","title":"Bump the npm_and_yarn group across 1 directory with 19 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-30T19:20:20.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-30T19:20:01.000Z","updated_at":"2026-09-30T19:20:23.000Z","time_to_close":19,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"npm_and_yarn","update_count":19,"packages":[{"name":"postcss","old_version":"8.5.6","new_version":"8.5.28","repository_url":"https://github.com/postcss/postcss"},{"name":"vite","old_version":"5.4.19","new_version":"8.3.1","repository_url":"https://github.com/vitejs/vite"},{"name":"vitest","old_version":"3.2.4","new_version":"4.1.11","repository_url":"https://github.com/vitest-dev/vitest"},{"name":"postcss-selector-parser","old_version":"6.1.2","new_version":"6.1.4","repository_url":"https://github.com/postcss/postcss-selector-parser"},{"name":"@tootallnate/once","old_version":"2.0.0","new_version":"2.0.1","repository_url":"https://github.com/TooTallNate/once"},{"name":"brace-expansion","old_version":"1.1.12","new_version":"1.1.21","repository_url":"https://github.com/juliangruber/brace-expansion"},{"name":"minimatch","old_version":"3.1.2","new_version":"3.1.5","repository_url":"https://github.com/isaacs/minimatch"},{"name":"picomatch","old_version":"2.3.1","new_version":"2.3.2","repository_url":"https://github.com/micromatch/picomatch"},{"name":"browserslist","old_version":"4.25.1","new_version":"4.29.3","repository_url":"https://github.com/browserslist/browserslist"},{"name":"esbuild","old_version":"0.21.5","new_version":"0.25.0","repository_url":"https://github.com/evanw/esbuild"},{"name":"flatted","old_version":"3.3.1","new_version":"3.4.4","repository_url":"https://github.com/WebReflection/flatted"},{"name":"form-data","old_version":"4.0.5","new_version":"4.0.6","repository_url":"https://github.com/form-data/form-data"},{"name":"glob","old_version":"10.4.5","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"},{"name":"js-yaml","old_version":"4.1.0","new_version":"4.3.2","repository_url":"https://github.com/nodeca/js-yaml"},{"name":"lodash","old_version":"4.17.21","new_version":"4.18.1","repository_url":"https://github.com/lodash/lodash"},{"name":"nanoid","old_version":"3.3.11","new_version":"3.3.19","repository_url":"https://github.com/ai/nanoid"},{"name":"react-router","old_version":"6.30.1","new_version":"7.18.4","repository_url":"https://github.com/remix-run/react-router"},{"name":"ws","old_version":"8.19.0","new_version":"8.22.0","repository_url":"https://github.com/websockets/ws"},{"name":"yaml","old_version":"2.6.0","new_version":"2.9.1","repository_url":"https://github.com/eemeli/yaml"}],"path":null,"ecosystem":"npm"},"body":"Bumps the npm_and_yarn group with 19 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [postcss](https://github.com/postcss/postcss) | `8.5.6` | `8.5.28` |\n| [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) | `5.4.19` | `8.3.1` |\n| [vitest](https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest) | `3.2.4` | `4.1.11` |\n| [postcss-selector-parser](https://github.com/postcss/postcss-selector-parser) | `6.1.2` | `6.1.4` |\n| [@tootallnate/once](https://github.com/TooTallNate/once) | `2.0.0` | `2.0.1` |\n| [brace-expansion](https://github.com/juliangruber/brace-expansion) | `1.1.12` | `1.1.21` |\n| [minimatch](https://github.com/isaacs/minimatch) | `3.1.2` | `3.1.5` |\n| [picomatch](https://github.com/micromatch/picomatch) | `2.3.1` | `2.3.2` |\n| [browserslist](https://github.com/browserslist/browserslist) | `4.25.1` | `4.29.3` |\n| [esbuild](https://github.com/evanw/esbuild) | `0.21.5` | `0.25.0` |\n| [flatted](https://github.com/WebReflection/flatted) | `3.3.1` | `3.4.4` |\n| [form-data](https://github.com/form-data/form-data) | `4.0.5` | `4.0.6` |\n| [glob](https://github.com/isaacs/node-glob) | `10.4.5` | `10.5.0` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `4.1.0` | `4.3.2` |\n| [lodash](https://github.com/lodash/lodash) | `4.17.21` | `4.18.1` |\n| [nanoid](https://github.com/ai/nanoid) | `3.3.11` | `3.3.19` |\n| [react-router](https://github.com/remix-run/react-router/tree/HEAD/packages/react-router) | `6.30.1` | `7.18.4` |\n| [ws](https://github.com/websockets/ws) | `8.19.0` | `8.22.0` |\n| [yaml](https://github.com/eemeli/yaml) | `2.6.0` | `2.9.1` |\n\n\nUpdates `postcss` from 8.5.6 to 8.5.28\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/postcss/releases\"\u003epostcss's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.5.28\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixes types regression.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.27\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed removing any comments starting with \u003ccode\u003e/*#\u003c/code\u003e (by \u003ca href=\"https://github.com/dylanpulver\"\u003e\u003ccode\u003e@​dylanpulver\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003e*\u003c/code\u003e hack before a comment in Custom Properties (by \u003ca href=\"https://github.com/Jaybhade\"\u003e\u003ccode\u003e@​Jaybhade\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed empty values in the middle of \u003ccode\u003elist.comma()\u003c/code\u003e (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed whitespace-only values in \u003ccode\u003elist.space()\u003c/code\u003e (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed rule’s end position on space before semicolon (by \u003ca href=\"https://github.com/maximilliangrand\"\u003e\u003ccode\u003e@​maximilliangrand\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed types (by \u003ca href=\"https://github.com/romainmenke\"\u003e\u003ccode\u003e@​romainmenke\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed Chinese text in deprecation warning (by \u003ca href=\"https://github.com/Jesse205\"\u003e\u003ccode\u003e@​Jesse205\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.26\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003elist.split()\u003c/code\u003e regression (by \u003ca href=\"https://github.com/lazerg\"\u003e\u003ccode\u003e@​lazerg\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eTrack symlinks in path protection in source map loading (by \u003ca href=\"https://github.com/drengir1\"\u003e\u003ccode\u003e@​drengir1\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.25\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed 8.5.17 visitor regression.\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003elist.split()\u003c/code\u003e for non-string values (by \u003ca href=\"https://github.com/amir-rezaei\"\u003e\u003ccode\u003e@​amir-rezaei\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.24\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ePreserve the BOM after the processing (by \u003ca href=\"https://github.com/hdimer\"\u003e\u003ccode\u003e@​hdimer\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.23\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDo not load source map without \u003ccode\u003eopts.from\u003c/code\u003e for security reasons.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.22\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed custom property losing semicolon before a comment (by \u003ca href=\"https://github.com/sarathfrancis90\"\u003e\u003ccode\u003e@​sarathfrancis90\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.21\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed childless at-rule losing semicolon before comment (by \u003ca href=\"https://github.com/sarathfrancis90\"\u003e\u003ccode\u003e@​sarathfrancis90\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed docs (by \u003ca href=\"https://github.com/isker\"\u003e\u003ccode\u003e@​isker\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.20\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed missing space if \u003ccode\u003eAtRule#params\u003c/code\u003e is set after (by \u003ca href=\"https://github.com/sarathfrancis90\"\u003e\u003ccode\u003e@​sarathfrancis90\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed mixing AST error on warnings (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.19\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed cleaning \u003ccode\u003ebefore\u003c/code\u003e for new nodes inserted to \u003ccode\u003eRoot\u003c/code\u003e (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.18\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRestricted loading previous source maps file to the \u003ccode\u003eopts.from\u003c/code\u003e folder for security reasons (use \u003ccode\u003eunsafeMap: true\u003c/code\u003e to disable the check).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.17\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eMaximum call stack size exceeded\u003c/code\u003e error.\u003c/li\u003e\n\u003cli\u003eFixed Prototype hijacking for \u003ccode\u003epostcss.fromJSON()\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003eInput#origin()\u003c/code\u003e for unmapped end position (by \u003ca href=\"https://github.com/chatman-media\"\u003e\u003ccode\u003e@​chatman-media\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.16\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eInput#origin()\u003c/code\u003e position (by \u003ca href=\"https://github.com/mizdra\"\u003e\u003ccode\u003e@​mizdra\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/postcss/blob/main/CHANGELOG.md\"\u003epostcss's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.5.28\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixes types regression.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.27\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed removing any comments starting with \u003ccode\u003e/*#\u003c/code\u003e (by \u003ca href=\"https://github.com/dylanpulver\"\u003e\u003ccode\u003e@​dylanpulver\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003e*\u003c/code\u003e hack before a comment in Custom Properties (by \u003ca href=\"https://github.com/Jaybhade\"\u003e\u003ccode\u003e@​Jaybhade\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed empty values in the middle of \u003ccode\u003elist.comma()\u003c/code\u003e (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed whitespace-only values in \u003ccode\u003elist.space()\u003c/code\u003e (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed rule’s end position on space before semicolon (by \u003ca href=\"https://github.com/maximilliangrand\"\u003e\u003ccode\u003e@​maximilliangrand\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed types (by \u003ca href=\"https://github.com/romainmenke\"\u003e\u003ccode\u003e@​romainmenke\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed Chinese text in deprecation warning (by \u003ca href=\"https://github.com/Jesse205\"\u003e\u003ccode\u003e@​Jesse205\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.26\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003elist.split()\u003c/code\u003e regression (by \u003ca href=\"https://github.com/lazerg\"\u003e\u003ccode\u003e@​lazerg\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eTrack symlinks in path protection in source map loading (by \u003ca href=\"https://github.com/drengir1\"\u003e\u003ccode\u003e@​drengir1\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.25\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed 8.5.17 visitor regression.\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003elist.split()\u003c/code\u003e for non-string values (by \u003ca href=\"https://github.com/amir-rezaei\"\u003e\u003ccode\u003e@​amir-rezaei\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.24\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ePreserve the BOM after the processing (by \u003ca href=\"https://github.com/hdimer\"\u003e\u003ccode\u003e@​hdimer\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.23\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDo not load source map without \u003ccode\u003eopts.from\u003c/code\u003e for security reasons.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.22\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed custom property losing semicolon before a comment (by \u003ca href=\"https://github.com/sarathfrancis90\"\u003e\u003ccode\u003e@​sarathfrancis90\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.21\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed childless at-rule losing semicolon before comment (by \u003ca href=\"https://github.com/sarathfrancis90\"\u003e\u003ccode\u003e@​sarathfrancis90\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed docs (by \u003ca href=\"https://github.com/isker\"\u003e\u003ccode\u003e@​isker\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.20\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed missing space if \u003ccode\u003eAtRule#params\u003c/code\u003e is set after (by \u003ca href=\"https://github.com/sarathfrancis90\"\u003e\u003ccode\u003e@​sarathfrancis90\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed mixing AST error on warnings (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.19\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed cleaning \u003ccode\u003ebefore\u003c/code\u003e for new nodes inserted to \u003ccode\u003eRoot\u003c/code\u003e (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/e544bffc4f4b3966d8ec69c41744b3ed65afc64a\"\u003e\u003ccode\u003ee544bff\u003c/code\u003e\u003c/a\u003e Release 8.5.28 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/f8fc2525717a6a7216659f7be43c525f60c6a15a\"\u003e\u003ccode\u003ef8fc252\u003c/code\u003e\u003c/a\u003e Typo\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/5039fd78962d285abea5d7b3aebef32f053781ce\"\u003e\u003ccode\u003e5039fd7\u003c/code\u003e\u003c/a\u003e Add missed release notes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/ae40ca499cf6a9afdbb264c0ec09e71fe934e2af\"\u003e\u003ccode\u003eae40ca4\u003c/code\u003e\u003c/a\u003e Release 8.5.27 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/62b1626bb7fbb28eda616d002cbd525d239b18ba\"\u003e\u003ccode\u003e62b1626\u003c/code\u003e\u003c/a\u003e Fix linter\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/1dba9384515a2dbc64517697c2f738b6d5c3f9a4\"\u003e\u003ccode\u003e1dba938\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/3e82edc9f037faa41647342dceceba9b841f9881\"\u003e\u003ccode\u003e3e82edc\u003c/code\u003e\u003c/a\u003e Keep non-annotation comments when the processor has no plugins (\u003ca href=\"https://redirect.github.com/postcss/postcss/issues/2150\"\u003e#2150\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/6d23bc362203118478bc8051b81f2910907ebe6e\"\u003e\u003ccode\u003e6d23bc3\u003c/code\u003e\u003c/a\u003e Fix link\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/508e9976be81536292e7666741e1c35e876b9a6a\"\u003e\u003ccode\u003e508e997\u003c/code\u003e\u003c/a\u003e Add GitHub Sponsors link\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/e993739dc49b6055f7dfc59b161d75702f0b2b8b\"\u003e\u003ccode\u003ee993739\u003c/code\u003e\u003c/a\u003e Add CodeRabbit sponsor (\u003ca href=\"https://redirect.github.com/postcss/postcss/issues/2145\"\u003e#2145\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/postcss/postcss/compare/8.5.6...8.5.28\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for postcss since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `vite` from 5.4.19 to 8.3.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vitejs/vite/releases\"\u003evite's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.3.1\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update all non-major dependencies (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23482\"\u003e#23482\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/3c752c8932bc0599465ba4a6d8f44aaf1e934c3d\"\u003e3c752c8\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update all non-major dependencies (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23537\"\u003e#23537\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e8990c4d6101dfaca2654ed8ab4d0574ee920248\"\u003ee8990c4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update rolldown-related dependencies (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23483\"\u003e#23483\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/9aecbbfa5fb5da4b9981c099cb9746a9fd210806\"\u003e9aecbbf\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ehandle \u003ccode\u003eserver.ws: false\u003c/code\u003e in mergeConfig (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23511\"\u003e#23511\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/f68c0d5a28c96555431413e3e2cbe644337b087f\"\u003ef68c0d5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003emerge \u003ccode\u003ebuild.rolldownOptions.output.comments\u003c/code\u003e correctly (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23514\"\u003e#23514\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/4aba8d8720e82e4c5b694a4b7877755a3f84fc57\"\u003e4aba8d8\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eoptimizer:\u003c/strong\u003e don't skip imports whose binding starts with type (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23540\"\u003e#23540\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/39330f489a0ae08923557f0ce10a307d6662a3f5\"\u003e39330f4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eoptimizer:\u003c/strong\u003e resolve pending discovered dep processing on close before init (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23567\"\u003e#23567\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/5f894339d27882fedc86bf6b1076fa6d92e404f3\"\u003e5f89433\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eserver:\u003c/strong\u003e avoid reinitializing watcher when adding file after server close (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23572\"\u003e#23572\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/6f831f9b58ebda77638b514042ad8d160edfb928\"\u003e6f831f9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003esourcemap:\u003c/strong\u003e skip URL source roots when injecting sources content (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23519\"\u003e#23519\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/04fc30a4b91870e65a436b3420620a2e02a94a41\"\u003e04fc30a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eMiscellaneous Chores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003emerge prereleases in changelog (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23466\"\u003e#23466\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/99bd9d1d46153fa939f4a304cc0177db42e28776\"\u003e99bd9d1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eoptimizer:\u003c/strong\u003e add debug log when waiting for dep before init (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23566\"\u003e#23566\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/63567c73ac132e6384fef384e6b9f7e8d5a37fff\"\u003e63567c7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eupdate \u003ccode\u003eoptimizeDeps.include\u003c/code\u003e comment (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23489\"\u003e#23489\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/6a84c72100da4e4be4badb2d9a0026279b4df136\"\u003e6a84c72\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eCode Refactoring\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eassets regexp use non-capture (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23491\"\u003e#23491\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/f4b4431a2f9097fd9bbb7aaebbf1b63c4b54dea1\"\u003ef4b4431\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eremove duplicate configurations (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23532\"\u003e#23532\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/9abd99bfdd3117149d6faf87fc37bc9899b1c998\"\u003e9abd99b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereplace \u003ccode\u003efind\u003c/code\u003e with \u003ccode\u003esome\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23554\"\u003e#23554\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/af7cdf6964f124f58d66037e808fe687654948e2\"\u003eaf7cdf6\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ecreate-vite@8.3.0\u003c/h2\u003e\n\u003cp\u003ePlease refer to \u003ca href=\"https://github.com/vitejs/vite/blob/create-vite@8.3.0/packages/create-vite/CHANGELOG.md\"\u003eCHANGELOG.md\u003c/a\u003e for details.\u003c/p\u003e\n\u003ch2\u003ev8.3.0\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ebuild:\u003c/strong\u003e avoid settling seen preload dependencies for performance (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23446\"\u003e#23446\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e6f6b3e3119256daa837b2dc399058c8aa45b470\"\u003ee6f6b3e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ehandle CRLF line endings in code frame positions (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23219\"\u003e#23219\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/9913672bee9c34a2df7fff4c2538783cd4f43b4e\"\u003e9913672\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eonly treat whole \u003ccode\u003enode_modules\u003c/code\u003e path segments as dependencies (fix \u003ca href=\"https://redirect.github.com/vitejs/vite/issues/17467\"\u003e#17467\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23437\"\u003e#23437\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/ef0dc17ada53d1169ae5a89cb8f6482831466755\"\u003eef0dc17\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003ePerformance Improvements\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eproxy:\u003c/strong\u003e pre-compile context matchers at server creation (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23263\"\u003e#23263\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/8abf700eeb2411d8402d08f8e2696effafdbe774\"\u003e8abf700\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev8.3.0-beta.1\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edevtools:\u003c/strong\u003e enable dev server integration (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23333\"\u003e#23333\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/68aeb8a3b5a5a2ccd505288999bae1a5e6942ee1\"\u003e68aeb8a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ebuild:\u003c/strong\u003e keep hash placeholders as-is in \u003ccode\u003eresolveFileUrl\u003c/code\u003e hook (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23422\"\u003e#23422\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e8d6a4d3399c739772080d70c7f3c4d548a637c9\"\u003ee8d6a4d\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vitejs/vite/blob/main/packages/vite/CHANGELOG.md\"\u003evite's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003c!-- raw HTML omitted --\u003e\u003ca href=\"https://github.com/vitejs/vite/compare/v8.3.0...v8.3.1\"\u003e8.3.1\u003c/a\u003e (2026-09-24)\u003c!-- raw HTML omitted --\u003e\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update all non-major dependencies (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23482\"\u003e#23482\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/3c752c8932bc0599465ba4a6d8f44aaf1e934c3d\"\u003e3c752c8\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update all non-major dependencies (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23537\"\u003e#23537\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e8990c4d6101dfaca2654ed8ab4d0574ee920248\"\u003ee8990c4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update rolldown-related dependencies (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23483\"\u003e#23483\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/9aecbbfa5fb5da4b9981c099cb9746a9fd210806\"\u003e9aecbbf\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ehandle \u003ccode\u003eserver.ws: false\u003c/code\u003e in mergeConfig (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23511\"\u003e#23511\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/f68c0d5a28c96555431413e3e2cbe644337b087f\"\u003ef68c0d5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003emerge \u003ccode\u003ebuild.rolldownOptions.output.comments\u003c/code\u003e correctly (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23514\"\u003e#23514\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/4aba8d8720e82e4c5b694a4b7877755a3f84fc57\"\u003e4aba8d8\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eoptimizer:\u003c/strong\u003e don't skip imports whose binding starts with type (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23540\"\u003e#23540\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/39330f489a0ae08923557f0ce10a307d6662a3f5\"\u003e39330f4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eoptimizer:\u003c/strong\u003e resolve pending discovered dep processing on close before init (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23567\"\u003e#23567\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/5f894339d27882fedc86bf6b1076fa6d92e404f3\"\u003e5f89433\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eserver:\u003c/strong\u003e avoid reinitializing watcher when adding file after server close (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23572\"\u003e#23572\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/6f831f9b58ebda77638b514042ad8d160edfb928\"\u003e6f831f9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003esourcemap:\u003c/strong\u003e skip URL source roots when injecting sources content (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23519\"\u003e#23519\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/04fc30a4b91870e65a436b3420620a2e02a94a41\"\u003e04fc30a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eMiscellaneous Chores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003emerge prereleases in changelog (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23466\"\u003e#23466\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/99bd9d1d46153fa939f4a304cc0177db42e28776\"\u003e99bd9d1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eoptimizer:\u003c/strong\u003e add debug log when waiting for dep before init (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23566\"\u003e#23566\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/63567c73ac132e6384fef384e6b9f7e8d5a37fff\"\u003e63567c7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eupdate \u003ccode\u003eoptimizeDeps.include\u003c/code\u003e comment (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23489\"\u003e#23489\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/6a84c72100da4e4be4badb2d9a0026279b4df136\"\u003e6a84c72\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eCode Refactoring\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eassets regexp use non-capture (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23491\"\u003e#23491\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/f4b4431a2f9097fd9bbb7aaebbf1b63c4b54dea1\"\u003ef4b4431\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eremove duplicate configurations (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23532\"\u003e#23532\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/9abd99bfdd3117149d6faf87fc37bc9899b1c998\"\u003e9abd99b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereplace \u003ccode\u003efind\u003c/code\u003e with \u003ccode\u003esome\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23554\"\u003e#23554\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/af7cdf6964f124f58d66037e808fe687654948e2\"\u003eaf7cdf6\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/vitejs/vite/compare/v8.2.2...v8.3.0\"\u003e8.3.0\u003c/a\u003e (2026-09-10)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ebuild:\u003c/strong\u003e avoid settling seen preload dependencies for performance (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23446\"\u003e#23446\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e6f6b3e3119256daa837b2dc399058c8aa45b470\"\u003ee6f6b3e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edevtools:\u003c/strong\u003e enable dev server integration (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23333\"\u003e#23333\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/68aeb8a3b5a5a2ccd505288999bae1a5e6942ee1\"\u003e68aeb8a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eaccept Rolldown watch options in \u003ccode\u003eserver.watch\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23133\"\u003e#23133\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/1b5cfe3d3777d4ceb7f35fcee9d3c4279316a084\"\u003e1b5cfe3\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eadd closeServer and closePreviewServer hooks (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23110\"\u003e#23110\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e17d2d565b0288f169c7995adb2b192f917548e7\"\u003ee17d2d5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eadd top-level \u003ccode\u003etsconfig\u003c/code\u003e option (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23310\"\u003e#23310\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/93164c3530a7b4fc7bbedfb986d6afa9546cdef3\"\u003e93164c3\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eadd warning for unsupported hooks in plugin returned from \u003ccode\u003eapplyToEnvironment\u003c/code\u003e hook (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23191\"\u003e#23191\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/fdef04f112aadfea40ad3c448d96a49a04c168bd\"\u003efdef04f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecli:\u003c/strong\u003e support naming the CPU profile via --profile [name] (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23042\"\u003e#23042\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/a500deeb6f52d93ca501a0fc612a5392b939f2f5\"\u003ea500dee\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003econfig:\u003c/strong\u003e warn on named imports from JSON modules (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23378\"\u003e#23378\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/472385e6ec4b21e3167c7abf9769883d1c9675f8\"\u003e472385e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecss:\u003c/strong\u003e minify style tag (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23183\"\u003e#23183\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/8156684572bdcf73e9d8568ed67971f0467fab60\"\u003e8156684\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003esearched params attached to workers are now preserved (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/22280\"\u003e#22280\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/517b97f57ab9473e7417da856eb641d76870a56e\"\u003e517b97f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003esupport subpath imports in dynamic import statements (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23185\"\u003e#23185\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/b78e2f1bc1cba404c4bd9faf518d26ec85e89fc7\"\u003eb78e2f1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003euse \u003ccode\u003eimport.meta.ROLLDOWN_FILE_URL_*\u003c/code\u003e for assets in JS (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/22888\"\u003e#22888\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/4366ac468343252df6d5706361a6348afa66f9cc\"\u003e4366ac4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003euse \u003ccode\u003eimport.meta.ROLLDOWN_FILE_URL_*\u003c/code\u003e for other plugins (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/22894\"\u003e#22894\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e38f29ee48bea5ea3178faec5b78708e86f38afb\"\u003ee38f29e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eworker:\u003c/strong\u003e remove worker chunk if it's detected that it's not referenced (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/22473\"\u003e#22473\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/924997a4bdda9115faee9bdb622fcec4fc8357f0\"\u003e924997a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ehandle CRLF line endings in code frame positions (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23219\"\u003e#23219\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/9913672bee9c34a2df7fff4c2538783cd4f43b4e\"\u003e9913672\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eonly treat whole \u003ccode\u003enode_modules\u003c/code\u003e path segments as dependencies (fix \u003ca href=\"https://redirect.github.com/vitejs/vite/issues/17467\"\u003e#17467\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23437\"\u003e#23437\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/ef0dc17ada53d1169ae5a89cb8f6482831466755\"\u003eef0dc17\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ebuild:\u003c/strong\u003e keep hash placeholders as-is in \u003ccode\u003eresolveFileUrl\u003c/code\u003e hook (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23422\"\u003e#23422\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e8d6a4d3399c739772080d70c7f3c4d548a637c9\"\u003ee8d6a4d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ebundled-dev:\u003c/strong\u003e mark payload delivered on client report (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23373\"\u003e#23373\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/a6d43bc9e3464faa4d49f090e75e1ab334ffb7b0\"\u003ea6d43bc\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/39ddf7ccf7e7469ff6a3ba37bca38c32ea804d6e\"\u003e\u003ccode\u003e39ddf7c\u003c/code\u003e\u003c/a\u003e release: v8.3.1 (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23573\"\u003e#23573\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/f68c0d5a28c96555431413e3e2cbe644337b087f\"\u003e\u003ccode\u003ef68c0d5\u003c/code\u003e\u003c/a\u003e fix: handle \u003ccode\u003eserver.ws: false\u003c/code\u003e in mergeConfig (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23511\"\u003e#23511\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/6f831f9b58ebda77638b514042ad8d160edfb928\"\u003e\u003ccode\u003e6f831f9\u003c/code\u003e\u003c/a\u003e fix(server): avoid reinitializing watcher when adding file after server close...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/04fc30a4b91870e65a436b3420620a2e02a94a41\"\u003e\u003ccode\u003e04fc30a\u003c/code\u003e\u003c/a\u003e fix(sourcemap): skip URL source roots when injecting sources content (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23519\"\u003e#23519\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/5f894339d27882fedc86bf6b1076fa6d92e404f3\"\u003e\u003ccode\u003e5f89433\u003c/code\u003e\u003c/a\u003e fix(optimizer): resolve pending discovered dep processing on close before ini...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/63567c73ac132e6384fef384e6b9f7e8d5a37fff\"\u003e\u003ccode\u003e63567c7\u003c/code\u003e\u003c/a\u003e chore(optimizer): add debug log when waiting for dep before init (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23566\"\u003e#23566\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/e8990c4d6101dfaca2654ed8ab4d0574ee920248\"\u003e\u003ccode\u003ee8990c4\u003c/code\u003e\u003c/a\u003e fix(deps): update all non-major dependencies (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23537\"\u003e#23537\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/af7cdf6964f124f58d66037e808fe687654948e2\"\u003e\u003ccode\u003eaf7cdf6\u003c/code\u003e\u003c/a\u003e refactor: replace \u003ccode\u003efind\u003c/code\u003e with \u003ccode\u003esome\u003c/code\u003e (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23554\"\u003e#23554\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/39330f489a0ae08923557f0ce10a307d6662a3f5\"\u003e\u003ccode\u003e39330f4\u003c/code\u003e\u003c/a\u003e fix(optimizer): don't skip imports whose binding starts with type (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23540\"\u003e#23540\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/9abd99bfdd3117149d6faf87fc37bc9899b1c998\"\u003e\u003ccode\u003e9abd99b\u003c/code\u003e\u003c/a\u003e refactor: remove duplicate configurations (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23532\"\u003e#23532\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vitejs/vite/commits/v8.3.1/packages/vite\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for vite since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `vitest` from 3.2.4 to 4.1.11\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vitest-dev/vitest/releases\"\u003evitest's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.1.11\u003c/h2\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eRevive global concurrency limit for test lifecycle [backport to v4]  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e and \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10992\"\u003evitest-dev/vitest#10992\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/5146df80b\"\u003e\u003c!-- raw HTML omitted --\u003e(5146d)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ebrowser\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eEncode iframeId in tester iframe URL [backport to v4]  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003ePduhard\u003c/strong\u003e and \u003cstrong\u003eClaude Opus 4.8\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10955\"\u003evitest-dev/vitest#10955\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/10b2cd201\"\u003e\u003c!-- raw HTML omitted --\u003e(10b2c)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eTrigger playwright/chromium gc on lower disk availability [backport to v4]  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e and \u003cstrong\u003eOpenCode\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10951\"\u003evitest-dev/vitest#10951\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/9851dbc41\"\u003e\u003c!-- raw HTML omitted --\u003e(9851d)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003emocker\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eRestrict redirect mocks to the fs allowlist [backport to v4]  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10974\"\u003evitest-dev/vitest#10974\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/fe5a11d3c\"\u003e\u003c!-- raw HTML omitted --\u003e(fe5a1)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/vitest-dev/vitest/compare/v4.1.10...v4.1.11\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev4.1.10\u003c/h2\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ebrowser\u003c/strong\u003e: Check fs access in builtin commands [backport to v4]  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e and \u003cstrong\u003eOpenCode (claude-opus-4-8)\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10680\"\u003evitest-dev/vitest#10680\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/5c18dd267\"\u003e\u003c!-- raw HTML omitted --\u003e(5c18d)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003evm\u003c/strong\u003e: Fix external module resolve error with deps optimizer query for encoded URI [backport to v4]  -  by \u003ca href=\"https://github.com/SveLil\"\u003e\u003ccode\u003e@​SveLil\u003c/code\u003e\u003c/a\u003e and \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10661\"\u003evitest-dev/vitest#10661\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/bae52b511\"\u003e\u003c!-- raw HTML omitted --\u003e(bae52)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/vitest-dev/vitest/compare/v4.1.9...v4.1.10\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev4.1.9\u003c/h2\u003e\n\u003ch3\u003e🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eimportOriginal\u003c/code\u003e with optimizer and query import [backport to v4] - by \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e, \u003cstrong\u003eDavid Harris\u003c/strong\u003e, \u003cstrong\u003eCodex\u003c/strong\u003eand \u003cstrong\u003eVladimir\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10546\"\u003evitest-dev/vitest#10546\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/a5180190c\"\u003e\u003c!-- raw HTML omitted --\u003e(a5180)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ebrowser\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eWait for orchestrator readiness before resolving browser sessions [backport to v4] - by \u003cstrong\u003eVladimir\u003c/strong\u003e and \u003cstrong\u003eSéamus O'Connor\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10555\"\u003evitest-dev/vitest#10555\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/7fb29651a\"\u003e\u003c!-- raw HTML omitted --\u003e(7fb29)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWait for iframe tester readiness before preparing  [backport to v4] - by \u003cstrong\u003eVladimir\u003c/strong\u003e and \u003cstrong\u003eSéamus O'Connor\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10497\"\u003evitest-dev/vitest#10497\u003c/a\u003e and \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10556\"\u003evitest-dev/vitest#10556\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/fbc626c40\"\u003e\u003c!-- raw HTML omitted --\u003e(fbc62)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003emocker\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eHoist vi.mock() for vite-plus/test imports [backport to v4] - by \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e, \u003cstrong\u003eLongYinan\u003c/strong\u003e, \u003cstrong\u003eClaude Opus 4.8\u003c/strong\u003e and \u003cstrong\u003eVladimir\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10548\"\u003evitest-dev/vitest#10548\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/2c9559c02\"\u003e\u003c!-- raw HTML omitted --\u003e(2c955)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003epool\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003ePrevent test run hang on worker crash  [backport to v4] - by \u003cstrong\u003eAri Perkkiö\u003c/strong\u003e and \u003cstrong\u003eJattioui Ismail\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10543\"\u003evitest-dev/vitest#10543\u003c/a\u003e and \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10564\"\u003evitest-dev/vitest#10564\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/934b0f587\"\u003e\u003c!-- raw HTML omitted --\u003e(934b0)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/compare/v4.1.8...v4.1.9\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev4.1.8\u003c/h2\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ebrowser\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eDisable client \u003ccode\u003ecdp\u003c/code\u003e API when \u003ccode\u003eallowWrite/allowExec: false\u003c/code\u003e [backport to v4]  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e and \u003cstrong\u003eCodex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10450\"\u003evitest-dev/vitest#10450\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/e4067b3b1\"\u003e\u003c!-- raw HTML omitted --\u003e(e4067)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove orphaned Playwright route when same module is mocked via multiple ids [backport to v4]  -  by \u003ca href=\"https://github.com/toxik\"\u003e\u003ccode\u003e@​toxik\u003c/code\u003e\u003c/a\u003e and \u003ca href=\"https://github.com/Zelys-DFKH\"\u003e\u003ccode\u003e@​Zelys-DFKH\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10474\"\u003evitest-dev/vitest#10474\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/675b4343f\"\u003e\u003c!-- raw HTML omitted --\u003e(675b4)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/vitest-dev/vitest/compare/v4.1.7...v4.1.8\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev4.1.7\u003c/h2\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003erunner\u003c/strong\u003e: Limit concurrency per task branch in addition to per leaf callbacks (backport)  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10384\"\u003evitest-dev/vitest#10384\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/4f0f2a1ee\"\u003e\u003c!-- raw HTML omitted --\u003e(4f0f2)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/vitest-dev/vitest/compare/v4.1.6...v4.1.7\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/9bd8d464e6328c567c2dbcd8fdd977d57a9425c2\"\u003e\u003ccode\u003e9bd8d46\u003c/code\u003e\u003c/a\u003e chore: release v4.1.11 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest/issues/10995\"\u003e#10995\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/9851dbc41c286a30abfb6b29cce65f3e5b7b40a1\"\u003e\u003ccode\u003e9851dbc\u003c/code\u003e\u003c/a\u003e fix(browser): trigger playwright/chromium gc on lower disk availability [back...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/db616d227b6e0cb07a94f5d1bba262ee95db7e46\"\u003e\u003ccode\u003edb616d2\u003c/code\u003e\u003c/a\u003e chore: release v4.1.10 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest/issues/10718\"\u003e#10718\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/bae52b5112a6fd8200101b88bf8af9685d077295\"\u003e\u003ccode\u003ebae52b5\u003c/code\u003e\u003c/a\u003e fix(vm): fix external module resolve error with deps optimizer query for enco...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/a7a61e78c7d0718f00173cff6800a91a344457d4\"\u003e\u003ccode\u003ea7a61e7\u003c/code\u003e\u003c/a\u003e chore: release v4.1.9 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest/issues/10598\"\u003e#10598\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/934b0f587cb61d8338d83f525295322692a2db40\"\u003e\u003ccode\u003e934b0f5\u003c/code\u003e\u003c/a\u003e fix(pool): prevent test run hang on worker crash (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest/issues/10543\"\u003e#10543\u003c/a\u003e) [backport to v4] (#...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/7fb29651afbae2a9b0cefe6c031a9308f168ac60\"\u003e\u003ccode\u003e7fb2965\u003c/code\u003e\u003c/a\u003e fix(browser): wait for orchestrator readiness before resolving browser sessio...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/a5180190c1be7089e3705e3dd9e84fea118d09d3\"\u003e\u003ccode\u003ea518019\u003c/code\u003e\u003c/a\u003e fix: fix \u003ccode\u003eimportOriginal\u003c/code\u003e with optimizer and query import [backport to v4] (#...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/e61f2dd2a0ba0a266c1c5e0334aad3799fee527f\"\u003e\u003ccode\u003ee61f2dd\u003c/code\u003e\u003c/a\u003e chore: release v4.1.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/e4067b3b150005fd42cf75f994300119245806b9\"\u003e\u003ccode\u003ee4067b3\u003c/code\u003e\u003c/a\u003e fix(browser): disable client \u003ccode\u003ecdp\u003c/code\u003e API when \u003ccode\u003eallowWrite/allowExec: false\u003c/code\u003e [ba...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vitest-dev/vitest/commits/v4.1.11/packages/vitest\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for vitest since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `postcss-selector-parser` from 6.1.2 to 6.1.4\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/postcss-selector-parser/releases\"\u003epostcss-selector-parser's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e6.1.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: tolerate non-node children when serializing selectors\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e6.1.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://github.com/advisories/GHSA-w9m9-85wc-3x92\"\u003eCVE-2026-9358\u003c/a\u003e (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 via backport of (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/316\"\u003e#316\u003c/a\u003e by \u003ca href=\"https://github.com/MoOx\"\u003e\u003ccode\u003e@​MoOx\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/postcss-selector-parser/blob/main/CHANGELOG.md\"\u003epostcss-selector-parser's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChangelog of \u003ccode\u003epostcss-selector-parser\u003c/code\u003e\u003c/h1\u003e\n\u003ch2\u003e7.1.6 - 2026-09-03\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: parse flat selectors in linear time, closing a CPU exhaustion vulnerability (\u003ca href=\"https://github.com/advisories/GHSA-rj75-hqrm-r3gf\"\u003eGHSA-rj75-hqrm-r3gf\u003c/a\u003e, reported by Wayde Shi)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.5 - 2026-08-07\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: don't treat a non-prefix token before \u003ccode\u003e|\u003c/code\u003e as a namespace (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/324\"\u003e#324\u003c/a\u003e by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: preserve whitespace before a \u003ccode\u003e*\u003c/code\u003e namespace in attribute selectors (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/325\"\u003e#325\u003c/a\u003e by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: TypeError on unclosed \u003ccode\u003e[\u003c/code\u003e, \u003ccode\u003e(\u003c/code\u003e and trailing \u003ccode\u003e|\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/330\"\u003e#330\u003c/a\u003e by \u003ca href=\"https://github.com/theRizwan\"\u003e\u003ccode\u003e@​theRizwan\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.4 - 2026-06-11\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: tolerate non-node children when serializing selectors\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.3 - 2026-06-11\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImprove fix CVE-2026-9358 (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 (clone/walk)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.2 - 2026-06-09\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://github.com/advisories/GHSA-w9m9-85wc-3x92\"\u003eCVE-2026-9358\u003c/a\u003e (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/316\"\u003e#316\u003c/a\u003e by \u003ca href=\"https://github.com/MoOx\"\u003e\u003ccode\u003e@​MoOx\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eperf: replace startsWith with strict equality (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/308\"\u003e#308\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(types): add walkUniversal declaration (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/311\"\u003e#311\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: insert(Before|After) support multiple new node\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFeat: make insertions during iteration safe (major)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/4a7e4e3685db8ab8e52e51ecdbe8162a8568f70c\"\u003e\u003ccode\u003e4a7e4e3\u003c/code\u003e\u003c/a\u003e 7.1.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/e2021c523d5ef1bf27836aef3bd724a28ba7894f\"\u003e\u003ccode\u003ee2021c5\u003c/code\u003e\u003c/a\u003e fix: tolerate non-node children when serializing selectors\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/7893b741fa87d0401e39c3a7f00d89cf7408ad32\"\u003e\u003ccode\u003e7893b74\u003c/code\u003e\u003c/a\u003e 7.1.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/5bc698cef66f8abd12610dc623e5d67cbc0f869d\"\u003e\u003ccode\u003e5bc698c\u003c/code\u003e\u003c/a\u003e Improve fix CVE-2026-9358 (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 (clo...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/db3232710d7270b34e50b4ffae493ac19204f570\"\u003e\u003ccode\u003edb32327\u003c/code\u003e\u003c/a\u003e run oxfmt\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/16e2581b40894504cf2b979fc0ebf7d0b2f39366\"\u003e\u003ccode\u003e16e2581\u003c/code\u003e\u003c/a\u003e simplify deps (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/319\"\u003e#319\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/b185e2057871669f9c571ad82e4350799e0a2329\"\u003e\u003ccode\u003eb185e20\u003c/code\u003e\u003c/a\u003e Add description in package.json + full repo url\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/de415f19aac008f0e731590222f3a963193be05c\"\u003e\u003ccode\u003ede415f1\u003c/code\u003e\u003c/a\u003e Add Tidelift security notice\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/c4f2c8c04a8107e4e401f257ef00592b59633774\"\u003e\u003ccode\u003ec4f2c8c\u003c/code\u003e\u003c/a\u003e CI: make Node 14 test job lockfile-v3 compatible (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/318\"\u003e#318\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/4e93663bfe861f9fc3173db603c8fadb70f8090a\"\u003e\u003ccode\u003e4e93663\u003c/code\u003e\u003c/a\u003e Fix test run on node \u0026lt; 20\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/postcss/postcss-selector-parser/compare/v6.1.2...6.1.4\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~moox\"\u003emoox\u003c/a\u003e, a new releaser for postcss-selector-parser since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@tootallnate/once` from 2.0.0 to 2.0.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/TooTallNate/once/releases\"\u003e@​tootallnate/once's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.0.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ea1e5e2d: Fix promise hang when AbortSignal is aborted\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/TooTallNate/once/blob/v2.0.1/CHANGELOG.md\"\u003e@​tootallnate/once's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.0.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ea1e5e2d: Fix promise hang when AbortSignal is aborted\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/TooTallNate/once/commit/bcbb21d387e5fb2d0bf8ec2fd8d0ac97d4553241\"\u003e\u003ccode\u003ebcbb21d\u003c/code\u003e\u003c/a\u003e ci: fix OIDC publishing — Node 24, npm latest, provenance\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/TooTallNate/once/commit/dc24387be8e3405f1e7c911caf76c87b72a0e145\"\u003e\u003ccode\u003edc24387\u003c/code\u003e\u003c/a\u003e Version Packages (2.x) (\u003ca href=\"https://redirect.github.com/TooTallNate/once/issues/12\"\u003e#12\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/TooTallNate/once/commit/b8a6f80afcfd2482b4bdb1e29d784340a05e0ce3\"\u003e\u003ccode\u003eb8a6f80\u003c/code\u003e\u003c/a\u003e CI: test all Node versions on Linux only\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/TooTallNate/once/commit/dabcc0fb6202663cd83994f0a21ea1c710395327\"\u003e\u003ccode\u003edabcc0f\u003c/code\u003e\u003c/a\u003e ci: drop EOL Node.js 14.x/16.x, add 22.x\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/TooTallNate/once/commit/b464efcf4238d92590245b4d211d2fc05a94d28a\"\u003e\u003ccode\u003eb464efc\u003c/code\u003e\u003c/a\u003e Update CI: modern Node versions, fix macOS ARM64 compat\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/TooTallNate/once/commit/a1e5e2d784bcd1c65e49fac1524c6c94fe81f871\"\u003e\u003ccode\u003ea1e5e2d\u003c/code\u003e\u003c/a\u003e Fix promise hang when AbortSignal is aborted\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/TooTallNate/once/compare/2.0.0...v2.0.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​tootallnate/once\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `brace-expansion` from 1.1.12 to 1.1.21\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/juliangruber/brace-expansion/releases\"\u003ebrace-expansion's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.1.15\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBackport v5.0.6 change to v1 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/111\"\u003e#111\u003c/a\u003e)  0b09384\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v1.1.14...v1.1.15\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v1.1.14...v1.1.15\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/8e81e187b6e9c6c723d16c042657c00acefc2483\"\u003e\u003ccode\u003e8e81e18\u003c/code\u003e\u003c/a\u003e 1.1.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/ffdfa3e3806bed17c0874b8f1439b084de354a7e\"\u003e\u003ccode\u003effdfa3e\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/c6513ad31e08edb56dc414a629e39cba724b7548\"\u003e\u003ccode\u003ec6513ad\u003c/code\u003e\u003c/a\u003e 1.1.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1efee7c397c191da6287a78ec19512476a966a7b\"\u003e\u003ccode\u003e1efee7c\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/a34340a053abb475cc226aeb3f71887018e71bd0\"\u003e\u003ccode\u003ea34340a\u003c/code\u003e\u003c/a\u003e 1.1.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/0bcbfc0a5928c3073d48f42999d1ce4fc1c42fbc\"\u003e\u003ccode\u003e0bcbfc0\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/758fcd6d188a95c2342818519c77b8c06794552b\"\u003e\u003ccode\u003e758fcd6\u003c/code\u003e\u003c/a\u003e 1.1.18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/27fbeed22b4fdf2c5f732f66bcf84d43f4a26c6e\"\u003e\u003ccode\u003e27fbeed\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/5c57cc2519dfb067e188b7cb0733fffbd02946bf\"\u003e\u003ccode\u003e5c57cc2\u003c/code\u003e\u003c/a\u003e 1.1.17\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/d757f1dde7808bcbcd7a4628ab913e5185ed3d57\"\u003e\u003ccode\u003ed757f1d\u003c/code\u003e\u003c/a\u003e npm ignore \u003ccode\u003e.claude\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v1.1.12...v1.1.21\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `minimatch` from 3.1.2 to 3.1.5\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/7bba97888a27a6162983056bcce2a6e28f668712\"\u003e\u003ccode\u003e7bba978\u003c/code\u003e\u003c/a\u003e 3.1.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/bd259425b2ca17b42897997f93e890314155522d\"\u003e\u003ccode\u003ebd25942\u003c/code\u003e\u003c/a\u003e docs: add warning about ReDoS\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/1a9c27c75725474dbde57db2995b6281b267756d\"\u003e\u003ccode\u003e1a9c27c\u003c/code\u003e\u003c/a\u003e fix partial matching of globstar patterns\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/1a2e084af579731af66c221214e3ca8222c9bf23\"\u003e\u003ccode\u003e1a2e084\u003c/code\u003e\u003c/a\u003e 3.1.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/ae24656237c3d58067442f790ce17eff84463a47\"\u003e\u003ccode\u003eae24656\u003c/code\u003e\u003c/a\u003e update lockfile\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/b1003749228b2a79e1f237963a0d559ef7a0941e\"\u003e\u003ccode\u003eb100374\u003c/code\u003e\u003c/a\u003e limit recursion for **, improve perf considerably\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/26ffeaa091b9f660833e23f42e07165b33e85c13\"\u003e\u003ccode\u003e26ffeaa\u003c/code\u003e\u003c/a\u003e lockfile update\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/9eca892a4e5dbb20534f9f30483b85cdeee6c2eb\"\u003e\u003ccode\u003e9eca892\u003c/code\u003e\u003c/a\u003e lock node version to 14\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/00c323b188b704e5d4bc534ecec2268cfa70a32a\"\u003e\u003ccode\u003e00c323b\u003c/code\u003e\u003c/a\u003e 3.1.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/30486b2048929264f44d18822891cfffa02af78b\"\u003e\u003ccode\u003e30486b2\u003c/code\u003e\u003c/a\u003e update CI matrix and actions\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/minimatch/compare/v3.1.2...v3.1.5\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `picomatch` from 2.3.1 to 2.3.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/releases\"\u003epicomatch's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.3.2\u003c/h2\u003e\n\u003cp\u003eThis is a security release fixing several security relevant issues.\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: exception when glob pattern contains constructor by \u003ca href=\"https://github.com/Jason3S\"\u003e\u003ccode\u003e@​Jason3S\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003emicromatch/picomatch#144\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\"\u003ehttps://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/blob/master/CHANGELOG.md\"\u003epicomatch's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.3.2 (2026-03-23)\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAvoided an exception when a glob pattern contains \u003ccode\u003econstructor\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003e#144\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/3f4f10e\"\u003e3f4f10e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBackported the extglob-quantifier ReDoS fix from 4.0.4. Risky repeated extglobs are now safely rewritten or treated as literals by default; positive numeric \u003ccode\u003emaxExtglobRecursion\u003c/code\u003e values allow limited nesting, while \u003ccode\u003efalse\u003c/code\u003e disables the safeguard (\u003ca href=\"https://github.com/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/eec17ae\"\u003eeec17ae\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003ePrevented inherited object properties from being interpreted as POSIX character classes (\u003ca href=\"https://github.com/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/fc1f6b6\"\u003efc1f6b6\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/81cba8d4b767cab3cb29d26eb4f691eed75b73b2\"\u003e\u003ccode\u003e81cba8d\u003c/code\u003e\u003c/a\u003e Publish 2.3.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/fc1f6b69006e9435caf8fb40d8aff378bc0b7bce\"\u003e\u003ccode\u003efc1f6b6\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/eec17aee5428a7249e9ca5adbb8a0d28fa29619b\"\u003e\u003ccode\u003eeec17ae\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/78f8ca4362d9e66cadea97b93e292f10096452ed\"\u003e\u003ccode\u003e78f8ca4\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/156\"\u003e#156\u003c/a\u003e from micromatch/backport-144\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/3f4f10eaa65bf3a52e8f2999674cd27e11fa3c9b\"\u003e\u003ccode\u003e3f4f10e\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/144\"\u003e#144\u003c/a\u003e from Jason3S/jdent-object-properties\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `browserslist` from 4.25.1 to 4.29.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/browserslist/browserslist/releases\"\u003ebrowserslist's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.29.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated Firefox ESR.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.29.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed ignoring \u003ccode\u003enull\u003c/code\u003e usage in \u003ccode\u003ecover X in Y\u003c/code\u003e query (by \u003ca href=\"https://github.com/wahidrizka\"\u003e\u003ccode\u003e@​wahidrizka\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.29.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed config name loading protection on Windows (by \u003ca href=\"https://github.com/oss-security-shop\"\u003e\u003ccode\u003e@​oss-security-shop\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed case-insensitive negation queries (by \u003ca href=\"https://github.com/jakezwang\"\u003e\u003ccode\u003e@​jakezwang\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed percentage and supports queries case-insensitive (by \u003ca href=\"https://github.com/wahidrizka\"\u003e\u003ccode\u003e@​wahidrizka\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed old Node.js tests (by \u003ca href=\"https://github.com/aaron-belenky\"\u003e\u003ccode\u003e@​aaron-belenky\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eReduced code (by \u003ca href=\"https://github.com/charmander\"\u003e\u003ccode\u003e@​charmander\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.29.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded query continuations across lines and array entries (by \u003ca href=\"https://github.com/fzlzjerry\"\u003e\u003ccode\u003e@​fzlzjerry\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.9\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImprove \u003ccode\u003eor\u003c/code\u003e parsing performance (by \u003ca href=\"https://github.com/NotAFlightRisk\"\u003e\u003ccode\u003e@​NotAFlightRisk\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eincluding kaios\u003c/code\u003e in baseline queries (by \u003ca href=\"https://github.com/Jaybhade\"\u003e\u003ccode\u003e@​Jaybhade\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.7\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImproved parsing performance.\u003c/li\u003e\n\u003cli\u003eFixed unbounded memory growth (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed prototype write issue (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed Electron version queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003e\u0026gt;\u003c/code\u003e and \u003ccode\u003e\u0026gt;=\u003c/code\u003e queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eSyntaxError\u003c/code\u003e regression of 4.28.3.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed baseline query case-insensitivity (by \u003ca href=\"https://github.com/swwind\"\u003e\u003ccode\u003e@​swwind\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix prototype pollution (by \u003ca href=\"https://github.com/chluo1997\"\u003e\u003ccode\u003e@​chluo1997\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemoved Baseline warning since we have it own warning.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.27.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003eBROWSERSLIST_TRACE_WARNING\u003c/code\u003e environment variable.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.26.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003ethrowOnMissing\u003c/code\u003e with \u003ccode\u003eextends\u003c/code\u003e query (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/browserslist/browserslist/blob/main/CHANGELOG.md\"\u003ebrowserslist's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.29.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated Firefox ESR.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.29.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed ignoring \u003ccode\u003enull\u003c/code\u003e usage in \u003ccode\u003ecover X in Y\u003c/code\u003e query (by \u003ca href=\"https://github.com/wahidrizka\"\u003e\u003ccode\u003e@​wahidrizka\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.29.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed config name loading protection on Windows (by \u003ca href=\"https://github.com/oss-security-shop\"\u003e\u003ccode\u003e@​oss-security-shop\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed case-insensitive negation queries (by \u003ca href=\"https://github.com/jakezwang\"\u003e\u003ccode\u003e@​jakezwang\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed percentage and supports queries case-insensitive (by \u003ca href=\"https://github.com/wahidrizka\"\u003e\u003ccode\u003e@​wahidrizka\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed old Node.js tests (by \u003ca href=\"https://github.com/aaron-belenky\"\u003e\u003ccode\u003e@​aaron-belenky\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eReduced code (by \u003ca href=\"https://github.com/charmander\"\u003e\u003ccode\u003e@​charmander\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.29.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded query continuations across lines and array entries (by \u003ca href=\"https://github.com/fzlzjerry\"\u003e\u003ccode\u003e@​fzlzjerry\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.9\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImproved \u003ccode\u003eor\u003c/code\u003e parsing performance (by \u003ca href=\"https://github.com/NotAFlightRisk\"\u003e\u003ccode\u003e@​NotAFlightRisk\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eincluding kaios\u003c/code\u003e in baseline queries (by \u003ca href=\"https://github.com/Jaybhade\"\u003e\u003ccode\u003e@​Jaybhade\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.7\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImproved parsing performance.\u003c/li\u003e\n\u003cli\u003eFixed unbounded memory growth (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed prototype write issue (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed Electron version queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003e\u0026gt;\u003c/code\u003e and \u003ccode\u003e\u0026gt;=\u003c/code\u003e queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eSyntaxError\u003c/code\u003e regression of 4.28.3.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed baseline query case-insensitivity (by \u003ca href=\"https://github.com/swwind\"\u003e\u003ccode\u003e@​swwind\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/b4809dd2a2a11fbff492258f968130e9b470067f\"\u003e\u003ccode\u003eb4809dd\u003c/code\u003e\u003c/a\u003e Release 4.29.3 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/9d844f8d09c872e2f22e07daa8566fb53585c190\"\u003e\u003ccode\u003e9d844f8\u003c/code\u003e\u003c/a\u003e Update Firefox ESR\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/0033f344c3be446c935f9e515a366738fc0942a5\"\u003e\u003ccode\u003e0033f34\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/906d329968d968479474aab97ae2ab712bf18b5f\"\u003e\u003ccode\u003e906d329\u003c/code\u003e\u003c/a\u003e Release 4.29.2 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/ff8c83f72dd22e3331e89404487a19ec4ea6d5fc\"\u003e\u003ccode\u003eff8c83f\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/067f4a1fa37047e8a53b369cb1fd837399f5d5d5\"\u003e\u003ccode\u003e067f4a1\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/browserslist/browserslist/issues/952\"\u003e#952\u003c/a\u003e from wahidrizka/fix-cover-null-usage\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/f760921db5e420bd8c10e31d0278ab16fdbb9a2d\"\u003e\u003ccode\u003ef760921\u003c/code\u003e\u003c/a\u003e Do not add versions without usage data to cover queries\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/5be63f54fc37cef2db22930bdabfafcb22b6fd46\"\u003e\u003ccode\u003e5be63f5\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/browserslist/browserslist/issues/953\"\u003e#953\u003c/a\u003e from wahidrizka/docs-android-latest-version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/1e5356f16429cb8a30dfa5415c7d0beddff8548f\"\u003e\u003ccode\u003e1e5356f\u003c/code\u003e\u003c/a\u003e Note that Android version queries return only the latest version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/5b7e94169750cedd9e63fdb8d2419542d3aa185f\"\u003e\u003ccode\u003e5b7e941\u003c/code\u003e\u003c/a\u003e Add missed changes to ChangeLog\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/browserslist/browserslist/compare/4.25.1...4.29.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for browserslist since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `esbuild` from 0.21.5 to 0.25.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/evanw/esbuild/releases\"\u003eesbuild's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev0.25.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eThis release deliberately contains backwards-incompatible changes.\u003c/strong\u003e To avoid automatically picking up releases like this, you should either be pinning the exact version of \u003ccode\u003eesbuild\u003c/code\u003e in your \u003ccode\u003epackage.json\u003c/code\u003e file (recommended) or be using a version range syntax that only accepts patch upgrades such as \u003ccode\u003e^0.24.0\u003c/code\u003e or \u003ccode\u003e~0.24.0\u003c/code\u003e. See npm's documentation about \u003ca href=\"https://docs.npmjs.com/cli/v6/using-npm/semver/\"\u003esemver\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eRestrict access to esbuild's development server (\u003ca href=\"https://github.com/evanw/esbuild/security/advisories/GHSA-67mh-4wv8-2f99\"\u003eGHSA-67mh-4wv8-2f99\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eThis change addresses esbuild's first security vulnerability report. Previously esbuild set the \u003ccode\u003eAccess-Control-Allow-Origin\u003c/code\u003e header to \u003ccode\u003e*\u003c/code\u003e to allow esbuild's development server to be flexible in how it's used for development. However, this allows the websites you visit to make HTTP requests to esbuild's local development server, which gives read-only access to your source code if the website were to fetch your source code's specific URL. You can read more information in \u003ca href=\"https://github.com/evanw/esbuild/security/advisories/GHSA-67mh-4wv8-2f99\"\u003ethe report\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003eStarting with this release, \u003ca href=\"https://developer.mozilla.org/en-US/docs/Web/HTTP/CORS\"\u003eCORS\u003c/a\u003e will now be disabled, and requests will now be denied if the host does not match the one provided to \u003ccode\u003e--serve=\u003c/code\u003e. The default host is \u003ccode\u003e0.0.0.0\u003c/code\u003e, which refers to all of the IP addresses that represent the local machine (e.g. both \u003ccode\u003e127.0.0.1\u003c/code\u003e and \u003ccode\u003e192.168.0.1\u003c/code\u003e). If you want to customize anything about esbuild's development server, you can \u003ca href=\"https://esbuild.github.io/api/#serve-proxy\"\u003eput a proxy in front of esbuild\u003c/a\u003e and modify the incoming and/or outgoing requests.\u003c/p\u003e\n\u003cp\u003eIn addition, the \u003ccode\u003eserve()\u003c/code\u003e API call has been changed to return an array of \u003ccode\u003ehosts\u003c/code\u003e instead of a single \u003ccode\u003ehost\u003c/code\u003e string. This makes it possible to determine all of the hosts that esbuild's development server will accept.\u003c/p\u003e\n\u003cp\u003eThanks to \u003ca href=\"https://github.com/sapphi-red\"\u003e\u003ccode\u003e@​sapphi-red\u003c/code\u003e\u003c/a\u003e for reporting this issue.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDelete output files when a build fails in watch mode (\u003ca href=\"https://redirect.github.com/evanw/esbuild/issues/3643\"\u003e#3643\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eIt has been requested for esbuild to delete files when a build fails in watch mode. Previously esbuild left the old files in place, which could cause people to not immediately realize that the most recent build failed. With this release, esbuild will now delete all output files if a rebuild fails. Fixing the build error and triggering another rebuild will restore all output files again.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eFix correctness issues with the CSS nesting transform (\u003ca href=\"https://redirect.github.com/evanw/esbuild/issues/3620\"\u003e#3620\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/evanw/esbuild/issues/3877\"\u003e#3877\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/evanw/esbuild/issues/3933\"\u003e#3933\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/evanw/esbuild/issues/3997\"\u003e#3997\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/evanw/esbuild/issues/4005\"\u003e#4005\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/evanw/esbuild/pull/4037\"\u003e#4037\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/evanw/esbuild/pull/4038\"\u003e#4038\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eThis release fixes the following problems:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eNaive expansion of CSS nesting can result in an exponential blow-up...\n\n_Description has been truncated_","html_url":"https://github.com/Rikufeim/crypto-live-tracker/pull/1","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/Rikufeim%2Fcrypto-live-tracker/issues/1","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/1/packages"},{"uuid":"5650980711","node_id":"PR_kwDOEq5pls8AAAABF805Sg","number":2556,"state":"open","title":"chore(deps): Bump glob from 11.1.0 to 13.0.6","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-30T18:13:56.000Z","updated_at":"2026-09-30T18:19:14.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): Bump","packages":[{"name":"glob","old_version":"11.1.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"}],"path":null,"ecosystem":"npm"},"body":"Bumps [glob](https://github.com/isaacs/node-glob) from 11.1.0 to 13.0.6.\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-glob/blob/main/changelog.md\"\u003eglob's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003echangeglob\u003c/h1\u003e\n\u003ch2\u003e13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMove the CLI program out to a separate package, \u003ccode\u003eglob-bin\u003c/code\u003e.\nInstall that if you'd like to continue using glob from the\ncommand line.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove the unsafe \u003ccode\u003e--shell\u003c/code\u003e option. The \u003ccode\u003e--shell\u003c/code\u003e option is now\nONLY supported on known shells where the behavior can be\nimplemented safely.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.1\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/isaacs/node-glob/security/advisories/GHSA-5j98-mcp5-4vw2\"\u003eGHSA-5j98-mcp5-4vw2\u003c/a\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--shell\u003c/code\u003e option for the command line, with a warning\nthat this is unsafe. (It will be removed in v12.)\u003c/li\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--cmd-arg\u003c/code\u003e/\u003ccode\u003e-g\u003c/code\u003e as a way to \u003cem\u003esafely\u003c/em\u003e add positional\narguments to the command provided to the CLI tool.\u003c/li\u003e\n\u003cli\u003eDetect commands with space or quote characters on known shells,\nand pass positional arguments to them safely, avoiding\n\u003ccode\u003eshell:true\u003c/code\u003e execution.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node before v20\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eincludeChildMatches: false\u003c/code\u003e option\u003c/li\u003e\n\u003cli\u003eExport the \u003ccode\u003eIgnore\u003c/code\u003e class\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e--default -p\u003c/code\u003e flag to provide a default pattern\u003c/li\u003e\n\u003cli\u003eexclude symbolic links to directories when \u003ccode\u003efollow\u003c/code\u003e and \u003ccode\u003enodir\u003c/code\u003e\nare both set\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd glob cli\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReturn \u003ccode\u003e'.'\u003c/code\u003e instead of the empty string \u003ccode\u003e''\u003c/code\u003e when the current\nworking directory is returned as a match.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eposix: true\u003c/code\u003e option to return \u003ccode\u003e/\u003c/code\u003e delimited paths, even on\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/e80cb38ae60d6cbff9e75f39032a994858994d35\"\u003e\u003ccode\u003ee80cb38\u003c/code\u003e\u003c/a\u003e 13.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/9cdbbfff75c64fb158c8842d4d0eb3e908676a41\"\u003e\u003ccode\u003e9cdbbff\u003c/code\u003e\u003c/a\u003e revert tsgo, not ready for test coverage correctness yet\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/89c99ba8e276438b8e31ce878b63186e2cd375b4\"\u003e\u003ccode\u003e89c99ba\u003c/code\u003e\u003c/a\u003e use tsgo compiler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/b7275d54f294174607f544acf07cc7ec526b7878\"\u003e\u003ccode\u003eb7275d5\u003c/code\u003e\u003c/a\u003e update deps, expand engines to include node 18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/942e360a669e0c378c0abd261e7d329ca2cee661\"\u003e\u003ccode\u003e942e360\u003c/code\u003e\u003c/a\u003e update workflows, pull taprc out of package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/4a0d53c7531f3f0df97f9e4d26c78489e7f6d7ef\"\u003e\u003ccode\u003e4a0d53c\u003c/code\u003e\u003c/a\u003e update tap for mockImport bugfix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/ef94ad2696c12129628208cf4e38575e7240c1c4\"\u003e\u003ccode\u003eef94ad2\u003c/code\u003e\u003c/a\u003e update tap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/180c2d43cb135f134c0c5446408dc107c79a5a9b\"\u003e\u003ccode\u003e180c2d4\u003c/code\u003e\u003c/a\u003e update docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/37993c86faddcb780458b2d7ae3c2ead7a84bf31\"\u003e\u003ccode\u003e37993c8\u003c/code\u003e\u003c/a\u003e remove stray console.error in test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/03ae4c244cac6331817158b0bc12effd30deeb43\"\u003e\u003ccode\u003e03ae4c2\u003c/code\u003e\u003c/a\u003e 13.0.5\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v11.1.0...v13.0.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~isaacs\"\u003eisaacs\u003c/a\u003e, a new releaser for glob since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=glob\u0026package-manager=npm_and_yarn\u0026previous-version=11.1.0\u0026new-version=13.0.6)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/wpengine/faustjs/pull/2556","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/wpengine%2Ffaustjs/issues/2556","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/2556/packages"},{"uuid":"5631838484","node_id":"PR_kwDOT2oxf88AAAABFthBgQ","number":1,"state":"open","title":"ci(deps): bump the npm_and_yarn group across 1 directory with 15 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-29T14:04:50.000Z","updated_at":"2026-09-29T14:05:00.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"ci(deps): bump","group_name":"npm_and_yarn","update_count":15,"packages":[{"name":"@babel/core","old_version":"7.28.0","new_version":"7.29.7","repository_url":"https://github.com/babel/babel"},{"name":"@humanfs/node","old_version":"0.16.6","new_version":"0.16.8","repository_url":"https://github.com/humanwhocodes/humanfs"},{"name":"@isaacs/brace-expansion","old_version":"5.0.0","new_version":"5.0.1"},{"name":"@sigstore/core","old_version":"2.0.0","new_version":"3.2.1","repository_url":"https://github.com/sigstore/sigstore-js"},{"name":"brace-expansion","old_version":"1.1.11","new_version":"1.1.21","repository_url":"https://github.com/juliangruber/brace-expansion"},{"name":"flatted","old_version":"3.3.1","new_version":"3.4.4","repository_url":"https://github.com/WebReflection/flatted"},{"name":"glob","old_version":"10.3.14","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"},{"name":"handlebars","old_version":"4.7.8","new_version":"4.7.9","repository_url":"https://github.com/handlebars-lang/handlebars.js"},{"name":"ip-address","old_version":"9.0.5","new_version":"10.5.0","repository_url":"https://github.com/beaugunderson/ip-address"},{"name":"js-yaml","old_version":"3.14.1","new_version":"3.15.2","repository_url":"https://github.com/nodeca/js-yaml"},{"name":"lodash","old_version":"4.17.21","new_version":"4.18.1","repository_url":"https://github.com/lodash/lodash"},{"name":"minimatch","old_version":"3.1.2","new_version":"3.1.5","repository_url":"https://github.com/isaacs/minimatch"},{"name":"picomatch","old_version":"2.3.1","new_version":"2.3.2","repository_url":"https://github.com/micromatch/picomatch"},{"name":"sigstore","old_version":"3.1.0","new_version":"4.1.1","repository_url":"https://github.com/sigstore/sigstore-js"},{"name":"tar","old_version":"6.2.1","new_version":"7.5.22","repository_url":"https://github.com/isaacs/node-tar"}],"path":null,"ecosystem":"npm"},"body":"Bumps the npm_and_yarn group with 15 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@babel/core](https://github.com/babel/babel/tree/HEAD/packages/babel-core) | `7.28.0` | `7.29.7` |\n| [@humanfs/node](https://github.com/humanwhocodes/humanfs/tree/HEAD/packages/node) | `0.16.6` | `0.16.8` |\n| @isaacs/brace-expansion | `5.0.0` | `5.0.1` |\n| [@sigstore/core](https://github.com/sigstore/sigstore-js) | `2.0.0` | `3.2.1` |\n| [brace-expansion](https://github.com/juliangruber/brace-expansion) | `1.1.11` | `1.1.21` |\n| [flatted](https://github.com/WebReflection/flatted) | `3.3.1` | `3.4.4` |\n| [glob](https://github.com/isaacs/node-glob) | `10.3.14` | `10.5.0` |\n| [handlebars](https://github.com/handlebars-lang/handlebars.js) | `4.7.8` | `4.7.9` |\n| [ip-address](https://github.com/beaugunderson/ip-address) | `9.0.5` | `10.5.0` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `3.14.1` | `3.15.2` |\n| [lodash](https://github.com/lodash/lodash) | `4.17.21` | `4.18.1` |\n| [minimatch](https://github.com/isaacs/minimatch) | `3.1.2` | `3.1.5` |\n| [picomatch](https://github.com/micromatch/picomatch) | `2.3.1` | `2.3.2` |\n| [sigstore](https://github.com/sigstore/sigstore-js) | `3.1.0` | `4.1.1` |\n| [tar](https://github.com/isaacs/node-tar) | `6.2.1` | `7.5.22` |\n\n\nUpdates `@babel/core` from 7.28.0 to 7.29.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/babel/babel/releases\"\u003e@​babel/core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.29.7 (2026-05-25)\u003c/h2\u003e\n\u003cp\u003eRe-release all packages with npm provenance attestations\u003c/p\u003e\n\u003ch2\u003ev7.29.6 (2026-05-25)\u003c/h2\u003e\n\u003ch4\u003e:bug: Bug Fix\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-generator\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/18014\"\u003e#18014\u003c/a\u003e Catchup source map position in preserveFormat (\u003ca href=\"https://github.com/nicolo-ribaudo\"\u003e\u003ccode\u003e@​nicolo-ribaudo\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-core\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/18001\"\u003e#18001\u003c/a\u003e [7.x packport]Improve input source map handling (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-core\u003c/code\u003e, \u003ccode\u003ebabel-generator\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17998\"\u003e#17998\u003c/a\u003e Preserve original identifier names from input sourcemaps (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/17992\"\u003e#17992\u003c/a\u003e) (\u003ca href=\"https://github.com/Andarist\"\u003e\u003ccode\u003e@​Andarist\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCommitters: 3\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eHuáng Jùnliàng (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eMateusz Burzyński (\u003ca href=\"https://github.com/Andarist\"\u003e\u003ccode\u003e@​Andarist\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eNicolò Ribaudo (\u003ca href=\"https://github.com/nicolo-ribaudo\"\u003e\u003ccode\u003e@​nicolo-ribaudo\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.29.5 (2026-05-05)\u003c/h2\u003e\n\u003ch4\u003e:house:  Internal\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-preset-env\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate \u003ccode\u003e@babel/*\u003c/code\u003e dependencies\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.29.4 (2026-05-05)\u003c/h2\u003e\n\u003ch4\u003e:bug: Bug Fix\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-plugin-transform-modules-systemjs\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17974\"\u003e#17974\u003c/a\u003e [7.x backport]fix(systemjs): improve module string name support (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCommitters: 1\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eHuáng Jùnliàng (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.29.3 (2026-04-30)\u003c/h2\u003e\n\u003ch4\u003e:eyeglasses: Spec Compliance\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-parser\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17923\"\u003e#17923\u003c/a\u003e Support flow extends bound (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003e:bug: Bug Fix\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-helper-create-class-features-plugin\u003c/code\u003e, \u003ccode\u003ebabel-plugin-proposal-decorators\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17931\"\u003e#17931\u003c/a\u003e fix(decorators): replace super within all removed static elements (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-register\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17915\"\u003e#17915\u003c/a\u003e Fix thread synchronization issues in \u003ccode\u003e@babel/register\u003c/code\u003e (\u003ca href=\"https://github.com/liuxingbaoyu\"\u003e\u003ccode\u003e@​liuxingbaoyu\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-compat-data\u003c/code\u003e, \u003ccode\u003ebabel-plugin-bugfix-safari-rest-destructuring-rhs-array\u003c/code\u003e, \u003ccode\u003ebabel-preset-env\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17788\"\u003e#17788\u003c/a\u003e Add bugfix plugin for Safari array rest destructuring bug (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003e:nail_care: Polish\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-parser\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/4fba7541180bf5f58256d8e358b544e3831ad090\"\u003e\u003ccode\u003e4fba754\u003c/code\u003e\u003c/a\u003e v7.29.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/04ea6b27fdac8f40c3481aec2080ac9678779509\"\u003e\u003ccode\u003e04ea6b2\u003c/code\u003e\u003c/a\u003e v7.29.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/99f498a9b9fa0b900d603fbe8f6601bb3b9e42bb\"\u003e\u003ccode\u003e99f498a\u003c/code\u003e\u003c/a\u003e [7.x packport]Improve input source map handling (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/18001\"\u003e#18001\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/feba0a3654c596bd369d1ef1231f5d56666d56dc\"\u003e\u003ccode\u003efeba0a3\u003c/code\u003e\u003c/a\u003e Preserve original identifier names from input sourcemaps (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/17992\"\u003e#17992\u003c/a\u003e) (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/17998\"\u003e#17998\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/aa8394e454337d118ac3d40bfa3ee1a3cb3f3ed2\"\u003e\u003ccode\u003eaa8394e\u003c/code\u003e\u003c/a\u003e v7.29.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/ad0d03f0c92404a60ec6b1c12f15febd38e2397a\"\u003e\u003ccode\u003ead0d03f\u003c/code\u003e\u003c/a\u003e [7.x backport] feat: Allow specifying startLine in code frame (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/17739\"\u003e#17739\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/d7f400889567ae18ef9ac41b024b5120f6060e17\"\u003e\u003ccode\u003ed7f4008\u003c/code\u003e\u003c/a\u003e v7.28.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/e130225028e93e106135586f344cfa44c4aac847\"\u003e\u003ccode\u003ee130225\u003c/code\u003e\u003c/a\u003e Polish(standalone): improve message on invalid preset/plugin (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/17606\"\u003e#17606\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/99dcba5e71de3bd81ce14077cfa5b6df58e9b177\"\u003e\u003ccode\u003e99dcba5\u003c/code\u003e\u003c/a\u003e chore: enable some ts-eslint rules (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/17592\"\u003e#17592\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/c92c4919771105140015167f25f7bacac77c90d9\"\u003e\u003ccode\u003ec92c491\u003c/code\u003e\u003c/a\u003e Improve Unicode handling in code-frame tokenizer (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/17589\"\u003e#17589\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/babel/babel/commits/v7.29.7/packages/babel-core\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​babel/core\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@humanfs/node` from 0.16.6 to 0.16.8\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/humanwhocodes/humanfs/releases\"\u003e@​humanfs/node's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003enode: v0.16.8\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/compare/node-v0.16.7...node-v0.16.8\"\u003e0.16.8\u003c/a\u003e (2026-04-17)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eInclude type dependencies at runtime (\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/956ce7aac2a998d0af23b7cb08e7630b69693138\"\u003e956ce7a\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/humanwhocodes/humanfs/issues/145\"\u003e#145\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe following workspace dependencies were updated\n\u003cul\u003e\n\u003cli\u003edependencies\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​humanfs/core\u003c/code\u003e bumped from ^0.19.1 to ^0.19.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003enode: v0.16.7\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/compare/node-v0.16.6...node-v0.16.7\"\u003e0.16.7\u003c/a\u003e (2024-11-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdd directory to package.json (\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/f691b60a0df2ce9a5894b6af51acc2461654cf6b\"\u003ef691b60\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/humanwhocodes/humanfs/blob/main/packages/node/CHANGELOG.md\"\u003e@​humanfs/node's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/compare/node-v0.16.7...node-v0.16.8\"\u003e0.16.8\u003c/a\u003e (2026-04-17)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eEnsure symlinks are copied as symlinks in \u003ccode\u003ecopy()\u003c/code\u003e and \u003ccode\u003ecopyAll()\u003c/code\u003e (\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/22bbaa4487a3e6c1197ca619840de4615d0c3404\"\u003e22bbaa44\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eInclude type dependencies at runtime (\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/956ce7aac2a998d0af23b7cb08e7630b69693138\"\u003e956ce7a\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/humanwhocodes/humanfs/issues/145\"\u003e#145\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe following workspace dependencies were updated\n\u003cul\u003e\n\u003cli\u003edependencies\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​humanfs/core\u003c/code\u003e bumped from ^0.19.1 to ^0.19.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/compare/node-v0.16.6...node-v0.16.7\"\u003e0.16.7\u003c/a\u003e (2024-11-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdd directory to package.json (\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/f691b60a0df2ce9a5894b6af51acc2461654cf6b\"\u003ef691b60\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/e96070e897f017ae8abd2b0676d98d14e49665cc\"\u003e\u003ccode\u003ee96070e\u003c/code\u003e\u003c/a\u003e chore: release main (\u003ca href=\"https://github.com/humanwhocodes/humanfs/tree/HEAD/packages/node/issues/146\"\u003e#146\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/22bbaa4487a3e6c1197ca619840de4615d0c3404\"\u003e\u003ccode\u003e22bbaa4\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/956ce7aac2a998d0af23b7cb08e7630b69693138\"\u003e\u003ccode\u003e956ce7a\u003c/code\u003e\u003c/a\u003e fix: Include type dependencies at runtime\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/257b7b53eb2800daca06453ea385f9f2a098fcb9\"\u003e\u003ccode\u003e257b7b5\u003c/code\u003e\u003c/a\u003e chore: release main (\u003ca href=\"https://github.com/humanwhocodes/humanfs/tree/HEAD/packages/node/issues/142\"\u003e#142\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/f691b60a0df2ce9a5894b6af51acc2461654cf6b\"\u003e\u003ccode\u003ef691b60\u003c/code\u003e\u003c/a\u003e fix: Add directory to package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/7b81d9accf36bed41883e5e0c2eaaefce8c15fee\"\u003e\u003ccode\u003e7b81d9a\u003c/code\u003e\u003c/a\u003e chore(deps): Upgrading retry dependency in node package. (\u003ca href=\"https://github.com/humanwhocodes/humanfs/tree/HEAD/packages/node/issues/140\"\u003e#140\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/humanwhocodes/humanfs/commits/node-v0.16.8/packages/node\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@isaacs/brace-expansion` from 5.0.0 to 5.0.1\n\nUpdates `@sigstore/core` from 2.0.0 to 3.2.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/sigstore/sigstore-js/releases\"\u003e@​sigstore/core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.2.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eb5aa4f1: Apply UTF-8 encoding to payload type during PAE calculation\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.2.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e8f736ef: Update the \u003ccode\u003ecreatePublicKey\u003c/code\u003e function to support base64-encoded keys\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.0\u003c/h2\u003e\n\u003ch3\u003eMajor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e383e200: Drop support for node 18\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c1dc7d4778a450787fc72b083f2490ad02b714c6\"\u003e\u003ccode\u003ec1dc7d4\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1607\"\u003e#1607\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/f074710a91ea9260a9ac2142345634579843a3cd\"\u003e\u003ccode\u003ef074710\u003c/code\u003e\u003c/a\u003e reject integratedTime w/o inclusionPromise (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1659\"\u003e#1659\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/7845532f9d17f6f765363dbee82b01bd159fb52b\"\u003e\u003ccode\u003e7845532\u003c/code\u003e\u003c/a\u003e OID certificate extension verification (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1658\"\u003e#1658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/b5aa4f1f8d2db0a9dfa6430fb114d9c2f1c304f7\"\u003e\u003ccode\u003eb5aa4f1\u003c/code\u003e\u003c/a\u003e proper utf-8 encoding in DSSE PAE (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1657\"\u003e#1657\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c7a34e0e9514f4573f8daf980c0987a4120a7183\"\u003e\u003ccode\u003ec7a34e0\u003c/code\u003e\u003c/a\u003e clarify cert ID matching (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1656\"\u003e#1656\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/9858bd7fc535ff01755c8dd5842ef7171b0fafeb\"\u003e\u003ccode\u003e9858bd7\u003c/code\u003e\u003c/a\u003e Upgrade TypeScript to 6.x (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1655\"\u003e#1655\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/8cef20d0069abd3ff03f2afb9ca320a76ddf6d4b\"\u003e\u003ccode\u003e8cef20d\u003c/code\u003e\u003c/a\u003e bump qs from 6.15.1 to 6.15.2 (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1654\"\u003e#1654\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/aca341b56aa561af4d74ad07fda4acd12c417beb\"\u003e\u003ccode\u003eaca341b\u003c/code\u003e\u003c/a\u003e bump \u003ccode\u003e@​sigstore/mock\u003c/code\u003e deps (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1653\"\u003e#1653\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/0855acac119ae9f9dc21413356ce36eade2a51f8\"\u003e\u003ccode\u003e0855aca\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1652\"\u003e#1652\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/44a374d63107b25d11f880a8427e2e27d45965d8\"\u003e\u003ccode\u003e44a374d\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1650\"\u003e#1650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/sigstore/sigstore-js/compare/@sigstore/core@2.0.0...@sigstore/core@3.2.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​sigstore/core\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `brace-expansion` from 1.1.11 to 1.1.21\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/juliangruber/brace-expansion/releases\"\u003ebrace-expansion's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.1.15\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBackport v5.0.6 change to v1 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/111\"\u003e#111\u003c/a\u003e)  0b09384\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v1.1.14...v1.1.15\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v1.1.14...v1.1.15\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev1.1.12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003epkg: publish on tag 1.x  c460dbd\u003c/li\u003e\n\u003cli\u003efmt  ccb8ac6\u003c/li\u003e\n\u003cli\u003eFix potential ReDoS Vulnerability or Inefficient Regular Expression (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/65\"\u003e#65\u003c/a\u003e)  c3c73c8\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v1.1.11...v1.1.12\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v1.1.11...v1.1.12\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/8e81e187b6e9c6c723d16c042657c00acefc2483\"\u003e\u003ccode\u003e8e81e18\u003c/code\u003e\u003c/a\u003e 1.1.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/ffdfa3e3806bed17c0874b8f1439b084de354a7e\"\u003e\u003ccode\u003effdfa3e\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/c6513ad31e08edb56dc414a629e39cba724b7548\"\u003e\u003ccode\u003ec6513ad\u003c/code\u003e\u003c/a\u003e 1.1.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1efee7c397c191da6287a78ec19512476a966a7b\"\u003e\u003ccode\u003e1efee7c\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/a34340a053abb475cc226aeb3f71887018e71bd0\"\u003e\u003ccode\u003ea34340a\u003c/code\u003e\u003c/a\u003e 1.1.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/0bcbfc0a5928c3073d48f42999d1ce4fc1c42fbc\"\u003e\u003ccode\u003e0bcbfc0\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/758fcd6d188a95c2342818519c77b8c06794552b\"\u003e\u003ccode\u003e758fcd6\u003c/code\u003e\u003c/a\u003e 1.1.18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/27fbeed22b4fdf2c5f732f66bcf84d43f4a26c6e\"\u003e\u003ccode\u003e27fbeed\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/5c57cc2519dfb067e188b7cb0733fffbd02946bf\"\u003e\u003ccode\u003e5c57cc2\u003c/code\u003e\u003c/a\u003e 1.1.17\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/d757f1dde7808bcbcd7a4628ab913e5185ed3d57\"\u003e\u003ccode\u003ed757f1d\u003c/code\u003e\u003c/a\u003e npm ignore \u003ccode\u003e.claude\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/1.1.11...v1.1.21\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `flatted` from 3.3.1 to 3.4.4\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/e6f5ca700c4ca8104a6a83472c8219e267bd5e84\"\u003e\u003ccode\u003ee6f5ca7\u003c/code\u003e\u003c/a\u003e 3.4.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/47f14fac0b1a41989f216b0cda4c50596ca339f6\"\u003e\u003ccode\u003e47f14fa\u003c/code\u003e\u003c/a\u003e removed E_STRICT from PHP\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/40505688464c49fe6374e7bc4cdd9bd2e9e6f330\"\u003e\u003ccode\u003e4050568\u003c/code\u003e\u003c/a\u003e fixced go-lang issues in CI\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/4303f4db38ba0ba8d5e2ed6e9689cefc74c46b63\"\u003e\u003ccode\u003e4303f4d\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/WebReflection/flatted/issues/101\"\u003e#101\u003c/a\u003e from mfinelli/gocriticfixes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/106735b609c15df51539a0d7c0a270182efd904c\"\u003e\u003ccode\u003e106735b\u003c/code\u003e\u003c/a\u003e updated package-lock.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/670a1bdf9dcfba02111c3034294366f10696fb53\"\u003e\u003ccode\u003e670a1bd\u003c/code\u003e\u003c/a\u003e 3.4.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/50a61a90ea5ca64c114f0aa040ad127e3a97feff\"\u003e\u003ccode\u003e50a61a9\u003c/code\u003e\u003c/a\u003e Fix \u003ca href=\"https://redirect.github.com/WebReflection/flatted/issues/104\"\u003e#104\u003c/a\u003e - allow \u003ccode\u003enull\u003c/code\u003e as replacer value\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/8aa64f460cf0c4dac9cc214c831aade28f8f2c6e\"\u003e\u003ccode\u003e8aa64f4\u003c/code\u003e\u003c/a\u003e solved crytical errors over dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/b85577f39ff85959d02e8862cc0dde8114b43762\"\u003e\u003ccode\u003eb85577f\u003c/code\u003e\u003c/a\u003e Fix go-critic errors\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/bb8c63cea5befd4315519cb4458c6fc07bb9cf7b\"\u003e\u003ccode\u003ebb8c63c\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/WebReflection/flatted/issues/100\"\u003e#100\u003c/a\u003e from WebReflection/WebReflection-patch-1\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/WebReflection/flatted/compare/v3.3.1...v3.4.4\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `glob` from 10.3.14 to 10.5.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-glob/blob/main/changelog.md\"\u003eglob's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003echangeglob\u003c/h1\u003e\n\u003ch2\u003e13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMove the CLI program out to a separate package, \u003ccode\u003eglob-bin\u003c/code\u003e.\nInstall that if you'd like to continue using glob from the\ncommand line.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove the unsafe \u003ccode\u003e--shell\u003c/code\u003e option. The \u003ccode\u003e--shell\u003c/code\u003e option is now\nONLY supported on known shells where the behavior can be\nimplemented safely.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.1\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/isaacs/node-glob/security/advisories/GHSA-5j98-mcp5-4vw2\"\u003eGHSA-5j98-mcp5-4vw2\u003c/a\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--shell\u003c/code\u003e option for the command line, with a warning\nthat this is unsafe. (It will be removed in v12.)\u003c/li\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--cmd-arg\u003c/code\u003e/\u003ccode\u003e-g\u003c/code\u003e as a way to \u003cem\u003esafely\u003c/em\u003e add positional\narguments to the command provided to the CLI tool.\u003c/li\u003e\n\u003cli\u003eDetect commands with space or quote characters on known shells,\nand pass positional arguments to them safely, avoiding\n\u003ccode\u003eshell:true\u003c/code\u003e execution.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node before v20\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eincludeChildMatches: false\u003c/code\u003e option\u003c/li\u003e\n\u003cli\u003eExport the \u003ccode\u003eIgnore\u003c/code\u003e class\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e--default -p\u003c/code\u003e flag to provide a default pattern\u003c/li\u003e\n\u003cli\u003eexclude symbolic links to directories when \u003ccode\u003efollow\u003c/code\u003e and \u003ccode\u003enodir\u003c/code\u003e\nare both set\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd glob cli\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReturn \u003ccode\u003e'.'\u003c/code\u003e instead of the empty string \u003ccode\u003e''\u003c/code\u003e when the current\nworking directory is returned as a match.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eposix: true\u003c/code\u003e option to return \u003ccode\u003e/\u003c/code\u003e delimited paths, even on\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1f0c1ca01a5f256cd17f543f83e9aaeedd133939\"\u003e\u003ccode\u003e1f0c1ca\u003c/code\u003e\u003c/a\u003e 10.4.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/eaf31dcb144750a19842a8319c330d021d4c4d5f\"\u003e\u003ccode\u003eeaf31dc\u003c/code\u003e\u003c/a\u003e whatever, just allow any engines\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/78275168e1bbc7a61e372af1ba58307c27faf0cb\"\u003e\u003ccode\u003e7827516\u003c/code\u003e\u003c/a\u003e 10.4.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/d06c8f8c8288c89a4892f4ebcc23ca21840aa4a1\"\u003e\u003ccode\u003ed06c8f8\u003c/code\u003e\u003c/a\u003e restore support for node 14.latest and 16.latest\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/c14b787771f269651f27f6207aaf410fe171f0b6\"\u003e\u003ccode\u003ec14b787\u003c/code\u003e\u003c/a\u003e 10.4.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/8a69def3cad0de9ba26ca831065ffe448d153de3\"\u003e\u003ccode\u003e8a69def\u003c/code\u003e\u003c/a\u003e node 14 no longer supported\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/eef7ea35afe511079c5bf83862ed57ece2bbf7fa\"\u003e\u003ccode\u003eeef7ea3\u003c/code\u003e\u003c/a\u003e 10.4.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/c76a7d255c74133ed33dd7aa965598316d12dd25\"\u003e\u003ccode\u003ec76a7d2\u003c/code\u003e\u003c/a\u003e use package-json-from-dist to look up package.json\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.3.14...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `handlebars` from 4.7.8 to 4.7.9\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/handlebars-lang/handlebars.js/releases\"\u003ehandlebars's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.7.9\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: enable shell mode for spawn to resolve Windows EINVAL issue - e0137c2\u003c/li\u003e\n\u003cli\u003efix type \u0026quot;RuntimeOptions\u0026quot; also accepting string partials - eab1d14\u003c/li\u003e\n\u003cli\u003efeat(types): set \u003ccode\u003ehash\u003c/code\u003e to be a \u003ccode\u003eRecord\u0026lt;string, any\u0026gt;\u003c/code\u003e - de4414d\u003c/li\u003e\n\u003cli\u003efix non-contiguous program indices - 4512766\u003c/li\u003e\n\u003cli\u003erefactor: rename i to startPartIndex - e497a35\u003c/li\u003e\n\u003cli\u003esecurity: fix security issues - 68d8df5\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-2w6w-674q-4c4q\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-2w6w-674q-4c4q\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-3mfm-83xf-c92r\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-3mfm-83xf-c92r\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-xhpv-hc6g-r9c6\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-xhpv-hc6g-r9c6\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-xjpj-3mr7-gcpf\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-xjpj-3mr7-gcpf\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-9cx6-37pm-9jff\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-9cx6-37pm-9jff\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-2qvq-rjwj-gvw9\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-2qvq-rjwj-gvw9\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-7rx3-28cr-v5wh\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-7rx3-28cr-v5wh\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-442j-39wm-28r2\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-442j-39wm-28r2\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/compare/v4.7.8...v4.7.9\"\u003eCommits\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/handlebars-lang/handlebars.js/blob/v4.7.9/release-notes.md\"\u003ehandlebars's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.7.9 - March 26th, 2026\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: enable shell mode for spawn to resolve Windows EINVAL issue - e0137c2\u003c/li\u003e\n\u003cli\u003efix type \u0026quot;RuntimeOptions\u0026quot; also accepting string partials - eab1d14\u003c/li\u003e\n\u003cli\u003efeat(types): set \u003ccode\u003ehash\u003c/code\u003e to be a \u003ccode\u003eRecord\u0026lt;string, any\u0026gt;\u003c/code\u003e - de4414d\u003c/li\u003e\n\u003cli\u003efix non-contiguous program indices - 4512766\u003c/li\u003e\n\u003cli\u003erefactor: rename i to startPartIndex - e497a35\u003c/li\u003e\n\u003cli\u003esecurity: fix security issues - 68d8df5\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/compare/v4.7.8...v4.7.9\"\u003eCommits\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/dce542c9a660048d31f0981ac8a45c08b919bddb\"\u003e\u003ccode\u003edce542c\u003c/code\u003e\u003c/a\u003e v4.7.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/8a41389ba5b2624b6f43a5463d8e2533b843a562\"\u003e\u003ccode\u003e8a41389\u003c/code\u003e\u003c/a\u003e Update release notes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/68d8df5a88e0a26fe9e6084c5c6aaebe67b07da2\"\u003e\u003ccode\u003e68d8df5\u003c/code\u003e\u003c/a\u003e Fix security issues\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/b2a083136b11e1da9f0f47a11f749a9830a49328\"\u003e\u003ccode\u003eb2a0831\u003c/code\u003e\u003c/a\u003e Fix browser tests\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/9f98c1629834abf8de5a127caff8a2eab03d2c12\"\u003e\u003ccode\u003e9f98c16\u003c/code\u003e\u003c/a\u003e Fix release script\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/45443b4290475dfb7cec32a85d344f12ab345eb9\"\u003e\u003ccode\u003e45443b4\u003c/code\u003e\u003c/a\u003e Revert \u0026quot;Improve partial indenting performance\u0026quot;\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/8841a5f6d35096aee95d68e1e49636a4cb5c661e\"\u003e\u003ccode\u003e8841a5f\u003c/code\u003e\u003c/a\u003e Fix CI errors with linting\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/e0137c26f2202593bca7cc25184e733e87d54709\"\u003e\u003ccode\u003ee0137c2\u003c/code\u003e\u003c/a\u003e fix: enable shell mode for spawn to resolve Windows EINVAL issue\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/e914d6037ffb0dd371f7e4823cdb019732ae66d7\"\u003e\u003ccode\u003ee914d60\u003c/code\u003e\u003c/a\u003e Improve rendering performance\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/7de4b41c344a5d702edca93d1841b59642fa32bd\"\u003e\u003ccode\u003e7de4b41\u003c/code\u003e\u003c/a\u003e Upgrade GitHub Actions checkout and setup-node on 4.x branch\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/handlebars-lang/handlebars.js/compare/v4.7.8...v4.7.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ip-address` from 9.0.5 to 10.5.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/beaugunderson/ip-address/releases\"\u003eip-address's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev10.5.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eHonor the fromURL graceful-failure contract for non-IPv6 hosts by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/218\"\u003ebeaugunderson/ip-address#218\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCorrect the documentation where it disagreed with the library by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/219\"\u003ebeaugunderson/ip-address#219\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.4.0...v10.5.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.4.0...v10.5.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.4.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd GitHub Actions CI by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/213\"\u003ebeaugunderson/ip-address#213\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eKeep the package loadable on node 12, and enforce it by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/216\"\u003ebeaugunderson/ip-address#216\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eValidate the byte arrays Address6 is given by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/217\"\u003ebeaugunderson/ip-address#217\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.3.1...v10.4.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.3.1...v10.4.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.3.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.3.0...v10.3.1\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.3.0...v10.3.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.3.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.2.2...v10.3.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.2.2...v10.3.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.2.2\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.2.1...v10.2.2\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.2.1...v10.2.2\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.2.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.2.0...v10.2.1\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.2.0...v10.2.1\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/ef98e0a0e77fbef1fdf8bc3bd33288b00b3103c9\"\u003e\u003ccode\u003eef98e0a\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/9fd111001d66cae1dc9336294d95e11668d4d839\"\u003e\u003ccode\u003e9fd1110\u003c/code\u003e\u003c/a\u003e Correct the documentation where it disagreed with the library (\u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/issues/219\"\u003e#219\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/d4787372b40fbf509c1a3e79c111eafe4aa3b351\"\u003e\u003ccode\u003ed478737\u003c/code\u003e\u003c/a\u003e Honor the fromURL graceful-failure contract for non-IPv6 hosts (\u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/issues/218\"\u003e#218\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/fbb8db28f1559842b7191cab7d8ea6408ed82f7b\"\u003e\u003ccode\u003efbb8db2\u003c/code\u003e\u003c/a\u003e 10.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/45a2b11ec254a2e5620de66e248adcb33d16e669\"\u003e\u003ccode\u003e45a2b11\u003c/code\u003e\u003c/a\u003e Validate the byte arrays Address6 is given (\u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/issues/217\"\u003e#217\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/bac8810b3935cab123316a4bc5ebaa22db140299\"\u003e\u003ccode\u003ebac8810\u003c/code\u003e\u003c/a\u003e Keep the package loadable on node 12, and enforce it (\u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/issues/216\"\u003e#216\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/9b3d8488d15e6bfe5f5503867b088ce056723e08\"\u003e\u003ccode\u003e9b3d848\u003c/code\u003e\u003c/a\u003e Add a security policy and a README section on security posture\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/e84a7b381d02cb97ed114023e44133efae151254\"\u003e\u003ccode\u003ee84a7b3\u003c/code\u003e\u003c/a\u003e Order the README API reference Address4, Address6, AddressError\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/015160b85ee60b39548219817a5de3c4e828a6d6\"\u003e\u003ccode\u003e015160b\u003c/code\u003e\u003c/a\u003e Collapse each class in the README API reference\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/34061a897d526b7a063c3605402cd30a8363a035\"\u003e\u003ccode\u003e34061a8\u003c/code\u003e\u003c/a\u003e Pin checkout and setup-node to commits in the release job\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v9.0.5...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for ip-address since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `js-yaml` from 3.14.1 to 3.15.2\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/nodeca/js-yaml/blob/3.15.2/CHANGELOG.md\"\u003ejs-yaml's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.15.2 - 2026-08-26\u003c/h2\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Hard-limit merge sequence size to 100.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Count empty mappings in merge sequences toward \u003ccode\u003emaxTotalMergeKeys\u003c/code\u003e\nto limit CPU usage, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/797\"\u003e#797\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.15.1 - 2026-07-31\u003c/h2\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Remove quadratic complexity from \u003ccode\u003e!!omap\u003c/code\u003e duplicate key detection.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.15.0 - 2026-06-27\u003c/h2\u003e\n\u003ch3\u003eAdded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003emaxTotalMergeKeys\u003c/code\u003e (10000) loader option to limit the total number of\nkeys processed by YAML merge (\u003ccode\u003e\u0026lt;\u0026lt;\u003c/code\u003e) across one \u003ccode\u003esafeLoad()\u003c/code\u003e / \u003ccode\u003esafeLoadAll()\u003c/code\u003e\ncall.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e[3.14.2] - 2025-11-15\u003c/h2\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFix prototype pollution in merge (\u0026lt;\u0026lt;).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/5c45bd6e960603c13644f5cc8b572ca257723b36\"\u003e\u003ccode\u003e5c45bd6\u003c/code\u003e\u003c/a\u003e 3.15.2 released\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/5a708f9f4f22e78b87ebe363848cfa4fa4818c0d\"\u003e\u003ccode\u003e5a708f9\u003c/code\u003e\u003c/a\u003e dist rebuild\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/3485bc06ff8a0251505f44a00414d90df2466639\"\u003e\u003ccode\u003e3485bc0\u003c/code\u003e\u003c/a\u003e Backport merge limits from v5.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/f34812f1cea794f8c21e0a4e1f3a2584b720f305\"\u003e\u003ccode\u003ef34812f\u003c/code\u003e\u003c/a\u003e Update .gitignore\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/ab85ae2c622bc6d8cdbceccafe9f9b7df80463ed\"\u003e\u003ccode\u003eab85ae2\u003c/code\u003e\u003c/a\u003e 3.15.1 released\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/30a5e7647a4454f7bac969bfbbe7eac9921a4279\"\u003e\u003ccode\u003e30a5e76\u003c/code\u003e\u003c/a\u003e dist rebuild\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/22a8071ef032117bc6249c330b240ac3aa2d3ded\"\u003e\u003ccode\u003e22a8071\u003c/code\u003e\u003c/a\u003e Backport quadratic complexity fix for !!omap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/c34b6c40027a769eb0d67958ae615268a1d55f54\"\u003e\u003ccode\u003ec34b6c4\u003c/code\u003e\u003c/a\u003e 3.15.0 released\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/21e13d363f33501c7ee6ca988b88c29084999f72\"\u003e\u003ccode\u003e21e13d3\u003c/code\u003e\u003c/a\u003e dist rebuild\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/4165c62630d64fe4f25fb0d03139c7e137b24b1c\"\u003e\u003ccode\u003e4165c62\u003c/code\u003e\u003c/a\u003e Add v3-legacy tag for publish\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/nodeca/js-yaml/compare/3.14.1...3.15.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `lodash` from 4.17.21 to 4.18.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/lodash/lodash/releases\"\u003elodash's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.18.1\u003c/h2\u003e\n\u003ch2\u003eBugs\u003c/h2\u003e\n\u003cp\u003eFixes a \u003ccode\u003eReferenceError\u003c/code\u003e issue in \u003ccode\u003elodash\u003c/code\u003e \u003ccode\u003elodash-es\u003c/code\u003e \u003ccode\u003elodash-amd\u003c/code\u003e and \u003ccode\u003elodash.template\u003c/code\u003e when using the \u003ccode\u003etemplate\u003c/code\u003e and \u003ccode\u003efromPairs\u003c/code\u003e functions from the modular builds. See \u003ca href=\"https://redirect.github.com/lodash/lodash/issues/6167#issuecomment-4165269769\"\u003elodash/lodash#6167\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eThese defects were related to how lodash distributions are built from the main branch using \u003ca href=\"https://github.com/lodash-archive/lodash-cli\"\u003ehttps://github.com/lodash-archive/lodash-cli\u003c/a\u003e. When internal dependencies change inside lodash functions, equivalent updates need to be made to a mapping in the lodash-cli. (hey, it was ahead of its time once upon a time!). We know this, but we missed it in the last release. It's the kind of thing that passes in CI, but fails bc the build is not the same thing you tested.\u003c/p\u003e\n\u003cp\u003eThere is no diff on main for this, but you can see the diffs for each of the npm packages on their respective branches:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003elodash\u003c/code\u003e: \u003ca href=\"https://github.com/lodash/lodash/compare/4.18.0-npm...4.18.1-npm\"\u003ehttps://github.com/lodash/lodash/compare/4.18.0-npm...4.18.1-npm\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003elodash-es\u003c/code\u003e: \u003ca href=\"https://github.com/lodash/lodash/compare/4.18.0-es...4.18.1-es\"\u003ehttps://github.com/lodash/lodash/compare/4.18.0-es...4.18.1-es\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003elodash-amd\u003c/code\u003e: \u003ca href=\"https://github.com/lodash/lodash/compare/4.18.0-amd...4.18.1-amd\"\u003ehttps://github.com/lodash/lodash/compare/4.18.0-amd...4.18.1-amd\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003elodash.template\u003c/code\u003e\u003ca href=\"https://github.com/lodash/lodash/compare/4.18.0-npm-packages...4.18.1-npm-packages\"\u003ehttps://github.com/lodash/lodash/compare/4.18.0-npm-packages...4.18.1-npm-packages\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.18.0\u003c/h2\u003e\n\u003ch2\u003ev4.18.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/lodash/lodash/compare/4.17.23...4.18.0\"\u003ehttps://github.com/lodash/lodash/compare/4.17.23...4.18.0\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cp\u003e\u003cstrong\u003e\u003ccode\u003e_.unset\u003c/code\u003e / \u003ccode\u003e_.omit\u003c/code\u003e\u003c/strong\u003e: Fixed prototype pollution via \u003ccode\u003econstructor\u003c/code\u003e/\u003ccode\u003eprototype\u003c/code\u003e path traversal (\u003ca href=\"https://github.com/lodash/lodash/security/advisories/GHSA-f23m-r3pf-42rh\"\u003eGHSA-f23m-r3pf-42rh\u003c/a\u003e, \u003ca href=\"https://github.com/lodash/lodash/commit/fe8d32eda854377349a4f922ab7655c8e5df9a0b\"\u003efe8d32e\u003c/a\u003e). Previously, array-wrapped path segments and primitive roots could bypass the existing guards, allowing deletion of properties from built-in prototypes. Now \u003ccode\u003econstructor\u003c/code\u003e and \u003ccode\u003eprototype\u003c/code\u003e are blocked unconditionally as non-terminal path keys, matching \u003ccode\u003ebaseSet\u003c/code\u003e. Calls that previously returned \u003ccode\u003etrue\u003c/code\u003e and deleted the property now return \u003ccode\u003efalse\u003c/code\u003e and leave the target untouched.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003e\u003ccode\u003e_.template\u003c/code\u003e\u003c/strong\u003e: Fixed code injection via \u003ccode\u003eimports\u003c/code\u003e keys (\u003ca href=\"https://github.com/lodash/lodash/security/advisories/GHSA-r5fr-rjxr-66jc\"\u003eGHSA-r5fr-rjxr-66jc\u003c/a\u003e, CVE-2026-4800, \u003ca href=\"https://github.com/lodash/lodash/commit/879aaa93132d78c2f8d20c60279da9f8b21576d6\"\u003e879aaa9\u003c/a\u003e). Fixes an incomplete patch for CVE-2021-23337. The \u003ccode\u003evariable\u003c/code\u003e option was validated against \u003ccode\u003ereForbiddenIdentifierChars\u003c/code\u003e but \u003ccode\u003eimportsKeys\u003c/code\u003e was left unguarded, allowing code injection via the same \u003ccode\u003eFunction()\u003c/code\u003e constructor sink. \u003ccode\u003eimports\u003c/code\u003e keys containing forbidden identifier characters now throw \u003ccode\u003e\u0026quot;Invalid imports option passed into _.template\u0026quot;\u003c/code\u003e.\u003c/p\u003e\n\u003ch3\u003eDocs\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdd security notice for \u003ccode\u003e_.template\u003c/code\u003e in threat model and API docs (\u003ca href=\"https://redirect.github.com/lodash/lodash/pull/6099\"\u003e#6099\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eDocument \u003ccode\u003elower \u0026gt; upper\u003c/code\u003e behavior in \u003ccode\u003e_.random\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/lodash/lodash/pull/6115\"\u003e#6115\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix quotes in \u003ccode\u003e_.compact\u003c/code\u003e jsdoc (\u003ca href=\"https://redirect.github.com/lodash/lodash/pull/6090\"\u003e#6090\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e\u003ccode\u003elodash.*\u003c/code\u003e modular packages\u003c/h3\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/lodash/lodash/pull/6157\"\u003eDiff\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eWe have also regenerated and published a select number of the \u003ccode\u003elodash.*\u003c/code\u003e modular packages.\u003c/p\u003e\n\u003cp\u003eThese modular packages had fallen out of sync significantly from the minor/patch updates to lodash. Specifically, we have brought the following packages up to parity w/ the latest lodash release because they have had CVEs on them in the past:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.orderby\"\u003elodash.orderby\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.tonumber\"\u003elodash.tonumber\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.trim\"\u003elodash.trim\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.trimend\"\u003elodash.trimend\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.sortedindexby\"\u003elodash.sortedindexby\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.zipobjectdeep\"\u003elodash.zipobjectdeep\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.unset\"\u003elodash.unset\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.omit\"\u003elodash.omit\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.template\"\u003elodash.template\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/cb0b9b9212521c08e3eafe7c8cb0af1b42b6649e\"\u003e\u003ccode\u003ecb0b9b9\u003c/code\u003e\u003c/a\u003e release(patch): bump main to 4.18.1 (\u003ca href=\"https://redirect.github.com/lodash/lodash/issues/6177\"\u003e#6177\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/75535f57883b7225adb96de1cfc1cd4169cfcb51\"\u003e\u003ccode\u003e75535f5\u003c/code\u003e\u003c/a\u003e chore: prune stale advisory refs (\u003ca href=\"https://redirect.github.com/lodash/lodash/issues/6170\"\u003e#6170\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/62e91bc6a39c98d85b9ada8c44d40593deaf82a4\"\u003e\u003ccode\u003e62e91bc\u003c/code\u003e\u003c/a\u003e docs: remove n_ Node.js \u0026lt; 6 REPL note from README (\u003ca href=\"https://redirect.github.com/lodash/lodash/issues/6165\"\u003e#6165\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/59be2de61f8aa9461c7856533b51d31b7d8babc4\"\u003e\u003ccode\u003e59be2de\u003c/code\u003e\u003c/a\u003e release(minor): bump to 4.18.0 (\u003ca href=\"https://redirect.github.com/lodash/lodash/issues/6161\"\u003e#6161\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/af634573030f979194871da7c68f79420992f53d\"\u003e\u003ccode\u003eaf63457\u003c/code\u003e\u003c/a\u003e fix: broken tests for _.template 879aaa9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/1073a7693e1727e0cf3641e5f71f75ddcf8de7c0\"\u003e\u003ccode\u003e1073a76\u003c/code\u003e\u003c/a\u003e fix: linting issues\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/879aaa93132d78c2f8d20c60279da9f8b21576d6\"\u003e\u003ccode\u003e879aaa9\u003c/code\u003e\u003c/a\u003e fix: validate imports keys in _.template\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/fe8d32eda854377349a4f922ab7655c8e5df9a0b\"\u003e\u003ccode\u003efe8d32e\u003c/code\u003e\u003c/a\u003e fix: block prototype pollution in baseUnset via constructor/prototype traversal\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/18ba0a32f42fd02117f096b032f89c984173462d\"\u003e\u003ccode\u003e18ba0a3\u003c/code\u003e\u003c/a\u003e refactor(fromPairs): use baseAssignValue for consistent assignment (\u003ca href=\"https://redirect.github.com/lodash/lodash/issues/6153\"\u003e#6153\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/b8190803d48d60b8c80ad45d39125f32fa618cb2\"\u003e\u003ccode\u003eb819080\u003c/code\u003e\u003c/a\u003e ci: add dist sync validation workflow (\u003ca href=\"https://redirect.github.com/lodash/lodash/issues/6137\"\u003e#6137\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/lodash/lodash/compare/4.17.21...4.18.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `minimatch` from 3.1.2 to 3.1.5\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/7bba97888a27a6162983056bcce2a6e28f668712\"\u003e\u003ccode\u003e7bba978\u003c/code\u003e\u003c/a\u003e 3.1.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/bd259425b2ca17b42897997f93e890314155522d\"\u003e\u003ccode\u003ebd25942\u003c/code\u003e\u003c/a\u003e docs: add warning about ReDoS\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/1a9c27c75725474dbde57db2995b6281b267756d\"\u003e\u003ccode\u003e1a9c27c\u003c/code\u003e\u003c/a\u003e fix partial matching of globstar patterns\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/1a2e084af579731af66c221214e3ca8222c9bf23\"\u003e\u003ccode\u003e1a2e084\u003c/code\u003e\u003c/a\u003e 3.1.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/ae24656237c3d58067442f790ce17eff84463a47\"\u003e\u003ccode\u003eae24656\u003c/code\u003e\u003c/a\u003e update lockfile\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/b1003749228b2a79e1f237963a0d559ef7a0941e\"\u003e\u003ccode\u003eb100374\u003c/code\u003e\u003c/a\u003e limit recursion for **, improve perf considerably\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/26ffeaa091b9f660833e23f42e07165b33e85c13\"\u003e\u003ccode\u003e26ffeaa\u003c/code\u003e\u003c/a\u003e lockfile update\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/9eca892a4e5dbb20534f9f30483b85cdeee6c2eb\"\u003e\u003ccode\u003e9eca892\u003c/code\u003e\u003c/a\u003e lock node version to 14\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/00c323b188b704e5d4bc534ecec2268cfa70a32a\"\u003e\u003ccode\u003e00c323b\u003c/code\u003e\u003c/a\u003e 3.1.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/30486b2048929264f44d18822891cfffa02af78b\"\u003e\u003ccode\u003e30486b2\u003c/code\u003e\u003c/a\u003e update CI matrix and actions\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/minimatch/compare/v3.1.2...v3.1.5\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `picomatch` from 2.3.1 to 2.3.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/releases\"\u003epicomatch's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.3.2\u003c/h2\u003e\n\u003cp\u003eThis is a security release fixing several security relevant issues.\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: exception when glob pattern contains constructor by \u003ca href=\"https://github.com/Jason3S\"\u003e\u003ccode\u003e@​Jason3S\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003emicromatch/picomatch#144\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\"\u003ehttps://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/blob/master/CHANGELOG.md\"\u003epicomatch's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.3.2 (2026-03-23)\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAvoided an exception when a glob pattern contains \u003ccode\u003econstructor\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003e#144\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/3f4f10e\"\u003e3f4f10e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBackported the extglob-quantifier ReDoS fix from 4.0.4. Risky repeated extglobs are now safely rewritten or treated as literals by default; positive numeric \u003ccode\u003emaxExtglobRecursion\u003c/code\u003e values allow limited nesting, while \u003ccode\u003efalse\u003c/code\u003e disables the safeguard (\u003ca href=\"https://github.com/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/eec17ae\"\u003eeec17ae\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003ePrevented inherited object properties from being interpreted as POSIX character classes (\u003ca href=\"https://github.com/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/fc1f6b6\"\u003efc1f6b6\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/81cba8d4b767cab3cb29d26eb4f691eed75b73b2\"\u003e\u003ccode\u003e81cba8d\u003c/code\u003e\u003c/a\u003e Publish 2.3.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/fc1f6b69006e9435caf8fb40d8aff378bc0b7bce\"\u003e\u003ccode\u003efc1f6b6\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/eec17aee5428a7249e9ca5adbb8a0d28fa29619b\"\u003e\u003ccode\u003eeec17ae\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/78f8ca4362d9e66cadea97b93e292f10096452ed\"\u003e\u003ccode\u003e78f8ca4\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/156\"\u003e#156\u003c/a\u003e from micromatch/backport-144\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/3f4f10eaa65bf3a52e8f2999674cd27e11fa3c9b\"\u003e\u003ccode\u003e3f4f10e\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/144\"\u003e#144\u003c/a\u003e from Jason3S/jdent-object-properties\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `sigstore` from 3.1.0 to 4.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/sigstore/sigstore-js/releases\"\u003esigstore's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003esigstore@4.1.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e7845532: Verification of OID certificate extensions\u003c/li\u003e\n\u003cli\u003ef074710: Require inclusion promise in Rekor entry when used as timestamp source\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [b5aa4f1]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [7845532]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f074710]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.2.1\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/verify\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.1\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esigstore@4.1.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eeba6a52: \u003ccode\u003everify(bundle[, payload][, options])\u003c/code\u003e now returns a \u003ccode\u003eSigner\u003c/code\u003e object containing the public key and identity information from the verification.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [cee51c0]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [2042aad]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [018974e]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [dea916f]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [61a4f9e]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [5ffadc0]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [5ffadc0]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [1663b3e]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/tuf\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.1\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/verify\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/sign\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.1.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esigstore@4.0.0\u003c/h2\u003e\n\u003ch3\u003eMajor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e383e200: Drop support for node 18\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [40395f5]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [383e200]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [383e200]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [383e200]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/tuf\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/sign\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/bundle\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/verify\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c1dc7d4778a450787fc72b083f2490ad02b714c6\"\u003e\u003ccode\u003ec1dc7d4\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1607\"\u003e#1607\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/f074710a91ea9260a9ac2142345634579843a3cd\"\u003e\u003ccode\u003ef074710\u003c/code\u003e\u003c/a\u003e reject integratedTime w/o inclusionPromise (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1659\"\u003e#1659\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/7845532f9d17f6f765363dbee82b01bd159fb52b\"\u003e\u003ccode\u003e7845532\u003c/code\u003e\u003c/a\u003e OID certificate extension verification (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1658\"\u003e#1658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/b5aa4f1f8d2db0a9dfa6430fb114d9c2f1c304f7\"\u003e\u003ccode\u003eb5aa4f1\u003c/code\u003e\u003c/a\u003e proper utf-8 encoding in DSSE PAE (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1657\"\u003e#1657\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c7a34e0e9514f4573f8daf980c0987a4120a7183\"\u003e\u003ccode\u003ec7a34e0\u003c/code\u003e\u003c/a\u003e clarify cert ID matching (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1656\"\u003e#1656\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/9858bd7fc535ff01755c8dd5842ef7171b0fafeb\"\u003e\u003ccode\u003e9858bd7\u003c/code\u003e\u003c/a\u003e Upgrade TypeScript to 6.x (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1655\"\u003e#1655\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/8cef20d0069abd3ff03f2afb9ca320a76ddf6d4b\"\u003e\u003ccode\u003e8cef20d\u003c/code\u003e\u003c/a\u003e bump qs from 6.15.1 to 6.15.2 (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1654\"\u003e#1654\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/aca341b56aa561af4d74ad07fda4acd12c417beb\"\u003e\u003ccode\u003eaca341b\u003c/code\u003e\u003c/a\u003e bump \u003ccode\u003e@​sigstore/mock\u003c/code\u003e deps (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1653\"\u003e#1653\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/0855acac119ae9f9dc21413356ce36eade2a51f8\"\u003e\u003ccode\u003e0855aca\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1652\"\u003e#1652\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/44a374d63107b25d11f880a8427e2e27d45965d8\"\u003e\u003ccode\u003e44a374d\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1650\"\u003e#1650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/sigstore/sigstore-js/compare/sigstore@3.1.0...sigstore@4.1.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for sigstore since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `tar` from 6.2.1 to 7.5.22\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-tar/blob/main/CHANGELOG.md\"\u003etar's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003ch2\u003e7.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003ezstd\u003c/code\u003e compression support.\u003c/li\u003e\n\u003cli\u003eConsistent TOCTOU behavior in sync t.list\u003c/li\u003e\n\u003cli\u003eOnly read from ustar block if not specified in Pax\u003c/li\u003e\n\u003cli\u003eFix sync tar.list when file size reduces while reading\u003c/li\u003e\n\u003cli\u003eSanitize absolute linkpaths properly\u003c/li\u003e\n\u003cli\u003ePrevent writing hardlink entries to the archive ahead of their\nfile target\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDeprecate \u003ccode\u003eonentry\u003c/code\u003e in favor of \u003ccode\u003eonReadEntry\u003c/code\u003e for clarity.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eonWriteEntry\u003c/code\u003e option\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDRY the command definitions into a single \u003ccode\u003emakeCommand\u003c/code\u003e method,\nand update the type signatures to more appropriately infer the\nreturn type from the options and arguments provided.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate minipass to v7.1.0\u003c/li\u003e\n\u003cli\u003eUpdate the type definitions of \u003ccode\u003ewrite()\u003c/code\u003e and \u003ccode\u003eend()\u003c/code\u003e methods on\n\u003ccode\u003eUnpack\u003c/code\u003e and \u003ccode\u003eParser\u003c/code\u003e classes to be compatible with the\nNodeJS.WritableStream type in the latest versions of\n\u003ccode\u003e@types/node\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node \u0026lt;18\u003c/li\u003e\n\u003cli\u003eRewrite in TypeScript, provide ESM and CommonJS hybrid\ninterface\u003c/li\u003e\n\u003cli\u003eAdd tree-shake friendly exports, like \u003ccode\u003eimport('tar/create')\u003c/code\u003e\nand \u003ccode\u003eimport('tar/read-entry')\u003c/code\u003e to get individual functions or\nclasses.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003echmod\u003c/code\u003e option that defaults to false, and deprecate\n\u003ccode\u003enoChmod\u003c/code\u003e. That is, reverse the default option regarding\nexplicitly setting file system modes to match tar entry\nsettings.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eprocessUmask\u003c/code\u003e option to avoid having to call\n\u003ccode\u003eprocess.umask()\u003c/code\u003e when \u003ccode\u003echmod: true\u003c/code\u003e (or \u003ccode\u003enoChmod: false\u003c/code\u003e) is\nset.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/2a22bfc5d3a432a606d9da0e2d87ba634aa3b1cb\"\u003e\u003ccode\u003e2a22bfc\u003c/code\u003e\u003c/a\u003e 7.5.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/df1cd8dc09cded47b00c4129698824b3986432ac\"\u003e\u003ccode\u003edf1cd8d\u003c/code\u003e\u003c/a\u003e Allow transform to be falsey\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/0cd9cc3c5814446d3c0cbea6a31d6c00c2c8a9d9\"\u003e\u003ccode\u003e0cd9cc3\u003c/code\u003e\u003c/a\u003e 7.5.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/631ae59121bf8fc8a22bbae35f074cb9b789cd4a\"\u003e\u003ccode\u003e631ae59\u003c/code\u003e\u003c/a\u003e list: prevent unbounded recursion\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/ebbb72094159d003f428dcd1cb28255d37ea4873\"\u003e\u003ccode\u003eebbb720\u003c/code\u003e\u003c/a\u003e 7.5.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/2f271963a7fe5a5960aee5dd6adf9647a1e266fd\"\u003e\u003ccode\u003e2f27196\u003c/code\u003e\u003c/a\u003e fix: fully disable and dispose of unzip when aborting parser\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/be440da64e9fe80c68c755d8147328ea1cc2a9ad\"\u003e\u003ccode\u003ebe440da\u003c/code\u003e\u003c/a\u003e 7.5.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/2812e9338665659b183aa7226518c307044957d3\"\u003e\u003ccode\u003e2812e93\u003c/code\u003e\u003c/a\u003e add maxDecompressionRatio guard against explosive decompression\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/9ecd4d2956fd915507eca018ddc1fea727fbba93\"\u003e\u003ccode\u003e9ecd4d2\u003c/code\u003e\u003c/a\u003e 7.5.18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/9e78bf058b2c22dd4d52e00d8922d5c06fc2f7b5\"\u003e\u003ccode\u003e9e78bf0\u003c/code\u003e\u003c/a\u003e refuse to let header size be less than 0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-tar/compare/v6.2.1...v7.5.22\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~isaacs\"\u003eisaacs\u003c/a\u003e, a new releaser for tar since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/The-cribgang/eslint-config-fido/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/The-cribgang/eslint-config-fido/pull/1","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/The-cribgang%2Feslint-config-fido/issues/1","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/1/packages"},{"uuid":"5592731083","node_id":"PR_kwDOOdaHgc8AAAABFO0ctA","number":1,"state":"closed","title":"Bump the npm_and_yarn group across 1 directory with 29 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-26T08:57:43.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-26T08:56:40.000Z","updated_at":"2026-09-26T08:57:45.000Z","time_to_close":63,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"npm_and_yarn","update_count":29,"packages":[{"name":"@babel/runtime","old_version":"7.25.0","new_version":"7.29.7","repository_url":"https://github.com/babel/babel"},{"name":"@langchain/core","old_version":"0.2.24","new_version":"1.2.12","repository_url":"https://github.com/langchain-ai/langchainjs"},{"name":"langsmith","old_version":"0.1.41","new_version":"0.10.5","repository_url":"https://github.com/langchain-ai/langsmith-sdk"},{"name":"@smithy/config-resolver","old_version":"3.0.5","new_version":"3.0.13","repository_url":"https://github.com/smithy-lang/smithy-typescript"},{"name":"ajv","old_version":"8.17.1","new_version":"8.20.0","repository_url":"https://github.com/ajv-validator/ajv"},{"name":"basic-ftp","old_version":"5.0.5","new_version":"5.3.1","repository_url":"https://github.com/patrickjuchli/basic-ftp"},{"name":"body-parser","old_version":"1.20.2","new_version":"1.20.8","repository_url":"https://github.com/expressjs/body-parser"},{"name":"express","old_version":"4.19.2","new_version":"4.22.3","repository_url":"https://github.com/expressjs/express"},{"name":"brace-expansion","old_version":"2.0.1","new_version":"2.1.7","repository_url":"https://github.com/juliangruber/brace-expansion"},{"name":"cookie","old_version":"0.4.2","new_version":"0.7.2","repository_url":"https://github.com/jshttp/cookie"},{"name":"cross-spawn","old_version":"7.0.3","new_version":"7.0.6","repository_url":"https://github.com/moxystudio/node-cross-spawn"},{"name":"drizzle-orm","old_version":"0.32.2","new_version":"0.45.3","repository_url":"https://github.com/drizzle-team/drizzle-orm"},{"name":"engine.io","old_version":"6.5.5","new_version":"6.6.11","repository_url":"https://github.com/socketio/socket.io"},{"name":"express","old_version":"4.19.2","new_version":"5.2.1","repository_url":"https://github.com/expressjs/express"},{"name":"fast-uri","old_version":"3.0.1","new_version":"3.1.8","repository_url":"https://github.com/fastify/fast-uri"},{"name":"fast-xml-parser","old_version":"4.4.1","new_version":"5.11.1","repository_url":"https://github.com/NaturalIntelligence/fast-xml-parser"},{"name":"form-data","old_version":"4.0.0","new_version":"4.0.6","repository_url":"https://github.com/form-data/form-data"},{"name":"glob","old_version":"10.4.5","new_version":"7.2.3","repository_url":"https://github.com/isaacs/node-glob"},{"name":"ip-address","old_version":"9.0.5","new_version":"10.7.2","repository_url":"https://github.com/beaugunderson/ip-address"},{"name":"js-yaml","old_version":"4.1.0","new_version":"5.4.1","repository_url":"https://github.com/nodeca/js-yaml"},{"name":"jws","old_version":"3.2.2","new_version":"4.0.1","repository_url":"https://github.com/brianloveswords/node-jws"},{"name":"minimatch","old_version":"9.0.5","new_version":"3.1.5","repository_url":"https://github.com/isaacs/minimatch"},{"name":"on-headers","old_version":"1.0.2","new_version":"1.1.0","repository_url":"https://github.com/jshttp/on-headers"},{"name":"path-to-regexp","old_version":"0.1.7","new_version":"8.4.2","repository_url":"https://github.com/pillarjs/path-to-regexp"},{"name":"qs","old_version":"6.11.0","new_version":"6.16.0","repository_url":"https://github.com/ljharb/qs"},{"name":"send","old_version":"0.18.0","new_version":"1.2.1","repository_url":"https://github.com/pillarjs/send"},{"name":"serve-static","old_version":"1.15.0","new_version":"2.2.1","repository_url":"https://github.com/expressjs/serve-static"},{"name":"socket.io-parser","old_version":"4.2.4","new_version":"4.2.7","repository_url":"https://github.com/socketio/socket.io"},{"name":"ws","old_version":"8.17.1","new_version":"8.21.3","repository_url":"https://github.com/websockets/ws"},{"name":"yaml","old_version":"2.5.0","new_version":"2.9.1","repository_url":"https://github.com/eemeli/yaml"}],"path":null,"ecosystem":"npm"},"body":"Bumps the npm_and_yarn group with 29 updates in the /prompt_evaluations/05_prompt_foo_code_graded_animals directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@babel/runtime](https://github.com/babel/babel/tree/HEAD/packages/babel-runtime) | `7.25.0` | `7.29.7` |\n| [@langchain/core](https://github.com/langchain-ai/langchainjs) | `0.2.24` | `1.2.12` |\n| [langsmith](https://github.com/langchain-ai/langsmith-sdk) | `0.1.41` | `0.10.5` |\n| [@smithy/config-resolver](https://github.com/smithy-lang/smithy-typescript/tree/HEAD/packages/config-resolver) | `3.0.5` | `3.0.13` |\n| [ajv](https://github.com/ajv-validator/ajv) | `8.17.1` | `8.20.0` |\n| [basic-ftp](https://github.com/patrickjuchli/basic-ftp) | `5.0.5` | `5.3.1` |\n| [body-parser](https://github.com/expressjs/body-parser) | `1.20.2` | `1.20.8` |\n| [express](https://github.com/expressjs/express) | `4.19.2` | `4.22.3` |\n| [brace-expansion](https://github.com/juliangruber/brace-expansion) | `2.0.1` | `2.1.7` |\n| [cookie](https://github.com/jshttp/cookie) | `0.4.2` | `0.7.2` |\n| [cross-spawn](https://github.com/moxystudio/node-cross-spawn) | `7.0.3` | `7.0.6` |\n| [drizzle-orm](https://github.com/drizzle-team/drizzle-orm) | `0.32.2` | `0.45.3` |\n| [engine.io](https://github.com/socketio/socket.io) | `6.5.5` | `6.6.11` |\n| [express](https://github.com/expressjs/express) | `4.19.2` | `5.2.1` |\n| [fast-uri](https://github.com/fastify/fast-uri) | `3.0.1` | `3.1.8` |\n| [fast-xml-parser](https://github.com/NaturalIntelligence/fast-xml-parser) | `4.4.1` | `5.11.1` |\n| [form-data](https://github.com/form-data/form-data) | `4.0.0` | `4.0.6` |\n| [glob](https://github.com/isaacs/node-glob) | `10.4.5` | `7.2.3` |\n| [ip-address](https://github.com/beaugunderson/ip-address) | `9.0.5` | `10.7.2` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `4.1.0` | `5.4.1` |\n| [jws](https://github.com/brianloveswords/node-jws) | `3.2.2` | `4.0.1` |\n| [minimatch](https://github.com/isaacs/minimatch) | `9.0.5` | `3.1.5` |\n| [on-headers](https://github.com/jshttp/on-headers) | `1.0.2` | `1.1.0` |\n| [path-to-regexp](https://github.com/pillarjs/path-to-regexp) | `0.1.7` | `8.4.2` |\n| [qs](https://github.com/ljharb/qs) | `6.11.0` | `6.16.0` |\n| [send](https://github.com/pillarjs/send) | `0.18.0` | `1.2.1` |\n| [serve-static](https://github.com/expressjs/serve-static) | `1.15.0` | `2.2.1` |\n| [socket.io-parser](https://github.com/socketio/socket.io) | `4.2.4` | `4.2.7` |\n| [ws](https://github.com/websockets/ws) | `8.17.1` | `8.21.3` |\n| [yaml](https://github.com/eemeli/yaml) | `2.5.0` | `2.9.1` |\n\n\nUpdates `@babel/runtime` from 7.25.0 to 7.29.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/babel/babel/releases\"\u003e@​babel/runtime's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.29.7 (2026-05-25)\u003c/h2\u003e\n\u003cp\u003eRe-release all packages with npm provenance attestations\u003c/p\u003e\n\u003ch2\u003ev7.29.6 (2026-05-25)\u003c/h2\u003e\n\u003ch4\u003e:bug: Bug Fix\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-generator\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/18014\"\u003e#18014\u003c/a\u003e Catchup source map position in preserveFormat (\u003ca href=\"https://github.com/nicolo-ribaudo\"\u003e\u003ccode\u003e@​nicolo-ribaudo\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-core\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/18001\"\u003e#18001\u003c/a\u003e [7.x packport]Improve input source map handling (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-core\u003c/code\u003e, \u003ccode\u003ebabel-generator\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17998\"\u003e#17998\u003c/a\u003e Preserve original identifier names from input sourcemaps (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-runtime/issues/17992\"\u003e#17992\u003c/a\u003e) (\u003ca href=\"https://github.com/Andarist\"\u003e\u003ccode\u003e@​Andarist\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCommitters: 3\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eHuáng Jùnliàng (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eMateusz Burzyński (\u003ca href=\"https://github.com/Andarist\"\u003e\u003ccode\u003e@​Andarist\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eNicolò Ribaudo (\u003ca href=\"https://github.com/nicolo-ribaudo\"\u003e\u003ccode\u003e@​nicolo-ribaudo\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.29.5 (2026-05-05)\u003c/h2\u003e\n\u003ch4\u003e:house:  Internal\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-preset-env\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate \u003ccode\u003e@babel/*\u003c/code\u003e dependencies\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.29.4 (2026-05-05)\u003c/h2\u003e\n\u003ch4\u003e:bug: Bug Fix\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-plugin-transform-modules-systemjs\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17974\"\u003e#17974\u003c/a\u003e [7.x backport]fix(systemjs): improve module string name support (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCommitters: 1\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eHuáng Jùnliàng (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.29.3 (2026-04-30)\u003c/h2\u003e\n\u003ch4\u003e:eyeglasses: Spec Compliance\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-parser\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17923\"\u003e#17923\u003c/a\u003e Support flow extends bound (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003e:bug: Bug Fix\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-helper-create-class-features-plugin\u003c/code\u003e, \u003ccode\u003ebabel-plugin-proposal-decorators\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17931\"\u003e#17931\u003c/a\u003e fix(decorators): replace super within all removed static elements (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-register\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17915\"\u003e#17915\u003c/a\u003e Fix thread synchronization issues in \u003ccode\u003e@babel/register\u003c/code\u003e (\u003ca href=\"https://github.com/liuxingbaoyu\"\u003e\u003ccode\u003e@​liuxingbaoyu\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-compat-data\u003c/code\u003e, \u003ccode\u003ebabel-plugin-bugfix-safari-rest-destructuring-rhs-array\u003c/code\u003e, \u003ccode\u003ebabel-preset-env\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17788\"\u003e#17788\u003c/a\u003e Add bugfix plugin for Safari array rest destructuring bug (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003e:nail_care: Polish\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-parser\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/4fba7541180bf5f58256d8e358b544e3831ad090\"\u003e\u003ccode\u003e4fba754\u003c/code\u003e\u003c/a\u003e v7.29.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/37d5595fca9f188f0534458180611f2e776acd31\"\u003e\u003ccode\u003e37d5595\u003c/code\u003e\u003c/a\u003e v7.29.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/d7f400889567ae18ef9ac41b024b5120f6060e17\"\u003e\u003ccode\u003ed7f4008\u003c/code\u003e\u003c/a\u003e v7.28.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/35055e392079a65830b7bf5b1d1c1fc4de90a78f\"\u003e\u003ccode\u003e35055e3\u003c/code\u003e\u003c/a\u003e v7.28.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/ef155f5ca83c73dbc1ea8d95216830b7dc3b0ac2\"\u003e\u003ccode\u003eef155f5\u003c/code\u003e\u003c/a\u003e v7.28.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/cac0ff4c3426eed30b4d27e7971b348da7c9f1e6\"\u003e\u003ccode\u003ecac0ff4\u003c/code\u003e\u003c/a\u003e v7.28.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/f68ac511f091f6d1f698e8ce59cd668d3bfc6102\"\u003e\u003ccode\u003ef68ac51\u003c/code\u003e\u003c/a\u003e chore: Avoid CITGM errors (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-runtime/issues/17382\"\u003e#17382\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/baa4cb8b9f8a551d7dae9042b19ea2f74df6b110\"\u003e\u003ccode\u003ebaa4cb8\u003c/code\u003e\u003c/a\u003e v7.27.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/7d069309fdfcedda2928a043f6f7c98135c1242a\"\u003e\u003ccode\u003e7d06930\u003c/code\u003e\u003c/a\u003e v7.27.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/5b9468d9bf1ab4f427241673e9f03593da115a69\"\u003e\u003ccode\u003e5b9468d\u003c/code\u003e\u003c/a\u003e Reduce \u003ccode\u003eregenerator\u003c/code\u003e size more (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-runtime/issues/17287\"\u003e#17287\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/babel/babel/commits/v7.29.7/packages/babel-runtime\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​babel/runtime\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@langchain/core` from 0.2.24 to 1.2.12\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/langchain-ai/langchainjs/releases\"\u003e@​langchain/core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.2.12\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langchainjs/pull/11675\"\u003e#11675\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langchainjs/commit/030a726639e0147488bc8c23c063a2e72b004c2e\"\u003e\u003ccode\u003e030a726\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/hntrl\"\u003e\u003ccode\u003e@​hntrl\u003c/code\u003e\u003c/a\u003e! - Preserve structured tool arguments in tracer run inputs.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.2.11\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langchainjs/pull/11603\"\u003e#11603\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langchainjs/commit/fec9cd87b01976014dd549bd2cf7849aee89a566\"\u003e\u003ccode\u003efec9cd8\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/thushanth-bengre-langchain\"\u003e\u003ccode\u003e@​thushanth-bengre-langchain\u003c/code\u003e\u003c/a\u003e! - fix(core): build streaming \u003ccode\u003ellmOutput.tokenUsage\u003c/code\u003e from the fully-accumulated chunk instead of whichever individual chunk's \u003ccode\u003eusage_metadata\u003c/code\u003e arrived last\u003c/p\u003e\n\u003cp\u003eAffects both core streaming paths — \u003ccode\u003e.stream()\u003c/code\u003e/\u003ccode\u003e.streamEvents()\u003c/code\u003e (\u003ccode\u003e_streamIterator\u003c/code\u003e) and \u003ccode\u003e.invoke()\u003c/code\u003e/\u003ccode\u003e.generate()\u003c/code\u003e when a streaming-preferring callback is attached (\u003ccode\u003e_generateWithCache\u003c/code\u003e's \u003ccode\u003ehasStreamingHandler\u003c/code\u003e branch). Previously, \u003ccode\u003ellmOutput.tokenUsage\u003c/code\u003e was overwritten by each chunk in turn, so only the last chunk carrying \u003ccode\u003eusage_metadata\u003c/code\u003e won — correct for providers that emit one cumulative total on a final chunk, but wrong for providers (e.g. \u003ccode\u003e@langchain/google\u003c/code\u003e, \u003ccode\u003e@langchain/anthropic\u003c/code\u003e) that emit \u003ccode\u003eusage_metadata\u003c/code\u003e as a per-chunk delta across multiple chunks, where the values must be summed.\u003c/p\u003e\n\u003cp\u003eNote for provider authors: this assumes each streamed chunk's \u003ccode\u003eusage_metadata\u003c/code\u003e is either a per-chunk delta or appears only on a single final chunk. A provider that instead repeats a cumulative total on every chunk will now see it summed (and inflated) in \u003ccode\u003ellmOutput.tokenUsage\u003c/code\u003e, matching the existing behavior of the correctly-working \u003ccode\u003emessage.usage_metadata\u003c/code\u003e field.\u003c/p\u003e\n\u003cp\u003eAlso fixes \u003ccode\u003e@langchain/google\u003c/code\u003e's \u003ccode\u003einvoke({streaming: true})\u003c/code\u003e path (no streaming-preferring callback attached), where \u003ccode\u003ellmOutput\u003c/code\u003e was never populated at all.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langchainjs/pull/11590\"\u003e#11590\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langchainjs/commit/ffebdc2f00f3290d19f85e5afd6a297920ae584c\"\u003e\u003ccode\u003effebdc2\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/thushanth-bengre-langchain\"\u003e\u003ccode\u003e@​thushanth-bengre-langchain\u003c/code\u003e\u003c/a\u003e! - Fix OpenAI Responses API replay under Zero Data Retention when a response contains more than one reasoning item, for both v0 and v1. In v0, the default replay path now reuses \u003ccode\u003eresponse_metadata.output\u003c/code\u003e directly, preserving every reasoning item's \u003ccode\u003eid\u003c/code\u003e/\u003ccode\u003eencrypted_content\u003c/code\u003e in original order. In v1, \u003ccode\u003eAIMessage.contentBlocks\u003c/code\u003e (\u003ccode\u003eoutputVersion: \u0026quot;v1\u0026quot;\u003c/code\u003e) is fixed the same way. \u003ccode\u003eadditional_kwargs.reasoning\u003c/code\u003e is unchanged.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.2.10\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langchainjs/pull/10047\"\u003e#10047\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langchainjs/commit/ff1248fd49dacdb35f5da128278cd777068481d7\"\u003e\u003ccode\u003eff1248f\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/afirstenberg\"\u003e\u003ccode\u003e@​afirstenberg\u003c/code\u003e\u003c/a\u003e! - fix(core): BaseMessage.text use contentBlocks\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.2.9\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langchainjs/pull/11402\"\u003e#11402\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langchainjs/commit/43e439698fa7794c10ab8d7355d4433e058e4d62\"\u003e\u003ccode\u003e43e4396\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/thushanth-bengre-langchain\"\u003e\u003ccode\u003e@​thushanth-bengre-langchain\u003c/code\u003e\u003c/a\u003e! - Fix ChatVertexAI/ChatGoogle content blocks: include \u003ccode\u003etool_call\u003c/code\u003e blocks from \u003ccode\u003emessage.tool_calls\u003c/code\u003e and skip spurious empty \u003ccode\u003etext\u003c/code\u003e blocks in \u003ccode\u003econtentBlocks\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.2.8\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langchainjs/pull/11369\"\u003e#11369\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langchainjs/commit/d6ad9735640a6c729f81ef79361acc5e83c526f1\"\u003e\u003ccode\u003ed6ad973\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/hntrl\"\u003e\u003ccode\u003e@​hntrl\u003c/code\u003e\u003c/a\u003e! - fix(langchain): use unified endpoint for gateway\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langchainjs/pull/11342\"\u003e#11342\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langchainjs/commit/3b0e4c48a31811031a460c4d95519a7c1163dc41\"\u003e\u003ccode\u003e3b0e4c4\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/thushanth-bengre-langchain\"\u003e\u003ccode\u003e@​thushanth-bengre-langchain\u003c/code\u003e\u003c/a\u003e! - feat(core): mark errors as retryable or not, and stop retrying the ones that aren't\u003c/p\u003e\n\u003cp\u003eRetry middleware retried every failure up to \u003ccode\u003emaxRetries\u003c/code\u003e, including deterministic ones like a bad API key or an unknown model. Retries also nest, so a single such failure could cost dozens of API calls.\u003c/p\u003e\n\u003cp\u003e\u003ccode\u003e@langchain/core/errors\u003c/code\u003e adds \u003ccode\u003estampRetryable(error, retryable)\u003c/code\u003e and \u003ccode\u003egetRetryable(error)\u003c/code\u003e. Marking an error leaves its class and shape untouched, so a provider SDK error can be classified without breaking \u003ccode\u003einstanceof\u003c/code\u003e. \u003ccode\u003egetRetryable\u003c/code\u003e returns \u003ccode\u003eundefined\u003c/code\u003e for errors nobody classified, and both are exported so tool authors can mark their own failures.\u003c/p\u003e\n\u003cp\u003e\u003ccode\u003emodelRetryMiddleware\u003c/code\u003e and \u003ccode\u003etoolRetryMiddleware\u003c/code\u003e now respect the mark by default, and retries stop as soon as one is found rather than each layer spending its own budget. Aborted calls, context overflow, and oversized payloads are marked non-retryable out of the box.\nModels accept a per-call \u003ccode\u003emaxRetries\u003c/code\u003e so a surrounding retry loop can take over.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eBehavior change:\u003c/strong\u003e errors marked non-retryable now fail on the first attempt. Unclassified errors — including any from third-party integrations or custom tools — retry exactly as before. Pass \u003ccode\u003eretryOn: () =\u0026gt; true\u003c/code\u003e to restore the old default. A custom \u003ccode\u003eonFailedAttempt\u003c/code\u003e replaces the built-in handler and opts out of marking.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/langchain-ai/langchainjs/commits/@langchain/core@1.2.12\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​langchain/core\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `langsmith` from 0.1.41 to 0.10.5\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/langchain-ai/langsmith-sdk/releases\"\u003elangsmith's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev0.10.5\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore: sync langsmith_api by \u003ca href=\"https://github.com/langtions-bot\"\u003e\u003ccode\u003e@​langtions-bot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3205\"\u003elangchain-ai/langsmith-sdk#3205\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: patch high-severity JS dependencies by \u003ca href=\"https://github.com/jkennedyvz\"\u003e\u003ccode\u003e@​jkennedyvz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3210\"\u003elangchain-ai/langsmith-sdk#3210\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(js): 0.8.3 by \u003ca href=\"https://github.com/KiewanVillatel\"\u003e\u003ccode\u003e@​KiewanVillatel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3213\"\u003elangchain-ai/langsmith-sdk#3213\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(python): bump py version to 0.10.5 by \u003ca href=\"https://github.com/KiewanVillatel\"\u003e\u003ccode\u003e@​KiewanVillatel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3212\"\u003elangchain-ai/langsmith-sdk#3212\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/langchain-ai/langsmith-sdk/compare/v0.10.4...v0.10.5\"\u003ehttps://github.com/langchain-ai/langsmith-sdk/compare/v0.10.4...v0.10.5\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev0.10.4\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003erelease(js): 0.8.2 by \u003ca href=\"https://github.com/KiewanVillatel\"\u003e\u003ccode\u003e@​KiewanVillatel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3204\"\u003elangchain-ai/langsmith-sdk#3204\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(livekit): capture realtime user transcript via instrument_session by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3201\"\u003elangchain-ai/langsmith-sdk#3201\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(voice): capture OpenAI Agents realtime model costs by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3193\"\u003elangchain-ai/langsmith-sdk#3193\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(voice): capture Google ADK Live (Gemini) model costs by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3194\"\u003elangchain-ai/langsmith-sdk#3194\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(python): bump py version to 0.10.4 by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3207\"\u003elangchain-ai/langsmith-sdk#3207\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/langchain-ai/langsmith-sdk/compare/v0.10.3...v0.10.4\"\u003ehttps://github.com/langchain-ai/langsmith-sdk/compare/v0.10.3...v0.10.4\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev0.10.3\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: Auto-Batch Processing Drops Workspace Override Leading to Cross-Tenant Data Leakage by \u003ca href=\"https://github.com/corridor-security\"\u003e\u003ccode\u003e@​corridor-security\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3174\"\u003elangchain-ai/langsmith-sdk#3174\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: bump _MIN_BACKEND_VERSION to 0.16.13rc1 by \u003ca href=\"https://github.com/langtions-bot\"\u003e\u003ccode\u003e@​langtions-bot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3182\"\u003elangchain-ai/langsmith-sdk#3182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(voice): capture LiveKit realtime model costs by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3191\"\u003elangchain-ai/langsmith-sdk#3191\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(voice): capture Pipecat TTS/realtime model costs by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3192\"\u003elangchain-ai/langsmith-sdk#3192\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump esbuild from 0.17.19 to 0.28.1 in /js/internal/environment_tests/test-exports-cf in the npm_and_yarn group across 1 directory by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3172\"\u003elangchain-ai/langsmith-sdk#3172\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump nltk from 3.9.4 to 3.10.0 in /python by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3186\"\u003elangchain-ai/langsmith-sdk#3186\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump soupsieve from 2.8.3 to 2.8.4 in /python by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3200\"\u003elangchain-ai/langsmith-sdk#3200\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: sync langsmith_api by \u003ca href=\"https://github.com/langtions-bot\"\u003e\u003ccode\u003e@​langtions-bot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3165\"\u003elangchain-ai/langsmith-sdk#3165\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(python): bump py version to 0.10.3 by \u003ca href=\"https://github.com/KiewanVillatel\"\u003e\u003ccode\u003e@​KiewanVillatel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3203\"\u003elangchain-ai/langsmith-sdk#3203\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/langchain-ai/langsmith-sdk/compare/v0.10.2...v0.10.3\"\u003ehttps://github.com/langchain-ai/langsmith-sdk/compare/v0.10.2...v0.10.3\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev0.10.2\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003erelease(js): 0.8.1 by \u003ca href=\"https://github.com/KiewanVillatel\"\u003e\u003ccode\u003e@​KiewanVillatel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3185\"\u003elangchain-ai/langsmith-sdk#3185\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor(voice): move span attribute setters onto TranslatedSpan by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3179\"\u003elangchain-ai/langsmith-sdk#3179\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: add SmithDB by-key path to add_runs_to_annotation_queue (runs= param) [LSDK-287] by \u003ca href=\"https://github.com/ayoung19\"\u003e\u003ccode\u003e@​ayoung19\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3077\"\u003elangchain-ai/langsmith-sdk#3077\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor(livekit + pipecat): Refactor for clarity by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3187\"\u003elangchain-ai/langsmith-sdk#3187\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(py): re-export OpenAPI client exceptions from langsmith package by \u003ca href=\"https://github.com/KiewanVillatel\"\u003e\u003ccode\u003e@​KiewanVillatel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3188\"\u003elangchain-ai/langsmith-sdk#3188\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(python): bump py version to 0.10.2 by \u003ca href=\"https://github.com/KiewanVillatel\"\u003e\u003ccode\u003e@​KiewanVillatel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3189\"\u003elangchain-ai/langsmith-sdk#3189\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ayoung19\"\u003e\u003ccode\u003e@​ayoung19\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3077\"\u003elangchain-ai/langsmith-sdk#3077\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/langchain-ai/langsmith-sdk/compare/v0.10.1...v0.10.2\"\u003ehttps://github.com/langchain-ai/langsmith-sdk/compare/v0.10.1...v0.10.2\u003c/a\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/langchain-ai/langsmith-sdk/commits/v0.10.5\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for langsmith since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version modifies \u003ccode\u003eprepublish\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@smithy/config-resolver` from 3.0.5 to 3.0.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/smithy-lang/smithy-typescript/releases\"\u003e@​smithy/config-resolver's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​smithy/signature-v4\u003c/code\u003e\u003ca href=\"https://github.com/5\"\u003e\u003ccode\u003e@​5\u003c/code\u003e\u003c/a\u003e.7.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e2033184: preserve non-ASCII whitespace in canonical headers\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​smithy/signature-v4\u003c/code\u003e\u003ca href=\"https://github.com/5\"\u003e\u003ccode\u003e@​5\u003c/code\u003e\u003c/a\u003e.7.3\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ea825452: switch for-in loops to guarded\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [e82a22b]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [a825452]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.33.3\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​smithy/signature-v4a\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.6.2\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e99c3f91: Restore npm provenance attestations. No functional changes.\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [99c3f91]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.33.2\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/signature-v4\u003c/code\u003e\u003ca href=\"https://github.com/5\"\u003e\u003ccode\u003e@​5\u003c/code\u003e\u003c/a\u003e.7.2\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/types\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.17.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​smithy/util-utf8\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.5.2\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e99c3f91: Restore npm provenance attestations. No functional changes.\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [99c3f91]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.33.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​smithy/util-base64\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.6.2\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e99c3f91: Restore npm provenance attestations. No functional changes.\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [99c3f91]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.33.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​smithy/signature-v4\u003c/code\u003e\u003ca href=\"https://github.com/5\"\u003e\u003ccode\u003e@​5\u003c/code\u003e\u003c/a\u003e.7.2\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e99c3f91: Restore npm provenance attestations. No functional changes.\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [99c3f91]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.33.2\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/types\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.17.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​smithy/md5-js\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.5.2\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e99c3f91: Restore npm provenance attestations. No functional changes.\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [99c3f91]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.33.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/smithy-lang/smithy-typescript/blob/@smithy/config-resolver@3.0.13/packages/config-resolver/CHANGELOG.md\"\u003e@​smithy/config-resolver's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.0.13\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [b52b4e8]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/types\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.7.2\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/node-config-provider\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.12\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/util-middleware\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.11\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.12\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [fcd5ca8]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/types\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.7.1\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/node-config-provider\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.11\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/util-middleware\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.10\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.11\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [cd1929b]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/types\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.7.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/node-config-provider\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.10\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/util-middleware\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.9\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.10\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [84bec05]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/types\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.6.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/node-config-provider\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.9\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/util-middleware\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.8\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.9\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [a4c1285]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/types\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.5.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/node-config-provider\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.8\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/util-middleware\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.7\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.8\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [e7b438b]\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/50d8c5457e7feea41169a37fb2fdb1e448f82e9e\"\u003e\u003ccode\u003e50d8c54\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/7877c9e3681a9b5aa6e16d15ce8bce8fda0477ea\"\u003e\u003ccode\u003e7877c9e\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/012775ca4d9f3c9c3b0067fafefeda5be421d404\"\u003e\u003ccode\u003e012775c\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/cd1929bb6e1eefe5430804d90714f1e60cd438d5\"\u003e\u003ccode\u003ecd1929b\u003c/code\u003e\u003c/a\u003e test: convert tests to vitest (\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/tree/HEAD/packages/config-resolver/issues/1440\"\u003e#1440\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/5de4524d147db44e627dadf222238552d6ff613d\"\u003e\u003ccode\u003e5de4524\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/80515513f9b4ff3e6140d335a8edfb2126b8c352\"\u003e\u003ccode\u003e8051551\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/b12dc1de610c91d3daab39315a62b04826a93439\"\u003e\u003ccode\u003eb12dc1d\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/b2be4f32e45432da17b0dcbc777a11855a53a13f\"\u003e\u003ccode\u003eb2be4f3\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/f95b9c3eeda338ff4e69c90e786b852657ceb199\"\u003e\u003ccode\u003ef95b9c3\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commits/@smithy/config-resolver@3.0.13/packages/config-resolver\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ajv` from 8.17.1 to 8.20.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ajv-validator/ajv/releases\"\u003eajv's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.20.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: add support for node 22/24, drop node 16/21 by \u003ca href=\"https://github.com/jasoniangreen\"\u003e\u003ccode\u003e@​jasoniangreen\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2580\"\u003eajv-validator/ajv#2580\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: add ES2022.RegExp for RegExpIndicesArray by \u003ca href=\"https://github.com/SignpostMarv\"\u003e\u003ccode\u003e@​SignpostMarv\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2604\"\u003eajv-validator/ajv#2604\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/ajv-validator/ajv/compare/v8.19.0...v8.20.0\"\u003ehttps://github.com/ajv-validator/ajv/compare/v8.19.0...v8.20.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev8.19.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix prototype pollution via format keyword using $data ref by \u003ca href=\"https://github.com/epoberezkin\"\u003e\u003ccode\u003e@​epoberezkin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2607\"\u003eajv-validator/ajv#2607\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/ajv-validator/ajv/compare/v8.18.0...v8.19.0\"\u003ehttps://github.com/ajv-validator/ajv/compare/v8.18.0...v8.19.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev8.18.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: allow tree-shaking by adding \u003ccode\u003e\u0026quot;sideEffects\u0026quot;: false\u003c/code\u003e to \u003ccode\u003epackage.json\u003c/code\u003e by \u003ca href=\"https://github.com/josdejong\"\u003e\u003ccode\u003e@​josdejong\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2480\"\u003eajv-validator/ajv#2480\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2482\"\u003e#2482\u003c/a\u003e Infinity and NaN serialise to null by \u003ca href=\"https://github.com/jasoniangreen\"\u003e\u003ccode\u003e@​jasoniangreen\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2487\"\u003eajv-validator/ajv#2487\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: small grammatical error in managing-schemas.md by \u003ca href=\"https://github.com/monteiro-renato\"\u003e\u003ccode\u003e@​monteiro-renato\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2508\"\u003eajv-validator/ajv#2508\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: typos in schema-language.md by \u003ca href=\"https://github.com/monteiro-renato\"\u003e\u003ccode\u003e@​monteiro-renato\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2507\"\u003eajv-validator/ajv#2507\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(pattern): use configured RegExp engine with $data keyword to mitigate ReDoS attacks (CVE-2025-69873) by \u003ca href=\"https://github.com/epoberezkin\"\u003e\u003ccode\u003e@​epoberezkin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2586\"\u003eajv-validator/ajv#2586\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/josdejong\"\u003e\u003ccode\u003e@​josdejong\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2480\"\u003eajv-validator/ajv#2480\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/monteiro-renato\"\u003e\u003ccode\u003e@​monteiro-renato\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2508\"\u003eajv-validator/ajv#2508\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/ajv-validator/ajv/compare/v8.17.1...v8.18.0\"\u003ehttps://github.com/ajv-validator/ajv/compare/v8.17.1...v8.18.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/0fba0b8e649909613cfce0999b149cd08f4a4987\"\u003e\u003ccode\u003e0fba0b8\u003c/code\u003e\u003c/a\u003e 8.20.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/9caf8d64409b05e2c670b3ff09cf7ca07937342e\"\u003e\u003ccode\u003e9caf8d6\u003c/code\u003e\u003c/a\u003e fix: add ES2022.RegExp for RegExpIndicesArray; fixes \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2603\"\u003eajv-validator/ajv#2603\u003c/a\u003e (...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/206535071f776f57737394c8896d4b2dc2bfb9a3\"\u003e\u003ccode\u003e2065350\u003c/code\u003e\u003c/a\u003e fix: add support for node 22/24, drop node 16/21 (\u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2580\"\u003e#2580\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/154b58d690c6596e09ca676e12720ab8234ee3d2\"\u003e\u003ccode\u003e154b58d\u003c/code\u003e\u003c/a\u003e 8.19.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/e8d2bdc501b3ba6f03922db5e595770d4763d9da\"\u003e\u003ccode\u003ee8d2bdc\u003c/code\u003e\u003c/a\u003e test/fix prototype pollution via $data ref with format keyword (\u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2607\"\u003e#2607\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/142ce84b807c4fe66e619c22480a28d0e4bd50fa\"\u003e\u003ccode\u003e142ce84\u003c/code\u003e\u003c/a\u003e 8.18.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/720a23fa453ffae8340e92c9b0fe886c54cfe0d5\"\u003e\u003ccode\u003e720a23f\u003c/code\u003e\u003c/a\u003e fix(pattern): use configured RegExp engine with $data keyword to mitigate ReD...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/82735a15826a30cc51e97a1bbfb59b3d388e4b98\"\u003e\u003ccode\u003e82735a1\u003c/code\u003e\u003c/a\u003e fix: typos in schema-language.md (\u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2507\"\u003e#2507\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/b17ec32cd97542e90ae27231d8a8bce88b9e53b6\"\u003e\u003ccode\u003eb17ec32\u003c/code\u003e\u003c/a\u003e fix: small grammatical error in managing-schemas.md (\u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2508\"\u003e#2508\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/69568d08564303e2c32a2de61feb833b41075f96\"\u003e\u003ccode\u003e69568d0\u003c/code\u003e\u003c/a\u003e fix: \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2482\"\u003e#2482\u003c/a\u003e Infinity and NaN serialise to null (\u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2487\"\u003e#2487\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/ajv-validator/ajv/compare/v8.17.1...v8.20.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `basic-ftp` from 5.0.5 to 5.3.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/releases\"\u003ebasic-ftp's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.3.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed: Protect against unbounded control response, fixes \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rpmf-866q-6p89\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rpmf-866q-6p89\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.3.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eChanged: Introduced an upper bound for total bytes of directory listing, fixes \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rp42-5vxx-qpwr\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rp42-5vxx-qpwr\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eAdded: Option to increase the upper bound for total bytes of directory listing in Client constructor.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.2.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed: Improve control character rejection, fixes \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-6v7q-wjvx-w8wg\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-6v7q-wjvx-w8wg\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.2.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed: Reject control character injection attempts using paths. See \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-chqc-8p9q-pq6q\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-chqc-8p9q-pq6q\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.2.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eChanged: Skip files with invalid name in downloadToDir.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded: Add the option to prevent the use of separate transfer host IPs when using PASV. (\u003ca href=\"https://redirect.github.com/patrickjuchli/basic-ftp/issues/259\"\u003e#259\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/blob/master/CHANGELOG.md\"\u003ebasic-ftp's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.3.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed: Protect against unbounded control response, fixes \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rpmf-866q-6p89\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rpmf-866q-6p89\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.3.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eChanged: Introduced an upper bound for total bytes of directory listing, fixes \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rp42-5vxx-qpwr\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rp42-5vxx-qpwr\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eAdded: Option to increase the upper bound for total bytes of directory listing in Client constructor.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.2.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed: Improve control character rejection, fixes \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-6v7q-wjvx-w8wg\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-6v7q-wjvx-w8wg\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.2.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed: Reject control character injection attempts using paths. See \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-chqc-8p9q-pq6q\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-chqc-8p9q-pq6q\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.2.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eChanged: Skip files with invalid name in downloadToDir. Fixes security vulnerability CVE-2026-27699, see \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-5rq4-664w-9x2c\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-5rq4-664w-9x2c\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded: Add the option to prevent the use of separate transfer host IPs when using PASV. (\u003ca href=\"https://redirect.github.com/patrickjuchli/basic-ftp/issues/259\"\u003e#259\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/980371bb6057d78d479b5cfc18683392abd2c45f\"\u003e\u003ccode\u003e980371b\u003c/code\u003e\u003c/a\u003e Guard against unbounded control response\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/50827c73ca6c1d786c97276e47be8a33d0f2277d\"\u003e\u003ccode\u003e50827c7\u003c/code\u003e\u003c/a\u003e Adjust changelog to match release notes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/c9378a8ff73b96e89f17525266d648ce495286a6\"\u003e\u003ccode\u003ec9378a8\u003c/code\u003e\u003c/a\u003e Fix test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/22abe4356782f499d97418f0a7a2c3bb02db72b7\"\u003e\u003ccode\u003e22abe43\u003c/code\u003e\u003c/a\u003e Update Github Actions\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/0feaaec3d4394bb3470edd006df933d2b6e64689\"\u003e\u003ccode\u003e0feaaec\u003c/code\u003e\u003c/a\u003e Fix test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/6629d7d7abe9169543a8ff60a6dc32e6fe7cf91c\"\u003e\u003ccode\u003e6629d7d\u003c/code\u003e\u003c/a\u003e Improve error message\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/9c3bf4f893470cd2418b54862eb9b609efc3d335\"\u003e\u003ccode\u003e9c3bf4f\u003c/code\u003e\u003c/a\u003e Set higher default value for max size of directory listing\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/acd3942c81ac27caf998b0ed13f3ce85c0fc6320\"\u003e\u003ccode\u003eacd3942\u003c/code\u003e\u003c/a\u003e Bump version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/130442932b1ef27a550c915f231c07eae01e665a\"\u003e\u003ccode\u003e1304429\u003c/code\u003e\u003c/a\u003e Offer maxListingBytes as an option\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/5cb5367e86d8a2991224fb2b82e4933d27c07904\"\u003e\u003ccode\u003e5cb5367\u003c/code\u003e\u003c/a\u003e Add bounded StringWriter\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/compare/v5.0.5...v5.3.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~patrickjuchli\"\u003epatrickjuchli\u003c/a\u003e, a new releaser for basic-ftp since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `body-parser` from 1.20.2 to 1.20.8\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/body-parser/releases\"\u003ebody-parser's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.20.8\u003c/h2\u003e\n\u003ch2\u003eImportant\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eSame code base as \u003ca href=\"https://github.com/expressjs/body-parser/releases/tag/1.20.7\"\u003e1.20.7\u003c/a\u003e. This was created to test the new release process.\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eci: backport npm-publish workflow from master by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/769\"\u003eexpressjs/body-parser#769\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e1.20.8 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/770\"\u003eexpressjs/body-parser#770\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/body-parser/compare/1.20.7...1.20.8\"\u003ehttps://github.com/expressjs/body-parser/compare/1.20.7...1.20.8\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e1.20.7\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edocs: include security fix in 1.20.6 changes by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/747\"\u003eexpressjs/body-parser#747\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps: qs@~6.16.0 by \u003ca href=\"https://github.com/krzysdz\"\u003e\u003ccode\u003e@​krzysdz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/761\"\u003eexpressjs/body-parser#761\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e1.20.7 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/767\"\u003eexpressjs/body-parser#767\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/body-parser/compare/1.20.6...1.20.7\"\u003ehttps://github.com/expressjs/body-parser/compare/1.20.6...1.20.7\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e1.20.6\u003c/h2\u003e\n\u003ch2\u003eImportant: Security\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2025-13466\"\u003eCVE-2026-12590\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/body-parser/security/advisories/GHSA-v422-hmwv-36x6\"\u003eGHSA-v422-hmwv-36x6\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: improve limit option validation by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/741\"\u003eexpressjs/body-parser#741\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/body-parser/compare/1.20.5...1.20.6\"\u003ehttps://github.com/expressjs/body-parser/compare/1.20.5...1.20.6\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev1.20.5\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cp\u003eThe reason for this release is a fix to the extended urlencoded parser returning objects instead of arrays for large array inputs (\u0026gt; 100) on qs@6.14.2+. (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/716\"\u003eexpressjs/body-parser#716\u003c/a\u003e)\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003erefactor(json): simplify strict mode error string construction by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/692\"\u003eexpressjs/body-parser#692\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: correct off-by-one error in parameterCount by \u003ca href=\"https://github.com/abhu85\"\u003e\u003ccode\u003e@​abhu85\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/716\"\u003eexpressjs/body-parser#716\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps(qs): bump qs to 6.15.1 by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/722\"\u003eexpressjs/body-parser#722\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRelease: 1.20.5 by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/721\"\u003eexpressjs/body-parser#721\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/abhu85\"\u003e\u003ccode\u003e@​abhu85\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/716\"\u003eexpressjs/body-parser#716\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSpecial thanks to triager \u003ca href=\"https://github.com/krzysdz\"\u003e\u003ccode\u003e@​krzysdz\u003c/code\u003e\u003c/a\u003e for keeping this on our radar and effectively triaging the specific issue!\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/body-parser/compare/1.20.4...1.20.5\"\u003ehttps://github.com/expressjs/body-parser/compare/1.20.4...1.20.5\u003c/a\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/body-parser/blob/1.20.8/HISTORY.md\"\u003ebody-parser's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.20.8\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eSame code base as 1.20.7. This was created to test the new release process.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.20.7\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: qs@~6.16.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.20.6\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://github.com/expressjs/body-parser/security/advisories/GHSA-v422-hmwv-36x6\"\u003eGHSA-v422-hmwv-36x6\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: improve \u003ccode\u003elimit\u003c/code\u003e option validation (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/698\"\u003e#698\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eInvalid \u003ccode\u003elimit\u003c/code\u003e values (e.g. unparseable strings or \u003ccode\u003eNaN\u003c/code\u003e) now throw instead of being silently ignored, which previously disabled size limit enforcement\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enull\u003c/code\u003e and \u003ccode\u003eundefined\u003c/code\u003e fall back to the default 100kb limit\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.20.5\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003erefactor(json): simplify strict mode error string construction\u003c/li\u003e\n\u003cli\u003efix: extended urlencoded parsing of arrays with \u0026gt;100 elements (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/716\"\u003e#716\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003edeps: qs@~6.15.1\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.20.4\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: qs@~6.14.0\u003c/li\u003e\n\u003cli\u003edeps: use tilde notation for dependencies\u003c/li\u003e\n\u003cli\u003edeps: http-errors@~2.0.1\u003c/li\u003e\n\u003cli\u003edeps: raw-body@~2.5.3\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.20.3\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: qs@6.13.0\u003c/li\u003e\n\u003cli\u003eadd \u003ccode\u003edepth\u003c/code\u003e option to customize the depth level in the parser\u003c/li\u003e\n\u003cli\u003eIMPORTANT: The default \u003ccode\u003edepth\u003c/code\u003e level for parsing URL-encoded data is now \u003ccode\u003e32\u003c/code\u003e (previously was \u003ccode\u003eInfinity\u003c/code\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/5c08c2008eac79abddb8abfa5095491d02958d56\"\u003e\u003ccode\u003e5c08c20\u003c/code\u003e\u003c/a\u003e 1.20.8 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/770\"\u003e#770\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/0cea4f42a40996eafac441d0e71084afbe1407d4\"\u003e\u003ccode\u003e0cea4f4\u003c/code\u003e\u003c/a\u003e ci: backport npm-publish workflow from master (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/769\"\u003e#769\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/0f0f0d7f96fc7444407aef85a6d1fa363279e654\"\u003e\u003ccode\u003e0f0f0d7\u003c/code\u003e\u003c/a\u003e 1.20.7 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/767\"\u003e#767\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/355eb04ade7c27f57f93a0e90e26ed6f121becc5\"\u003e\u003ccode\u003e355eb04\u003c/code\u003e\u003c/a\u003e deps: qs@~6.16.0 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/761\"\u003e#761\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/8be369a5f8b0f4070ebb7a0ae9aca12db9d8f947\"\u003e\u003ccode\u003e8be369a\u003c/code\u003e\u003c/a\u003e docs: include security fix in 1.20.6 changes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/5cc4fb8867c93a3aa4455927e38858c9ab89ff43\"\u003e\u003ccode\u003e5cc4fb8\u003c/code\u003e\u003c/a\u003e 1.20.6 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/746\"\u003e#746\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/3492672eee593d5c158f239b6e9115498a5dbeac\"\u003e\u003ccode\u003e3492672\u003c/code\u003e\u003c/a\u003e fix: improve limit option validation (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/741\"\u003e#741\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/0defdbe7f95ad0d3bc007d3a7c59c8c0ab9e6575\"\u003e\u003ccode\u003e0defdbe\u003c/code\u003e\u003c/a\u003e release(patch): 1.20.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/cd0e7a000c53e7be7262d303e57a352b6a00db7f\"\u003e\u003ccode\u003ecd0e7a0\u003c/code\u003e\u003c/a\u003e deps(qs): bump qs to 6.15.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/6f24d7e8bcd9860b136920926ce86da1a7dd1d51\"\u003e\u003ccode\u003e6f24d7e\u003c/code\u003e\u003c/a\u003e fix: correct off-by-one error in parameterCount (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/716\"\u003e#716\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/body-parser/compare/1.20.2...1.20.8\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for body-parser since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `express` from 4.19.2 to 4.22.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/express/releases\"\u003eexpress's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.22.2\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: restore \u0026gt;20 array parsing for \u003ccode\u003ereq.query\u003c/code\u003e repeated keys (\u003ca href=\"https://github.com/expressjs/express/commit/8d09bfe6d88983da5c3e12cfdd54782c4dc675db\"\u003e\u003ccode\u003e8d09bfe6\u003c/code\u003e\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eThis also unifies array-cap behavior across notations. Indexed notation (\u003ccode\u003ea[0]=...\u003c/code\u003e) was historically capped at qs's default \u003ccode\u003earrayLimit\u003c/code\u003e of 20 even in older qs versions; after this change it also allows up to 1000 items.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: qs@~6.15.1\u003c/li\u003e\n\u003cli\u003edeps: body-parser@~1.20.5\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/suuuuuuminnnnnn\"\u003e\u003ccode\u003e@​suuuuuuminnnnnn\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/7021\"\u003eexpressjs/express#7021\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SAY-5\"\u003e\u003ccode\u003e@​SAY-5\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/7181\"\u003eexpressjs/express#7181\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/express/compare/v4.22.1...v4.22.2\"\u003ehttps://github.com/expressjs/express/compare/v4.22.1...v4.22.2\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev4.22.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cblockquote\u003e\n\u003cp\u003e[!IMPORTANT]\u003cbr /\u003e\nThe prior release (4.22.0) included an erroneous breaking change related to the extended query parser. There is no actual security vulnerability associated with this behavior (CVE-2024-51999 has been rejected). The change has been fully reverted in this release.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003cul\u003e\n\u003cli\u003eRelease: 4.22.1 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6934\"\u003eexpressjs/express#6934\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/express/compare/4.22.0...v4.22.1\"\u003ehttps://github.com/expressjs/express/compare/4.22.0...v4.22.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e4.22.0\u003c/h2\u003e\n\u003ch2\u003eImportant: Security\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2024-51999\"\u003eCVE-2024-51999\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6\"\u003eGHSA-pj86-cfqh-vqx6\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRefactor: improve readability by \u003ca href=\"https://github.com/sazk07\"\u003e\u003ccode\u003e@​sazk07\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6190\"\u003eexpressjs/express#6190\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add support for Node.js@23.0 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6080\"\u003eexpressjs/express#6080\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMethod functions with no path should error by \u003ca href=\"https://github.com/wesleytodd\"\u003e\u003ccode\u003e@​wesleytodd\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/5957\"\u003eexpressjs/express#5957\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: updated github actions ci workflow by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6323\"\u003eexpressjs/express#6323\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: reorder \u003ccode\u003enpm i\u003c/code\u003e steps to fix ci for older node versions by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6336\"\u003eexpressjs/express#6336\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBackport: ci: add node.js 24 to test matrix by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6506\"\u003eexpressjs/express#6506\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(4.x): wider range for query test skip by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6513\"\u003eexpressjs/express#6513\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003euse tilde notation for certain dependencies by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6905\"\u003eexpressjs/express#6905\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps: qs@6.14.0 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6909\"\u003eexpressjs/express#6909\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps: use tilde notation for \u003ccode\u003eqs\u003c/code\u003e by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6919\"\u003eexpressjs/express#6919\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRelease: 4.22.0 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6921\"\u003eexpressjs/express#6921\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/express/compare/4.21.2...4.22.0\"\u003ehttps://github.com/expressjs/express/compare/4.21.2...4.22.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e4.21.2\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/express/blob/v4.22.3/History.md\"\u003eexpress's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e4.22.3\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eAllow conditional revalidation for QUERY requests\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ereq.fresh\u003c/code\u003e now includes QUERY in the freshness check, so QUERY responses can return 304 when a validator matches\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: qs@~6.16.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.22.2\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003efix: restore \u0026gt;20 array parsing for \u003ccode\u003ereq.query\u003c/code\u003e repeated keys (\u003ca href=\"https://github.com/expressjs/express/commit/8d09bfe6d88983da5c3e12cfdd54782c4dc675db\"\u003e\u003ccode\u003e8d09bfe6\u003c/code\u003e\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eThis also unifies array-cap behavior across notations. Indexed notation (\u003ccode\u003ea[0]=...\u003c/code\u003e) was historically capped at qs's default \u003ccode\u003earrayLimit\u003c/code\u003e of 20 even in older qs versions; after this change it also allows up to 1000 items.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: qs@~6.15.1\u003c/li\u003e\n\u003cli\u003edeps: body-parser@~1.20.5\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.22.1\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eRevert security fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2024-51999\"\u003eCVE-2024-51999\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6\"\u003eGHSA-pj86-cfqh-vqx6\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eThe prior release (4.22.0) included an erroneous breaking change related to the extended query parser. There is no actual security vulnerability associated with this behavior (CVE-2024-51999 has been rejected). The change has been fully reverted in this release.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.22.0\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2024-51999\"\u003eCVE-2024-51999\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6\"\u003eGHSA-pj86-cfqh-vqx6\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003edeps: use tilde notation for dependencies\u003c/li\u003e\n\u003cli\u003edeps: qs@6.14.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.21.2\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: path-to-regexp@0.1.12\n\u003cul\u003e\n\u003cli\u003eFix backtracking protection\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: path-to-regexp@0.1.11\n\u003cul\u003e\n\u003cli\u003eThrows an error on invalid path values\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.21.1\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eBackported a fix for \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2024-47764\"\u003eCVE-2024-47764\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.21.0\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eDeprecate \u003ccode\u003eres.location(\u0026quot;back\u0026quot;)\u003c/code\u003e and \u003ccode\u003eres.redirect(\u0026quot;back\u0026quot;)\u003c/code\u003e magic string\u003c/li\u003e\n\u003cli\u003edeps: serve-static@1.16.2\n\u003cul\u003e\n\u003cli\u003eincludes send@0.19.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: finalhandler@1.3.1\u003c/li\u003e\n\u003cli\u003edeps: qs@6.13.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/899b52494e74327905c16164decdc6e51f803af8\"\u003e\u003ccode\u003e899b524\u003c/code\u003e\u003c/a\u003e 4.22.3 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7466\"\u003e#7466\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/1fad2c30eff02268bb9751f9d0cb6644c14b0fbb\"\u003e\u003ccode\u003e1fad2c3\u003c/code\u003e\u003c/a\u003e ci: add npm staged publication with dist-tag support (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7465\"\u003e#7465\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/41386506a9ca6874a79b304f1baafd50522e6078\"\u003e\u003ccode\u003e4138650\u003c/code\u003e\u003c/a\u003e deps: qs@~6.16.0 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7440\"\u003e#7440\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/61ccf2ea8c1bd19cbca6acfb7cd276c5fcd410d3\"\u003e\u003ccode\u003e61ccf2e\u003c/code\u003e\u003c/a\u003e feat: allow conditional revalidation for QUERY requests (v4) (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7377\"\u003e#7377\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/715101bd27ec9c14a7ccc8a37c476f330d98ad53\"\u003e\u003ccode\u003e715101b\u003c/code\u003e\u003c/a\u003e Update path-to-regexp to 0.1.13 because CVE-2026-4867 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7135\"\u003e#7135\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/f472e5fe28d7a4c1ec8b6832d504c46f8a056d1c\"\u003e\u003ccode\u003ef472e5f\u003c/code\u003e\u003c/a\u003e docs: fix the release date format for 4.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/df0abc9333a3398b97b71f6ea7cd77d5ea3e9f97\"\u003e\u003ccode\u003edf0abc9\u003c/code\u003e\u003c/a\u003e 4.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/836d36668ea750f78b4373b4de79bbd22634e6ec\"\u003e\u003ccode\u003e836d366\u003c/code\u003e\u003c/a\u003e \u003ccode\u003e4.x\u003c/code\u003e update qs to 6.15.1, body-parser 1.20.5 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7224\"\u003e#7224\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/8d09bfe6d88983da5c3e12cfdd54782c4dc675db\"\u003e\u003ccode\u003e8d09bfe\u003c/code\u003e\u003c/a\u003e fix: restore array parsing for req.query repeated keys (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7181\"\u003e#7181\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/d39e8ad1778a0b8a606a5a7b17096d0cc5ec722d\"\u003e\u003ccode\u003ed39e8ad\u003c/code\u003e\u003c/a\u003e deps: body-parser@~1.20.4 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7021\"\u003e#7021\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/express/compare/4.19.2...v4.22.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for express since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `brace-expansion` from 2.0.1 to 2.1.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/juliangruber/brace-expansion/releases\"\u003ebrace-expansion's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBackport v5.0.6 change to v2 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/109\"\u003e#109\u003c/a\u003e)  c3a817c\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.1.0...v2.1.1\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v2.1.0...v2.1.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.0.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003epkg: publish on tag 2.x  14f1d91\u003c/li\u003e\n\u003cli\u003efmt  ed7780a\u003c/li\u003e\n\u003cli\u003eFix potential ReDoS Vulnerability or Inefficient Regular Expression (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/65\"\u003e#65\u003c/a\u003e)  36603d5\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.0.1...v2.0.2\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v2.0.1...v2.0.2\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/714b6228a5878cfc6b07dc319db0eb6376ab2c4d\"\u003e\u003ccode\u003e714b622\u003c/code\u003e\u003c/a\u003e 2.1.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/bdff773f98e5988616b7039cc9b508df5d640b22\"\u003e\u003ccode\u003ebdff773\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/5a5c07b25ea84a899322ebb820336260277cbe90\"\u003e\u003ccode\u003e5a5c07b\u003c/code\u003e\u003c/a\u003e 2.1.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/6463f2fd6a31f97a09c2f827513a7faaf96bde33\"\u003e\u003ccode\u003e6463f2f\u003c/code\u003e\u003c/a\u003e update lockfile\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1ba3c71f89fb3448c8be6dcf2d17b543c2738f16\"\u003e\u003ccode\u003e1ba3c71\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/aae3387e0d4c551480c963f1241abd3a80a279e6\"\u003e\u003ccode\u003eaae3387\u003c/code\u003e\u003c/a\u003e 2.1.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/5171e681c0922b7ae8bfaf9a331e309107be6edc\"\u003e\u003ccode\u003e5171e68\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/b25213dff0446d622f97d736420b9830ee1abc32\"\u003e\u003ccode\u003eb25213d\u003c/code\u003e\u003c/a\u003e 2.1.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1e30c930238d7162802d88a94189182def178dac\"\u003e\u003ccode\u003e1e30c93\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/878df3989e816dfb28cbe0d64de0b88738ff0ed6\"\u003e\u003ccode\u003e878df39\u003c/code\u003e\u003c/a\u003e 2.1.3\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.0.1...v2.1.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `cookie` from 0.4.2 to 0.7.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jshttp/cookie/releases\"\u003ecookie's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev0.7.2\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFixed\u003c/strong\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eFix object assignment of \u003ccode\u003ehasOwnProperty\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/jshttp/cookie/issues/177\"\u003e#177\u003c/...\n\n_Description has been truncated_","html_url":"https://github.com/helderharada/courses2025ForMe/pull/1","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/helderharada%2Fcourses2025ForMe/issues/1","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/1/packages"},{"uuid":"5578431298","node_id":"PR_kwDOPgPDH88AAAABFDny6w","number":153,"state":"closed","title":"Bump glob from 10.4.5 to 10.5.0","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-09-25T05:09:25.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-25T05:07:37.000Z","updated_at":"2026-09-25T05:09:30.000Z","time_to_close":108,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"glob","old_version":"10.4.5","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"}],"path":null,"ecosystem":"npm"},"body":"Bumps [glob](https://github.com/isaacs/node-glob) from 10.4.5 to 10.5.0.\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.4.5...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=glob\u0026package-manager=npm_and_yarn\u0026previous-version=10.4.5\u0026new-version=10.5.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/raffertyuy/uy-kape/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/raffertyuy/uy-kape/pull/153","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/raffertyuy%2Fuy-kape/issues/153","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/153/packages"},{"uuid":"5571038154","node_id":"PR_kwDONc9njM8AAAABE9uD0A","number":212,"state":"closed","title":"chore(deps): bump the frontend-security group across 1 directory with 3 updates","user":"dependabot[bot]","labels":["dependencies","major","javascript"],"assignees":[],"locked":false,"comments_count":3,"pull_request":true,"closed_at":"2026-09-24T16:14:48.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-24T15:59:15.000Z","updated_at":"2026-09-24T16:14:58.000Z","time_to_close":933,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"frontend-security","update_count":3,"packages":[{"name":"@vitest/mocker","old_version":"4.1.10","new_version":"5.0.1","repository_url":"https://github.com/vitest-dev/vitest"},{"name":"glob","old_version":"10.4.5","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"},{"name":"postcss-selector-parser","old_version":"7.1.0","new_version":"7.1.6","repository_url":"https://github.com/postcss/postcss-selector-parser"}],"path":null,"ecosystem":"npm"},"body":"Bumps the frontend-security group with 3 updates in the /frontend directory: [@vitest/mocker](https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker), [glob](https://github.com/isaacs/node-glob) and [postcss-selector-parser](https://github.com/postcss/postcss-selector-parser).\n\nUpdates `@vitest/mocker` from 4.1.10 to 5.0.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vitest-dev/vitest/releases\"\u003e@​vitest/mocker's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.0.1\u003c/h2\u003e\n\u003ch3\u003e   🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eui\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eMove trace attempts selector to viewer header  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e and \u003cstrong\u003eCodex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11189\"\u003evitest-dev/vitest#11189\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/5dc4b5c92\"\u003e\u003c!-- raw HTML omitted --\u003e(5dc4b)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd focused trace view layout mode  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e, \u003cstrong\u003eOpenCode (gpt-5.6-sol)\u003c/strong\u003e and \u003cstrong\u003eCodex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11190\"\u003evitest-dev/vitest#11190\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/376dc3bc1\"\u003e\u003c!-- raw HTML omitted --\u003e(376dc)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eExit 1 when vitest list fails collection  -  by \u003ca href=\"https://github.com/hamed-bavar\"\u003e\u003ccode\u003e@​hamed-bavar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11145\"\u003evitest-dev/vitest#11145\u003c/a\u003e and \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11146\"\u003evitest-dev/vitest#11146\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/6108b8197\"\u003e\u003c!-- raw HTML omitted --\u003e(6108b)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eKeep parse error details in static collection  -  by \u003ca href=\"https://github.com/hamed-bavar\"\u003e\u003ccode\u003e@​hamed-bavar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11150\"\u003evitest-dev/vitest#11150\u003c/a\u003e and \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11151\"\u003evitest-dev/vitest#11151\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/7c818153a\"\u003e\u003c!-- raw HTML omitted --\u003e(7c818)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid recursive prototype in automocking  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11195\"\u003evitest-dev/vitest#11195\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/99fc52591\"\u003e\u003c!-- raw HTML omitted --\u003e(99fc5)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePrevent false Vitest import resolution  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11196\"\u003evitest-dev/vitest#11196\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/b426c1976\"\u003e\u003c!-- raw HTML omitted --\u003e(b426c)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eKeep metadata file when clearing the cache  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11199\"\u003evitest-dev/vitest#11199\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/73614654a\"\u003e\u003c!-- raw HTML omitted --\u003e(73614)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCorrect typos in error message and comments  -  by \u003ca href=\"https://github.com/shinji00222\"\u003e\u003ccode\u003e@​shinji00222\u003c/code\u003e\u003c/a\u003e and \u003cstrong\u003eShinji\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11187\"\u003evitest-dev/vitest#11187\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/115c3f6d2\"\u003e\u003c!-- raw HTML omitted --\u003e(115c3)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eResolve ResolvedConfig exactOptionalPropertyTypes errors  -  by \u003ca href=\"https://github.com/LukeAbby\"\u003e\u003ccode\u003e@​LukeAbby\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11175\"\u003evitest-dev/vitest#11175\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/498fbe922\"\u003e\u003c!-- raw HTML omitted --\u003e(498fb)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eShare the server on self-referencing \u003ccode\u003eextends\u003c/code\u003e  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11034\"\u003evitest-dev/vitest#11034\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/23dda738c\"\u003e\u003c!-- raw HTML omitted --\u003e(23dda)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWarn when deprecated \u003ccode\u003edeps.optimizer.web\u003c/code\u003e is used  -  by \u003ca href=\"https://github.com/im10furry\"\u003e\u003ccode\u003e@​im10furry\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11214\"\u003evitest-dev/vitest#11214\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/2ce29d5fa\"\u003e\u003c!-- raw HTML omitted --\u003e(2ce29)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ebrowser\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eAvoid double quotes in \u003ccode\u003econfig.define\u003c/code\u003e  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11198\"\u003evitest-dev/vitest#11198\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/972e24bab\"\u003e\u003c!-- raw HTML omitted --\u003e(972e2)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edoctor\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eMeasure vm pools for custom environments  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11212\"\u003evitest-dev/vitest#11212\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/91ab1588c\"\u003e\u003c!-- raw HTML omitted --\u003e(91ab1)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eexpect\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eCorrect return value in \u003ccode\u003etoMatchAriaSnapshot\u003c/code\u003e  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11208\"\u003evitest-dev/vitest#11208\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/c119be016\"\u003e\u003c!-- raw HTML omitted --\u003e(c119b)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003efakeTimers\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eForce \u003ccode\u003equeueMicrotask\u003c/code\u003e and \u003ccode\u003enextTick\u003c/code\u003e in \u003ccode\u003etoNotFake\u003c/code\u003e  -  by \u003ca href=\"https://github.com/kingmakeruix\"\u003e\u003ccode\u003e@​kingmakeruix\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003ekingmakeruix\u003c/strong\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e, \u003cstrong\u003eCodex\u003c/strong\u003e and \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11261\"\u003evitest-dev/vitest#11261\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/a47d7908f\"\u003e\u003c!-- raw HTML omitted --\u003e(a47d7)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003esnapshot\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eReport obsolete keys next to skipped tests  -  by \u003ca href=\"https://github.com/hamed-bavar\"\u003e\u003ccode\u003e@​hamed-bavar\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e and \u003cstrong\u003eOpenCode (gpt-5.6-sol)\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11157\"\u003evitest-dev/vitest#11157\u003c/a\u003e and \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11158\"\u003evitest-dev/vitest#11158\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/17e2b22dd\"\u003e\u003c!-- raw HTML omitted --\u003e(17e2b)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etypes\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eMake public declarations self-contained  -  by \u003ca href=\"https://github.com/ZoeySigel\"\u003e\u003ccode\u003e@​ZoeySigel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11141\"\u003evitest-dev/vitest#11141\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/455466c16\"\u003e\u003c!-- raw HTML omitted --\u003e(45546)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eui\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eFix collapse/expand suite with file name search  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e and \u003cstrong\u003eCodex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11260\"\u003evitest-dev/vitest#11260\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/0a7122daa\"\u003e\u003c!-- raw HTML omitted --\u003e(0a712)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix explorer file summary count  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e, \u003cstrong\u003eOpenCode (gpt-5.6-sol)\u003c/strong\u003e and \u003cstrong\u003eCodex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11125\"\u003evitest-dev/vitest#11125\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/05982297d\"\u003e\u003c!-- raw HTML omitted --\u003e(05982)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eutils\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003edeepMerge\u003c/code\u003e to handle prototype  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e and \u003cstrong\u003eCodex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11215\"\u003evitest-dev/vitest#11215\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/4944cf498\"\u003e\u003c!-- raw HTML omitted --\u003e(4944c)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/vitest-dev/vitest/compare/v5.0.0...v5.0.1\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev5.0.0\u003c/h2\u003e\n\u003cp\u003eVitest 5 is officially out! This release focuses on performance and brings a lot of new features while fixing long-standing bugs. See our \u003ca href=\"https://vitest.dev/blog/vitest-5.html\"\u003eblog post\u003c/a\u003e for the official announcement.\u003c/p\u003e\n\u003ch3\u003e   🚨 Breaking Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eReplace \u003ccode\u003eloupe.inspect\u003c/code\u003e with pretty-format  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eClaude Opus 5 (1M context)\u003c/strong\u003e and \u003cstrong\u003eOpenAI Codex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/9609\"\u003evitest-dev/vitest#9609\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/3f802da4b\"\u003e\u003c!-- raw HTML omitted --\u003e(3f802)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove quotes from string values in \u003ccode\u003etest.for/each\u003c/code\u003e title \u003ccode\u003e$\u003c/code\u003e variable (take 2)  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10170\"\u003evitest-dev/vitest#10170\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/04d37e9d7\"\u003e\u003c!-- raw HTML omitted --\u003e(04d37)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDefault \u003ccode\u003eattachmentsDir\u003c/code\u003e from \u003ccode\u003e.vitest-attachements/\u003c/code\u003e to \u003ccode\u003e.vitest/attachments/\u003c/code\u003e  -  by \u003ca href=\"https://github.com/MdSadiqMd\"\u003e\u003ccode\u003e@​MdSadiqMd\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10186\"\u003evitest-dev/vitest#10186\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/1ba7338c3\"\u003e\u003c!-- raw HTML omitted --\u003e(1ba73)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove \u003ccode\u003esequential\u003c/code\u003e test/suite options in favor of \u003ccode\u003econcurrent\u003c/code\u003e  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e and \u003cstrong\u003eOpenAI Codex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10198\"\u003evitest-dev/vitest#10198\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/9229f2edc\"\u003e\u003c!-- raw HTML omitted --\u003e(9229f)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRepresent locator as an object instead of a string  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10212\"\u003evitest-dev/vitest#10212\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/80f07edf6\"\u003e\u003c!-- raw HTML omitted --\u003e(80f07)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eInline \u003ccode\u003eexpect\u003c/code\u003e package  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10221\"\u003evitest-dev/vitest#10221\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/ad16223e7\"\u003e\u003c!-- raw HTML omitted --\u003e(ad162)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove deprecated entry points  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10222\"\u003evitest-dev/vitest#10222\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/994c6ddb9\"\u003e\u003c!-- raw HTML omitted --\u003e(994c6)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/03630a5995d10455fa136be53bfb2b2409381106\"\u003e\u003ccode\u003e03630a5\u003c/code\u003e\u003c/a\u003e chore: release v5.0.1 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/11275\"\u003e#11275\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/f441c6fab25e579c5b7dd3dd50538416f415fbae\"\u003e\u003ccode\u003ef441c6f\u003c/code\u003e\u003c/a\u003e chore: release v5.0.0 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/11130\"\u003e#11130\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/897f51fd2493046c52ec9539b7d02fe3763bd63e\"\u003e\u003ccode\u003e897f51f\u003c/code\u003e\u003c/a\u003e chore: release v5.0.0-rc.4 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/11107\"\u003e#11107\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/7db80dc27e5948010c00160ed0b86570baad6ce8\"\u003e\u003ccode\u003e7db80dc\u003c/code\u003e\u003c/a\u003e chore: release v5.0.0-rc.3 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/11089\"\u003e#11089\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/732df2c2b4bc73e8fcddc256228e43c6e479a87e\"\u003e\u003ccode\u003e732df2c\u003c/code\u003e\u003c/a\u003e fix(deps): update all non-major dependencies (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/11043\"\u003e#11043\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/1e9f80ec18c06be06211c93536d90a81955e661a\"\u003e\u003ccode\u003e1e9f80e\u003c/code\u003e\u003c/a\u003e perf(vm): don't prewarm modules the worker never requests (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/11033\"\u003e#11033\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/af83d1b1933b5d74c421d30849717369b828de0b\"\u003e\u003ccode\u003eaf83d1b\u003c/code\u003e\u003c/a\u003e chore: release v5.0.0-rc.2 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/10976\"\u003e#10976\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/8ff9b9a9efca7c6cfd5243569440de8d7a33aec4\"\u003e\u003ccode\u003e8ff9b9a\u003c/code\u003e\u003c/a\u003e fix(mocker): restrict redirect mocks to the fs allowlist (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/10972\"\u003e#10972\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/65263d74e6783cf052e1eff2f2a4e371bbd40635\"\u003e\u003ccode\u003e65263d7\u003c/code\u003e\u003c/a\u003e fix(deps): update all non-major dependencies (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/10966\"\u003e#10966\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/a7fa111fef94bdc80ca9614c4e20b56f3393c920\"\u003e\u003ccode\u003ea7fa111\u003c/code\u003e\u003c/a\u003e chore: release v5.0.0-rc.1 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/10920\"\u003e#10920\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vitest-dev/vitest/commits/v5.0.1/packages/mocker\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `glob` from 10.4.5 to 10.5.0\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.4.5...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `postcss-selector-parser` from 7.1.0 to 7.1.6\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/postcss-selector-parser/releases\"\u003epostcss-selector-parser's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e7.1.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: parse flat selectors in linear time, closing a CPU exhaustion vulnerability (\u003ca href=\"https://github.com/advisories/GHSA-rj75-hqrm-r3gf\"\u003eGHSA-rj75-hqrm-r3gf\u003c/a\u003e, reported by Wayde Shi)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: don't treat a non-prefix token before \u003ccode\u003e|\u003c/code\u003e as a namespace (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/324\"\u003e#324\u003c/a\u003e by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: preserve whitespace before a \u003ccode\u003e*\u003c/code\u003e namespace in attribute selectors (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/325\"\u003e#325\u003c/a\u003e by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: TypeError on unclosed \u003ccode\u003e[\u003c/code\u003e, \u003ccode\u003e(\u003c/code\u003e and trailing \u003ccode\u003e|\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/330\"\u003e#330\u003c/a\u003e by \u003ca href=\"https://github.com/theRizwan\"\u003e\u003ccode\u003e@​theRizwan\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: tolerate non-node children when serializing selectors\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImprove fix CVE-2026-9358 (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 (clone/walk)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://github.com/advisories/GHSA-w9m9-85wc-3x92\"\u003eCVE-2026-9358\u003c/a\u003e (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/316\"\u003e#316\u003c/a\u003e by \u003ca href=\"https://github.com/MoOx\"\u003e\u003ccode\u003e@​MoOx\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.1.1\u003c/h2\u003e\n\u003ch1\u003e7.1.1\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eperf: replace startsWith with strict equality (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/308\"\u003e#308\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(types): add walkUniversal declaration (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/311\"\u003e#311\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/postcss-selector-parser/blob/main/CHANGELOG.md\"\u003epostcss-selector-parser's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e7.1.6 - 2026-09-03\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: parse flat selectors in linear time, closing a CPU exhaustion vulnerability (\u003ca href=\"https://github.com/advisories/GHSA-rj75-hqrm-r3gf\"\u003eGHSA-rj75-hqrm-r3gf\u003c/a\u003e, reported by Wayde Shi)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.5 - 2026-08-07\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: don't treat a non-prefix token before \u003ccode\u003e|\u003c/code\u003e as a namespace (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/324\"\u003e#324\u003c/a\u003e by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: preserve whitespace before a \u003ccode\u003e*\u003c/code\u003e namespace in attribute selectors (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/325\"\u003e#325\u003c/a\u003e by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: TypeError on unclosed \u003ccode\u003e[\u003c/code\u003e, \u003ccode\u003e(\u003c/code\u003e and trailing \u003ccode\u003e|\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/330\"\u003e#330\u003c/a\u003e by \u003ca href=\"https://github.com/theRizwan\"\u003e\u003ccode\u003e@​theRizwan\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.4 - 2026-06-11\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: tolerate non-node children when serializing selectors\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.3 - 2026-06-11\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImprove fix CVE-2026-9358 (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 (clone/walk)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.2 - 2026-06-09\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://github.com/advisories/GHSA-w9m9-85wc-3x92\"\u003eCVE-2026-9358\u003c/a\u003e (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/316\"\u003e#316\u003c/a\u003e by \u003ca href=\"https://github.com/MoOx\"\u003e\u003ccode\u003e@​MoOx\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eperf: replace startsWith with strict equality (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/308\"\u003e#308\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(types): add walkUniversal declaration (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/311\"\u003e#311\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/4eb3468e754f9f94d2092d103767bae98aa41438\"\u003e\u003ccode\u003e4eb3468\u003c/code\u003e\u003c/a\u003e 7.1.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/62b191792df0a0bc56062e5a875bc74aae2a51cd\"\u003e\u003ccode\u003e62b1917\u003c/code\u003e\u003c/a\u003e fix: parse flat selectors in linear time, closing a CPU exhaustion vulnerability\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/e33e9bca3e9afd7ba07ffaad4fe0868d421dfb34\"\u003e\u003ccode\u003ee33e9bc\u003c/code\u003e\u003c/a\u003e 7.1.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/6f4e6c1def46c2591f6874d2cd39a1aec767d5bb\"\u003e\u003ccode\u003e6f4e6c1\u003c/code\u003e\u003c/a\u003e fix: TypeError on unclosed \u003ccode\u003e[\u003c/code\u003e, \u003ccode\u003e(\u003c/code\u003e and trailing \u003ccode\u003e|\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/330\"\u003e#330\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/4d8437ffc4a510606b78f0bc762620fcff2b1d7c\"\u003e\u003ccode\u003e4d8437f\u003c/code\u003e\u003c/a\u003e fix: preserve whitespace before a \u003ccode\u003e*\u003c/code\u003e namespace in attribute selectors (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/325\"\u003e#325\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/e2f902954c83f6580eaacdf174232882e293cd5a\"\u003e\u003ccode\u003ee2f9029\u003c/code\u003e\u003c/a\u003e fix: don't treat a non-prefix token before \u003ccode\u003e|\u003c/code\u003e as a namespace (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/dd50ee11ad57e3ac1b901864f0d55a702eef0780\"\u003e\u003ccode\u003edd50ee1\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump postcss from 8.5.18 to 8.5.23 (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/331\"\u003e#331\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/7e3abb2c7250bb8ef1e7a8d196d0ea0ca47b8430\"\u003e\u003ccode\u003e7e3abb2\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump postcss from 8.5.15 to 8.5.18 (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/328\"\u003e#328\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/4a7e4e3685db8ab8e52e51ecdbe8162a8568f70c\"\u003e\u003ccode\u003e4a7e4e3\u003c/code\u003e\u003c/a\u003e 7.1.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/e2021c523d5ef1bf27836aef3bd724a28ba7894f\"\u003e\u003ccode\u003ee2021c5\u003c/code\u003e\u003c/a\u003e fix: tolerate non-node children when serializing selectors\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/postcss/postcss-selector-parser/compare/v7.1.0...7.1.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~moox\"\u003emoox\u003c/a\u003e, a new releaser for postcss-selector-parser since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version modifies \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/FPGSchiba/vcs-srs-server/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/FPGSchiba/vcs-srs-server/pull/212","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/FPGSchiba%2Fvcs-srs-server/issues/212","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/212/packages"},{"uuid":"5531948374","node_id":"PR_kwDOUkhE8c8AAAABEeyjfA","number":10,"state":"closed","title":"Bump glob from 10.5.0 to 13.0.6 in /editors/vscode","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-09-21T20:16:20.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-21T20:11:39.000Z","updated_at":"2026-09-21T20:17:03.000Z","time_to_close":281,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"glob","old_version":"10.5.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"}],"path":"/editors/vscode","ecosystem":"npm"},"body":"Bumps [glob](https://github.com/isaacs/node-glob) from 10.5.0 to 13.0.6.\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-glob/blob/main/changelog.md\"\u003eglob's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003echangeglob\u003c/h1\u003e\n\u003ch2\u003e13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMove the CLI program out to a separate package, \u003ccode\u003eglob-bin\u003c/code\u003e.\nInstall that if you'd like to continue using glob from the\ncommand line.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove the unsafe \u003ccode\u003e--shell\u003c/code\u003e option. The \u003ccode\u003e--shell\u003c/code\u003e option is now\nONLY supported on known shells where the behavior can be\nimplemented safely.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.1\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/isaacs/node-glob/security/advisories/GHSA-5j98-mcp5-4vw2\"\u003eGHSA-5j98-mcp5-4vw2\u003c/a\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--shell\u003c/code\u003e option for the command line, with a warning\nthat this is unsafe. (It will be removed in v12.)\u003c/li\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--cmd-arg\u003c/code\u003e/\u003ccode\u003e-g\u003c/code\u003e as a way to \u003cem\u003esafely\u003c/em\u003e add positional\narguments to the command provided to the CLI tool.\u003c/li\u003e\n\u003cli\u003eDetect commands with space or quote characters on known shells,\nand pass positional arguments to them safely, avoiding\n\u003ccode\u003eshell:true\u003c/code\u003e execution.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node before v20\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eincludeChildMatches: false\u003c/code\u003e option\u003c/li\u003e\n\u003cli\u003eExport the \u003ccode\u003eIgnore\u003c/code\u003e class\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e--default -p\u003c/code\u003e flag to provide a default pattern\u003c/li\u003e\n\u003cli\u003eexclude symbolic links to directories when \u003ccode\u003efollow\u003c/code\u003e and \u003ccode\u003enodir\u003c/code\u003e\nare both set\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd glob cli\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReturn \u003ccode\u003e'.'\u003c/code\u003e instead of the empty string \u003ccode\u003e''\u003c/code\u003e when the current\nworking directory is returned as a match.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eposix: true\u003c/code\u003e option to return \u003ccode\u003e/\u003c/code\u003e delimited paths, even on\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/e80cb38ae60d6cbff9e75f39032a994858994d35\"\u003e\u003ccode\u003ee80cb38\u003c/code\u003e\u003c/a\u003e 13.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/9cdbbfff75c64fb158c8842d4d0eb3e908676a41\"\u003e\u003ccode\u003e9cdbbff\u003c/code\u003e\u003c/a\u003e revert tsgo, not ready for test coverage correctness yet\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/89c99ba8e276438b8e31ce878b63186e2cd375b4\"\u003e\u003ccode\u003e89c99ba\u003c/code\u003e\u003c/a\u003e use tsgo compiler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/b7275d54f294174607f544acf07cc7ec526b7878\"\u003e\u003ccode\u003eb7275d5\u003c/code\u003e\u003c/a\u003e update deps, expand engines to include node 18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/942e360a669e0c378c0abd261e7d329ca2cee661\"\u003e\u003ccode\u003e942e360\u003c/code\u003e\u003c/a\u003e update workflows, pull taprc out of package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/4a0d53c7531f3f0df97f9e4d26c78489e7f6d7ef\"\u003e\u003ccode\u003e4a0d53c\u003c/code\u003e\u003c/a\u003e update tap for mockImport bugfix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/ef94ad2696c12129628208cf4e38575e7240c1c4\"\u003e\u003ccode\u003eef94ad2\u003c/code\u003e\u003c/a\u003e update tap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/180c2d43cb135f134c0c5446408dc107c79a5a9b\"\u003e\u003ccode\u003e180c2d4\u003c/code\u003e\u003c/a\u003e update docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/37993c86faddcb780458b2d7ae3c2ead7a84bf31\"\u003e\u003ccode\u003e37993c8\u003c/code\u003e\u003c/a\u003e remove stray console.error in test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/03ae4c244cac6331817158b0bc12effd30deeb43\"\u003e\u003ccode\u003e03ae4c2\u003c/code\u003e\u003c/a\u003e 13.0.5\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.5.0...v13.0.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=glob\u0026package-manager=npm_and_yarn\u0026previous-version=10.5.0\u0026new-version=13.0.6)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/Sunrisepeak/mcpp-language-server/pull/10","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/Sunrisepeak%2Fmcpp-language-server/issues/10","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/10/packages"},{"uuid":"5526186170","node_id":"PR_kwDOSRFXP88AAAABEaJ24Q","number":121,"state":"closed","title":"deps(deps): bump the major group with 56 updates","user":"dependabot[bot]","labels":["invalid","dependencies"],"assignees":[],"locked":false,"comments_count":3,"pull_request":true,"closed_at":"2026-09-21T11:12:23.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-21T11:11:59.000Z","updated_at":"2026-09-21T11:12:32.000Z","time_to_close":24,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"deps(deps): bump","group_name":"major","update_count":56,"packages":[{"name":"body-parser","old_version":"1.20.8","new_version":"2.3.0","repository_url":"https://github.com/expressjs/body-parser"},{"name":"check-dependencies","old_version":"1.1.1","new_version":"2.0.0","repository_url":"https://github.com/mgol/check-dependencies"},{"name":"config","old_version":"3.3.12","new_version":"5.0.1","repository_url":"https://github.com/node-config/node-config"},{"name":"express","old_version":"4.22.3","new_version":"5.2.1","repository_url":"https://github.com/expressjs/express"},{"name":"express-jwt","old_version":"0.1.3","new_version":"8.5.1","repository_url":"https://github.com/auth0/express-jwt"},{"name":"express-rate-limit","old_version":"7.5.1","new_version":"8.7.0","repository_url":"https://github.com/express-rate-limit/express-rate-limit"},{"name":"express-robots-txt","old_version":"0.5.0","new_version":"1.0.0","repository_url":"https://github.com/modosc/express-robots-txt"},{"name":"file-type","old_version":"16.5.4","new_version":"22.1.1","repository_url":"https://github.com/sindresorhus/file-type"},{"name":"fs-extra","old_version":"9.1.0","new_version":"11.4.0","repository_url":"https://github.com/jprichardson/node-fs-extra"},{"name":"fuzzball","old_version":"1.4.0","new_version":"2.2.6","repository_url":"https://github.com/nol13/fuzzball.js"},{"name":"glob","old_version":"10.5.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"},{"name":"grunt-contrib-compress","old_version":"1.6.0","new_version":"2.0.0","repository_url":"https://github.com/gruntjs/grunt-contrib-compress"},{"name":"helmet","old_version":"4.6.0","new_version":"8.3.0","repository_url":"https://github.com/helmetjs/helmet"},{"name":"html-entities","old_version":"1.4.0","new_version":"2.6.0","repository_url":"https://github.com/mdevils/html-entities"},{"name":"js-yaml","old_version":"3.15.2","new_version":"5.4.2","repository_url":"https://github.com/nodeca/js-yaml"},{"name":"jsonwebtoken","old_version":"0.4.0","new_version":"9.0.3","repository_url":"https://github.com/auth0/node-jsonwebtoken"},{"name":"multer","old_version":"1.4.5-lts.2","new_version":"2.4.0","repository_url":"https://github.com/expressjs/multer"},{"name":"otplib","old_version":"12.0.1","new_version":"13.5.0","repository_url":"https://github.com/yeojz/otplib"},{"name":"prom-client","old_version":"14.2.0","new_version":"15.1.3","repository_url":"https://github.com/siimon/prom-client"},{"name":"sanitize-html","old_version":"1.4.2","new_version":"2.17.7","repository_url":"https://github.com/apostrophecms/apostrophe"},{"name":"socket.io","old_version":"3.1.2","new_version":"4.8.3","repository_url":"https://github.com/socketio/socket.io"},{"name":"sqlite3","old_version":"5.1.7","new_version":"6.0.1","repository_url":"https://github.com/TryGhost/node-sqlite3"},{"name":"ts-node-dev","old_version":"1.1.8","new_version":"2.0.0","repository_url":"https://github.com/whitecolor/ts-node-dev"},{"name":"@types/chai","old_version":"4.3.20","new_version":"5.2.3","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/config","old_version":"3.3.5","new_version":"4.4.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/diff","old_version":"7.0.2","new_version":"8.0.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/express","old_version":"4.17.25","new_version":"5.0.6","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/express-jwt","old_version":"6.0.4","new_version":"7.4.4","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/fs-extra","old_version":"9.0.13","new_version":"11.0.4","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/glob","old_version":"7.2.0","new_version":"9.0.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/jest","old_version":"26.0.24","new_version":"30.0.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/js-yaml","old_version":"3.12.10","new_version":"4.0.9","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/jsonwebtoken","old_version":"8.5.9","new_version":"9.0.10","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/mocha","old_version":"8.2.3","new_version":"10.0.10","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/multer","old_version":"1.4.13","new_version":"2.2.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/node","old_version":"20.19.43","new_version":"26.6.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/sanitize-html","old_version":"1.27.2","new_version":"2.16.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/sequelize","old_version":"4.28.20","new_version":"6.12.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/sinon","old_version":"10.0.20","new_version":"22.0.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/sinon-chai","old_version":"3.2.12","new_version":"4.0.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/socket.io","old_version":"2.1.13","new_version":"3.0.2","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/socket.io-client","old_version":"1.4.36","new_version":"3.0.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@typescript-eslint/eslint-plugin","old_version":"6.18.1","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/parser","old_version":"6.18.1","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"chai","old_version":"4.5.0","new_version":"6.2.2","repository_url":"https://github.com/chaijs/chai"},{"name":"concurrently","old_version":"5.3.0","new_version":"10.0.5","repository_url":"https://github.com/open-cli-tools/concurrently"},{"name":"cypress","old_version":"13.17.0","new_version":"16.1.0","repository_url":"https://github.com/cypress-io/cypress"},{"name":"eslint","old_version":"8.57.1","new_version":"10.10.0","repository_url":"https://github.com/eslint/eslint"},{"name":"eslint-plugin-promise","old_version":"6.6.0","new_version":"7.3.0","repository_url":"https://github.com/eslint-community/eslint-plugin-promise"},{"name":"jest","old_version":"29.7.0","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"mocha","old_version":"8.4.0","new_version":"12.0.2","repository_url":"https://github.com/mochajs/mocha"},{"name":"nyc","old_version":"15.1.0","new_version":"18.0.0","repository_url":"https://github.com/istanbuljs/nyc"},{"name":"sinon","old_version":"11.1.2","new_version":"22.1.0","repository_url":"https://github.com/sinonjs/sinon"},{"name":"sinon-chai","old_version":"3.7.0","new_version":"4.0.1","repository_url":"https://github.com/chaijs/sinon-chai"},{"name":"socket.io-client","old_version":"3.1.3","new_version":"4.8.3","repository_url":"https://github.com/socketio/socket.io"},{"name":"typescript","old_version":"5.3.3","new_version":"7.0.2","repository_url":"https://github.com/microsoft/TypeScript"}],"path":null,"ecosystem":"npm"},"body":"Bumps the major group with 56 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [body-parser](https://github.com/expressjs/body-parser) | `1.20.8` | `2.3.0` |\n| [check-dependencies](https://github.com/mgol/check-dependencies) | `1.1.1` | `2.0.0` |\n| [config](https://github.com/node-config/node-config) | `3.3.12` | `5.0.1` |\n| [express](https://github.com/expressjs/express) | `4.22.3` | `5.2.1` |\n| [express-jwt](https://github.com/auth0/express-jwt) | `0.1.3` | `8.5.1` |\n| [express-rate-limit](https://github.com/express-rate-limit/express-rate-limit) | `7.5.1` | `8.7.0` |\n| [express-robots-txt](https://github.com/modosc/express-robots-txt) | `0.5.0` | `1.0.0` |\n| [file-type](https://github.com/sindresorhus/file-type) | `16.5.4` | `22.1.1` |\n| [fs-extra](https://github.com/jprichardson/node-fs-extra) | `9.1.0` | `11.4.0` |\n| [fuzzball](https://github.com/nol13/fuzzball.js) | `1.4.0` | `2.2.6` |\n| [glob](https://github.com/isaacs/node-glob) | `10.5.0` | `13.0.6` |\n| [grunt-contrib-compress](https://github.com/gruntjs/grunt-contrib-compress) | `1.6.0` | `2.0.0` |\n| [helmet](https://github.com/helmetjs/helmet) | `4.6.0` | `8.3.0` |\n| [html-entities](https://github.com/mdevils/html-entities) | `1.4.0` | `2.6.0` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `3.15.2` | `5.4.2` |\n| [jsonwebtoken](https://github.com/auth0/node-jsonwebtoken) | `0.4.0` | `9.0.3` |\n| [multer](https://github.com/expressjs/multer) | `1.4.5-lts.2` | `2.4.0` |\n| [otplib](https://github.com/yeojz/otplib/tree/HEAD/packages/otplib) | `12.0.1` | `13.5.0` |\n| [prom-client](https://github.com/siimon/prom-client) | `14.2.0` | `15.1.3` |\n| [sanitize-html](https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html) | `1.4.2` | `2.17.7` |\n| [socket.io](https://github.com/socketio/socket.io) | `3.1.2` | `4.8.3` |\n| [sqlite3](https://github.com/TryGhost/node-sqlite3) | `5.1.7` | `6.0.1` |\n| [ts-node-dev](https://github.com/whitecolor/ts-node-dev) | `1.1.8` | `2.0.0` |\n| [@types/chai](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/chai) | `4.3.20` | `5.2.3` |\n| [@types/config](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/config) | `3.3.5` | `4.4.0` |\n| [@types/diff](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/diff) | `7.0.2` | `8.0.0` |\n| [@types/express](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/express) | `4.17.25` | `5.0.6` |\n| [@types/express-jwt](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/express-jwt) | `6.0.4` | `7.4.4` |\n| [@types/fs-extra](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/fs-extra) | `9.0.13` | `11.0.4` |\n| [@types/glob](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/glob) | `7.2.0` | `9.0.0` |\n| [@types/jest](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/jest) | `26.0.24` | `30.0.0` |\n| [@types/js-yaml](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/js-yaml) | `3.12.10` | `4.0.9` |\n| [@types/jsonwebtoken](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/jsonwebtoken) | `8.5.9` | `9.0.10` |\n| [@types/mocha](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/mocha) | `8.2.3` | `10.0.10` |\n| [@types/multer](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/multer) | `1.4.13` | `2.2.0` |\n| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `20.19.43` | `26.6.1` |\n| [@types/sanitize-html](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/sanitize-html) | `1.27.2` | `2.16.1` |\n| [@types/sequelize](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/sequelize) | `4.28.20` | `6.12.0` |\n| [@types/sinon](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/sinon) | `10.0.20` | `22.0.0` |\n| [@types/sinon-chai](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/sinon-chai) | `3.2.12` | `4.0.0` |\n| [@types/socket.io](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/socket.io) | `2.1.13` | `3.0.2` |\n| [@types/socket.io-client](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/socket.io-client) | `1.4.36` | `3.0.0` |\n| [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) | `6.18.1` | `8.70.0` |\n| [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) | `6.18.1` | `8.70.0` |\n| [chai](https://github.com/chaijs/chai) | `4.5.0` | `6.2.2` |\n| [concurrently](https://github.com/open-cli-tools/concurrently) | `5.3.0` | `10.0.5` |\n| [cypress](https://github.com/cypress-io/cypress) | `13.17.0` | `16.1.0` |\n| [eslint](https://github.com/eslint/eslint) | `8.57.1` | `10.10.0` |\n| [eslint-plugin-promise](https://github.com/eslint-community/eslint-plugin-promise) | `6.6.0` | `7.3.0` |\n| [jest](https://github.com/jestjs/jest/tree/HEAD/packages/jest) | `29.7.0` | `30.5.1` |\n| [mocha](https://github.com/mochajs/mocha) | `8.4.0` | `12.0.2` |\n| [nyc](https://github.com/istanbuljs/nyc) | `15.1.0` | `18.0.0` |\n| [sinon](https://github.com/sinonjs/sinon) | `11.1.2` | `22.1.0` |\n| [sinon-chai](https://github.com/chaijs/sinon-chai) | `3.7.0` | `4.0.1` |\n| [socket.io-client](https://github.com/socketio/socket.io) | `3.1.3` | `4.8.3` |\n| [typescript](https://github.com/microsoft/TypeScript) | `5.3.3` | `7.0.2` |\n\nUpdates `body-parser` from 1.20.8 to 2.3.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/body-parser/releases\"\u003ebody-parser's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.3.0\u003c/h2\u003e\n\u003ch2\u003eImportant: Security\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2025-13466\"\u003eCVE-2026-12590\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/body-parser/security/advisories/GHSA-v422-hmwv-36x6\"\u003eGHSA-v422-hmwv-36x6\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ebuild(deps): bump actions/download-artifact from 6.0.0 to 7.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/681\"\u003eexpressjs/body-parser#681\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/checkout from 5.0.0 to 6.0.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/682\"\u003eexpressjs/body-parser#682\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.0.0 to 6.1.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/683\"\u003eexpressjs/body-parser#683\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/upload-artifact from 5.0.0 to 6.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/685\"\u003eexpressjs/body-parser#685\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.31.2 to 4.31.9 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/684\"\u003eexpressjs/body-parser#684\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eperf(urlencoded): move empty-body guard to avoid extra function closure by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/647\"\u003eexpressjs/body-parser#647\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove ESM compatibility by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/697\"\u003eexpressjs/body-parser#697\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: add recommendations for configuring payload limits by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/699\"\u003eexpressjs/body-parser#699\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.1.0 to 6.2.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/701\"\u003eexpressjs/body-parser#701\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.31.10 to 4.32.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/702\"\u003eexpressjs/body-parser#702\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/checkout from 6.0.1 to 6.0.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/700\"\u003eexpressjs/body-parser#700\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore:  add explicit type commonjs to package.json by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/711\"\u003eexpressjs/body-parser#711\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps: update dependencies to latest versions by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/708\"\u003eexpressjs/body-parser#708\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/download-artifact from 7.0.0 to 8.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/712\"\u003eexpressjs/body-parser#712\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.32.0 to 4.32.4 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/713\"\u003eexpressjs/body-parser#713\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/upload-artifact from 6.0.0 to 7.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/714\"\u003eexpressjs/body-parser#714\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: improve limit option validation by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/698\"\u003eexpressjs/body-parser#698\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.32.4 to 4.35.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/719\"\u003eexpressjs/body-parser#719\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.2.0 to 6.3.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/718\"\u003eexpressjs/body-parser#718\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/download-artifact from 8.0.0 to 8.0.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/717\"\u003eexpressjs/body-parser#717\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eperf: eliminate conditional check in json strict mode hot path by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/651\"\u003eexpressjs/body-parser#651\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add node.js 26 to text matrix by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/726\"\u003eexpressjs/body-parser#726\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.3.0 to 6.4.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/725\"\u003eexpressjs/body-parser#725\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/724\"\u003eexpressjs/body-parser#724\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.35.1 to 4.35.3 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/723\"\u003eexpressjs/body-parser#723\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade \u0026quot;content-type\u0026quot; by \u003ca href=\"https://github.com/blakeembrey\"\u003e\u003ccode\u003e@​blakeembrey\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/728\"\u003eexpressjs/body-parser#728\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: switch to const/let and enable eslint no-var rule by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/729\"\u003eexpressjs/body-parser#729\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate outdated reference to MDN docs by \u003ca href=\"https://github.com/krzysdz\"\u003e\u003ccode\u003e@​krzysdz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/730\"\u003eexpressjs/body-parser#730\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.35.3 to 4.36.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/731\"\u003eexpressjs/body-parser#731\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/checkout from 6.0.2 to 6.0.3 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/732\"\u003eexpressjs/body-parser#732\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: updated deps to latest by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/733\"\u003eexpressjs/body-parser#733\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e2.3.0 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/735\"\u003eexpressjs/body-parser#735\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/krzysdz\"\u003e\u003ccode\u003e@​krzysdz\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/730\"\u003eexpressjs/body-parser#730\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/body-parser/compare/v2.2.2...v2.3.0\"\u003ehttps://github.com/expressjs/body-parser/compare/v2.2.2...v2.3.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.2.2\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edocs: update README links by \u003ca href=\"https://github.com/efekrskl\"\u003e\u003ccode\u003e@​efekrskl\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/673\"\u003eexpressjs/body-parser#673\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: release notes for the v1.20.4 release by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/674\"\u003eexpressjs/body-parser#674\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: update URL-encoded parser description to include ISO-8859-1 encoding support by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/679\"\u003eexpressjs/body-parser#679\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: use standard jsdoc tags everywhere by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/677\"\u003eexpressjs/body-parser#677\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/body-parser/blob/master/HISTORY.md\"\u003ebody-parser's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e2.3.0 / 2026-06-15\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://github.com/expressjs/body-parser/security/advisories/GHSA-v422-hmwv-36x6\"\u003eGHSA-v422-hmwv-36x6\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: use static exports instead of lazy getters to improve ESM compatibility\u003c/li\u003e\n\u003cli\u003efeat: add subpath exports for individual parsers\u003c/li\u003e\n\u003cli\u003efix: improve \u003ccode\u003elimit\u003c/code\u003e option validation (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/698\"\u003e#698\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eInvalid \u003ccode\u003elimit\u003c/code\u003e values (e.g. unparseable strings or \u003ccode\u003eNaN\u003c/code\u003e) now throw instead of being silently ignored, which previously disabled size limit enforcement\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enull\u003c/code\u003e and \u003ccode\u003eundefined\u003c/code\u003e fall back to the default 100kb limit\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps:\n\u003cul\u003e\n\u003cli\u003econtent-type@^2.0.0\u003c/li\u003e\n\u003cli\u003ehttp-errors@^2.0.1\u003c/li\u003e\n\u003cli\u003eiconv-lite^0.7.2\u003c/li\u003e\n\u003cli\u003eqs@^6.15.2\u003c/li\u003e\n\u003cli\u003eraw-body@^3.0.2\u003c/li\u003e\n\u003cli\u003etype-is@^2.1.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e2.2.2 / 2026-01-07\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: qs@^6.14.1\u003c/li\u003e\n\u003cli\u003erefactor(json): simplify strict mode error string construction\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e2.2.1 / 2025-11-24\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://github.com/expressjs/body-parser/security/advisories/GHSA-wqch-xfxh-vrr4\"\u003eGHSA-wqch-xfxh-vrr4\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps:\n\u003cul\u003e\n\u003cli\u003etype-is@^2.0.1\u003c/li\u003e\n\u003cli\u003eiconv-lite@^0.7.0\n\u003cul\u003e\n\u003cli\u003eHandle split surrogate pairs when encoding UTF-8\u003c/li\u003e\n\u003cli\u003eAvoid false positives in \u003ccode\u003eencodingExists\u003c/code\u003e by using prototype-less objects\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eraw-body@^3.0.1\u003c/li\u003e\n\u003cli\u003edebug@^4.4.3\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e2.2.0 / 2025-03-27\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003erefactor: normalize common options for all parsers\u003c/li\u003e\n\u003cli\u003edeps:\n\u003cul\u003e\n\u003cli\u003eiconv-lite@^0.6.3\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e2.1.0 / 2025-02-10\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps:\n\u003cul\u003e\n\u003cli\u003etype-is@^2.0.0\u003c/li\u003e\n\u003cli\u003edebug@^4.4.0\u003c/li\u003e\n\u003cli\u003eRemoved destroy\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003erefactor: prefix built-in node module imports\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/d0f2ace6c74769da7d19b8661b9a01c01bdb0bf7\"\u003e\u003ccode\u003ed0f2ace\u003c/code\u003e\u003c/a\u003e 2.3.0 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/735\"\u003e#735\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/7d03f2f9d561dafd1576b137713353c95253512c\"\u003e\u003ccode\u003e7d03f2f\u003c/code\u003e\u003c/a\u003e chore: updated deps to latest (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/733\"\u003e#733\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/8024ba7a813e6647ed63832d209a2abb8531267a\"\u003e\u003ccode\u003e8024ba7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 6.0.2 to 6.0.3 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/732\"\u003e#732\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/32b4ed4639281f04563adcd41d724ab06c9105d4\"\u003e\u003ccode\u003e32b4ed4\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.35.3 to 4.36.1 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/731\"\u003e#731\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/ff0f6b907106ec5a1b81c80f5a552d921c1bc9a5\"\u003e\u003ccode\u003eff0f6b9\u003c/code\u003e\u003c/a\u003e docs: update outdated reference to MDN docs (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/730\"\u003e#730\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/14d001a9c90abc05891d895ad3e9cf0a65b7b34a\"\u003e\u003ccode\u003e14d001a\u003c/code\u003e\u003c/a\u003e refactor: switch to const/let and enable eslint no-var rule (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/729\"\u003e#729\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/37f36a27528e65d7216f2c31c7039d3458c72147\"\u003e\u003ccode\u003e37f36a2\u003c/code\u003e\u003c/a\u003e deps: update content-type and type-is (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/728\"\u003e#728\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/e1c244bf55fb00a6de4be882b4ed9fc20807d864\"\u003e\u003ccode\u003ee1c244b\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.35.1 to 4.35.3 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/723\"\u003e#723\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/e01087f52192e20e2d0f8726d4f28a8d49d06c87\"\u003e\u003ccode\u003ee01087f\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/724\"\u003e#724\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/a7698d30280a3e931ea8841396e5d0ac5414e429\"\u003e\u003ccode\u003ea7698d3\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/setup-node from 6.3.0 to 6.4.0 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/725\"\u003e#725\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/body-parser/compare/1.20.8...v2.3.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eAttestation changes\u003c/summary\u003e\n\u003cp\u003eThis version has no provenance attestation, while the previous version (1.20.8) was attested. Review the \u003ca href=\"https://www.npmjs.com/package/body-parser?activeTab=versions\"\u003epackage versions\u003c/a\u003e before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `check-dependencies` from 1.1.1 to 2.0.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/mgol/check-dependencies/releases\"\u003echeck-dependencies's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.0.0\u003c/h2\u003e\n\u003cp\u003eNotable non-breaking changes:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003esupport npm package aliases (\u003ca href=\"https://redirect.github.com/mgol/check-dependencies/issues/50\"\u003e#50\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereduced a number of external dependencies\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enpm prune\u003c/code\u003e is no longer called as\u003ccode\u003enpm install\u003c/code\u003e already prunes\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eBreaking changes:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003edropped the callback interface - use promises instead\u003c/li\u003e\n\u003cli\u003edropped the \u003ccode\u003echeckCustomPackageNames\u003c/code\u003e option\u003c/li\u003e\n\u003cli\u003eCLI argument parsing is more strict now; camelCase parameter versions like \u003ccode\u003e--packageDir\u003c/code\u003e are no longer supported; use their kebab-case versions like \u003ccode\u003e--package-dir\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003edropped Bower support\u003c/li\u003e\n\u003cli\u003edropped support for Node.js \u003ccode\u003e\u0026lt;18.3\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/03c88471d9b99857bcc78171fc5dd89a4a402a16\"\u003e\u003ccode\u003e03c8847\u003c/code\u003e\u003c/a\u003e Tag 2.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/65d9ef555c2e986b849e7abeac0474bfee663b0e\"\u003e\u003ccode\u003e65d9ef5\u003c/code\u003e\u003c/a\u003e Set Node.js requirement in package.json engines to \u0026gt;=18.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/4917ab0b9362530a95cc2bef028c2a6dcedf2ab7\"\u003e\u003ccode\u003e4917ab0\u003c/code\u003e\u003c/a\u003e Simplify the spawn logic\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/fc04cc87fe4284c083702e36a9a4055034d9fcc9\"\u003e\u003ccode\u003efc04cc8\u003c/code\u003e\u003c/a\u003e Drop support for the callback interface\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/28257dd04168aab66793fd0fe8ed0f46d52abec9\"\u003e\u003ccode\u003e28257dd\u003c/code\u003e\u003c/a\u003e Tweak ESLint settings\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/dc16e8ac809502cf7509ef2de7429895b806535e\"\u003e\u003ccode\u003edc16e8a\u003c/code\u003e\u003c/a\u003e Drop the bluebird devDependency\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/412337ae3691296cbe7c2d69f0c51201894afc07\"\u003e\u003ccode\u003e412337a\u003c/code\u003e\u003c/a\u003e Drop fs-extra \u0026amp; graceful-fs devDependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/091279a22472c299cbdba0ab6e3e8a2dfbba11b5\"\u003e\u003ccode\u003e091279a\u003c/code\u003e\u003c/a\u003e Drop the findup-sync dependency\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/10ac9c5b2ed92cdad11ce0f390551072e7509f18\"\u003e\u003ccode\u003e10ac9c5\u003c/code\u003e\u003c/a\u003e Drop lodash.camelcase \u0026amp; minimist dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/35dce52450b99241942c24d18a572c55fecc44d9\"\u003e\u003ccode\u003e35dce52\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/mgol/check-dependencies/compare/1.1.1...2.0.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `config` from 3.3.12 to 5.0.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/node-config/node-config/releases\"\u003econfig's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.0.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix issue with async defers calls not being replaced in the config data.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/MMShep97\"\u003e\u003ccode\u003e@​MMShep97\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/926\"\u003enode-config/node-config#926\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/node-config/node-config/compare/v5.0.0...v5.0.1\"\u003ehttps://github.com/node-config/node-config/compare/v5.0.0...v5.0.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.0.0\u003c/h2\u003e\n\u003cp\u003eThe 5.0 release contains ESM support, removes some deprecations, strengthens some immutability constraints in a few call paths, and fixes some incorrect filename matches for files that only contain the NODE_ENV value but don't start with it.\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eESM conversion of node-config by \u003ca href=\"https://github.com/jdmarshall\"\u003e\u003ccode\u003e@​jdmarshall\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/889\"\u003enode-config/node-config#889\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: prevent setEnv from clobbering envConfig when merging NODE_CONFIG by \u003ca href=\"https://github.com/sputnik-mac\"\u003e\u003ccode\u003e@​sputnik-mac\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/896\"\u003enode-config/node-config#896\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemoved .iced support by \u003ca href=\"https://github.com/jdmarshall\"\u003e\u003ccode\u003e@​jdmarshall\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/902\"\u003enode-config/node-config#902\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove ergonomics of setModuleDefaults/Load.scan() by \u003ca href=\"https://github.com/jdmarshall\"\u003e\u003ccode\u003e@​jdmarshall\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/903\"\u003enode-config/node-config#903\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: use anchored regex for NODE_ENV file matching (closes \u003ca href=\"https://redirect.github.com/node-config/node-config/issues/867\"\u003e#867\u003c/a\u003e) by \u003ca href=\"https://github.com/sputnik-mac\"\u003e\u003ccode\u003e@​sputnik-mac\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/904\"\u003enode-config/node-config#904\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd perf test for the new scan changes. by \u003ca href=\"https://github.com/jdmarshall\"\u003e\u003ccode\u003e@​jdmarshall\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/908\"\u003enode-config/node-config#908\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eGuard against odd object prototypes triggered by changes in TOML 4.0 by \u003ca href=\"https://github.com/jdmarshall\"\u003e\u003ccode\u003e@​jdmarshall\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/917\"\u003enode-config/node-config#917\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sputnik-mac\"\u003e\u003ccode\u003e@​sputnik-mac\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/896\"\u003enode-config/node-config#896\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/node-config/node-config/compare/v4.4.1...v5.0.0\"\u003ehttps://github.com/node-config/node-config/compare/v4.4.1...v5.0.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.0.0-alpha.2\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: prevent setEnv from clobbering envConfig when merging NODE_CONFIG\u003c/li\u003e\n\u003cli\u003e.iced files are never loaded, and support has been removed.\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eLoad.scan()\u003c/code\u003e now returns the configuration data that was loaded, simplifying the calling convention for \u003ccode\u003esetModuleDefaults()\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eTOML regression in 4.4.1 fixed in mainline\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBreaking Changes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eScanning of the config directory no longer loads files that contain the NODE_ENV value as a substring of the file name instead of the prefix. Ex: \u0026quot;prod-server1.js\u0026quot; versus \u0026quot;preprod.json\u0026quot; for NODE_ENV=prod\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sputnik-mac\"\u003e\u003ccode\u003e@​sputnik-mac\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/896\"\u003enode-config/node-config#896\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/node-config/node-config/compare/v5.0.0-alpha.1...v5.0.0-alpha.2\"\u003ehttps://github.com/node-config/node-config/compare/v5.0.0-alpha.1...v5.0.0-alpha.2\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.0.0-alpha.1\u003c/h2\u003e\n\u003ch1\u003eWhat's Changed\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eFixed TS type list in README\u003c/li\u003e\n\u003cli\u003eFixed version tag issue\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/node-config/node-config/compare/v5.0.0-alpha.0...v5.0.0-alpha.1\"\u003ehttps://github.com/node-config/node-config/compare/v5.0.0-alpha.0...v5.0.0-alpha.1\u003c/a\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/f89ef8bdecd493934c819b3ce5f4dc92b67ed4f8\"\u003e\u003ccode\u003ef89ef8b\u003c/code\u003e\u003c/a\u003e 5.0.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/8114c255fcbdb013b0d62cfebe1e261cc4623dab\"\u003e\u003ccode\u003e8114c25\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-config/node-config/issues/926\"\u003e#926\u003c/a\u003e from MMShep97/fix-resolve-async-configs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/08edfa07bb1cd5fcd1ec6629812a1be54a24d218\"\u003e\u003ccode\u003e08edfa0\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-config/node-config/issues/928\"\u003e#928\u003c/a\u003e from jdmarshall/workflowMain\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/9705d756ca99688ab4b71570d0999adbf774ceda\"\u003e\u003ccode\u003e9705d75\u003c/code\u003e\u003c/a\u003e Fix workflow for PRs.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/77b8752262fb33060e77a98e0035628694902d8b\"\u003e\u003ccode\u003e77b8752\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-config/node-config/issues/927\"\u003e#927\u003c/a\u003e from jdmarshall/main\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/1cd86a7c455c6b28f7d1db9a8a8d122192018a66\"\u003e\u003ccode\u003e1cd86a7\u003c/code\u003e\u003c/a\u003e Remove method signature change\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/a06d8971df7f6607370937f71b15e338384e856b\"\u003e\u003ccode\u003ea06d897\u003c/code\u003e\u003c/a\u003e Fix resolveAsyncConfigs leaving promises in the exported config\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/fbb28f8af7e218612840f07b992b15904efda83b\"\u003e\u003ccode\u003efbb28f8\u003c/code\u003e\u003c/a\u003e Release 5.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/b4dfbd2d683bb58141eb33342080060584ee95b5\"\u003e\u003ccode\u003eb4dfbd2\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-config/node-config/issues/923\"\u003e#923\u003c/a\u003e from jdmarshall/supplyChain44\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/3a4851b602bb4411097a0bcd22d6af6f8afbfee0\"\u003e\u003ccode\u003e3a4851b\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-config/node-config/issues/922\"\u003e#922\u003c/a\u003e from jdmarshall/supplyChain\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/node-config/node-config/compare/v3.3.12...v5.0.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~jdmarshall\"\u003ejdmarshall\u003c/a\u003e, a new releaser for config since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `express` from 4.22.3 to 5.2.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/express/releases\"\u003eexpress's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.2.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cblockquote\u003e\n\u003cp\u003e[!IMPORTANT]\u003cbr /\u003e\nThe prior release (5.2.0) included an erroneous breaking change related to the extended query parser. There is no actual security vulnerability associated with this behavior (CVE-2024-51999 has been rejected). The change has been fully reverted in this release.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003cul\u003e\n\u003cli\u003eRelease: 5.2.1 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6933\"\u003eexpressjs/express#6933\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/express/compare/v5.2.0...v5.2.1\"\u003ehttps://github.com/expressjs/express/compare/v5.2.0...v5.2.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.2.0\u003c/h2\u003e\n\u003ch2\u003eImportant: Security\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2024-51999\"\u003eCVE-2024-51999\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6\"\u003eGHSA-pj86-cfqh-vqx6\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 3.28.11 to 3.28.13 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6429\"\u003eexpressjs/express#6429\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor: simplify \u003ccode\u003eacceptsLanguages\u003c/code\u003e implementation using spread operator by \u003ca href=\"https://github.com/Ayoub-Mabrouk\"\u003e\u003ccode\u003e@​Ayoub-Mabrouk\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6137\"\u003eexpressjs/express#6137\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eincreased code coverage of utils.js file by \u003ca href=\"https://github.com/ashish3011\"\u003e\u003ccode\u003e@​ashish3011\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6386\"\u003eexpressjs/express#6386\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: remove duplicate word by \u003ca href=\"https://github.com/dufucun\"\u003e\u003ccode\u003e@​dufucun\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6456\"\u003eexpressjs/express#6456\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 3.28.13 to 3.28.16 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6498\"\u003eexpressjs/express#6498\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 4.3.0 to 4.4.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6497\"\u003eexpressjs/express#6497\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/download-artifact from 4.2.1 to 4.3.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6496\"\u003eexpressjs/express#6496\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add node.js 24 to test matrix by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6504\"\u003eexpressjs/express#6504\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: update codeql config by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6488\"\u003eexpressjs/express#6488\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: wider range for query test skip by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6512\"\u003eexpressjs/express#6512\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: fix typos in test by \u003ca href=\"https://github.com/noritaka1166\"\u003e\u003ccode\u003e@​noritaka1166\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6535\"\u003eexpressjs/express#6535\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: disable credential persistence for checkout actions by \u003ca href=\"https://github.com/mertssmnoglu\"\u003e\u003ccode\u003e@​mertssmnoglu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6522\"\u003eexpressjs/express#6522\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: allow manual triggering of workflow by \u003ca href=\"https://github.com/shivarm\"\u003e\u003ccode\u003e@​shivarm\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6515\"\u003eexpressjs/express#6515\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: add coverage for app.listen() variants by \u003ca href=\"https://github.com/kgarg1\"\u003e\u003ccode\u003e@​kgarg1\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6476\"\u003eexpressjs/express#6476\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: move documentation and charters to the discussions and .github … by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6427\"\u003eexpressjs/express#6427\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 3.28.16 to 3.28.18 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6549\"\u003eexpressjs/express#6549\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump ossf/scorecard-action from 2.4.1 to 2.4.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6548\"\u003eexpressjs/express#6548\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: enforce explicit \u003ccode\u003eBuffer\u003c/code\u003e import and add lint rule by \u003ca href=\"https://github.com/shivarm\"\u003e\u003ccode\u003e@​shivarm\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6525\"\u003eexpressjs/express#6525\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: use node protocol for querystring by \u003ca href=\"https://github.com/shivarm\"\u003e\u003ccode\u003e@​shivarm\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6520\"\u003eexpressjs/express#6520\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: fix typo by \u003ca href=\"https://github.com/mountdisk\"\u003e\u003ccode\u003e@​mountdisk\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6609\"\u003eexpressjs/express#6609\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 3.28.18 to 3.29.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6618\"\u003eexpressjs/express#6618\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eadd deprecation warnings for redirect arguments undefined by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6405\"\u003eexpressjs/express#6405\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: run CI when the markdown changes by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6632\"\u003eexpressjs/express#6632\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edoc: fix CONTRIBUTING link by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6653\"\u003eexpressjs/express#6653\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edoc: update contributing guidelines and code of conduct links by \u003ca href=\"https://github.com/ShubhamOulkar\"\u003e\u003ccode\u003e@​ShubhamOulkar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6601\"\u003eexpressjs/express#6601\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps-dev): bump morgan from 1.10.0 to 1.10.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6679\"\u003eexpressjs/express#6679\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps-dev): bump cookie-session from 2.1.0 to 2.1.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6678\"\u003eexpressjs/express#6678\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003elint: add --fix flag to automatic fix linting issue by \u003ca href=\"https://github.com/shivarm\"\u003e\u003ccode\u003e@​shivarm\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6644\"\u003eexpressjs/express#6644\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: ignore yarn.lock file and update example by \u003ca href=\"https://github.com/shivarm\"\u003e\u003ccode\u003e@​shivarm\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6588\"\u003eexpressjs/express#6588\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003elib: use req.socket over deprecated req.connection by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6705\"\u003eexpressjs/express#6705\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edoc: update express app example by \u003ca href=\"https://github.com/shivarm\"\u003e\u003ccode\u003e@​shivarm\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6718\"\u003eexpressjs/express#6718\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 3.29.2 to 3.29.5 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6675\"\u003eexpressjs/express#6675\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove history.md from being packaged on publish by \u003ca href=\"https://github.com/sheplu\"\u003e\u003ccode\u003e@​sheplu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6780\"\u003eexpressjs/express#6780\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/express/blob/master/History.md\"\u003eexpress's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e5.2.1 / 2025-12-01\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eRevert security fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2024-51999\"\u003eCVE-2024-51999\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6\"\u003eGHSA-pj86-cfqh-vqx6\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eThe prior release (5.2.0) included an erroneous breaking change related to the extended query parser. There is no actual security vulnerability associated with this behavior (CVE-2024-51999 has been rejected). The change has been fully reverted in this release.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e5.2.0 / 2025-12-01\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2024-51999\"\u003eCVE-2024-51999\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6\"\u003eGHSA-pj86-cfqh-vqx6\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003ebody-parser@^2.2.1\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eA deprecation warning was added when using \u003ccode\u003eres.redirect\u003c/code\u003e with undefined arguments, Express now emits a warning to help detect calls that pass undefined as the status or URL and make them easier to fix.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e5.1.0 / 2025-03-31\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eAdd support for \u003ccode\u003eUint8Array\u003c/code\u003e in \u003ccode\u003eres.send()\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eAdd support for ETag option in \u003ccode\u003eres.sendFile()\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eAdd support for multiple links with the same rel in \u003ccode\u003eres.links()\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eAdd funding field to package.json\u003c/li\u003e\n\u003cli\u003eperf: use loop for acceptParams\u003c/li\u003e\n\u003cli\u003erefactor: prefix built-in node module imports\u003c/li\u003e\n\u003cli\u003edeps: remove \u003ccode\u003esetprototypeof\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: remove \u003ccode\u003esafe-buffer\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: remove \u003ccode\u003eutils-merge\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: remove \u003ccode\u003emethods\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: remove \u003ccode\u003edepd\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003edebug@^4.4.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003ebody-parser@^2.2.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003erouter@^2.2.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003econtent-type@^1.0.5\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003efinalhandler@^2.1.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003eqs@^6.14.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003eserver-static@2.2.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003etype-is@2.0.1\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e5.0.1 / 2024-10-08\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate \u003ccode\u003ecookie\u003c/code\u003e semver lock to address \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2024-47764\"\u003eCVE-2024-47764\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e5.0.0 / 2024-09-10\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eremove:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003epath-is-absolute\u003c/code\u003e dependency - use \u003ccode\u003epath.isAbsolute\u003c/code\u003e instead\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003ebreaking:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eres.status()\u003c/code\u003e accepts only integers, and input must be greater than 99 and less than 1000\n\u003cul\u003e\n\u003cli\u003ewill throw a \u003ccode\u003eRangeError: Invalid status code: ${code}. Status code must be greater than 99 and less than 1000.\u003c/code\u003e for inputs outside this range\u003c/li\u003e\n\u003cli\u003ewill throw a \u003ccode\u003eTypeError: Invalid status code: ${code}. Status code must be an integer.\u003c/code\u003e for non integer inputs\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: send@1.0.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/dbac741a49a5a64336b70c06e85c2e2706e36336\"\u003e\u003ccode\u003edbac741\u003c/code\u003e\u003c/a\u003e 5.2.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/697547cde621d8b0a47b4fff6e98b29337f8c980\"\u003e\u003ccode\u003e697547c\u003c/code\u003e\u003c/a\u003e Revert \u0026quot;sec: security patch for CVE-2024-51999\u0026quot;\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/4007ad103ba29f6426b2ec9eccfb1ceb792682a8\"\u003e\u003ccode\u003e4007ad1\u003c/code\u003e\u003c/a\u003e Release: 5.2.0 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/6920\"\u003e#6920\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/2f64f68c37c64ae333e41ff38032d21860f22255\"\u003e\u003ccode\u003e2f64f68\u003c/code\u003e\u003c/a\u003e sec: security patch for CVE-2024-51999\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/ed0ba3f1dc905d6b62eabf23bd383abcae4901ba\"\u003e\u003ccode\u003eed0ba3f\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 5.0.0 to 6.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/6928\"\u003e#6928\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/8eace4603cb2547608578a4fbb259dc984216f71\"\u003e\u003ccode\u003e8eace46\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.31.2 to 4.31.6 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/6929\"\u003e#6929\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/30bae810279b2ea162bed5b14ce6c35a110a87f5\"\u003e\u003ccode\u003e30bae81\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 2.3.6 to 2.3.7 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/6930\"\u003e#6930\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/758d4355d45322b4c8cd347ebcefbf3b154c7e7f\"\u003e\u003ccode\u003e758d435\u003c/code\u003e\u003c/a\u003e deps: body-parser@^2.2.1 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/6922\"\u003e#6922\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/77bcd5274a87047e5b3fe2f17f6c342db3909c53\"\u003e\u003ccode\u003e77bcd52\u003c/code\u003e\u003c/a\u003e docs: update emeritus triagers (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/6890\"\u003e#6890\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/f33caf1f89a028f0ea98ff5a156a68e65a2eabdd\"\u003e\u003ccode\u003ef33caf1\u003c/code\u003e\u003c/a\u003e Nominate to \u003ca href=\"https://github.com/efekrskl\"\u003e\u003ccode\u003e@​efekrskl\u003c/code\u003e\u003c/a\u003e for triage team (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/6888\"\u003e#6888\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/express/compare/v4.22.3...v5.2.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eAttestation changes\u003c/summary\u003e\n\u003cp\u003eThis version has no provenance attestation, while the previous version (4.22.3) was attested. Review the \u003ca href=\"https://www.npmjs.com/package/express?activeTab=versions\"\u003epackage versions\u003c/a\u003e before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `express-jwt` from 0.1.3 to 8.5.1\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/auth0/express-jwt/blob/master/CHANGELOG.md\"\u003eexpress-jwt's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChange Log\u003c/h1\u003e\n\u003cp\u003eAll notable changes to this project will be documented in this file starting from version \u003cstrong\u003ev4.0.0\u003c/strong\u003e.\nThis project adheres to \u003ca href=\"http://semver.org/\"\u003eSemantic Versioning\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003e8.3.0 - 2023-01-04\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003erequestProperty support for nested properties (\u003ca href=\"https://github.com/auth0/express-jwt/commit/bbd3606ce68da2602733d6e4ac32564570753ca1\"\u003ebbd3606ce68da2602733d6e4ac32564570753ca1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUpdate Typescript instructions in Readme.MD (\u003ca href=\"https://github.com/auth0/express-jwt/commit/3c1d5cf8a08a6afbcfc78640b8cdb26fac8002ca\"\u003e3c1d5cf8a08a6afbcfc78640b8cdb26fac8002ca\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.2.1 - 2022-12-26\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eadd secret rotation example in readme. close \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/310\"\u003e#310\u003c/a\u003e (\u003ca href=\"https://github.com/auth0/express-jwt/commit/0000a44ed58aac97798007af19b0324f28acc436\"\u003e0000a44ed58aac97798007af19b0324f28acc436\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/310\"\u003e#310\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eupdate \u003ccode\u003e@​types/jsonwebtoken\u003c/code\u003e and fix deps in package-lock (\u003ca href=\"https://github.com/auth0/express-jwt/commit/2322a9b67a5b5c716f953a53a0bb4bbc696d0a11\"\u003e2322a9b67a5b5c716f953a53a0bb4bbc696d0a11\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.2.0 - 2022-12-22\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eadd an optional handler for expired tokens. closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/6048\"\u003e#6048\u003c/a\u003e (\u003ca href=\"https://github.com/auth0/express-jwt/commit/ca6c90ccbb4b61b91f417a5dfa56f0b931b81528\"\u003eca6c90ccbb4b61b91f417a5dfa56f0b931b81528\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/6048\"\u003e#6048\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.1.0 - 2022-12-22\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eupdate type to match jwks-rsa (\u003ca href=\"https://github.com/auth0/express-jwt/commit/bcad8af9cad82b3777cc38d1c05864a35f82bc53\"\u003ebcad8af9cad82b3777cc38d1c05864a35f82bc53\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat: export middleware options type. closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/308\"\u003e#308\u003c/a\u003e (\u003ca href=\"https://github.com/auth0/express-jwt/commit/25a30f0d50c02cc75ab17b09f3592e76e09f9666\"\u003e25a30f0d50c02cc75ab17b09f3592e76e09f9666\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/308\"\u003e#308\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.0.0 - 2022-12-22\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade jsonwebtoken to v9. \u003ca href=\"https://github.com/advisories/GHSA-27h2-hvpr-p74q\"\u003ehttps://github.com/advisories/GHSA-27h2-hvpr-p74q\u003c/a\u003e .\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.7.3 - 2022-05-30\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix tsc build error for express-unless (\u003ca href=\"https://github.com/auth0/express-jwt/commit/e1fe1d264bc5363e008d23fea9d8c5d2ac0d8198\"\u003ee1fe1d264bc5363e008d23fea9d8c5d2ac0d8198\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRemove esModuleInterop and fix assert import in tests (\u003ca href=\"https://github.com/auth0/express-jwt/commit/9ccf0cfd6aaa4cc61fce2f8ccdb961c4b0358201\"\u003e9ccf0cfd6aaa4cc61fce2f8ccdb961c4b0358201\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.7.2 - 2022-05-19\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix instaceof comparison for UnauthorizedError. closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/292\"\u003e#292\u003c/a\u003e (\u003ca href=\"https://github.com/auth0/express-jwt/commit/6c87fe401ecba868feda1ffa530082c7c539321a\"\u003e6c87fe401ecba868feda1ffa530082c7c539321a\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/292\"\u003e#292\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eupdate changelog (\u003ca href=\"https://github.com/auth0/express-jwt/commit/b1344fa7f6f9dd3d27115a9107b3ef4323733895\"\u003eb1344fa7f6f9dd3d27115a9107b3ef4323733895\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.7.1 - 2022-05-13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix readme and package-lock (\u003ca href=\"https://github.com/auth0/express-jwt/commit/7a02ca76c5d7842cfa8b256dcc89dcef1ffbcdc1\"\u003e7a02ca76c5d7842cfa8b256dcc89dcef1ffbcdc1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ebuild(deps): required runtime types (\u003ca href=\"https://github.com/auth0/express-jwt/commit/f3f5af5c214241b4f92b91c49db8586ec20e4526\"\u003ef3f5af5c214241b4f92b91c49db8586ec20e4526\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003edocs: fix tiny typo (\u003ca href=\"https://github.com/auth0/express-jwt/commit/07e771857489b6344a8dc457069d040a76e84230\"\u003e07e771857489b6344a8dc457069d040a76e84230\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.7.0 - 2022-05-06\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edeprecate ExpressJwtRequest in favor of Request with optional auth, closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/284\"\u003e#284\u003c/a\u003e (\u003ca href=\"https://github.com/auth0/express-jwt/commit/de169def56f98f4237741aa6755d0c5e248bd561\"\u003ede169def56f98f4237741aa6755d0c5e248bd561\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/284\"\u003e#284\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.6.2 - 2022-05-02\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/0dfe63b9a702b0755ec60d171152747942210be6\"\u003e\u003ccode\u003e0dfe63b\u003c/code\u003e\u003c/a\u003e 8.5.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/105ef5ec66fa32aa5861a09d3290545253adcbbb\"\u003e\u003ccode\u003e105ef5e\u003c/code\u003e\u003c/a\u003e add readme to package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/c028e7098ea3dbdd4684f6e4960564e38fccdb96\"\u003e\u003ccode\u003ec028e70\u003c/code\u003e\u003c/a\u003e 8.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/75203815ab759f65aa114f4eb01faa58bc0e1e0c\"\u003e\u003ccode\u003e7520381\u003c/code\u003e\u003c/a\u003e fix: signature of middleware returned\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/ecd42788a7a24641ec78c8b21767c5f8aca5600a\"\u003e\u003ccode\u003eecd4278\u003c/code\u003e\u003c/a\u003e update deps\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/f42a0e99422fe85fadd0a209b8497b64995e94cf\"\u003e\u003ccode\u003ef42a0e9\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/339\"\u003e#339\u003c/a\u003e from auth0/integrate-semgrep\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/dacb316f8d485a9c335434f2812561ca9c282ecb\"\u003e\u003ccode\u003edacb316\u003c/code\u003e\u003c/a\u003e Create semgrep.yml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/00763facd650da5aa378ed876f4a1e863957642b\"\u003e\u003ccode\u003e00763fa\u003c/code\u003e\u003c/a\u003e Modify tests to actually exercise wrong signature case by removing base64 pad...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/d15b92c3424ecb1713df106f615c2a770ddbc0b8\"\u003e\u003ccode\u003ed15b92c\u003c/code\u003e\u003c/a\u003e 8.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/d1e88c73ed81b67d8f43eb748f8f33aa5c5b4aaf\"\u003e\u003ccode\u003ed1e88c7\u003c/code\u003e\u003c/a\u003e Merge branch 'glensc-patch-1'\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/auth0/express-jwt/compare/v0.1.3...v8.5.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `express-rate-limit` from 7.5.1 to 8.7.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/releases\"\u003eexpress-rate-limit's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.7.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.6.2\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.6.1\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.6.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.5.2\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.5.1\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.5.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.4.1\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.4.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.3.2\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.3.1\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.3.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.2.1\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.2.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.1.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.0.1\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.0.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/48db09eab351ef0c5992384b1133c7839632bb83\"\u003e\u003ccode\u003e48db09e\u003c/code\u003e\u003c/a\u003e 8.7.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/dce58719951667f74362d8353d0c5342a9a6e338\"\u003e\u003ccode\u003edce5871\u003c/code\u003e\u003c/a\u003e v8.7.0 changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/2f08044ab2f1d15a8211a4dc55f58d6304b4dace\"\u003e\u003ccode\u003e2f08044\u003c/code\u003e\u003c/a\u003e Add inspect.software health badge (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/673\"\u003e#673\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/a29757cdfb06eb57d1b8110d7c7852a50dbe7f0a\"\u003e\u003ccode\u003ea29757c\u003c/code\u003e\u003c/a\u003e feat: add retryAfter option (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/661\"\u003e#661\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/146e88b6d3eb4c787ae17894933ed6840bc81874\"\u003e\u003ccode\u003e146e88b\u003c/code\u003e\u003c/a\u003e chore: rename license\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/5cfb8e89f0f358618fd0cc812ff289f8c4a6ee1e\"\u003e\u003ccode\u003e5cfb8e8\u003c/code\u003e\u003c/a\u003e ci: drop top-level \u003ccode\u003eid-token: write\u003c/code\u003e from the workflow token (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/676\"\u003e#676\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/062bbdde4cfc21a8b302632bf972a12dd7917d9c\"\u003e\u003ccode\u003e062bbdd\u003c/code\u003e\u003c/a\u003e fix: re-wrap license.md so GitHub recognizes it as MIT (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/675\"\u003e#675\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/514772d42b253045025cfad40f7dce28c76e6755\"\u003e\u003ccode\u003e514772d\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump mintlify in the development-dependencies group (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/674\"\u003e#674\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/4f06c8a0068b0131682fffcaf6711b59b6b2652c\"\u003e\u003ccode\u003e4f06c8a\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump the development-dependencies group with 2 updates (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/671\"\u003e#671\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/83356a58e899a4fbe98b8f265a0fafd26553d97c\"\u003e\u003ccode\u003e83356a5\u003c/code\u003e\u003c/a\u003e chore(deps): bump ip-address from 10.4.0 to 10.5.0 (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/672\"\u003e#672\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/compare/v7.5.1...v8.7.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for express-rate-limit since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version modifies \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `express-robots-txt` from 0.5.0 to 1.0.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/modosc/express-robots-txt/blob/main/HISTORY.md\"\u003eexpress-robots-txt's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[v1.0.0] - {2021-08-20}\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRewrite as es6, add separate commonjs + esm exports\u003c/li\u003e\n\u003cli\u003eUpdate deps\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/2791589d8c96fc4d2190cc217d262d70cc569a93\"\u003e\u003ccode\u003e2791589\u003c/code\u003e\u003c/a\u003e es6 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/55\"\u003e#55\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/0eb20919053c95e94b5d439a9fd48a98147d35bd\"\u003e\u003ccode\u003e0eb2091\u003c/code\u003e\u003c/a\u003e update deps\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/940a03c2ebc9b8b8798df855ac92535e4240b060\"\u003e\u003ccode\u003e940a03c\u003c/code\u003e\u003c/a\u003e Bump supertest from 6.1.3 to 6.1.5 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/52\"\u003e#52\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/6c933f1f9936c1470b0ad405310b5979294ccdff\"\u003e\u003ccode\u003e6c933f1\u003c/code\u003e\u003c/a\u003e Bump jest from 27.0.4 to 27.0.6 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/50\"\u003e#50\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/308c9057a4baf7365d515cae1920f57653229711\"\u003e\u003ccode\u003e308c905\u003c/code\u003e\u003c/a\u003e Bump path-parse from 1.0.6 to 1.0.7 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/53\"\u003e#53\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/0bdaaa00b7781540b145fe18abdca11c7a924aee\"\u003e\u003ccode\u003e0bdaaa0\u003c/code\u003e\u003c/a\u003e Bump jest from 26.6.3 to 27.0.4 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/48\"\u003e#48\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/974a926e5dfbfcca2d99742032e4750ca478c22d\"\u003e\u003ccode\u003e974a926\u003c/code\u003e\u003c/a\u003e Bump ws from 7.4.3 to 7.4.6 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/46\"\u003e#46\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/c12444cfcf67cde0d249495d11bbc9b4a7e3f686\"\u003e\u003ccode\u003ec12444c\u003c/code\u003e\u003c/a\u003e Bump hosted-git-info from 2.8.8 to 2.8.9 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/43\"\u003e#43\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/72f7ca8ab5f45592e9d9a49df94e73e03814c793\"\u003e\u003ccode\u003e72f7ca8\u003c/code\u003e\u003c/a\u003e Bump lodash from 4.17.20 to 4.17.21 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/44\"\u003e#44\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/6c35250df606de1bd355cd93850514cea82bb037\"\u003e\u003ccode\u003e6c35250\u003c/code\u003e\u003c/a\u003e Bump chai from 4.3.3 to 4.3.4 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/42\"\u003e#42\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/modosc/express-robots-txt/compare/v0.5.0...v1.0.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `file-type` from 16.5.4 to 22.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/sindresorhus/file-type/releases\"\u003efile-type's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev22.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix streamed OOXML files being detected as zip (\u003ca href=\"https://redirect.github.com/sindresorhus/file-type/issues/801\"\u003e#801\u003c/a\u003e)  1347414\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/compare/v22.1.0...v22.1.1\"\u003ehttps://github.com/sindresorhus/file-type/compare/v22.1.0...v22.1.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev22.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSuppress Vite and webpack warnings for the intentional runtime import  2da7522\u003c/li\u003e\n\u003cli\u003eAdd support for ISO 9660 (.iso) (\u003ca href=\"https://redirect.github.com/sindresorhus/file-type/issues/796\"\u003e#796\u003c/a\u003e)  a675457\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/compare/v22.0.2...v22.1.0\"\u003ehttps://github.com/sindresorhus/file-type/compare/v22.0.2...v22.1.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev22.0.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix ZIP detection on Node.js 24 for entries with a data descriptor  f24af84\u003c/li\u003e\n\u003cli\u003eFix UTF-16 LE text being detected as MPEG audio  c891929\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/compare/v22.0.1...v22.0.2\"\u003ehttps://github.com/sindresorhus/file-type/compare/v22.0.1...v22.0.2\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev22.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix: Work around esbuild resolving Node-only imports  ce4262f\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/compare/v22.0.0...v22.0.1\"\u003ehttps://github.com/sindresorhus/file-type/compare/v22.0.0...v22.0.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev22.0.0\u003c/h2\u003e\n\u003ch3\u003eBreaking\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eRequires Node.js 22\u003c/li\u003e\n\u003cli\u003eDropped Node.js \u003ccode\u003estream.Readable\u003c/code\u003e support from \u003ccode\u003efileTypeFromStream()\u003c/code\u003e and \u003ccode\u003efileTypeStream()\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003eThese now only accept a web \u003ccode\u003eReadableStream\u003c/code\u003e. Migrate with \u003ca href=\"https://nodejs.org/api/stream.html#streamreadabletowebstreamreadable-options\"\u003e\u003ccode\u003eReadable.toWeb()\u003c/code\u003e\u003c/a\u003e:\u003c/li\u003e\n\u003c/ul\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003e// Before\r\nimport fs from 'node:fs';\r\nfileTypeFromStream(fs.createReadStream('file.mp4'));\r\n\u003cp\u003e// After\u003cbr /\u003e\nimport fs from 'node:fs';\u003cbr /\u003e\nimport {Readable} from 'node:stream';\u003cbr /\u003e\nfileTypeFromStream(Readable.toWeb(fs.createReadStream('file.mp4')));\u003cbr /\u003e\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003eSub-exports (e.g. \u003ccode\u003efile-type/core\u003c/code\u003e) have been removed. Import everything from \u003ccode\u003efile-type\u003c/code\u003e directly.\u003c/li\u003e\n\u003cli\u003eThe \u003ccode\u003eReadableStreamWithFileType\u003c/code\u003e type has been removed. Use \u003ccode\u003eAnyWebReadableByteStreamWithFileType\u003c/code\u003e instead.\u003c/li\u003e\n\u003cli\u003eSeveral MIME types have been corrected or normalized:\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/32b087c6eaa2c03a083f599cf2f91fe9d1aba452\"\u003e\u003ccode\u003e32b087c\u003c/code\u003e\u003c/a\u003e 22.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/1347414c7c0463bf2c190a6593a7e882771add12\"\u003e\u003ccode\u003e1347414\u003c/code\u003e\u003c/a\u003e Fix streamed OOXML files being detected as zip (\u003ca href=\"https://redirect.github.com/sindresorhus/file-type/issues/801\"\u003e#801\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/2d261fabb71bfc549d8e26cfe044a5b2753b68ad\"\u003e\u003ccode\u003e2d261fa\u003c/code\u003e\u003c/a\u003e 22.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/60315838c50c18c6bbaa22bb59fb3129d5746ad3\"\u003e\u003ccode\u003e6031583\u003c/code\u003e\u003c/a\u003e Update readme\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/2da7522bbadbd96411e68ecfdf62983b6e587397\"\u003e\u003ccode\u003e2da7522\u003c/code\u003e\u003c/a\u003e Suppress Vite and webpack warnings for the intentional runtime import\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/a6754574e1bcca36892435bf4e7f7eda6716a0ce\"\u003e\u003ccode\u003ea675457\u003c/code\u003e\u003c/a\u003e Add support for ISO 9660 (.iso) (\u003ca href=\"https://redirect.github.com/sindresorhus/file-type/issues/796\"\u003e#796\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/1562005a4dfb8215b9407a54cc4b55700af46b03\"\u003e\u003ccode\u003e1562005\u003c/code\u003e\u003c/a\u003e 22.0.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/f24af84f56e920d4bc4a27321cc31842d7e5bb16\"\u003e\u003ccode\u003ef24af84\u003c/code\u003e\u003c/a\u003e Fix ZIP detection on Node.js 24 for entries with a data descriptor\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/c8919296512b249b4c8f594b3a3e26352467a3b2\"\u003e\u003ccode\u003ec891929\u003c/code\u003e\u003c/a\u003e Fix UTF-16 LE text being detected as MPEG audio\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/fil...\n\n_Description has been truncated_","html_url":"https://github.com/SriKaratalapu/juice-shop-krishna/pull/121","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/SriKaratalapu%2Fjuice-shop-krishna/issues/121","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/121/packages"},{"uuid":"5520673862","node_id":"PR_kwDOQMnSG88AAAABEVxlsg","number":61,"state":"open","title":"chore(deps-dev): bump the dev-dependencies group across 1 directory with 33 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-20T21:46:17.000Z","updated_at":"2026-09-20T21:51:03.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps-dev): bump","group_name":"dev-dependencies","update_count":33,"packages":[{"name":"@antfu/eslint-config","old_version":"6.7.3","new_version":"9.5.1","repository_url":"https://github.com/antfu/eslint-config"},{"name":"@antv/g6","old_version":"4.8.25","new_version":"5.1.1","repository_url":"https://github.com/antvis/g6"},{"name":"@codecov/webpack-plugin","old_version":"1.9.1","new_version":"2.0.1"},{"name":"@eslint-react/eslint-plugin","old_version":"2.13.0","new_version":"5.19.1","repository_url":"https://github.com/Rel1cx/eslint-react"},{"name":"@inquirer/prompts","old_version":"7.10.1","new_version":"8.7.2","repository_url":"https://github.com/SBoudrias/Inquirer.js"},{"name":"@npmcli/run-script","old_version":"10.0.4","new_version":"11.0.0","repository_url":"https://github.com/npm/run-script"},{"name":"@size-limit/file","old_version":"11.2.0","new_version":"14.0.0","repository_url":"https://github.com/ai/size-limit"},{"name":"@testing-library/jest-dom","old_version":"6.10.0","new_version":"7.0.1","repository_url":"https://github.com/testing-library/jest-dom"},{"name":"@types/css-tree","old_version":"2.3.11","new_version":"3.2.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/jquery","old_version":"3.5.34","new_version":"4.0.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/node","old_version":"24.13.6","new_version":"26.6.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/react-resizable","old_version":"3.0.8","new_version":"4.0.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/tar","old_version":"6.1.13","new_version":"7.0.87","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"antd-style","old_version":"3.7.1","new_version":"4.1.0","repository_url":"https://github.com/ant-design/antd-style"},{"name":"antd-token-previewer","old_version":"2.0.8","new_version":"3.0.1","repository_url":"https://github.com/ant-design/antd-token-previewer"},{"name":"chalk","old_version":"5.6.2","new_version":"6.0.0","repository_url":"https://github.com/chalk/chalk"},{"name":"dotenv","old_version":"17.4.2","new_version":"18.0.0","repository_url":"https://github.com/motdotla/dotenv"},{"name":"env-paths","old_version":"3.0.0","new_version":"4.0.0","repository_url":"https://github.com/sindresorhus/env-paths"},{"name":"eslint","old_version":"9.39.5","new_version":"10.10.0","repository_url":"https://github.com/eslint/eslint"},{"name":"eslint-plugin-compat","old_version":"6.2.1","new_version":"7.0.2","repository_url":"https://github.com/amilajack/eslint-plugin-compat"},{"name":"glob","old_version":"11.1.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"},{"name":"immer","old_version":"10.2.0","new_version":"11.1.18","repository_url":"https://github.com/immerjs/immer"},{"name":"jest-axe","old_version":"10.0.0","new_version":"11.0.0","repository_url":"https://github.com/NickColley/jest-axe"},{"name":"jquery","old_version":"3.7.1","new_version":"4.0.0","repository_url":"https://github.com/jquery/jquery"},{"name":"jsdom","old_version":"27.0.0","new_version":"30.1.0","repository_url":"https://github.com/jsdom/jsdom"},{"name":"lint-staged","old_version":"16.4.0","new_version":"17.5.1","repository_url":"https://github.com/lint-staged/lint-staged"},{"name":"open","old_version":"10.2.0","new_version":"11.0.4","repository_url":"https://github.com/sindresorhus/open"},{"name":"puppeteer","old_version":"24.43.1","new_version":"25.11.0","repository_url":"https://github.com/puppeteer/puppeteer"},{"name":"react-infinite-scroll-component","old_version":"6.1.1","new_version":"7.2.1","repository_url":"https://github.com/ankeetmaini/react-infinite-scroll-component"},{"name":"react-resizable","old_version":"3.2.0","new_version":"4.0.2","repository_url":"https://github.com/react-grid-layout/react-resizable"},{"name":"size-limit","old_version":"11.2.0","new_version":"14.0.0","repository_url":"https://github.com/ai/size-limit"},{"name":"typescript","old_version":"5.9.3","new_version":"7.0.2","repository_url":"https://github.com/microsoft/TypeScript"},{"name":"webpack-bundle-analyzer","old_version":"4.10.2","new_version":"5.4.0","repository_url":"https://github.com/webpack/webpack-bundle-analyzer"}],"path":null,"ecosystem":"npm"},"body":"Bumps the dev-dependencies group with 33 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@antfu/eslint-config](https://github.com/antfu/eslint-config) | `6.7.3` | `9.5.1` |\n| [@antv/g6](https://github.com/antvis/g6) | `4.8.25` | `5.1.1` |\n| @codecov/webpack-plugin | `1.9.1` | `2.0.1` |\n| [@eslint-react/eslint-plugin](https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin) | `2.13.0` | `5.19.1` |\n| [@inquirer/prompts](https://github.com/SBoudrias/Inquirer.js) | `7.10.1` | `8.7.2` |\n| [@npmcli/run-script](https://github.com/npm/run-script) | `10.0.4` | `11.0.0` |\n| [@size-limit/file](https://github.com/ai/size-limit) | `11.2.0` | `14.0.0` |\n| [@testing-library/jest-dom](https://github.com/testing-library/jest-dom) | `6.10.0` | `7.0.1` |\n| [@types/css-tree](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/css-tree) | `2.3.11` | `3.2.0` |\n| [@types/jquery](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/jquery) | `3.5.34` | `4.0.1` |\n| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `24.13.6` | `26.6.1` |\n| [@types/react-resizable](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-resizable) | `3.0.8` | `4.0.0` |\n| [@types/tar](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/tar) | `6.1.13` | `7.0.87` |\n| [antd-style](https://github.com/ant-design/antd-style) | `3.7.1` | `4.1.0` |\n| [antd-token-previewer](https://github.com/ant-design/antd-token-previewer) | `2.0.8` | `3.0.1` |\n| [chalk](https://github.com/chalk/chalk) | `5.6.2` | `6.0.0` |\n| [dotenv](https://github.com/motdotla/dotenv) | `17.4.2` | `18.0.0` |\n| [env-paths](https://github.com/sindresorhus/env-paths) | `3.0.0` | `4.0.0` |\n| [eslint](https://github.com/eslint/eslint) | `9.39.5` | `10.10.0` |\n| [eslint-plugin-compat](https://github.com/amilajack/eslint-plugin-compat) | `6.2.1` | `7.0.2` |\n| [glob](https://github.com/isaacs/node-glob) | `11.1.0` | `13.0.6` |\n| [immer](https://github.com/immerjs/immer) | `10.2.0` | `11.1.18` |\n| [jest-axe](https://github.com/NickColley/jest-axe) | `10.0.0` | `11.0.0` |\n| [jquery](https://github.com/jquery/jquery) | `3.7.1` | `4.0.0` |\n| [jsdom](https://github.com/jsdom/jsdom) | `27.0.0` | `30.1.0` |\n| [lint-staged](https://github.com/lint-staged/lint-staged) | `16.4.0` | `17.5.1` |\n| [open](https://github.com/sindresorhus/open) | `10.2.0` | `11.0.4` |\n| [puppeteer](https://github.com/puppeteer/puppeteer) | `24.43.1` | `25.11.0` |\n| [react-infinite-scroll-component](https://github.com/ankeetmaini/react-infinite-scroll-component) | `6.1.1` | `7.2.1` |\n| [react-resizable](https://github.com/react-grid-layout/react-resizable) | `3.2.0` | `4.0.2` |\n| [size-limit](https://github.com/ai/size-limit) | `11.2.0` | `14.0.0` |\n| [typescript](https://github.com/microsoft/TypeScript) | `5.9.3` | `7.0.2` |\n| [webpack-bundle-analyzer](https://github.com/webpack/webpack-bundle-analyzer) | `4.10.2` | `5.4.0` |\n\n\nUpdates `@antfu/eslint-config` from 6.7.3 to 9.5.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/antfu/eslint-config/releases\"\u003e@​antfu/eslint-config's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev9.5.1\u003c/h2\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eantislop\u003c/code\u003e plugins composition, refactor  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/a213d4e\"\u003e\u003c!-- raw HTML omitted --\u003e(a213d)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/antfu/eslint-config/compare/v9.5.0...v9.5.1\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev9.5.0\u003c/h2\u003e\n\u003ch3\u003e   🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdd antislop option  -  by \u003ca href=\"https://github.com/antfubot\"\u003e\u003ccode\u003e@​antfubot\u003c/code\u003e\u003c/a\u003e and \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antfu/eslint-config/issues/861\"\u003eantfu/eslint-config#861\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/f6906f6\"\u003e\u003c!-- raw HTML omitted --\u003e(f6906)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/antfu/eslint-config/compare/v9.4.1...v9.5.0\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev9.4.1\u003c/h2\u003e\n\u003ch3\u003e   🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003epnpm\u003c/strong\u003e: Enforce new-line style for pnpm-workspace.yaml  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/ab4004a\"\u003e\u003c!-- raw HTML omitted --\u003e(ab400)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/antfu/eslint-config/compare/v9.4.0...v9.4.1\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev9.4.0\u003c/h2\u003e\n\u003ch3\u003e   🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate plugins \u003ccode\u003ejsdoc v64\u003c/code\u003e \u003ccode\u003eunicorn v74\u003c/code\u003e \u003ccode\u003ee18e v0.8\u003c/code\u003e \u003ccode\u003esolid v0.17\u003c/code\u003e  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/33a41b4\"\u003e\u003c!-- raw HTML omitted --\u003e(33a41)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003epnpm\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eEnable \u003ccode\u003eminimumReleaseAgeExcludePrune\u003c/code\u003e by default  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/9526c8d\"\u003e\u003c!-- raw HTML omitted --\u003e(9526c)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove the pnpm workspaces fields ordering  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/aa64d59\"\u003e\u003c!-- raw HTML omitted --\u003e(aa64d)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/antfu/eslint-config/compare/v9.3.0...v9.4.0\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev9.3.0\u003c/h2\u003e\n\u003ch3\u003e   🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate plugins  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/de152ed\"\u003e\u003c!-- raw HTML omitted --\u003e(de152)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eMark \u003ccode\u003eeslint-plugin-erasable-syntax-only\u003c/code\u003e as optional peer  -  by \u003ca href=\"https://github.com/KazariAI\"\u003e\u003ccode\u003e@​KazariAI\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antfu/eslint-config/issues/859\"\u003eantfu/eslint-config#859\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/016425f\"\u003e\u003c!-- raw HTML omitted --\u003e(01642)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/antfu/eslint-config/compare/v9.2.0...v9.3.0\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev9.2.0\u003c/h2\u003e\n\u003ch3\u003e   🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate plugins  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/9ff1e11\"\u003e\u003c!-- raw HTML omitted --\u003e(9ff1e)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003escripts-info\u003c/code\u003e in package.json sorting  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/09680e4\"\u003e\u003c!-- raw HTML omitted --\u003e(09680)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/df4d896ed9b493ca0562fdf2c8c0fcd92fd16f6e\"\u003e\u003ccode\u003edf4d896\u003c/code\u003e\u003c/a\u003e chore: release v9.5.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/a213d4e9abd9945c7ee0408aeafdca34abdaf9c6\"\u003e\u003ccode\u003ea213d4e\u003c/code\u003e\u003c/a\u003e fix: \u003ccode\u003eantislop\u003c/code\u003e plugins composition, refactor\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/0870a3a73066aea9a1586672d779a4608b3375c7\"\u003e\u003ccode\u003e0870a3a\u003c/code\u003e\u003c/a\u003e chore: release v9.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/f6906f6b0c68a756bed2eb4bbd42358cf6ec4c55\"\u003e\u003ccode\u003ef6906f6\u003c/code\u003e\u003c/a\u003e feat: add antislop option (\u003ca href=\"https://redirect.github.com/antfu/eslint-config/issues/861\"\u003e#861\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/8808d4ef652f2a87d0b387c6a5765c037cd4a3fd\"\u003e\u003ccode\u003e8808d4e\u003c/code\u003e\u003c/a\u003e chore: release v9.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/ab4004a34932cc2b7208d324a5512a3b4c10d826\"\u003e\u003ccode\u003eab4004a\u003c/code\u003e\u003c/a\u003e feat(pnpm): enforce new-line style for pnpm-workspace.yaml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/c058aa0cf9569eb0de68e95efdd66c750c971d6e\"\u003e\u003ccode\u003ec058aa0\u003c/code\u003e\u003c/a\u003e chore: release v9.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/33a41b4d58a9cc754d52f4eb2b6767899310d69a\"\u003e\u003ccode\u003e33a41b4\u003c/code\u003e\u003c/a\u003e feat: update plugins \u003ccode\u003ejsdoc v64\u003c/code\u003e \u003ccode\u003eunicorn v74\u003c/code\u003e \u003ccode\u003ee18e v0.8\u003c/code\u003e \u003ccode\u003esolid v0.17\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/4e17083ff0e325eb9dfec7b887658c01d72d061f\"\u003e\u003ccode\u003e4e17083\u003c/code\u003e\u003c/a\u003e chore: update deps\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/aa64d594d744902d57c885743cc7ca44d3976c0c\"\u003e\u003ccode\u003eaa64d59\u003c/code\u003e\u003c/a\u003e feat(pnpm): improve the pnpm workspaces fields ordering\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/antfu/eslint-config/compare/v6.7.3...v9.5.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@antv/g6` from 4.8.25 to 5.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/antvis/g6/releases\"\u003e@​antv/g6's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.1.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edocs: replace playground with ob by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7226\"\u003eantvis/G6#7226\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 更新图表示例中, 点选示例配置 by \u003ca href=\"https://github.com/louhaojie99\"\u003e\u003ccode\u003e@​louhaojie99\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7247\"\u003eantvis/G6#7247\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: update labelText attribute types for generic node configuration by \u003ca href=\"https://github.com/louhaojie99\"\u003e\u003ccode\u003e@​louhaojie99\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7248\"\u003eantvis/G6#7248\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 修正元素 Element 内置节点 HTML 文档中样式配置类型以及默认值问题 by \u003ca href=\"https://github.com/louhaojie99\"\u003e\u003ccode\u003e@​louhaojie99\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7249\"\u003eantvis/G6#7249\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 修正元素 Element 的通用配置项中，属性介绍表头的类型与默认值位置错误 by \u003ca href=\"https://github.com/louhaojie99\"\u003e\u003ccode\u003e@​louhaojie99\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7250\"\u003eantvis/G6#7250\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 修正 Graph - 图 介绍中的内容符号缺失及空格问题 by \u003ca href=\"https://github.com/louhaojie99\"\u003e\u003ccode\u003e@​louhaojie99\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7251\"\u003eantvis/G6#7251\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: restructure of the menu by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7253\"\u003eantvis/G6#7253\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 更新元素通用属性文档 by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7256\"\u003eantvis/G6#7256\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 丰富html节点文档 by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7257\"\u003eantvis/G6#7257\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 更新元素状态和Tooltip插件文档，增强内容和示例 by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7260\"\u003eantvis/G6#7260\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: fix indented-tree demo by \u003ca href=\"https://github.com/TZZack\"\u003e\u003ccode\u003e@​TZZack\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7242\"\u003eantvis/G6#7242\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(edge-badge): add default edge badge opacity by \u003ca href=\"https://github.com/TZZack\"\u003e\u003ccode\u003e@​TZZack\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7243\"\u003eantvis/G6#7243\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: fix type of is-to-be-destroyed by \u003ca href=\"https://github.com/Aarebecca\"\u003e\u003ccode\u003e@​Aarebecca\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7246\"\u003eantvis/G6#7246\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: compact box layout docs by \u003ca href=\"https://github.com/SamuNatsu\"\u003e\u003ccode\u003e@​SamuNatsu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7284\"\u003eantvis/G6#7284\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(layout): add comboFilter by \u003ca href=\"https://github.com/TZZack\"\u003e\u003ccode\u003e@​TZZack\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7244\"\u003eantvis/G6#7244\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(transform): prevent redirected edges from being re-added in process-parallel-edges by \u003ca href=\"https://github.com/lyw405\"\u003e\u003ccode\u003e@​lyw405\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7266\"\u003eantvis/G6#7266\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: minimap，配置项，shape方法，添加第3个参数，传入完整图形 by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7286\"\u003eantvis/G6#7286\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: divide by zero error when fitView with no content by \u003ca href=\"https://github.com/louisch\"\u003e\u003ccode\u003e@​louisch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7292\"\u003eantvis/G6#7292\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(brush-select and lasso-select): adapt html node by \u003ca href=\"https://github.com/TZZack\"\u003e\u003ccode\u003e@​TZZack\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7293\"\u003eantvis/G6#7293\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: skip react node test case to make ci work by \u003ca href=\"https://github.com/hustcc\"\u003e\u003ccode\u003e@​hustcc\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7311\"\u003eantvis/G6#7311\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: correct drag node position at rotated canvas by \u003ca href=\"https://github.com/Sloth9527\"\u003e\u003ccode\u003e@​Sloth9527\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7310\"\u003eantvis/G6#7310\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: title plugin by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7294\"\u003eantvis/G6#7294\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: console.error emit from grid line plugin when followZoom is on by \u003ca href=\"https://github.com/louisch\"\u003e\u003ccode\u003e@​louisch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7289\"\u003eantvis/G6#7289\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 添加g6-extension-vue自定义节点文档 by \u003ca href=\"https://github.com/Child-qjj\"\u003e\u003ccode\u003e@​Child-qjj\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7320\"\u003eantvis/G6#7320\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: make redirect link right by \u003ca href=\"https://github.com/ZWkang\"\u003e\u003ccode\u003e@​ZWkang\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7323\"\u003eantvis/G6#7323\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 修正元素状态属性栏, 禁用状态名描述错误，将 disable 更正为 disabled by \u003ca href=\"https://github.com/louhaojie99\"\u003e\u003ccode\u003e@​louhaojie99\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7334\"\u003eantvis/G6#7334\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: add hasNode/hasEdge/hasCombo API by \u003ca href=\"https://github.com/Aarebecca\"\u003e\u003ccode\u003e@​Aarebecca\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7345\"\u003eantvis/G6#7345\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: 修复 React 16/17 版本下 react-dom/client 模块解析失败的问题 by \u003ca href=\"https://github.com/yinsong19\"\u003e\u003ccode\u003e@​yinsong19\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7389\"\u003eantvis/G6#7389\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate BaseNode.zh.md by \u003ca href=\"https://github.com/Gitsifu\"\u003e\u003ccode\u003e@​Gitsifu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7370\"\u003eantvis/G6#7370\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore:add issue automated by \u003ca href=\"https://github.com/interstellarmt\"\u003e\u003ccode\u003e@​interstellarmt\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7391\"\u003eantvis/G6#7391\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade canvas version in g6-ssr by \u003ca href=\"https://github.com/hustcc\"\u003e\u003ccode\u003e@​hustcc\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7395\"\u003eantvis/G6#7395\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: upgrade canvas to v3 in g6-ssr by \u003ca href=\"https://github.com/hustcc\"\u003e\u003ccode\u003e@​hustcc\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7398\"\u003eantvis/G6#7398\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: update version to 5.0.50 by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7426\"\u003eantvis/G6#7426\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: g6-extension-react 支持 React16~19 渲染兼容 by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7434\"\u003eantvis/G6#7434\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate webpack configuration instructions by \u003ca href=\"https://github.com/JieWongGitHub\"\u003e\u003ccode\u003e@​JieWongGitHub\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7433\"\u003eantvis/G6#7433\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e更新bundle.zh.md by \u003ca href=\"https://github.com/JieWongGitHub\"\u003e\u003ccode\u003e@​JieWongGitHub\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7431\"\u003eantvis/G6#7431\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: tooltip when shown and next not enable, hide tooltip by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7462\"\u003eantvis/G6#7462\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: remove petercat by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7469\"\u003eantvis/G6#7469\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs(site): 修复 v5 文档交互示例，将 'drag-node' 更正为 'drag-element' by \u003ca href=\"https://github.com/baozjj\"\u003e\u003ccode\u003e@​baozjj\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7478\"\u003eantvis/G6#7478\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eThe getNeighborIds method within the ClickSelect behavior has been changed from private to protected. by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7481\"\u003eantvis/G6#7481\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: zoom-canvas scroll-canvas conflict by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7488\"\u003eantvis/G6#7488\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: drag-element add trigger config by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7497\"\u003eantvis/G6#7497\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: focus element trigger option by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7501\"\u003eantvis/G6#7501\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eupdate: 增加扩展实现相关文档指引 by \u003ca href=\"https://github.com/imindtrack\"\u003e\u003ccode\u003e@​imindtrack\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7493\"\u003eantvis/G6#7493\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: canvas event sample fix by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7506\"\u003eantvis/G6#7506\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: update announcement content and link in .dumirc.ts by \u003ca href=\"https://github.com/Aarebecca\"\u003e\u003ccode\u003e@​Aarebecca\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7511\"\u003eantvis/G6#7511\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(shortcut): 修正全局事件监听器错误移除focus事件的问题 by \u003ca href=\"https://github.com/Child-qjj\"\u003e\u003ccode\u003e@​Child-qjj\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7470\"\u003eantvis/G6#7470\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: legend getMarkerData to protected by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7507\"\u003eantvis/G6#7507\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/antvis/g6/commits/5.1.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@codecov/webpack-plugin` from 1.9.1 to 2.0.1\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~thomasrockhu\"\u003ethomasrockhu\u003c/a\u003e, a new releaser for \u003ccode\u003e@​codecov/webpack-plugin\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@eslint-react/eslint-plugin` from 2.13.0 to 5.19.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/Rel1cx/eslint-react/releases\"\u003e@​eslint-react/eslint-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.19.1 (2026-09-15)\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003e🐞 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: the first parameter of a function is now classified as props only when the function is a confirmed component — one that returns JSX or calls hooks — so mutating the first parameter of a function that merely looks like a component (e.g. an event-handler factory whose returned function never renders and calls no hooks) is no longer reported. (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1952\"\u003e#1952\u003c/a\u003e, closes \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1951\"\u003e#1951\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🏗️ Internal\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: renamed \u003ccode\u003eMUTATING_METHODS\u003c/code\u003e/\u003ccode\u003eNAVIGATION_HOOKS\u003c/code\u003e to \u003ccode\u003eKNOWN_MUTATING_METHODS\u003c/code\u003e/\u003ccode\u003eKNOWN_MUTATING_HOOKS\u003c/code\u003e and added precise behavior boundary tests.\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/globals\u003c/code\u003e: restructured internals (split into \u003ccode\u003ecollect\u003c/code\u003e, \u003ccode\u003eeffects\u003c/code\u003e, and \u003ccode\u003eorigins\u003c/code\u003e modules) to match the in-progress \u003ccode\u003efeat/environment-config\u003c/code\u003e implementation; no behavior change.\u003c/li\u003e\n\u003cli\u003eWebsite: awaited the async llms.txt index generation and fixed the website data update step to run before building.\u003c/li\u003e\n\u003cli\u003eCI: removed the generated file verification step.\u003c/li\u003e\n\u003cli\u003eBumped \u003ccode\u003etypescript-eslint\u003c/code\u003e to \u003ccode\u003e8.70.0\u003c/code\u003e, \u003ccode\u003ereact\u003c/code\u003e/\u003ccode\u003ereact-dom\u003c/code\u003e to \u003ccode\u003e19.3.0\u003c/code\u003e, \u003ccode\u003enext\u003c/code\u003e to \u003ccode\u003e16.3.5\u003c/code\u003e, \u003ccode\u003evite\u003c/code\u003e to \u003ccode\u003e8.3.0\u003c/code\u003e, \u003ccode\u003eeffect\u003c/code\u003e to \u003ccode\u003e3.22.2\u003c/code\u003e, \u003ccode\u003efumadocs\u003c/code\u003e to \u003ccode\u003e16.15.10\u003c/code\u003e, \u003ccode\u003eeslint-plugin-jsdoc\u003c/code\u003e to \u003ccode\u003e64.3.9\u003c/code\u003e, \u003ccode\u003etailwind-merge\u003c/code\u003e to \u003ccode\u003e3.7.0\u003c/code\u003e, \u003ccode\u003eansis\u003c/code\u003e to \u003ccode\u003e4.4.0\u003c/code\u003e, \u003ccode\u003enx\u003c/code\u003e to \u003ccode\u003e23.2.1\u003c/code\u003e, \u003ccode\u003eeslint-plugin-react-refresh\u003c/code\u003e to \u003ccode\u003e0.5.6\u003c/code\u003e, \u003ccode\u003eeslint-plugin-package-json\u003c/code\u003e to \u003ccode\u003e1.8.1\u003c/code\u003e, \u003ccode\u003e@types/node\u003c/code\u003e to \u003ccode\u003e26.5.1\u003c/code\u003e, \u003ccode\u003e@types/react\u003c/code\u003e to \u003ccode\u003e19.3.0\u003c/code\u003e, \u003ccode\u003e@types/react-dom\u003c/code\u003e to \u003ccode\u003e19.3.0\u003c/code\u003e, and \u003ccode\u003epnpm\u003c/code\u003e to \u003ccode\u003e12.4.1\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/Rel1cx/eslint-react/compare/v5.19.0...v5.19.1\"\u003ehttps://github.com/Rel1cx/eslint-react/compare/v5.19.0...v5.19.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eAttestation\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/attestations/47410636\"\u003ehttps://github.com/Rel1cx/eslint-react/attestations/47410636\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.19.0 (2026-09-07)\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003e✨ New\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: direct mutations of props and state are now reported — member assignments, updates, deletions, and mutating method calls are flagged when the mutated value resolves (through variable-declarator aliases) to a component's props, a \u003ccode\u003euseState\u003c/code\u003e/\u003ccode\u003euseReducer\u003c/code\u003e state value, or a custom hook matching the \u003ccode\u003eadditionalStateHooks\u003c/code\u003e setting, independent of whether the mutation happens inside a function that reaches a freeze sink. (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1948\"\u003e#1948\u003c/a\u003e, closes \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1941\"\u003e#1941\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: added shallow-copy awareness — nested mutations through an object/array literal built by spreading a props or state value (e.g. \u003ccode\u003econst copy = { ...state }\u003c/code\u003e / \u003ccode\u003econst copy = [...state]\u003c/code\u003e) are reported, since the nested values are still shared with the original; writes to the copy's own top-level slots are not reported. (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1948\"\u003e#1948\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/Rel1cx/eslint-react/compare/v5.18.10...v5.19.0\"\u003ehttps://github.com/Rel1cx/eslint-react/compare/v5.18.10...v5.19.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eAttestation\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/attestations/45585492\"\u003ehttps://github.com/Rel1cx/eslint-react/attestations/45585492\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.18.10 (2026-09-06)\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003e🐞 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe remaining \u003ccode\u003edisable-*\u003c/code\u003e preset configs in \u003ccode\u003ereact-x\u003c/code\u003e and \u003ccode\u003ereact-rsc\u003c/code\u003e now also register the same plugin object as the package's default export, so ESLint no longer reports a \u0026quot;Cannot redefine plugin\u0026quot; error when combining them with a manually registered plugin. (follow-up to \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1947\"\u003e#1947\u003c/a\u003e, see \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1946\"\u003e#1946\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🏗️ Internal\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eWebsite: removed \u003ccode\u003efumadocs-twoslash\u003c/code\u003e from \u003ccode\u003eserverExternalPackages\u003c/code\u003e to fix a prerender error.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/Rel1cx/eslint-react/blob/main/CHANGELOG.md\"\u003e@​eslint-react/eslint-plugin's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.19.1 (2026-09-15)\u003c/h2\u003e\n\u003ch3\u003e🐞 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: the first parameter of a function is now classified as props only when the function is a confirmed component — one that returns JSX or calls hooks — so mutating the first parameter of a function that merely looks like a component (e.g. an event-handler factory whose returned function never renders and calls no hooks) is no longer reported. (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1952\"\u003e#1952\u003c/a\u003e, closes \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1951\"\u003e#1951\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🏗️ Internal\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: renamed \u003ccode\u003eMUTATING_METHODS\u003c/code\u003e/\u003ccode\u003eNAVIGATION_HOOKS\u003c/code\u003e to \u003ccode\u003eKNOWN_MUTATING_METHODS\u003c/code\u003e/\u003ccode\u003eKNOWN_MUTATING_HOOKS\u003c/code\u003e and added precise behavior boundary tests.\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/globals\u003c/code\u003e: restructured internals (split into \u003ccode\u003ecollect\u003c/code\u003e, \u003ccode\u003eeffects\u003c/code\u003e, and \u003ccode\u003eorigins\u003c/code\u003e modules) to match the in-progress \u003ccode\u003efeat/environment-config\u003c/code\u003e implementation; no behavior change.\u003c/li\u003e\n\u003cli\u003eWebsite: awaited the async llms.txt index generation and fixed the website data update step to run before building.\u003c/li\u003e\n\u003cli\u003eCI: removed the generated file verification step.\u003c/li\u003e\n\u003cli\u003eBumped \u003ccode\u003etypescript-eslint\u003c/code\u003e to \u003ccode\u003e8.70.0\u003c/code\u003e, \u003ccode\u003ereact\u003c/code\u003e/\u003ccode\u003ereact-dom\u003c/code\u003e to \u003ccode\u003e19.3.0\u003c/code\u003e, \u003ccode\u003enext\u003c/code\u003e to \u003ccode\u003e16.3.5\u003c/code\u003e, \u003ccode\u003evite\u003c/code\u003e to \u003ccode\u003e8.3.0\u003c/code\u003e, \u003ccode\u003eeffect\u003c/code\u003e to \u003ccode\u003e3.22.2\u003c/code\u003e, \u003ccode\u003efumadocs\u003c/code\u003e to \u003ccode\u003e16.15.10\u003c/code\u003e, \u003ccode\u003eeslint-plugin-jsdoc\u003c/code\u003e to \u003ccode\u003e64.3.9\u003c/code\u003e, \u003ccode\u003etailwind-merge\u003c/code\u003e to \u003ccode\u003e3.7.0\u003c/code\u003e, \u003ccode\u003eansis\u003c/code\u003e to \u003ccode\u003e4.4.0\u003c/code\u003e, \u003ccode\u003enx\u003c/code\u003e to \u003ccode\u003e23.2.1\u003c/code\u003e, \u003ccode\u003eeslint-plugin-react-refresh\u003c/code\u003e to \u003ccode\u003e0.5.6\u003c/code\u003e, \u003ccode\u003eeslint-plugin-package-json\u003c/code\u003e to \u003ccode\u003e1.8.1\u003c/code\u003e, \u003ccode\u003e@types/node\u003c/code\u003e to \u003ccode\u003e26.5.1\u003c/code\u003e, \u003ccode\u003e@types/react\u003c/code\u003e to \u003ccode\u003e19.3.0\u003c/code\u003e, \u003ccode\u003e@types/react-dom\u003c/code\u003e to \u003ccode\u003e19.3.0\u003c/code\u003e, and \u003ccode\u003epnpm\u003c/code\u003e to \u003ccode\u003e12.4.1\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/Rel1cx/eslint-react/compare/v5.19.0...v5.19.1\"\u003ehttps://github.com/Rel1cx/eslint-react/compare/v5.19.0...v5.19.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.19.0 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e✨ New\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: direct mutations of props and state are now reported — member assignments, updates, deletions, and mutating method calls are flagged when the mutated value resolves (through variable-declarator aliases) to a component's props, a \u003ccode\u003euseState\u003c/code\u003e/\u003ccode\u003euseReducer\u003c/code\u003e state value, or a custom hook matching the \u003ccode\u003eadditionalStateHooks\u003c/code\u003e setting, independent of whether the mutation happens inside a function that reaches a freeze sink. (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1948\"\u003e#1948\u003c/a\u003e, closes \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1941\"\u003e#1941\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: added shallow-copy awareness — nested mutations through an object/array literal built by spreading a props or state value (e.g. \u003ccode\u003econst copy = { ...state }\u003c/code\u003e / \u003ccode\u003econst copy = [...state]\u003c/code\u003e) are reported, since the nested values are still shared with the original; writes to the copy's own top-level slots are not reported. (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1948\"\u003e#1948\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/Rel1cx/eslint-react/compare/v5.18.10...v5.19.0\"\u003ehttps://github.com/Rel1cx/eslint-react/compare/v5.18.10...v5.19.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.18.10 (2026-09-06)\u003c/h2\u003e\n\u003ch3\u003e🐞 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe remaining \u003ccode\u003edisable-*\u003c/code\u003e preset configs in \u003ccode\u003ereact-x\u003c/code\u003e and \u003ccode\u003ereact-rsc\u003c/code\u003e now also register the same plugin object as the package's default export, so ESLint no longer reports a \u0026quot;Cannot redefine plugin\u0026quot; error when combining them with a manually registered plugin. (follow-up to \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1947\"\u003e#1947\u003c/a\u003e, see \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1946\"\u003e#1946\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🏗️ Internal\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eWebsite: removed \u003ccode\u003efumadocs-twoslash\u003c/code\u003e from \u003ccode\u003eserverExternalPackages\u003c/code\u003e to fix a prerender error.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/Rel1cx/eslint-react/compare/v5.18.9...v5.18.10\"\u003ehttps://github.com/Rel1cx/eslint-react/compare/v5.18.9...v5.18.10\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.18.9 (2026-09-06)\u003c/h2\u003e\n\u003ch3\u003e🏗️ Internal\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBumped \u003ccode\u003eeslint\u003c/code\u003e to \u003ccode\u003e10.10.0\u003c/code\u003e, \u003ccode\u003evitest\u003c/code\u003e to \u003ccode\u003e5.0.0\u003c/code\u003e, \u003ccode\u003etsdown\u003c/code\u003e to \u003ccode\u003e0.23.0\u003c/code\u003e, \u003ccode\u003enx\u003c/code\u003e to \u003ccode\u003e23.2.0\u003c/code\u003e, \u003ccode\u003edprint\u003c/code\u003e to \u003ccode\u003e0.57.4\u003c/code\u003e, \u003ccode\u003e@types/react-dom\u003c/code\u003e to \u003ccode\u003e19.2.7\u003c/code\u003e, \u003ccode\u003e@eslint/compat\u003c/code\u003e to \u003ccode\u003e2.1.1\u003c/code\u003e, and \u003ccode\u003e@nubjs/nub\u003c/code\u003e to \u003ccode\u003e0.8.3\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/Rel1cx/eslint-react/compare/v5.18.8...v5.18.9\"\u003ehttps://github.com/Rel1cx/eslint-react/compare/v5.18.8...v5.18.9\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.18.8 (2026-09-05)\u003c/h2\u003e\n\u003ch3\u003e🐞 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ePreset configs (\u003ccode\u003erecommended\u003c/code\u003e, \u003ccode\u003estrict\u003c/code\u003e, etc.) now register the same plugin object as the package's default export, so ESLint no longer reports a \u0026quot;Cannot redefine plugin\u0026quot; error when the plugin is registered manually and a preset is extended at the same time. (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1947\"\u003e#1947\u003c/a\u003e, closes \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1946\"\u003e#1946\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/27d850f85b0195b83120bf0f672a504f163a9525\"\u003e\u003ccode\u003e27d850f\u003c/code\u003e\u003c/a\u003e release: 5.19.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/9025c56005e74d83542a69243cce32f224b11fd5\"\u003e\u003ccode\u003e9025c56\u003c/code\u003e\u003c/a\u003e chore(deps): update react to 19.3.0 and other deps\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/6eee240688de585fa55f0348d48dae1302634483\"\u003e\u003ccode\u003e6eee240\u003c/code\u003e\u003c/a\u003e release: 5.19.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/3613135c3aa05f12c593ac297cdb282b5d1d9007\"\u003e\u003ccode\u003e3613135\u003c/code\u003e\u003c/a\u003e release: 5.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/662e99a7d6766d8c37775f511e9d441cc37ee5d0\"\u003e\u003ccode\u003e662e99a\u003c/code\u003e\u003c/a\u003e release: 5.18.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/f9eeb3ec8c25462532d8a6410a50a06bec33ec10\"\u003e\u003ccode\u003ef9eeb3e\u003c/code\u003e\u003c/a\u003e chore(deps): update eslint to 10.10.0, vitest to 5.0.0, tsdown to 0.23.0 and ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/5a586080978243ec58134245f7cf257fd8cd1663\"\u003e\u003ccode\u003e5a58608\u003c/code\u003e\u003c/a\u003e release: 5.18.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/4eb8b486ad580a5e3a570d4901e765d67891207f\"\u003e\u003ccode\u003e4eb8b48\u003c/code\u003e\u003c/a\u003e fix: register the same plugin object in preset configs as the default… (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1947\"\u003e#1947\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/466ff59318c72aae36914d724fca33b809190dc7\"\u003e\u003ccode\u003e466ff59\u003c/code\u003e\u003c/a\u003e chore(deps): pin fast-uri to ^3.1.5 to fix CVE-2026-18446 (GHSA-7p8r-x3mc-p8w7)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/1943f39bc2fd2ead651a467619b29e96857f7b87\"\u003e\u003ccode\u003e1943f39\u003c/code\u003e\u003c/a\u003e chore(deps): update typescript to 7.0.2 and other deps\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/Rel1cx/eslint-react/commits/v5.19.1/plugins/eslint-plugin\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@inquirer/prompts` from 7.10.1 to 8.7.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/SBoudrias/Inquirer.js/releases\"\u003e@​inquirer/prompts's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​inquirer/prompts\u003c/code\u003e\u003ca href=\"https://github.com/8\"\u003e\u003ccode\u003e@​8\u003c/code\u003e\u003c/a\u003e.7.2\u003c/h2\u003e\n\u003ch3\u003eWhat's new\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFixed a race where keystrokes batched in the same tick as the key that settled a prompt could still reach keypress handlers after the prompt was done, cancelled, or aborted (\u003ccode\u003e@inquirer/core\u003c/code\u003e, \u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/pull/2255\"\u003e#2255\u003c/a\u003e, closes \u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/issues/1816\"\u003e#1816\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003econfirm()\u003c/code\u003e now trims surrounding whitespace from answers before matching yes/no keywords (\u003ccode\u003e@inquirer/confirm\u003c/code\u003e, \u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/pull/2254\"\u003e#2254\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eIncluded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/checkbox@^5.2.5\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/confirm@^6.3.2\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/editor@^5.3.3\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/expand@^5.1.5\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/input@^5.1.6\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/number@^4.2.3\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/password@^5.2.2\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/rawlist@^5.3.5\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/search@^4.3.3\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/select@^5.2.5\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​inquirer/prompts\u003c/code\u003e\u003ca href=\"https://github.com/8\"\u003e\u003ccode\u003e@​8\u003c/code\u003e\u003c/a\u003e.7.1\u003c/h2\u003e\n\u003ch3\u003eWhat's new\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAll bundled prompts now pin \u003ccode\u003e@inquirer/type\u003c/code\u003e to an exact version in their published manifests. Since these type definitions leak into consumers' \u003ccode\u003etsc\u003c/code\u003e runs, a semver range on the types-only dependency could break downstream TypeScript builds without any change to Inquirer.js itself (\u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/pull/2247\"\u003e#2247\u003c/a\u003e, fixes \u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/issues/2244\"\u003e#2244\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eIncluded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/checkbox@^5.2.4\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/confirm@^6.3.1\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/editor@^5.3.2\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/expand@^5.1.4\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/input@^5.1.5\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/number@^4.2.2\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/password@^5.2.1\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/rawlist@^5.3.4\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/search@^4.3.2\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/select@^5.2.4\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​inquirer/prompts\u003c/code\u003e\u003ca href=\"https://github.com/8\"\u003e\u003ccode\u003e@​8\u003c/code\u003e\u003c/a\u003e.7.0\u003c/h2\u003e\n\u003ch3\u003eWhat's new\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003epassword\u003c/code\u003e gains the \u003ccode\u003etoggleMask\u003c/code\u003e option (ctrl+t to reveal the typed value).\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003econfirm\u003c/code\u003e now matches localized yes/no answers per-locale.\u003c/li\u003e\n\u003cli\u003ePrettified prompt and theme types for better IDE display.\u003c/li\u003e\n\u003cli\u003eAdded \u003ccode\u003einquirer-grouped-checkbox\u003c/code\u003e to the community prompts list (\u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/pull/2236\"\u003e#2236\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eIncluded\u003c/h3\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/cbdb34bfc6c245941d80ef88493c50b3d6dbfce6\"\u003e\u003ccode\u003ecbdb34b\u003c/code\u003e\u003c/a\u003e chore: Publish new release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/8340d2dd764d4b11d4e200412b614f9964ae0691\"\u003e\u003ccode\u003e8340d2d\u003c/code\u003e\u003c/a\u003e fix(\u003ccode\u003e@​inquirer/core\u003c/code\u003e): clear hook effects before settling prompts\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/2475e07186d824d52504095c71c2272d9e7338fe\"\u003e\u003ccode\u003e2475e07\u003c/code\u003e\u003c/a\u003e test(\u003ccode\u003e@​inquirer/core\u003c/code\u003e): cover hook cleanup error semantics\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/15cd8d3b53bfc270633072073c24d6be6ce3d83b\"\u003e\u003ccode\u003e15cd8d3\u003c/code\u003e\u003c/a\u003e fix(confirm): ignore surrounding whitespace in answers\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/9cb0da6c187346c955ab0b788fa1a88c897f16da\"\u003e\u003ccode\u003e9cb0da6\u003c/code\u003e\u003c/a\u003e chore(deps): Bump github/codeql-action/analyze from 4.37.7 to 4.37.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/1c750bc55ab4fac310d70db84a7a6ada76c0e854\"\u003e\u003ccode\u003e1c750bc\u003c/code\u003e\u003c/a\u003e chore(deps-dev): Bump the build group with 3 updates (\u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/issues/2251\"\u003e#2251\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/81f1525110990603e9796d48eecde0f8c2d2fc98\"\u003e\u003ccode\u003e81f1525\u003c/code\u003e\u003c/a\u003e chore(deps-dev): Bump \u003ccode\u003e@​types/node\u003c/code\u003e in the types group (\u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/issues/2252\"\u003e#2252\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/7c27f26606a16b6e8f55b51e4431c72658c674c5\"\u003e\u003ccode\u003e7c27f26\u003c/code\u003e\u003c/a\u003e chore(deps-dev): Bump oxfmt in the formatting group (\u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/issues/2249\"\u003e#2249\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/6119088a4e07ec59460c3cd44d06817de97bfdac\"\u003e\u003ccode\u003e6119088\u003c/code\u003e\u003c/a\u003e chore(deps): Bump github/codeql-action/init from 4.37.7 to 4.37.9 (\u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/issues/2250\"\u003e#2250\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/0d167c0aface3f5cf95132ada9bfec7946dd5b74\"\u003e\u003ccode\u003e0d167c0\u003c/code\u003e\u003c/a\u003e chore(deps-dev): Bump the linting group with 4 updates (\u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/issues/2248\"\u003e#2248\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/SBoudrias/Inquirer.js/compare/@inquirer/prompts@7.10.1...@inquirer/prompts@8.7.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​inquirer/prompts\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@npmcli/run-script` from 10.0.4 to 11.0.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/npm/run-script/releases\"\u003e@​npmcli/run-script's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev11.0.0\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/run-script/compare/v10.0.4...v11.0.0\"\u003e11.0.0\u003c/a\u003e (2026-06-15)\u003c/h2\u003e\n\u003ch3\u003e⚠️ BREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@npmcli/run-script\u003c/code\u003e now supports node \u003ccode\u003e^22.22.2 || ^24.15.0 || \u0026gt;=26.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003etemplate-oss-apply\u003c/li\u003e\n\u003cli\u003eIf a package has a server.js file but no start script, it will no longer be automatically run when the start event is triggered. This change removes the implicit behavior of running server.js and requires an explicit start script to be defined in the package.json.\u003c/li\u003e\n\u003cli\u003ethe banner that shows the command being ran has been moved to a log event\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/88cce50a0e5cc2e022e2b36a25eda84ea9e21247\"\u003e\u003ccode\u003e88cce50\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e bump to new node engine range (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/2b1f2f44caf54b83ae08bece8e996aa4bf745ada\"\u003e\u003ccode\u003e2b1f2f4\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e template-oss-apply (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/99150de3b2a812d19970b8a5dd5941a2c128e040\"\u003e\u003ccode\u003e99150de\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/264\"\u003e#264\u003c/a\u003e make banner info a log event (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/eb5482637b57f34578395056304c20e76135b567\"\u003e\u003ccode\u003eeb54826\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/262\"\u003e#262\u003c/a\u003e do not auto-discover and run a server.js file on \u003ccode\u003enpm start\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/npm/run-script/issues/262\"\u003e#262\u003c/a\u003e) (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/babf6cc3e1606317cc417e342e8658db146541ef\"\u003e\u003ccode\u003ebabf6cc\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/264\"\u003e#264\u003c/a\u003e rename variable (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/539bb6b19e4e1bb3fb7708bc2eeafc637cb029b3\"\u003e\u003ccode\u003e539bb6b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003enode-gyp@13.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/cbe988efd2533f04e91e435c70733754965fa2d3\"\u003e\u003ccode\u003ecbe988e\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003eproc-log@7.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/cec9fc0b490b72c4b7cafa687307445f799e0ea0\"\u003e\u003ccode\u003ecec9fc0\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/promise-spawn@10.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/d6287dfa95c940b46cff962cb774042bf6c19b21\"\u003e\u003ccode\u003ed6287df\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/package-json@8.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/c5f38b06d69c499f372e3eec6a8ebc30f0de0bcb\"\u003e\u003ccode\u003ec5f38b0\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/node-gyp@6.0.0\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/f5be71cc9fc0cb54f7a75f1dd3e98303c546e7e7\"\u003e\u003ccode\u003ef5be71c\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/eslint-config@7.0.0\u003c/code\u003e (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/1e839aaf6ec9e84de26830a14d17f2393538748d\"\u003e\u003ccode\u003e1e839aa\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e template-oss-apply (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/88e6692d3d416faadefb37039abd56434643faf3\"\u003e\u003ccode\u003e88e6692\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e bumping \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e from 4.30.0 to 5.1.0 (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/812508814782e53606dc741d561380048ea67076\"\u003e\u003ccode\u003e8125088\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/265\"\u003e#265\u003c/a\u003e updateNpm: false (\u003ca href=\"https://redirect.github.com/npm/run-script/issues/265\"\u003e#265\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/73909c5b8b2a4d040a52a1ce73a5d1a70dfc0fb0\"\u003e\u003ccode\u003e73909c5\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/263\"\u003e#263\u003c/a\u003e bump \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e from 4.29.0 to 4.30.0 (\u003ca href=\"https://redirect.github.com/npm/run-script/issues/263\"\u003e#263\u003c/a\u003e) (\u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot], \u003ca href=\"https://github.com/npm-cli-bot\"\u003e\u003ccode\u003e@​npm-cli-bot\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/npm/run-script/blob/main/CHANGELOG.md\"\u003e@​npmcli/run-script's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/run-script/compare/v10.0.4...v11.0.0\"\u003e11.0.0\u003c/a\u003e (2026-06-15)\u003c/h2\u003e\n\u003ch3\u003e⚠️ BREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@npmcli/run-script\u003c/code\u003e now supports node \u003ccode\u003e^22.22.2 || ^24.15.0 || \u0026gt;=26.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003etemplate-oss-apply\u003c/li\u003e\n\u003cli\u003eIf a package has a server.js file but no start script, it will no longer be automatically run when the start event is triggered. This change removes the implicit behavior of running server.js and requires an explicit start script to be defined in the package.json.\u003c/li\u003e\n\u003cli\u003ethe banner that shows the command being ran has been moved to a log event\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/88cce50a0e5cc2e022e2b36a25eda84ea9e21247\"\u003e\u003ccode\u003e88cce50\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e bump to new node engine range (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/2b1f2f44caf54b83ae08bece8e996aa4bf745ada\"\u003e\u003ccode\u003e2b1f2f4\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e template-oss-apply (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/99150de3b2a812d19970b8a5dd5941a2c128e040\"\u003e\u003ccode\u003e99150de\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/264\"\u003e#264\u003c/a\u003e make banner info a log event (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/eb5482637b57f34578395056304c20e76135b567\"\u003e\u003ccode\u003eeb54826\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/262\"\u003e#262\u003c/a\u003e do not auto-discover and run a server.js file on \u003ccode\u003enpm start\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/npm/run-script/issues/262\"\u003e#262\u003c/a\u003e) (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/babf6cc3e1606317cc417e342e8658db146541ef\"\u003e\u003ccode\u003ebabf6cc\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/264\"\u003e#264\u003c/a\u003e rename variable (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/539bb6b19e4e1bb3fb7708bc2eeafc637cb029b3\"\u003e\u003ccode\u003e539bb6b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003enode-gyp@13.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/cbe988efd2533f04e91e435c70733754965fa2d3\"\u003e\u003ccode\u003ecbe988e\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003eproc-log@7.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/cec9fc0b490b72c4b7cafa687307445f799e0ea0\"\u003e\u003ccode\u003ecec9fc0\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/promise-spawn@10.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/d6287dfa95c940b46cff962cb774042bf6c19b21\"\u003e\u003ccode\u003ed6287df\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/package-json@8.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/c5f38b06d69c499f372e3eec6a8ebc30f0de0bcb\"\u003e\u003ccode\u003ec5f38b0\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/node-gyp@6.0.0\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/f5be71cc9fc0cb54f7a75f1dd3e98303c546e7e7\"\u003e\u003ccode\u003ef5be71c\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/eslint-config@7.0.0\u003c/code\u003e (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/1e839aaf6ec9e84de26830a14d17f2393538748d\"\u003e\u003ccode\u003e1e839aa\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e template-oss-apply (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/88e6692d3d416faadefb37039abd56434643faf3\"\u003e\u003ccode\u003e88e6692\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e bumping \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e from 4.30.0 to 5.1.0 (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/812508814782e53606dc741d561380048ea67076\"\u003e\u003ccode\u003e8125088\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/265\"\u003e#265\u003c/a\u003e updateNpm: false (\u003ca href=\"https://redirect.github.com/npm/run-script/issues/265\"\u003e#265\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/73909c5b8b2a4d040a52a1ce73a5d1a70dfc0fb0\"\u003e\u003ccode\u003e73909c5\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/263\"\u003e#263\u003c/a\u003e bump \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e from 4.29.0 to 4.30.0 (\u003ca href=\"https://redirect.github.com/npm/run-script/issues/263\"\u003e#263\u003c/a\u003e) (\u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot], \u003ca href=\"https://github.com/npm-cli-bot\"\u003e\u003ccode\u003e@​npm-cli-bot\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/357e4d6445c6a2fd52de41626b3f66845bb20a27\"\u003e\u003ccode\u003e357e4d6\u003c/code\u003e\u003c/a\u003e chore: release 11.0.0 (\u003ca href=\"https://redirect.github.com/npm/run-script/issues/266\"\u003e#266\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/539bb6b19e4e1bb3fb7708bc2eeafc637cb029b3\"\u003e\u003ccode\u003e539bb6b\u003c/code\u003e\u003c/a\u003e deps: node-gyp@13.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/f5be71cc9fc0cb54f7a75f1dd3e98303c546e7e7\"\u003e\u003ccode\u003ef5be71c\u003c/code\u003e\u003c/a\u003e chore: \u003ccode\u003e@​npmcli/eslint-config\u003c/code\u003e\u003ca href=\"https://github.com/7\"\u003e\u003ccode\u003e@​7\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/cbe988efd2533f04e91e435c70733754965fa2d3\"\u003e\u003ccode\u003ecbe988e\u003c/code\u003e\u003c/a\u003e deps: proc-log@7.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/cec9fc0b490b72c4b7cafa687307445f799e0ea0\"\u003e\u003ccode\u003ecec9fc0\u003c/code\u003e\u003c/a\u003e deps: \u003ccode\u003e@​npmcli/promise-spawn\u003c/code\u003e\u003ca href=\"https://github.com/10\"\u003e\u003ccode\u003e@​10\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/d6287dfa95c940b46cff962cb774042bf6c19b21\"\u003e\u003ccode\u003ed6287df\u003c/code\u003e\u003c/a\u003e deps: \u003ccode\u003e@​npmcli/package-json\u003c/code\u003e\u003ca href=\"https://github.com/8\"\u003e\u003ccode\u003e@​8\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/c5f38b06d69c499f372e3eec6a8ebc30f0de0bcb\"\u003e\u003ccode\u003ec5f38b0\u003c/code\u003e\u003c/a\u003e deps: \u003ccode\u003e@​npmcli/node-gyp\u003c/code\u003e\u003ca href=\"https://github.com/6\"\u003e\u003ccode\u003e@​6\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/1e839aaf6ec9e84de26830a14d17f2393538748d\"\u003e\u003ccode\u003e1e839aa\u003c/code\u003e\u003c/a\u003e chore: template-oss-apply\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/88cce50a0e5cc2e022e2b36a25eda84ea9e21247\"\u003e\u003ccode\u003e88cce50\u003c/code\u003e\u003c/a\u003e feat!: bump to new node engine range\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/2b1f2f44caf54b83ae08bece8e996aa4bf745ada\"\u003e\u003ccode\u003e2b1f2f4\u003c/code\u003e\u003c/a\u003e feat!: template-oss-apply\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/npm/run-script/compare/v10.0.4...v11.0.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@size-limit/file` from 11.2.0 to 14.0.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ai/size-limit/releases\"\u003e@​size-limit/file's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e14.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMoved to \u003ccode\u003erolldown\u003c/code\u003e by default in \u003ccode\u003e@size-limit/preset-small-lib\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eUnified Node.js support accross projects.\u003c/li\u003e\n\u003cli\u003eRemoved dependencies.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed release.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003erolldown\u003c/code\u003e \u0026amp; \u003ccode\u003erolldown-why\u003c/code\u003e plugins (by \u003ca href=\"https://github.com/dangreen\"\u003e\u003ccode\u003e@​dangreen\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemoved \u003ccode\u003epicocolors\u003c/code\u003e dependencies.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed glob pattern regression.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed publishing process.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemoved Node.js 20 support.\u003c/li\u003e\n\u003cli\u003eRemoved \u003ccode\u003etinyglobby\u003c/code\u003e and \u003ccode\u003ejiti\u003c/code\u003e dependencies.\u003c/li\u003e\n\u003cli\u003eAdded npm provenance.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003edisablePlugins\u003c/code\u003e option (by \u003ca href=\"https://github.com/JPeer264\"\u003e\u003ccode\u003e@​JPeer264\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdated \u003ccode\u003eesbuild\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated \u003ccode\u003ecss-minimizer-webpack-plugin\u003c/code\u003e (by \u003ca href=\"https://github.com/SevereCloud\"\u003e\u003ccode\u003e@​SevereCloud\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMoved \u003ccode\u003ejiti\u003c/code\u003e to optional dependency.\u003c/li\u003e\n\u003cli\u003eRemoved \u003ccode\u003echokidar\u003c/code\u003e dependency in favor of \u003ccode\u003efs.watch\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eRemoved Node.js 18 support.\u003c/li\u003e\n\u003cli\u003eUpdated \u003ccode\u003eopen\u003c/code\u003e \u0026amp; \u003ccode\u003eesbuild\u003c/code\u003e dependencies.\u003c/li\u003e\n\u003cli\u003eFixed docs (by \u003ca href=\"https://github.com/nlopin\"\u003e\u003ccode\u003e@​nlopin\u003c/code\u003e\u003c/a\u003e \u0026amp; \u003ca href=\"https://github.com/just-boris\"\u003e\u003ccode\u003e@​just-boris\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ai/size-limit/blob/main/CHANGELOG.md\"\u003e@​size-limit/file's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e14.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMoved to \u003ccode\u003erolldown\u003c/code\u003e by default in \u003ccode\u003e@size-limit/preset-small-lib\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eUnified Node.js support accross projects.\u003c/li\u003e\n\u003cli\u003eRemoved dependencies.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed release.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003erolldown\u003c/code\u003e \u0026amp; \u003ccode\u003erolldown-why\u003c/code\u003e plugins (by \u003ca href=\"https://github.com/dangreen\"\u003e\u003ccode\u003e@​dangreen\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemoved \u003ccode\u003epicocolors\u003c/code\u003e dependencies.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed glob pattern regression.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed publishing process.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemoved Node.js 20 support.\u003c/li\u003e\n\u003cli\u003eRemoved \u003ccode\u003etinyglobby\u003c/code\u003e and \u003ccode\u003ejiti\u003c/code\u003e dependencies.\u003c/li\u003e\n\u003cli\u003eAdded npm provenance.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003edisablePlugins\u003c/code\u003e option (by \u003ca href=\"https://github.com/JPeer264\"\u003e\u003ccode\u003e@​JPeer264\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdated \u003ccode\u003eesbuild\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated \u003ccode\u003ecss-minimizer-webpack-plugin\u003c/code\u003e (by \u003ca href=\"https://github.com/SevereCloud\"\u003e\u003ccode\u003e@​SevereCloud\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMoved \u003ccode\u003ejiti\u003c/code\u003e to optional dependency.\u003c/li\u003e\n\u003cli\u003eRemoved \u003ccode\u003echokidar\u003c/code\u003e dependency in favor of \u003ccode\u003efs.watch\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eRemoved Node.js 18 support.\u003c/li\u003e\n\u003cli\u003eUpdated \u003ccode\u003eopen\u003c/code\u003e \u0026amp; \u003ccode\u003eesbuild\u003c/code\u003e dependencies.\u003c/li\u003e\n\u003cli\u003eFixed docs (by \u003ca href=\"https://github.com/nlopin\"\u003e\u003ccode\u003e@​nlopin\u003c/code\u003e\u003c/a\u003e \u0026amp; \u003ca href=\"https://github.com/just-boris\"\u003e\u003ccode\u003e@​just-boris\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/b1d4c43c6a92ea8b610898d342c9086c66d43ac3\"\u003e\u003ccode\u003eb1d4c43\u003c/code\u003e\u003c/a\u003e Release 14.0 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/be6aec989ba942e49345d38571b4eeb30681f6b7\"\u003e\u003ccode\u003ebe6aec9\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/2b763e33a163ab6e0b1af36db879fad5360a78ef\"\u003e\u003ccode\u003e2b763e3\u003c/code\u003e\u003c/a\u003e Fix test and docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/951aef217bf65bd07af3f065cfd795af83dde58d\"\u003e\u003ccode\u003e951aef2\u003c/code\u003e\u003c/a\u003e Move from esbuild to rolldown in small lib preset\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/464d07d74dbda14d4be94a8d3caf2a798e2d3981\"\u003e\u003ccode\u003e464d07d\u003c/code\u003e\u003c/a\u003e Reduce dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/8afbde166d38a4086c1bd4f051e0ed5a112c644b\"\u003e\u003ccode\u003e8afbde1\u003c/code\u003e\u003c/a\u003e Remove nanoid\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/5f549b8caa66c6fa405a520c4d61968a22bc9b39\"\u003e\u003ccode\u003e5f549b8\u003c/code\u003e\u003c/a\u003e Unify Node.js support\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/609a09f3cdaefb9dd9ccfab2dff6e7bf647f5991\"\u003e\u003ccode\u003e609a09f\u003c/code\u003e\u003c/a\u003e Release 13.1.1 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/70c4be69519e736e3fa8c27806fc793b03b54862\"\u003e\u003ccode\u003e70c4be6\u003c/code\u003e\u003c/a\u003e Do not stop releasing on broken package\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/e0e132d472dd54a9835bc9ed6d28826de096dc07\"\u003e\u003ccode\u003ee0e132d\u003c/code\u003e\u003c/a\u003e Release 13.1.0 version\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/ai/size-limit/compare/11.2.0...14.0.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​size-limit/file\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@testing-library/jest-dom` from 6.10.0 to 7.0.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/testing-library/jest-dom/releases\"\u003e@​testing-library/jest-dom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.0.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/testing-library/jest-dom/compare/v7.0.0...v7.0.1\"\u003e7.0.1\u003c/a\u003e (2026-08-09)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003edeclare vitest as an optional peer dependency (\u003ca href=\"https://redirect.github.com/testing-library/jest-dom/issues/733\"\u003e#733\u003c/a\u003e) (\u003ca href=\"https://github.com/testing-library/jest-dom/commit/3782c78b3dc9824675afe0cb8f1722f8c96f494d\"\u003e3782c78\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.0.0\u003c/h2\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/testing-library/jest-dom/compare/v6.10.0...v7.0.0\"\u003e7.0.0\u003c/a\u003e (2026-07-20)\u003c/h1\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eadd toContainAnyBy* and toContainOneBy* query matchers (\u003ca href=\"https://github.com/testing-library/jest-dom/commit/1e39089d850408a583c83495d00d8aa27078933f\"\u003e1e39089\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​testing-library/dom\u003c/code\u003e is now a required peer dependency. The minimum supported\nNode.js version is now 22.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eRepaired release for \u003ca href=\"https://redirect.github.com/testing-library/jest-dom/pull/731\"\u003etesting-library/jest-dom#731\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/testing-library/jest-dom/commit/3782c78b3dc9824675afe0cb8f1722f8c96f494d\"\u003e\u003ccode\u003e3782c78\u003c/code\u003e\u003c/a\u003e fix: declare vitest as an optional peer dependency (\u003ca href=\"https://redirect.github.com/testing-library/jest-dom/issues/733\"\u003e#733\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/testing-library/jest-dom/commit/1e39089d850408a583c83495d00d8aa27078933f\"\u003e\u003ccode\u003e1e39089\u003c/code\u003e\u003c/a\u003e feat: add toContainAnyBy* and toContainOneBy* query matchers\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/testing-library/jest-dom/compare/v6.10.0...v7.0.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​testing-library/jest-dom\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/css-tree` from 2.3.11 to 3.2.0\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/css-tree\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/jquery` from 3.5.34 to 4.0.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/jquery\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/node` from 24.13.6 to 26.6.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/react-resizable` from 3.0.8 to 4.0.0\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/react-resizable\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/tar` from 6.1.13 to 7.0.87\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/tar\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `antd-style` from 3.7.1 to 4.1.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ant-design/antd-style/releases\"\u003eantd-style's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.0.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003e✨ Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSupport antd v6 cssVar (\u003ca href=\"https://redirect.github.com/ant-design/antd-style/issues/203\"\u003e#203\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🐛 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eRe-export the \u003ccode\u003e*Transformer\u003c/code\u003e method of cssinjs (\u003ca href=\"https://redirect.github.com/ant-design/antd-style/issues/196\"\u003e#196\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/ant-design/antd-style/compare/v3.7.1...v4.0.0\"\u003ehttps://github.com/ant-design/antd-style/compare/v3.7.1...v4.0.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev4.0.0-alpha.1\u003c/h2\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/ant-design/antd-style/compare/v3.7.1...v4.0.0-alpha.1\"\u003e4.0.0-alpha.1\u003c/a\u003e (2025-07-24)\u003c/h1\u003e\n\u003ch3\u003e✨ Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSupport antd v6 cssVar (\u003ca href=\"https://github.com/ant-design/antd-style/commit/cd838b0\"\u003ecd838b0\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e💥 BREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ebump peerDependencies antd \u0026gt;= v6\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev3.7.2-alpha.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/ant-design/antd-style/compare/v3.7.1...v3.7.2-alpha.1\"\u003e3.7.2-alpha.1\u003c/a\u003e (2024-12-01)\u003c/h2\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ant-design/antd-style/blob/master/CHANGELOG.md\"\u003eantd-style's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/ant-design/antd-style/compare/v3.7.1...v4.0.0-alpha.1\"\u003e4.0.0-alpha.1\u003c/a\u003e (2025-07-24)\u003c/h1\u003e\n\u003ch3\u003e✨ Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSupport antd v6 cssVar (\u003ca href=\"https://github.com/ant-design/antd-style/commit/cd838b0\"\u003ecd838b0\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e💥 BREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ebump peerDependencies antd \u0026gt;= v6\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/ant-design/antd-style/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `antd-token-previewer` from 2.0.8 to 3.0.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ant-design/antd-token-previewer/releases\"\u003eantd-token-previewer's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: preserve falsy token values in pro token panel (\u003ca href=\"https://redirect.github.com/ant-design/antd-token-previewer/issues/225\"\u003e#225\u003c/a\u003e)  b581de5\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/ant-design/antd-token-previewer/compare/v3.0.0...v3.0.1\"\u003ehttps://github.com/ant-design/antd-token-previewer/compare/v3.0.0...v3.0.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev3.0.0-alpha.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix import path (\u003ca href=\"https://redirect.github.com/ant-design/antd-token-previewer/issues/221\"\u003e#221\u003c/a\u003e)  df44e7a\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/ant-design/antd-token-previewer/compare/v3.0.0-alpha.2...v3.0.0-alpha.3\"\u003ehttps://github.com/ant-design/antd-token-previewer/compare/v3.0.0-alpha.2...v3.0.0-alpha.3\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev3.0.0-alpha.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore: upgrade to React 19 (\u003ca href=\"https://redirect.github.com/ant-design/antd-token-previewer/issues/220\"\u003e#220\u003c/a\u003e)  b92278e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/ant-design/antd-token-previewer/compare/v3.0.0-alpha.1...v3.0.0-alpha.2\"\u003ehttps://github.com/ant-design/antd-token-previewer/compare/v3.0.0-alpha.1...v3.0.0-alpha.2\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev3.0.0-alpha.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: Modify the theme editor theme color selection position (\u003ca href=\"https://redirect.github.com/ant-design/antd-token-previewer/issues/219\"\u003e#219\u003c/a\u003e)  59e3565\u003c/li\u003e\n\u003cli\u003eci: update ver  2a05294\u003c/li\u003e\n\u003cli\u003efix: The Ghost Button of the theme is not visible (\u003ca href=\"https://redirect.github.com/ant-design/antd-token-previewer/issues/218\"\u003e#218\u003c/a\u003e)  d00fcab\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/ant-design/antd-token-previewer/compare/v3.0.0-alpha.0...v3.0.0-alpha.1\"\u003ehttps://github.com/ant-design/antd-token-previewer/compare/v3.0.0-alpha.0...v3.0.0-alpha.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev3.0.0-alpha.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore: bump cssinjs (\u003ca href=\"https://redirect.github.com/ant-design/antd-token-previewer/issues/...\n\n_Description has been truncated_","html_url":"https://github.com/menghao112233/test/pull/61","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/menghao112233%2Ftest/issues/61","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/61/packages"},{"uuid":"5484169145","node_id":"PR_kwDOAQ_Fh88AAAABD4q_Kg","number":456,"state":"open","title":"Bump the npm-minor-patch group across 1 directory with 95 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-17T07:08:43.000Z","updated_at":"2026-09-17T07:09:02.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"npm-minor-patch","update_count":95,"packages":[{"name":"@jest/globals","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@testing-library/dom","old_version":"10.4.1","new_version":"10.4.2","repository_url":"https://github.com/testing-library/dom-testing-library"},{"name":"@testing-library/react","old_version":"16.3.2","new_version":"16.3.3","repository_url":"https://github.com/testing-library/react-testing-library"},{"name":"@types/node","old_version":"26.2.0","new_version":"26.5.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@typescript-eslint/eslint-plugin","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/parser","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"eslint","old_version":"10.8.1","new_version":"10.10.0","repository_url":"https://github.com/eslint/eslint"},{"name":"eslint-plugin-jest","old_version":"29.16.1","new_version":"29.16.6","repository_url":"https://github.com/jest-community/eslint-plugin-jest"},{"name":"globals","old_version":"17.11.0","new_version":"17.12.0","repository_url":"https://github.com/sindresorhus/globals"},{"name":"jest","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-environment-jsdom","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"react","old_version":"19.2.8","new_version":"19.3.0","repository_url":"https://github.com/react/react"},{"name":"@types/react","old_version":"19.2.18","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"react-dom","old_version":"19.2.8","new_version":"19.3.0","repository_url":"https://github.com/react/react"},{"name":"@types/react-dom","old_version":"19.2.4","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@babel/generator","old_version":"7.29.7","new_version":"7.29.8","repository_url":"https://github.com/babel/babel"},{"name":"@eslint/plugin-kit","old_version":"0.7.2","new_version":"0.7.3","repository_url":"https://github.com/eslint/rewrite"},{"name":"@jest/console","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/core","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/diff-sequences","old_version":"30.4.0","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/environment-jsdom-abstract","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/environment","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/expect-utils","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/expect","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/fake-timers","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/get-type","old_version":"30.1.0","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/pattern","old_version":"30.4.0","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/reporters","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/schemas","old_version":"30.4.1","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/snapshot-utils","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/source-map","old_version":"30.0.1","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/test-result","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/test-sequencer","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/transform","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/types","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@napi-rs/wasm-runtime","old_version":"1.1.5","new_version":"1.2.4","repository_url":"https://github.com/napi-rs/napi-rs"},{"name":"@tybys/wasm-util","old_version":"0.10.2","new_version":"0.10.4","repository_url":"https://github.com/toyobayashi/wasm-util"},{"name":"@typescript-eslint/project-service","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/scope-manager","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/tsconfig-utils","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/type-utils","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/types","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/typescript-estree","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/utils","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/visitor-keys","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@ungap/structured-clone","old_version":"1.3.3","new_version":"1.4.0","repository_url":"https://github.com/ungap/structured-clone"},{"name":"acorn","old_version":"8.17.0","new_version":"8.18.0","repository_url":"https://github.com/acornjs/acorn"},{"name":"babel-jest","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"babel-plugin-istanbul","old_version":"7.0.1","new_version":"8.0.0","repository_url":"https://github.com/istanbuljs/babel-plugin-istanbul"},{"name":"babel-plugin-jest-hoist","old_version":"30.4.0","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"babel-preset-jest","old_version":"30.4.0","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"baseline-browser-mapping","old_version":"2.11.15","new_version":"2.11.23","repository_url":"https://github.com/web-platform-dx/baseline-browser-mapping"},{"name":"brace-expansion","old_version":"1.1.18","new_version":"2.1.4","repository_url":"https://github.com/juliangruber/brace-expansion"},{"name":"browserslist","old_version":"4.28.8","new_version":"4.28.9","repository_url":"https://github.com/browserslist/browserslist"},{"name":"caniuse-lite","old_version":"1.0.30001809","new_version":"1.0.30001810","repository_url":"https://github.com/browserslist/caniuse-lite"},{"name":"cjs-module-lexer","old_version":"2.2.0","new_version":"2.2.1","repository_url":"https://github.com/nodejs/cjs-module-lexer"},{"name":"electron-to-chromium","old_version":"1.5.411","new_version":"1.5.427","repository_url":"https://github.com/Kilian/electron-to-chromium"},{"name":"expect","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"file-entry-cache","old_version":"8.0.0","new_version":"11.1.5","repository_url":"https://github.com/jaredwray/cacheable"},{"name":"flat-cache","old_version":"4.0.1","new_version":"6.1.23","repository_url":"https://github.com/jaredwray/cacheable"},{"name":"glob","old_version":"7.2.3","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"},{"name":"jest-changed-files","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-circus","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-cli","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-config","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-diff","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-docblock","old_version":"30.4.0","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-each","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-environment-node","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-haste-map","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-leak-detector","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-matcher-utils","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-message-util","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-mock","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-regex-util","old_version":"30.4.0","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-resolve-dependencies","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-resolve","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-runner","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-runtime","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-snapshot","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-util","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-validate","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-watcher","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-worker","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"js-yaml","old_version":"3.15.1","new_version":"3.15.2","repository_url":"https://github.com/nodeca/js-yaml"},{"name":"keyv","old_version":"4.5.4","new_version":"5.6.0","repository_url":"https://github.com/jaredwray/keyv"},{"name":"minimatch","old_version":"3.1.5","new_version":"9.0.9","repository_url":"https://github.com/isaacs/minimatch"},{"name":"node-releases","old_version":"2.0.53","new_version":"2.0.55","repository_url":"https://github.com/chicoxyzzy/node-releases"},{"name":"nwsapi","old_version":"2.2.24","new_version":"2.2.27","repository_url":"https://github.com/dperini/nwsapi"},{"name":"scheduler","old_version":"0.27.0","new_version":"0.28.0","repository_url":"https://github.com/react/react"},{"name":"test-exclude","old_version":"6.0.0","new_version":"7.0.2","repository_url":"https://github.com/istanbuljs/test-exclude"},{"name":"undici-types","old_version":"8.3.0","new_version":"8.9.0","repository_url":"https://github.com/nodejs/undici"},{"name":"update-browserslist-db","old_version":"1.3.1","new_version":"1.3.3","repository_url":"https://github.com/browserslist/update-db"},{"name":"ws","old_version":"8.21.0","new_version":"8.21.3","repository_url":"https://github.com/websockets/ws"},{"name":"yargs","old_version":"17.7.2","new_version":"17.7.3","repository_url":"https://github.com/yargs/yargs"}],"path":null,"ecosystem":"npm"},"body":"Bumps the npm-minor-patch group with 95 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@jest/globals](https://github.com/jestjs/jest/tree/HEAD/packages/jest-globals) | `30.4.1` | `30.5.1` |\n| [@testing-library/dom](https://github.com/testing-library/dom-testing-library) | `10.4.1` | `10.4.2` |\n| [@testing-library/react](https://github.com/testing-library/react-testing-library) | `16.3.2` | `16.3.3` |\n| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `26.2.0` | `26.5.1` |\n| [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) | `8.67.0` | `8.70.0` |\n| [eslint](https://github.com/eslint/eslint) | `10.8.1` | `10.10.0` |\n| [eslint-plugin-jest](https://github.com/jest-community/eslint-plugin-jest) | `29.16.1` | `29.16.6` |\n| [globals](https://github.com/sindresorhus/globals) | `17.11.0` | `17.12.0` |\n| [jest](https://github.com/jestjs/jest/tree/HEAD/packages/jest) | `30.4.2` | `30.5.1` |\n| [jest-environment-jsdom](https://github.com/jestjs/jest/tree/HEAD/packages/jest-environment-jsdom) | `30.4.1` | `30.5.1` |\n| [react](https://github.com/react/react/tree/HEAD/packages/react) | `19.2.8` | `19.3.0` |\n| [@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react) | `19.2.18` | `19.3.0` |\n| [react-dom](https://github.com/react/react/tree/HEAD/packages/react-dom) | `19.2.8` | `19.3.0` |\n| [@types/react-dom](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-dom) | `19.2.4` | `19.3.0` |\n| [@babel/generator](https://github.com/babel/babel/tree/HEAD/packages/babel-generator) | `7.29.7` | `7.29.8` |\n| [@eslint/plugin-kit](https://github.com/eslint/rewrite/tree/HEAD/packages/plugin-kit) | `0.7.2` | `0.7.3` |\n| [@jest/console](https://github.com/jestjs/jest/tree/HEAD/packages/jest-console) | `30.4.1` | `30.5.1` |\n| [@jest/core](https://github.com/jestjs/jest/tree/HEAD/packages/jest-core) | `30.4.2` | `30.5.1` |\n| [@jest/diff-sequences](https://github.com/jestjs/jest/tree/HEAD/packages/diff-sequences) | `30.4.0` | `30.5.0` |\n| [@jest/environment-jsdom-abstract](https://github.com/jestjs/jest/tree/HEAD/packages/jest-environment-jsdom-abstract) | `30.4.1` | `30.5.1` |\n| [@jest/environment](https://github.com/jestjs/jest/tree/HEAD/packages/jest-environment) | `30.4.1` | `30.5.1` |\n| [@jest/expect-utils](https://github.com/jestjs/jest/tree/HEAD/packages/expect-utils) | `30.4.1` | `30.5.1` |\n| [@jest/expect](https://github.com/jestjs/jest/tree/HEAD/packages/jest-expect) | `30.4.1` | `30.5.1` |\n| [@jest/fake-timers](https://github.com/jestjs/jest/tree/HEAD/packages/jest-fake-timers) | `30.4.1` | `30.5.1` |\n| [@jest/get-type](https://github.com/jestjs/jest/tree/HEAD/packages/jest-get-type) | `30.1.0` | `30.5.0` |\n| [@jest/pattern](https://github.com/jestjs/jest/tree/HEAD/packages/jest-pattern) | `30.4.0` | `30.5.0` |\n| [@jest/reporters](https://github.com/jestjs/jest/tree/HEAD/packages/jest-reporters) | `30.4.1` | `30.5.1` |\n| [@jest/schemas](https://github.com/jestjs/jest/tree/HEAD/packages/jest-schemas) | `30.4.1` | `30.5.0` |\n| [@jest/snapshot-utils](https://github.com/jestjs/jest/tree/HEAD/packages/jest-snapshot-utils) | `30.4.1` | `30.5.1` |\n| [@jest/source-map](https://github.com/jestjs/jest/tree/HEAD/packages/jest-source-map) | `30.0.1` | `30.5.0` |\n| [@jest/test-result](https://github.com/jestjs/jest/tree/HEAD/packages/jest-test-result) | `30.4.1` | `30.5.1` |\n| [@jest/test-sequencer](https://github.com/jestjs/jest/tree/HEAD/packages/jest-test-sequencer) | `30.4.1` | `30.5.1` |\n| [@jest/transform](https://github.com/jestjs/jest/tree/HEAD/packages/jest-transform) | `30.4.1` | `30.5.1` |\n| [@jest/types](https://github.com/jestjs/jest/tree/HEAD/packages/jest-types) | `30.4.1` | `30.5.1` |\n| [@napi-rs/wasm-runtime](https://github.com/napi-rs/napi-rs/tree/HEAD/wasm-runtime) | `1.1.5` | `1.2.4` |\n| [@tybys/wasm-util](https://github.com/toyobayashi/wasm-util) | `0.10.2` | `0.10.4` |\n| [@typescript-eslint/project-service](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/project-service) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/scope-manager](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/scope-manager) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/tsconfig-utils](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/tsconfig-utils) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/type-utils](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/type-utils) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/types](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/types) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/typescript-estree](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-estree) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/utils](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/utils) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/visitor-keys](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/visitor-keys) | `8.67.0` | `8.70.0` |\n| [@ungap/structured-clone](https://github.com/ungap/structured-clone) | `1.3.3` | `1.4.0` |\n| [acorn](https://github.com/acornjs/acorn) | `8.17.0` | `8.18.0` |\n| [babel-jest](https://github.com/jestjs/jest/tree/HEAD/packages/babel-jest) | `30.4.1` | `30.5.1` |\n| [babel-plugin-istanbul](https://github.com/istanbuljs/babel-plugin-istanbul) | `7.0.1` | `8.0.0` |\n| [babel-plugin-jest-hoist](https://github.com/jestjs/jest/tree/HEAD/packages/babel-plugin-jest-hoist) | `30.4.0` | `30.5.0` |\n| [babel-preset-jest](https://github.com/jestjs/jest/tree/HEAD/packages/babel-preset-jest) | `30.4.0` | `30.5.0` |\n| [baseline-browser-mapping](https://github.com/web-platform-dx/baseline-browser-mapping) | `2.11.15` | `2.11.23` |\n| [brace-expansion](https://github.com/juliangruber/brace-expansion) | `1.1.18` | `2.1.4` |\n| [browserslist](https://github.com/browserslist/browserslist) | `4.28.8` | `4.28.9` |\n| [caniuse-lite](https://github.com/browserslist/caniuse-lite) | `1.0.30001809` | `1.0.30001810` |\n| [cjs-module-lexer](https://github.com/nodejs/cjs-module-lexer) | `2.2.0` | `2.2.1` |\n| [electron-to-chromium](https://github.com/Kilian/electron-to-chromium) | `1.5.411` | `1.5.427` |\n| [expect](https://github.com/jestjs/jest/tree/HEAD/packages/expect) | `30.4.1` | `30.5.1` |\n| [file-entry-cache](https://github.com/jaredwray/cacheable/tree/HEAD/packages/file-entry-cache) | `8.0.0` | `11.1.5` |\n| [flat-cache](https://github.com/jaredwray/cacheable/tree/HEAD/packages/flat-cache) | `4.0.1` | `6.1.23` |\n| [glob](https://github.com/isaacs/node-glob) | `7.2.3` | `10.5.0` |\n| [jest-changed-files](https://github.com/jestjs/jest/tree/HEAD/packages/jest-changed-files) | `30.4.1` | `30.5.1` |\n| [jest-circus](https://github.com/jestjs/jest/tree/HEAD/packages/jest-circus) | `30.4.2` | `30.5.1` |\n| [jest-cli](https://github.com/jestjs/jest/tree/HEAD/packages/jest-cli) | `30.4.2` | `30.5.1` |\n| [jest-config](https://github.com/jestjs/jest/tree/HEAD/packages/jest-config) | `30.4.2` | `30.5.1` |\n| [jest-diff](https://github.com/jestjs/jest/tree/HEAD/packages/jest-diff) | `30.4.1` | `30.5.1` |\n| [jest-docblock](https://github.com/jestjs/jest/tree/HEAD/packages/jest-docblock) | `30.4.0` | `30.5.0` |\n| [jest-each](https://github.com/jestjs/jest/tree/HEAD/packages/jest-each) | `30.4.1` | `30.5.1` |\n| [jest-environment-node](https://github.com/jestjs/jest/tree/HEAD/packages/jest-environment-node) | `30.4.1` | `30.5.1` |\n| [jest-haste-map](https://github.com/jestjs/jest/tree/HEAD/packages/jest-haste-map) | `30.4.1` | `30.5.1` |\n| [jest-leak-detector](https://github.com/jestjs/jest/tree/HEAD/packages/jest-leak-detector) | `30.4.1` | `30.5.1` |\n| [jest-matcher-utils](https://github.com/jestjs/jest/tree/HEAD/packages/jest-matcher-utils) | `30.4.1` | `30.5.1` |\n| [jest-message-util](https://github.com/jestjs/jest/tree/HEAD/packages/jest-message-util) | `30.4.1` | `30.5.1` |\n| [jest-mock](https://github.com/jestjs/jest/tree/HEAD/packages/jest-mock) | `30.4.1` | `30.5.1` |\n| [jest-regex-util](https://github.com/jestjs/jest/tree/HEAD/packages/jest-regex-util) | `30.4.0` | `30.5.0` |\n| [jest-resolve-dependencies](https://github.com/jestjs/jest/tree/HEAD/packages/jest-resolve-dependencies) | `30.4.2` | `30.5.1` |\n| [jest-resolve](https://github.com/jestjs/jest/tree/HEAD/packages/jest-resolve) | `30.4.1` | `30.5.1` |\n| [jest-runner](https://github.com/jestjs/jest/tree/HEAD/packages/jest-runner) | `30.4.2` | `30.5.1` |\n| [jest-runtime](https://github.com/jestjs/jest/tree/HEAD/packages/jest-runtime) | `30.4.2` | `30.5.1` |\n| [jest-snapshot](https://github.com/jestjs/jest/tree/HEAD/packages/jest-snapshot) | `30.4.1` | `30.5.1` |\n| [jest-util](https://github.com/jestjs/jest/tree/HEAD/packages/jest-util) | `30.4.1` | `30.5.1` |\n| [jest-validate](https://github.com/jestjs/jest/tree/HEAD/packages/jest-validate) | `30.4.1` | `30.5.1` |\n| [jest-watcher](https://github.com/jestjs/jest/tree/HEAD/packages/jest-watcher) | `30.4.1` | `30.5.1` |\n| [jest-worker](https://github.com/jestjs/jest/tree/HEAD/packages/jest-worker) | `30.4.1` | `30.5.1` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `3.15.1` | `3.15.2` |\n| [keyv](https://github.com/jaredwray/keyv) | `4.5.4` | `5.6.0` |\n| [minimatch](https://github.com/isaacs/minimatch) | `3.1.5` | `9.0.9` |\n| [node-releases](https://github.com/chicoxyzzy/node-releases) | `2.0.53` | `2.0.55` |\n| [nwsapi](https://github.com/dperini/nwsapi) | `2.2.24` | `2.2.27` |\n| [scheduler](https://github.com/react/react/tree/HEAD/packages/scheduler) | `0.27.0` | `0.28.0` |\n| [test-exclude](https://github.com/istanbuljs/test-exclude) | `6.0.0` | `7.0.2` |\n| [undici-types](https://github.com/nodejs/undici) | `8.3.0` | `8.9.0` |\n| [update-browserslist-db](https://github.com/browserslist/update-db) | `1.3.1` | `1.3.3` |\n| [ws](https://github.com/websockets/ws) | `8.21.0` | `8.21.3` |\n| [yargs](https://github.com/yargs/yargs) | `17.7.2` | `17.7.3` |\n\n\nUpdates `@jest/globals` from 30.4.1 to 30.5.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jestjs/jest/releases\"\u003e@​jest/globals's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev30.5.1\u003c/h2\u003e\n\u003ch2\u003eFixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e[jest-config]\u003c/code\u003e Don't warn about global-only options in the config that supplies the global config - the root config a project resolves to, or the first entry of \u003ccode\u003e--projects\u003c/code\u003e when no root config is passed (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16411\"\u003e#16411\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-config, jest-types]\u003c/code\u003e Stop accepting \u003ccode\u003ereporters\u003c/code\u003e, \u003ccode\u003ecoverageReporters\u003c/code\u003e, \u003ccode\u003eworkerIdleMemoryLimit\u003c/code\u003e, \u003ccode\u003ecwd\u003c/code\u003e and \u003ccode\u003erunnerOptions\u003c/code\u003e in a project config - they were silently ignored, and now warn like the other global-only options (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16411\"\u003e#16411\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-config, jest-validate]\u003c/code\u003e Warn about \u003ccode\u003emaxWorkers\u003c/code\u003e and \u003ccode\u003ecoverageThreshold\u003c/code\u003e in a project config instead of dropping them without a word (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16411\"\u003e#16411\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-resolve]\u003c/code\u003e Match \u003ccode\u003emoduleNameMapper\u003c/code\u003e patterns against the specifier as written again (reverting \u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16390\"\u003e#16390\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16417\"\u003e#16417\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Resolve package \u003ccode\u003eimports\u003c/code\u003e specifiers like \u003ccode\u003e#dep\u003c/code\u003e under ESM again (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16413\"\u003e#16413\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eChore \u0026amp; Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e[jest-util]\u003c/code\u003e Name the \u003ccode\u003etestEnvironmentOptions.globalsCleanup\u003c/code\u003e option and link the docs from the \u003ccode\u003eJEST-01\u003c/code\u003e deprecation warning, and document the option's modes (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16404\"\u003e#16404\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/HuzaifaChaudary\"\u003e\u003ccode\u003e@​HuzaifaChaudary\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16413\"\u003ejestjs/jest#16413\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/jestjs/jest/compare/v30.5.0...v30.5.1\"\u003ehttps://github.com/jestjs/jest/compare/v30.5.0...v30.5.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev30.5.0\u003c/h2\u003e\n\u003cp\u003eOn a personal note: King Harald V of Norway passed away this morning. He ascended the throne 35 years ago, two months before I was born. This release is dedicated to his memory. Hvil i fred 🇳🇴\u003c/p\u003e\n\u003chr /\u003e\n\u003cp\u003eThis is a big release. It touches \u003ccode\u003ejest-runtime\u003c/code\u003e, \u003ccode\u003ejest-resolve\u003c/code\u003e and \u003ccode\u003ejest-haste-map\u003c/code\u003e in many places, and with this many changes there might be regressions 😬. If your suite behaves differently after upgrading, please \u003ca href=\"https://github.com/jestjs/jest/issues\"\u003eopen an issue\u003c/a\u003e.\u003c/p\u003e\n\u003ch1\u003eHighlights\u003c/h1\u003e\n\u003ch2\u003e\u003ccode\u003ewhenCalledWith\u003c/code\u003e\u003c/h2\u003e\n\u003cp\u003eMock functions can now configure return values per argument list, contributed by \u003ca href=\"https://github.com/timkindberg\"\u003e\u003ccode\u003e@​timkindberg\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16053\"\u003e#16053\u003c/a\u003e):\u003c/p\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003econst fn = jest.fn();\r\nfn.whenCalledWith('apple').mockReturnValue('red');\r\nfn.whenCalledWith('banana').mockReturnValue('yellow');\r\nfn.whenCalledWith(expect.any(Number)).mockReturnValue('numeric');\r\n\u003cp\u003efn('apple'); // 'red'\nfn('banana'); // 'yellow'\nfn(42); // 'numeric'\nfn('grape'); // undefined\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003cp\u003eThe returned object is a real \u003ccode\u003eMock\u003c/code\u003e, so \u003ccode\u003emockReturnValueOnce\u003c/code\u003e, \u003ccode\u003emockResolvedValue\u003c/code\u003e, \u003ccode\u003emockImplementation\u003c/code\u003e etc. all chain here too. Argument slots accept literals or any asymmetric matcher, with the same equality semantics as \u003ccode\u003etoHaveBeenCalledWith()\u003c/code\u003e. Calls that match nothing fall through to the base mock. See the \u003ca href=\"https://jestjs.io/docs/mock-function-api#mockfnwhencalledwithargs\"\u003eMock Functions docs\u003c/a\u003e for matching and precedence details.\u003c/p\u003e\n\u003ch2\u003eDescribe-level retries\u003c/h2\u003e\n\u003cp\u003e\u003ccode\u003ejest.retryTimes()\u003c/code\u003e can now retry a whole \u003ccode\u003edescribe\u003c/code\u003e block instead of a single test, contributed by \u003ca href=\"https://github.com/soltonigiri\"\u003e\u003ccode\u003e@​soltonigiri\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16322\"\u003e#16322\u003c/a\u003e). Each attempt reruns the block's \u003ccode\u003ebeforeAll\u003c/code\u003e/\u003ccode\u003eafterAll\u003c/code\u003e hooks, child tests and nested describes, which helps when tests in a block depend on shared state:\u003c/p\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003e\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jestjs/jest/blob/main/CHANGELOG.md\"\u003e@​jest/globals's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e30.5.1\u003c/h2\u003e\n\u003ch3\u003eFixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e[jest-config]\u003c/code\u003e Don't warn about global-only options in the config that supplies the global config - the root config a project resolves to, or the first entry of \u003ccode\u003e--projects\u003c/code\u003e when no root config is passed (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16411\"\u003e#16411\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-config, jest-types]\u003c/code\u003e Stop accepting \u003ccode\u003ereporters\u003c/code\u003e, \u003ccode\u003ecoverageReporters\u003c/code\u003e, \u003ccode\u003eworkerIdleMemoryLimit\u003c/code\u003e, \u003ccode\u003ecwd\u003c/code\u003e and \u003ccode\u003erunnerOptions\u003c/code\u003e in a project config - they were silently ignored, and now warn like the other global-only options (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16411\"\u003e#16411\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-config, jest-validate]\u003c/code\u003e Warn about \u003ccode\u003emaxWorkers\u003c/code\u003e and \u003ccode\u003ecoverageThreshold\u003c/code\u003e in a project config instead of dropping them without a word (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16411\"\u003e#16411\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-resolve]\u003c/code\u003e Match \u003ccode\u003emoduleNameMapper\u003c/code\u003e patterns against the specifier as written again (reverting \u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16390\"\u003e#16390\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16417\"\u003e#16417\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Resolve package \u003ccode\u003eimports\u003c/code\u003e specifiers like \u003ccode\u003e#dep\u003c/code\u003e under ESM again (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16413\"\u003e#16413\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChore \u0026amp; Maintenance\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e[jest-util]\u003c/code\u003e Name the \u003ccode\u003etestEnvironmentOptions.globalsCleanup\u003c/code\u003e option and link the docs from the \u003ccode\u003eJEST-01\u003c/code\u003e deprecation warning, and document the option's modes (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16404\"\u003e#16404\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e30.5.0\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e[@jest/expect-utils, jest-mock]\u003c/code\u003e Add \u003ccode\u003emockFn.whenCalledWith(...args)\u003c/code\u003e for configuring return values per argument list, with first-class asymmetric-matcher support (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16053\"\u003e#16053\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[@jest/expect-utils]\u003c/code\u003e Export \u003ccode\u003eAsymmetricMatcher\u003c/code\u003e and \u003ccode\u003eFunctionParameters\u003c/code\u003e types (previously private to \u003ccode\u003eexpect\u003c/code\u003e) (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16053\"\u003e#16053\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus, jest-core, jest-jasmine2, jest-test-result, jest-types]\u003c/code\u003e \u003ccode\u003e--collectTests\u003c/code\u003e now expands \u003ccode\u003etest.each\u003c/code\u003e/\u003ccode\u003edescribe.each\u003c/code\u003e cases and reports per-status counts (skipped/todo via the new \u003ccode\u003ewouldRun\u003c/code\u003e flag for selected tests) plus a summary line that match a real run, including under \u003ccode\u003e--testNamePattern\u003c/code\u003e and \u003ccode\u003e.only\u003c/code\u003e/\u003ccode\u003efdescribe\u003c/code\u003e focus on both the circus and jasmine2 runners (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16259\"\u003e#16259\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus, jest-environment, jest-runtime, jest-types]\u003c/code\u003e Add describe-level retries via \u003ccode\u003ejest.retryTimes(..., {entireDescribe: true})\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16322\"\u003e#16322\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus, jest-message-util, jest-reporters, jest-types]\u003c/code\u003e Add \u003ccode\u003eretryMessages\u003c/code\u003e to \u003ccode\u003eAssertionResult\u003c/code\u003e and export \u003ccode\u003eformatErrorStack\u003c/code\u003e, so the retry log renders nested \u003ccode\u003ecause\u003c/code\u003e and \u003ccode\u003eAggregateError\u003c/code\u003e sections with code frames instead of serialized \u003ccode\u003e[cause]:\u003c/code\u003e/\u003ccode\u003e[errors]:\u003c/code\u003e markers (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16316\"\u003e#16316\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus, jest-types]\u003c/code\u003e Add \u003ccode\u003eunhandledErrorsDetailed\u003c/code\u003e to \u003ccode\u003eCircus.RunResult\u003c/code\u003e, so an unhandled rejection reports its \u003ccode\u003ecause\u003c/code\u003e chain and \u003ccode\u003eAggregateError\u003c/code\u003e entries with code frames instead of a pre-serialized stack (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16316\"\u003e#16316\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-haste-map]\u003c/code\u003e Replace \u003ccode\u003eNodeWatcher\u003c/code\u003e and \u003ccode\u003eFSEventsWatcher\u003c/code\u003e with \u003ccode\u003e@parcel/watcher\u003c/code\u003e for the non-watchman watch path (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16188\"\u003e#16188\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-resolve]\u003c/code\u003e Bump \u003ccode\u003eunrs-resolver\u003c/code\u003e to 1.12.1, remove \u003ccode\u003ejest-pnp-resolver\u003c/code\u003e and unnecessary checks (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/15721\"\u003e#15721\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-resolve]\u003c/code\u003e Honor Node's \u003ccode\u003e--preserve-symlinks\u003c/code\u003e / \u003ccode\u003eNODE_PRESERVE_SYMLINKS\u003c/code\u003e in the default resolver by passing \u003ccode\u003esymlinks: false\u003c/code\u003e to \u003ccode\u003eunrs-resolver\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16260\"\u003e#16260\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Apply automocking and manual \u003ccode\u003e__mocks__\u003c/code\u003e files to synchronously evaluable ESM graphs on Node 24.9+ - static imports, dynamic \u003ccode\u003eimport()\u003c/code\u003e and \u003ccode\u003erequire()\u003c/code\u003e of an ESM file now generate an automock from the real module's namespace instead of failing with \u0026quot;Attempting to import a mock without a factory\u0026quot;. Graphs that need async evaluation (top-level await) or an async-only resolver or transformer still throw (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16391\"\u003e#16391\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Route \u003ccode\u003eprocess.getBuiltinModule\u003c/code\u003e through the sandbox, so it returns the sandbox \u003ccode\u003eprocess\u003c/code\u003e and the hooked \u003ccode\u003enode:module\u003c/code\u003e instead of the host's (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16391\"\u003e#16391\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Throw an actionable error from \u003ccode\u003emodule.register()\u003c/code\u003e and \u003ccode\u003emodule.registerHooks()\u003c/code\u003e inside a test - the hooks attached to the loader running Jest itself, never saw the sandboxed requires they were meant for, and stayed registered for every later test file in the worker (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16391\"\u003e#16391\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Surface resolution and import-attribute errors in an ESM graph before executing any of its CJS dependencies on Node 24.9+, matching Node's run-nothing-on-a-broken-graph behavior; the legacy loader on older versions keeps its linking-time execution order (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16391\"\u003e#16391\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Throw \u003ccode\u003eERR_SOURCE_PHASE_NOT_DEFINED\u003c/code\u003e with an actionable message for \u003ccode\u003eimport source\u003c/code\u003e and \u003ccode\u003eimport.source()\u003c/code\u003e, instead of failing at instantiation with V8's bare \u0026quot;Source phase import object is not defined\u0026quot; (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16391\"\u003e#16391\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Emit the JSON-without-import-attribute deprecation warning once per test file instead of once per worker, so it is no longer silently swallowed for every file after the first (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16391\"\u003e#16391\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Set \u003ccode\u003eimport.meta.main\u003c/code\u003e to \u003ccode\u003etrue\u003c/code\u003e in the test file and \u003ccode\u003efalse\u003c/code\u003e in every module it loads, matching Node 24+ (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16367\"\u003e#16367\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Resolve the \u003ccode\u003emodule-sync\u003c/code\u003e export condition, so a package that exposes its ESM entry point for \u003ccode\u003erequire()\u003c/code\u003e loads the same file Node would (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16336\"\u003e#16336\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-snapshot]\u003c/code\u003e Add external snapshot paths to custom reporter failure details (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16374\"\u003e#16374\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e[jest-console, jest-reporters]\u003c/code\u003e \u003ccode\u003eCustomConsole\u003c/code\u003e now buffers console output so \u003ccode\u003eTestResult.console\u003c/code\u003e is populated for reporters when \u003ccode\u003everbose\u003c/code\u003e is enabled, while \u003ccode\u003eGitHubActionsReporter\u003c/code\u003e avoids replaying buffered output in verbose mode (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16155\"\u003e#16155\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[expect, jest-message-util, jest-pattern, jest-regex-util, jest-util]\u003c/code\u003e Revert \u003ccode\u003enode:\u003c/code\u003e protocol imports to restore webpack/browser-bundle compatibility (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16167\"\u003e#16167\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[expect]\u003c/code\u003e Widen \u003ccode\u003etoMatchObject\u003c/code\u003e and \u003ccode\u003eobjectContaining\u003c/code\u003e parameter type from \u003ccode\u003eRecord\u0026lt;string, unknown\u0026gt;\u003c/code\u003e to \u003ccode\u003eobject\u003c/code\u003e so class instances are accepted (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16196\"\u003e#16196\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus]\u003c/code\u003e Call a generator test body with the shared test context, so \u003ccode\u003ethis\u003c/code\u003e matches what a regular test function receives (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16347\"\u003e#16347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus]\u003c/code\u003e Capture the error listeners of the parent process instead of the in-sandbox \u003ccode\u003eprocess\u003c/code\u003e, so listeners registered before the test file survive teardown and sandbox listeners no longer leak onto the parent (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16347\"\u003e#16347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus]\u003c/code\u003e Clear \u003ccode\u003ecurrentlyRunningTest\u003c/code\u003e after skipped and todo tests (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16342\"\u003e#16342\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus]\u003c/code\u003e Prevent late \u003ccode\u003edone()\u003c/code\u003e callbacks from affecting later test or hook invocations (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16343\"\u003e#16343\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus, jest-jasmine2]\u003c/code\u003e Honor \u003ccode\u003e--expand\u003c/code\u003e when formatting \u003ccode\u003enode:assert\u003c/code\u003e failures, instead of always collapsing the diff (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16347\"\u003e#16347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus, jest-jasmine2, jest-message-util]\u003c/code\u003e Serialize the inner errors of an \u003ccode\u003eAggregateError\u003c/code\u003e into \u003ccode\u003efailureMessages\u003c/code\u003e, \u003ccode\u003eretryReasons\u003c/code\u003e and \u003ccode\u003eunhandledErrors\u003c/code\u003e, so \u003ccode\u003e--json\u003c/code\u003e output and reporter annotations include them (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16316\"\u003e#16316\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus, jest-snapshot]\u003c/code\u003e Keep snapshot state and counts correct when a test retries (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16344\"\u003e#16344\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[@jest/create-cache-key-function]\u003c/code\u003e Include the caller support flags in the generated key, so a transformer that emits ESM or CJS based on them no longer shares one cache entry between the two (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16331\"\u003e#16331\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jestjs/jest/commit/9ab14feccd6c15fec1334dbcb03a53a079d153d3\"\u003e\u003ccode\u003e9ab14fe\u003c/code\u003e\u003c/a\u003e v30.5.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jestjs/jest/commit/912baa37afaa979e8179240c238cb493f960527a\"\u003e\u003ccode\u003e912baa3\u003c/code\u003e\u003c/a\u003e v30.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jestjs/jest/commit/b91717a68e091cf492a361d61906d17849fb3282\"\u003e\u003ccode\u003eb91717a\u003c/code\u003e\u003c/a\u003e chore: refresh coding agent instructions (\u003ca href=\"https://github.com/jestjs/jest/tree/HEAD/packages/jest-globals/issues/16182\"\u003e#16182\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/jestjs/jest/commits/v30.5.1/packages/jest-globals\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@testing-library/dom` from 10.4.1 to 10.4.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/testing-library/dom-testing-library/releases\"\u003e@​testing-library/dom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev10.4.2\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/testing-library/dom-testing-library/compare/v10.4.1...v10.4.2\"\u003e10.4.2\u003c/a\u003e (2026-09-13)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e pin \u003ccode\u003e@​types/node\u003c/code\u003e to a TypeScript 4-compatible version (\u003ca href=\"https://redirect.github.com/testing-library/dom-testing-library/issues/1386\"\u003e#1386\u003c/a\u003e) (\u003ca href=\"https://github.com/testing-library/dom-testing-library/commit/6049cc0bc7cf2201625c476c95fa6299d0e2fa8b\"\u003e6049cc0\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/testing-library/dom-testing-library/commit/6049cc0bc7cf2201625c476c95fa6299d0e2fa8b\"\u003e\u003ccode\u003e6049cc0\u003c/code\u003e\u003c/a\u003e fix(deps): pin \u003ccode\u003e@​types/node\u003c/code\u003e to a TypeScript 4-compatible version (\u003ca href=\"https://redirect.github.com/testing-library/dom-testing-library/issues/1386\"\u003e#1386\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/testing-library/dom-testing-library/commit/e395d5b8ecd4ec95cc02540ddcf16571ecd33e0f\"\u003e\u003ccode\u003ee395d5b\u003c/code\u003e\u003c/a\u003e Switch to trusted publishing (\u003ca href=\"https://redirect.github.com/testing-library/dom-testing-library/issues/1368\"\u003e#1368\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/testing-library/dom-testing-library/compare/v10.4.1...v10.4.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​testing-library/dom\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@testing-library/react` from 16.3.2 to 16.3.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/testing-library/react-testing-library/releases\"\u003e@​testing-library/react's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev16.3.3\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/testing-library/react-testing-library/compare/v16.3.2...v16.3.3\"\u003e16.3.3\u003c/a\u003e (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAvoid act() re-entrant when dispatching events (\u003ca href=\"https://redirect.github.com/testing-library/react-testing-library/issues/1468\"\u003e#1468\u003c/a\u003e) (\u003ca href=\"https://github.com/testing-library/react-testing-library/commit/20ce75f2907ca0e5c5a8ae595c0e9a4e368c7800\"\u003e20ce75f\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/testing-library/react-testing-library/commit/20ce75f2907ca0e5c5a8ae595c0e9a4e368c7800\"\u003e\u003ccode\u003e20ce75f\u003c/code\u003e\u003c/a\u003e fix: Avoid act() re-entrant when dispatching events (\u003ca href=\"https://redirect.github.com/testing-library/react-testing-library/issues/1468\"\u003e#1468\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/testing-library/react-testing-library/commit/be9d81d91314c9f0bafaa363f70b409b4b31989c\"\u003e\u003ccode\u003ebe9d81d\u003c/code\u003e\u003c/a\u003e docs: fix typos in comments and types (\u003ca href=\"https://redirect.github.com/testing-library/react-testing-library/issues/1446\"\u003e#1446\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/testing-library/react-testing-library/compare/v16.3.2...v16.3.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/node` from 26.2.0 to 26.5.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@typescript-eslint/eslint-plugin` from 8.67.0 to 8.70.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases\"\u003e@​typescript-eslint/eslint-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.70.0\u003c/h2\u003e\n\u003ch2\u003e8.70.0 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-generated-empty-object-type] add rule (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12730\"\u003e#12730\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ewebsite:\u003c/strong\u003e generate per-page social preview cards (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12734\"\u003e#12734\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003euse stable release of pnpm 12 (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12808\"\u003e#12808\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eupdate pnpm to 12.3.4 and dedupe Docusaurus packages (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12829\"\u003e#12829\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [member-ordering] don't report fields that read fields declared before them (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12729\"\u003e#12729\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-unnecessary-condition] no false positive on RHS of a nested logical expression (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12728\"\u003e#12728\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-deprecated] report deprecated imported values used in object shorthand properties (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12780\"\u003e#12780\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eproject-service:\u003c/strong\u003e avoid discarded tsserver logs (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12748\"\u003e#12748\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etypescript-estree:\u003c/strong\u003e clarify the parserOptions.project error message (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12817\"\u003e#12817\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBarry \u003ca href=\"https://github.com/barry166\"\u003e\u003ccode\u003e@​barry166\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEvyatar Daud \u003ca href=\"https://github.com/StyleShit\"\u003e\u003ccode\u003e@​StyleShit\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJosh Goldberg\u003c/li\u003e\n\u003cli\u003eJosh Goldberg ✨ \u003ca href=\"https://github.com/JoshuaKGoldberg\"\u003e\u003ccode\u003e@​JoshuaKGoldberg\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eKirk Waiblinger \u003ca href=\"https://github.com/kirkwaiblinger\"\u003e\u003ccode\u003e@​kirkwaiblinger\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUlrich Stark \u003ca href=\"https://github.com/ulrichstark\"\u003e\u003ccode\u003e@​ulrichstark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e송재욱\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases/tag/v8.70.0\"\u003eGitHub Releases\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cp\u003eYou can read about our \u003ca href=\"https://typescript-eslint.io/users/versioning\"\u003eversioning strategy\u003c/a\u003e and \u003ca href=\"https://typescript-eslint.io/users/releases\"\u003ereleases\u003c/a\u003e on our website.\u003c/p\u003e\n\u003ch2\u003ev8.69.0\u003c/h2\u003e\n\u003ch2\u003e8.69.0 (2026-08-31)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-misused-promises] add flagUnions option for checkConditionals (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12603\"\u003e#12603\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-mixed-enums] use scope analysis instead of type checking for merged namespaces (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12731\"\u003e#12731\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [unified-signatures] compare type parameters by constraint instead of name (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12741\"\u003e#12741\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-meaningless-void-operator] report void on non-call expressions (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12727\"\u003e#12727\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ewebsite:\u003c/strong\u003e respect allowJs playground config (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12744\"\u003e#12744\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAbdu Alim Arlikhozhaev \u003ca href=\"https://github.com/Arlikhozhaev\"\u003e\u003ccode\u003e@​Arlikhozhaev\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEvyatar Daud \u003ca href=\"https://github.com/StyleShit\"\u003e\u003ccode\u003e@​StyleShit\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/eslint-plugin/CHANGELOG.md\"\u003e@​typescript-eslint/eslint-plugin's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.70.0 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-generated-empty-object-type] add rule (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12730\"\u003e#12730\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-deprecated] report deprecated imported values used in object shorthand properties (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12780\"\u003e#12780\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-unnecessary-condition] no false positive on RHS of a nested logical expression (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12728\"\u003e#12728\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [member-ordering] don't report fields that read fields declared before them (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12729\"\u003e#12729\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eJosh Goldberg ✨ \u003ca href=\"https://github.com/JoshuaKGoldberg\"\u003e\u003ccode\u003e@​JoshuaKGoldberg\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUlrich Stark \u003ca href=\"https://github.com/ulrichstark\"\u003e\u003ccode\u003e@​ulrichstark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases/tag/v8.70.0\"\u003eGitHub Releases\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cp\u003eYou can read about our \u003ca href=\"https://typescript-eslint.io/users/versioning\"\u003eversioning strategy\u003c/a\u003e and \u003ca href=\"https://typescript-eslint.io/users/releases\"\u003ereleases\u003c/a\u003e on our website.\u003c/p\u003e\n\u003ch2\u003e8.69.0 (2026-08-31)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-misused-promises] add flagUnions option for checkConditionals (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12603\"\u003e#12603\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-meaningless-void-operator] report void on non-call expressions (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12727\"\u003e#12727\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [unified-signatures] compare type parameters by constraint instead of name (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12741\"\u003e#12741\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-mixed-enums] use scope analysis instead of type checking for merged namespaces (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12731\"\u003e#12731\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAbdu Alim Arlikhozhaev \u003ca href=\"https://github.com/Arlikhozhaev\"\u003e\u003ccode\u003e@​Arlikhozhaev\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEvyatar Daud \u003ca href=\"https://github.com/StyleShit\"\u003e\u003ccode\u003e@​StyleShit\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJosh Goldberg ✨\u003c/li\u003e\n\u003cli\u003ewonbeanie \u003ca href=\"https://github.com/wonbeanie\"\u003e\u003ccode\u003e@​wonbeanie\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases/tag/v8.69.0\"\u003eGitHub Releases\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cp\u003eYou can read about our \u003ca href=\"https://typescript-eslint.io/users/versioning\"\u003eversioning strategy\u003c/a\u003e and \u003ca href=\"https://typescript-eslint.io/users/releases\"\u003ereleases\u003c/a\u003e on our website.\u003c/p\u003e\n\u003ch2\u003e8.68.0 (2026-08-24)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [strict-void-return] add fix suggestions (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12086\"\u003e#12086\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/7ee76085c22e923c0036b8e0733a3ca7dfd82b60\"\u003e\u003ccode\u003e7ee7608\u003c/code\u003e\u003c/a\u003e chore(release): publish 8.70.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/f66bdcac30c13c7ca8932667494550fd13fde5fc\"\u003e\u003ccode\u003ef66bdca\u003c/code\u003e\u003c/a\u003e test(eslint-plugin): [member-ordering] use \u003ccode\u003eRuleTester\u003c/code\u003e directly in `optional...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/4586535ab24d7d5e9b3ba87e4adb8636f9314aca\"\u003e\u003ccode\u003e4586535\u003c/code\u003e\u003c/a\u003e fix(eslint-plugin): [no-deprecated] report deprecated imported values used in...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/f8e1e4e2f7454ab2ba680cb523f9e3abe6582f81\"\u003e\u003ccode\u003ef8e1e4e\u003c/code\u003e\u003c/a\u003e fix(eslint-plugin): [no-unnecessary-condition] no false positive on RHS of a ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/889cece8bba520fc8c342dade4adf42b5d7f671e\"\u003e\u003ccode\u003e889cece\u003c/code\u003e\u003c/a\u003e fix(eslint-plugin): [member-ordering] don't report fields that read fields de...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/1a5a8b124b905c81a76ba1104a6396e65ad407dd\"\u003e\u003ccode\u003e1a5a8b1\u003c/code\u003e\u003c/a\u003e feat(eslint-plugin): [no-generated-empty-object-type] add rule (\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin/issues/12730\"\u003e#12730\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/9a6e546823e5d8f2dc015df2aa66c0230615e209\"\u003e\u003ccode\u003e9a6e546\u003c/code\u003e\u003c/a\u003e chore(release): publish 8.69.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/513638effe9e7b78566cc153d4d809a1435153f3\"\u003e\u003ccode\u003e513638e\u003c/code\u003e\u003c/a\u003e fix(eslint-plugin): [no-meaningless-void-operator] report void on non-call ex...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/1dba4c50f0599cc212e9d1eca9ec0f21a818f0b5\"\u003e\u003ccode\u003e1dba4c5\u003c/code\u003e\u003c/a\u003e chore(eslint-plugin): fix \u003ccode\u003eeslint-plugin/require-test-error-positions\u003c/code\u003e report...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/a2fccae39c7cb1e516a29b1c746b7767bffa03e2\"\u003e\u003ccode\u003ea2fccae\u003c/code\u003e\u003c/a\u003e fix(eslint-plugin): [unified-signatures] compare type parameters by constrain...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commits/v8.70.0/packages/eslint-plugin\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@typescript-eslint/parser` from 8.67.0 to 8.70.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases\"\u003e@​typescript-eslint/parser's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.70.0\u003c/h2\u003e\n\u003ch2\u003e8.70.0 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-generated-empty-object-type] add rule (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12730\"\u003e#12730\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ewebsite:\u003c/strong\u003e generate per-page social preview cards (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12734\"\u003e#12734\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003euse stable release of pnpm 12 (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12808\"\u003e#12808\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eupdate pnpm to 12.3.4 and dedupe Docusaurus packages (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12829\"\u003e#12829\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [member-ordering] don't report fields that read fields declared before them (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12729\"\u003e#12729\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-unnecessary-condition] no false positive on RHS of a nested logical expression (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12728\"\u003e#12728\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-deprecated] report deprecated imported values used in object shorthand properties (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12780\"\u003e#12780\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eproject-service:\u003c/strong\u003e avoid discarded tsserver logs (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12748\"\u003e#12748\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etypescript-estree:\u003c/strong\u003e clarify the parserOptions.project error message (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12817\"\u003e#12817\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBarry \u003ca href=\"https://github.com/barry166\"\u003e\u003ccode\u003e@​barry166\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEvyatar Daud \u003ca href=\"https://github.com/StyleShit\"\u003e\u003ccode\u003e@​StyleShit\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJosh Goldberg\u003c/li\u003e\n\u003cli\u003eJosh Goldberg ✨ \u003ca href=\"https://github.com/JoshuaKGoldberg\"\u003e\u003ccode\u003e@​JoshuaKGoldberg\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eKirk Waiblinger \u003ca href=\"https://github.com/kirkwaiblinger\"\u003e\u003ccode\u003e@​kirkwaiblinger\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUlrich Stark \u003ca href=\"https://github.com/ulrichstark\"\u003e\u003ccode\u003e@​ulrichstark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e송재욱\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases/tag/v8.70.0\"\u003eGitHub Releases\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cp\u003eYou can read about our \u003ca href=\"https://typescript-eslint.io/users/versioning\"\u003eversioning strategy\u003c/a\u003e and \u003ca href=\"https://typescript-eslint.io/users/releases\"\u003ereleases\u003c/a\u003e on our website.\u003c/p\u003e\n\u003ch2\u003ev8.69.0\u003c/h2\u003e\n\u003ch2\u003e8.69.0 (2026-08-31)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-misused-promises] add flagUnions option for checkConditionals (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12603\"\u003e#12603\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-mixed-enums] use scope analysis instead of type checking for merged namespaces (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12731\"\u003e#12731\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [unified-signatures] compare type parameters by constraint instead of name (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12741\"\u003e#12741\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-meaningless-void-operator] report void on non-call expressions (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12727\"\u003e#12727\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ewebsite:\u003c/strong\u003e respect allowJs playground config (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12744\"\u003e#12744\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAbdu Alim Arlikhozhaev \u003ca href=\"https://github.com/Arlikhozhaev\"\u003e\u003ccode\u003e@​Arlikhozhaev\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEvyatar Daud \u003ca href=\"https://github.com/StyleShit\"\u003e\u003ccode\u003e@​StyleShit\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md\"\u003e@​typescript-eslint/parser's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.70.0 (2026-09-07)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for parser to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases/tag/v8.70.0\"\u003eGitHub Releases\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cp\u003eYou can read about our \u003ca href=\"https://typescript-eslint.io/users/versioning\"\u003eversioning strategy\u003c/a\u003e and \u003ca href=\"https://typescript-eslint.io/users/releases\"\u003ereleases\u003c/a\u003e on our website.\u003c/p\u003e\n\u003ch2\u003e8.69.0 (2026-08-31)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for parser to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases/tag/v8.69.0\"\u003eGitHub Releases\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cp\u003eYou can read about our \u003ca href=\"https://typescript-eslint.io/users/versioning\"\u003eversioning strategy\u003c/a\u003e and \u003ca href=\"https://typescript-eslint.io/users/releases\"\u003ereleases\u003c/a\u003e on our website.\u003c/p\u003e\n\u003ch2\u003e8.68.0 (2026-08-24)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for parser to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases/tag/v8.68.0\"\u003eGitHub Releases\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cp\u003eYou can read about our \u003ca href=\"https://typescript-eslint.io/users/versioning\"\u003eversioning strategy\u003c/a\u003e and \u003ca href=\"https://typescript-eslint.io/users/releases\"\u003ereleases\u003c/a\u003e on our website.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/7ee76085c22e923c0036b8e0733a3ca7dfd82b60\"\u003e\u003ccode\u003e7ee7608\u003c/code\u003e\u003c/a\u003e chore(release): publish 8.70.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/9a6e546823e5d8f2dc015df2aa66c0230615e209\"\u003e\u003ccode\u003e9a6e546\u003c/code\u003e\u003c/a\u003e chore(release): publish 8.69.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/8f4e00a4e8f3bdf93a5e5e8bc568ba1c15a4f896\"\u003e\u003ccode\u003e8f4e00a\u003c/code\u003e\u003c/a\u003e chore(release): publish 8.68.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/55f6d5d4ca39d2fab93db97ced497b956017878d\"\u003e\u003ccode\u003e55f6d5d\u003c/code\u003e\u003c/a\u003e chore: enable source maps (\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser/issues/12677\"\u003e#12677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commits/v8.70.0/packages/parser\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `eslint` from 10.8.1 to 10.10.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/eslint/eslint/releases\"\u003eeslint's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev10.10.0\u003c/h2\u003e\n\u003ch2\u003eFeatures\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/264b4346d1963701df0c398b4aeb2f6e8b2af93e\"\u003e\u003ccode\u003e264b434\u003c/code\u003e\u003c/a\u003e feat: add \u003ccode\u003ed\u003c/code\u003e and \u003ccode\u003ev\u003c/code\u003e flags to \u003ccode\u003eno-unexpected-multiline\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21305\"\u003e#21305\u003c/a\u003e) (Gihyeon Jeong / 정기현)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/c6cc6c592f30901345d94ef75e0d42c1894fae6c\"\u003e\u003ccode\u003ec6cc6c5\u003c/code\u003e\u003c/a\u003e feat: check \u003ccode\u003eObject.prototype\u003c/code\u003e property names in \u003ccode\u003enew-cap\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21269\"\u003e#21269\u003c/a\u003e) (crimsonjay0)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/5661fa65fde9fd4c14f0b730e3cee6a42fc657c1\"\u003e\u003ccode\u003e5661fa6\u003c/code\u003e\u003c/a\u003e feat: no-extra-bind false negatives with class fields and static blocks (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21260\"\u003e#21260\u003c/a\u003e) (synthex-byte)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/bb47dc6da2399a8f76c0c0c3273e6bc314c480e5\"\u003e\u003ccode\u003ebb47dc6\u003c/code\u003e\u003c/a\u003e fix: update dependency file-entry-cache to v11 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20801\"\u003e#20801\u003c/a\u003e) (Milos Djermanovic)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/427ac0a014066c36aa57fa8fa9af20fd9fb591e1\"\u003e\u003ccode\u003e427ac0a\u003c/code\u003e\u003c/a\u003e fix: use format strings in debug calls (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21247\"\u003e#21247\u003c/a\u003e) (Francesco Trotta)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/9d8153223dbf47b9aecdc1474202aaee4845f146\"\u003e\u003ccode\u003e9d81532\u003c/code\u003e\u003c/a\u003e fix: support \u003ccode\u003e__proto__\u003c/code\u003e in \u003ccode\u003e/* exported */\u003c/code\u003e comments (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21261\"\u003e#21261\u003c/a\u003e) (sethamus)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/87e0a082438264ad90b87fd74165ab4fd90f63ef\"\u003e\u003ccode\u003e87e0a08\u003c/code\u003e\u003c/a\u003e fix: prefer-object-has-own autofix breaks when Object is shadowed (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21282\"\u003e#21282\u003c/a\u003e) (김채영)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/8e2cb142217f2efee1d10dcc02bfb75145ae775d\"\u003e\u003ccode\u003e8e2cb14\u003c/code\u003e\u003c/a\u003e fix: \u003ccode\u003enew-cap\u003c/code\u003e false positive for \u003ccode\u003eUTC\u003c/code\u003e calls with \u003ccode\u003eproperties: false\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21275\"\u003e#21275\u003c/a\u003e) (Pixel)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/9f4a364ab0ade048dfce1f37792b1d461d866e55\"\u003e\u003ccode\u003e9f4a364\u003c/code\u003e\u003c/a\u003e fix: Ignore static imports in no-unreachable (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21276\"\u003e#21276\u003c/a\u003e) (Taha Kotil)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eDocumentation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/2417cad57d7d1bc4cf3ecf0f0575cfb10ff2011c\"\u003e\u003ccode\u003e2417cad\u003c/code\u003e\u003c/a\u003e docs: Update README (GitHub Actions Bot)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/9cecb8a0a2348070abf72321965d41919c7cc626\"\u003e\u003ccode\u003e9cecb8a\u003c/code\u003e\u003c/a\u003e docs: document \u003ccode\u003e\\c\u003c/code\u003e control letter escapes in no-control-regex (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21286\"\u003e#21286\u003c/a\u003e) (한국)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/8724829f69f8ed80c876e3a5a017da199ce78739\"\u003e\u003ccode\u003e8724829\u003c/code\u003e\u003c/a\u003e docs: update compat table links (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21263\"\u003e#21263\u003c/a\u003e) (fnx)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/5634542be580750ffb1a5766470f9e9c72719696\"\u003e\u003ccode\u003e5634542\u003c/code\u003e\u003c/a\u003e docs: Clarify eqeqeq suggestion behavior (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21256\"\u003e#21256\u003c/a\u003e) (Müslüm Yılmaz)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eChores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/b3d876b46083d67899eb1d9613118c1c583632a2\"\u003e\u003ccode\u003eb3d876b\u003c/code\u003e\u003c/a\u003e chore: disable npm audit in ecosystem tests (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21306\"\u003e#21306\u003c/a\u003e) (Francesco Trotta)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/1696682791661c13167eb905da2f38d1b8f4a3bf\"\u003e\u003ccode\u003e1696682\u003c/code\u003e\u003c/a\u003e ci: restore EMFILE test on Node.js 26 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21297\"\u003e#21297\u003c/a\u003e) (Marry (Subin Yang))\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/2c7f5d6f47a92e8c0847af103e40fdb2f4dc61ef\"\u003e\u003ccode\u003e2c7f5d6\u003c/code\u003e\u003c/a\u003e chore: update github/codeql-action action to v4.37.9 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21296\"\u003e#21296\u003c/a\u003e) (renovate[bot])\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/3c753f18b461bfbf36d41a79a7863c093ef48489\"\u003e\u003ccode\u003e3c753f1\u003c/code\u003e\u003c/a\u003e chore: update eslint (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21289\"\u003e#21289\u003c/a\u003e) (renovate[bot])\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/1c734690bf6f4f9c542bec428d5a1a5c6cc4a19b\"\u003e\u003ccode\u003e1c73469\u003c/code\u003e\u003c/a\u003e chore: update ecosystem plugins (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21280\"\u003e#21280\u003c/a\u003e) (ESLint Bot)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/08a02be429e21fc93d86c8dd16cec6dc945ea2c1\"\u003e\u003ccode\u003e08a02be\u003c/code\u003e\u003c/a\u003e test: add error locations to \u003ccode\u003eno-extra-boolean-cast\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21266\"\u003e#21266\u003c/a\u003e) (lumir)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/77bb1db8e730b7da2347c647d60f215706aa349a\"\u003e\u003ccode\u003e77bb1db\u003c/code\u003e\u003c/a\u003e chore: update github/codeql-action action to v4.37.8 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21270\"\u003e#21270\u003c/a\u003e) (renovate[bot])\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/007e81ac0ad66bd0be4887d88a276df292ae0bed\"\u003e\u003ccode\u003e007e81a\u003c/code\u003e\u003c/a\u003e ci: skip EMFILE test on Node.js 26 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21265\"\u003e#21265\u003c/a\u003e) (lumir)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/0430280e7cca9dc0fdbf0bc50464e98e84285c49\"\u003e\u003ccode\u003e0430280\u003c/code\u003e\u003c/a\u003e chore: improve ecosystem tests compatibility on Windows (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21178\"\u003e#21178\u003c/a\u003e) (crimsonjay0)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.9.1\u003c/h2\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/1e641c919fc1421493bf913feb607896982451a3\"\u003e\u003ccode\u003e1e641c9\u003c/code\u003e\u003c/a\u003e fix: no-loss-of-precision false positive with trailing decimal point (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21251\"\u003e#21251\u003c/a\u003e) (Aleksandr Shoronov)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eDocumentation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/ad74a8dada2aaa17bfd0b8cc7b4119ff7a8ac04b\"\u003e\u003ccode\u003ead74a8d\u003c/code\u003e\u003c/a\u003e docs: add deprecation steps for EOL package versions (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21248\"\u003e#21248\u003c/a\u003e) (Francesco Trotta)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eChores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/3c3ae53a43721162f0db76c69665ebd9d752ea52\"\u003e\u003ccode\u003e3c3ae53\u003c/code\u003e\u003c/a\u003e chore: update ecosystem plugins (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21249\"\u003e#21249\u003c/a\u003e) (ESLint Bot)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.9.0\u003c/h2\u003e\n\u003ch2\u003eFeatures\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/08de88e50294c4e01f6cae97eceeb578da55792b\"\u003e\u003ccode\u003e08de88e\u003c/code\u003e\u003c/a\u003e feat: handle underflow in no-loss-of-precision (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21218\"\u003e#21218\u003c/a\u003e) (Rithish S)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/55db4791120ae591d88089c43127b7b0e16866d4\"\u003e\u003ccode\u003e55db479\u003c/code\u003e\u003c/a\u003e feat: add checkConditionalExpressions to \u003ccode\u003eno-unmodified-loop-condition\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21175\"\u003e#21175\u003c/a\u003e) (sethamus)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/2ba302554e7a24e9909bbdd026fd0c2d1d0d8638\"\u003e\u003ccode\u003e2ba3025\u003c/code\u003e\u003c/a\u003e fix: prevent unsafe \u003ccode\u003eno-var\u003c/code\u003e autofix with hoisted functions (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21213\"\u003e#21213\u003c/a\u003e) (sethamus)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/8e6962219a605c5f5add10953aa31027da839194\"\u003e\u003ccode\u003e8e69622\u003c/code\u003e\u003c/a\u003e fix: Prevent no-var autofix when var is shadowed by catch parameter (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21204\"\u003e#21204\u003c/a\u003e) (Yang Hyeonjong)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/684b57972e1ddf25e076fb36189c60bbcacee635\"\u003e\u003ccode\u003e684b579\u003c/code\u003e\u003c/a\u003e fix: prefer-template invalid autofix creates a tagged template call (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21207\"\u003e#21207\u003c/a\u003e) (김채영)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/3f20a57c6293371b6193d3fb6746c2b7b2ac2689\"\u003e\u003ccode\u003e3f20a57\u003c/code\u003e\u003c/a\u003e 10.10.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/f4e5284803854423c4c2536696888c28ce4a151f\"\u003e\u003ccode\u003ef4e5284\u003c/code\u003e\u003c/a\u003e Build: changelog update for 10.10.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/bb47dc6da2399a8f76c0c0c3273e6bc314c480e5\"\u003e\u003ccode\u003ebb47dc6\u003c/code\u003e\u003c/a\u003e fix: update dependency file-entry-cache to v11 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20801\"\u003e#20801\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/427ac0a014066c36aa57fa8fa9af20fd9fb591e1\"\u003e\u003ccode\u003e427ac0a\u003c/code\u003e\u003c/a\u003e fix: use format strings in debug calls (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21247\"\u003e#21247\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/b3d876b46083d67899eb1d9613118c1c583632a2\"\u003e\u003ccode\u003eb3d876b\u003c/code\u003e\u003c/a\u003e chore: disable npm audit in ecosystem tests (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21306\"\u003e#21306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/9d8153223dbf47b9aecdc1474202aaee4845f146\"\u003e\u003ccode\u003e9d81532\u003c/code\u003e\u003c/a\u003e fix: support \u003ccode\u003e__proto__\u003c/code\u003e in \u003ccode\u003e/* exported */\u003c/code\u003e comments (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21261\"\u003e#21261\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/264b4346d1963701df0c398b4aeb2f6e8b2af93e\"\u003e\u003ccode\u003e264b434\u003c/code\u003e\u003c/a\u003e feat: add \u003ccode\u003ed\u003c/code\u003e and \u003ccode\u003ev\u003c/code\u003e flags to \u003ccode\u003eno-unexpected-multiline\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21305\"\u003e#21305\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/1696682791661c13167eb905da2f38d1b8f4a3bf\"\u003e\u003ccode\u003e1696682\u003c/code\u003e\u003c/a\u003e ci: restore EMFILE test on Node.js 26 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21297\"\u003e#21297\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/2c7f5d6f47a92e8c0847af103e40fdb2f4dc61ef\"\u003e\u003ccode\u003e2c7f5d6\u003c/code\u003e\u003c/a\u003e chore: update github/codeql-action action to v4.37.9 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21296\"\u003e#21296\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/87e0a082438264ad90b87fd74165ab4fd90f63ef\"\u003e\u003ccode\u003e87e0a08\u003c/code\u003e\u003c/a\u003e fix: prefer-object-has-own autofix breaks when Object is shadowed (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21282\"\u003e#21282\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/eslint/eslint/compare/v10.8.1...v10.10.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `eslint-plugin-jest` from 29.16.1 to 29.16.6\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/releases\"\u003eeslint-plugin-jest's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev29.16.6\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.5...v29.16.6\"\u003e29.16.6\u003c/a\u003e (2026-08-30)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eprefer-to-have-been-called:\u003c/strong\u003e don't crash on matcher without an argument (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2016\"\u003e#2016\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/58e487fecda05ddafcac2fcf67475d90bd515957\"\u003e58e487f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eprefer-to-have-length:\u003c/strong\u003e don't crash on \u003ccode\u003eexpect\u003c/code\u003e chain without a value (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2014\"\u003e#2014\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/3629019d8e84e096115c8774a34178ff5b83aaf2\"\u003e3629019\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev29.16.5\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.4...v29.16.5\"\u003e29.16.5\u003c/a\u003e (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eno-export:\u003c/strong\u003e handle literal property accessors (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2011\"\u003e#2011\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/d848f70d5ae1a143d4ae2ef52bf00c6658f5070d\"\u003ed848f70\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev29.16.4\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.3...v29.16.4\"\u003e29.16.4\u003c/a\u003e (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eno-export:\u003c/strong\u003e handle nested assignment chains (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2009\"\u003e#2009\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/14b559af7f3d93ca585f65deae97c4b24a83e900\"\u003e14b559a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev29.16.3\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.2...v29.16.3\"\u003e29.16.3\u003c/a\u003e (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eno-export:\u003c/strong\u003e check for \u003ccode\u003eexports\u003c/code\u003e global (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/1988\"\u003e#1988\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/f506cb2b90743767d9619f22ebfe29b4ff047783\"\u003ef506cb2\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev29.16.2\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.1...v29.16.2\"\u003e29.16.2\u003c/a\u003e (2026-08-25)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eprefer-equality-matcher:\u003c/strong\u003e don't crash on \u003ccode\u003eexpect\u003c/code\u003e chain without a value (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2006\"\u003e#2006\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/27665cdddb1971ff2c19b0f897fee83112c95462\"\u003e27665cd\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/blob/main/CHANGELOG.md\"\u003eeslint-plugin-jest's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.5...v29.16.6\"\u003e29.16.6\u003c/a\u003e (2026-08-30)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eprefer-to-have-been-called:\u003c/strong\u003e don't crash on matcher without an argument (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2016\"\u003e#2016\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/58e487fecda05ddafcac2fcf67475d90bd515957\"\u003e58e487f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eprefer-to-have-length:\u003c/strong\u003e don't crash on \u003ccode\u003eexpect\u003c/code\u003e chain without a value (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2014\"\u003e#2014\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/3629019d8e84e096115c8774a34178ff5b83aaf2\"\u003e3629019\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.4...v29.16.5\"\u003e29.16.5\u003c/a\u003e (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eno-export:\u003c/strong\u003e handle literal property accessors (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2011\"\u003e#2011\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/d848f70d5ae1a143d4ae2ef52bf00c6658f5070d\"\u003ed848f70\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.3...v29.16.4\"\u003e29.16.4\u003c/a\u003e (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eno-export:\u003c/strong\u003e handle nested assignment chains (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2009\"\u003e#2009\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/14b559af7f3d93ca585f65deae97c4b24a83e900\"\u003e14b559a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.2...v29.16.3\"\u003e29.16.3\u003c/a\u003e (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eno-export:\u003c/strong\u003e check for \u003ccode\u003eexports\u003c/code\u003e global (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/1988\"\u003e#1988\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/f506cb2b90743767d9619f22ebfe29b4ff047783\"\u003ef506cb2\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.1...v29.16.2\"\u003e29.16.2\u003c/a\u003e (2026-08-25)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eprefer-equality-matcher:\u003c/strong\u003e don't crash on \u003ccode\u003eexpect\u003c/code\u003e chain without a value (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2006\"\u003e#2006\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/27665cdddb1971ff2c19b0f897fee83112c95462\"\u003e27665cd\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/94076f052370b6efc333af3b915d157e76a05b52\"\u003e\u003ccode\u003e94076f0\u003c/code\u003e\u003c/a\u003e chore(release): 29.16.6 [skip ci]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/58e487fecda05ddafcac2fcf67475d90bd515957\"\u003e\u003ccode\u003e58e487f\u003c/code\u003e\u003c/a\u003e fix(prefer-to-have-been-called): don't crash on matcher without an argument (...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/3629019d8e84e096115c8774a34178ff5b83aaf2\"\u003e\u003ccode\u003e3629019\u003c/code\u003e\u003c/a\u003e fix(prefer-to-have-length): don't crash on \u003ccode\u003eexpect\u003c/code\u003e chain without a value (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/...\n\n_Description has been truncated_","html_url":"https://github.com/zpao/qrcode.react/pull/456","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/zpao%2Fqrcode.react/issues/456","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/456/packages"},{"uuid":"5469884783","node_id":"PR_kwDOMXBbm88AAAABDtLyIQ","number":5,"state":"closed","title":"Bump glob and eslint-config-next","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-16T03:30:42.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-16T03:30:30.000Z","updated_at":"2026-09-16T03:30:50.000Z","time_to_close":12,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"glob","repository_url":"https://github.com/isaacs/node-glob","old_version":"10.3.10","new_version":"10.5.0"},{"name":"eslint-config-next","repository_url":"https://github.com/vercel/next.js","old_version":"14.2.5","new_version":"16.3.5"}],"path":null,"ecosystem":"npm"},"body":"Bumps [glob](https://github.com/isaacs/node-glob) to 10.5.0 and updates ancestor dependency [eslint-config-next](https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next). These dependencies need to be updated together.\n\nUpdates `glob` from 10.3.10 to 10.5.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-glob/blob/main/changelog.md\"\u003eglob's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003echangeglob\u003c/h1\u003e\n\u003ch2\u003e13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMove the CLI program out to a separate package, \u003ccode\u003eglob-bin\u003c/code\u003e.\nInstall that if you'd like to continue using glob from the\ncommand line.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove the unsafe \u003ccode\u003e--shell\u003c/code\u003e option. The \u003ccode\u003e--shell\u003c/code\u003e option is now\nONLY supported on known shells where the behavior can be\nimplemented safely.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.1\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/isaacs/node-glob/security/advisories/GHSA-5j98-mcp5-4vw2\"\u003eGHSA-5j98-mcp5-4vw2\u003c/a\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--shell\u003c/code\u003e option for the command line, with a warning\nthat this is unsafe. (It will be removed in v12.)\u003c/li\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--cmd-arg\u003c/code\u003e/\u003ccode\u003e-g\u003c/code\u003e as a way to \u003cem\u003esafely\u003c/em\u003e add positional\narguments to the command provided to the CLI tool.\u003c/li\u003e\n\u003cli\u003eDetect commands with space or quote characters on known shells,\nand pass positional arguments to them safely, avoiding\n\u003ccode\u003eshell:true\u003c/code\u003e execution.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node before v20\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eincludeChildMatches: false\u003c/code\u003e option\u003c/li\u003e\n\u003cli\u003eExport the \u003ccode\u003eIgnore\u003c/code\u003e class\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e--default -p\u003c/code\u003e flag to provide a default pattern\u003c/li\u003e\n\u003cli\u003eexclude symbolic links to directories when \u003ccode\u003efollow\u003c/code\u003e and \u003ccode\u003enodir\u003c/code\u003e\nare both set\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd glob cli\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReturn \u003ccode\u003e'.'\u003c/code\u003e instead of the empty string \u003ccode\u003e''\u003c/code\u003e when the current\nworking directory is returned as a match.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eposix: true\u003c/code\u003e option to return \u003ccode\u003e/\u003c/code\u003e delimited paths, even on\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1f0c1ca01a5f256cd17f543f83e9aaeedd133939\"\u003e\u003ccode\u003e1f0c1ca\u003c/code\u003e\u003c/a\u003e 10.4.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/eaf31dcb144750a19842a8319c330d021d4c4d5f\"\u003e\u003ccode\u003eeaf31dc\u003c/code\u003e\u003c/a\u003e whatever, just allow any engines\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/78275168e1bbc7a61e372af1ba58307c27faf0cb\"\u003e\u003ccode\u003e7827516\u003c/code\u003e\u003c/a\u003e 10.4.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/d06c8f8c8288c89a4892f4ebcc23ca21840aa4a1\"\u003e\u003ccode\u003ed06c8f8\u003c/code\u003e\u003c/a\u003e restore support for node 14.latest and 16.latest\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/c14b787771f269651f27f6207aaf410fe171f0b6\"\u003e\u003ccode\u003ec14b787\u003c/code\u003e\u003c/a\u003e 10.4.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/8a69def3cad0de9ba26ca831065ffe448d153de3\"\u003e\u003ccode\u003e8a69def\u003c/code\u003e\u003c/a\u003e node 14 no longer supported\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/eef7ea35afe511079c5bf83862ed57ece2bbf7fa\"\u003e\u003ccode\u003eeef7ea3\u003c/code\u003e\u003c/a\u003e 10.4.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/c76a7d255c74133ed33dd7aa965598316d12dd25\"\u003e\u003ccode\u003ec76a7d2\u003c/code\u003e\u003c/a\u003e use package-json-from-dist to look up package.json\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.3.10...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `eslint-config-next` from 14.2.5 to 16.3.5\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/next.js/releases\"\u003eeslint-config-next's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev16.3.5\u003c/h2\u003e\n\u003cp\u003eThe following bug fixes have been backported. It does not include all pending features/changes on canary.\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003enext/image: Skip 0-byte entries when initializing disk LRU cache (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/98185\"\u003e#98185\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003enext/image: Reject empty images when reading/writing to the disk cache (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/98186\"\u003e#98186\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eEmit whole-app server NFTs when \u003ccode\u003eoutput: 'standalone'\u003c/code\u003e is used with an adapter (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/98167\"\u003e#98167\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdd CSP nonce to script tags of loading and template files (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/98403\"\u003e#98403\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003euse cache\u003c/code\u003e prerender signal retention (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/98448\"\u003e#98448\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev16.3.4\u003c/h2\u003e\n\u003cp\u003eFollow-up release to \u003ca href=\"https://github.com/vercel/next.js/releases/tag/v16.3.3\"\u003ev16.3.3\u003c/a\u003e re-enabling AVIF Image Optimization (\u003ca href=\"https://redirect.github.com/vercel/next.js/pull/97949\"\u003e#97949\u003c/a\u003e).\u003c/p\u003e\n\u003cp\u003eThe following bug fixes have been backported. It does \u003cstrong\u003enot\u003c/strong\u003e include all pending features/changes on canary.\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003etestmode: Fix infinite recursion in testmode passthrough fetch (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97691\"\u003e#97691\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix build error when aliasing typescript to \u003ccode\u003e@​typescript/typescript6\u003c/code\u003e (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97997\"\u003e#97997\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix unset crossOrigin in Turbopack manifests (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97930\"\u003e#97930\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eCredits\u003c/h3\u003e\n\u003cp\u003eHuge thanks to \u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/mischnic\"\u003e\u003ccode\u003e@​mischnic\u003c/code\u003e\u003c/a\u003e, and \u003ca href=\"https://github.com/timneutkens\"\u003e\u003ccode\u003e@​timneutkens\u003c/code\u003e\u003c/a\u003e for helping!\u003c/p\u003e\n\u003ch2\u003ev16.3.3\u003c/h2\u003e\n\u003cp\u003eThis release contains security fixes for the following advisories:\u003c/p\u003e\n\u003cp\u003eCritical:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/security/advisories/GHSA-p293-qw3h-jr36\"\u003eUnauthenticated Remote Code Execution on windows-hosted servers\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/security/advisories/GHSA-2xp9-vwfh-vxw4\"\u003eUnauthenticated Remote Code Execution in Image Optimization API when AVIF files are used\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev16.3.2\u003c/h2\u003e\n\u003cblockquote\u003e\n\u003cp\u003e[!NOTE]\nThis release is backporting bug fixes. It does \u003cstrong\u003enot\u003c/strong\u003e include all pending features/changes on canary.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003ch3\u003eCore Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Scope app-entry export validation to files inside the app directory (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97357\"\u003e#97357\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Fix catch-all index page being served for every other slug (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97416\"\u003e#97416\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[16.3] Turbopack: don't trace embedded WASM loader helpers (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97353\"\u003e#97353\u003c/a\u003e) (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97463\"\u003e#97463\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[16.3] Turbopack: retain conditions when replacing resolve request keys (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97453\"\u003e#97453\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[16.3.x] Fix Turbopack worker chunk loading with asset prefix (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97419\"\u003e#97419\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[16.3.x] Authenticate Turborepo remote caching with OIDC instead of a static PAT (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97603\"\u003e#97603\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eCredits\u003c/h3\u003e\n\u003cp\u003eHuge thanks to \u003ca href=\"https://github.com/lubieowoce\"\u003e\u003ccode\u003e@​lubieowoce\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/unstubbable\"\u003e\u003ccode\u003e@​unstubbable\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/timneutkens\"\u003e\u003ccode\u003e@​timneutkens\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/mischnic\"\u003e\u003ccode\u003e@​mischnic\u003c/code\u003e\u003c/a\u003e, and \u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e for helping!\u003c/p\u003e\n\u003ch2\u003ev16.3.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e[16.x] Turbopack: don't strip async-module runtime from shared runtime chunks by \u003ca href=\"https://github.com/lukesandberg\"\u003e\u003ccode\u003e@​lukesandberg\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/next.js/pull/96653\"\u003evercel/next.js#96653\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/ca2c75eb7f8d9dd012a8bb83c06132149fe221f9\"\u003e\u003ccode\u003eca2c75e\u003c/code\u003e\u003c/a\u003e v16.3.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/299180d3315c7ebd7b199d2b1a265b5986c5fc7d\"\u003e\u003ccode\u003e299180d\u003c/code\u003e\u003c/a\u003e v16.3.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/a9a1cb7859f178f830ad3773b303130c21b19586\"\u003e\u003ccode\u003ea9a1cb7\u003c/code\u003e\u003c/a\u003e v16.3.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/d0ac8828c2fe6026dd7d700488bfd8289711fde6\"\u003e\u003ccode\u003ed0ac882\u003c/code\u003e\u003c/a\u003e v16.3.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/3d32eb870fb4c7009d580a31e2de81a626562270\"\u003e\u003ccode\u003e3d32eb8\u003c/code\u003e\u003c/a\u003e v16.3.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/d73f5622e226358dcef8cf7a8a373333ff265ae7\"\u003e\u003ccode\u003ed73f562\u003c/code\u003e\u003c/a\u003e v16.3.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/4fd843fb488f770c5b2023ddc58ff4be4ee81f14\"\u003e\u003ccode\u003e4fd843f\u003c/code\u003e\u003c/a\u003e v16.3.0-canary.107\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/9480f7f9ffdc271014d959e7b10d681882eaabb5\"\u003e\u003ccode\u003e9480f7f\u003c/code\u003e\u003c/a\u003e v16.3.0-canary.106\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/a8dcd2562f0bde39380d48507ec3fffd86c21e53\"\u003e\u003ccode\u003ea8dcd25\u003c/code\u003e\u003c/a\u003e v16.3.0-canary.105\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/38f0cdee4659b1b8f987bc46e3f1aacd12ee5c90\"\u003e\u003ccode\u003e38f0cde\u003c/code\u003e\u003c/a\u003e v16.3.0-canary.104\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vercel/next.js/commits/v16.3.5/packages/eslint-config-next\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for eslint-config-next since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/Fredasante/movie-mania/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/Fredasante/movie-mania/pull/5","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/Fredasante%2Fmovie-mania/issues/5","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/5/packages"},{"uuid":"5469420880","node_id":"PR_kwDOP4k45M8AAAABDs0QzQ","number":14,"state":"open","title":"Bump glob from 10.4.5 to 10.5.0","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-16T02:14:31.000Z","updated_at":"2026-09-16T02:15:13.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"glob","old_version":"10.4.5","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"}],"path":null,"ecosystem":"npm"},"body":"Bumps [glob](https://github.com/isaacs/node-glob) from 10.4.5 to 10.5.0.\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.4.5...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=glob\u0026package-manager=npm_and_yarn\u0026previous-version=10.4.5\u0026new-version=10.5.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/johnmberger/earworms/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/johnmberger/earworms/pull/14","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/johnmberger%2Fearworms/issues/14","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/14/packages"},{"uuid":"5463239686","node_id":"PR_kwDOPBiX2M8AAAABDn19lw","number":1,"state":"open","title":"Bump the npm_and_yarn group across 1 directory with 9 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-15T14:25:32.000Z","updated_at":"2026-09-15T14:26:07.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"npm_and_yarn","update_count":9,"packages":[{"name":"pacote","old_version":"21.0.0","new_version":"21.5.1","repository_url":"https://github.com/npm/pacote"},{"name":"@sigstore/core","old_version":"2.0.0","new_version":"3.2.1"},{"name":"brace-expansion","old_version":"2.0.2","new_version":"5.0.12"},{"name":"tar","old_version":"6.2.1","new_version":"7.5.22"},{"name":"glob","old_version":"10.4.5","new_version":"13.0.6"},{"name":"ip-address","old_version":"9.0.5","new_version":"10.7.1"},{"name":"minimatch","old_version":"9.0.5","new_version":"10.2.6"},{"name":"picomatch","old_version":"4.0.2","new_version":"4.0.7"},{"name":"sigstore","old_version":"3.1.0","new_version":"4.1.1"}],"path":null,"ecosystem":"npm"},"body":"Bumps the npm_and_yarn group with 1 update in the / directory: [pacote](https://github.com/npm/pacote).\n\nUpdates `pacote` from 21.0.0 to 21.5.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/npm/pacote/releases\"\u003epacote's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev21.5.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.5.0...v21.5.1\"\u003e21.5.1\u003c/a\u003e (2026-06-09)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/627a7dc1a214d857472a13b48e42559c75288c9e\"\u003e\u003ccode\u003e627a7dc\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/499\"\u003e#499\u003c/a\u003e avoid ReDoS in addGitSha committish stripping (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/790a24b4201fa1f844645f99601d478621f079e4\"\u003e\u003ccode\u003e790a24b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/500\"\u003e#500\u003c/a\u003e template-oss-apply (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/500\"\u003e#500\u003c/a\u003e) (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e, test)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/09cb304ca4f85ef85b2acdb2108f3e839ad9556e\"\u003e\u003ccode\u003e09cb304\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/499\"\u003e#499\u003c/a\u003e template-oss-apply (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/bea9f847decbcd1a712481643b15d92ddd8f8087\"\u003e\u003ccode\u003ebea9f84\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/499\"\u003e#499\u003c/a\u003e \u003ccode\u003e@npmcli/template-oss@5.1.0\u003c/code\u003e (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev21.5.0\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.4.0...v21.5.0\"\u003e21.5.0\u003c/a\u003e (2026-03-09)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/d912f17785cd547879c59342b1c2104f71a5a0e6\"\u003e\u003ccode\u003ed912f17\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/457\"\u003e#457\u003c/a\u003e expose fetched attestation bundles on manifest (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/457\"\u003e#457\u003c/a\u003e) (\u003ca href=\"https://github.com/mitchdenny\"\u003e\u003ccode\u003e@​mitchdenny\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/586a55dc0cb9e44740be28ffd1fb227cf8111d2a\"\u003e\u003ccode\u003e586a55d\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/471\"\u003e#471\u003c/a\u003e template-oss-apply for new macos images (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/471\"\u003e#471\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/d1cc5c8bf2ac35c52fc606f96d47129f042739e6\"\u003e\u003ccode\u003ed1cc5c8\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/460\"\u003e#460\u003c/a\u003e template-oss-apply for release branches (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/460\"\u003e#460\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/b741e8b1a401c46841b7c37241e8ec85ad420841\"\u003e\u003ccode\u003eb741e8b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/468\"\u003e#468\u003c/a\u003e bump \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e from 4.28.0 to 4.29.0 (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/468\"\u003e#468\u003c/a\u003e) (\u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot], \u003ca href=\"https://github.com/npm-cli-bot\"\u003e\u003ccode\u003e@​npm-cli-bot\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev21.4.0\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.3.1...v21.4.0\"\u003e21.4.0\u003c/a\u003e (2026-02-24)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/6912f249599e9e27ed0b79ab0652cc60f6d2f755\"\u003e\u003ccode\u003e6912f24\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/451\"\u003e#451\u003c/a\u003e add allowRegistry option (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/451\"\u003e#451\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/ab37bc1e7d0f1c0a590770e650f93500caa9b206\"\u003e\u003ccode\u003eab37bc1\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/452\"\u003e#452\u003c/a\u003e prevent path duplication in attestation URL for registries with … (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/452\"\u003e#452\u003c/a\u003e) (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/ab37bc1e7d0f1c0a590770e650f93500caa9b206\"\u003e\u003ccode\u003eab37bc1\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/452\"\u003e#452\u003c/a\u003e prevent path duplication in attestation URL for registries with (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/8b8ea3b27f49097806fc798b478c5179bea21266\"\u003e\u003ccode\u003e8b8ea3b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/454\"\u003e#454\u003c/a\u003e skip registry key check for keyless (Sigstore/Fulcio) attestations (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/454\"\u003e#454\u003c/a\u003e) (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/8b8ea3b27f49097806fc798b478c5179bea21266\"\u003e\u003ccode\u003e8b8ea3b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/454\"\u003e#454\u003c/a\u003e skip registry key check for keyless (Sigstore/Fulcio) attestations (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/0dfd1cdc15cf8586d0d7c1f4b30bffe73d5277dc\"\u003e\u003ccode\u003e0dfd1cd\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/456\"\u003e#456\u003c/a\u003e remove git config from tests (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/456\"\u003e#456\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev21.3.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.3.0...v21.3.1\"\u003e21.3.1\u003c/a\u003e (2026-02-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/96e571a4c2f1eaab1932ba40eb495cc6b9798c9b\"\u003e\u003ccode\u003e96e571a\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/439\"\u003e#439\u003c/a\u003e ensure that resolved git ref matches expected sha (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/439\"\u003e#439\u003c/a\u003e) (\u003ca href=\"https://github.com/klassiker\"\u003e\u003ccode\u003e@​klassiker\u003c/code\u003e\u003c/a\u003e, pacotedev)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/91847c43637a5308119076371300be497cfcff74\"\u003e\u003ccode\u003e91847c4\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/447\"\u003e#447\u003c/a\u003e fix test for ssri ignoring invalid hashes (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/447\"\u003e#447\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev21.3.0\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.2.0...v21.3.0\"\u003e21.3.0\u003c/a\u003e (2026-02-09)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/8f5091d0a7fc356756707241f8b52dc8a036c34e\"\u003e\u003ccode\u003e8f5091d\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/445\"\u003e#445\u003c/a\u003e add support for git-256 sha lengths (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/445\"\u003e#445\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev21.2.0\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.1.0...v21.2.0\"\u003e21.2.0\u003c/a\u003e (2026-02-06)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/db21624fd9ee8fe3ccea5f671f2e39c7f68546eb\"\u003e\u003ccode\u003edb21624\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/442\"\u003e#442\u003c/a\u003e implement gitSubdir according to npa spec (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/442\"\u003e#442\u003c/a\u003e) (\u003ca href=\"https://github.com/Kakadus\"\u003e\u003ccode\u003e@​Kakadus\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/c2a4217fc8b49d58c4bafd41ec1127105a37ae05\"\u003e\u003ccode\u003ec2a4217\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/443\"\u003e#443\u003c/a\u003e add allowRemote, allowFile, allowDirectory (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/443\"\u003e#443\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev21.1.0\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.0.4...v21.1.0\"\u003e21.1.0\u003c/a\u003e (2026-01-28)\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/npm/pacote/blob/v21.5.1/CHANGELOG.md\"\u003epacote's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.5.0...v21.5.1\"\u003e21.5.1\u003c/a\u003e (2026-06-09)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/627a7dc1a214d857472a13b48e42559c75288c9e\"\u003e\u003ccode\u003e627a7dc\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/499\"\u003e#499\u003c/a\u003e avoid ReDoS in addGitSha committish stripping (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/790a24b4201fa1f844645f99601d478621f079e4\"\u003e\u003ccode\u003e790a24b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/500\"\u003e#500\u003c/a\u003e template-oss-apply (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/500\"\u003e#500\u003c/a\u003e) (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e, test)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/09cb304ca4f85ef85b2acdb2108f3e839ad9556e\"\u003e\u003ccode\u003e09cb304\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/499\"\u003e#499\u003c/a\u003e template-oss-apply (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/bea9f847decbcd1a712481643b15d92ddd8f8087\"\u003e\u003ccode\u003ebea9f84\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/499\"\u003e#499\u003c/a\u003e \u003ccode\u003e@npmcli/template-oss@5.1.0\u003c/code\u003e (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.4.0...v21.5.0\"\u003e21.5.0\u003c/a\u003e (2026-03-09)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/d912f17785cd547879c59342b1c2104f71a5a0e6\"\u003e\u003ccode\u003ed912f17\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/457\"\u003e#457\u003c/a\u003e expose fetched attestation bundles on manifest (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/457\"\u003e#457\u003c/a\u003e) (\u003ca href=\"https://github.com/mitchdenny\"\u003e\u003ccode\u003e@​mitchdenny\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/586a55dc0cb9e44740be28ffd1fb227cf8111d2a\"\u003e\u003ccode\u003e586a55d\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/471\"\u003e#471\u003c/a\u003e template-oss-apply for new macos images (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/471\"\u003e#471\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/d1cc5c8bf2ac35c52fc606f96d47129f042739e6\"\u003e\u003ccode\u003ed1cc5c8\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/460\"\u003e#460\u003c/a\u003e template-oss-apply for release branches (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/460\"\u003e#460\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/b741e8b1a401c46841b7c37241e8ec85ad420841\"\u003e\u003ccode\u003eb741e8b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/468\"\u003e#468\u003c/a\u003e bump \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e from 4.28.0 to 4.29.0 (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/468\"\u003e#468\u003c/a\u003e) (\u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot], \u003ca href=\"https://github.com/npm-cli-bot\"\u003e\u003ccode\u003e@​npm-cli-bot\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.3.1...v21.4.0\"\u003e21.4.0\u003c/a\u003e (2026-02-24)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/6912f249599e9e27ed0b79ab0652cc60f6d2f755\"\u003e\u003ccode\u003e6912f24\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/451\"\u003e#451\u003c/a\u003e add allowRegistry option (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/451\"\u003e#451\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/ab37bc1e7d0f1c0a590770e650f93500caa9b206\"\u003e\u003ccode\u003eab37bc1\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/452\"\u003e#452\u003c/a\u003e prevent path duplication in attestation URL for registries with … (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/452\"\u003e#452\u003c/a\u003e) (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/ab37bc1e7d0f1c0a590770e650f93500caa9b206\"\u003e\u003ccode\u003eab37bc1\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/452\"\u003e#452\u003c/a\u003e prevent path duplication in attestation URL for registries with (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/8b8ea3b27f49097806fc798b478c5179bea21266\"\u003e\u003ccode\u003e8b8ea3b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/454\"\u003e#454\u003c/a\u003e skip registry key check for keyless (Sigstore/Fulcio) attestations (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/454\"\u003e#454\u003c/a\u003e) (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/8b8ea3b27f49097806fc798b478c5179bea21266\"\u003e\u003ccode\u003e8b8ea3b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/454\"\u003e#454\u003c/a\u003e skip registry key check for keyless (Sigstore/Fulcio) attestations (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/0dfd1cdc15cf8586d0d7c1f4b30bffe73d5277dc\"\u003e\u003ccode\u003e0dfd1cd\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/456\"\u003e#456\u003c/a\u003e remove git config from tests (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/456\"\u003e#456\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.3.0...v21.3.1\"\u003e21.3.1\u003c/a\u003e (2026-02-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/96e571a4c2f1eaab1932ba40eb495cc6b9798c9b\"\u003e\u003ccode\u003e96e571a\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/439\"\u003e#439\u003c/a\u003e ensure that resolved git ref matches expected sha (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/439\"\u003e#439\u003c/a\u003e) (\u003ca href=\"https://github.com/klassiker\"\u003e\u003ccode\u003e@​klassiker\u003c/code\u003e\u003c/a\u003e, pacotedev)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/91847c43637a5308119076371300be497cfcff74\"\u003e\u003ccode\u003e91847c4\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/447\"\u003e#447\u003c/a\u003e fix test for ssri ignoring invalid hashes (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/447\"\u003e#447\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.2.0...v21.3.0\"\u003e21.3.0\u003c/a\u003e (2026-02-09)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/8f5091d0a7fc356756707241f8b52dc8a036c34e\"\u003e\u003ccode\u003e8f5091d\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/445\"\u003e#445\u003c/a\u003e add support for git-256 sha lengths (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/445\"\u003e#445\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.1.0...v21.2.0\"\u003e21.2.0\u003c/a\u003e (2026-02-06)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/db21624fd9ee8fe3ccea5f671f2e39c7f68546eb\"\u003e\u003ccode\u003edb21624\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/442\"\u003e#442\u003c/a\u003e implement gitSubdir according to npa spec (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/442\"\u003e#442\u003c/a\u003e) (\u003ca href=\"https://github.com/Kakadus\"\u003e\u003ccode\u003e@​Kakadus\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/c2a4217fc8b49d58c4bafd41ec1127105a37ae05\"\u003e\u003ccode\u003ec2a4217\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/443\"\u003e#443\u003c/a\u003e add allowRemote, allowFile, allowDirectory (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/443\"\u003e#443\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.0.4...v21.1.0\"\u003e21.1.0\u003c/a\u003e (2026-01-28)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/258e5fde5576b5dfebc0d5f9a098b15afdd70875\"\u003e\u003ccode\u003e258e5fd\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/440\"\u003e#440\u003c/a\u003e add allowGit option (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/440\"\u003e#440\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.0.3...v21.0.4\"\u003e21.0.4\u003c/a\u003e (2025-11-13)\u003c/h2\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/edbcc02933255ad72ab1d9f5adc070692e402c9b\"\u003e\u003ccode\u003eedbcc02\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/436\"\u003e#436\u003c/a\u003e \u003ccode\u003eproc-log@6.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/8dc1f2294ffc8843e65fe582dde49756581580e1\"\u003e\u003ccode\u003e8dc1f22\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/436\"\u003e#436\u003c/a\u003e \u003ccode\u003e@npmcli/installed-package-contents@4.0.0\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/d36266f5e4001cffdf70de242b6e825cef06f0c1\"\u003e\u003ccode\u003ed36266f\u003c/code\u003e\u003c/a\u003e chore: release 21.5.1 (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/499\"\u003e#499\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/790a24b4201fa1f844645f99601d478621f079e4\"\u003e\u003ccode\u003e790a24b\u003c/code\u003e\u003c/a\u003e chore: template-oss-apply (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/500\"\u003e#500\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/09cb304ca4f85ef85b2acdb2108f3e839ad9556e\"\u003e\u003ccode\u003e09cb304\u003c/code\u003e\u003c/a\u003e chore: template-oss-apply\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/bea9f847decbcd1a712481643b15d92ddd8f8087\"\u003e\u003ccode\u003ebea9f84\u003c/code\u003e\u003c/a\u003e chore: \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e\u003ca href=\"https://github.com/5\"\u003e\u003ccode\u003e@​5\u003c/code\u003e\u003c/a\u003e.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/627a7dc1a214d857472a13b48e42559c75288c9e\"\u003e\u003ccode\u003e627a7dc\u003c/code\u003e\u003c/a\u003e fix: avoid ReDoS in addGitSha committish stripping\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/6c2555a38a2dc0ab2fb98c4f934d714be5f3ba49\"\u003e\u003ccode\u003e6c2555a\u003c/code\u003e\u003c/a\u003e chore: release 21.5.0 (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/470\"\u003e#470\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/586a55dc0cb9e44740be28ffd1fb227cf8111d2a\"\u003e\u003ccode\u003e586a55d\u003c/code\u003e\u003c/a\u003e chore: template-oss-apply for new macos images (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/471\"\u003e#471\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/d912f17785cd547879c59342b1c2104f71a5a0e6\"\u003e\u003ccode\u003ed912f17\u003c/code\u003e\u003c/a\u003e feat: expose fetched attestation bundles on manifest (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/457\"\u003e#457\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/b741e8b1a401c46841b7c37241e8ec85ad420841\"\u003e\u003ccode\u003eb741e8b\u003c/code\u003e\u003c/a\u003e chore: bump \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e from 4.28.0 to 4.29.0 (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/468\"\u003e#468\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/d1cc5c8bf2ac35c52fc606f96d47129f042739e6\"\u003e\u003ccode\u003ed1cc5c8\u003c/code\u003e\u003c/a\u003e chore: template-oss-apply for release branches (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/460\"\u003e#460\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/npm/pacote/compare/v21.0.0...v21.5.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for pacote since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@sigstore/core` from 2.0.0 to 3.2.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/sigstore/sigstore-js/releases\"\u003e@​sigstore/core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.2.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eb5aa4f1: Apply UTF-8 encoding to payload type during PAE calculation\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.2.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e8f736ef: Update the \u003ccode\u003ecreatePublicKey\u003c/code\u003e function to support base64-encoded keys\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.0\u003c/h2\u003e\n\u003ch3\u003eMajor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e383e200: Drop support for node 18\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c1dc7d4778a450787fc72b083f2490ad02b714c6\"\u003e\u003ccode\u003ec1dc7d4\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1607\"\u003e#1607\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/f074710a91ea9260a9ac2142345634579843a3cd\"\u003e\u003ccode\u003ef074710\u003c/code\u003e\u003c/a\u003e reject integratedTime w/o inclusionPromise (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1659\"\u003e#1659\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/7845532f9d17f6f765363dbee82b01bd159fb52b\"\u003e\u003ccode\u003e7845532\u003c/code\u003e\u003c/a\u003e OID certificate extension verification (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1658\"\u003e#1658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/b5aa4f1f8d2db0a9dfa6430fb114d9c2f1c304f7\"\u003e\u003ccode\u003eb5aa4f1\u003c/code\u003e\u003c/a\u003e proper utf-8 encoding in DSSE PAE (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1657\"\u003e#1657\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c7a34e0e9514f4573f8daf980c0987a4120a7183\"\u003e\u003ccode\u003ec7a34e0\u003c/code\u003e\u003c/a\u003e clarify cert ID matching (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1656\"\u003e#1656\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/9858bd7fc535ff01755c8dd5842ef7171b0fafeb\"\u003e\u003ccode\u003e9858bd7\u003c/code\u003e\u003c/a\u003e Upgrade TypeScript to 6.x (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1655\"\u003e#1655\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/8cef20d0069abd3ff03f2afb9ca320a76ddf6d4b\"\u003e\u003ccode\u003e8cef20d\u003c/code\u003e\u003c/a\u003e bump qs from 6.15.1 to 6.15.2 (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1654\"\u003e#1654\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/aca341b56aa561af4d74ad07fda4acd12c417beb\"\u003e\u003ccode\u003eaca341b\u003c/code\u003e\u003c/a\u003e bump \u003ccode\u003e@​sigstore/mock\u003c/code\u003e deps (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1653\"\u003e#1653\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/0855acac119ae9f9dc21413356ce36eade2a51f8\"\u003e\u003ccode\u003e0855aca\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1652\"\u003e#1652\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/44a374d63107b25d11f880a8427e2e27d45965d8\"\u003e\u003ccode\u003e44a374d\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1650\"\u003e#1650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/sigstore/sigstore-js/compare/@sigstore/core@2.0.0...@sigstore/core@3.2.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​sigstore/core\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `brace-expansion` from 2.0.2 to 5.0.12\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/juliangruber/brace-expansion/releases\"\u003ebrace-expansion's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efmt  5a5cc17\u003c/li\u003e\n\u003cli\u003eFix potential ReDoS Vulnerability or Inefficient Regular Expression (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/65\"\u003e#65\u003c/a\u003e)  0b6a978\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v4.0.0...v4.0.1\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v4.0.0...v4.0.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev4.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: use string replaces instead of splits (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/64\"\u003e#64\u003c/a\u003e)  278132b\u003c/li\u003e\n\u003cli\u003efmt  dd72a59\u003c/li\u003e\n\u003cli\u003eadd \u003ccode\u003etea.yaml\u003c/code\u003e  70e4c1b\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v3.0.0...v4.0.0\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v3.0.0...v4.0.0\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eAs a precaution to not risk breaking anything with 278132b, this is a new semver major release\u003c/p\u003e\n\u003ch2\u003ev3.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003epkg: publish on tag 3.x  3059c07\u003c/li\u003e\n\u003cli\u003efmt  8229e6f\u003c/li\u003e\n\u003cli\u003eFix potential ReDoS Vulnerability or Inefficient Regular Expression (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/65\"\u003e#65\u003c/a\u003e)  15f9b3c\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v3.0.0...v3.0.1\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v3.0.0...v3.0.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev3.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSwitch to ES Modules and balanced-match 3.0.0 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/62\"\u003e#62\u003c/a\u003e)  c0360e8\u003c/li\u003e\n\u003cli\u003eadded jsdoc (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/55\"\u003e#55\u003c/a\u003e)  68c0e37\u003c/li\u003e\n\u003cli\u003enode 16 is EOL  9e781e9\u003c/li\u003e\n\u003cli\u003eadd standard  3494c4d\u003c/li\u003e\n\u003cli\u003euse const and let (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/57\"\u003e#57\u003c/a\u003e)  dd5a4cb\u003c/li\u003e\n\u003cli\u003edocs  6dad209\u003c/li\u003e\n\u003cli\u003eremove \u003ccode\u003etest\u003c/code\u003e  e3dd8ae\u003c/li\u003e\n\u003cli\u003eci: update node versions  d23ede9\u003c/li\u003e\n\u003cli\u003edocs: add \u003ca href=\"https://github.com/lanodan\"\u003e\u003ccode\u003e@​lanodan\u003c/code\u003e\u003c/a\u003e to contributors  1eb3fa4\u003c/li\u003e\n\u003cli\u003edocs  1e7c9cd\u003c/li\u003e\n\u003cli\u003eswitch from tape to test module (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/60\"\u003e#60\u003c/a\u003e)  2520537\u003c/li\u003e\n\u003cli\u003eBump minimist from 1.2.5 to 1.2.6 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/59\"\u003e#59\u003c/a\u003e)  61a94f1\u003c/li\u003e\n\u003cli\u003eBump path-parse from 1.0.6 to 1.0.7 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/51\"\u003e#51\u003c/a\u003e)  dc741cf\u003c/li\u003e\n\u003cli\u003edocs: add back ci badge  8ee5626\u003c/li\u003e\n\u003cli\u003eAdd github actions, remove travis. Closes \u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/52\"\u003e#52\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/53\"\u003e#53\u003c/a\u003e)  5c8756a\u003c/li\u003e\n\u003cli\u003eCI: Drop unused sudo: false Travis directive (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/50\"\u003e#50\u003c/a\u003e)  05978a7\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.0.1...v3.0.0\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v2.0.1...v3.0.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBackport v5.0.6 change to v2 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/109\"\u003e#109\u003c/a\u003e)  c3a817c\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/f3410159d768f56c9d9f4511d3e1b46425fc1099\"\u003e\u003ccode\u003ef341015\u003c/code\u003e\u003c/a\u003e 5.0.12\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/33a5ef17b8d800bbfa8c52b14c39043b6aac1a96\"\u003e\u003ccode\u003e33a5ef1\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/82479277b90f2f86263e946f9ff89689b3734568\"\u003e\u003ccode\u003e8247927\u003c/code\u003e\u003c/a\u003e 5.0.11\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/935d78f32f335b2ff76578e5c5e877d31ae9888c\"\u003e\u003ccode\u003e935d78f\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/df7682f386cdf2d7fef6067bc78ed70d824e1f3f\"\u003e\u003ccode\u003edf7682f\u003c/code\u003e\u003c/a\u003e 5.0.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1ade9de71f3a8719c82c61a7977121067bb55b02\"\u003e\u003ccode\u003e1ade9de\u003c/code\u003e\u003c/a\u003e npm run format\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/6735c94873ca570bcdd6a0690033bdd3126379d3\"\u003e\u003ccode\u003e6735c94\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/4e7046543469d31e2b324b1bf14d8606d74f7f18\"\u003e\u003ccode\u003e4e70465\u003c/code\u003e\u003c/a\u003e chore: ensure prettier formatting (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/154\"\u003e#154\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/fd7a5e34cfcd9a9df6e0ee17817807104392ecff\"\u003e\u003ccode\u003efd7a5e3\u003c/code\u003e\u003c/a\u003e Bump ip-address from 10.2.0 to 10.4.0 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/152\"\u003e#152\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1790143e9aa05279b087b94104c03d3cb775e2e4\"\u003e\u003ccode\u003e1790143\u003c/code\u003e\u003c/a\u003e Bump uuid and \u003ccode\u003e@​tapjs/processinfo\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/120\"\u003e#120\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.0.2...v5.0.12\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `tar` from 6.2.1 to 7.5.22\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-tar/blob/main/CHANGELOG.md\"\u003etar's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003ch2\u003e7.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003ezstd\u003c/code\u003e compression support.\u003c/li\u003e\n\u003cli\u003eConsistent TOCTOU behavior in sync t.list\u003c/li\u003e\n\u003cli\u003eOnly read from ustar block if not specified in Pax\u003c/li\u003e\n\u003cli\u003eFix sync tar.list when file size reduces while reading\u003c/li\u003e\n\u003cli\u003eSanitize absolute linkpaths properly\u003c/li\u003e\n\u003cli\u003ePrevent writing hardlink entries to the archive ahead of their\nfile target\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDeprecate \u003ccode\u003eonentry\u003c/code\u003e in favor of \u003ccode\u003eonReadEntry\u003c/code\u003e for clarity.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eonWriteEntry\u003c/code\u003e option\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDRY the command definitions into a single \u003ccode\u003emakeCommand\u003c/code\u003e method,\nand update the type signatures to more appropriately infer the\nreturn type from the options and arguments provided.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate minipass to v7.1.0\u003c/li\u003e\n\u003cli\u003eUpdate the type definitions of \u003ccode\u003ewrite()\u003c/code\u003e and \u003ccode\u003eend()\u003c/code\u003e methods on\n\u003ccode\u003eUnpack\u003c/code\u003e and \u003ccode\u003eParser\u003c/code\u003e classes to be compatible with the\nNodeJS.WritableStream type in the latest versions of\n\u003ccode\u003e@types/node\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node \u0026lt;18\u003c/li\u003e\n\u003cli\u003eRewrite in TypeScript, provide ESM and CommonJS hybrid\ninterface\u003c/li\u003e\n\u003cli\u003eAdd tree-shake friendly exports, like \u003ccode\u003eimport('tar/create')\u003c/code\u003e\nand \u003ccode\u003eimport('tar/read-entry')\u003c/code\u003e to get individual functions or\nclasses.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003echmod\u003c/code\u003e option that defaults to false, and deprecate\n\u003ccode\u003enoChmod\u003c/code\u003e. That is, reverse the default option regarding\nexplicitly setting file system modes to match tar entry\nsettings.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eprocessUmask\u003c/code\u003e option to avoid having to call\n\u003ccode\u003eprocess.umask()\u003c/code\u003e when \u003ccode\u003echmod: true\u003c/code\u003e (or \u003ccode\u003enoChmod: false\u003c/code\u003e) is\nset.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/2a22bfc5d3a432a606d9da0e2d87ba634aa3b1cb\"\u003e\u003ccode\u003e2a22bfc\u003c/code\u003e\u003c/a\u003e 7.5.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/df1cd8dc09cded47b00c4129698824b3986432ac\"\u003e\u003ccode\u003edf1cd8d\u003c/code\u003e\u003c/a\u003e Allow transform to be falsey\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/0cd9cc3c5814446d3c0cbea6a31d6c00c2c8a9d9\"\u003e\u003ccode\u003e0cd9cc3\u003c/code\u003e\u003c/a\u003e 7.5.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/631ae59121bf8fc8a22bbae35f074cb9b789cd4a\"\u003e\u003ccode\u003e631ae59\u003c/code\u003e\u003c/a\u003e list: prevent unbounded recursion\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/ebbb72094159d003f428dcd1cb28255d37ea4873\"\u003e\u003ccode\u003eebbb720\u003c/code\u003e\u003c/a\u003e 7.5.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/2f271963a7fe5a5960aee5dd6adf9647a1e266fd\"\u003e\u003ccode\u003e2f27196\u003c/code\u003e\u003c/a\u003e fix: fully disable and dispose of unzip when aborting parser\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/be440da64e9fe80c68c755d8147328ea1cc2a9ad\"\u003e\u003ccode\u003ebe440da\u003c/code\u003e\u003c/a\u003e 7.5.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/2812e9338665659b183aa7226518c307044957d3\"\u003e\u003ccode\u003e2812e93\u003c/code\u003e\u003c/a\u003e add maxDecompressionRatio guard against explosive decompression\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/9ecd4d2956fd915507eca018ddc1fea727fbba93\"\u003e\u003ccode\u003e9ecd4d2\u003c/code\u003e\u003c/a\u003e 7.5.18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/9e78bf058b2c22dd4d52e00d8922d5c06fc2f7b5\"\u003e\u003ccode\u003e9e78bf0\u003c/code\u003e\u003c/a\u003e refuse to let header size be less than 0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-tar/compare/v6.2.1...v7.5.22\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~isaacs\"\u003eisaacs\u003c/a\u003e, a new releaser for tar since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `glob` from 10.4.5 to 13.0.6\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-glob/blob/main/changelog.md\"\u003eglob's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003echangeglob\u003c/h1\u003e\n\u003ch2\u003e13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMove the CLI program out to a separate package, \u003ccode\u003eglob-bin\u003c/code\u003e.\nInstall that if you'd like to continue using glob from the\ncommand line.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove the unsafe \u003ccode\u003e--shell\u003c/code\u003e option. The \u003ccode\u003e--shell\u003c/code\u003e option is now\nONLY supported on known shells where the behavior can be\nimplemented safely.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.1\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/isaacs/node-glob/security/advisories/GHSA-5j98-mcp5-4vw2\"\u003eGHSA-5j98-mcp5-4vw2\u003c/a\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--shell\u003c/code\u003e option for the command line, with a warning\nthat this is unsafe. (It will be removed in v12.)\u003c/li\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--cmd-arg\u003c/code\u003e/\u003ccode\u003e-g\u003c/code\u003e as a way to \u003cem\u003esafely\u003c/em\u003e add positional\narguments to the command provided to the CLI tool.\u003c/li\u003e\n\u003cli\u003eDetect commands with space or quote characters on known shells,\nand pass positional arguments to them safely, avoiding\n\u003ccode\u003eshell:true\u003c/code\u003e execution.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node before v20\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eincludeChildMatches: false\u003c/code\u003e option\u003c/li\u003e\n\u003cli\u003eExport the \u003ccode\u003eIgnore\u003c/code\u003e class\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e--default -p\u003c/code\u003e flag to provide a default pattern\u003c/li\u003e\n\u003cli\u003eexclude symbolic links to directories when \u003ccode\u003efollow\u003c/code\u003e and \u003ccode\u003enodir\u003c/code\u003e\nare both set\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd glob cli\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReturn \u003ccode\u003e'.'\u003c/code\u003e instead of the empty string \u003ccode\u003e''\u003c/code\u003e when the current\nworking directory is returned as a match.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eposix: true\u003c/code\u003e option to return \u003ccode\u003e/\u003c/code\u003e delimited paths, even on\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/e80cb38ae60d6cbff9e75f39032a994858994d35\"\u003e\u003ccode\u003ee80cb38\u003c/code\u003e\u003c/a\u003e 13.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/9cdbbfff75c64fb158c8842d4d0eb3e908676a41\"\u003e\u003ccode\u003e9cdbbff\u003c/code\u003e\u003c/a\u003e revert tsgo, not ready for test coverage correctness yet\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/89c99ba8e276438b8e31ce878b63186e2cd375b4\"\u003e\u003ccode\u003e89c99ba\u003c/code\u003e\u003c/a\u003e use tsgo compiler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/b7275d54f294174607f544acf07cc7ec526b7878\"\u003e\u003ccode\u003eb7275d5\u003c/code\u003e\u003c/a\u003e update deps, expand engines to include node 18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/942e360a669e0c378c0abd261e7d329ca2cee661\"\u003e\u003ccode\u003e942e360\u003c/code\u003e\u003c/a\u003e update workflows, pull taprc out of package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/4a0d53c7531f3f0df97f9e4d26c78489e7f6d7ef\"\u003e\u003ccode\u003e4a0d53c\u003c/code\u003e\u003c/a\u003e update tap for mockImport bugfix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/ef94ad2696c12129628208cf4e38575e7240c1c4\"\u003e\u003ccode\u003eef94ad2\u003c/code\u003e\u003c/a\u003e update tap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/180c2d43cb135f134c0c5446408dc107c79a5a9b\"\u003e\u003ccode\u003e180c2d4\u003c/code\u003e\u003c/a\u003e update docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/37993c86faddcb780458b2d7ae3c2ead7a84bf31\"\u003e\u003ccode\u003e37993c8\u003c/code\u003e\u003c/a\u003e remove stray console.error in test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/03ae4c244cac6331817158b0bc12effd30deeb43\"\u003e\u003ccode\u003e03ae4c2\u003c/code\u003e\u003c/a\u003e 13.0.5\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.4.5...v13.0.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~isaacs\"\u003eisaacs\u003c/a\u003e, a new releaser for glob since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ip-address` from 9.0.5 to 10.7.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/beaugunderson/ip-address/releases\"\u003eip-address's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev10.7.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump js-yaml and brace-expansion in the lockfile by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/226\"\u003ebeaugunderson/ip-address#226\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.7.0...v10.7.1\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.7.0...v10.7.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.7.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd offset() and nextNetwork(), accept prefix-length ip6.arpa names, correct the IPv6 end-address docs by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/225\"\u003ebeaugunderson/ip-address#225\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.6.0...v10.7.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.6.0...v10.7.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.6.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd isGlobal() and pin the classifiers to the IANA special-purpose registries by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/224\"\u003ebeaugunderson/ip-address#224\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.5.1...v10.6.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.5.1...v10.6.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.5.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.5.0...v10.5.1\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.5.0...v10.5.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.5.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eHonor the fromURL graceful-failure contract for non-IPv6 hosts by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/218\"\u003ebeaugunderson/ip-address#218\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCorrect the documentation where it disagreed with the library by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/219\"\u003ebeaugunderson/ip-address#219\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.4.0...v10.5.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.4.0...v10.5.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.4.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd GitHub Actions CI by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/213\"\u003ebeaugunderson/ip-address#213\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eKeep the package loadable on node 12, and enforce it by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/216\"\u003ebeaugunderson/ip-address#216\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eValidate the byte arrays Address6 is given by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/217\"\u003ebeaugunderson/ip-address#217\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.3.1...v10.4.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.3.1...v10.4.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.3.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.3.0...v10.3.1\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.3.0...v10.3.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.3.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.2.2...v10.3.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.2.2...v10.3.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.2.2\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.2.1...v10.2.2\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.2.1...v10.2.2\u003c/a\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/f0c25dfd4fbf7886e45116ba0940207f81401e28\"\u003e\u003ccode\u003ef0c25df\u003c/code\u003e\u003c/a\u003e 10.7.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/8b34a21e0839b37c094066816fb2c2c48a2adcf5\"\u003e\u003ccode\u003e8b34a21\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/13b615554f129bdcdbd10f39b5918fef4bcf96c5\"\u003e\u003ccode\u003e13b6155\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/469ead1231b4cc059f2150c626e1e0c2895c0134\"\u003e\u003ccode\u003e469ead1\u003c/code\u003e\u003c/a\u003e Reject an address longer than the family allows before parsing it\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/1343629d57fea413644a5c9d41ff1e59619f3f28\"\u003e\u003ccode\u003e1343629\u003c/code\u003e\u003c/a\u003e Report an address of the other family as not contained\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/4c2184a0cbd8f913e15a64a2063afc9eef410bd2\"\u003e\u003ccode\u003e4c2184a\u003c/code\u003e\u003c/a\u003e Bump js-yaml and brace-expansion in the lockfile (\u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/issues/226\"\u003e#226\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/2b7cab51c7aec0cb56f820f192a38901614e5a9f\"\u003e\u003ccode\u003e2b7cab5\u003c/code\u003e\u003c/a\u003e 10.7.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/87fae235d95ab0ce18665ae5690f98f65e882d6a\"\u003e\u003ccode\u003e87fae23\u003c/code\u003e\u003c/a\u003e Add offset() and nextNetwork(), accept prefix-length ip6.arpa names, correct ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/42c1f8b37aa0069f7944b097437a9b4afd16e064\"\u003e\u003ccode\u003e42c1f8b\u003c/code\u003e\u003c/a\u003e 10.6.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/fb12583ab920ef6fd199f3378344a07f8eb4dca6\"\u003e\u003ccode\u003efb12583\u003c/code\u003e\u003c/a\u003e Add isGlobal() and pin the classifiers to the IANA special-purpose registries...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v9.0.5...v10.7.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for ip-address since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `minimatch` from 9.0.5 to 10.2.6\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/minimatch/blob/main/changelog.md\"\u003eminimatch's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003echange log\u003c/h1\u003e\n\u003ch2\u003e10.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003ebraceExpandMax\u003c/code\u003e option\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003emagicalBraces\u003c/code\u003e option for \u003ccode\u003eescape\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003emakeRe\u003c/code\u003e when \u003ccode\u003epartial: true\u003c/code\u003e is set.\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003emakeRe\u003c/code\u003e when pattern ends in a final \u003ccode\u003e**\u003c/code\u003e path part.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRequire node 20 or 22 and higher\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e9.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eNo default export, only named exports.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRecursive descent parser for extglob, allowing correct support\nfor arbitrarily nested extglob expressions\u003c/li\u003e\n\u003cli\u003eBump required Node.js version\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eescape()\u003c/code\u003e method\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eunescape()\u003c/code\u003e method\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eMinimatch.hasMagic()\u003c/code\u003e method\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd support for posix character classes in a unicode-aware way.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003ewindowsNoMagicRoot\u003c/code\u003e option\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eoptimizationLevel\u003c/code\u003e configuration option, and revert the\ndefault back to the 6.2 style minimal optimizations, making the\nadvanced transforms introduced in 7.0 opt-in. Also, process\nprovided file paths in the same way in optimizationLevel:2\nmode, so \u003cem\u003emost\u003c/em\u003e things that matched with optimizationLevel 1 or\n0 \u003cem\u003eshould\u003c/em\u003e match with level 2 as well. However, level 1 is the\ndefault, out of an abundance of caution.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/ded1bbd01beca62a5978bc1650ed0a1ccf9039d5\"\u003e\u003ccode\u003eded1bbd\u003c/code\u003e\u003c/a\u003e 10.2.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/0215dfef073cb3ba933cc95911e6a31418f799f8\"\u003e\u003ccode\u003e0215dfe\u003c/code\u003e\u003c/a\u003e update deps and lint\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/10968eae898cac1b6c5feedada0de793b1fed0bf\"\u003e\u003ccode\u003e10968ea\u003c/code\u003e\u003c/a\u003e improve test for .. eating drive letters\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/693c82377d0948401be4c6d3220c9a74132ab112\"\u003e\u003ccode\u003e693c823\u003c/code\u003e\u003c/a\u003e 10.2.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/7953af1fac53267c05e362f036b70de898318faa\"\u003e\u003ccode\u003e7953af1\u003c/code\u003e\u003c/a\u003e do not allow .. to consume drive letter on Windows\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/1caf91893b67586255c68e2e513b14ac66785a24\"\u003e\u003ccode\u003e1caf918\u003c/code\u003e\u003c/a\u003e lint and format\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/7783ed6670442acb4d455b9b164a1b2a33507a45\"\u003e\u003ccode\u003e7783ed6\u003c/code\u003e\u003c/a\u003e ignore docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/6d9b356cd59372de00e1d5f3b8907a3350b9b8e5\"\u003e\u003ccode\u003e6d9b356\u003c/code\u003e\u003c/a\u003e update deps etc\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/c36addb94e33f14254b9ca9017e63ae9c9d80d1d\"\u003e\u003ccode\u003ec36addb\u003c/code\u003e\u003c/a\u003e 10.2.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/26b90027d5ad0c383b5253a4e45d6dc7da282db4\"\u003e\u003ccode\u003e26b9002\u003c/code\u003e\u003c/a\u003e docs: add warning about ReDoS\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/minimatch/compare/v9.0.5...v10.2.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `picomatch` from 4.0.2 to 4.0.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/releases\"\u003epicomatch's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.0.7\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: handle terminal globstars in parenthesized patterns by \u003ca href=\"https://github.com/mrmlnc\"\u003e\u003ccode\u003e@​mrmlnc\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/198\"\u003emicromatch/picomatch#198\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/4.0.6...4.0.7\"\u003ehttps://github.com/micromatch/picomatch/compare/4.0.6...4.0.7\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e4.0.6\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: scan full pattern when tokens are requested by \u003ca href=\"https://github.com/mrmlnc\"\u003e\u003ccode\u003e@​mrmlnc\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/197\"\u003emicromatch/picomatch#197\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: return complete pattern parts from scan by \u003ca href=\"https://github.com/mrmlnc\"\u003e\u003ccode\u003e@​mrmlnc\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/199\"\u003emicromatch/picomatch#199\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/4.0.5...4.0.6\"\u003ehttps://github.com/micromatch/picomatch/compare/4.0.5...4.0.6\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e4.0.5\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: preserve all branches when rewriting risky repeated extglobs by \u003ca href=\"https://github.com/MerlijnW70\"\u003e\u003ccode\u003e@​MerlijnW70\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/182\"\u003emicromatch/picomatch#182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: honor the windows option when matching basenames by \u003ca href=\"https://github.com/MerlijnW70\"\u003e\u003ccode\u003e@​MerlijnW70\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/183\"\u003emicromatch/picomatch#183\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/MerlijnW70\"\u003e\u003ccode\u003e@​MerlijnW70\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/182\"\u003emicromatch/picomatch#182\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/4.0.4...4.0.5\"\u003ehttps://github.com/micromatch/picomatch/compare/4.0.4...4.0.5\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e4.0.4\u003c/h2\u003e\n\u003cp\u003eThis is a security release fixing several security relevant issues.\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/4.0.3...4.0.4\"\u003ehttps://github.com/micromatch/picomatch/compare/4.0.3...4.0.4\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e4.0.3\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: exception when glob pattern contains \u003ccode\u003econstructor\u003c/code\u003e by \u003ca href=\"https://github.com/Jason3S\"\u003e\u003ccode\u003e@​Jason3S\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003emicromatch/picomatch#144\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Jason3S\"\u003e\u003ccode\u003e@​Jason3S\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003emicromatch/picomatch#144\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/4.0.2...4.0.3\"\u003ehttps://github.com/micromatch/picomatch/compare/4.0.2...4.0.3\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/blob/master/CHANGELOG.md\"\u003epicomatch's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.0.7 (2026-08-24)\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFixed terminal globstars in parenthesized patterns (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/142\"\u003e#142\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/e279bd7\"\u003ee279bd7\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.6 (2026-08-24)\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003escan()\u003c/code\u003e now scans the full pattern when tokens are requested, instead of merging the remaining path segments into the final token (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/62\"\u003e#62\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/5f5819d\"\u003e5f5819d\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003escan()\u003c/code\u003e now returns complete pattern parts, including leading and trailing empty segments, and handles nested and escaped parentheses correctly (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/58\"\u003e#58\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/f201165\"\u003ef201165\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.5 (2026-07-02)\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ePreserved every branch when safely rewriting repeated extglobs (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/182\"\u003e#182\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/6289307\"\u003e6289307\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eHonored the \u003ccode\u003ewindows\u003c/code\u003e option when matching basenames (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/183\"\u003e#183\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/ab8bc4d\"\u003eab8bc4d\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.4 (2026-03-23)\u003c/h2\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ePrevented regular expression denial of service (ReDoS) from crafted repeated or nested extglob quantifiers by safely rewriting or treating risky patterns as literals. The new \u003ccode\u003emaxExtglobRecursion\u003c/code\u003e option defaults to \u003ccode\u003e0\u003c/code\u003e; positive numeric values allow limited nesting, while \u003ccode\u003efalse\u003c/code\u003e disables the safeguard (\u003ca href=\"https://github.com/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/5eceecd\"\u003e5eceecd\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003ePrevented inherited object properties from being interpreted as POSIX character classes (\u003ca href=\"https://github.com/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/4516eb5\"\u003e4516eb5\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.3 (2025-07-15)\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAvoided an exception when a glob pattern contains \u003ccode\u003econstructor\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003e#144\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/a9e2dd2\"\u003ea9e2dd2\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/6bb40679c218cefba5d4e9662408c5fdf699a8bb\"\u003e\u003ccode\u003e6bb4067\u003c/code\u003e\u003c/a\u003e 4.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/fdfb1559e4ef761f95c3009c1fd7afceb8830f55\"\u003e\u003ccode\u003efdfb155\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/198\"\u003e#198\u003c/a\u003e from micromatch/issue-142\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/38c6b7aefe50af10cfa978f362120d295d39cfa2\"\u003e\u003ccode\u003e38c6b7a\u003c/code\u003e\u003c/a\u003e 4.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/ada9d3fe9eb5a606bb4f6d87bc5cd7ac87fe63a4\"\u003e\u003ccode\u003eada9d3f\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/199\"\u003e#199\u003c/a\u003e from micromatch/issue-58\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/9b74f6fc70ed828ea4ef7106833a31428b8d7329\"\u003e\u003ccode\u003e9b74f6f\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/197\"\u003e#197\u003c/a\u003e from micromatch/issue-62\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/f2011653e8eaa13bae6dffed7e7016ea8e123485\"\u003e\u003ccode\u003ef201165\u003c/code\u003e\u003c/a\u003e fix: return complete pattern parts from scan\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/e279bd7f34c4f8b5f9d0490cf7810a1f0c2de178\"\u003e\u003ccode\u003ee279bd7\u003c/code\u003e\u003c/a\u003e fix: handle terminal globstars in parenthesized patterns\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/5f5819dd4c0572c87df9a8011dffa65df5b6879f\"\u003e\u003ccode\u003e5f5819d\u003c/code\u003e\u003c/a\u003e fix: scan full pattern when tokens are requested\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/4f41a8edade7a5ab19832f7b40ecce46b288767f\"\u003e\u003ccode\u003e4f41a8e\u003c/code\u003e\u003c/a\u003e 4.0.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/02cfc1bf912c79ea75ef1fe7da2ce4efade39903\"\u003e\u003ccode\u003e02cfc1b\u003c/code\u003e\u003c/a\u003e Update .verb.md and run verb to generate README documentation\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/micromatch/picomatch/compare/4.0.2...4.0.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `sigstore` from 3.1.0 to 4.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/sigstore/sigstore-js/releases\"\u003esigstore's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003esigstore@4.1.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e7845532: Verification of OID certificate extensions\u003c/li\u003e\n\u003cli\u003ef074710: Require inclusion promise in Rekor entry when used as timestamp source\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [b5aa4f1]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [7845532]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f074710]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.2.1\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/verify\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.1\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esigstore@4.1.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eeba6a52: \u003ccode\u003everify(bundle[, payload][, options])\u003c/code\u003e now returns a \u003ccode\u003eSigner\u003c/code\u003e object containing the public key and identity information from the verification.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [cee51c0]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [2042aad]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [018974e]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [dea916f]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [61a4f9e]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [5ffadc0]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [5ffadc0]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [1663b3e]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/tuf\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.1\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/verify\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/sign\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.1.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esigstore@4.0.0\u003c/h2\u003e\n\u003ch3\u003eMajor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e383e200: Drop support for node 18\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [40395f5]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [383e200]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [383e200]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [383e200]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/tuf\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/sign\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/bundle\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/verify\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c1dc7d4778a450787fc72b083f2490ad02b714c6\"\u003e\u003ccode\u003ec1dc7d4\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1607\"\u003e#1607\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/f074710a91ea9260a9ac2142345634579843a3cd\"\u003e\u003ccode\u003ef074710\u003c/code\u003e\u003c/a\u003e reject integratedTime w/o inclusionPromise (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1659\"\u003e#1659\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/7845532f9d17f6f765363dbee82b01bd159fb52b\"\u003e\u003ccode\u003e7845532\u003c/code\u003e\u003c/a\u003e OID certificate extension verification (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1658\"\u003e#1658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/b5aa4f1f8d2db0a9dfa6430fb114d9c2f1c304f7\"\u003e\u003ccode\u003eb5aa4f1\u003c/code\u003e\u003c/a\u003e proper utf-8 encoding in DSSE PAE (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1657\"\u003e#1657\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c7a34e0e9514f4573f8daf980c0987a4120a7183\"\u003e\u003ccode\u003ec7a34e0\u003c/code\u003e\u003c/a\u003e clarify cert ID matching (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1656\"\u003e#1656\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/9858bd7fc535ff01755c8dd5842ef7171b0fafeb\"\u003e\u003ccode\u003e9858bd7\u003c/code\u003e\u003c/a\u003e Upgrade TypeScript to 6.x (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1655\"\u003e#1655\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/8cef20d0069abd3ff03f2afb9ca320a76ddf6d4b\"\u003e\u003ccode\u003e8cef20d\u003c/code\u003e\u003c/a\u003e bump qs from 6.15.1 to 6.15.2 (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1654\"\u003e#1654\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/aca341b56aa561af4d74ad07fda4acd12c417beb\"\u003e\u003ccode\u003eaca341b\u003c/code\u003e\u003c/a\u003e bump \u003ccode\u003e@​sigstore/mock\u003c/code\u003e deps (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1653\"\u003e#1653\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/0855acac119ae9f9dc21413356ce36eade2a51f8\"\u003e\u003ccode\u003e0855aca\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1652\"\u003e#1652\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/44a374d63107b25d11f880a8427e2e27d45965d8\"\u003e\u003ccode\u003e44a374d\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1650\"\u003e#1650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/sigstore/sigstore-js/compare/sigstore@3.1.0...sigstore@4.1.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for sigstore since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/alphaleadership/betternpm/network/alerts).\n\n\u003c/details\u003e\n\n\u003c!-- This is an auto-generated description by cubic. --\u003e\n---\n## Summary by cubic\nUpdates 9 packages in the npm_and_yarn group, mostly transitive dependencies of pacote and sigstore, and bumps the project version to 1.0.1. The update includes security fixes for ReDoS vulnerabilities in pacote, brace-expansion, and picomatch, plus decompression guards in tar.\n\n**Dependencies**\n- Security fixes: ReDoS in pacote and brace-expansion, CVEs in picomatch, decompression guard in tar.\n- Major version bumps: tar 6→7, glob 10→13, sigstore 3→4, minimatch 9→10, brace-expansion 2→5.\n- glob 13 moves the CLI to a separate `glob-bin` package (only relevant if used directly).\n\n**Migration**\n- Several updated packages now require Node 20.17+ or 22.9+; the runtime must meet this.\n\n\u003csup\u003eWritten for commit 90ea6aaed97a74c8ca873209f8066939fce162ac. Summary will update on new commits.\u003c/sup\u003e\n\n\u003ca href=\"https://cubic.dev/pr/alphaleadership/betternpm/pull/1?utm_source=github\" target=\"_blank\" rel=\"noopener noreferrer\" data-no-image-dialog=\"true\"\u003e\u003cpicture\u003e\u003csource media=\"(prefers-color-scheme: dark)\" srcset=\"https://www.cubic.dev/buttons/review-in-cubic-dark.svg\"\u003e\u003csource media=\"(prefers-color-scheme: light)\" srcset=\"https://www.cubic.dev/buttons/review-in-cubic-light.svg\"\u003e\u003cimg alt=\"Review in cubic\" src=\"https://www.cubic.dev/buttons/review-in-cubic-dark.svg\"\u003e\u003c/picture\u003e\u003c/a\u003e\n\n\u003c!-- End of auto-generated description by cubic. --\u003e\n\n","html_url":"https://github.com/alphaleadership/betternpm/pull/1","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/alphaleadership%2Fbetternpm/issues/1","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/1/packages"},{"uuid":"5462779336","node_id":"PR_kwDOTdVhtc8AAAABDne3Ow","number":31,"state":"closed","title":"chore(deps): bump glob from 10.4.5 to 10.5.0 in /app-e2e","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-09-16T03:51:19.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-15T13:49:51.000Z","updated_at":"2026-09-16T03:51:21.000Z","time_to_close":50488,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"glob","old_version":"10.4.5","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"}],"path":"/app-e2e","ecosystem":"npm"},"body":"Bumps [glob](https://github.com/isaacs/node-glob) from 10.4.5 to 10.5.0.\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.4.5...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n","html_url":"https://github.com/zhouqs666/shared-todolist/pull/31","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/zhouqs666%2Fshared-todolist/issues/31","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/31/packages"},{"uuid":"5462196925","node_id":"PR_kwDOOR2sic8AAAABDnBIFQ","number":8,"state":"closed","title":"build(deps): bump the website-dependencies group across 1 directory with 22 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-15T19:41:34.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-15T12:58:17.000Z","updated_at":"2026-09-15T19:41:44.000Z","time_to_close":24197,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps): bump","group_name":"website-dependencies","update_count":22,"packages":[{"name":"i18next","old_version":"23.16.8","new_version":"26.4.2","repository_url":"https://github.com/i18next/i18next"},{"name":"lucide-react","old_version":"0.501.0","new_version":"1.45.0","repository_url":"https://github.com/lucide-icons/lucide"},{"name":"react","old_version":"18.3.1","new_version":"19.3.0","repository_url":"https://github.com/react/react"},{"name":"@types/react","old_version":"18.3.31","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"react-dom","old_version":"18.3.1","new_version":"19.3.0","repository_url":"https://github.com/react/react"},{"name":"@types/react-dom","old_version":"18.3.7","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"react-i18next","old_version":"15.7.4","new_version":"17.0.13","repository_url":"https://github.com/i18next/react-i18next"},{"name":"simple-icons","old_version":"10.4.0","new_version":"16.30.0","repository_url":"https://github.com/simple-icons/simple-icons"},{"name":"@eslint/js","old_version":"8.57.1","new_version":"10.0.1","repository_url":"https://github.com/eslint/eslint"},{"name":"@typescript-eslint/eslint-plugin","old_version":"7.18.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/parser","old_version":"7.18.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@vitejs/plugin-react","old_version":"4.7.0","new_version":"6.1.1","repository_url":"https://github.com/vitejs/vite-plugin-react"},{"name":"autoprefixer","old_version":"10.5.5","new_version":"10.5.6","repository_url":"https://github.com/postcss/autoprefixer"},{"name":"eslint","old_version":"8.57.1","new_version":"10.10.0","repository_url":"https://github.com/eslint/eslint"},{"name":"eslint-config-prettier","old_version":"9.1.2","new_version":"10.1.8","repository_url":"https://github.com/prettier/eslint-config-prettier"},{"name":"eslint-plugin-react-hooks","old_version":"4.6.2","new_version":"7.1.1","repository_url":"https://github.com/facebook/react"},{"name":"glob","old_version":"10.5.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"},{"name":"globals","old_version":"14.0.0","new_version":"17.12.0","repository_url":"https://github.com/sindresorhus/globals"},{"name":"prettier-plugin-tailwindcss","old_version":"0.5.14","new_version":"0.8.1","repository_url":"https://github.com/tailwindlabs/prettier-plugin-tailwindcss"},{"name":"rimraf","old_version":"5.0.10","new_version":"6.1.3","repository_url":"https://github.com/isaacs/rimraf"},{"name":"tailwindcss","old_version":"3.4.19","new_version":"4.3.3","repository_url":"https://github.com/tailwindlabs/tailwindcss"},{"name":"vite","old_version":"6.4.3","new_version":"8.3.0","repository_url":"https://github.com/vitejs/vite"}],"path":null,"ecosystem":"npm"},"body":"Bumps the website-dependencies group with 22 updates in the /website directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [i18next](https://github.com/i18next/i18next) | `23.16.8` | `26.4.2` |\n| [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react) | `0.501.0` | `1.45.0` |\n| [react](https://github.com/react/react/tree/HEAD/packages/react) | `18.3.1` | `19.3.0` |\n| [@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react) | `18.3.31` | `19.3.0` |\n| [react-dom](https://github.com/react/react/tree/HEAD/packages/react-dom) | `18.3.1` | `19.3.0` |\n| [@types/react-dom](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-dom) | `18.3.7` | `19.3.0` |\n| [react-i18next](https://github.com/i18next/react-i18next) | `15.7.4` | `17.0.13` |\n| [simple-icons](https://github.com/simple-icons/simple-icons) | `10.4.0` | `16.30.0` |\n| [@eslint/js](https://github.com/eslint/eslint/tree/HEAD/packages/js) | `8.57.1` | `10.0.1` |\n| [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) | `7.18.0` | `8.70.0` |\n| [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) | `7.18.0` | `8.70.0` |\n| [@vitejs/plugin-react](https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react) | `4.7.0` | `6.1.1` |\n| [autoprefixer](https://github.com/postcss/autoprefixer) | `10.5.5` | `10.5.6` |\n| [eslint](https://github.com/eslint/eslint) | `8.57.1` | `10.10.0` |\n| [eslint-config-prettier](https://github.com/prettier/eslint-config-prettier) | `9.1.2` | `10.1.8` |\n| [eslint-plugin-react-hooks](https://github.com/facebook/react/tree/HEAD/packages/eslint-plugin-react-hooks) | `4.6.2` | `7.1.1` |\n| [glob](https://github.com/isaacs/node-glob) | `10.5.0` | `13.0.6` |\n| [globals](https://github.com/sindresorhus/globals) | `14.0.0` | `17.12.0` |\n| [prettier-plugin-tailwindcss](https://github.com/tailwindlabs/prettier-plugin-tailwindcss) | `0.5.14` | `0.8.1` |\n| [rimraf](https://github.com/isaacs/rimraf) | `5.0.10` | `6.1.3` |\n| [tailwindcss](https://github.com/tailwindlabs/tailwindcss/tree/HEAD/packages/tailwindcss) | `3.4.19` | `4.3.3` |\n| [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) | `6.4.3` | `8.3.0` |\n\n\nUpdates `i18next` from 23.16.8 to 26.4.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/i18next/i18next/releases\"\u003ei18next's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev26.4.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: \u003ccode\u003e$\u0026amp;\u003c/code\u003e, \u003ccode\u003e$`\u003c/code\u003e, \u003ccode\u003e$'\u003c/code\u003e and \u003ccode\u003e$$\u003c/code\u003e inside a nested value (\u003ccode\u003e$t(key)\u003c/code\u003e) now stay literal. \u003ccode\u003enest()\u003c/code\u003e handed the resolved value straight to \u003ccode\u003eString.replace\u003c/code\u003e as the replacement argument, so those sequences were read as replacement patterns: \u003ccode\u003e$\u0026amp;\u003c/code\u003e re-inserted the \u003ccode\u003e$t(...)\u003c/code\u003e match, \u003ccode\u003e$`\u003c/code\u003e / \u003ccode\u003e$'\u003c/code\u003e inserted the text before / after it, and \u003ccode\u003e$$\u003c/code\u003e collapsed to \u003ccode\u003e$\u003c/code\u003e. Through \u003ccode\u003et()\u003c/code\u003e the \u003ccode\u003e$\u0026amp;\u003c/code\u003e case was worse than a wrong string: the nested lookup resets the shared nesting regexp, so the re-inserted \u003ccode\u003e$t(...)\u003c/code\u003e was matched again on every pass and \u003ccode\u003et()\u003c/code\u003e never returned — also under the default \u003ccode\u003eescapeValue: true\u003c/code\u003e when the value arrives via a variable forwarded through nesting options (\u003ccode\u003e$t(key, { \u0026quot;name\u0026quot;: \u0026quot;{{name}}\u0026quot; })\u003c/code\u003e with a name containing \u003ccode\u003e$\u0026amp;\u003c/code\u003e). The value is now \u003ccode\u003e$\u003c/code\u003e-escaped at the \u003ccode\u003eString.replace\u003c/code\u003e call, the same guard \u003ccode\u003einterpolate()\u003c/code\u003e already has, and a non-string value returned by a formatter in the nesting chain (\u003ccode\u003e$t(key, myFormat)\u003c/code\u003e) is stringified before that. Nested values are still not HTML-escaped (\u003ca href=\"https://redirect.github.com/i18next/i18next/issues/854\"\u003e#854\u003c/a\u003e). Thanks \u003ca href=\"https://github.com/mahirhir\"\u003e\u003ccode\u003e@​mahirhir\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2447\"\u003e#2447\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.4.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): the selector-form \u003ccode\u003ekeyPrefix\u003c/code\u003e overload of \u003ccode\u003egetFixedT()\u003c/code\u003e is now available under \u003ccode\u003eenableSelector: 'strict'\u003c/code\u003e. Its constraint was gated on \u003ccode\u003etrue | 'optimize'\u003c/code\u003e only, so under \u003ccode\u003e'strict'\u003c/code\u003e it collapsed to \u003ccode\u003enever\u003c/code\u003e, the overload dropped out, and the returned \u003ccode\u003et\u003c/code\u003e silently lost its \u003ccode\u003ekeyPrefix\u003c/code\u003e scope (\u003ccode\u003et(($) =\u0026gt; $.deep)\u003c/code\u003e failed with \u003ccode\u003eProperty 'deep' does not exist on type '{}'\u003c/code\u003e). The same call already typechecked under \u003ccode\u003etrue\u003c/code\u003e and \u003ccode\u003e'optimize'\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/hovelopin\"\u003e\u003ccode\u003e@​hovelopin\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2446\"\u003e#2446\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.4.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eperf: cache \u003ccode\u003etoResolveHierarchy\u003c/code\u003e results per \u003ccode\u003e(code, fallbackCode)\u003c/code\u003e pair. The hierarchy resolver runs on every \u003ccode\u003et()\u003c/code\u003e call and calls \u003ccode\u003eIntl.getCanonicalLocales\u003c/code\u003e multiple times, which showed up prominently when profiling render-heavy UIs (e.g. virtualized data grids); with the cache the per-call cost drops from ~886 ns to ~41 ns. The cache is invalidated automatically when \u003ccode\u003eoptions.fallbackLng\u003c/code\u003e changes (reassignment or in-place array mutation); if you mutate other resolution-relevant options at runtime (\u003ccode\u003eload\u003c/code\u003e, \u003ccode\u003elowerCaseLng\u003c/code\u003e, \u003ccode\u003ecleanCode\u003c/code\u003e, \u003ccode\u003enonExplicitSupportedLngs\u003c/code\u003e), call \u003ccode\u003ei18next.services.languageUtils.clearCache()\u003c/code\u003e afterwards. Function-valued \u003ccode\u003efallbackLng\u003c/code\u003e and per-call array/object \u003ccode\u003efallbackLng\u003c/code\u003e options are never cached, so dynamic fallbacks keep working as before. Thanks \u003ca href=\"https://github.com/equaterina\"\u003e\u003ccode\u003e@​equaterina\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2444\"\u003e#2444\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003echore: update all devDependencies (Babel stays on 7.x until \u003ccode\u003e@rollup/plugin-babel\u003c/code\u003e supports 8, eslint on 9.x for neostandard). Removed the unused \u003ccode\u003ecoveralls\u003c/code\u003e package (CI uses the Coveralls GitHub Action) and replaced \u003ccode\u003esinon\u003c/code\u003e with \u003ccode\u003enise\u003c/code\u003e + \u003ccode\u003evitest.spyOn\u003c/code\u003e in the v1 compatibility tests, which resolves all open \u003ccode\u003enpm audit\u003c/code\u003e findings (0 vulnerabilities) and should close the dependabot alerts on the lockfile.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.3.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: allow TypeScript 7 in the optional \u003ccode\u003etypescript\u003c/code\u003e peer dependency range (\u003ccode\u003e^5 || ^6 || ^7\u003c/code\u003e). With \u003ccode\u003etypescript@7.0.2\u003c/code\u003e in a project, \u003ccode\u003enpm install\u003c/code\u003e failed with an \u003ccode\u003eERESOLVE\u003c/code\u003e peer conflict. The published types are TS7-compatible as-is: every \u003ccode\u003etest/typescript\u003c/code\u003e suite produces identical results under 6.0 and 7.0.2. Reported in \u003ca href=\"https://redirect.github.com/i18next/react-i18next/issues/1927\"\u003ereact-i18next#1927\u003c/a\u003e, thanks \u003ca href=\"https://github.com/andikapradanaarif\"\u003e\u003ccode\u003e@​andikapradanaarif\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.3.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: \u003ccode\u003e$t()\u003c/code\u003e nesting options blocks that span multiple lines are now parsed. \u003ccode\u003enest()\u003c/code\u003e decided where the nested key ends by testing \u003ccode\u003ematch[1]\u003c/code\u003e with \u003ccode\u003e/{.*}/\u003c/code\u003e, whose dot does not cross line breaks — so a \u003ccode\u003e$t(key, { ... })\u003c/code\u003e options object containing a newline was treated as having no options, mis-split as formatters, and the nested lookup ran without its options (placeholders stayed unresolved). The nesting regexp itself already matches newlines inside \u003ccode\u003e$t(...)\u003c/code\u003e; adding the \u003ccode\u003es\u003c/code\u003e (dotAll) flag makes multiline options behave like the single-line form. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2440\"\u003e#2440\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003egetUsedParamsDetails\u003c/code\u003e (the \u003ccode\u003ereturnDetails: true\u003c/code\u003e path) no longer mutates the passed \u003ccode\u003ereplace\u003c/code\u003e object. It wrote \u003ccode\u003ecount\u003c/code\u003e straight onto \u003ccode\u003eoptions.replace\u003c/code\u003e so the returned \u003ccode\u003eusedParams\u003c/code\u003e would include it — a caller reusing one \u003ccode\u003ereplace\u003c/code\u003e object across \u003ccode\u003et()\u003c/code\u003e calls then carried a stale \u003ccode\u003ecount\u003c/code\u003e into later interpolations (e.g. a previous call's \u003ccode\u003ecount: 5\u003c/code\u003e rendered instead of the current call's value). The details are now built from a copy; \u003ccode\u003eusedParams\u003c/code\u003e still includes \u003ccode\u003ecount\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2441\"\u003e#2441\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003efix: with the default \u003ccode\u003eskipOnVariables: true\u003c/code\u003e + \u003ccode\u003eescapeValue: true\u003c/code\u003e, a \u003ccode\u003e{{placeholder}}\u003c/code\u003e carried inside an interpolated value now stays literal even when the value contains escapable characters. The skip logic advanced the regex \u003ccode\u003elastIndex\u003c/code\u003e by the raw value length, but the escaped text written into the string is longer, so \u003ccode\u003elastIndex\u003c/code\u003e landed inside the inserted value and a trailing \u003ccode\u003e{{placeholder}}\u003c/code\u003e in it got interpolated — leaking another in-scope variable that should have stayed literal (values without escapable characters were already skipped correctly). The advance now uses the escaped length that is actually written, and the regex-safe \u003ccode\u003e$\u003c/code\u003e-doubling is applied only at the \u003ccode\u003eString.replace\u003c/code\u003e call so it can't distort the length arithmetic. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2442\"\u003e#2442\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.3.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(security): \u003ccode\u003edeepExtend\u003c/code\u003e (used by \u003ccode\u003eaddResourceBundle(..., deep, overwrite)\u003c/code\u003e) no longer recurses into inherited properties. It checked key existence with the \u003ccode\u003ein\u003c/code\u003e operator, which walks the prototype chain, so a source key matching an inherited built-in (e.g. \u003ccode\u003ehasOwnProperty\u003c/code\u003e, \u003ccode\u003etoString\u003c/code\u003e) caused recursion into the shared \u003ccode\u003eObject.prototype\u003c/code\u003e function and, with \u003ccode\u003eoverwrite: true\u003c/code\u003e, could overwrite e.g. \u003ccode\u003eObject.prototype.hasOwnProperty.call\u003c/code\u003e with a non-callable value — corrupting a shared built-in process-wide (DoS). Existence is now checked with \u003ccode\u003eObject.prototype.hasOwnProperty.call\u003c/code\u003e, so such keys are copied as plain own data instead. This complements the existing \u003ccode\u003e__proto__\u003c/code\u003e/\u003ccode\u003econstructor\u003c/code\u003e guard and is also strictly more correct for an own-property merge. Only affects applications that pass attacker-controlled data with \u003ccode\u003edeep: true\u003c/code\u003e and \u003ccode\u003eoverwrite: true\u003c/code\u003e; no standard backend/integration does this. Distinct from CVE-2026-48713 / CVE-2026-48714 (different packages, \u003ccode\u003esetPath\u003c/code\u003e mechanism). Thanks to zx (Jace) for the responsible disclosure.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.3.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): selector \u003ccode\u003et($ =\u0026gt; $.arr, { returnObjects: true, context })\u003c/code\u003e on a JSON array of \u003cstrong\u003eheterogeneous\u003c/strong\u003e objects now preserves each element's full shape (e.g. \u003ccode\u003e{ transKey1: string; transKey2: string }[]\u003c/code\u003e) instead of collapsing to a union of partial element types. Two type-level causes: (1) \u003ccode\u003eFilterKeys\u003c/code\u003e evaluated the whole array element type at once, so \u003ccode\u003ekeyof (A | B)\u003c/code\u003e only saw the keys common to every element — it now distributes over the object union and filters each element independently; (2) when TypeScript merges mismatched array element types it injects phantom optional \u003ccode\u003eundefined\u003c/code\u003e keys (e.g. \u003ccode\u003etransKey1_withContext?: undefined\u003c/code\u003e on elements that don't define it), which the context-detection helpers mistook for real context variants — they now skip keys typed as \u003ccode\u003eundefined\u003c/code\u003e. Also adds a dedicated \u003ccode\u003econtext\u003c/code\u003e + \u003ccode\u003ereturnObjects: true\u003c/code\u003e selector overload using \u003ccode\u003econst Fn\u003c/code\u003e + \u003ccode\u003eReturnType\u0026lt;Fn\u0026gt;\u003c/code\u003e, so \u003ccode\u003eTarget\u003c/code\u003e is no longer collapsed to \u003ccode\u003eunknown\u003c/code\u003e via \u003ccode\u003eApplyTarget\u003c/code\u003e. Resolves Problem 1 of \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2398\"\u003e#2398\u003c/a\u003e (Problem 2 was already fixed on master). Thanks \u003ca href=\"https://github.com/sauravgupta-dotcom\"\u003e\u003ccode\u003e@​sauravgupta-dotcom\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2438\"\u003e#2438\u003c/a\u003e). Fixes \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2398\"\u003e#2398\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.3.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: chained formatters with a parenthesised option that contains the format separator (e.g. \u003ccode\u003ejoin(separator: ', ')\u003c/code\u003e) now work at \u003cstrong\u003eany\u003c/strong\u003e position in the chain, not just first. Previously the comma-in-parens reassembly only repaired \u003ccode\u003eformats[0]\u003c/code\u003e, so \u003ccode\u003e{{v, uppercase, join(separator: ', ')}}\u003c/code\u003e split the \u003ccode\u003ejoin(...)\u003c/code\u003e option on the inner comma and never rejoined it, producing corrupt output. Replaced the first-position-only repair with a position-independent pass that re-joins fragments until each open paren closes. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2437\"\u003e#2437\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.3.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): \u003ccode\u003et()\u003c/code\u003e with a \u003ccode\u003ekeyPrefix\u003c/code\u003e no longer pollutes its return type with sibling keys' values. A regression in 26.3.0 — the \u003ccode\u003e[Res] extends [never]\u003c/code\u003e guards added to \u003ccode\u003eKeysBuilderWithReturnObjects\u003c/code\u003e / \u003ccode\u003eKeysBuilderWithoutReturnObjects\u003c/code\u003e turned the builders into deferred conditional types, so \u003ccode\u003eKeyPrefix\u0026lt;Ns\u0026gt;\u003c/code\u003e stopped resolving to a literal union and \u003ccode\u003ekeyPrefix\u003c/code\u003e inference widened to the whole namespace. Symptom: \u003ccode\u003euseTranslation(ns, { keyPrefix: 'a.b' })\u003c/code\u003e then \u003ccode\u003et('title')\u003c/code\u003e would resolve to \u003ccode\u003e'\u0026lt;a.b\u0026gt;.title' | '\u0026lt;other.path\u0026gt;.title' | ...\u003c/code\u003e instead of just the scoped value. Affected every \u003ccode\u003ereact-i18next\u003c/code\u003e user using \u003ccode\u003ekeyPrefix\u003c/code\u003e. Restored to the eager 26.2.0 form. The same-namespace conflict handling from \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2434\"\u003e#2434\u003c/a\u003e still works via \u003ccode\u003e_DropConflictKeys\u003c/code\u003e at the merge layer (in \u003ccode\u003eoptions.d.ts\u003c/code\u003e). Thanks \u003ca href=\"https://github.com/aaronrosenthal\"\u003e\u003ccode\u003e@​aaronrosenthal\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2436\"\u003e#2436\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.3.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(types): introduce \u003ccode\u003eResourceNamespaceMap\u003c/code\u003e — a separate mergeable augmentation surface for namespace resource types, designed for monorepos where multiple packages each want to contribute their own namespaces. Previously, every package had to coordinate on a single \u003ccode\u003eCustomTypeOptions.resources\u003c/code\u003e declaration (or fall back to typing dependency namespaces as \u003ccode\u003eany\u003c/code\u003e) because \u003ccode\u003eresources\u003c/code\u003e is a single property of an interface and TypeScript reports TS2717 when two declarations of the same property disagree. The new interface merges naturally across \u003ccode\u003edeclare module 'i18next'\u003c/code\u003e blocks, so each package can ship its own \u003ccode\u003ei18next.d.ts\u003c/code\u003e independently. Per-property merge handles same-namespace contributions from multiple packages, and same-key/different-literal conflicts are silently dropped to avoid poisoning \u003ccode\u003et()\u003c/code\u003e overload resolution. Fully backwards-compatible — existing \u003ccode\u003eCustomTypeOptions.resources\u003c/code\u003e augmentations continue to work, and both surfaces can coexist. Scalar options (\u003ccode\u003edefaultNS\u003c/code\u003e, \u003ccode\u003ereturnNull\u003c/code\u003e, \u003ccode\u003eenableSelector\u003c/code\u003e, etc.) still belong on \u003ccode\u003eCustomTypeOptions\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/sh3xu\"\u003e\u003ccode\u003e@​sh3xu\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2434\"\u003e#2434\u003c/a\u003e). Fixes \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2409\"\u003e#2409\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.2.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(types): new \u003ccode\u003eparseInterpolation\u003c/code\u003e TypeOption (default \u003ccode\u003etrue\u003c/code\u003e). When set to \u003ccode\u003efalse\u003c/code\u003e in \u003ccode\u003eCustomTypeOptions\u003c/code\u003e, the type-level extractor stops parsing translation strings for \u003ccode\u003e{{variable}}\u003c/code\u003e patterns. Required by \u003ccode\u003ei18next-icu\u003c/code\u003e users — the default extractor mistakes ICU MessageFormat nested-brace plurals like \u003ccode\u003e{count, plural, one {{count} row} other {{count} rows}}\u003c/code\u003e for an interpolation block and demands a phantom variable name. The flag is type-only; runtime interpolation is governed by \u003ccode\u003eInterpolationOptions\u003c/code\u003e and is unaffected. Fixes \u003ca href=\"https://redirect.github.com/i18next/i18next-icu/issues/85\"\u003ei18next-icu#85\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003efix(types): expose \u003ccode\u003eenableSelector\u003c/code\u003e on \u003ccode\u003eInitOptions\u003c/code\u003e so \u003ccode\u003ei18next.init({ enableSelector: 'strict' })\u003c/code\u003e typechecks without a module augmentation. The runtime already reads \u003ccode\u003eopts?.enableSelector\u003c/code\u003e from init options; this lands the matching type declaration next to the other selector-resolution knobs. Accepts \u003ccode\u003efalse | true | 'optimize' | 'strict'\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/Faithfinder\"\u003e\u003ccode\u003e@​Faithfinder\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2431\"\u003e#2431\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: \u003ccode\u003eenableSelector: 'strict'\u003c/code\u003e (TypeOptions + runtime option). Opt-in mode that drops the flattened-primary form from \u003ccode\u003eNsResource\u003c/code\u003e at the type level — every namespace (primary included) is exposed only under its own key on \u003ccode\u003e$\u003c/code\u003e, uniformly across single- and multi-ns hooks. At runtime, a leading selector path segment matching the scope's namespace list is always rewritten as a namespace prefix, including the primary. Eliminates the silent-miss surface area where \u003ccode\u003et($ =\u0026gt; $.primary.foo)\u003c/code\u003e typechecks but doesn't resolve under the default mode (see \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2429\"\u003e#2429\u003c/a\u003e). Backward-compatible: default \u003ccode\u003eenableSelector: false | true | 'optimize'\u003c/code\u003e behavior is unchanged. Note: strict mode is incompatible with the \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2405\"\u003e#2405\u003c/a\u003e pattern (keys whose names match sibling namespaces) — those users should stay on default mode.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.0.10\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: \u003ccode\u003egetFixedT\u003c/code\u003e accepts a fourth optional \u003ccode\u003efixedOpts\u003c/code\u003e argument carrying \u003ccode\u003escopeNs\u003c/code\u003e — the full namespace list the bound \u003ccode\u003et\u003c/code\u003e was created for. The selector API uses \u003ccode\u003escopeNs\u003c/code\u003e to detect when a path's first segment is a namespace prefix, \u003cstrong\u003ewithout\u003c/strong\u003e changing resolution scope. Resolution still uses the bound \u003ccode\u003ens\u003c/code\u003e (a single primary string in the typical react-i18next setup), so plain \u003ccode\u003et('key')\u003c/code\u003e lookups stay isolated to the primary namespace exactly as before — only \u003ccode\u003et($ =\u0026gt; $.secondaryNs.foo)\u003c/code\u003e selectors now route correctly under \u003ccode\u003euseTranslation([nsA, nsB])\u003c/code\u003e. Fixes the runtime side of \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2429\"\u003e#2429\u003c/a\u003e for the \u003ccode\u003ereact-i18next\u003c/code\u003e default-\u003ccode\u003ensMode\u003c/code\u003e case. The 4th argument is opt-in: existing 3-arg \u003ccode\u003egetFixedT(lng, ns, keyPrefix)\u003c/code\u003e callers see no behavior change.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.0.9\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): unformatted interpolation values are now typed as \u003ccode\u003estring | number\u003c/code\u003e (was \u003ccode\u003estring\u003c/code\u003e). i18next stringifies values at runtime, so requiring callers to wrap numbers in \u003ccode\u003eString(...)\u003c/code\u003e for plain \u003ccode\u003e{{var}}\u003c/code\u003e placeholders was unnecessary friction — and could mask the real problem when a non-string value was passed alongside multiple interpolation slots (the \u003ccode\u003et()\u003c/code\u003e overload resolution would fall through to the 3-arg form and report a confusing \u0026quot;not assignable to string\u0026quot; error against the options object). Typed format specifiers like \u003ccode\u003e{{x, number}}\u003c/code\u003e, \u003ccode\u003e{{x, currency}}\u003c/code\u003e, \u003ccode\u003e{{x, datetime}}\u003c/code\u003e, etc. keep their precise types; this only relaxes the no-format default. The \u003ccode\u003ecount\u003c/code\u003e variable remains \u003ccode\u003enumber\u003c/code\u003e-only\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.0.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): restore the pre-v25.10.4 \u003ccode\u003eExistsFunction\u003c/code\u003e shape so plain arrow functions can again be assigned to \u003ccode\u003eExistsFunction\u003c/code\u003e-typed variables (TypeScript cannot infer type predicates through multi-overload assignment). Direct \u003ccode\u003ei18next.exists(key)\u003c/code\u003e calls still narrow \u003ccode\u003ekey\u003c/code\u003e to \u003ccode\u003eSelectorKey\u003c/code\u003e — the predicate is now declared inline on \u003ccode\u003ei18n.exists\u003c/code\u003e. Custom wrappers that want the narrowing can type themselves as \u003ccode\u003etypeof i18next.exists\u003c/code\u003e \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2425\"\u003e2425\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.0.7\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/i18next/i18next/blob/master/CHANGELOG.md\"\u003ei18next's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e26.4.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: \u003ccode\u003e$\u0026amp;\u003c/code\u003e, \u003ccode\u003e$`\u003c/code\u003e, \u003ccode\u003e$'\u003c/code\u003e and \u003ccode\u003e$$\u003c/code\u003e inside a nested value (\u003ccode\u003e$t(key)\u003c/code\u003e) now stay literal. \u003ccode\u003enest()\u003c/code\u003e handed the resolved value straight to \u003ccode\u003eString.replace\u003c/code\u003e as the replacement argument, so those sequences were read as replacement patterns: \u003ccode\u003e$\u0026amp;\u003c/code\u003e re-inserted the \u003ccode\u003e$t(...)\u003c/code\u003e match, \u003ccode\u003e$`\u003c/code\u003e / \u003ccode\u003e$'\u003c/code\u003e inserted the text before / after it, and \u003ccode\u003e$$\u003c/code\u003e collapsed to \u003ccode\u003e$\u003c/code\u003e. Through \u003ccode\u003et()\u003c/code\u003e the \u003ccode\u003e$\u0026amp;\u003c/code\u003e case was worse than a wrong string: the nested lookup resets the shared nesting regexp, so the re-inserted \u003ccode\u003e$t(...)\u003c/code\u003e was matched again on every pass and \u003ccode\u003et()\u003c/code\u003e never returned — also under the default \u003ccode\u003eescapeValue: true\u003c/code\u003e when the value arrives via a variable forwarded through nesting options (\u003ccode\u003e$t(key, { \u0026quot;name\u0026quot;: \u0026quot;{{name}}\u0026quot; })\u003c/code\u003e with a name containing \u003ccode\u003e$\u0026amp;\u003c/code\u003e). The value is now \u003ccode\u003e$\u003c/code\u003e-escaped at the \u003ccode\u003eString.replace\u003c/code\u003e call, the same guard \u003ccode\u003einterpolate()\u003c/code\u003e already has, and a non-string value returned by a formatter in the nesting chain (\u003ccode\u003e$t(key, myFormat)\u003c/code\u003e) is stringified before that. Nested values are still not HTML-escaped (\u003ca href=\"https://redirect.github.com/i18next/i18next/issues/854\"\u003e#854\u003c/a\u003e). Thanks \u003ca href=\"https://github.com/mahirhir\"\u003e\u003ccode\u003e@​mahirhir\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2447\"\u003e#2447\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.4.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): the selector-form \u003ccode\u003ekeyPrefix\u003c/code\u003e overload of \u003ccode\u003egetFixedT()\u003c/code\u003e is now available under \u003ccode\u003eenableSelector: 'strict'\u003c/code\u003e. Its constraint was gated on \u003ccode\u003etrue | 'optimize'\u003c/code\u003e only, so under \u003ccode\u003e'strict'\u003c/code\u003e it collapsed to \u003ccode\u003enever\u003c/code\u003e, the overload dropped out, and the returned \u003ccode\u003et\u003c/code\u003e silently lost its \u003ccode\u003ekeyPrefix\u003c/code\u003e scope (\u003ccode\u003et(($) =\u0026gt; $.deep)\u003c/code\u003e failed with \u003ccode\u003eProperty 'deep' does not exist on type '{}'\u003c/code\u003e). The same call already typechecked under \u003ccode\u003etrue\u003c/code\u003e and \u003ccode\u003e'optimize'\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/hovelopin\"\u003e\u003ccode\u003e@​hovelopin\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2446\"\u003e#2446\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.4.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eperf: cache \u003ccode\u003etoResolveHierarchy\u003c/code\u003e results per \u003ccode\u003e(code, fallbackCode)\u003c/code\u003e pair. The hierarchy resolver runs on every \u003ccode\u003et()\u003c/code\u003e call and calls \u003ccode\u003eIntl.getCanonicalLocales\u003c/code\u003e multiple times, which showed up prominently when profiling render-heavy UIs (e.g. virtualized data grids); with the cache the per-call cost drops from ~886 ns to ~41 ns. The cache is invalidated automatically when \u003ccode\u003eoptions.fallbackLng\u003c/code\u003e changes (reassignment or in-place array mutation); if you mutate other resolution-relevant options at runtime (\u003ccode\u003eload\u003c/code\u003e, \u003ccode\u003elowerCaseLng\u003c/code\u003e, \u003ccode\u003ecleanCode\u003c/code\u003e, \u003ccode\u003enonExplicitSupportedLngs\u003c/code\u003e), call \u003ccode\u003ei18next.services.languageUtils.clearCache()\u003c/code\u003e afterwards. Function-valued \u003ccode\u003efallbackLng\u003c/code\u003e and per-call array/object \u003ccode\u003efallbackLng\u003c/code\u003e options are never cached, so dynamic fallbacks keep working as before. Thanks \u003ca href=\"https://github.com/equaterina\"\u003e\u003ccode\u003e@​equaterina\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2444\"\u003e#2444\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003echore: update all devDependencies (Babel stays on 7.x until \u003ccode\u003e@rollup/plugin-babel\u003c/code\u003e supports 8, eslint on 9.x for neostandard). Removed the unused \u003ccode\u003ecoveralls\u003c/code\u003e package (CI uses the Coveralls GitHub Action) and replaced \u003ccode\u003esinon\u003c/code\u003e with \u003ccode\u003enise\u003c/code\u003e + \u003ccode\u003evitest.spyOn\u003c/code\u003e in the v1 compatibility tests, which resolves all open \u003ccode\u003enpm audit\u003c/code\u003e findings (0 vulnerabilities) and should close the dependabot alerts on the lockfile.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.3.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: allow TypeScript 7 in the optional \u003ccode\u003etypescript\u003c/code\u003e peer dependency range (\u003ccode\u003e^5 || ^6 || ^7\u003c/code\u003e). With \u003ccode\u003etypescript@7.0.2\u003c/code\u003e in a project, \u003ccode\u003enpm install\u003c/code\u003e failed with an \u003ccode\u003eERESOLVE\u003c/code\u003e peer conflict. The published types are TS7-compatible as-is: every \u003ccode\u003etest/typescript\u003c/code\u003e suite produces identical results under 6.0 and 7.0.2. Reported in \u003ca href=\"https://redirect.github.com/i18next/react-i18next/issues/1927\"\u003ereact-i18next#1927\u003c/a\u003e, thanks \u003ca href=\"https://github.com/andikapradanaarif\"\u003e\u003ccode\u003e@​andikapradanaarif\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.3.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: \u003ccode\u003e$t()\u003c/code\u003e nesting options blocks that span multiple lines are now parsed. \u003ccode\u003enest()\u003c/code\u003e decided where the nested key ends by testing \u003ccode\u003ematch[1]\u003c/code\u003e with \u003ccode\u003e/{.*}/\u003c/code\u003e, whose dot does not cross line breaks — so a \u003ccode\u003e$t(key, { ... })\u003c/code\u003e options object containing a newline was treated as having no options, mis-split as formatters, and the nested lookup ran without its options (placeholders stayed unresolved). The nesting regexp itself already matches newlines inside \u003ccode\u003e$t(...)\u003c/code\u003e; adding the \u003ccode\u003es\u003c/code\u003e (dotAll) flag makes multiline options behave like the single-line form. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2440\"\u003e#2440\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003egetUsedParamsDetails\u003c/code\u003e (the \u003ccode\u003ereturnDetails: true\u003c/code\u003e path) no longer mutates the passed \u003ccode\u003ereplace\u003c/code\u003e object. It wrote \u003ccode\u003ecount\u003c/code\u003e straight onto \u003ccode\u003eoptions.replace\u003c/code\u003e so the returned \u003ccode\u003eusedParams\u003c/code\u003e would include it — a caller reusing one \u003ccode\u003ereplace\u003c/code\u003e object across \u003ccode\u003et()\u003c/code\u003e calls then carried a stale \u003ccode\u003ecount\u003c/code\u003e into later interpolations (e.g. a previous call's \u003ccode\u003ecount: 5\u003c/code\u003e rendered instead of the current call's value). The details are now built from a copy; \u003ccode\u003eusedParams\u003c/code\u003e still includes \u003ccode\u003ecount\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2441\"\u003e#2441\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003efix: with the default \u003ccode\u003eskipOnVariables: true\u003c/code\u003e + \u003ccode\u003eescapeValue: true\u003c/code\u003e, a \u003ccode\u003e{{placeholder}}\u003c/code\u003e carried inside an interpolated value now stays literal even when the value contains escapable characters. The skip logic advanced the regex \u003ccode\u003elastIndex\u003c/code\u003e by the raw value length, but the escaped text written into the string is longer, so \u003ccode\u003elastIndex\u003c/code\u003e landed inside the inserted value and a trailing \u003ccode\u003e{{placeholder}}\u003c/code\u003e in it got interpolated — leaking another in-scope variable that should have stayed literal (values without escapable characters were already skipped correctly). The advance now uses the escaped length that is actually written, and the regex-safe \u003ccode\u003e$\u003c/code\u003e-doubling is applied only at the \u003ccode\u003eString.replace\u003c/code\u003e call so it can't distort the length arithmetic. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2442\"\u003e#2442\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.3.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(security): \u003ccode\u003edeepExtend\u003c/code\u003e (used by \u003ccode\u003eaddResourceBundle(..., deep, overwrite)\u003c/code\u003e) no longer recurses into inherited properties. It checked key existence with the \u003ccode\u003ein\u003c/code\u003e operator, which walks the prototype chain, so a source key matching an inherited built-in (e.g. \u003ccode\u003ehasOwnProperty\u003c/code\u003e, \u003ccode\u003etoString\u003c/code\u003e) caused recursion into the shared \u003ccode\u003eObject.prototype\u003c/code\u003e function and, with \u003ccode\u003eoverwrite: true\u003c/code\u003e, could overwrite e.g. \u003ccode\u003eObject.prototype.hasOwnProperty.call\u003c/code\u003e with a non-callable value — corrupting a shared built-in process-wide (DoS). Existence is now checked with \u003ccode\u003eObject.prototype.hasOwnProperty.call\u003c/code\u003e, so such keys are copied as plain own data instead. This complements the existing \u003ccode\u003e__proto__\u003c/code\u003e/\u003ccode\u003econstructor\u003c/code\u003e guard and is also strictly more correct for an own-property merge. Only affects applications that pass attacker-controlled data with \u003ccode\u003edeep: true\u003c/code\u003e and \u003ccode\u003eoverwrite: true\u003c/code\u003e; no standard backend/integration does this. Distinct from CVE-2026-48713 / CVE-2026-48714 (different packages, \u003ccode\u003esetPath\u003c/code\u003e mechanism). See advisory \u003ca href=\"https://github.com/i18next/i18next/security/advisories/GHSA-6jcc-5g8w-32mx\"\u003eGHSA-6jcc-5g8w-32mx\u003c/a\u003e, CVSS 5.9 (\u003ccode\u003eCVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H\u003c/code\u003e). Thanks to zx (Jace) \u003ca href=\"https://github.com/manus-use\"\u003e\u003ccode\u003e@​manus-use\u003c/code\u003e\u003c/a\u003e for the responsible disclosure.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.3.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): selector \u003ccode\u003et($ =\u0026gt; $.arr, { returnObjects: true, context })\u003c/code\u003e on a JSON array of \u003cstrong\u003eheterogeneous\u003c/strong\u003e objects now preserves each element's full shape (e.g. \u003ccode\u003e{ transKey1: string; transKey2: string }[]\u003c/code\u003e) instead of collapsing to a union of partial element types. Two type-level causes: (1) \u003ccode\u003eFilterKeys\u003c/code\u003e evaluated the whole array element type at once, so \u003ccode\u003ekeyof (A | B)\u003c/code\u003e only saw the keys common to every element — it now distributes over the object union and filters each element independently; (2) when TypeScript merges mismatched array element types it injects phantom optional \u003ccode\u003eundefined\u003c/code\u003e keys (e.g. \u003ccode\u003etransKey1_withContext?: undefined\u003c/code\u003e on elements that don't define it), which the context-detection helpers mistook for real context variants — they now skip keys typed as \u003ccode\u003eundefined\u003c/code\u003e. Also adds a dedicated \u003ccode\u003econtext\u003c/code\u003e + \u003ccode\u003ereturnObjects: true\u003c/code\u003e selector overload using \u003ccode\u003econst Fn\u003c/code\u003e + \u003ccode\u003eReturnType\u0026lt;Fn\u0026gt;\u003c/code\u003e, so \u003ccode\u003eTarget\u003c/code\u003e is no longer collapsed to \u003ccode\u003eunknown\u003c/code\u003e via \u003ccode\u003eApplyTarget\u003c/code\u003e. Resolves Problem 1 of \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2398\"\u003e#2398\u003c/a\u003e (Problem 2 was already fixed on master). Thanks \u003ca href=\"https://github.com/sauravgupta-dotcom\"\u003e\u003ccode\u003e@​sauravgupta-dotcom\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2438\"\u003e#2438\u003c/a\u003e). Fixes \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2398\"\u003e#2398\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.3.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: chained formatters with a parenthesised option that contains the format separator (e.g. \u003ccode\u003ejoin(separator: ', ')\u003c/code\u003e) now work at \u003cstrong\u003eany\u003c/strong\u003e position in the chain, not just first. Previously the comma-in-parens reassembly only repaired \u003ccode\u003eformats[0]\u003c/code\u003e, so \u003ccode\u003e{{v, uppercase, join(separator: ', ')}}\u003c/code\u003e split the \u003ccode\u003ejoin(...)\u003c/code\u003e option on the inner comma and never rejoined it, producing corrupt output. Replaced the first-position-only repair with a position-independent pass that re-joins fragments until each open paren closes. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2437\"\u003e#2437\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.3.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): \u003ccode\u003et()\u003c/code\u003e with a \u003ccode\u003ekeyPrefix\u003c/code\u003e no longer pollutes its return type with sibling keys' values. A regression in 26.3.0 — the \u003ccode\u003e[Res] extends [never]\u003c/code\u003e guards added to \u003ccode\u003eKeysBuilderWithReturnObjects\u003c/code\u003e / \u003ccode\u003eKeysBuilderWithoutReturnObjects\u003c/code\u003e turned the builders into deferred conditional types, so \u003ccode\u003eKeyPrefix\u0026lt;Ns\u0026gt;\u003c/code\u003e stopped resolving to a literal union and \u003ccode\u003ekeyPrefix\u003c/code\u003e inference widened to the whole namespace. Symptom: \u003ccode\u003euseTranslation(ns, { keyPrefix: 'a.b' })\u003c/code\u003e then \u003ccode\u003et('title')\u003c/code\u003e would resolve to \u003ccode\u003e'\u0026lt;a.b\u0026gt;.title' | '\u0026lt;other.path\u0026gt;.title' | ...\u003c/code\u003e instead of just the scoped value. Affected every \u003ccode\u003ereact-i18next\u003c/code\u003e user using \u003ccode\u003ekeyPrefix\u003c/code\u003e. Restored to the eager 26.2.0 form. The same-namespace conflict handling from \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2434\"\u003e#2434\u003c/a\u003e still works via \u003ccode\u003e_DropConflictKeys\u003c/code\u003e at the merge layer (in \u003ccode\u003eoptions.d.ts\u003c/code\u003e). Thanks \u003ca href=\"https://github.com/aaronrosenthal\"\u003e\u003ccode\u003e@​aaronrosenthal\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2436\"\u003e#2436\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.3.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(types): introduce \u003ccode\u003eResourceNamespaceMap\u003c/code\u003e — a separate mergeable augmentation surface for namespace resource types, designed for monorepos where multiple packages each want to contribute their own namespaces. Previously, every package had to coordinate on a single \u003ccode\u003eCustomTypeOptions.resources\u003c/code\u003e declaration (or fall back to typing dependency namespaces as \u003ccode\u003eany\u003c/code\u003e) because \u003ccode\u003eresources\u003c/code\u003e is a single property of an interface and TypeScript reports TS2717 when two declarations of the same property disagree. The new interface merges naturally across \u003ccode\u003edeclare module 'i18next'\u003c/code\u003e blocks, so each package can ship its own \u003ccode\u003ei18next.d.ts\u003c/code\u003e independently. Per-property merge handles same-namespace contributions from multiple packages, and same-key/different-literal conflicts are silently dropped to avoid poisoning \u003ccode\u003et()\u003c/code\u003e overload resolution. Fully backwards-compatible — existing \u003ccode\u003eCustomTypeOptions.resources\u003c/code\u003e augmentations continue to work, and both surfaces can coexist. Scalar options (\u003ccode\u003edefaultNS\u003c/code\u003e, \u003ccode\u003ereturnNull\u003c/code\u003e, \u003ccode\u003eenableSelector\u003c/code\u003e, etc.) still belong on \u003ccode\u003eCustomTypeOptions\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/sh3xu\"\u003e\u003ccode\u003e@​sh3xu\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2434\"\u003e#2434\u003c/a\u003e). Fixes \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2409\"\u003e#2409\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.2.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(types): new \u003ccode\u003eparseInterpolation\u003c/code\u003e TypeOption (default \u003ccode\u003etrue\u003c/code\u003e). When set to \u003ccode\u003efalse\u003c/code\u003e in \u003ccode\u003eCustomTypeOptions\u003c/code\u003e, the type-level extractor stops parsing translation strings for \u003ccode\u003e{{variable}}\u003c/code\u003e patterns. Required by \u003ccode\u003ei18next-icu\u003c/code\u003e users — the default extractor mistakes ICU MessageFormat nested-brace plurals like \u003ccode\u003e{count, plural, one {{count} row} other {{count} rows}}\u003c/code\u003e for an interpolation block and demands a phantom variable name. The flag is type-only; runtime interpolation is governed by \u003ccode\u003eInterpolationOptions\u003c/code\u003e and is unaffected. Fixes \u003ca href=\"https://redirect.github.com/i18next/i18next-icu/issues/85\"\u003ei18next-icu#85\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003efix(types): expose \u003ccode\u003eenableSelector\u003c/code\u003e on \u003ccode\u003eInitOptions\u003c/code\u003e so \u003ccode\u003ei18next.init({ enableSelector: 'strict' })\u003c/code\u003e typechecks without a module augmentation. The runtime already reads \u003ccode\u003eopts?.enableSelector\u003c/code\u003e from init options; this lands the matching type declaration next to the other selector-resolution knobs. Accepts \u003ccode\u003efalse | true | 'optimize' | 'strict'\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/Faithfinder\"\u003e\u003ccode\u003e@​Faithfinder\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2431\"\u003e#2431\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.1.0\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/4dba50f20669c3678db0812255716eb7693ad2da\"\u003e\u003ccode\u003e4dba50f\u003c/code\u003e\u003c/a\u003e 26.4.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/e436b625a648e1a48ea27ecf5f2fba8020d67009\"\u003e\u003ccode\u003ee436b62\u003c/code\u003e\u003c/a\u003e build\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/d955fb086e9f4ded1200f51ecbb21034dbad1d92\"\u003e\u003ccode\u003ed955fb0\u003c/code\u003e\u003c/a\u003e fix: stringify formatter results in nested values, changelog v26.4.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/dfafa3ca725e1415ef20e7fb5b1b3e4468f3c425\"\u003e\u003ccode\u003edfafa3c\u003c/code\u003e\u003c/a\u003e fix: keep replacement patterns literal in nested values (\u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2447\"\u003e#2447\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/3c9981e22dd471b6bca224aa1f60e04ba3f6153a\"\u003e\u003ccode\u003e3c9981e\u003c/code\u003e\u003c/a\u003e chore: keep dev-only and local files out of the npm package\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/c057ee048c55a61c095acc017365e997e4f723f8\"\u003e\u003ccode\u003ec057ee0\u003c/code\u003e\u003c/a\u003e 26.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/02e3e1659b7cc9fedaaf53797597483ef8003df2\"\u003e\u003ccode\u003e02e3e16\u003c/code\u003e\u003c/a\u003e changelog v26.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/6f198f2508ba8986d1bbf25a8b922d01afcf0751\"\u003e\u003ccode\u003e6f198f2\u003c/code\u003e\u003c/a\u003e fix(types): allow selector keyPrefix in getFixedT under enableSelector 'stric...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/652847e70fd68344d00456f20ef0584da51e59f7\"\u003e\u003ccode\u003e652847e\u003c/code\u003e\u003c/a\u003e 26.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/6c6025f87e89f0b5e8ef3f0bf23fd61158bd64d3\"\u003e\u003ccode\u003e6c6025f\u003c/code\u003e\u003c/a\u003e prettier fix\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/i18next/i18next/compare/v23.16.8...v26.4.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version modifies \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `lucide-react` from 0.501.0 to 1.45.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/lucide-icons/lucide/releases\"\u003elucide-react's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.45.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003ecalendar-chevrons-right\u003c/code\u003e icon by \u003ca href=\"https://github.com/AlexandrePhilibert\"\u003e\u003ccode\u003e@​AlexandrePhilibert\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3565\"\u003elucide-icons/lucide#3565\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003ebuilding-complex-plus\u003c/code\u003e icon by \u003ca href=\"https://github.com/tylerkade\"\u003e\u003ccode\u003e@​tylerkade\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4758\"\u003elucide-icons/lucide#4758\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): add hourglass-cog icon by \u003ca href=\"https://github.com/lazerg\"\u003e\u003ccode\u003e@​lazerg\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4635\"\u003elucide-icons/lucide#4635\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003emouth\u003c/code\u003e \u0026amp; \u003ccode\u003emouth-off\u003c/code\u003e by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4787\"\u003elucide-icons/lucide#4787\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003eiv-bag\u003c/code\u003e icon by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4821\"\u003elucide-icons/lucide#4821\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): changed \u003ccode\u003electern\u003c/code\u003e icon by \u003ca href=\"https://github.com/UsamaKhan\"\u003e\u003ccode\u003e@​UsamaKhan\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/2925\"\u003elucide-icons/lucide#2925\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): add \u003ccode\u003elayout-arrow-right\u003c/code\u003e and \u003ccode\u003elayout-arrow-down\u003c/code\u003e by \u003ca href=\"https://github.com/samuelalake\"\u003e\u003ccode\u003e@​samuelalake\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4541\"\u003elucide-icons/lucide#4541\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003epark\u003c/code\u003e icon by \u003ca href=\"https://github.com/skajosborn\"\u003e\u003ccode\u003e@​skajosborn\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3177\"\u003elucide-icons/lucide#3177\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): changed \u003ccode\u003ealbum\u003c/code\u003e, \u003ccode\u003ebook-marked\u003c/code\u003e, \u003ccode\u003efolder-bookmark\u003c/code\u003e icons by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3043\"\u003elucide-icons/lucide#3043\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): correct misspelled tags by \u003ca href=\"https://github.com/decknamec\"\u003e\u003ccode\u003e@​decknamec\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4836\"\u003elucide-icons/lucide#4836\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003ehouses\u003c/code\u003e icon by \u003ca href=\"https://github.com/danielbayley\"\u003e\u003ccode\u003e@​danielbayley\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3241\"\u003elucide-icons/lucide#3241\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003enotebook-dot\u003c/code\u003e icon by \u003ca href=\"https://github.com/elenakovelskikh\"\u003e\u003ccode\u003e@​elenakovelskikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3228\"\u003elucide-icons/lucide#3228\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): add \u003ccode\u003emessages-circle\u003c/code\u003e icon by \u003ca href=\"https://github.com/Mirazstudio-offical\"\u003e\u003ccode\u003e@​Mirazstudio-offical\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4754\"\u003elucide-icons/lucide#4754\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003eplant-pot\u003c/code\u003e icon by \u003ca href=\"https://github.com/vqh2602\"\u003e\u003ccode\u003e@​vqh2602\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3122\"\u003elucide-icons/lucide#3122\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): changed \u003ccode\u003ecookie\u003c/code\u003e icon by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4815\"\u003elucide-icons/lucide#4815\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): remove duplicate use-cases prop from cookie.json by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4838\"\u003elucide-icons/lucide#4838\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(site): fix home card icons by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4839\"\u003elucide-icons/lucide#4839\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(docs): added \u0026quot;How to use Lucide icons\u0026quot; section to resources by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4829\"\u003elucide-icons/lucide#4829\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(packages/vue): fix generated icon declaration types for \u003ccode\u003e@​lucide/vue\u003c/code\u003e by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4841\"\u003elucide-icons/lucide#4841\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps-dev): bump vitest from 4.1.10 to 4.1.11 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4845\"\u003elucide-icons/lucide#4845\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps-dev): bump vitest from 4.1.10 to 4.1.11 in /integrations/lucide-react/vite by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4844\"\u003elucide-icons/lucide#4844\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci(ci.yml): Add dispatch post release by \u003ca href=\"https://github.com/ericfennis\"\u003e\u003ccode\u003e@​ericfennis\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4847\"\u003elucide-icons/lucide#4847\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003eglobe-code\u003c/code\u003e icon by \u003ca href=\"https://github.com/AleksejDix\"\u003e\u003ccode\u003e@​AleksejDix\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3722\"\u003elucide-icons/lucide#3722\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tylerkade\"\u003e\u003ccode\u003e@​tylerkade\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4758\"\u003elucide-icons/lucide#4758\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/alx-xo\"\u003e\u003ccode\u003e@​alx-xo\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4115\"\u003elucide-icons/lucide#4115\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/skajosborn\"\u003e\u003ccode\u003e@​skajosborn\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3177\"\u003elucide-icons/lucide#3177\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/elenakovelskikh\"\u003e\u003ccode\u003e@​elenakovelskikh\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3228\"\u003elucide-icons/lucide#3228\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Mirazstudio-offical\"\u003e\u003ccode\u003e@​Mirazstudio-offical\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4754\"\u003elucide-icons/lucide#4754\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/AleksejDix\"\u003e\u003ccode\u003e@​AleksejDix\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3722\"\u003elucide-icons/lucide#3722\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/lucide-icons/lucide/compare/1.44.0...1.45.0\"\u003ehttps://github.com/lucide-icons/lucide/compare/1.44.0...1.45.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eVersion 1.44.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(packages/icons): fixed \u003ccode\u003e@​lucide/icons\u003c/code\u003e rollup config by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4824\"\u003elucide-icons/lucide#4824\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): changed \u003ccode\u003edoor-open\u003c/code\u003e by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4826\"\u003elucide-icons/lucide#4826\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(docs): replace missing LucideIcon icon names in guides by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4827\"\u003elucide-icons/lucide#4827\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(docs): fixed fuse js search by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4825\"\u003elucide-icons/lucide#4825\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): changed \u003ccode\u003esatellite-dish\u003c/code\u003e icon by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4813\"\u003elucide-icons/lucide#4813\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): arcified flip icons \u0026amp; renamed them by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4833\"\u003elucide-icons/lucide#4833\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): improve legibility of credit card icons by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4831\"\u003elucide-icons/lucide#4831\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(lab): add check-x icon by \u003ca href=\"https://github.com/ishanbagra18\"\u003e\u003ccode\u003e@​ishanbagra18\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4737\"\u003elucide-icons/lucide#4737\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): correct compromised tags in shield icons by \u003ca href=\"https://github.com/decknamec\"\u003e\u003ccode\u003e@​decknamec\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4835\"\u003elucide-icons/lucide#4835\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003etoothbrush\u003c/code\u003e icon by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4755\"\u003elucide-icons/lucide#4755\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/94e4cb9d9db5907053ebf3636a97c45529cf776b\"\u003e\u003ccode\u003e94e4cb9\u003c/code\u003e\u003c/a\u003e chore(dependencies): Update dependencies (\u003ca href=\"https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/4806\"\u003e#4806\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/99d25bdee231922e73e19525f57a585d1682fab2\"\u003e\u003ccode\u003e99d25bd\u003c/code\u003e\u003c/a\u003e feat(packages): extract icon build logic into \u003ccode\u003e@lucide/shared\u003c/code\u003e (\u003ca href=\"https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/4409\"\u003e#4409\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/75b55160aa9edd7095dfed1a6e3d88e66fb2b153\"\u003e\u003ccode\u003e75b5516\u003c/code\u003e\u003c/a\u003e chore(dev): upgrade ESLint to latest compatible stack (v10) (\u003ca href=\"https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/4378\"\u003e#4378\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/0f8d48b266e7af1e2bab49ff12ab6ec0795ed204\"\u003e\u003ccode\u003e0f8d48b\u003c/code\u003e\u003c/a\u003e test(packages): updates unit test snapshots with face-slightly-smiling (\u003ca href=\"https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/4676\"\u003e#4676\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/f229f83f0c42f46befeac3cfd8ef7aaa82a71325\"\u003e\u003ccode\u003ef229f83\u003c/code\u003e\u003c/a\u003e chore(depedencies): Update dependencies (\u003ca href=\"https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/4553\"\u003e#4553\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/5ff536e1391335e4f7dc38d244c1bc458b9443e2\"\u003e\u003ccode\u003e5ff536e\u003c/code\u003e\u003c/a\u003e ci(release.yml): Fix workflow and remove \u003ccode\u003eversion\u003c/code\u003e scripts in package scripts...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/07c885e6c1f9952965ba388b7fd2bb7c4d416a67\"\u003e\u003ccode\u003e07c885e\u003c/code\u003e\u003c/a\u003e fix(docs): fix zephyr-cloud URL in readmes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/50d8af5a1012e188f3d71ac8f1fc0fba1aab5357\"\u003e\u003ccode\u003e50d8af5\u003c/code\u003e\u003c/a\u003e docs(readme): Update readme files (\u003ca href=\"https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/4320\"\u003e#4320\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/653e44b83293567ff24dcb90ca1094a9cf0a042a\"\u003e\u003ccode\u003e653e44b\u003c/code\u003e\u003c/a\u003e feat(packages): use .mjs for ESM bundles (\u003ca href=\"https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/4285\"\u003e#4285\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/7623e23f787fe78e5075a613fd22da2cecbb9b1b\"\u003e\u003ccode\u003e7623e23\u003c/code\u003e\u003c/a\u003e feat(docs): add Zephyr Cloud to Hero Backers tier \u0026amp; rework updateSponsors scr...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/lucide-icons/lucide/commits/1.45.0/packages/lucide-react\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for lucide-react since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `react` from 18.3.1 to 19.3.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/react/react/releases\"\u003ereact's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e19.3.0 (September 9, 2026)\u003c/h2\u003e\n\u003cp\u003eBelow is a list of all new features, APIs, and bug fixes.\u003c/p\u003e\n\u003cp\u003eRead the \u003ca href=\"https://react.dev/blog/2026/09/09/react-19-3\"\u003eReact 19.3 release post\u003c/a\u003e for more information.\u003c/p\u003e\n\u003ch2\u003eNew React Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e\u0026lt;ViewTransition /\u0026gt;\u003c/code\u003e: Adds \u003ccode\u003e\u0026lt;ViewTransition /\u0026gt;\u003c/code\u003e and \u003ccode\u003eaddTransitionType\u003c/code\u003e APIs to power View Transition animations in React (\u003ca href=\"https://github.com/sebmarkbage\"\u003e\u003ccode\u003e@​sebmarkbage\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/jackpope\"\u003e\u003ccode\u003e@​jackpope\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/gaearon\"\u003e\u003ccode\u003e@​gaearon\u003c/code\u003e\u003c/a\u003e: \u003ca href=\"https://redirect.github.com/facebook/react/pull/31975\"\u003e#31975\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/31987\"\u003e#31987\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/31996\"\u003e#31996\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/31999\"\u003e#31999\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32001\"\u003e#32001\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32002\"\u003e#32002\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32028\"\u003e#32028\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32029\"\u003e#32029\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32031\"\u003e#32031\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32034\"\u003e#32034\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32038\"\u003e#32038\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32041\"\u003e#32041\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32050\"\u003e#32050\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32090\"\u003e#32090\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32105\"\u003e#32105\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32254\"\u003e#32254\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32379\"\u003e#32379\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32422\"\u003e#32422\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32462\"\u003e#32462\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32540\"\u003e#32540\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32545\"\u003e#32545\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32585\"\u003e#32585\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32599\"\u003e#32599\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32611\"\u003e#32611\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32612\"\u003e#32612\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32617\"\u003e#32617\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32651\"\u003e#32651\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32653\"\u003e#32653\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32656\"\u003e#32656\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32664\"\u003e#32664\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32699\"\u003e#32699\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32723\"\u003e#32723\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32734\"\u003e#32734\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32751\"\u003e#32751\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32752\"\u003e#32752\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32760\"\u003e#32760\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32761\"\u003e#32761\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32764\"\u003e#32764\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32772\"\u003e#32772\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32790\"\u003e#32790\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32819\"\u003e#32819\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32820\"\u003e#32820\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32822\"\u003e#32822\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32833\"\u003e#32833\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32849\"\u003e#32849\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33094\"\u003e#33094\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33191\"\u003e#33191\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33200\"\u003e#33200\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33206\"\u003e#33206\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33293\"\u003e#33293\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33330\"\u003e#33330\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33331\"\u003e#33331\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33332\"\u003e#33332\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33357\"\u003e#33357\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33362\"\u003e#33362\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33433\"\u003e#33433\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33576\"\u003e#33576\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34374\"\u003e#34374\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34450\"\u003e#34450\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34481\"\u003e#34481\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34500\"\u003e#34500\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34502\"\u003e#34502\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34510\"\u003e#34510\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34511\"\u003e#34511\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34539\"\u003e#34539\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35567\"\u003e#35567\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35564\"\u003e#35564\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35485\"\u003e#35485\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35380\"\u003e#35380\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35063\"\u003e#35063\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35060\"\u003e#35060\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34676\"\u003e#34676\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/36917\"\u003e#36917\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35337\"\u003e#35337\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35520\"\u003e#35520\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFragment Refs: Add Refs to \u003ccode\u003e\u0026lt;Fragment /\u0026gt;\u003c/code\u003e to support composable platform behavior (\u003ca href=\"https://github.com/jackpope\"\u003e\u003ccode\u003e@​jackpope\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/sebmarkbage\"\u003e\u003ccode\u003e@​sebmarkbage\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/Dhakshin2007\"\u003e\u003ccode\u003e@​Dhakshin2007\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/chirokas\"\u003e\u003ccode\u003e@​chirokas\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/teamleaderleo\"\u003e\u003ccode\u003e@​teamleaderleo\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/fallintoplace\"\u003e\u003ccode\u003e@​fallintoplace\u003c/code\u003e\u003c/a\u003e: \u003ca href=\"https://redirect.github.com/facebook/react/pull/32465\"\u003e#32465\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32613\"\u003e#32613\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32619\"\u003e#32619\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32654\"\u003e#32654\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32660\"\u003e#32660\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32682\"\u003e#32682\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32722\"\u003e#32722\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32813\"\u003e#32813\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32814\"\u003e#32814\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33056\"\u003e#33056\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33058\"\u003e#33058\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33093\"\u003e#33093\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34069\"\u003e#34069\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34103\"\u003e#34103\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34544\"\u003e#34544\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34545\"\u003e#34545\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37062\"\u003e#37062\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37061\"\u003e#37061\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37060\"\u003e#37060\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/36047\"\u003e#36047\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/36010\"\u003e#36010\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35642\"\u003e#35642\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35641\"\u003e#35641\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35637\"\u003e#35637\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35630\"\u003e#35630\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34935\"\u003e#34935\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37457\"\u003e#37457\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37408\"\u003e#37408\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37326\"\u003e#37326\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37251\"\u003e#37251\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37171\"\u003e#37171\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37169\"\u003e#37169\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37168\"\u003e#37168\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37167\"\u003e#37167\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37166\"\u003e#37166\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37165\"\u003e#37165\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37164\"\u003e#37164\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37163\"\u003e#37163\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37162\"\u003e#37162\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37161\"\u003e#37161\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37160\"\u003e#37160\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37125\"\u003e#37125\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37063\"\u003e#37063\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew React DOM Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebrowser()\u003c/code\u003e: a new \u003ccode\u003ereact-dom\u003c/code\u003e API that returns a usable which errors during server rendering and resolves in the browser. \u003ccode\u003euse(browser())\u003c/code\u003e inside a \u003ccode\u003e\u0026lt;Suspense\u0026gt;\u003c/code\u003e boundary marks a subtree as browser-only without reporting a recoverable error (\u003ca href=\"https://github.com/gnoff\"\u003e\u003ccode\u003e@​gnoff\u003c/code\u003e\u003c/a\u003e: \u003ca href=\"https://redirect.github.com/facebook/react/pull/37143\"\u003e#37143\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37241\"\u003e#37241\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eAdded an \u003ccode\u003eonBrowserBailout\u003c/code\u003e option to the \u003ccode\u003ereact-dom/server\u003c/code\u003e APIs to observe when a subtree defers to the browser (\u003ca href=\"https://github.com/gnoff\"\u003e\u003ccode\u003e@​gnoff\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/37193\"\u003e#37193\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNotable changes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eEnable Trusted Types API integration (\u003ca href=\"https://github.com/rickhanlonii\"\u003e\u003ccode\u003e@​rickhanlonii\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/35816\"\u003e#35816\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTransitions now render independently instead of being entangled into a single render, so a slow transition no longer holds up unrelated ones (\u003ca href=\"https://github.com/acdlite\"\u003e\u003ccode\u003e@​acdlite\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/37290\"\u003e#37290\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdded a DEV-only warning when a component appears to have been unblocked by calling \u003ccode\u003euse()\u003c/code\u003e conditionally (\u003ca href=\"https://github.com/hoxyq\"\u003e\u003ccode\u003e@​hoxyq\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e: \u003ca href=\"https://redirect.github.com/facebook/react/pull/37104\"\u003e#37104\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37203\"\u003e#37203\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37491\"\u003e#37491\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eAll Changes\u003c/h2\u003e\n\u003ch3\u003eReact\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFast Refresh Fixes\n\u003cul\u003e\n\u003cli\u003eFix Fast Refresh to find and remount edits to components wrapped behind \u003ccode\u003elazy()\u003c/code\u003e (\u003ca href=\"https://github.com/sophiebits\"\u003e\u003ccode\u003e@​sophiebits\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/36965\"\u003e#36965\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix Fast Refresh so edits to a \u003ccode\u003ememo()\u003c/code\u003e comparison function take effect (\u003ca href=\"https://github.com/sophiebits\"\u003e\u003ccode\u003e@​sophiebits\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/36964\"\u003e#36964\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix Fast Refresh crash when an edit changes the kind of a component's type (\u003ca href=\"https://github.com/sophiebits\"\u003e\u003ccode\u003e@​sophiebits\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/36963\"\u003e#36963\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUnify hot reload type resolution for Fast Refresh (\u003ca href=\"https://github.com/sophiebits\"\u003e\u003ccode\u003e@​sophiebits\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/36962\"\u003e#36962\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix Fast Refresh to remount correctly when an edit changes the component kind (\u003ca href=\"https://github.com/sophiebits\"\u003e\u003ccode\u003e@​sophiebits\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/36950\"\u003e#36950\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eDouble invoke effects in StrictMode after Fast Refresh (\u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/35962\"\u003e#35962\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003ePerformance Track Fixes\n\u003cul\u003e\n\u003cli\u003ePrevent crash when accessing \u003ccode\u003e$$typeof\u003c/code\u003e in Performance Tracks (\u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/35679\"\u003e#35679\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eHandle non-string function names in Performance Tracks (\u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/35659\"\u003e#35659\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse minus (\u003ccode\u003e-\u003c/code\u003e) instead of en dash for removed props in Performance Tracks (\u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/35649\"\u003e#35649\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eHandle arrays with bigints in deep objects in Performance Tr...\n\n_Description has been truncated_","html_url":"https://github.com/rbcorrales/gestalyze/pull/8","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/rbcorrales%2Fgestalyze/issues/8","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/8/packages"},{"uuid":"5460615607","node_id":"PR_kwDONFF-Cc8AAAABDlvBFw","number":16,"state":"open","title":"Bump the npm_and_yarn group across 3 directories with 18 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-15T10:19:49.000Z","updated_at":"2026-09-15T10:20:29.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"npm_and_yarn","update_count":18,"packages":[{"name":"webpack","old_version":"5.97.1","new_version":"5.111.0","repository_url":"https://github.com/webpack/webpack"},{"name":"wrangler","old_version":"4.34.0","new_version":"4.59.1","repository_url":"https://github.com/cloudflare/workers-sdk"},{"name":"brace-expansion","old_version":"2.0.1","new_version":"2.1.7","repository_url":"https://github.com/juliangruber/brace-expansion"},{"name":"glob","old_version":"10.4.5","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"},{"name":"glob","old_version":"11.0.0","new_version":"11.1.0","repository_url":"https://github.com/isaacs/node-glob"},{"name":"minimatch","old_version":"9.0.5","new_version":"9.0.9","repository_url":"https://github.com/isaacs/minimatch"},{"name":"minimatch","old_version":"5.1.6","new_version":"5.1.9","repository_url":"https://github.com/isaacs/minimatch"},{"name":"js-yaml","old_version":"4.1.0","new_version":"4.3.2","repository_url":"https://github.com/nodeca/js-yaml"},{"name":"picomatch","old_version":"2.3.1","new_version":"2.3.2","repository_url":"https://github.com/micromatch/picomatch"},{"name":"serialize-javascript","old_version":"6.0.2","new_version":"7.1.1","repository_url":"https://github.com/yahoo/serialize-javascript"},{"name":"ws","old_version":"8.18.0","new_version":"8.21.0","repository_url":"https://github.com/websockets/ws"}],"path":null,"ecosystem":"npm"},"body":"Bumps the npm_and_yarn group with 9 updates in the /api directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [webpack](https://github.com/webpack/webpack) | `5.97.1` | `5.111.0` |\n| [wrangler](https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler) | `4.34.0` | `4.59.1` |\n| [brace-expansion](https://github.com/juliangruber/brace-expansion) | `2.0.1` | `2.1.7` |\n| [glob](https://github.com/isaacs/node-glob) | `10.4.5` | `10.5.0` |\n| [glob](https://github.com/isaacs/node-glob) | `11.0.0` | `11.1.0` |\n| [minimatch](https://github.com/isaacs/minimatch) | `9.0.5` | `9.0.9` |\n| [minimatch](https://github.com/isaacs/minimatch) | `5.1.6` | `5.1.9` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `4.1.0` | `4.3.2` |\n| [picomatch](https://github.com/micromatch/picomatch) | `2.3.1` | `2.3.2` |\n| [serialize-javascript](https://github.com/yahoo/serialize-javascript) | `6.0.2` | `7.1.1` |\n| [ws](https://github.com/websockets/ws) | `8.18.0` | `8.21.0` |\n\nBumps the npm_and_yarn group with 8 updates in the /scraper directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [brace-expansion](https://github.com/juliangruber/brace-expansion) | `2.0.1` | `2.1.7` |\n| [glob](https://github.com/isaacs/node-glob) | `10.4.5` | `10.5.0` |\n| [minimatch](https://github.com/isaacs/minimatch) | `9.0.5` | `9.0.9` |\n| [minimatch](https://github.com/isaacs/minimatch) | `5.1.6` | `5.1.9` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `4.1.0` | `4.3.2` |\n| [picomatch](https://github.com/micromatch/picomatch) | `2.3.1` | `2.3.2` |\n| [serialize-javascript](https://github.com/yahoo/serialize-javascript) | `6.0.2` | `7.1.1` |\n| [undici](https://github.com/nodejs/undici) | `6.21.3` | `6.28.1` |\n| [form-data](https://github.com/form-data/form-data) | `4.0.4` | `4.0.6` |\n\nBumps the npm_and_yarn group with 7 updates in the /web directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [browserslist](https://github.com/browserslist/browserslist) | `4.23.3` | `4.28.9` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `4.1.0` | `4.3.2` |\n| [picomatch](https://github.com/micromatch/picomatch) | `2.3.1` | `2.3.2` |\n| [postcss](https://github.com/postcss/postcss) | `8.4.49` | `8.5.28` |\n| [@parcel/reporter-dev-server](https://github.com/parcel-bundler/parcel) | `2.13.3` | `2.16.4` |\n| [postcss-selector-parser](https://github.com/postcss/postcss-selector-parser) | `6.1.2` | `6.1.4` |\n| [svgo](https://github.com/svg/svgo) | `3.3.2` | `3.3.5` |\n\n\nUpdates `webpack` from 5.97.1 to 5.111.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/webpack/webpack/releases\"\u003ewebpack's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.111.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eEnable \u003ccode\u003eoutput.module\u003c/code\u003e by default with \u003ccode\u003efutureDefaults\u003c/code\u003e on ESM-capable targets. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22088\"\u003e#22088\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eRemove \u003ccode\u003eexperiments.outputModule\u003c/code\u003e, set \u003ccode\u003eoutput.module\u003c/code\u003e to emit ESM instead. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22011\"\u003e#22011\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eoutput.copy\u003c/code\u003e to copy files and directories into the output directory. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21938\"\u003e#21938\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAccept a file URL in any spelling Node reads where an absolute path is taken. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22012\"\u003e#22012\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMinify inline CSS and JSON via \u003ccode\u003erenderEmbeddedSource\u003c/code\u003e, exporting webpack's own. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21993\"\u003e#21993\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eExport \u003ccode\u003ecssMinify\u003c/code\u003e and \u003ccode\u003ehtmlMinify\u003c/code\u003e on \u003ccode\u003ecss.syntax\u003c/code\u003e and \u003ccode\u003ehtml.syntax\u003c/code\u003e. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21953\"\u003e#21953\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMake \u003ccode\u003eprocessResult\u003c/code\u003e async and let a tap rename the asset it rewrote. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21854\"\u003e#21854\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eLower a CSS spelling a target cannot read and write a color fallback before one. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21926\"\u003e#21926\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAllow optional filesystem cache build dependencies. (by \u003ca href=\"https://github.com/xiaoxiaojx\"\u003e\u003ccode\u003e@​xiaoxiaojx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21849\"\u003e#21849\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eoutput.environment.topLevelAwait\u003c/code\u003e and await every async ESM entry. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21915\"\u003e#21915\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eunusedSymbols\u003c/code\u003e and \u003ccode\u003epseudoClasses\u003c/code\u003e, and evaluate a CSS color function. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21927\"\u003e#21927\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDrop an implied shorthand slot, fold a math function, tighten color conversion. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21929\"\u003e#21929\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003emodule.parser.javascript.specNamespaceObject\u003c/code\u003e for spec namespace objects. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22049\"\u003e#22049\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDrop what is already said or only a gone engine reads, add \u003ccode\u003elowerUnsupported\u003c/code\u003e. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21931\"\u003e#21931\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003enormalizeUrlAttributes\u003c/code\u003e, \u003ccode\u003emergeScripts\u003c/code\u003e, boolean and token switches. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21960\"\u003e#21960\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMinify an event handler attribute, and name the production each script body is. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21968\"\u003e#21968\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd source-map, asset, module, bailout, federation hints; group config checks. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21961\"\u003e#21961\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eLower CSS nesting, \u003ccode\u003e:dir()\u003c/code\u003e and custom at-rules; gate case folding and escapes. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21950\"\u003e#21950\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eoptimization.minimize.css.mergeDistantRules\u003c/code\u003e to join rules across a gap. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21969\"\u003e#21969\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eMinify an embedded body through the embedded path, dropping three html options. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21936\"\u003e#21936\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eTake a minified \u003ccode\u003estyle\u003c/code\u003e attribute's answer whatever quoting it needs. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21936\"\u003e#21936\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eName chunk imports in the chunk loader, not at each import site. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22076\"\u003e#22076\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eRepair hashed names; under HMR bake hashed url maps and reload moved css names. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21916\"\u003e#21916\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/webpack/webpack/blob/main/CHANGELOG.md\"\u003ewebpack's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.111.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eEnable \u003ccode\u003eoutput.module\u003c/code\u003e by default with \u003ccode\u003efutureDefaults\u003c/code\u003e on ESM-capable targets. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22088\"\u003e#22088\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eRemove \u003ccode\u003eexperiments.outputModule\u003c/code\u003e, set \u003ccode\u003eoutput.module\u003c/code\u003e to emit ESM instead. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22011\"\u003e#22011\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eoutput.copy\u003c/code\u003e to copy files and directories into the output directory. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21938\"\u003e#21938\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAccept a file URL in any spelling Node reads where an absolute path is taken. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22012\"\u003e#22012\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMinify inline CSS and JSON via \u003ccode\u003erenderEmbeddedSource\u003c/code\u003e, exporting webpack's own. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21993\"\u003e#21993\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eExport \u003ccode\u003ecssMinify\u003c/code\u003e and \u003ccode\u003ehtmlMinify\u003c/code\u003e on \u003ccode\u003ecss.syntax\u003c/code\u003e and \u003ccode\u003ehtml.syntax\u003c/code\u003e. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21953\"\u003e#21953\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMake \u003ccode\u003eprocessResult\u003c/code\u003e async and let a tap rename the asset it rewrote. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21854\"\u003e#21854\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eLower a CSS spelling a target cannot read and write a color fallback before one. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21926\"\u003e#21926\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAllow optional filesystem cache build dependencies. (by \u003ca href=\"https://github.com/xiaoxiaojx\"\u003e\u003ccode\u003e@​xiaoxiaojx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21849\"\u003e#21849\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eoutput.environment.topLevelAwait\u003c/code\u003e and await every async ESM entry. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21915\"\u003e#21915\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eunusedSymbols\u003c/code\u003e and \u003ccode\u003epseudoClasses\u003c/code\u003e, and evaluate a CSS color function. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21927\"\u003e#21927\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDrop an implied shorthand slot, fold a math function, tighten color conversion. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21929\"\u003e#21929\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003emodule.parser.javascript.specNamespaceObject\u003c/code\u003e for spec namespace objects. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22049\"\u003e#22049\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDrop what is already said or only a gone engine reads, add \u003ccode\u003elowerUnsupported\u003c/code\u003e. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21931\"\u003e#21931\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003enormalizeUrlAttributes\u003c/code\u003e, \u003ccode\u003emergeScripts\u003c/code\u003e, boolean and token switches. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21960\"\u003e#21960\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMinify an event handler attribute, and name the production each script body is. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21968\"\u003e#21968\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd source-map, asset, module, bailout, federation hints; group config checks. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21961\"\u003e#21961\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eLower CSS nesting, \u003ccode\u003e:dir()\u003c/code\u003e and custom at-rules; gate case folding and escapes. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21950\"\u003e#21950\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eoptimization.minimize.css.mergeDistantRules\u003c/code\u003e to join rules across a gap. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21969\"\u003e#21969\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eMinify an embedded body through the embedded path, dropping three html options. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21936\"\u003e#21936\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eTake a minified \u003ccode\u003estyle\u003c/code\u003e attribute's answer whatever quoting it needs. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21936\"\u003e#21936\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eName chunk imports in the chunk loader, not at each import site. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22076\"\u003e#22076\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/92561183fc7cf44dce57f9d05b4819ba7693c961\"\u003e\u003ccode\u003e9256118\u003c/code\u003e\u003c/a\u003e chore(release): new release (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/21914\"\u003e#21914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/3ef9663a5a10715e1923893adecd779a34c510f8\"\u003e\u003ccode\u003e3ef9663\u003c/code\u003e\u003c/a\u003e refactor: consolidate getter and value format of export fragment (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22100\"\u003e#22100\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/aff7c4c258e745f16446121d3b55ef52cc1b5a9d\"\u003e\u003ccode\u003eaff7c4c\u003c/code\u003e\u003c/a\u003e perf: emit less chunk-loading runtime (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22094\"\u003e#22094\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/e954b8113f051305bebbbe5ad4b0f60ddc3ef540\"\u003e\u003ccode\u003ee954b81\u003c/code\u003e\u003c/a\u003e build(html): sweep the HTML printer for spelling-dependent output (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22097\"\u003e#22097\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/da4ad136424eed8d330f6aa3e1801e6f9b4299b3\"\u003e\u003ccode\u003eda4ad13\u003c/code\u003e\u003c/a\u003e fix(css): replace a \u003ca href=\"https://github.com/value\"\u003e\u003ccode\u003e@​value\u003c/code\u003e\u003c/a\u003e named in an at-rule prelude only once (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22036\"\u003e#22036\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/df7284080ab10780c52a203357e049b155ff14de\"\u003e\u003ccode\u003edf72840\u003c/code\u003e\u003c/a\u003e perf(runtime): test the spec namespace cache slot for truthiness (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22098\"\u003e#22098\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/4c80c99d10702bc4f0aad2ae66039ce5c0c2d819\"\u003e\u003ccode\u003e4c80c99\u003c/code\u003e\u003c/a\u003e fix(html): minify an attribute by what it says, not how it was spelled (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22095\"\u003e#22095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/f6fd097598951d38e479ea3106be05e294828ca9\"\u003e\u003ccode\u003ef6fd097\u003c/code\u003e\u003c/a\u003e fix: release stale compilation data from nested children and idle watches (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/2\"\u003e#2\u003c/a\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/55c9808be06358c04c6547b16b83ef1a4a0175f5\"\u003e\u003ccode\u003e55c9808\u003c/code\u003e\u003c/a\u003e refactor(js): own the ECMAScript parser and drop the acorn dependency (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22042\"\u003e#22042\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/e1ab6f2e8eecb429daf6735773ee7d4f5c184cae\"\u003e\u003ccode\u003ee1ab6f2\u003c/code\u003e\u003c/a\u003e fix(html): escape a text run the tag after it would fuse with (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22086\"\u003e#22086\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/webpack/webpack/compare/v5.97.1...v5.111.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for webpack since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `wrangler` from 4.34.0 to 4.59.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/37a86071615a67ceaa4565f177642e9c69768168\"\u003e\u003ccode\u003e37a8607\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11890\"\u003e#11890\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/99b1f328a9afe181b49f1114ed47f15f6d25f0be\"\u003e\u003ccode\u003e99b1f32\u003c/code\u003e\u003c/a\u003e fix: execute git commands in pages deploy safely (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11889\"\u003e#11889\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/e98c95aa22938f5ab6c3c1befe91350b9dc2ba0c\"\u003e\u003ccode\u003ee98c95a\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11836\"\u003e#11836\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/ad65efa73ae8b666e1669964ccacc2680b12c853\"\u003e\u003ccode\u003ead65efa\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003e--check\u003c/code\u003e flag to \u003ccode\u003ewrangler types\u003c/code\u003e (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11852\"\u003e#11852\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/beb96af470aefaae73237309244cf7369b329ff0\"\u003e\u003ccode\u003ebeb96af\u003c/code\u003e\u003c/a\u003e feat(unenv-preset): add support for native node:sqlite module (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11841\"\u003e#11841\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/b0e54b26f261234ec47dcc673a5240734ba03fcc\"\u003e\u003ccode\u003eb0e54b2\u003c/code\u003e\u003c/a\u003e [wrangler] Add AI agent detection to analytics events (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11820\"\u003e#11820\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/2203af44331dd80d93ff412f1b9dbd1b6f2edf9c\"\u003e\u003ccode\u003e2203af4\u003c/code\u003e\u003c/a\u003e Add Node.js 24 and 25 compatibility to the test suites for Miniflare, Wrangle...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/b6148ed733f6d6873261df5ae61e71c475ba8a8d\"\u003e\u003ccode\u003eb6148ed\u003c/code\u003e\u003c/a\u003e chore(deps): bump the workerd-and-workers-types group with 2 updates (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11872\"\u003e#11872\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/0eb973deb57b8d8b9bb2fe4e5cb471fabab51bac\"\u003e\u003ccode\u003e0eb973d\u003c/code\u003e\u003c/a\u003e Do not warn user when using a redirected config that came from a config with ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/0f8d69d31071abeb567aa3c8478492536b5740fb\"\u003e\u003ccode\u003e0f8d69d\u003c/code\u003e\u003c/a\u003e containers: users can set multiple tiers for constraints (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11755\"\u003e#11755\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/cloudflare/workers-sdk/commits/wrangler@4.59.1/packages/wrangler\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for wrangler since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `brace-expansion` from 2.0.1 to 2.1.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/juliangruber/brace-expansion/releases\"\u003ebrace-expansion's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBackport v5.0.6 change to v2 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/109\"\u003e#109\u003c/a\u003e)  c3a817c\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.1.0...v2.1.1\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v2.1.0...v2.1.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.0.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003epkg: publish on tag 2.x  14f1d91\u003c/li\u003e\n\u003cli\u003efmt  ed7780a\u003c/li\u003e\n\u003cli\u003eFix potential ReDoS Vulnerability or Inefficient Regular Expression (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/65\"\u003e#65\u003c/a\u003e)  36603d5\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.0.1...v2.0.2\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v2.0.1...v2.0.2\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/714b6228a5878cfc6b07dc319db0eb6376ab2c4d\"\u003e\u003ccode\u003e714b622\u003c/code\u003e\u003c/a\u003e 2.1.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/bdff773f98e5988616b7039cc9b508df5d640b22\"\u003e\u003ccode\u003ebdff773\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/5a5c07b25ea84a899322ebb820336260277cbe90\"\u003e\u003ccode\u003e5a5c07b\u003c/code\u003e\u003c/a\u003e 2.1.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/6463f2fd6a31f97a09c2f827513a7faaf96bde33\"\u003e\u003ccode\u003e6463f2f\u003c/code\u003e\u003c/a\u003e update lockfile\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1ba3c71f89fb3448c8be6dcf2d17b543c2738f16\"\u003e\u003ccode\u003e1ba3c71\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/aae3387e0d4c551480c963f1241abd3a80a279e6\"\u003e\u003ccode\u003eaae3387\u003c/code\u003e\u003c/a\u003e 2.1.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/5171e681c0922b7ae8bfaf9a331e309107be6edc\"\u003e\u003ccode\u003e5171e68\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/b25213dff0446d622f97d736420b9830ee1abc32\"\u003e\u003ccode\u003eb25213d\u003c/code\u003e\u003c/a\u003e 2.1.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1e30c930238d7162802d88a94189182def178dac\"\u003e\u003ccode\u003e1e30c93\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/878df3989e816dfb28cbe0d64de0b88738ff0ed6\"\u003e\u003ccode\u003e878df39\u003c/code\u003e\u003c/a\u003e 2.1.3\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.0.1...v2.1.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `browserslist` from 4.24.2 to 4.28.9\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/browserslist/browserslist/releases\"\u003ebrowserslist's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.28.9\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImprove \u003ccode\u003eor\u003c/code\u003e parsing performance (by \u003ca href=\"https://github.com/NotAFlightRisk\"\u003e\u003ccode\u003e@​NotAFlightRisk\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eincluding kaios\u003c/code\u003e in baseline queries (by \u003ca href=\"https://github.com/Jaybhade\"\u003e\u003ccode\u003e@​Jaybhade\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.7\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImproved parsing performance.\u003c/li\u003e\n\u003cli\u003eFixed unbounded memory growth (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed prototype write issue (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed Electron version queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003e\u0026gt;\u003c/code\u003e and \u003ccode\u003e\u0026gt;=\u003c/code\u003e queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eSyntaxError\u003c/code\u003e regression of 4.28.3.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed baseline query case-insensitivity (by \u003ca href=\"https://github.com/swwind\"\u003e\u003ccode\u003e@​swwind\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix prototype pollution (by \u003ca href=\"https://github.com/chluo1997\"\u003e\u003ccode\u003e@​chluo1997\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemoved Baseline warning since we have it own warning.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.27.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003eBROWSERSLIST_TRACE_WARNING\u003c/code\u003e environment variable.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.26.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003ethrowOnMissing\u003c/code\u003e with \u003ccode\u003eextends\u003c/code\u003e query (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.26.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003ebaseline-browser-mapping\u003c/code\u003e version requirement.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.26.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated Firefox ESR.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.26.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded Baseline queries (by \u003ca href=\"https://github.com/tonypconway\"\u003e\u003ccode\u003e@​tonypconway\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.25.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed Windows support for custom stats (by \u003ca href=\"https://github.com/torgeilo\"\u003e\u003ccode\u003e@​torgeilo\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.25.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed ReDoS (by \u003ca href=\"https://github.com/ericcornelissen\"\u003e\u003ccode\u003e@​ericcornelissen\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/browserslist/browserslist/blob/main/CHANGELOG.md\"\u003ebrowserslist's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.28.9\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImproved \u003ccode\u003eor\u003c/code\u003e parsing performance (by \u003ca href=\"https://github.com/NotAFlightRisk\"\u003e\u003ccode\u003e@​NotAFlightRisk\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eincluding kaios\u003c/code\u003e in baseline queries (by \u003ca href=\"https://github.com/Jaybhade\"\u003e\u003ccode\u003e@​Jaybhade\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.7\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImproved parsing performance.\u003c/li\u003e\n\u003cli\u003eFixed unbounded memory growth (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed prototype write issue (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed Electron version queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003e\u0026gt;\u003c/code\u003e and \u003ccode\u003e\u0026gt;=\u003c/code\u003e queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eSyntaxError\u003c/code\u003e regression of 4.28.3.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed baseline query case-insensitivity (by \u003ca href=\"https://github.com/swwind\"\u003e\u003ccode\u003e@​swwind\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix prototype pollution (by \u003ca href=\"https://github.com/chluo1997\"\u003e\u003ccode\u003e@​chluo1997\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemoved Baseline warning since we have it own warning.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.48.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003efirefox \u0026gt;= esr\u003c/code\u003e query support (by \u003ca href=\"https://github.com/SethFalco\"\u003e\u003ccode\u003e@​SethFalco\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed docs (by \u003ca href=\"https://github.com/SethFalco\"\u003e\u003ccode\u003e@​SethFalco\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.27.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003eBROWSERSLIST_TRACE_WARNING\u003c/code\u003e environment variable.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.26.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003ethrowOnMissing\u003c/code\u003e with \u003ccode\u003eextends\u003c/code\u003e query (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/12ed5252dabc14fee4e97b465894b2f90910ca62\"\u003e\u003ccode\u003e12ed525\u003c/code\u003e\u003c/a\u003e Release 4.28.9 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/b1d8cf9d7a7dc76f6585425a8360218289194297\"\u003e\u003ccode\u003eb1d8cf9\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/21517b651c915cdbbfb8c122268bc36f5cabb7ef\"\u003e\u003ccode\u003e21517b6\u003c/code\u003e\u003c/a\u003e Improve \u003ccode\u003eor\u003c/code\u003e parsing performance\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/f2f2e6cfb01bb4942941d328737546f4e2ae41ad\"\u003e\u003ccode\u003ef2f2e6c\u003c/code\u003e\u003c/a\u003e Release 4.28.8 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/d0787c88fa29ba895fea51cfe921232c7b5d1377\"\u003e\u003ccode\u003ed0787c8\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/fcf8fa9857b30ccdf801a548f5d09d3c4ff0d43f\"\u003e\u003ccode\u003efcf8fa9\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/browserslist/browserslist/issues/939\"\u003e#939\u003c/a\u003e from Jaybhade/fix/baseline-kaios-without-downstream\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/57ecd64454e9252afdd6a7e76926e13dda48a38c\"\u003e\u003ccode\u003e57ecd64\u003c/code\u003e\u003c/a\u003e fix: support \u0026quot;including kaios\u0026quot; without downstream\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/093a0f67bb0becda55235d767b134df3197c54a1\"\u003e\u003ccode\u003e093a0f6\u003c/code\u003e\u003c/a\u003e Update EM banner\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/b637868045806d2fba4c24eb0060e4cc8b1db276\"\u003e\u003ccode\u003eb637868\u003c/code\u003e\u003c/a\u003e Release 4.28.7 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/313f4659b9f985ade89d1d6a54a860371c41cc46\"\u003e\u003ccode\u003e313f465\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/browserslist/browserslist/compare/4.23.3...4.28.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for browserslist since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `glob` from 10.4.5 to 10.5.0\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.4.5...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `glob` from 11.0.0 to 11.1.0\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.4.5...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `minimatch` from 9.0.5 to 9.0.9\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/8a10e473e2e0ff03c2d4de308f257093af2bce21\"\u003e\u003ccode\u003e8a10e47\u003c/code\u003e\u003c/a\u003e 9.0.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/c6f180636cebd4de2f9af7ef29ca4c9bf2eeef02\"\u003e\u003ccode\u003ec6f1806\u003c/code\u003e\u003c/a\u003e brace-expansion@2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/446cfa3e2aa3ef45bd4a27fa4418221e158489f6\"\u003e\u003ccode\u003e446cfa3\u003c/code\u003e\u003c/a\u003e 9.0.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/8fa151ab95fd4e2acd6e1a81f10d02dc7c1098d3\"\u003e\u003ccode\u003e8fa151a\u003c/code\u003e\u003c/a\u003e docs: add warning about ReDoS\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/71b78a2a4cad3a40af08a39c065e71bbf69ea7f7\"\u003e\u003ccode\u003e71b78a2\u003c/code\u003e\u003c/a\u003e fix partial matching of globstar patterns\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/2de496f6d9362dd92460f35ffa6ff8de2907244b\"\u003e\u003ccode\u003e2de496f\u003c/code\u003e\u003c/a\u003e 9.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/0d4616de9193bf1d359271662e92657bb51b2f75\"\u003e\u003ccode\u003e0d4616d\u003c/code\u003e\u003c/a\u003e limit nested extglob recursion, flatten extglobs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/7117ef381e74deace1c62a74d2298c8fe61d10ca\"\u003e\u003ccode\u003e7117ef3\u003c/code\u003e\u003c/a\u003e 9.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/2418458b7fe82e0a1fd1a1b6f618c41c90b9848a\"\u003e\u003ccode\u003e2418458\u003c/code\u003e\u003c/a\u003e update deps, do not checkin dist\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/1d1f531009d5e4a86083de37e5ef3f301e073986\"\u003e\u003ccode\u003e1d1f531\u003c/code\u003e\u003c/a\u003e update deps\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/minimatch/compare/v9.0.5...v9.0.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `minimatch` from 5.1.6 to 5.1.9\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/8a10e473e2e0ff03c2d4de308f257093af2bce21\"\u003e\u003ccode\u003e8a10e47\u003c/code\u003e\u003c/a\u003e 9.0.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/c6f180636cebd4de2f9af7ef29ca4c9bf2eeef02\"\u003e\u003ccode\u003ec6f1806\u003c/code\u003e\u003c/a\u003e brace-expansion@2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/446cfa3e2aa3ef45bd4a27fa4418221e158489f6\"\u003e\u003ccode\u003e446cfa3\u003c/code\u003e\u003c/a\u003e 9.0.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/8fa151ab95fd4e2acd6e1a81f10d02dc7c1098d3\"\u003e\u003ccode\u003e8fa151a\u003c/code\u003e\u003c/a\u003e docs: add warning about ReDoS\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/71b78a2a4cad3a40af08a39c065e71bbf69ea7f7\"\u003e\u003ccode\u003e71b78a2\u003c/code\u003e\u003c/a\u003e fix partial matching of globstar patterns\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/2de496f6d9362dd92460f35ffa6ff8de2907244b\"\u003e\u003ccode\u003e2de496f\u003c/code\u003e\u003c/a\u003e 9.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/0d4616de9193bf1d359271662e92657bb51b2f75\"\u003e\u003ccode\u003e0d4616d\u003c/code\u003e\u003c/a\u003e limit nested extglob recursion, flatten extglobs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/7117ef381e74deace1c62a74d2298c8fe61d10ca\"\u003e\u003ccode\u003e7117ef3\u003c/code\u003e\u003c/a\u003e 9.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/2418458b7fe82e0a1fd1a1b6f618c41c90b9848a\"\u003e\u003ccode\u003e2418458\u003c/code\u003e\u003c/a\u003e update deps, do not checkin dist\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/1d1f531009d5e4a86083de37e5ef3f301e073986\"\u003e\u003ccode\u003e1d1f531\u003c/code\u003e\u003c/a\u003e update deps\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/minimatch/compare/v9.0.5...v9.0.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `js-yaml` from 4.1.0 to 4.3.2\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/nodeca/js-yaml/blob/4.3.2/CHANGELOG.md\"\u003ejs-yaml's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.3.2 - 2026-08-26\u003c/h2\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Hard-limit merge sequence size to 100.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Count empty mappings in merge sequences toward \u003ccode\u003emaxTotalMergeKeys\u003c/code\u003e\nto limit CPU usage, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/797\"\u003e#797\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.3.1 - 2026-07-31\u003c/h2\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Remove quadratic complexity from \u003ccode\u003e!!omap\u003c/code\u003e duplicate key detection.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.3.0 - 2026-06-27\u003c/h2\u003e\n\u003ch3\u003eAdded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Added \u003ccode\u003emaxTotalMergeKeys\u003c/code\u003e (10000) loader option to limit the total number of\nkeys processed by YAML merge (\u003ccode\u003e\u0026lt;\u0026lt;\u003c/code\u003e) across one \u003ccode\u003eload()\u003c/code\u003e / \u003ccode\u003eloadAll()\u003c/code\u003e call.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eRestore umd builds back to es5.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eRemoved\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] \u003ccode\u003emaxMergeSeqLength\u003c/code\u003e replaced with \u003ccode\u003emaxTotalMergeKeys\u003c/code\u003e for limiting YAML merge\nprocessing.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e[4.2.0] - 2026-06-01\u003c/h2\u003e\n\u003ch3\u003eAdded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003edocs/safety.md\u003c/code\u003e with notes about processing untrusted YAML.\u003c/li\u003e\n\u003cli\u003eAdded \u003ccode\u003emaxDepth\u003c/code\u003e (100) loader option. Not a problem, but gives a better\nexception instead of RangeError on stack overflow.\u003c/li\u003e\n\u003cli\u003eAdded \u003ccode\u003emaxMergeSeqLength\u003c/code\u003e (20) loader option. Not a problem after \u003ccode\u003emerge\u003c/code\u003e fix,\nbut an additional restriction for safety.\u003c/li\u003e\n\u003cli\u003eAdded sourcemaps to \u003ccode\u003edist/\u003c/code\u003e builds.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eStop resolving numbers with underscores as numeric scalars, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/627\"\u003e#627\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eSwitched dev toolchains to Vite / neostandard.\u003c/li\u003e\n\u003cli\u003eUpdated demo.\u003c/li\u003e\n\u003cli\u003eReorganized tests.\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003edist/\u003c/code\u003e files are no longer kept in the repository.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFix parsing of properties on the first implicit block mapping key, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/62\"\u003e#62\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eFix trailing whitespace handling when folding flow scalar lines, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/307\"\u003e#307\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eReject top-level block scalars without content indentation, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/280\"\u003e#280\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eEnsure numbers survive round-trip, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/737\"\u003e#737\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eFix test coverage for issue \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/221\"\u003e#221\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eFix flow scalar trailing whitespace folding, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/307\"\u003e#307\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/79ca68d90f333fbe6d9e42827527e62636200191\"\u003e\u003ccode\u003e79ca68d\u003c/code\u003e\u003c/a\u003e 4.3.2 released\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/d90b6612a5a84385bdcb556c44578eac76dc0f6b\"\u003e\u003ccode\u003ed90b661\u003c/code\u003e\u003c/a\u003e Backport merge limits from v5.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/86e91b815b8794c3c73a179c1770871e37ec2df8\"\u003e\u003ccode\u003e86e91b8\u003c/code\u003e\u003c/a\u003e 4.3.1 released\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/c3cc4b0bb9ddb9af2dd9b61e0d56f5ce7983cd4a\"\u003e\u003ccode\u003ec3cc4b0\u003c/code\u003e\u003c/a\u003e Backport quadratic complexity fix for !!omap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/33d05b5d29a8c21360f620f7e1c1706e24522eda\"\u003e\u003ccode\u003e33d05b5\u003c/code\u003e\u003c/a\u003e 4.3.0 released\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/663bfab6db2b4a146a9366fd685f069345be4ddb\"\u003e\u003ccode\u003e663bfab\u003c/code\u003e\u003c/a\u003e Drop demo publish, to not override new v5 one.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/1cb8c7b94bf75e15116869c1c0482dcb22785986\"\u003e\u003ccode\u003e1cb8c7b\u003c/code\u003e\u003c/a\u003e Add v4-legacy tag for publish\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/02f27afad532763263cd2b6be35c24ee8e1f6157\"\u003e\u003ccode\u003e02f27af\u003c/code\u003e\u003c/a\u003e Restore umd builds back to es5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/8be84edaf15e7c394fa3b813179d1bcc280e87fb\"\u003e\u003ccode\u003e8be84ed\u003c/code\u003e\u003c/a\u003e Fix es5 compatibility\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/59423c6f8cdc78742ac00e25a4dd39ef16b702e4\"\u003e\u003ccode\u003e59423c6\u003c/code\u003e\u003c/a\u003e Replace \u003ccode\u003emaxMergeSeqLength\u003c/code\u003e option with \u003ccode\u003emaxTotalMergeKeys\u003c/code\u003e (more robust). Ba...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/nodeca/js-yaml/compare/4.1.0...4.3.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `picomatch` from 2.3.1 to 2.3.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/releases\"\u003epicomatch's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.3.2\u003c/h2\u003e\n\u003cp\u003eThis is a security release fixing several security relevant issues.\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: exception when glob pattern contains constructor by \u003ca href=\"https://github.com/Jason3S\"\u003e\u003ccode\u003e@​Jason3S\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003emicromatch/picomatch#144\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\"\u003ehttps://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/blob/master/CHANGELOG.md\"\u003epicomatch's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.3.2 (2026-03-23)\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAvoided an exception when a glob pattern contains \u003ccode\u003econstructor\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003e#144\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/3f4f10e\"\u003e3f4f10e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBackported the extglob-quantifier ReDoS fix from 4.0.4. Risky repeated extglobs are now safely rewritten or treated as literals by default; positive numeric \u003ccode\u003emaxExtglobRecursion\u003c/code\u003e values allow limited nesting, while \u003ccode\u003efalse\u003c/code\u003e disables the safeguard (\u003ca href=\"https://github.com/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/eec17ae\"\u003eeec17ae\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003ePrevented inherited object properties from being interpreted as POSIX character classes (\u003ca href=\"https://github.com/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/fc1f6b6\"\u003efc1f6b6\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/81cba8d4b767cab3cb29d26eb4f691eed75b73b2\"\u003e\u003ccode\u003e81cba8d\u003c/code\u003e\u003c/a\u003e Publish 2.3.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/fc1f6b69006e9435caf8fb40d8aff378bc0b7bce\"\u003e\u003ccode\u003efc1f6b6\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/eec17aee5428a7249e9ca5adbb8a0d28fa29619b\"\u003e\u003ccode\u003eeec17ae\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/78f8ca4362d9e66cadea97b93e292f10096452ed\"\u003e\u003ccode\u003e78f8ca4\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/156\"\u003e#156\u003c/a\u003e from micromatch/backport-144\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/3f4f10eaa65bf3a52e8f2999674cd27e11fa3c9b\"\u003e\u003ccode\u003e3f4f10e\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/144\"\u003e#144\u003c/a\u003e from Jason3S/jdent-object-properties\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `serialize-javascript` from 6.0.2 to 7.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/yahoo/serialize-javascript/releases\"\u003eserialize-javascript's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.1.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: fix XSS bypass via split \u003ccode\u003e\u0026lt;/script\u003c/code\u003e payload across function bodies by \u003ca href=\"https://github.com/okuryu\"\u003e\u003ccode\u003e@​okuryu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/226\"\u003eyahoo/serialize-javascript#226\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease: v7.1.1 by \u003ca href=\"https://github.com/okuryu\"\u003e\u003ccode\u003e@​okuryu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/227\"\u003eyahoo/serialize-javascript#227\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/yahoo/serialize-javascript/compare/v7.1.0...v7.1.1\"\u003ehttps://github.com/yahoo/serialize-javascript/compare/v7.1.0...v7.1.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.1.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add Node.js 26 to test matrix by \u003ca href=\"https://github.com/okuryu\"\u003e\u003ccode\u003e@​okuryu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/224\"\u003eyahoo/serialize-javascript#224\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease: v7.1.0 by \u003ca href=\"https://github.com/okuryu\"\u003e\u003ccode\u003e@​okuryu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/225\"\u003eyahoo/serialize-javascript#225\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/yahoo/serialize-javascript/compare/v7.0.7...v7.1.0\"\u003ehttps://github.com/yahoo/serialize-javascript/compare/v7.0.7...v7.1.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.0.7\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: reject spoofed RegExp objects with non-string source property by \u003ca href=\"https://github.com/redonkulus\"\u003e\u003ccode\u003e@​redonkulus\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/222\"\u003eyahoo/serialize-javascript#222\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease: v7.0.7 by \u003ca href=\"https://github.com/okuryu\"\u003e\u003ccode\u003e@​okuryu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/223\"\u003eyahoo/serialize-javascript#223\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/yahoo/serialize-javascript/compare/v7.0.6...v7.0.7\"\u003ehttps://github.com/yahoo/serialize-javascript/compare/v7.0.6...v7.0.7\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.0.6\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ebuild(deps-dev): bump lodash from 4.17.23 to 4.18.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/215\"\u003eyahoo/serialize-javascript#215\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: reject spoofed URL objects with non-string toString() result by \u003ca href=\"https://github.com/redonkulus\"\u003e\u003ccode\u003e@​redonkulus\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/217\"\u003eyahoo/serialize-javascript#217\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease: v7.0.6 by \u003ca href=\"https://github.com/okuryu\"\u003e\u003ccode\u003e@​okuryu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/221\"\u003eyahoo/serialize-javascript#221\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/yahoo/serialize-javascript/compare/v7.0.5...v7.0.6\"\u003ehttps://github.com/yahoo/serialize-javascript/compare/v7.0.5...v7.0.6\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.0.5\u003c/h2\u003e\n\u003ch3\u003eFixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eImprove robustness and validation for array-like object serialization.\u003c/li\u003e\n\u003cli\u003eFix an issue where certain object structures could lead to excessive CPU usage.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eFor more details, please see GHSA-qj8w-gfj5-8c6v.\u003c/p\u003e\n\u003ch2\u003ev7.0.4\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003erelease: v7.0.4 by \u003ca href=\"https://github.com/okuryu\"\u003e\u003ccode\u003e@​okuryu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/211\"\u003eyahoo/serialize-javascript#211\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/yahoo/serialize-javascript/compare/v7.0.3...v7.0.4\"\u003ehttps://github.com/yahoo/serialize-javascript/compare/v7.0.3...v7.0.4\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.0.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(CVE-2020-7660): fix for RegExp.flags and  Date.prototype.toISOString (\u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/issues/207\"\u003e#207\u003c/a\u003e)  2e609d0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/8c8caa7066a52106fa719c6abb5dc69858c9f799\"\u003e\u003ccode\u003e8c8caa7\u003c/code\u003e\u003c/a\u003e release: v7.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/ffda9f11d946f2d161471340f92ac0b7a7208449\"\u003e\u003ccode\u003effda9f1\u003c/code\u003e\u003c/a\u003e fix: fix XSS bypass via split \u003ccode\u003e\u0026lt;/script\u003c/code\u003e payload across function bodies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/739145a671afd4b81a416e15888f8f5e637d08d6\"\u003e\u003ccode\u003e739145a\u003c/code\u003e\u003c/a\u003e release: v7.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/57865edc0f3ae4fcc3c649bbb135122303519c11\"\u003e\u003ccode\u003e57865ed\u003c/code\u003e\u003c/a\u003e feat: add Node.js 26 to test matrix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/01bec60c108143e69f6b105e443d62a13b61cbbe\"\u003e\u003ccode\u003e01bec60\u003c/code\u003e\u003c/a\u003e release: v7.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/500971592a433239011332b7f0217aa0cb011226\"\u003e\u003ccode\u003e5009715\u003c/code\u003e\u003c/a\u003e fix: reject spoofed RegExp objects with non-string source property\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/153eb437d45310f34f4b8414a4ac1f8658a622dd\"\u003e\u003ccode\u003e153eb43\u003c/code\u003e\u003c/a\u003e release: v7.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/a83d2cb9e04a85726827a23c941f03177018774b\"\u003e\u003ccode\u003ea83d2cb\u003c/code\u003e\u003c/a\u003e fix: reject spoofed URL objects with non-string toString() result\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/451af655bcf055489f39a2629673ae8f67023b90\"\u003e\u003ccode\u003e451af65\u003c/code\u003e\u003c/a\u003e build(deps-dev): bump lodash from 4.17.23 to 4.18.1 (\u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/issues/215\"\u003e#215\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/df3f1c1fa9ca16b050ae893cb63ac23c91deed55\"\u003e\u003ccode\u003edf3f1c1\u003c/code\u003e\u003c/a\u003e release: v7.0.5\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/yahoo/serialize-javascript/compare/v6.0.2...v7.1.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for serialize-javascript since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `sharp` from 0.33.5 to 0.34.5\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/lovell/sharp/releases\"\u003esharp's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev0.34.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eUpgrade to libvips v8.17.3 for upstream bug fixes.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd experimental support for prebuilt Linux RISC-V 64-bit binaries.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eSupport building from source with npm v12+, deprecate \u003ccode\u003e--build-from-source\u003c/code\u003e flag.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4458\"\u003e#4458\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd support for BigTIFF output.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/pull/4459\"\u003e#4459\u003c/a\u003e\n\u003ca href=\"https://github.com/throwbi\"\u003e\u003ccode\u003e@​throwbi\u003c/code\u003e\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eImprove error messaging when only warnings issued.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4465\"\u003e#4465\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eSimplify ICC processing when retaining input profiles.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4468\"\u003e#4468\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev0.34.5-rc.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eUpgrade to libvips v8.17.3 for upstream bug fixes.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd experimental support for prebuilt Linux RISC-V 64-bit binaries.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eSupport building from source with npm v12+, deprecate \u003ccode\u003e--build-from-source\u003c/code\u003e flag.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4458\"\u003e#4458\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd support for BigTIFF output.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/pull/4459\"\u003e#4459\u003c/a\u003e\n\u003ca href=\"https://github.com/throwbi\"\u003e\u003ccode\u003e@​throwbi\u003c/code\u003e\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eImprove error messaging when only warnings issued.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4465\"\u003e#4465\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eSimplify ICC processing when retaining input profiles.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4468\"\u003e#4468\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev0.34.5-rc.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eUpgrade to libvips v8.17.3 for upstream bug fixes.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd experimental support for prebuilt Linux RISC-V 64-bit binaries.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eSupport building from source with npm v12+, deprecate \u003ccode\u003e--build-from-source\u003c/code\u003e flag.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4458\"\u003e#4458\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd support for BigTIFF output.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/pull/4459\"\u003e#4459\u003c/a\u003e\n\u003ca href=\"https://github.com/throwbi\"\u003e\u003ccode\u003e@​throwbi\u003c/code\u003e\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eImprove error messaging when only warnings issued.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4465\"\u003e#4465\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/e0624568686516209c434de2d3c0ef6688f0811d\"\u003e\u003ccode\u003ee062456\u003c/code\u003e\u003c/a\u003e Release v0.34.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/6450c704a686d4205a2c21ddb1d10d5fc28c6c23\"\u003e\u003ccode\u003e6450c70\u003c/code\u003e\u003c/a\u003e Prerelease v0.34.5-rc.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/f7c95d1bf0f24049ee6ee77b21b1c1bb8d181aa2\"\u003e\u003ccode\u003ef7c95d1\u003c/code\u003e\u003c/a\u003e TypeScript: consolidate a few enum-like properties\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/ef86a75560adb40605d3dfc85dc3656a0b88c413\"\u003e\u003ccode\u003eef86a75\u003c/code\u003e\u003c/a\u003e Prerelease v0.34.5-rc.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/6c1e840098ea4a25d833518b30703d9b0af83d32\"\u003e\u003ccode\u003e6c1e840\u003c/code\u003e\u003c/a\u003e Use structured binding for tuples where possible\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/e1628d8ef5033dedde9ed1ddd4dd681e1fc30e1e\"\u003e\u003ccode\u003ee1628d8\u003c/code\u003e\u003c/a\u003e Simplify ICC processing when retaining input profiles \u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4468\"\u003e#4468\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/4f9f8179a6350448a32851e5daf5508d61c727ba\"\u003e\u003ccode\u003e4f9f817\u003c/code\u003e\u003c/a\u003e Linter: apply all recommended biome settings\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/09d5aa8cfa09522ddc67342295cb75ab1d044b09\"\u003e\u003ccode\u003e09d5aa8\u003c/code\u003e\u003c/a\u003e Docs: update internal and libvips doc links\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/040b73ca746f4b8e71950708de4a464c7ba6a188\"\u003e\u003ccode\u003e040b73c\u003c/code\u003e\u003c/a\u003e Upgrade to libvips v8.17.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/1f2f33d9a7eb8ffba91b8576e49a39df5fdebb76\"\u003e\u003ccode\u003e1f2f33d\u003c/code\u003e\u003c/a\u003e Ensure licensing headers are retained by code bundlers\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/lovell/sharp/compare/v0.33.5...v0.34.5\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for sharp since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version modifies \u003ccode\u003einstall\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `undici` from 7.15.0 to 7.14.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/nodejs/undici/releases\"\u003eundici's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev6.28.1\u003c/h2\u003e\n\u003ch2\u003e⚠️ Security fixes\u003c/h2\u003e\n\u003ch3\u003eHigh severity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-rfgv-xxqx-mfg5\"\u003eGHSA-rfgv-xxqx-mfg5\u003c/a\u003e: a WebSocket server could select a subprotocol when none was requested, causing an uncaught \u003ccode\u003eTypeError\u003c/code\u003e that could terminate the process. Undici now rejects the handshake with protocol error 1002. Fixed by \u003ca href=\"https://github.com/nodejs/undici/commit/2af0faf88b906d3127a360c3ac75164c0f95e5a5\"\u003e2af0faf8\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eMedium severity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-3wwx-pv8p-q78v\"\u003eGHSA-3wwx-pv8p-q78v\u003c/a\u003e: a malformed permessage-deflate payload exceeding the configured decompression limit could emit an unhandled zlib error and terminate the process. Undici now destroys the inflater after reaching the limit. Fixed by \u003ca href=\"https://github.com/nodejs/undici/commit/07c60d9c7099a910451244afe42861bbdbdd974c\"\u003e07c60d9c\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eLow severity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-r53p-7pc4-xj5r\"\u003eGHSA-r53p-7pc4-xj5r\u003c/a\u003e: the retry interceptor could concatenate a resumed response with inconsistent framing into downstream output, enabling response splitting or corruption. Undici now validates \u003ccode\u003eContent-Range\u003c/code\u003e against the original response framing before resuming. Fixed by \u003ca href=\"https://github.com/nodejs/undici/commit/ce31bc824b578008faae5d3350da66c1b5f71548\"\u003ece31bc82\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eperf: reduce EventSourceStream parser allocations (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5032\"\u003e#5032\u003c/a\u003e) by \u003ca href=\"https://github.com/mcollina\"\u003e\u003ccode\u003e@​mcollina\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/nodejs/undici/pull/5647\"\u003enodejs/undici#5647\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[v6.x] perf(h1): drop idle-socket timer floor with a ref'd setImmediate (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5707\"\u003e#5707\u003c/a\u003e) by \u003ca href=\"https://github.com/mcollina\"\u003e\u003ccode\u003e@​mcollina\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/nodejs/undici/pull/5770\"\u003enodejs/undici#5770\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/nodejs/undici/compare/v6.28.0...v6.28.1\"\u003ehttps://github.com/nodejs/undici/compare/v6.28.0...v6.28.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev6.28.0\u003c/h2\u003e\n\u003ch2\u003e⚠️ Security fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-m8rv-5g2x-5cg5\"\u003eGHSA-m8rv-5g2x-5cg5\u003c/a\u003e: a malicious \u003ccode\u003etype\u003c/code\u003e property on a duck-typed blob-like HTTP/1.1 request body could inject CRLF sequences into the generated \u003ccode\u003econtent-type\u003c/code\u003e header. Undici now coerces and validates the value before adding it to the request. Fixed by \u003ca href=\"https://github.com/nodejs/undici/commit/740a0b7c173cb4a83a5b693e96e8f3a116cfc400\"\u003e740a0b7c\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-8xcm-r25x-g524\"\u003eGHSA-8xcm-r25x-g524\u003c/a\u003e: the retry interceptor could expose a stale \u003ccode\u003eContent-Length\u003c/code\u003e after resuming a partial response, potentially causing downstream response desynchronization, hangs, or corruption. Undici now rejects partial responses whose \u003ccode\u003eContent-Length\u003c/code\u003e is inconsistent with \u003ccode\u003eContent-Range\u003c/code\u003e. Fixed by \u003ca href=\"https://github.com/nodejs/undici/commit/cba3a52ac2e7abcc4e656d82af8579ea82c2bb9e\"\u003ecba3a52a\u003c/a\u003e, with corrected fixtures in \u003ca href=\"https://github.com/nodejs/undici/commit/4fd5a0c61e627f928b7003adc4ffe1e55ec63420\"\u003e4fd5a0c6\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-v3r7-h72x-cjcm\"\u003eGHSA-v3r7-h72x-cjcm\u003c/a\u003e: unsanitized \u003ccode\u003edomain\u003c/code\u003e and \u003ccode\u003eunparsed\u003c/code\u003e values passed to \u003ccode\u003esetCookie()\u003c/code\u003e could inject cookie attributes. Undici now validates cookie domains, paths, and unparsed attributes more strictly. Fixed by \u003ca href=\"https://github.com/nodejs/undici/commit/af7484043ee075a6f216da0ad77e1dac55199235\"\u003eaf748404\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-4cwx-7wf7-3272\"\u003eGHSA-4cwx-7wf7-3272\u003c/a\u003e and \u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-jr45-8vmc-qm54\"\u003eGHSA-jr45-8vmc-qm54\u003c/a\u003e affect the cache interceptor in Undici v7 and v8; Undici v6 is not in their affected version ranges.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/nodejs/undici/compare/v6.27.0...v6.28.0\"\u003ehttps://github.com/nodejs/undici/compare/v6.27.0...v6.28.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev6.27.0\u003c/h2\u003e\n\u003ch1\u003e⚠️ Security Release\u003c/h1\u003e\n\u003cp\u003eThis release line addresses \u003cstrong\u003e4 security advisories\u003c/strong\u003e.\u003c/p\u003e\n\u003cblockquote\u003e\n\u003cp\u003e\u003cstrong\u003eAction required:\u003c/strong\u003e Upgrade to \u003cstrong\u003eundici 6.27.0\u003c/strong\u003e or later.\u003c/p\u003e\n\u003cpre lang=\"sh\"\u003e\u003ccode\u003enpm install undici@^6.27.0\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cblockquote\u003e\n\u003cp\u003e\u003cstrong\u003eNote on patched version:\u003c/strong\u003e the v6 fixes shipped in \u003cstrong\u003ev6.27.0\u003c/strong\u003e, not \u003ccode\u003e6.26.0\u003c/code\u003e\n— \u003ccode\u003ev6.26.0\u003c/code\u003e contains only the chunked-EOF fix (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5308\"\u003e#5308\u003c/a\u003e) and the version bump, none\nof the security fixes below.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/ffc8aa0fdd4c54024f384e57784d5047c8b4085a\"\u003e\u003ccode\u003effc8aa0\u003c/code\u003e\u003c/a\u003e Bumped v6.28.1 (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5773\"\u003e#5773\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/3866a3bc4ebaea2c6400db9193c2366072080dc4\"\u003e\u003ccode\u003e3866a3b\u003c/code\u003e\u003c/a\u003e perf(h1): drop idle-socket timer floor with a ref'd setImmediate (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5707\"\u003e#5707\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5770\"\u003e#5770\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/ce31bc824b578008faae5d3350da66c1b5f71548\"\u003e\u003ccode\u003ece31bc8\u003c/code\u003e\u003c/a\u003e fix(retry): validate resumed response framing\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/2af0faf88b906d3127a360c3ac75164c0f95e5a5\"\u003e\u003ccode\u003e2af0faf\u003c/code\u003e\u003c/a\u003e fix(websocket): reject unrequested subprotocols\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/07c60d9c7099a910451244afe42861bbdbdd974c\"\u003e\u003ccode\u003e07c60d9\u003c/code\u003e\u003c/a\u003e fix(websocket): destroy inflater after decompression limit\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/bd90fff2a6e1350ba87e9b70811c5337502d2e39\"\u003e\u003ccode\u003ebd90fff\u003c/code\u003e\u003c/a\u003e perf: reduce EventSourceStream parser allocations (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5032\"\u003e#5032\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5647\"\u003e#5647\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/01a912e49a50c48009ed2639d2a457a6ec26752a\"\u003e\u003ccode\u003e01a912e\u003c/code\u003e\u003c/a\u003e Bumped v6.28.0 (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5591\"\u003e#5591\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/481ecfc3280292ab7eb0abbc4d0139219126f15e\"\u003e\u003ccode\u003e481ecfc\u003c/code\u003e\u003c/a\u003e Use Node 22 and npm 11 to release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/740a0b7c173cb4a83a5b693e96e8f3a116cfc400\"\u003e\u003ccode\u003e740a0b7\u003c/code\u003e\u003c/a\u003e fix: validate blob body content type\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/2698e492ed22c9ec704b5df573d612bdd03f6ca0\"\u003e\u003ccode\u003e2698e49\u003c/code\u003e\u003c/a\u003e fix: validate coerced header values for CRLF (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5579\"\u003e#5579\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/nodejs/undici/compare/v6.21.3...v6.28.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for undici since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ws` from 8.18.0 to 8.21.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/websockets/ws/releases\"\u003ews's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.21.0\u003c/h2\u003e\n\u003ch1\u003eFeatures\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eIntroduced the \u003ccode\u003emaxBufferedChunks\u003c/code\u003e and \u003ccode\u003emaxFragments\u003c/code\u003e options (2b2abd45).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eBug fixes\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eFixed a remote memory exhaustion DoS vulnerability (2b2abd45).\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eA high volume of tiny fragments and data chunks could be sent by a peer, using\nmodest network traffic, to crash a \u003ccode\u003ews\u003c/code\u003e server or client due to OOM.\u003c/p\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003eimport { WebSocket, WebSocketServer } from 'ws';\r\n\u003cp\u003econst wss = new WebSocketServer({ port: 0 }, function () {\nconst data = Buffer.alloc(1);\nconst options = { fin: false };\nconst { port } = wss.address();\nconst ws = new WebSocket(\u003ccode\u003ews://localhost:${port}\u003c/code\u003e);\u003c/p\u003e\n\u003cp\u003ews.on('open', function () {\n(function send() {\nws.send(data, options, function (err) {\nif (err) return;\nsend();\n});\n})();\n});\u003c/p\u003e\n\u003cp\u003ews.on('error', console.error);\nws.on('close', function (code, reason) {\nconsole.log(\u003ccode\u003eclient close - code: ${code} reason: ${reason.toString()}\u003c/code\u003e);\n});\n});\u003c/p\u003e\n\u003cp\u003ewss.on('connection', function (ws) {\nws.on('error', console.error);\nws.on('close', function (code, reason) {\nconsole.log(\u003ccode\u003eserver close - code: ${code} reason: ${reason.toString()}\u003c/code\u003e);\n});\n});\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003cp\u003eThe vulnerability was responsibly disclosed and fixed by \u003ca href=\"https://github.com/Nadav0077\"\u003eNadav Magier\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003eIn vulnerable versions, the issue can be mitigated by lowering the value of the\n\u003ccode\u003emaxPayload\u003c/code\u003e option if possible.\u003c/p\u003e\n\u003ch2\u003e8.20.1\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/websockets/ws/commit/bca91adf15677e47dbe4f959653452727be28b94\"\u003e\u003ccode\u003ebca91ad\u003c/code\u003e\u003c/a\u003e [dist] 8.21.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/websockets/ws/co...\n\n_Description has been truncated_","html_url":"https://github.com/lupiter/rageagain/pull/16","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/lupiter%2Frageagain/issues/16","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/16/packages"},{"uuid":"5459125583","node_id":"PR_kwDOOruz0c8AAAABDkhxVA","number":92,"state":"open","title":"Bump the patch-updates group across 1 directory with 14 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-15T07:47:31.000Z","updated_at":"2026-09-15T07:49:02.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"patch-updates","update_count":14,"packages":[{"name":"@astrojs/check","old_version":"0.9.9","new_version":"0.9.10","repository_url":"https://github.com/withastro/astro"},{"name":"@astrojs/sitemap","old_version":"3.7.3","new_version":"3.7.4","repository_url":"https://github.com/withastro/astro"},{"name":"@astrojs/vercel","old_version":"11.0.2","new_version":"11.0.10","repository_url":"https://github.com/withastro/astro"},{"name":"@iconify-json/material-symbols","old_version":"1.2.50","new_version":"1.2.92","repository_url":"https://github.com/iconify/icon-sets"},{"name":"@tailwindcss/typography","old_version":"0.5.19","new_version":"0.5.20","repository_url":"https://github.com/tailwindlabs/tailwindcss-typography"},{"name":"fast-xml-parser","old_version":"4.5.6","new_version":"4.5.7","repository_url":"https://github.com/NaturalIntelligence/fast-xml-parser"},{"name":"nodemailer","old_version":"8.0.7","new_version":"8.0.11","repository_url":"https://github.com/nodemailer/nodemailer"},{"name":"@types/nodemailer","old_version":"8.0.0","new_version":"8.0.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"sanitize-html","old_version":"2.17.0","new_version":"2.17.7","repository_url":"https://github.com/apostrophecms/apostrophe"},{"name":"@types/sanitize-html","old_version":"2.16.0","new_version":"2.16.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"ua-parser-js","old_version":"2.0.9","new_version":"2.0.10","repository_url":"https://github.com/faisalman/ua-parser-js"},{"name":"@astrojs/ts-plugin","old_version":"1.10.10","new_version":"1.10.11","repository_url":"https://github.com/withastro/astro"},{"name":"cssnano","old_version":"7.1.3","new_version":"7.1.9","repository_url":"https://github.com/cssnano/cssnano"},{"name":"glob","old_version":"13.0.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"}],"path":null,"ecosystem":"npm"},"body":"Bumps the patch-updates group with 14 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@astrojs/check](https://github.com/withastro/astro/tree/HEAD/packages/language-tools/astro-check) | `0.9.9` | `0.9.10` |\n| [@astrojs/sitemap](https://github.com/withastro/astro/tree/HEAD/packages/integrations/sitemap) | `3.7.3` | `3.7.4` |\n| [@astrojs/vercel](https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel) | `11.0.2` | `11.0.10` |\n| [@iconify-json/material-symbols](https://github.com/iconify/icon-sets) | `1.2.50` | `1.2.92` |\n| [@tailwindcss/typography](https://github.com/tailwindlabs/tailwindcss-typography) | `0.5.19` | `0.5.20` |\n| [fast-xml-parser](https://github.com/NaturalIntelligence/fast-xml-parser) | `4.5.6` | `4.5.7` |\n| [nodemailer](https://github.com/nodemailer/nodemailer) | `8.0.7` | `8.0.11` |\n| [@types/nodemailer](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/nodemailer) | `8.0.0` | `8.0.1` |\n| [sanitize-html](https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html) | `2.17.0` | `2.17.7` |\n| [@types/sanitize-html](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/sanitize-html) | `2.16.0` | `2.16.1` |\n| [ua-parser-js](https://github.com/faisalman/ua-parser-js) | `2.0.9` | `2.0.10` |\n| [@astrojs/ts-plugin](https://github.com/withastro/astro/tree/HEAD/packages/language-tools/ts-plugin) | `1.10.10` | `1.10.11` |\n| [cssnano](https://github.com/cssnano/cssnano) | `7.1.3` | `7.1.9` |\n| [glob](https://github.com/isaacs/node-glob) | `13.0.0` | `13.0.6` |\n\n\nUpdates `@astrojs/check` from 0.9.9 to 0.9.10\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/releases\"\u003e@​astrojs/check's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/check\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.9.10\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17447\"\u003e#17447\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/b01a6921cd8be574db2d82a6d2bbde7c7d319295\"\u003e\u003ccode\u003eb01a692\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ocavue\"\u003e\u003ccode\u003e@​ocavue\u003c/code\u003e\u003c/a\u003e! - Update dependency \u003ccode\u003eyargs\u003c/code\u003e to version 18. See the \u003ca href=\"https://github.com/yargs/yargs/releases/tag/v18.0.0\"\u003eyargs changelog\u003c/a\u003e for details.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/blob/main/packages/language-tools/astro-check/CHANGELOG.md\"\u003e@​astrojs/check's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e0.9.10\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17447\"\u003e#17447\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/b01a6921cd8be574db2d82a6d2bbde7c7d319295\"\u003e\u003ccode\u003eb01a692\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ocavue\"\u003e\u003ccode\u003e@​ocavue\u003c/code\u003e\u003c/a\u003e! - Update dependency \u003ccode\u003eyargs\u003c/code\u003e to version 18. See the \u003ca href=\"https://github.com/yargs/yargs/releases/tag/v18.0.0\"\u003eyargs changelog\u003c/a\u003e for details.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/112d3ea14cf997218239fd8a436707e56a3815fb\"\u003e\u003ccode\u003e112d3ea\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/astro-check/issues/17469\"\u003e#17469\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/b01a6921cd8be574db2d82a6d2bbde7c7d319295\"\u003e\u003ccode\u003eb01a692\u003c/code\u003e\u003c/a\u003e chore(deps): update \u003ccode\u003eyargs\u003c/code\u003e to v18 (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/astro-check/issues/17447\"\u003e#17447\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/3652d1cff899be55fc2441c2e0d39f4756d8d960\"\u003e\u003ccode\u003e3652d1c\u003c/code\u003e\u003c/a\u003e chore: merge main into next\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/8062391a97fb2a80f7448f1d5b5ac3a4119d3b23\"\u003e\u003ccode\u003e8062391\u003c/code\u003e\u003c/a\u003e chore(deps): dedupe \u003ccode\u003evite\u003c/code\u003e installations (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/astro-check/issues/16788\"\u003e#16788\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/ce88423b0b16858b1767dd32ed23f3ade1ceeabf\"\u003e\u003ccode\u003ece88423\u003c/code\u003e\u003c/a\u003e Dedupe \u003ccode\u003evite\u003c/code\u003e (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/astro-check/issues/16787\"\u003e#16787\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/b8061a6f0a065752f6947aaf579c56bc0e747715\"\u003e\u003ccode\u003eb8061a6\u003c/code\u003e\u003c/a\u003e refactor: use TypeScript project service in ESLint (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/astro-check/issues/16623\"\u003e#16623\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/5a8cd099fe373f907b8884cd596eee76a8d48952\"\u003e\u003ccode\u003e5a8cd09\u003c/code\u003e\u003c/a\u003e refactor: update tsconfig to use TypeScript project references (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/astro-check/issues/16505\"\u003e#16505\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/withastro/astro/commits/@astrojs/check@0.9.10/packages/language-tools/astro-check\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@astrojs/sitemap` from 3.7.3 to 3.7.4\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/releases\"\u003e@​astrojs/sitemap's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/sitemap\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.7.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17851\"\u003e#17851\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/52d3f56999ecdf92510b2c16ed2a3a4785b9c73a\"\u003e\u003ccode\u003e52d3f56\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/apps/astro-factory\"\u003e\u003ccode\u003e@​astro-factory\u003c/code\u003e\u003c/a\u003e! - Fixes the sitemap outputting a URL with an empty path for the homepage (e.g. \u003ccode\u003ehttps://example.com\u003c/code\u003e instead of \u003ccode\u003ehttps://example.com/\u003c/code\u003e) when \u003ccode\u003etrailingSlash\u003c/code\u003e is set to \u003ccode\u003e\u0026quot;never\u0026quot;\u003c/code\u003e or \u003ccode\u003ebuild.format\u003c/code\u003e is set to \u003ccode\u003e\u0026quot;file\u0026quot;\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/blob/main/packages/integrations/sitemap/CHANGELOG.md\"\u003e@​astrojs/sitemap's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.7.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17851\"\u003e#17851\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/52d3f56999ecdf92510b2c16ed2a3a4785b9c73a\"\u003e\u003ccode\u003e52d3f56\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/apps/astro-factory\"\u003e\u003ccode\u003e@​astro-factory\u003c/code\u003e\u003c/a\u003e! - Fixes the sitemap outputting a URL with an empty path for the homepage (e.g. \u003ccode\u003ehttps://example.com\u003c/code\u003e instead of \u003ccode\u003ehttps://example.com/\u003c/code\u003e) when \u003ccode\u003etrailingSlash\u003c/code\u003e is set to \u003ccode\u003e\u0026quot;never\u0026quot;\u003c/code\u003e or \u003ccode\u003ebuild.format\u003c/code\u003e is set to \u003ccode\u003e\u0026quot;file\u0026quot;\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/2fdf731428aa738d5dcf3041b4e78eb9d036968c\"\u003e\u003ccode\u003e2fdf731\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/sitemap/issues/17849\"\u003e#17849\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/52d3f56999ecdf92510b2c16ed2a3a4785b9c73a\"\u003e\u003ccode\u003e52d3f56\u003c/code\u003e\u003c/a\u003e fix(\u003ccode\u003e@​astrojs/sitemap\u003c/code\u003e): preserve root path \u003ccode\u003e/\u003c/code\u003e in sitemap URLs when trailingSl...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/2bfb179545249786e9f395325c88a9dfef574acb\"\u003e\u003ccode\u003e2bfb179\u003c/code\u003e\u003c/a\u003e chore: simpler package.json types (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/sitemap/issues/17229\"\u003e#17229\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/withastro/astro/commits/@astrojs/sitemap@3.7.4/packages/integrations/sitemap\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@astrojs/vercel` from 11.0.2 to 11.0.10\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/releases\"\u003e@​astrojs/vercel's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/vercel\u003c/code\u003e\u003ca href=\"https://github.com/11\"\u003e\u003ccode\u003e@​11\u003c/code\u003e\u003c/a\u003e.0.10\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17818\"\u003e#17818\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/c0b65811dfa0dafa1aa04b7d6d67fd09250ff8c1\"\u003e\u003ccode\u003ec0b6581\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/florian-lefebvre\"\u003e\u003ccode\u003e@​florian-lefebvre\u003c/code\u003e\u003c/a\u003e! - Updates the development image service to forward every argument it receives to Astro's Sharp service, including the new \u003ccode\u003elogger\u003c/code\u003e parameter\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/vercel\u003c/code\u003e\u003ca href=\"https://github.com/11\"\u003e\u003ccode\u003e@​11\u003c/code\u003e\u003c/a\u003e.0.9\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17450\"\u003e#17450\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/19dae210d42bd22662ee678c173676573b6168f2\"\u003e\u003ccode\u003e19dae21\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ocavue\"\u003e\u003ccode\u003e@​ocavue\u003c/code\u003e\u003c/a\u003e! - Updates dependency \u003ccode\u003e@vercel/analytics\u003c/code\u003e to v2. See the \u003ca href=\"https://github.com/vercel/analytics/releases/tag/v2.0.0\"\u003echangelog\u003c/a\u003e for more details.\nUpdates dependency \u003ccode\u003e@vercel/routing-utils\u003c/code\u003e to v6. See the \u003ca href=\"https://github.com/vercel/vercel/blob/@vercel/routing-utils@6.4.0/packages/routing-utils/CHANGELOG.md#600\"\u003echangelog\u003c/a\u003e for more details.\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [\u003ca href=\"https://github.com/withastro/astro/commit/f8e94585ab6c38e2702ee1e2e540858f72058a40\"\u003e\u003ccode\u003ef8e9458\u003c/code\u003e\u003c/a\u003e]:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​astrojs/internal-helpers\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.11.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/vercel\u003c/code\u003e\u003ca href=\"https://github.com/11\"\u003e\u003ccode\u003e@​11\u003c/code\u003e\u003c/a\u003e.0.8\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17794\"\u003e#17794\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/dd29ce81f5b562f5d0dccdd96e28dade350c5e4c\"\u003e\u003ccode\u003edd29ce8\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/apps/astro-factory\"\u003e\u003ccode\u003e@​astro-factory\u003c/code\u003e\u003c/a\u003e! - Fixes a bug where \u003ccode\u003e@vercel/nft\u003c/code\u003e file tracing silently dropped all dependency files when \u003ccode\u003eoutDir\u003c/code\u003e was configured outside \u003ccode\u003eroot\u003c/code\u003e, causing deployed functions to crash with \u003ccode\u003eERR_MODULE_NOT_FOUND\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/vercel\u003c/code\u003e\u003ca href=\"https://github.com/11\"\u003e\u003ccode\u003e@​11\u003c/code\u003e\u003c/a\u003e.0.7\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17687\"\u003e#17687\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/0a22ff5b7e4600356ccabfe571b7ffdad76064d7\"\u003e\u003ccode\u003e0a22ff5\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/asmyshlyaev177\"\u003e\u003ccode\u003e@​asmyshlyaev177\u003c/code\u003e\u003c/a\u003e! - Fixes \u003ccode\u003emiddlewareMode: 'edge'\u003c/code\u003e not running your middleware when \u003ccode\u003eisr\u003c/code\u003e is also enabled\u003c/p\u003e\n\u003cp\u003ePreviously, enabling both options deployed the edge middleware but never reached it: requests went straight to the ISR function, which skips rendering entirely on a cache hit. Middleware now runs at the edge for ISR-backed routes before the cached response is served, and query strings are preserved when it forwards the request.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/withastro/astro/commit/05763a0884aabb1da78a2749d5bb9d41ae620527\"\u003e\u003ccode\u003e05763a0\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​astrojs/internal-helpers\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.10.4\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/vercel\u003c/code\u003e\u003ca href=\"https://github.com/11\"\u003e\u003ccode\u003e@​11\u003c/code\u003e\u003c/a\u003e.0.6\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17680\"\u003e#17680\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/ce9f1da4867f07206dec720fdab7f1d02112f73e\"\u003e\u003ccode\u003ece9f1da\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/astrobot-houston\"\u003e\u003ccode\u003e@​astrobot-houston\u003c/code\u003e\u003c/a\u003e! - Fixes server islands returning 404 responses in Vercel deployments using \u003ccode\u003eoutput: \u0026quot;static\u0026quot;\u003c/code\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/withastro/astro/commit/8c193f67cce77cf2e41fb702c88ca46f788f1277\"\u003e\u003ccode\u003e8c193f6\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​astrojs/internal-helpers\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.10.3\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/vercel\u003c/code\u003e\u003ca href=\"https://github.com/11\"\u003e\u003ccode\u003e@​11\u003c/code\u003e\u003c/a\u003e.0.5\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17569\"\u003e#17569\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/d1bb7fa0059a04ed8039ce92660c7c07a8b04914\"\u003e\u003ccode\u003ed1bb7fa\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/lazerg\"\u003e\u003ccode\u003e@​lazerg\u003c/code\u003e\u003c/a\u003e! - Prevents \u003ccode\u003eastro build\u003c/code\u003e from crashing with \u003ccode\u003eEEXIST\u003c/code\u003e when \u003ccode\u003e.vercel/output/server/\u003c/code\u003e already exists by creating it with \u003ccode\u003e{ recursive: true }\u003c/code\u003e, matching the sibling \u003ccode\u003estatic/\u003c/code\u003e directory call\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/vercel\u003c/code\u003e\u003ca href=\"https://github.com/11\"\u003e\u003ccode\u003e@​11\u003c/code\u003e\u003c/a\u003e.0.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [\u003ca href=\"https://github.com/withastro/astro/commit/c895b12b99a73f5a9f98d6699452d12c138f8a18\"\u003e\u003ccode\u003ec895b12\u003c/code\u003e\u003c/a\u003e]:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​astrojs/internal-helpers\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.10.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/blob/main/packages/integrations/vercel/CHANGELOG.md\"\u003e@​astrojs/vercel's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e11.0.10\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17818\"\u003e#17818\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/c0b65811dfa0dafa1aa04b7d6d67fd09250ff8c1\"\u003e\u003ccode\u003ec0b6581\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/florian-lefebvre\"\u003e\u003ccode\u003e@​florian-lefebvre\u003c/code\u003e\u003c/a\u003e! - Updates the development image service to forward every argument it receives to Astro's Sharp service, including the new \u003ccode\u003elogger\u003c/code\u003e parameter\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0.9\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17450\"\u003e#17450\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/19dae210d42bd22662ee678c173676573b6168f2\"\u003e\u003ccode\u003e19dae21\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ocavue\"\u003e\u003ccode\u003e@​ocavue\u003c/code\u003e\u003c/a\u003e! - Updates dependency \u003ccode\u003e@vercel/analytics\u003c/code\u003e to v2. See the \u003ca href=\"https://github.com/vercel/analytics/releases/tag/v2.0.0\"\u003echangelog\u003c/a\u003e for more details.\nUpdates dependency \u003ccode\u003e@vercel/routing-utils\u003c/code\u003e to v6. See the \u003ca href=\"https://github.com/vercel/vercel/blob/@vercel/routing-utils@6.4.0/packages/routing-utils/CHANGELOG.md#600\"\u003echangelog\u003c/a\u003e for more details.\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [\u003ca href=\"https://github.com/withastro/astro/commit/f8e94585ab6c38e2702ee1e2e540858f72058a40\"\u003e\u003ccode\u003ef8e9458\u003c/code\u003e\u003c/a\u003e]:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​astrojs/internal-helpers\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.11.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0.8\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17794\"\u003e#17794\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/dd29ce81f5b562f5d0dccdd96e28dade350c5e4c\"\u003e\u003ccode\u003edd29ce8\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/apps/astro-factory\"\u003e\u003ccode\u003e@​astro-factory\u003c/code\u003e\u003c/a\u003e! - Fixes a bug where \u003ccode\u003e@vercel/nft\u003c/code\u003e file tracing silently dropped all dependency files when \u003ccode\u003eoutDir\u003c/code\u003e was configured outside \u003ccode\u003eroot\u003c/code\u003e, causing deployed functions to crash with \u003ccode\u003eERR_MODULE_NOT_FOUND\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0.7\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17687\"\u003e#17687\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/0a22ff5b7e4600356ccabfe571b7ffdad76064d7\"\u003e\u003ccode\u003e0a22ff5\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/asmyshlyaev177\"\u003e\u003ccode\u003e@​asmyshlyaev177\u003c/code\u003e\u003c/a\u003e! - Fixes \u003ccode\u003emiddlewareMode: 'edge'\u003c/code\u003e not running your middleware when \u003ccode\u003eisr\u003c/code\u003e is also enabled\u003c/p\u003e\n\u003cp\u003ePreviously, enabling both options deployed the edge middleware but never reached it: requests went straight to the ISR function, which skips rendering entirely on a cache hit. Middleware now runs at the edge for ISR-backed routes before the cached response is served, and query strings are preserved when it forwards the request.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/withastro/astro/commit/05763a0884aabb1da78a2749d5bb9d41ae620527\"\u003e\u003ccode\u003e05763a0\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​astrojs/internal-helpers\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.10.4\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0.6\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17680\"\u003e#17680\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/ce9f1da4867f07206dec720fdab7f1d02112f73e\"\u003e\u003ccode\u003ece9f1da\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/astrobot-houston\"\u003e\u003ccode\u003e@​astrobot-houston\u003c/code\u003e\u003c/a\u003e! - Fixes server islands returning 404 responses in Vercel deployments using \u003ccode\u003eoutput: \u0026quot;static\u0026quot;\u003c/code\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/withastro/astro/commit/8c193f67cce77cf2e41fb702c88ca46f788f1277\"\u003e\u003ccode\u003e8c193f6\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​astrojs/internal-helpers\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.10.3\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0.5\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17569\"\u003e#17569\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/d1bb7fa0059a04ed8039ce92660c7c07a8b04914\"\u003e\u003ccode\u003ed1bb7fa\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/lazerg\"\u003e\u003ccode\u003e@​lazerg\u003c/code\u003e\u003c/a\u003e! - Prevents \u003ccode\u003eastro build\u003c/code\u003e from crashing with \u003ccode\u003eEEXIST\u003c/code\u003e when \u003ccode\u003e.vercel/output/server/\u003c/code\u003e already exists by creating it with \u003ccode\u003e{ recursive: true }\u003c/code\u003e, matching the sibling \u003ccode\u003estatic/\u003c/code\u003e directory call\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/f800de13ffab9542f8d1bd13a8f4481c5f5c083a\"\u003e\u003ccode\u003ef800de1\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17881\"\u003e#17881\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/c0b65811dfa0dafa1aa04b7d6d67fd09250ff8c1\"\u003e\u003ccode\u003ec0b6581\u003c/code\u003e\u003c/a\u003e feat: use logger instead of console where possible (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17818\"\u003e#17818\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/2fdf731428aa738d5dcf3041b4e78eb9d036968c\"\u003e\u003ccode\u003e2fdf731\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17849\"\u003e#17849\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/19dae210d42bd22662ee678c173676573b6168f2\"\u003e\u003ccode\u003e19dae21\u003c/code\u003e\u003c/a\u003e fix(vercel): update vercel dependencies (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17450\"\u003e#17450\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/d38ed60390abfc9087a0cbfce99b9a4893229de5\"\u003e\u003ccode\u003ed38ed60\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17753\"\u003e#17753\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/dd29ce81f5b562f5d0dccdd96e28dade350c5e4c\"\u003e\u003ccode\u003edd29ce8\u003c/code\u003e\u003c/a\u003e Fix NFT trace base to include outDir when it is outside root in \u003ccode\u003e@​astrojs/verc\u003c/code\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/8a31cba625a23d886614172e1d3b02b8eb896a18\"\u003e\u003ccode\u003e8a31cba\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17739\"\u003e#17739\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/cd233f80d5b67c9955c68711ffce6723984fdc85\"\u003e\u003ccode\u003ecd233f8\u003c/code\u003e\u003c/a\u003e [ci] format\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/0a22ff5b7e4600356ccabfe571b7ffdad76064d7\"\u003e\u003ccode\u003e0a22ff5\u003c/code\u003e\u003c/a\u003e fix(vercel): run edge middleware when isr is enabled (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17687\"\u003e#17687\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/52e6c34790cc8ac4e69e6135ace06049867e5c4a\"\u003e\u003ccode\u003e52e6c34\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17691\"\u003e#17691\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/withastro/astro/commits/@astrojs/vercel@11.0.10/packages/integrations/vercel\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@iconify-json/material-symbols` from 1.2.50 to 1.2.92\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/iconify/icon-sets/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@tailwindcss/typography` from 0.5.19 to 0.5.20\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/releases\"\u003e@​tailwindcss/typography's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev0.5.20\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSupport installing with stable versions of Tailwind CSS v4 (\u003ca href=\"https://redirect.github.com/tailwindlabs/tailwindcss-typography/pull/424\"\u003e#424\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/blob/main/CHANGELOG.md\"\u003e@​tailwindcss/typography's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[0.5.20] - 2026-06-08\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSupport installing with stable versions of Tailwind CSS v4 (\u003ca href=\"https://redirect.github.com/tailwindlabs/tailwindcss-typography/pull/424\"\u003e#424\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/commit/e3714a3fe55551ce9d51eec4721183ed6b1d5cd1\"\u003e\u003ccode\u003ee3714a3\u003c/code\u003e\u003c/a\u003e 0.5.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/commit/f34283d2961e18dd0dc2a849702e0dfd45fc80cb\"\u003e\u003ccode\u003ef34283d\u003c/code\u003e\u003c/a\u003e Update tailwindcss peer dependency version (\u003ca href=\"https://redirect.github.com/tailwindlabs/tailwindcss-typography/issues/424\"\u003e#424\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/commit/543de4274390e90c4aab5d216729b46a3ba5541b\"\u003e\u003ccode\u003e543de42\u003c/code\u003e\u003c/a\u003e bump Node.js\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/commit/881b0488df9fd05e5361276b66a9ee8e7f39a3a7\"\u003e\u003ccode\u003e881b048\u003c/code\u003e\u003c/a\u003e Setup OIDC (\u003ca href=\"https://redirect.github.com/tailwindlabs/tailwindcss-typography/issues/423\"\u003e#423\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/commit/74a3da779bb43e4e68f446395224c768704c1fb6\"\u003e\u003ccode\u003e74a3da7\u003c/code\u003e\u003c/a\u003e Fix typo in README.md (\u003ca href=\"https://redirect.github.com/tailwindlabs/tailwindcss-typography/issues/413\"\u003e#413\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/commit/3963dfede4845f46451db1863fd5321f4cdea03b\"\u003e\u003ccode\u003e3963dfe\u003c/code\u003e\u003c/a\u003e Bump js-yaml from 3.14.1 to 3.14.2 (\u003ca href=\"https://redirect.github.com/tailwindlabs/tailwindcss-typography/issues/410\"\u003e#410\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/commit/abf85cc6e1b4f9b914b0f66453e5a97a9899a15c\"\u003e\u003ccode\u003eabf85cc\u003c/code\u003e\u003c/a\u003e className instead of classname (\u003ca href=\"https://redirect.github.com/tailwindlabs/tailwindcss-typography/issues/406\"\u003e#406\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/compare/v0.5.19...v0.5.20\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​tailwindcss/typography\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `fast-xml-parser` from 4.5.6 to 4.5.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/NaturalIntelligence/fast-xml-parser/releases\"\u003efast-xml-parser's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eSummary update on all the previous releases from v4.2.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMultiple minor fixes provided in the validator and parser\u003c/li\u003e\n\u003cli\u003ev6 is added for experimental use.\u003c/li\u003e\n\u003cli\u003eignoreAttributes support function, and array of string or regex\u003c/li\u003e\n\u003cli\u003eAdd support for parsing HTML numeric entities\u003c/li\u003e\n\u003cli\u003ev5 of the application is ESM module now. However, JS is also supported\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eNote\u003c/strong\u003e: Release section in not updated frequently. Please check \u003ca href=\"https://github.com/NaturalIntelligence/fast-xml-parser/blob/master/CHANGELOG.md\"\u003eCHANGELOG\u003c/a\u003e or \u003ca href=\"https://github.com/NaturalIntelligence/fast-xml-parser/tags\"\u003eTags\u003c/a\u003e for latest release information.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/NaturalIntelligence/fast-xml-parser/commit/49a12f10e9a44da765f045ca0c60e8d9e5be5aa0\"\u003e\u003ccode\u003e49a12f1\u003c/code\u003e\u003c/a\u003e 4.5.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/NaturalIntelligence/fast-xml-parser/commit/59d01455b29a1576f0add8972d2c2b8502581937\"\u003e\u003ccode\u003e59d0145\u003c/code\u003e\u003c/a\u003e update changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/NaturalIntelligence/fast-xml-parser/commit/e561c2188607a108a9a8d9b6428902a28aad8fb0\"\u003e\u003ccode\u003ee561c21\u003c/code\u003e\u003c/a\u003e fix: escape comment and CDATA delimiters when building XML (GHSA-gh4j-gqv2-49...\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/NaturalIntelligence/fast-xml-parser/compare/v4.5.6...v4.5.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `nodemailer` from 8.0.7 to 8.0.11\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/nodemailer/nodemailer/releases\"\u003enodemailer's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.0.11\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.10...v8.0.11\"\u003e8.0.11\u003c/a\u003e (2026-06-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eapply the transport-level newline option in stream and sendmail transports (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/cb4f904a53d2c2feeaf327203c92378d46304398\"\u003ecb4f904\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003einclude icalEvent path/href content in the application/ics attachment (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/b801c48fab8e9b71bc7e0ea1fb32ce6b34675b15\"\u003eb801c48\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse Ethereal response props without polynomial regex backtracking (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/067aebec83b8cbe7682905e89b30ab19d260b503\"\u003e067aebe\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eresolve oauth2_provision_cb at send time for non-pooled SMTP transports (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/203c8ecf97594ac2e69919b0f3ba966c0f86750e\"\u003e203c8ec\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereturn the promise from every resolveContent branch (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/07ffe8cfd97f0486b8c7b541f398922ddab47882\"\u003e07ffe8c\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003estrip the url scheme from List-ID header values (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/77e5885cfa0c6723ea7749c1ee74b1c11aeb78bd\"\u003e77e5885\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etag AWS SES transport errors with the ESES code (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/efa647a125dd698413a7cf6813b8e36881a06f91\"\u003eefa647a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev8.0.10\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.9...v8.0.10\"\u003e8.0.10\u003c/a\u003e (2026-05-29)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efall back to lower-severity handler when custom logger lacks a level method (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/6d849df59a56184b48844ed10b5fb7b8e9f74634\"\u003e6d849df\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev8.0.9\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.8...v8.0.9\"\u003e8.0.9\u003c/a\u003e (2026-05-26)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003etwo pending security advisories (jsonTransport access bypass, List-* CRLF injection) (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1820\"\u003e#1820\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/5f694977da2e0e13dc947037566e8e689a01217e\"\u003e5f69497\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev8.0.8\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.7...v8.0.8\"\u003e8.0.8\u003c/a\u003e (2026-05-23)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eenforce strict TLS for OAuth2 and Ethereal credential requests (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1818\"\u003e#1818\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/833d6e58c8b717962bbb1b23e16923cd267c3bc9\"\u003e833d6e5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efour listener/stream leaks in SMTP transport, connection, pool (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1817\"\u003e#1817\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/850bb91bff7707ed498c1424df01c4e5b30ea14b\"\u003e850bb91\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/nodemailer/nodemailer/blob/master/CHANGELOG.md\"\u003enodemailer's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.10...v8.0.11\"\u003e8.0.11\u003c/a\u003e (2026-06-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eapply the transport-level newline option in stream and sendmail transports (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/cb4f904a53d2c2feeaf327203c92378d46304398\"\u003ecb4f904\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003einclude icalEvent path/href content in the application/ics attachment (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/b801c48fab8e9b71bc7e0ea1fb32ce6b34675b15\"\u003eb801c48\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse Ethereal response props without polynomial regex backtracking (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/067aebec83b8cbe7682905e89b30ab19d260b503\"\u003e067aebe\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eresolve oauth2_provision_cb at send time for non-pooled SMTP transports (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/203c8ecf97594ac2e69919b0f3ba966c0f86750e\"\u003e203c8ec\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereturn the promise from every resolveContent branch (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/07ffe8cfd97f0486b8c7b541f398922ddab47882\"\u003e07ffe8c\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003estrip the url scheme from List-ID header values (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/77e5885cfa0c6723ea7749c1ee74b1c11aeb78bd\"\u003e77e5885\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etag AWS SES transport errors with the ESES code (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/efa647a125dd698413a7cf6813b8e36881a06f91\"\u003eefa647a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.9...v8.0.10\"\u003e8.0.10\u003c/a\u003e (2026-05-29)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efall back to lower-severity handler when custom logger lacks a level method (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/6d849df59a56184b48844ed10b5fb7b8e9f74634\"\u003e6d849df\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.8...v8.0.9\"\u003e8.0.9\u003c/a\u003e (2026-05-26)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003etwo pending security advisories (jsonTransport access bypass, List-* CRLF injection) (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1820\"\u003e#1820\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/5f694977da2e0e13dc947037566e8e689a01217e\"\u003e5f69497\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.7...v8.0.8\"\u003e8.0.8\u003c/a\u003e (2026-05-23)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eenforce strict TLS for OAuth2 and Ethereal credential requests (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1818\"\u003e#1818\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/833d6e58c8b717962bbb1b23e16923cd267c3bc9\"\u003e833d6e5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efour listener/stream leaks in SMTP transport, connection, pool (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1817\"\u003e#1817\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/850bb91bff7707ed498c1424df01c4e5b30ea14b\"\u003e850bb91\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/e3b1bdab0f8913b031ffd7a0d4e3592da6fd4c01\"\u003e\u003ccode\u003ee3b1bda\u003c/code\u003e\u003c/a\u003e chore(master): release 8.0.11 (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1826\"\u003e#1826\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/4358caf1112c547be8292ef9b4f53308f108274d\"\u003e\u003ccode\u003e4358caf\u003c/code\u003e\u003c/a\u003e refactor: remove dead checks flagged by Code Quality analysis\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/cf5195cfa25dda6177c265dcf03790f5d1d541e1\"\u003e\u003ccode\u003ecf5195c\u003c/code\u003e\u003c/a\u003e chore: harden workflow token permissions and update GitHub Actions\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/067aebec83b8cbe7682905e89b30ab19d260b503\"\u003e\u003ccode\u003e067aebe\u003c/code\u003e\u003c/a\u003e fix: parse Ethereal response props without polynomial regex backtracking\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/0cee4fe1a52813b98a056ea67f87c195960e693c\"\u003e\u003ccode\u003e0cee4fe\u003c/code\u003e\u003c/a\u003e chore: add CodeQL code scanning workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/cb9da471bf28b4a83e5ea2a773d070ef57f1993c\"\u003e\u003ccode\u003ecb9da47\u003c/code\u003e\u003c/a\u003e chore: update dev dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/e0a4928f4b2d2acb2d888a22c8e7490315d9f8cf\"\u003e\u003ccode\u003ee0a4928\u003c/code\u003e\u003c/a\u003e chore: format CLAUDE.md with prettier\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/8620f2fb6b0f4882a8cef2a29e23de917c6ef413\"\u003e\u003ccode\u003e8620f2f\u003c/code\u003e\u003c/a\u003e docs: correct stale timeout defaults in SMTPConnection options JSDoc\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/efa647a125dd698413a7cf6813b8e36881a06f91\"\u003e\u003ccode\u003eefa647a\u003c/code\u003e\u003c/a\u003e fix: tag AWS SES transport errors with the ESES code\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/07ffe8cfd97f0486b8c7b541f398922ddab47882\"\u003e\u003ccode\u003e07ffe8c\u003c/code\u003e\u003c/a\u003e fix: return the promise from every resolveContent branch\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.7...v8.0.11\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/nodemailer` from 8.0.0 to 8.0.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/nodemailer\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `sanitize-html` from 2.17.0 to 2.17.7\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apostrophecms/apostrophe/blob/main/packages/sanitize-html/CHANGELOG.md\"\u003esanitize-html's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.17.7 (2026-08-13)\u003c/h2\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFixed an XSS / URL scheme policy bypass affecting configurations that allow the SVG animation elements (\u003ccode\u003eanimate\u003c/code\u003e, \u003ccode\u003eanimateColor\u003c/code\u003e, \u003ccode\u003eanimateMotion\u003c/code\u003e, \u003ccode\u003eanimateTransform\u003c/code\u003e or \u003ccode\u003eset\u003c/code\u003e) together with \u003ccode\u003eattributeName\u003c/code\u003e and one of the animation value attributes. The default configuration was not affected, as these elements are not in the default \u003ccode\u003eallowedTags\u003c/code\u003e. \u003ccode\u003eapostrophecms\u003c/code\u003e was not affected. Thanks to \u003ca href=\"https://github.com/koyokr\"\u003ekoyokr\u003c/a\u003e for responsibly disclosing the vulnerability (GHSA-g8qq-57p8-ggw5).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.17.6 (2026-07-10)\u003c/h2\u003e\n\u003ch3\u003eFixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAllow transformTags to emit text when textFilter is set, even if the tag is initially empty. This is consistent with the documentation. Thanks to \u003ca href=\"https://github.com/spokodev\"\u003espokodev\u003c/a\u003e for the fix.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFixed an XSS/allowlist bypass in which the contents of a raw-text element (\u003ccode\u003etextarea\u003c/code\u003e or \u003ccode\u003exmp\u003c/code\u003e) nested inside an \u003ccode\u003esvg\u003c/code\u003e or \u003ccode\u003emath\u003c/code\u003e root were re-emitted without HTML-escaping. \u003ccode\u003esanitize-html\u003c/code\u003e treated that content as inert raw text because \u003ccode\u003ehtmlparser2\u003c/code\u003e 10.x classified raw-text elements by tag name and ignored the namespace, but a real HTML5 parser treats \u003ccode\u003etextarea\u003c/code\u003e/\u003ccode\u003exmp\u003c/code\u003e as ordinary foreign elements inside SVG/MathML and re-parses their contents as live markup. As a result, markup and event-handler attributes that the allowlist never permitted (for example \u003ccode\u003e\u0026lt;svg\u0026gt;\u0026lt;textarea\u0026gt;\u0026lt;img src=x onerror=alert(1)\u0026gt;\u003c/code\u003e) could survive sanitization and execute in the browser. This is now fixed on two fronts: \u003ccode\u003ehtmlparser2\u003c/code\u003e was upgraded to 12.x, which is namespace-aware and parses \u003ccode\u003etextarea\u003c/code\u003e/\u003ccode\u003exmp\u003c/code\u003e inside SVG/MathML as ordinary elements, so their non-allowlisted children (such as the injected \u003ccode\u003eimg\u003c/code\u003e) are dropped by the allowlist instead of being preserved as raw text; and any raw-text content \u003ccode\u003esanitize-html\u003c/code\u003e still emits for these tags (at HTML integration points such as \u003ccode\u003eforeignObject\u003c/code\u003e/\u003ccode\u003emtext\u003c/code\u003e, or outside foreign content) is always HTML-escaped. The default configuration is not affected; the precondition is an \u003ccode\u003eallowedTags\u003c/code\u003e that includes \u003ccode\u003esvg\u003c/code\u003e or \u003ccode\u003emath\u003c/code\u003e together with \u003ccode\u003etextarea\u003c/code\u003e or \u003ccode\u003exmp\u003c/code\u003e. Thanks to \u003ca href=\"https://github.com/khoadb175\"\u003ekhoadb175\u003c/a\u003e for responsibly disclosing the vulnerability.\u003c/li\u003e\n\u003cli\u003eFixed a mutation-XSS / \u003ccode\u003eallowedTags\u003c/code\u003e bypass affecting configurations that allow the \u003ccode\u003etextarea\u003c/code\u003e or \u003ccode\u003exmp\u003c/code\u003e raw-text tags. \u003ccode\u003ehtmlparser2\u003c/code\u003e 10.x did not recognize an end tag with a trailing solidus (e.g. \u003ccode\u003e\u0026lt;/textarea/\u0026gt;\u003c/code\u003e) as closing the element, so it kept the following markup as raw text, but a spec-compliant browser treats \u003ccode\u003e\u0026lt;/textarea/\u0026gt;\u003c/code\u003e as a valid close and parses that markup as a live element. Because raw-text content was re-emitted without escaping, a payload such as \u003ccode\u003e\u0026lt;textarea\u0026gt;\u0026lt;/textarea/\u0026gt;\u0026lt;img src=x onerror=...\u0026gt;\u003c/code\u003e could smuggle non-allowlisted, executable markup through the sanitizer. The default configuration was not affected. This is now defended at two layers: \u003ccode\u003ehtmlparser2\u003c/code\u003e was upgraded to 12.x, whose tokenizer closes these end tags correctly, and the raw text sanitize-html emits for these tags is always escaped so no \u003ccode\u003e\u0026lt;\u003c/code\u003e can reopen a tag when the output is re-parsed (\u003ccode\u003etextarea\u003c/code\u003e, an RCDATA element whose entities \u003ccode\u003ehtmlparser2\u003c/code\u003e decodes, is escaped like normal text, while \u003ccode\u003exmp\u003c/code\u003e, a raw-text element, has only its angle brackets escaped to avoid double-encoding already-encoded entities). Because \u003ccode\u003ehtmlparser2\u003c/code\u003e is ESM-only from version 11 onward, \u003ccode\u003esanitize-html\u003c/code\u003e now requires Node.js \u003ccode\u003e\u0026gt;=22.12.0\u003c/code\u003e (the first 22.x release in which \u003ccode\u003erequire()\u003c/code\u003e of an ES module is available unflagged). Thanks to \u003ca href=\"https://github.com/bibu123456\"\u003ebibu123456\u003c/a\u003e for reporting the vulnerability and \u003ca href=\"https://github.com/Kayiz-PT\"\u003eKayiz-PT\u003c/a\u003e for coordinating the disclosure (GHSA-jxwj-j7wr-gfrw).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.17.5 (2026-06-10)\u003c/h2\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdded a number of new attributes to be protected against unsafe URLs, e.g. \u003ccode\u003ejavascript:\u003c/code\u003e and similar. None of these are used in the default configuration of \u003ccode\u003esanitize-html\u003c/code\u003e or \u003ccode\u003eapostrophe\u003c/code\u003e or likely to be used there, and some attributes, like an \u003ccode\u003eaction\u003c/code\u003e for a \u003ccode\u003eform\u003c/code\u003e, are inherently unsafe to allow if XSS protection is your goal. Nevertheless it makes sense to block certain URL types where they are not appropriate. Some attributes are not supported at all by modern browsers but are included for completeness. Thanks to \u003ca href=\"https://github.com/crattack\"\u003ecrattack\u003c/a\u003e for reporting the vulnerability.\u003c/li\u003e\n\u003cli\u003eAddress a potential vulnerability when nonTextTags is configured in a nonstandard way. While it is never a good idea to remove known non-text tags from the standard list e.g. script, styles, etc., this change ensures that doing so does not result in nested tags being passed through without sanitization when they are not expressly allowed. (ApostropheCMS would never trigger this situation.) Thanks to \u003ca href=\"https://github.com/Dipanshusinghh\"\u003eDipanshu singh\u003c/a\u003e for pointing out the issue and contributing the fix.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.17.4\u003c/h2\u003e\n\u003ch3\u003eChanges\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003esanitize-html\u003c/code\u003e and \u003ccode\u003elaunder\u003c/code\u003e now share a single implementation of \u003ccode\u003enaughtyHref\u003c/code\u003e, based on that which previously existed in \u003ccode\u003esanitize-html\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity vulnerability: the xmp tag could be used to pass forbidden markup through sanitize-html, even when xmp itself is not explicitly allowed All users of sanitize-html should update immediately. Thanks to \u003ca href=\"https://github.com/sushi-gif\"\u003eVincenzo Turturro\u003c/a\u003e for reporting the vulnerability.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.17.3 (2026-04-15)\u003c/h2\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFix vulnerability introduced in version 2.17.2 that allowed XSS attacks if the developer chose to permit \u003ccode\u003eoption\u003c/code\u003e tags. There was no vulnerability when not explicitly allowing \u003ccode\u003eoption\u003c/code\u003e tags.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.17.2 (2026-03-19)\u003c/h2\u003e\n\u003ch3\u003eChanges\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade \u003ccode\u003ehtmlparser2\u003c/code\u003e from 8.x to 10.1.0. This improves security by correctly decoding zero-padded numeric character references (e.g., \u003ccode\u003e\u0026amp;[#0000001](https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/0000001)\u003c/code\u003e) that previously bypassed \u003ccode\u003ejavascript:\u003c/code\u003e URL detection. Also fixes double-encoding of entities inside raw text elements like \u003ccode\u003etextarea\u003c/code\u003e and \u003ccode\u003eoption\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.17.1 (2026-02-18)\u003c/h2\u003e\n\u003ch3\u003eFixes\u003c/h3\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/72f4531e7b491738049eec423d0c1c2342828e5f\"\u003e\u003ccode\u003e72f4531\u003c/code\u003e\u003c/a\u003e Latest reconciliation q2 m3 2026 (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5555\"\u003e#5555\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/207846a3aec6b1914a2b9f4dc36d45daf6a4afb9\"\u003e\u003ccode\u003e207846a\u003c/code\u003e\u003c/a\u003e ready for 4.32.0 release (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5513\"\u003e#5513\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/f82003349abf4245babdb1afcb225255a9694979\"\u003e\u003ccode\u003ef820033\u003c/code\u003e\u003c/a\u003e Latest reconciliation q2 m2 (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5511\"\u003e#5511\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/24275081ab67f2060782e141dc3554721c1bae5a\"\u003e\u003ccode\u003e2427508\u003c/code\u003e\u003c/a\u003e release and changelog edits (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5465\"\u003e#5465\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/5a88e9630cbbdde33154ef8abe7557ddf7be418b\"\u003e\u003ccode\u003e5a88e96\u003c/code\u003e\u003c/a\u003e Latest security q2 (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5464\"\u003e#5464\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/958d16214ff4b94b9280fddd088060ff401ded0d\"\u003e\u003ccode\u003e958d162\u003c/code\u003e\u003c/a\u003e merge main to latest (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5460\"\u003e#5460\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/e9b0ab0849a5dfea0f75335fbdf99b5c6bf9e4b3\"\u003e\u003ccode\u003ee9b0ab0\u003c/code\u003e\u003c/a\u003e release only (changelogs formatted) (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5408\"\u003e#5408\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/f03fa5b7746132bf46244036ab961bba995b611d\"\u003e\u003ccode\u003ef03fa5b\u003c/code\u003e\u003c/a\u003e Latest security merge (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5407\"\u003e#5407\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/96cf174486e1387948e189786c2d574cf7c3f3d0\"\u003e\u003ccode\u003e96cf174\u003c/code\u003e\u003c/a\u003e For release only (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5381\"\u003e#5381\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/7ca2d16237c72718ef7e5c7ae0458e6027ac4f64\"\u003e\u003ccode\u003e7ca2d16\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apostrophecms/apostrophe/commits/sanitize-html@2.17.7/packages/sanitize-html\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/sanitize-html` from 2.16.0 to 2.16.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/sanitize-html\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ua-parser-js` from 2.0.9 to 2.0.10\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/faisalman/ua-parser-js/releases\"\u003eua-parser-js's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.0.10\u003c/h2\u003e\n\u003ch2\u003eVersion 2.0.10\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix ReDoS vulnerability by limiting Client Hints input length (GHSA-9h5v-pfqq-x599)\u003c/li\u003e\n\u003cli\u003eAdd new method \u003ccode\u003euseExtension()\u003c/code\u003e in UAParser to extend custom detection rules\u003c/li\u003e\n\u003cli\u003eAdd new device vendor: Blackview, Coolpad, CUBOT, T-Mobile\u003c/li\u003e\n\u003cli\u003eImprove browser detection: Huawei Browser, UCBrowser\u003c/li\u003e\n\u003cli\u003eImprove OS detection: iOS\u003c/li\u003e\n\u003cli\u003eIdentify WebView user-agent as \u003ccode\u003einapp\u003c/code\u003e browser\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eextensions\u003c/code\u003e submodule:\n\u003cul\u003e\n\u003cli\u003eAdd new crawler: atlassian-bot, Audisto Crawler, AwarioBot, AwarioRssBot, AwarioSmartBot, BrightEdge Crawler, HubSpot Crawler, Meta-ExternalAds, Meta-WebIndexer, proximic, yacybot\u003c/li\u003e\n\u003cli\u003eAdd new fetcher: Feedly, GoogleDocs, UptimeBot, virustotal\u003c/li\u003e\n\u003cli\u003eAdd new library: phpcrawl\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ehelpers\u003c/code\u003e submodule:\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eisElectron()\u003c/code\u003e function return itself\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd Headline ev-crawler detection by \u003ca href=\"https://github.com/Carel155\"\u003e\u003ccode\u003e@​Carel155\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/807\"\u003efaisalman/ua-parser-js#807\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[extensions] Add new crawlers: Meta-WebIndexer, Meta-ExternalAds by \u003ca href=\"https://github.com/23tux\"\u003e\u003ccode\u003e@​23tux\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/824\"\u003efaisalman/ua-parser-js#824\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix: remove desktop from enums according to documentation by \u003ca href=\"https://github.com/mksotto\"\u003e\u003ccode\u003e@​mksotto\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/808\"\u003efaisalman/ua-parser-js#808\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd sideEffects=false to package.json by \u003ca href=\"https://github.com/denisx\"\u003e\u003ccode\u003e@​denisx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/781\"\u003efaisalman/ua-parser-js#781\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Carel155\"\u003e\u003ccode\u003e@​Carel155\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/807\"\u003efaisalman/ua-parser-js#807\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/23tux\"\u003e\u003ccode\u003e@​23tux\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/824\"\u003efaisalman/ua-parser-js#824\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mksotto\"\u003e\u003ccode\u003e@​mksotto\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/808\"\u003efaisalman/ua-parser-js#808\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/denisx\"\u003e\u003ccode\u003e@​denisx\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/781\"\u003efaisalman/ua-parser-js#781\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/faisalman/ua-parser-js/compare/2.0.9...2.0.10\"\u003ehttps://github.com/faisalman/ua-parser-js/compare/2.0.9...2.0.10\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/faisalman/ua-parser-js/blob/master/CHANGELOG.md\"\u003eua-parser-js's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 2.0.10\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix ReDoS vulnerability by limiting Client Hints input length (GHSA-9h5v-pfqq-x599)\u003c/li\u003e\n\u003cli\u003eAdd new method \u003ccode\u003euseExtension()\u003c/code\u003e in UAParser to extend custom detection rules\u003c/li\u003e\n\u003cli\u003eAdd new device vendor: Blackview, Coolpad, CUBOT, T-Mobile\u003c/li\u003e\n\u003cli\u003eImprove browser detection: Huawei Browser, UCBrowser\u003c/li\u003e\n\u003cli\u003eImprove OS detection: iOS\u003c/li\u003e\n\u003cli\u003eIdentify WebView user-agent as \u003ccode\u003einapp\u003c/code\u003e browser\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eextensions\u003c/code\u003e submodule:\n\u003cul\u003e\n\u003cli\u003eAdd new crawler: atlassian-bot, Audisto Crawler, AwarioBot, AwarioRssBot, AwarioSmartBot, BrightEdge Crawler, HubSpot Crawler, Meta-ExternalAds, Meta-WebIndexer, proximic, yacybot\u003c/li\u003e\n\u003cli\u003eAdd new fetcher: Feedly, GoogleDocs, UptimeBot, virustotal\u003c/li\u003e\n\u003cli\u003eAdd new library: phpcrawl\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ehelpers\u003c/code\u003e submodule:\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eisElectron()\u003c/code\u003e function return itself\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/4121c59060c3f9b814f07978c361e44016028c74\"\u003e\u003ccode\u003e4121c59\u003c/code\u003e\u003c/a\u003e Build: Bump version \u003ccode\u003e2.0.10\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/90354d3458495628b1d3ba68a9d76673e6d14fc5\"\u003e\u003ccode\u003e90354d3\u003c/code\u003e\u003c/a\u003e Fix: Prevent ReDoS vulnerability by limiting Client Hints input length (GHSA-...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/3baa3bc9f71de39491371ba04a49ca331bd49a42\"\u003e\u003ccode\u003e3baa3bc\u003c/code\u003e\u003c/a\u003e Test: Increase nyc timeout to fix timeout error\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/18d39b53dd803710cb8e76856d18c1dcf7533d11\"\u003e\u003ccode\u003e18d39b5\u003c/code\u003e\u003c/a\u003e CI: Add GitHub Actions workflow to publish to Docker Hub\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/58b5a0cff9187e3a505dbf74c505fe478b915a14\"\u003e\u003ccode\u003e58b5a0c\u003c/code\u003e\u003c/a\u003e Build: Add Dockerfile for container image build\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/965c20d55bb6bd5879175a4d638171da7fdf2037\"\u003e\u003ccode\u003e965c20d\u003c/code\u003e\u003c/a\u003e CI: Update fuzz test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/ad97fea94772da9cc9ad9e3c145e07ee2c10533d\"\u003e\u003ccode\u003ead97fea\u003c/code\u003e\u003c/a\u003e Build: Set sideEffects=false in package.json for tree shaking (\u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/issues/781\"\u003e#781\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/312598f5f432de911bbe4d1b4bfddc5939bf9fdf\"\u003e\u003ccode\u003e312598f\u003c/code\u003e\u003c/a\u003e CI: Add AI and spam detection to pull request workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/8f9e4dc6c94c2c9c91cec4bb3725b9e663ea0beb\"\u003e\u003ccode\u003e8f9e4dc\u003c/code\u003e\u003c/a\u003e Test: Fix relative path and update done() callback in CLI test spec\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/eb809eca611e11a7b2311454ff7eec4febc1045c\"\u003e\u003ccode\u003eeb809ec\u003c/code\u003e\u003c/a\u003e Chore(license): Add THIRD_PARTY_NOTICES.md for third-party assets\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/faisalman/ua-parser-js/compare/2.0.9...2.0.10\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@astrojs/ts-plugin` from 1.10.10 to 1.10.11\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/releases\"\u003e@​astrojs/ts-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/ts-plugin\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.10.11\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17668\"\u003e#17668\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/bef9db51186d7201604fc561e1c599a0610d54b0\"\u003e\u003ccode\u003ebef9db5\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/lazerg\"\u003e\u003ccode\u003e@​lazerg\u003c/code\u003e\u003c/a\u003e! - Fixes Astro's ambient types leaking into unrelated TypeScript projects. In a monorepo with hoisted \u003ccode\u003enode_modules\u003c/code\u003e, the plugin found the shared \u003ccode\u003eastro\u003c/code\u003e install from any project and injected \u003ccode\u003eenv.d.ts\u003c/code\u003e and \u003ccode\u003eastro-jsx.d.ts\u003c/code\u003e into it, which pulled \u003ccode\u003e@types/node\u003c/code\u003e into projects that never asked for it. The plugin now only injects those types when the project actually depends on \u003ccode\u003eastro\u003c/code\u003e or has an \u003ccode\u003eastro.config.*\u003c/code\u003e file.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/blob/main/packages/language-tools/ts-plugin/CHANGELOG.md\"\u003e@​astrojs/ts-plugin's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.10.11\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17668\"\u003e#17668\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/bef9db51186d7201604fc561e1c599a0610d54b0\"\u003e\u003ccode\u003ebef9db5\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/lazerg\"\u003e\u003ccode\u003e@​lazerg\u003c/code\u003e\u003c/a\u003e! - Fixes Astro's ambient types leaking into unrelated TypeScript projects. In a monorepo with hoisted \u003ccode\u003enode_modules\u003c/code\u003e, the plugin found the shared \u003ccode\u003eastro\u003c/code\u003e install from any project and injected \u003ccode\u003eenv.d.ts\u003c/code\u003e and \u003ccode\u003eastro-jsx.d.ts\u003c/code\u003e into it, which pulled \u003ccode\u003e@types/node\u003c/code\u003e into projects that never asked for it. The plugin now only injects those types when the project actually depends on \u003ccode\u003eastro\u003c/code\u003e or has an \u003ccode\u003eastro.config.*\u003c/code\u003e file.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/52e6c34790cc8ac4e69e6135ace06049867e5c4a\"\u003e\u003ccode\u003e52e6c34\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/ts-plugin/issues/17691\"\u003e#17691\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/bef9db51186d7201604fc561e1c599a0610d54b0\"\u003e\u003ccode\u003ebef9db5\u003c/code\u003e\u003c/a\u003e fix(ts-plugin): only inject Astro types into Astro projects (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/ts-plugin/issues/17668\"\u003e#17668\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/withastro/astro/commits/@astrojs/ts-plugin@1.10.11/packages/language-tools/ts-plugin\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/nodemailer` from 8.0.0 to 8.0.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/nodemailer\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/sanitize-html` from 2.16.0 to 2.16.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/sanitize-html\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `cssnano` from 7.1.3 to 7.1.9\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cssnano/cssnano/releases\"\u003ecssnano's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.1.9\u003c/h2\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReject :is() fold for unknown pseudo-classes with arguments by \u003ca href=\"https://github.com/dkryaklin\"\u003e\u003ccode\u003e@​dkryaklin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1791\"\u003ecssnano/cssnano#1791\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/cssnano/cssnano/compare/cssnano@7.1.8...cssnano@7.1.9\"\u003ehttps://github.com/cssnano/cssnano/compare/cssnano@7.1.8...cssnano@7.1.9\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.1.8\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(postcss-minify-selectors): reject :is() fold for :nth-child(... of S) to preserve cascade by \u003ca href=\"https://github.com/dkryaklin\"\u003e\u003ccode\u003e@​dkryaklin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1785\"\u003ecssnano/cssnano#1785\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate postcss and \u003ccode\u003e@​colordx/core\u003c/code\u003e by \u003ca href=\"https://github.com/ludofischer\"\u003e\u003ccode\u003e@​ludofischer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1786\"\u003ecssnano/cssnano#1786\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/cssnano/cssnano/compare/cssnano@7.1.7...cssnano@7.1.8\"\u003ehttps://github.com/cssnano/cssnano/compare/cssnano@7.1.7...cssnano@7.1.8\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev.7.1.7\u003c/h2\u003e\n\u003cp\u003eThis release is idnetical to the previous one, but is being published to ensure that the latest versions of \u003ccode\u003epostcss-normalize-repeat-style\u003c/code\u003e and \u003ccode\u003epostcss-normalize-positions\u003c/code\u003e are uploaded to the npm registry.\u003c/p\u003e\n\u003ch2\u003ev7.1.6\u003c/h2\u003e\n\u003ch2\u003eNew feature\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(postcss-minify-selectors): fold selector lists into :is() (\u003ca href=\"https://redirect.github.com/cssnano/cssnano/issues/1703\"\u003e#1703\u003c/a\u003e) by \u003ca href=\"https://github.com/dkryaklin\"\u003e\u003ccode\u003e@​dkryaklin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1775\"\u003ecssnano/cssnano#1775\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBug fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: update colordx and autoprefixer\u003c/li\u003e\n\u003cli\u003efix: update postcss peer dependency by \u003ca href=\"https://github.com/ludofischer\"\u003e\u003ccode\u003e@​ludofischer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1779\"\u003ecssnano/cssnano#1779\u003c/a\u003e Solves possible security issue\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/cssnano/cssnano/compare/cssnano@7.1.5...cssnano@7.1.6\"\u003ehttps://github.com/cssnano/cssnano/compare/cssnano@7.1.5...cssnano@7.1.6\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.1.5\u003c/h2\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(postcss-reduce-idents): support counter-set property by \u003ca href=\"https://github.com/dkryaklin\"\u003e\u003ccode\u003e@​dkryaklin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1765\"\u003ecssnano/cssnano#1765\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(postcss-convert-values): add transformCustomProperties option by \u003ca href=\"https://github.com/dkryaklin\"\u003e\u003ccode\u003e@​dkryaklin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1769\"\u003ecssnano/cssnano#1769\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(postcss-colormin): add transformCustomProperties option by \u003ca href=\"https://github.com/dkryaklin\"\u003e\u003ccode\u003e@​dkryaklin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1768\"\u003ecssnano/cssnano#1768\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/cssnano/cssnano/compare/cssnano@7.1.4...cssnano@7.1.5\"\u003ehttps://github.com/cssnano/cssnano/compare/cssnano@7.1.4...cssnano@7.1.5\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.1.4\u003c/h2\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cp\u003eUpdate color conversion library to \u003ccode\u003e@​colordx/core\u003c/code\u003e to fix rounding errors in color conversions \u003ca href=\"https://redirect.github.com/cssnano/cssnano/issues/1755\"\u003e#1755\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/206940709f1f3bb0dca3bdeae55851244aaf5106\"\u003e\u003ccode\u003e2069407\u003c/code\u003e\u003c/a\u003e Publish cssnano 7.1.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/fc0c79d58f6722f196c518bb4d02b44edccaa669\"\u003e\u003ccode\u003efc0c79d\u003c/code\u003e\u003c/a\u003e fix(postcss-minify-selectors): reject :is() fold for unknown pseudo-classes w...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/d9fee3bdbe5c5bf2fb4d239036cf7e594642af5a\"\u003e\u003ccode\u003ed9fee3b\u003c/code\u003e\u003c/a\u003e chore: enforce TypeScript isolated modules\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/d6c96c46ea9999b33e1929bbe9192f9e03bca40e\"\u003e\u003ccode\u003ed6c96c4\u003c/code\u003e\u003c/a\u003e chore: update development deps\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/709f16a4d50edafd5d257970727326e9e16e2d4d\"\u003e\u003ccode\u003e709f16a\u003c/code\u003e\u003c/a\u003e docs: update website depenencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/ed403dbb66413f54f0f6b6674c5ec720704cea6f\"\u003e\u003ccode\u003eed403db\u003c/code\u003e\u003c/a\u003e Publish cssnano 7.1.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/7e56dba523026352996d1402f110907d6fe97bb1\"\u003e\u003ccode\u003e7e56dba\u003c/code\u003e\u003c/a\u003e fix: update postcss\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/d1780fd7ca1a9a4b08dd47a727377b7c0be32b89\"\u003e\u003ccode\u003ed1780fd\u003c/code\u003e\u003c/a\u003e fix: update \u003ca href=\"https://github.com/colordx-core\"\u003e\u003ccode\u003e@​colordx-core\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/00054437b0015d11251690f055534f74146aff2d\"\u003e\u003ccode\u003e0005443\u003c/code\u003e\u003c/a\u003e chore: add changeset\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/bedd6093de6a2a31fb8d040dbaafa63f4992cd01\"\u003e\u003ccode\u003ebedd609\u003c/code\u003e\u003c/a\u003e fix(postcss-minify-selectors): reject :is() fold for :nth-child(... of S) to ...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/cssnano/cssnano/compare/cssnano@7.1.3...cssnano@7.1.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `glob` from 13.0.0 to 13.0.6\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/e80cb38ae60d6cbff9e75f39032a994858994d35\"\u003e\u003ccode\u003ee80cb38\u003c/code\u003e\u003c/a\u003e 13.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/9cdbbfff75c64fb158c8842d4d0eb3e908676a41\"\u003e\u003ccode\u003e9cdbbff\u003c/code\u003e\u003c/a\u003e revert tsgo, not ready for test coverage correctness yet\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/89c99ba8e276438b8e31ce878b63186e2cd375b4\"\u003e\u003ccode\u003e89c99ba\u003c/code\u003e\u003c/a\u003e use tsgo compiler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/b7275d54f294174607f544acf07cc7ec526b7878\"\u003e\u003ccode\u003eb7275d5\u003c/code\u003e\u003c/a\u003e update deps, expand engines to include node 18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/942e360a669e0c378c0abd261e7d329ca2cee661\"\u003e\u003ccode\u003e942e360\u003c/code\u003e\u003c/a\u003e update workflows, pull taprc out of package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/4a0d53c7531f3f0df97f9e4d26c78489e7f6d7ef\"\u003e\u003ccode\u003e4a0d53c\u003c/code\u003e\u003c/a\u003e update tap for mockImport bugfix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/ef94ad2696c12129628208cf4e38575e7240c1c4\"\u003e\u003ccode\u003eef94ad2\u003c/code\u003e\u003c/a\u003e update tap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/180c2d43cb135f134c0c5446408dc107c79a5a9b\"\u003e\u003ccode\u003e180c2d4\u003c/code\u003e\u003c/a\u003e update docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/37993c86faddcb780458b2d7ae3c2ead7a84bf31\"\u003e\u003ccode\u003e37993c8\u003c/code\u003e\u003c/a\u003e remove stray console.error in test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/03ae4c244cac6331817158b0bc12effd30deeb43\"\u003e\u003ccode\u003e03ae4c2\u003c/code\u003e\u003c/a\u003e 13.0.5\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v13.0.0...v13.0.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version modifies \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n\u003c/details\u003e","html_url":"https://github.com/mikann-OMO/Orange/pull/92","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/mikann-OMO%2FOrange/issues/92","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/92/packages"},{"uuid":"5454392265","node_id":"PR_kwDORQc-388AAAABDgwtVg","number":38,"state":"closed","title":"Bump the compatible-updates group across 1 directory with 29 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-21T20:39:18.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-14T20:41:39.000Z","updated_at":"2026-09-21T20:39:21.000Z","time_to_close":604659,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"compatible-updates","update_count":29,"packages":[{"name":"@noble/hashes","old_version":"2.0.1","new_version":"2.4.0","repository_url":"https://github.com/paulmillr/noble-hashes"},{"name":"@openzeppelin/contracts","old_version":"5.4.0","new_version":"5.6.1","repository_url":"https://github.com/OpenZeppelin/openzeppelin-contracts"},{"name":"@supabase/supabase-js","old_version":"2.90.0","new_version":"2.116.0","repository_url":"https://github.com/supabase/supabase-js"},{"name":"@walletconnect/ethereum-provider","old_version":"2.23.1","new_version":"2.24.0","repository_url":"https://github.com/WalletConnect/walletconnect-monorepo"},{"name":"axios","old_version":"1.19.0","new_version":"1.20.0","repository_url":"https://github.com/axios/axios"},{"name":"date-fns","old_version":"4.1.0","new_version":"4.4.0","repository_url":"https://github.com/date-fns/date-fns"},{"name":"dotenv","old_version":"17.2.3","new_version":"17.4.2","repository_url":"https://github.com/motdotla/dotenv"},{"name":"playwright","old_version":"1.57.0","new_version":"1.63.0","repository_url":"https://github.com/microsoft/playwright"},{"name":"preact","old_version":"10.28.2","new_version":"10.29.8","repository_url":"https://github.com/preactjs/preact"},{"name":"react-is","old_version":"19.2.3","new_version":"19.3.0","repository_url":"https://github.com/react/react"},{"name":"recharts","old_version":"3.6.0","new_version":"3.10.1","repository_url":"https://github.com/recharts/recharts"},{"name":"@eslint/eslintrc","old_version":"3.3.3","new_version":"3.3.7","repository_url":"https://github.com/eslint/eslintrc"},{"name":"@rollup/plugin-commonjs","old_version":"29.0.0","new_version":"29.0.3","repository_url":"https://github.com/rollup/plugins"},{"name":"@testing-library/react","old_version":"16.3.1","new_version":"16.3.3","repository_url":"https://github.com/testing-library/react-testing-library"},{"name":"@testing-library/user-event","old_version":"14.6.1","new_version":"14.6.7","repository_url":"https://github.com/testing-library/user-event"},{"name":"@typescript-eslint/eslint-plugin","old_version":"8.52.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"babel-jest","old_version":"30.2.0","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"eslint-plugin-react-hooks","old_version":"7.0.1","new_version":"7.1.1","repository_url":"https://github.com/facebook/react"},{"name":"eslint-plugin-react-refresh","old_version":"0.4.26","new_version":"0.5.6","repository_url":"https://github.com/ArnaudBarre/eslint-plugin-react-refresh"},{"name":"glob","old_version":"13.0.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"},{"name":"globals","old_version":"17.0.0","new_version":"17.12.0","repository_url":"https://github.com/sindresorhus/globals"},{"name":"hardhat","old_version":"3.13.0","new_version":"3.16.0","repository_url":"https://github.com/NomicFoundation/hardhat"},{"name":"jest","old_version":"30.2.0","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-environment-jsdom","old_version":"30.2.0","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"solc","old_version":"0.8.36","new_version":"0.8.37","repository_url":"https://github.com/ethereum/solc-js"},{"name":"vite-plugin-node-polyfills","old_version":"0.2.0","new_version":"0.28.0","repository_url":"https://github.com/davidmyersdev/vite-plugin-node-polyfills"}],"path":null,"ecosystem":"npm"},"body":"Bumps the compatible-updates group with 26 updates in the /public-repo directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@noble/hashes](https://github.com/paulmillr/noble-hashes) | `2.0.1` | `2.4.0` |\n| [@openzeppelin/contracts](https://github.com/OpenZeppelin/openzeppelin-contracts) | `5.4.0` | `5.6.1` |\n| [@supabase/supabase-js](https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js) | `2.90.0` | `2.116.0` |\n| [@walletconnect/ethereum-provider](https://github.com/WalletConnect/walletconnect-monorepo/tree/HEAD/providers/ethereum-provider) | `2.23.1` | `2.24.0` |\n| [axios](https://github.com/axios/axios) | `1.19.0` | `1.20.0` |\n| [date-fns](https://github.com/date-fns/date-fns) | `4.1.0` | `4.4.0` |\n| [dotenv](https://github.com/motdotla/dotenv) | `17.2.3` | `17.4.2` |\n| [playwright](https://github.com/microsoft/playwright) | `1.57.0` | `1.63.0` |\n| [preact](https://github.com/preactjs/preact) | `10.28.2` | `10.29.8` |\n| [react-is](https://github.com/react/react/tree/HEAD/packages/react-is) | `19.2.3` | `19.3.0` |\n| [recharts](https://github.com/recharts/recharts) | `3.6.0` | `3.10.1` |\n| [@eslint/eslintrc](https://github.com/eslint/eslintrc) | `3.3.3` | `3.3.7` |\n| [@rollup/plugin-commonjs](https://github.com/rollup/plugins/tree/HEAD/packages/commonjs) | `29.0.0` | `29.0.3` |\n| [@testing-library/react](https://github.com/testing-library/react-testing-library) | `16.3.1` | `16.3.3` |\n| [@testing-library/user-event](https://github.com/testing-library/user-event) | `14.6.1` | `14.6.7` |\n| [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) | `8.52.0` | `8.70.0` |\n| [babel-jest](https://github.com/jestjs/jest/tree/HEAD/packages/babel-jest) | `30.2.0` | `30.5.1` |\n| [eslint-plugin-react-hooks](https://github.com/facebook/react/tree/HEAD/packages/eslint-plugin-react-hooks) | `7.0.1` | `7.1.1` |\n| [eslint-plugin-react-refresh](https://github.com/ArnaudBarre/eslint-plugin-react-refresh) | `0.4.26` | `0.5.6` |\n| [glob](https://github.com/isaacs/node-glob) | `13.0.0` | `13.0.6` |\n| [globals](https://github.com/sindresorhus/globals) | `17.0.0` | `17.12.0` |\n| [hardhat](https://github.com/NomicFoundation/hardhat/tree/HEAD/packages/hardhat) | `3.13.0` | `3.16.0` |\n| [jest](https://github.com/jestjs/jest/tree/HEAD/packages/jest) | `30.2.0` | `30.5.1` |\n| [jest-environment-jsdom](https://github.com/jestjs/jest/tree/HEAD/packages/jest-environment-jsdom) | `30.2.0` | `30.5.1` |\n| [solc](https://github.com/ethereum/solc-js) | `0.8.36` | `0.8.37` |\n| [vite-plugin-node-polyfills](https://github.com/davidmyersdev/vite-plugin-node-polyfills) | `0.2.0` | `0.28.0` |\n\n\nUpdates `@noble/hashes` from 2.0.1 to 2.4.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/paulmillr/noble-hashes/releases\"\u003e@​noble/hashes's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.4.0\u003c/h2\u003e\n\u003ch3\u003eSecurity and correctness\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eProtect passed options against mutation / pollution\u003c/li\u003e\n\u003cli\u003ekeccakprg: fail until entropy is added\u003c/li\u003e\n\u003cli\u003ewebcrypto: reject output sizes which crashed engine\u003c/li\u003e\n\u003cli\u003eblake3: fix tree merging for multi-terabyte streams\u003c/li\u003e\n\u003cli\u003eImprove zeroization\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eMisc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSpeed-up Argon2 by 20%\u003c/li\u003e\n\u003cli\u003eArgon2 cost options are now optional. The defaults are \u003ccode\u003et: 3\u003c/code\u003e, \u003ccode\u003em: 1024 ** 2\u003c/code\u003e KiB (1 GiB), \u003ccode\u003ep: 1\u003c/code\u003e, \u003ccode\u003edkLen: 32\u003c/code\u003e, and a 1 GiB \u003ccode\u003emaxmem\u003c/code\u003e limit; larger-memory calls must set \u003ccode\u003emaxmem\u003c/code\u003e explicitly.\u003c/li\u003e\n\u003cli\u003eCorrected scrypt's default \u003ccode\u003emaxmem\u003c/code\u003e to work for \u003ccode\u003eN: 2 ** 20\u003c/code\u003e, \u003ccode\u003er: 8\u003c/code\u003e, and \u003ccode\u003ep: 1\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enextTick\u003c/code\u003e and \u003ccode\u003easyncLoop\u003c/code\u003e now yield through \u003ccode\u003escheduler.yield()\u003c/code\u003e when available or \u003ccode\u003esetTimeout\u003c/code\u003e otherwise, allowing timers, I/O, and rendering to progress. They also accept optional rejection cleanup; async Argon2, PBKDF2, and scrypt use it to wipe work state if scheduling is aborted.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/paulmillr/noble-hashes/compare/2.3.0...2.4.0\"\u003ehttps://github.com/paulmillr/noble-hashes/compare/2.3.0...2.4.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e2.3.0\u003c/h2\u003e\n\u003cp\u003eImprove speed:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e+10-45% 32b inputs across all hashes\u003c/li\u003e\n\u003cli\u003e+40% SHA-3 / SHAKE, +50% 1mb KT128 / KT256 / TurboSHAKE, +20% kmac\u003c/li\u003e\n\u003cli\u003e2.2x argon\u003c/li\u003e\n\u003cli\u003e+20% pbkdf2 and hkdf\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eOther changes:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eBetter error messages and stricter type checks everywhere\u003c/li\u003e\n\u003cli\u003eBugfix: HMAC _cloneInto now preserves canXOF (\u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/issues/134\"\u003e#134\u003c/a\u003e, ChALkeR); Argon2d typo rename (\u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/issues/135\"\u003e#135\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eblake2.compress renamed to _compress (marked internal).\u003c/li\u003e\n\u003cli\u003eReduce on-disk unpacked size 869kb → 665kb (-204kb) by disabling source maps (they became less relevant).\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/paulmillr/noble-hashes/compare/2.2.0...2.3.0\"\u003ehttps://github.com/paulmillr/noble-hashes/compare/2.2.0...2.3.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e2.2.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eMarch 2026 self-audit\u003c/strong\u003e (all files): no major issues found\n\u003cul\u003e\n\u003cli\u003eAudited for spec compliance and security\u003c/li\u003e\n\u003cli\u003eFix: \u003ccode\u003edkLen=0\u003c/code\u003e handling in \u003ccode\u003epbkdf2\u003c/code\u003e, \u003ccode\u003eblake2\u003c/code\u003e, \u003ccode\u003eturboshake\u003c/code\u003e, \u003ccode\u003ekt\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eFix: \u003ccode\u003eparallelHash\u003c/code\u003e with \u003ccode\u003eblockLen=0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eFix: \u003ccode\u003eargon2\u003c/code\u003e progress callback now reaches 100%\u003c/li\u003e\n\u003cli\u003eImprove: \u003ccode\u003edigestInto\u003c/code\u003e no longer returns a value (better performance)\u003c/li\u003e\n\u003cli\u003eImprove: \u003ccode\u003eargon2\u003c/code\u003e, \u003ccode\u003eblake2\u003c/code\u003e support non-4-divisible \u003ccode\u003edkLen\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eFix all Byte Array types, to ensure proper work in both TypeScript 5.6 \u0026amp; TypeScript 5.9+\n\u003cul\u003e\n\u003cli\u003eTS 5.6 has \u003ccode\u003eUint8Array\u003c/code\u003e, while TS 5.9+ made it generic \u003ccode\u003eUint8Array\u0026lt;ArrayBuffer\u0026gt;\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eThis creates incompatibility of code between versions\u003c/li\u003e\n\u003cli\u003ePreviously, it was hard to use and constantly emitted errors similar to \u003ccode\u003eTS2345\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eSee \u003ca href=\"https://redirect.github.com/microsoft/TypeScript/issues/62240\"\u003etypescript#62240\u003c/a\u003e for more context\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003esha3: speed-up by up to 50%. Contributed by \u003ca href=\"https://github.com/ChALkeR\"\u003e\u003ccode\u003e@​ChALkeR\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/pull/126\"\u003epaulmillr/noble-hashes#126\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix compilation issues on TypeScript v6\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/paulmillr/noble-hashes/blob/main/CHANGELOG.md\"\u003e@​noble/hashes's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.4.0 (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eSecurity and correctness\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eProtect passed options against mutation / pollution\u003c/li\u003e\n\u003cli\u003ekeccakprg: fail until entropy is added\u003c/li\u003e\n\u003cli\u003ewebcrypto: reject output sizes which crashed engine\u003c/li\u003e\n\u003cli\u003eblake3: fix tree merging for multi-terabyte streams\u003c/li\u003e\n\u003cli\u003eImprove zeroization\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eMisc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSpeed-up Argon2 by 20%\u003c/li\u003e\n\u003cli\u003eArgon2 cost options are now optional. The defaults are \u003ccode\u003et: 3\u003c/code\u003e, \u003ccode\u003em: 1024 ** 2\u003c/code\u003e KiB (1 GiB), \u003ccode\u003ep: 1\u003c/code\u003e, \u003ccode\u003edkLen: 32\u003c/code\u003e, and a 1 GiB \u003ccode\u003emaxmem\u003c/code\u003e limit; larger-memory calls must set \u003ccode\u003emaxmem\u003c/code\u003e explicitly.\u003c/li\u003e\n\u003cli\u003eCorrected scrypt's default \u003ccode\u003emaxmem\u003c/code\u003e to work for \u003ccode\u003eN: 2 ** 20\u003c/code\u003e, \u003ccode\u003er: 8\u003c/code\u003e, and \u003ccode\u003ep: 1\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enextTick\u003c/code\u003e and \u003ccode\u003easyncLoop\u003c/code\u003e now yield through \u003ccode\u003escheduler.yield()\u003c/code\u003e when available or \u003ccode\u003esetTimeout\u003c/code\u003e otherwise, allowing timers, I/O, and rendering to progress. They also accept optional rejection cleanup; async Argon2, PBKDF2, and scrypt use it to wipe work state if scheduling is aborted.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.3.0 (2026-08-06)\u003c/h2\u003e\n\u003ch3\u003ePerformance\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eImproved 32-byte input performance across all hashes by 10–45%.\u003c/li\u003e\n\u003cli\u003eImproved SHA-3 and SHAKE by 40%, one-megabyte KangarooTwelve, MarsupilamiFourteen, and TurboSHAKE by 50%, and KMAC by 20%.\u003c/li\u003e\n\u003cli\u003eImproved Argon2 performance by 2.2×.\u003c/li\u003e\n\u003cli\u003eImproved PBKDF2 and HKDF performance by 20%.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eOther changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdded better error messages and stricter type checks throughout the package.\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003eHMAC._cloneInto\u003c/code\u003e so it preserves \u003ccode\u003ecanXOF\u003c/code\u003e in issue \u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/issues/134\"\u003e#134\u003c/a\u003e, reported by \u003ca href=\"https://github.com/ChALkeR\"\u003e\u003ccode\u003e@​ChALkeR\u003c/code\u003e\u003c/a\u003e, and corrected an Argon2d typo in issue \u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/issues/135\"\u003e#135\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eRenamed \u003ccode\u003eblake2.compress\u003c/code\u003e to the internal \u003ccode\u003e_compress\u003c/code\u003e method.\u003c/li\u003e\n\u003cli\u003eReduced unpacked on-disk size from 869 KB to 665 KB by disabling less-relevant source maps.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.2.0 (2026-04-11)\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eMarch 2026 self-audit\u003c/strong\u003e (all files): no major issues found.\n\u003cul\u003e\n\u003cli\u003eAudited for specification compliance and security.\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003edkLen=0\u003c/code\u003e handling in \u003ccode\u003epbkdf2\u003c/code\u003e, \u003ccode\u003eblake2\u003c/code\u003e, \u003ccode\u003eturboshake\u003c/code\u003e, and \u003ccode\u003ekt\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003eparallelHash\u003c/code\u003e with \u003ccode\u003eblockLen=0\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eMade the \u003ccode\u003eargon2\u003c/code\u003e progress callback reach 100%.\u003c/li\u003e\n\u003cli\u003eChanged \u003ccode\u003edigestInto\u003c/code\u003e to return no value for better performance.\u003c/li\u003e\n\u003cli\u003eAdded support for non-four-divisible \u003ccode\u003edkLen\u003c/code\u003e values in \u003ccode\u003eargon2\u003c/code\u003e and \u003ccode\u003eblake2\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eFixed all byte-array types for compatibility with both TypeScript 5.6 and TypeScript 5.9+.\n\u003cul\u003e\n\u003cli\u003eTypeScript 5.6 uses \u003ccode\u003eUint8Array\u003c/code\u003e, while TypeScript 5.9+ made it generic as \u003ccode\u003eUint8Array\u0026lt;ArrayBuffer\u0026gt;\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eThis previously caused incompatibilities and errors such as \u003ccode\u003eTS2345\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eSee [TypeScript issue \u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/issues/62240\"\u003e#62240\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/microsoft/TypeScript/issues/62240\"\u003emicrosoft/TypeScript#62240\u003c/a\u003e) for more context.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eSped up SHA-3 by as much as 50%, contributed by \u003ca href=\"https://github.com/ChALkeR\"\u003e\u003ccode\u003e@​ChALkeR\u003c/code\u003e\u003c/a\u003e in [pull request \u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/issues/126\"\u003e#126\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/pull/126\"\u003epaulmillr/noble-hashes#126\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed compilation issues on TypeScript 6.\u003c/li\u003e\n\u003cli\u003eAdded big-endian support; all tests pass on s390x.\u003c/li\u003e\n\u003cli\u003eImproved tree-shaking and reduced bundle sizes.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/663c2aeeffc308ac0cded59bd32f7c212adacfc2\"\u003e\u003ccode\u003e663c2ae\u003c/code\u003e\u003c/a\u003e Release 2.4.0.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/a6f75198a162ba5ee46c4c7dd64aa1b402b6adb0\"\u003e\u003ccode\u003ea6f7519\u003c/code\u003e\u003c/a\u003e Add changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/1bbc433c98007747518deb335c33a48139bca45b\"\u003e\u003ccode\u003e1bbc433\u003c/code\u003e\u003c/a\u003e webcrypto: snapshot opts\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/5bd2e153661344bd8dcab84c948e416c359c71d0\"\u003e\u003ccode\u003e5bd2e15\u003c/code\u003e\u003c/a\u003e Remove unused files\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/a3bc7ffbb28e21e8eec0d762c4c2f31e8bb0ca67\"\u003e\u003ccode\u003ea3bc7ff\u003c/code\u003e\u003c/a\u003e Bump vectors\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/fcb6cb69b80dee1f897f3a183ab1b9a06ee4494e\"\u003e\u003ccode\u003efcb6cb6\u003c/code\u003e\u003c/a\u003e README\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/64f3033300c696263ff3922261ff24df310ba5eb\"\u003e\u003ccode\u003e64f3033\u003c/code\u003e\u003c/a\u003e readme\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/9ac61653c94407ea1ed48b2d574baf887fa4fe33\"\u003e\u003ccode\u003e9ac6165\u003c/code\u003e\u003c/a\u003e Bump ci workflows\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/6587b514d21bf8c5c6a42c6ad7d84835e38714fb\"\u003e\u003ccode\u003e6587b51\u003c/code\u003e\u003c/a\u003e Fix test on bun\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/91ecf918e6bf5e8b04dacb711ca716f4039add87\"\u003e\u003ccode\u003e91ecf91\u003c/code\u003e\u003c/a\u003e Fix tests\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/paulmillr/noble-hashes/compare/2.0.1...2.4.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​noble/hashes\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@openzeppelin/contracts` from 5.4.0 to 5.6.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/releases\"\u003e@​openzeppelin/contracts's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.6.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eInteroperableAddress\u003c/code\u003e: Fix overflow in the parsing functions that caused silent misparse of large interoperable addresses. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6372\"\u003e#6372\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev5.6.0\u003c/h2\u003e\n\u003ch3\u003eBreaking changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eStrings\u003c/code\u003e: The \u003ccode\u003eescapeJSON\u003c/code\u003e function now escapes all control characters in the range U+0000 to U+001F per RFC-4627. Previously only backspace, tab, newline, form feed, carriage return, double quote, and backslash were escaped. Input strings containing any other control character (e.g. null \u003ccode\u003e0x00\u003c/code\u003e) or raw bytes in U+0001–U+001F will now produce different, longer output (e.g. \u003ccode\u003e\\u0000\u003c/code\u003e for null). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6344\"\u003e#6344\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC1155\u003c/code\u003e: Performing batch transfers with exactly one id/value in the batch no-longer calls \u003ccode\u003eIERC1155Receiver.onERC1155Received\u003c/code\u003e. \u003ccode\u003eIERC1155Receiver.onERC1155BatchReceived\u003c/code\u003e is called instead (with arrays of length one). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6170\"\u003e#6170\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC1967Proxy\u003c/code\u003e and \u003ccode\u003eTransparentUpgradeableProxy\u003c/code\u003e: Mandate initialization during construction. Deployment now reverts with \u003ccode\u003eERC1967ProxyUninitialized\u003c/code\u003e if an initialize call is not provided. Developers that rely on the previous behavior and want to disable this check can do so by overriding the internal \u003ccode\u003e_unsafeAllowUninitialized\u003c/code\u003e function to return true. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5906\"\u003e#5906\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC721\u003c/code\u003e and \u003ccode\u003eERC1155\u003c/code\u003e: Prevent setting an operator for \u003ccode\u003eaddress(0)\u003c/code\u003e. In the case of \u003ccode\u003eERC721\u003c/code\u003e this type of operator allowance could lead to obfuscated mint permission. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6171\"\u003e#6171\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eRLP\u003c/code\u003e: The \u003ccode\u003eencode(bytes32)\u003c/code\u003e function now encodes \u003ccode\u003ebytes32\u003c/code\u003e as a fixed size item and not as a scalar in \u003ccode\u003eencode(uint256)\u003c/code\u003e. Users must replace calls to \u003ccode\u003eencode(bytes32)\u003c/code\u003e with \u003ccode\u003eencode(uint256(bytes32))\u003c/code\u003e to preserve the same behavior. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6167\"\u003e#6167\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4337Utils\u003c/code\u003e: The \u003ccode\u003eparseValidationData\u003c/code\u003e now returns a \u003ccode\u003eValidationRange\u003c/code\u003e as the last return tuple value indicating whether the \u003ccode\u003evalidationData\u003c/code\u003e is compared against a timestamp or block number. Developers must update their code to handle this new return value (e.g. \u003ccode\u003e(aggregator, validAfter, validUntil) -\u0026gt; (aggregator, validAfter, validUntil, range)\u003c/code\u003e). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6215\"\u003e#6215\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eSignerWebAuthn\u003c/code\u003e: The \u003ccode\u003e_rawSignatureValidation\u003c/code\u003e function now returns \u003ccode\u003efalse\u003c/code\u003e when the signature is not a valid WebAuthn authentication assertion. P256 fallback is removed. Developers can add it back by overriding the function. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6337\"\u003e#6337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eMemory\u003c/code\u003e: The \u003ccode\u003esetFreeMemoryPointer\u003c/code\u003e function is renamed to \u003ccode\u003eunsafeSetFreeMemoryPointer\u003c/code\u003e. Developers should use \u003ccode\u003eunsafeSetFreeMemoryPointer\u003c/code\u003e instead of \u003ccode\u003esetFreeMemoryPointer\u003c/code\u003e after v5.6.0. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6348\"\u003e#6348\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eMemory\u003c/code\u003e: Remove the \u003ccode\u003easBytes32\u003c/code\u003e and \u003ccode\u003easPointer\u003c/code\u003e function to reduce the risk of mistakes when manipulating memory pointers. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6340\"\u003e#6340\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChanges by category\u003c/h3\u003e\n\u003ch4\u003eAccount\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eAccount\u003c/code\u003e: Update default version of the ERC-4337 entrypoint to v0.9. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6135\"\u003e#6135\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eAccountERC7579\u003c/code\u003e: Do not revert and perform the uninstall if the \u003ccode\u003eonUninstall\u003c/code\u003e hook of a module reverts. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6142\"\u003e#6142\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4337Utils\u003c/code\u003e: Added the \u003ccode\u003epaymasterSignature\u003c/code\u003e function to extract the signature in \u003ccode\u003epaymasterAndData\u003c/code\u003e after Entrypoint v0.9. Similarly, a variant of \u003ccode\u003epaymasterData\u003c/code\u003e that receives a flag to exclude the signature from the returned data. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6215\"\u003e#6215\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4337Utils\u003c/code\u003e: Added variants of \u003ccode\u003epackValidationData(address,uint48,uint48)\u003c/code\u003e and \u003ccode\u003epackValidationData(bool,uint48,uint48)\u003c/code\u003e that receive a \u003ccode\u003eValidationRange\u003c/code\u003e argument, could be timestamp or block number. Similarly, the \u003ccode\u003eparseValidationData\u003c/code\u003e now returns a \u003ccode\u003eValidationRange\u003c/code\u003e too. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6215\"\u003e#6215\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTokens\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eERC1155\u003c/code\u003e: Introduce the \u003ccode\u003e_checkAuthorized\u003c/code\u003e internal virtual function to encapsulate \u003ccode\u003eisApprovedForAll\u003c/code\u003e and \u003ccode\u003emsg.sender == from\u003c/code\u003e checks. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6133\"\u003e#6133\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC1155\u003c/code\u003e: Call \u003ccode\u003eIERC1155Receiver.onERC1155BatchReceived\u003c/code\u003e when performing a batch transfers with exactly one id/value in the batch. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6170\"\u003e#6170\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4626\u003c/code\u003e: Allow overriding underlying assets transfer mechanisms through new internal virtual functions (\u003ccode\u003e_transferIn\u003c/code\u003e and \u003ccode\u003e_transferOut\u003c/code\u003e). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5970\"\u003e#5970\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC721URIStorage\u003c/code\u003e: Add \u003ccode\u003e_suffixURI\u003c/code\u003e, an internal getter for retrieving the custom tokenURI without the base prefix. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6175\"\u003e#6175\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdd ERC-165 detection for the \u003ccode\u003eIERC6909ContentURI\u003c/code\u003e, \u003ccode\u003eIERC6909TokenSupply\u003c/code\u003e and \u003ccode\u003eIERC6909Metadata\u003c/code\u003e interfaces in the \u003ccode\u003eERC6909ContentURI\u003c/code\u003e, \u003ccode\u003eERC6909TokenSupply\u003c/code\u003e and \u003ccode\u003eERC6909Metadata\u003c/code\u003e contracts respectively. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6246\"\u003e#6246\u003c/a\u003e) and (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6247\"\u003e#6247\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCross-chain\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eBridgeFungible\u003c/code\u003e, \u003ccode\u003eBridgeERC20\u003c/code\u003e and \u003ccode\u003eBridgeERC7802\u003c/code\u003e: Added bridge contracts to handle crosschain movements of ERC-20 (and ERC-7802) tokens. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5914\"\u003e#5914\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6328\"\u003e#6328\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eCrosschainLinked\u003c/code\u003e: Added a new helper contract to facilitate communication between a contract on one chain and counterparts on remote chains through ERC-7786 gateways. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5914\"\u003e#5914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC20Crosschain\u003c/code\u003e: Added an ERC-20 extension to embed an ERC-7786 based crosschain bridge directly in the token contract. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5914\"\u003e#5914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eInteroperableAddress\u003c/code\u003e: Reject inputs with both chain reference and addresses empty. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6340\"\u003e#6340\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCryptography\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eMessageHashUtils\u003c/code\u003e: Add helper functions to build EIP-712 domain typehash and separator with fields selectively enabled/disabled. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5908\"\u003e#5908\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eSignatureChecker\u003c/code\u003e: Add \u003ccode\u003eisValidERC1271SignatureNowCalldata\u003c/code\u003e, a variant of \u003ccode\u003eisValidERC1271SignatureNow\u003c/code\u003e that takes the signature from calldata. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6123\"\u003e#6123\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eTrieProof\u003c/code\u003e: Add library for verifying Ethereum Merkle-Patricia trie inclusion proofs. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5826\"\u003e#5826\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eWebAuthn\u003c/code\u003e: Verification now returns \u003ccode\u003efalse\u003c/code\u003e instead of reverting when client data contains an out-of-bounds \u003ccode\u003echallengeIndex\u003c/code\u003e. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6329\"\u003e#6329\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eStructures\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/blob/master/CHANGELOG.md\"\u003e@​openzeppelin/contracts's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.6.1 (2026-02-27)\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eInteroperableAddress\u003c/code\u003e: Fix overflow in the parsing functions that caused silent misparse of large interoperable addresses. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6372\"\u003e#6372\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.6.0 (2026-02-25)\u003c/h2\u003e\n\u003ch3\u003eBreaking changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eStrings\u003c/code\u003e: The \u003ccode\u003eescapeJSON\u003c/code\u003e function now escapes all control characters in the range U+0000 to U+001F per RFC-4627. Previously only backspace, tab, newline, form feed, carriage return, double quote, and backslash were escaped. Input strings containing any other control character (e.g. null \u003ccode\u003e0x00\u003c/code\u003e) or raw bytes in U+0001–U+001F will now produce different, longer output (e.g. \u003ccode\u003e\\u0000\u003c/code\u003e for null). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6344\"\u003e#6344\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC1155\u003c/code\u003e: Performing batch transfers with exactly one id/value in the batch no-longer calls \u003ccode\u003eIERC1155Receiver.onERC1155Received\u003c/code\u003e. \u003ccode\u003eIERC1155Receiver.onERC1155BatchReceived\u003c/code\u003e is called instead (with arrays of length one). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6170\"\u003e#6170\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC1967Proxy\u003c/code\u003e and \u003ccode\u003eTransparentUpgradeableProxy\u003c/code\u003e: Mandate initialization during construction. Deployment now reverts with \u003ccode\u003eERC1967ProxyUninitialized\u003c/code\u003e if an initialize call is not provided. Developers that rely on the previous behavior and want to disable this check can do so by overriding the internal \u003ccode\u003e_unsafeAllowUninitialized\u003c/code\u003e function to return true. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5906\"\u003e#5906\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC721\u003c/code\u003e and \u003ccode\u003eERC1155\u003c/code\u003e: Prevent setting an operator for \u003ccode\u003eaddress(0)\u003c/code\u003e. In the case of \u003ccode\u003eERC721\u003c/code\u003e this type of operator allowance could lead to obfuscated mint permission. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6171\"\u003e#6171\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eRLP\u003c/code\u003e: The \u003ccode\u003eencode(bytes32)\u003c/code\u003e function now encodes \u003ccode\u003ebytes32\u003c/code\u003e as a fixed size item and not as a scalar in \u003ccode\u003eencode(uint256)\u003c/code\u003e. Users must replace calls to \u003ccode\u003eencode(bytes32)\u003c/code\u003e with \u003ccode\u003eencode(uint256(bytes32))\u003c/code\u003e to preserve the same behavior. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6167\"\u003e#6167\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4337Utils\u003c/code\u003e: The \u003ccode\u003eparseValidationData\u003c/code\u003e now returns a \u003ccode\u003eValidationRange\u003c/code\u003e as the last return tuple value indicating whether the \u003ccode\u003evalidationData\u003c/code\u003e is compared against a timestamp or block number. Developers must update their code to handle this new return value (e.g. \u003ccode\u003e(aggregator, validAfter, validUntil) -\u0026gt; (aggregator, validAfter, validUntil, range)\u003c/code\u003e). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6215\"\u003e#6215\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eSignerWebAuthn\u003c/code\u003e: The \u003ccode\u003e_rawSignatureValidation\u003c/code\u003e function now returns \u003ccode\u003efalse\u003c/code\u003e when the signature is not a valid WebAuthn authentication assertion. P256 fallback is removed. Developers can add it back by overriding the function. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6337\"\u003e#6337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eMemory\u003c/code\u003e: The \u003ccode\u003esetFreeMemoryPointer\u003c/code\u003e function is renamed to \u003ccode\u003eunsafeSetFreeMemoryPointer\u003c/code\u003e. Developers should use \u003ccode\u003eunsafeSetFreeMemoryPointer\u003c/code\u003e instead of \u003ccode\u003esetFreeMemoryPointer\u003c/code\u003e after v5.6.0. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6348\"\u003e#6348\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eMemory\u003c/code\u003e: Remove the \u003ccode\u003easBytes32\u003c/code\u003e and \u003ccode\u003easPointer\u003c/code\u003e function to reduce the risk of mistakes when manipulating memory pointers. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6340\"\u003e#6340\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChanges by category\u003c/h3\u003e\n\u003ch4\u003eAccount\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eAccount\u003c/code\u003e: Update default version of the ERC-4337 entrypoint to v0.9. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6135\"\u003e#6135\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eAccountERC7579\u003c/code\u003e: Do not revert and perform the uninstall if the \u003ccode\u003eonUninstall\u003c/code\u003e hook of a module reverts. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6142\"\u003e#6142\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4337Utils\u003c/code\u003e: Added the \u003ccode\u003epaymasterSignature\u003c/code\u003e function to extract the signature in \u003ccode\u003epaymasterAndData\u003c/code\u003e after Entrypoint v0.9. Similarly, a variant of \u003ccode\u003epaymasterData\u003c/code\u003e that receives a flag to exclude the signature from the returned data. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6215\"\u003e#6215\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4337Utils\u003c/code\u003e: Added variants of \u003ccode\u003epackValidationData(address,uint48,uint48)\u003c/code\u003e and \u003ccode\u003epackValidationData(bool,uint48,uint48)\u003c/code\u003e that receive a \u003ccode\u003eValidationRange\u003c/code\u003e argument, could be timestamp or block number. Similarly, the \u003ccode\u003eparseValidationData\u003c/code\u003e now returns a \u003ccode\u003eValidationRange\u003c/code\u003e too. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6215\"\u003e#6215\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTokens\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eERC1155\u003c/code\u003e: Introduce the \u003ccode\u003e_checkAuthorized\u003c/code\u003e internal virtual function to encapsulate \u003ccode\u003eisApprovedForAll\u003c/code\u003e and \u003ccode\u003emsg.sender == from\u003c/code\u003e checks. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6133\"\u003e#6133\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC1155\u003c/code\u003e: Call \u003ccode\u003eIERC1155Receiver.onERC1155BatchReceived\u003c/code\u003e when performing a batch transfers with exactly one id/value in the batch. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6170\"\u003e#6170\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4626\u003c/code\u003e: Allow overriding underlying assets transfer mechanisms through new internal virtual functions (\u003ccode\u003e_transferIn\u003c/code\u003e and \u003ccode\u003e_transferOut\u003c/code\u003e). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5970\"\u003e#5970\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC721URIStorage\u003c/code\u003e: Add \u003ccode\u003e_suffixURI\u003c/code\u003e, an internal getter for retrieving the custom tokenURI without the base prefix. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6175\"\u003e#6175\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdd ERC-165 detection for the \u003ccode\u003eIERC6909ContentURI\u003c/code\u003e, \u003ccode\u003eIERC6909TokenSupply\u003c/code\u003e and \u003ccode\u003eIERC6909Metadata\u003c/code\u003e interfaces in the \u003ccode\u003eERC6909ContentURI\u003c/code\u003e, \u003ccode\u003eERC6909TokenSupply\u003c/code\u003e and \u003ccode\u003eERC6909Metadata\u003c/code\u003e contracts respectively. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6246\"\u003e#6246\u003c/a\u003e) and (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6247\"\u003e#6247\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCross-chain\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eBridgeFungible\u003c/code\u003e, \u003ccode\u003eBridgeERC20\u003c/code\u003e and \u003ccode\u003eBridgeERC7802\u003c/code\u003e: Added bridge contracts to handle crosschain movements of ERC-20 (and ERC-7802) tokens. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5914\"\u003e#5914\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6328\"\u003e#6328\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eCrosschainLinked\u003c/code\u003e: Added a new helper contract to facilitate communication between a contract on one chain and counterparts on remote chains through ERC-7786 gateways. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5914\"\u003e#5914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC20Crosschain\u003c/code\u003e: Added an ERC-20 extension to embed an ERC-7786 based crosschain bridge directly in the token contract. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5914\"\u003e#5914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eInteroperableAddress\u003c/code\u003e: Reject inputs with both chain reference and addresses empty. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6340\"\u003e#6340\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCryptography\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eMessageHashUtils\u003c/code\u003e: Add helper functions to build EIP-712 domain typehash and separator with fields selectively enabled/disabled. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5908\"\u003e#5908\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eSignatureChecker\u003c/code\u003e: Add \u003ccode\u003eisValidERC1271SignatureNowCalldata\u003c/code\u003e, a variant of \u003ccode\u003eisValidERC1271SignatureNow\u003c/code\u003e that takes the signature from calldata. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6123\"\u003e#6123\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eTrieProof\u003c/code\u003e: Add library for verifying Ethereum Merkle-Patricia trie inclusion proofs. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5826\"\u003e#5826\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eWebAuthn\u003c/code\u003e: Verification now returns \u003ccode\u003efalse\u003c/code\u003e instead of reverting when client data contains an out-of-bounds \u003ccode\u003echallengeIndex\u003c/code\u003e. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6329\"\u003e#6329\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eStructures\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/5fd1781b1454fd1ef8e722282f86f9293cacf256\"\u003e\u003ccode\u003e5fd1781\u003c/code\u003e\u003c/a\u003e Release v5.6.1 (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/issues/6377\"\u003e#6377\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/82cad372db5b5a2a1dc7cb45751df311d86a7117\"\u003e\u003ccode\u003e82cad37\u003c/code\u003e\u003c/a\u003e Fix support for very large inputs in InteroperableAddress (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/issues/6372\"\u003e#6372\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/56a3de2cea907c9a500d32e70c275f68393b7ba6\"\u003e\u003ccode\u003e56a3de2\u003c/code\u003e\u003c/a\u003e Release v5.6.0 (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/issues/6340\"\u003e#6340\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/6ec651d4b3235a74f1f9dcc802f10e75909806f4\"\u003e\u003ccode\u003e6ec651d\u003c/code\u003e\u003c/a\u003e Exit release candidate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/4c10cbe5c114fb454dcf37aa99aedcf434bc34c6\"\u003e\u003ccode\u003e4c10cbe\u003c/code\u003e\u003c/a\u003e Add support for inline extension nodes in TrieProof (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/issues/6351\"\u003e#6351\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/aa110ab23c48dbc1a78fba0bb4366e894568c126\"\u003e\u003ccode\u003eaa110ab\u003c/code\u003e\u003c/a\u003e Fix typos and documentation for the 5.6 audit. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/issues/6330\"\u003e#6330\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/27dddf8e3087072acdefdc49d942d84ae3051b29\"\u003e\u003ccode\u003e27dddf8\u003c/code\u003e\u003c/a\u003e Escape control characters in Strings.escapeJSON (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/issues/6344\"\u003e#6344\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/f5cd8d897a1c4c1af2345a185269bb61d6174c01\"\u003e\u003ccode\u003ef5cd8d8\u003c/code\u003e\u003c/a\u003e Reject interoperable addresses whith both chain reference and addresses empty...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/44d016c5b59c2c4cd3a7eb97df6de8baf805c303\"\u003e\u003ccode\u003e44d016c\u003c/code\u003e\u003c/a\u003e Check that slice are in the reserved space in Accumulator push and shift (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/issues/6302\"\u003e#6302\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/cbaf3a4159561dd62ec5652597dbe5cd66a59d56\"\u003e\u003ccode\u003ecbaf3a4\u003c/code\u003e\u003c/a\u003e Remove Memory.asPointer and Memory.asBytes32 + add warning about setting the ...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/compare/v5.4.0...v5.6.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​openzeppelin/contracts\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@supabase/supabase-js` from 2.90.0 to 2.116.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/supabase/supabase-js/releases\"\u003e@​supabase/supabase-js's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.116.0\u003c/h2\u003e\n\u003ch2\u003e2.116.0 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eauth:\u003c/strong\u003e add MFA recovery codes API (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2676\"\u003e#2676\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e add bucket lifecycle configuration (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2659\"\u003e#2659\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e topk 10k support (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2667\"\u003e#2667\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e add versionId support to create URL methods (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2678\"\u003e#2678\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eauth:\u003c/strong\u003e silence commit-guard-discarded refresh in initial session (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2668\"\u003e#2668\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e drop legacy prefix from lifecycles (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2674\"\u003e#2674\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003esupabase:\u003c/strong\u003e warn when schema is passed outside db options (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2663\"\u003e#2663\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efadymak\u003c/li\u003e\n\u003cli\u003eFerhat Elmas\u003c/li\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eTyler Hillery\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev2.116.0-canary.3\u003c/h2\u003e\n\u003ch2\u003e2.116.0-canary.3 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eauth:\u003c/strong\u003e add MFA recovery codes API (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2676\"\u003e#2676\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e add versionId support to create URL methods (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2678\"\u003e#2678\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efadymak\u003c/li\u003e\n\u003cli\u003eKaterina Skroumpelou\u003c/li\u003e\n\u003cli\u003eTyler Hillery\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev2.116.0-canary.2\u003c/h2\u003e\n\u003ch2\u003e2.116.0-canary.2 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e topk 10k support (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2667\"\u003e#2667\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e drop legacy prefix from lifecycles (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2674\"\u003e#2674\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/supabase/supabase-js/blob/master/packages/core/supabase-js/CHANGELOG.md\"\u003e@​supabase/supabase-js's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.116.0 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eauth:\u003c/strong\u003e add MFA recovery codes API (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2676\"\u003e#2676\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003esupabase:\u003c/strong\u003e warn when schema is passed outside db options (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2663\"\u003e#2663\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efadymak\u003c/li\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.115.0 (2026-09-03)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003epostgrest:\u003c/strong\u003e add getOpenApiSpec() (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2651\"\u003e#2651\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.114.0 (2026-09-02)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for \u003ccode\u003e@​supabase/supabase-js\u003c/code\u003e to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003ch2\u003e2.113.0 (2026-09-02)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for \u003ccode\u003e@​supabase/supabase-js\u003c/code\u003e to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003ch2\u003e2.112.4 (2026-08-24)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for \u003ccode\u003e@​supabase/supabase-js\u003c/code\u003e to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003ch2\u003e2.112.3 (2026-08-11)\u003c/h2\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003esupabase:\u003c/strong\u003e improve trace propagation sampling and diagnostics (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2604\"\u003e#2604\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003esupabase:\u003c/strong\u003e add trace context headers to canonical CORS allow-list (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2603\"\u003e#2603\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.112.2 (2026-08-06)\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/5aedaab92566149dc728ce0480b032841dddd463\"\u003e\u003ccode\u003e5aedaab\u003c/code\u003e\u003c/a\u003e feat(auth): add MFA recovery codes API (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2676\"\u003e#2676\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/e4f675a96addf3e767c38f7e8c8759754f10f490\"\u003e\u003ccode\u003ee4f675a\u003c/code\u003e\u003c/a\u003e fix(supabase): warn when schema is passed outside db options (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2663\"\u003e#2663\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/dbe76791e9eab34d1b91ec0ebdb9f11fc770b4eb\"\u003e\u003ccode\u003edbe7679\u003c/code\u003e\u003c/a\u003e chore(release): version 2.115.0 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2664\"\u003e#2664\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/3eb61931b0d81728eece27b43df962e7336b0ed5\"\u003e\u003ccode\u003e3eb6193\u003c/code\u003e\u003c/a\u003e docs(supabase): clarify db.schema needs the second generic (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2662\"\u003e#2662\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/92fb8ba0cbfc50c3f550b0768210e98d26f2b1d5\"\u003e\u003ccode\u003e92fb8ba\u003c/code\u003e\u003c/a\u003e feat(postgrest): add getOpenApiSpec() (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2651\"\u003e#2651\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/aef432bc806fbbe90dde71ec9b75e3cc6d702a31\"\u003e\u003ccode\u003eaef432b\u003c/code\u003e\u003c/a\u003e chore(release): version 2.114.0 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2653\"\u003e#2653\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/67b07b075220806f8f7355995db646bd6d0a85db\"\u003e\u003ccode\u003e67b07b0\u003c/code\u003e\u003c/a\u003e chore(release): version 2.113.0 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2650\"\u003e#2650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/062ae5e6f5e06c08284d7392316389dc7a935baf\"\u003e\u003ccode\u003e062ae5e\u003c/code\u003e\u003c/a\u003e chore(release): version 2.112.4 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2628\"\u003e#2628\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/c7397c19cb6cb8b1562be27cb0a09ed0e240276a\"\u003e\u003ccode\u003ec7397c1\u003c/code\u003e\u003c/a\u003e chore(supabase): bump supabase cli to 2.113.0 (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2606\"\u003e#2606\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/bbc167cbef7fb841d44c53fb3c45e1d19aa3ece3\"\u003e\u003ccode\u003ebbc167c\u003c/code\u003e\u003c/a\u003e chore(release): version 2.112.3 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2608\"\u003e#2608\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/supabase/supabase-js/commits/v2.116.0/packages/core/supabase-js\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@walletconnect/ethereum-provider` from 2.23.1 to 2.24.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/releases\"\u003e@​walletconnect/ethereum-provider's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​walletconnect/ethereum-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.24.0\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/WalletConnect/walletconnect-monorepo/pull/7304\"\u003e#7304\u003c/a\u003e \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/83ba7d4003911bdfa25b41f17ea13f6120d78754\"\u003e\u003ccode\u003e83ba7d4\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ganchoradkov\"\u003e\u003ccode\u003e@​ganchoradkov\u003c/code\u003e\u003c/a\u003e! - Remove unused declared dependencies (\u003ccode\u003e@walletconnect/safe-json\u003c/code\u003e from utils, \u003ccode\u003e@walletconnect/types\u003c/code\u003e from pay, \u003ccode\u003e@walletconnect/core\u003c/code\u003e and \u003ccode\u003e@walletconnect/jsonrpc-provider\u003c/code\u003e from pos-client, \u003ccode\u003eevents\u003c/code\u003e from react-native-compat, \u003ccode\u003euint8arrays\u003c/code\u003e from signer-connection, \u003ccode\u003e@walletconnect/jsonrpc-provider\u003c/code\u003e, \u003ccode\u003e@walletconnect/jsonrpc-utils\u003c/code\u003e and \u003ccode\u003e@walletconnect/sign-client\u003c/code\u003e from ethereum-provider). No runtime changes.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/83ba7d4003911bdfa25b41f17ea13f6120d78754\"\u003e\u003ccode\u003e83ba7d4\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/a610bfe31482adfc2596ef0a0f6306cf8060cc87\"\u003e\u003ccode\u003ea610bfe\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/fa9227f783944dbdaefe6fc03c4de70c2ff9c194\"\u003e\u003ccode\u003efa9227f\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/f8bfc24580bf7fe2047ba480885c79f76106c055\"\u003e\u003ccode\u003ef8bfc24\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/utils\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.24.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/universal-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.24.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/types\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.24.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​walletconnect/ethereum-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.10\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/cd32ff1ebccc6a186ca5890827ab96a0552f9c58\"\u003e\u003ccode\u003ecd32ff1\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/63ff999cb096f77bb9ea9ae940cbf5dd2d7a0b6d\"\u003e\u003ccode\u003e63ff999\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/3233b479fdd9864c60a4ed21c782a7e9194e581e\"\u003e\u003ccode\u003e3233b47\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/3ea740ed9b8abd0e6724f409b025a0c926a75106\"\u003e\u003ccode\u003e3ea740e\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/4af452446a5e83a465c76a5075d9db0b086e6851\"\u003e\u003ccode\u003e4af4524\u003c/code\u003e\u003c/a\u003e]:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/utils\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.10\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/sign-client\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.10\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/types\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.10\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/universal-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.10\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​walletconnect/ethereum-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.9\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/bb4869f44f493973cef190c4100d28b321284e03\"\u003e\u003ccode\u003ebb4869f\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/6e4a34d37bf28e96aa65737508f63da701b11969\"\u003e\u003ccode\u003e6e4a34d\u003c/code\u003e\u003c/a\u003e]:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/utils\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.9\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/sign-client\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.9\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/universal-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.9\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/types\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.9\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​walletconnect/ethereum-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.8\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/utils\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.8\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/sign-client\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.8\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/types\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.8\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/universal-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.8\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​walletconnect/ethereum-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.7\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/0b699db1d3a0eb760f1599df7c9074f136329088\"\u003e\u003ccode\u003e0b699db\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/a09c7fe4a89d7eb5d6376fb67cc096f72739a4cc\"\u003e\u003ccode\u003ea09c7fe\u003c/code\u003e\u003c/a\u003e]:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/utils\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.7\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/sign-client\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.7\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/universal-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.7\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/types\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.7\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​walletconnect/ethereum-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.6\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/blob/v2.0/providers/ethereum-provider/CHANGELOG.md\"\u003e@​walletconnect/ethereum-provider's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.24.0\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/WalletConnect/walletconnect-monorepo/pull/7304\"\u003e#7304\u003c/a\u003e \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/83ba7d4003911bdfa25b41f17ea13f6120d78754\"\u003e\u003ccode\u003e83ba7d4\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ganchoradkov\"\u003e\u003ccode\u003e@​ganchoradkov\u003c/code\u003e\u003c/a\u003e! - Remove unused declared dependencies (\u003ccode\u003e@walletconnect/safe-json\u003c/code\u003e from utils, \u003ccode\u003e@walletconnect/types\u003c/code\u003e from pay, \u003ccode\u003e@walletconnect/core\u003c/code\u003e and \u003ccode\u003e@walletconnect/jsonrpc-provider\u003c/code\u003e from pos-client, \u003ccode\u003eevents\u003c/code\u003e from react-native-compat, \u003ccode\u003euint8arrays\u003c/code\u003e from signer-connection, \u003ccode\u003e@walletconnect/jsonrpc-provider\u003c/code\u003e, \u003ccode\u003e@walletconnect/jsonrpc-utils\u003c/code\u003e and \u003ccode\u003e@walletconnect/sign-client\u003c/code\u003e from ethereum-provider). No runtime changes.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/83ba7d4003911bdfa25b41f17ea13f6120d78754\"\u003e\u003ccode\u003e83ba7d4\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/a610bfe31482adfc2596ef0a0f6306cf8060cc87\"\u003e\u003ccode\u003ea610bfe\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/fa9227f783944dbdaefe6fc03c4de70c2ff9c194\"\u003e\u003ccode\u003efa9227f\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/f8bfc24580bf7fe2047ba480885c79f76106c055\"\u003e\u003ccode\u003ef8bfc24\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/utils\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.24.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/universal-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.24.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/types\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.24.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/50399e3ba5d73c18d83880c2c62cc8dbf32f5145\"\u003e\u003ccode\u003e50399e3\u003c/code\u003e\u003c/a\u003e chore: update versions and lerna.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/83ba7d4003911bdfa25b41f17ea13f6120d78754\"\u003e\u003ccode\u003e83ba7d4\u003c/code\u003e\u003c/a\u003e chore: remove unused dependencies and bump dev tooling security versions\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/3ef9f3e9bdee1abb3daaee08df1a13fe2f97b853\"\u003e\u003ccode\u003e3ef9f3e\u003c/code\u003e\u003c/a\u003e chore: update versions and lerna.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/d6a75081ef41fdc5c6f616a4b70bdb8a06956e5c\"\u003e\u003ccode\u003ed6a7508\u003c/code\u003e\u003c/a\u003e fix: add missing wait-on devDependency to ethereum-provider\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/4aed1dbe9494750553c697c7ccc2263869c6ef11\"\u003e\u003ccode\u003e4aed1db\u003c/code\u003e\u003c/a\u003e chore: fix vulnerabilities, remove unused deps, update packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/8ccd9aaf4305c4e56282dcbd7c43b0d917558ace\"\u003e\u003ccode\u003e8ccd9aa\u003c/code\u003e\u003c/a\u003e chore: update versions and lerna.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/899be2eaf4d18d3aba35105b6523773607ee7eca\"\u003e\u003ccode\u003e899be2e\u003c/code\u003e\u003c/a\u003e fix: prevent Node.js crypto from leaking into browser bundles\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/99f6145209070b1a5db7fd5ff417bc4f9d0a1911\"\u003e\u003ccode\u003e99f6145\u003c/code\u003e\u003c/a\u003e chore: update versions and lerna.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/44d591d7a13898605707676089794ac487087eba\"\u003e\u003ccode\u003e44d591d\u003c/code\u003e\u003c/a\u003e chore: fix security vulnerabilities and migrate rollup 2 to 4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/83174a68c3f6b5eab3c747f991a24209c3fd7340\"\u003e\u003ccode\u003e83174a6\u003c/code\u003e\u003c/a\u003e chore: update versions and lerna.json\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commits/@walletconnect/ethereum-provider@2.24.0/providers/ethereum-provider\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `axios` from 1.19.0 to 1.20.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/releases\"\u003eaxios's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.20.0 — August 19, 2026\u003c/h2\u003e\n\u003cp\u003eThis release hardens runtime option handling, adds RFC 9110 status-code aliases, fixes Node.js and XHR reliability issues, and refreshes project tooling and documentation.\u003c/p\u003e\n\u003ch2\u003e⚠️ Breaking Changes \u0026amp; Deprecations\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eHTTP Status Naming: Added ContentTooLarge (413) and UnprocessableContent (422), while retaining PayloadTooLarge and UnprocessableEntity as backward-compatible deprecated aliases. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11082\"\u003e#11082\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRuntime Option Handling: Hardened behavioral configuration reads against shared and foreign prototype pollution and normalized unsafe interceptor replacement objects. This also clarifies Fetch redirect and custom implementation behavior, HTTP/2 DNS and proxy handling, CIDR-based NO_PROXY matching, and malformed data URI rejection; see the PR for documented compatibility effects. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11141\"\u003e#11141\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eInterceptor Lifecycle: Prevented unbounded handler-array growth by trimming trailing ejected interceptors without changing iteration semantics, and kept interceptor operations safe when the public handlers field is nullish. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11087\"\u003e#11087\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11118\"\u003e#11118\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRequest Error Preservation: Prevented custom Error.prepareStackTrace implementations that return non-string values from replacing the original request failure with an unrelated TypeError. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11109\"\u003e#11109\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eXHR Reliability: Navigation-canceled requests now reject with ECONNABORTED instead of resolving with status 0, while successful downloads flush their final progress callback during the live loadend dispatch. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11094\"\u003e#11094\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11121\"\u003e#11121\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eNode.js Socket Memory: Removed request-context retention from per-socket error listeners, preventing completed response data from being pinned for the lifetime of pooled keep-alive sockets. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11091\"\u003e#11091\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eCore Methods and HTTP Errors: Prevented structural method-header buckets from leaking into outgoing headers, standardized invalid DNS lookup and httpVersion failures as AxiosError.ERR_BAD_OPTION_VALUE, and corrected the timeoutErrorMessage merge strategy. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11096\"\u003e#11096\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDependencies: Updated fast-uri, postcss, js-yaml, mocha, development-tooling groups, and GitHub Actions dependencies. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11092\"\u003e#11092\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11098\"\u003e#11098\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11099\"\u003e#11099\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11106\"\u003e#11106\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11107\"\u003e#11107\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11122\"\u003e#11122\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11123\"\u003e#11123\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11126\"\u003e#11126\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11127\"\u003e#11127\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11133\"\u003e#11133\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11140\"\u003e#11140\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11143\"\u003e#11143\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11144\"\u003e#11144\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eDocumentation: Applied the v1.19.0 documentation updates, added the missing fs import to the README stream example, introduced localized global search, and repaired the interceptor test link. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11101\"\u003e#11101\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11113\"\u003e#11113\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11097\"\u003e#11097\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11119\"\u003e#11119\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSponsorship: Updated sponsorship links and data and added ScrapingBee as a sponsor. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11124\"\u003e#11124\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11136\"\u003e#11136\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11137\"\u003e#11137\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eCI and Release: Switched ESM smoke tests to locked dependencies and synchronized package and runtime version metadata for v1.20.0. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11128\"\u003e#11128\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11152\"\u003e#11152\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🌟 New Contributors\u003c/h2\u003e\n\u003cp\u003eWe are thrilled to welcome our new contributors. Thank you for helping improve axios:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yens1\"\u003e\u003ccode\u003e@​yens1\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11109\"\u003e#11109\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Sasireddy001\"\u003e\u003ccode\u003e@​Sasireddy001\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11113\"\u003e#11113\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ari-token-security\"\u003e\u003ccode\u003e@​ari-token-security\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11094\"\u003e#11094\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/timothyokooboh\"\u003e\u003ccode\u003e@​timothyokooboh\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11097\"\u003e#11097\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gi9439041-png\"\u003e\u003ccode\u003e@​gi9439041-png\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11119\"\u003e#11119\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hashim1999164\"\u003e\u003ccode\u003e@​Hashim1999164\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11082\"\u003e#11082\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/v-dev-cl\"\u003e\u003ccode\u003e@​v-dev-cl\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11091\"\u003e#11091\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/r0h1tb\"\u003e\u003ccode\u003e@​r0h1tb\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11118\"\u003e#11118\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ostapondo\"\u003e\u003ccode\u003e@​ostapondo\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11121\"\u003e#11121\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eFull Changelog (\u003ca href=\"https://github.com/axios/axios/compare/v1.19.0...v1.20.0\"\u003ehttps://github.com/axios/axios/compare/v1.19.0...v1.20.0\u003c/a\u003e)\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/blob/v1.x/CHANGELOG.md\"\u003eaxios's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/84a9f3b9a4f3244b8c8e818f557d64c7b964fb25\"\u003e\u003ccode\u003e84a9f3b\u003c/code\u003e\u003c/a\u003e chore(release): prepare release 1.20.0 (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11152\"\u003e#11152\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/e6824eec5fcf9da467a9792724396badc490c469\"\u003e\u003ccode\u003ee6824ee\u003c/code\u003e\u003c/a\u003e fix: core methodList, HTTP adapter errors, and add tests (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11096\"\u003e#11096\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/d8a919fd81403d59058c0e9dbefc540407dee83f\"\u003e\u003ccode\u003ed8a919f\u003c/code\u003e\u003c/a\u003e fix(xhr): flush final progress during the live loadend dispatch (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11121\"\u003e#11121\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/2d2a21af8a433089474a2149781799c93acbcf3c\"\u003e\u003ccode\u003e2d2a21a\u003c/code\u003e\u003c/a\u003e fix(interceptors): tolerate nullish handlers in syncHandlerEntries (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11118\"\u003e#11118\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/d19040bda7a8be2f82c3c6e1a5bc03917daee39a\"\u003e\u003ccode\u003ed19040b\u003c/code\u003e\u003c/a\u003e fix: harden runtime option handling (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11141\"\u003e#11141\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/e0a02dd16671deabe2b809334d4c2ebede29a233\"\u003e\u003ccode\u003ee0a02dd\u003c/code\u003e\u003c/a\u003e chore(deps): bump zizmorcore/zizmor-action from 0.6.1 to 0.6.2 in the github-...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/d10cb3aa3cda1d78721ddf96be590478df26cd81\"\u003e\u003ccode\u003ed10cb3a\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump the development_dependencies group with 4 updates (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11143\"\u003e#11143\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/2c94646eb7cb7ab9dcb2aefdb04ab1b040c28e16\"\u003e\u003ccode\u003e2c94646\u003c/code\u003e\u003c/a\u003e chore(deps): bump js-yaml and mocha in /tests/smoke/cjs (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11133\"\u003e#11133\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/76c12bce5a4fe9a45bef9a5bf2baaf599d7d382e\"\u003e\u003ccode\u003e76c12bc\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump js-yaml from 4.3.0 to 4.3.1 (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11140\"\u003e#11140\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/ba98559a7f5a18e531b5762387e5957bd281af3d\"\u003e\u003ccode\u003eba98559\u003c/code\u003e\u003c/a\u003e docs: add ScrapingBee sponsor (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11137\"\u003e#11137\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/axios/axios/compare/v1.19.0...v1.20.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `date-fns` from 4.1.0 to 4.4.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/date-fns/date-fns/releases\"\u003edate-fns's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.4.0\u003c/h2\u003e\n\u003cp\u003eThis release revisits the approach to CDN usage and introduces a new package, \u003ccode\u003e@date-fns/cdn\u003c/code\u003e and deprecates the \u003ccode\u003edate-fns\u003c/code\u003e CDN scripts. It allowed reducing the zipped package size from \u003ccode\u003e5.83 MB\u003c/code\u003e down to \u003ccode\u003e3.96 MB\u003c/code\u003e without introducing any breaking changes.\u003c/p\u003e\n\u003cp\u003eIn \u003ccode\u003ev5.0.0-alpha.0\u003c/code\u003e where CDN scripts are completely removed from \u003ccode\u003edate-fns\u003c/code\u003e the change is more significant and brings the zipped package size down to \u003ccode\u003e2.89 MB\u003c/code\u003e.\u003c/p\u003e\n\u003cp\u003eIt is just the first step in optimizing the package size. Expect further size reduction in the future v4 and v5 versions.\u003c/p\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDEPRECATED\u003c/strong\u003e: The \u003ccode\u003edate-fns\u003c/code\u003e CDN scripts are now deprecated and will be removed in the next major release. Please switch to the new \u003ccode\u003e@date-fns/cdn\u003c/code\u003e package for CDN usage.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eRemoved CDN source maps to reduce the package size. If you rely on them, please switch to the new \u003ccode\u003e@date-fns/cdn\u003c/code\u003e package that still includes them.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.3.0\u003c/h2\u003e\n\u003cp\u003eKudos to \u003ca href=\"https://github.com/ImRodry\"\u003e\u003ccode\u003e@​ImRodry\u003c/code\u003e\u003c/a\u003e and \u003ca href=\"https://github.com/puneetdixit200\"\u003e\u003ccode\u003e@​puneetdixit200\u003c/code\u003e\u003c/a\u003e for their contributions.\u003c/p\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eFixed missing modularized optimization fallback (\u003ca href=\"https://x.com/kossnocorp/status/1731181274579325260\"\u003efor Next.js and others\u003c/a\u003e). See \u003ca href=\"https://x.com/kossnocorp/status/1731181274579325260\"\u003e#4193\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eFixed \u003ccode\u003ept\u003c/code\u003e locale first day of week to be Sunday. See \u003ca href=\"https://redirect.github.com/date-fns/date-fns/pull/4195\"\u003e#4195\u003c/a\u003e by \u003ca href=\"https://github.com/ImRodry\"\u003e\u003ccode\u003e@​ImRodry\u003c/code\u003e\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eFixed \u003ccode\u003ezh-CN\u003c/code\u003e, \u003ccode\u003ezh-HK\u003c/code\u003e, and \u003ccode\u003ezh-TW\u003c/code\u003e locale month parsing for October, November, and December. See \u003ca href=\"https://redirect.github.com/date-fns/date-fns/pull/4194\"\u003e#4194\u003c/a\u003e by \u003ca href=\"https://github.com/puneetdixit200\"\u003e\u003ccode\u003e@​puneetdixit200\u003c/code\u003e\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.2.1\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFixed type definitions missing in v4.2.0 due to TypeScript misconfiguration.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.2.0\u003c/h2\u003e\n\u003cp\u003eThis is a minor release in all senses, it only includes documentation updates (first of many) that points to the new \u003ca href=\"https://date-fns.org/you-dont-need-date-fns\"\u003eYou Don't Need date-fns*\u003c/a\u003e page.\u003c/p\u003e\n\u003cp\u003e* Not really\u003c/p\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdded Temporal API references to the JSDoc annotations of \u003ccode\u003eadd\u003c/code\u003e, \u003ccode\u003eaddBusinessDays\u003c/code\u003e, and \u003ccode\u003eaddDays\u003c/code...\n\n_Description has been truncated_","html_url":"https://github.com/Biggieyes/biggieyes-public/pull/38","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/Biggieyes%2Fbiggieyes-public/issues/38","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/38/packages"}],"issue_packages":[{"old_version":"13.0.5","new_version":"13.0.6","update_type":"patch","path":null,"pr_created_at":"2026-10-02T22:57:37.000Z","version_change":"13.0.5 → 13.0.6","issue":{"uuid":"5684428647","node_id":"PR_kwDOTQDeAc8AAAABGXj8sg","number":12,"state":"open","title":"chore(deps): bump the bun-minor-patch group across 1 directory with 108 updates","user":"dependabot[bot]","labels":[],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-10-02T22:57:37.000Z","updated_at":"2026-10-02T22:57:40.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"bun-minor-patch","update_count":108,"packages":[{"name":"@aws-sdk/client-s3","old_version":"3.933.0","new_version":"3.1141.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"glob","old_version":"13.0.5","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"},{"name":"oxlint","old_version":"1.60.0","new_version":"1.85.0","repository_url":"https://github.com/oxc-project/oxc"},{"name":"prettier","old_version":"3.6.2","new_version":"3.9.9","repository_url":"https://github.com/prettier/prettier"},{"name":"turbo","old_version":"2.10.2","new_version":"2.11.4","repository_url":"https://github.com/vercel/turborepo"},{"name":"acorn","old_version":"8.15.0","new_version":"8.18.0","repository_url":"https://github.com/acornjs/acorn"},{"name":"@opentelemetry/api","old_version":"1.9.0","new_version":"1.9.1","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"@opentelemetry/context-async-hooks","old_version":"2.6.1","new_version":"2.11.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"@opentelemetry/exporter-trace-otlp-http","old_version":"0.214.0","new_version":"0.222.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"@opentelemetry/sdk-trace-base","old_version":"2.6.1","new_version":"2.11.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"rotating-file-stream","old_version":"3.2.9","new_version":"3.2.10","repository_url":"https://github.com/iccicci/rotating-file-stream"},{"name":"@aws-sdk/credential-providers","old_version":"3.1057.0","new_version":"3.1141.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"gitlab-ai-provider","old_version":"6.12.1","new_version":"6.18.0"},{"name":"immer","old_version":"11.1.4","new_version":"11.1.18","repository_url":"https://github.com/immerjs/immer"},{"name":"@parcel/watcher","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"bun-pty","old_version":"0.4.8","new_version":"0.4.10","repository_url":"https://github.com/sursaone/bun-pty"},{"name":"ignore","old_version":"7.0.5","new_version":"7.0.10","repository_url":"https://github.com/kaelzhang/node-ignore"},{"name":"turndown","old_version":"7.2.0","new_version":"7.2.4","repository_url":"https://github.com/mixmark-io/turndown"},{"name":"@ff-labs/fff-bun","old_version":"0.9.4","new_version":"0.11.0","repository_url":"https://github.com/dmtrKovalenko/fff"},{"name":"@types/turndown","old_version":"5.0.5","new_version":"5.0.6","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@parcel/watcher-darwin-arm64","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"@parcel/watcher-darwin-x64","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"@parcel/watcher-linux-arm64-glibc","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"@parcel/watcher-linux-arm64-musl","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"@parcel/watcher-linux-x64-glibc","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"@parcel/watcher-linux-x64-musl","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"@parcel/watcher-win32-arm64","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"@parcel/watcher-win32-x64","old_version":"2.5.1","new_version":"2.6.0","repository_url":"https://github.com/parcel-bundler/watcher"},{"name":"yaml","old_version":"2.8.3","new_version":"2.9.1","repository_url":"https://github.com/eemeli/yaml"},{"name":"@markdoc/markdoc","old_version":"0.5.9","new_version":"0.5.10","repository_url":"https://github.com/markdoc/markdoc"},{"name":"@vscode/codicons","old_version":"0.0.44","new_version":"0.0.45","repository_url":"https://github.com/microsoft/vscode-codicons"},{"name":"@xyflow/react","old_version":"12.10.2","new_version":"12.12.0","repository_url":"https://github.com/xyflow/xyflow"},{"name":"next","old_version":"16.3.5","new_version":"16.3.6","repository_url":"https://github.com/vercel/next.js"},{"name":"posthog-js","old_version":"1.413.3","new_version":"1.434.14","repository_url":"https://github.com/PostHog/posthog-js"},{"name":"react","old_version":"19.2.8","new_version":"19.3.0","repository_url":"https://github.com/react/react"},{"name":"@types/react","old_version":"19.2.18","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"react-dom","old_version":"19.2.8","new_version":"19.3.0","repository_url":"https://github.com/react/react"},{"name":"@types/react-dom","old_version":"19.2.4","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/react","old_version":"19.2.18","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/react-dom","old_version":"19.2.4","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"autoprefixer","old_version":"10.5.4","new_version":"10.6.1","repository_url":"https://github.com/postcss/autoprefixer"},{"name":"postcss","old_version":"8.5.26","new_version":"8.5.28","repository_url":"https://github.com/postcss/postcss"},{"name":"@clack/prompts","old_version":"1.0.0-alpha.1","new_version":"1.8.1","repository_url":"https://github.com/bombshell-dev/clack"},{"name":"@aws-sdk/client-bedrock-runtime","old_version":"3.1005.0","new_version":"3.1141.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@aws-sdk/credential-provider-ini","old_version":"3.972.31","new_version":"3.973.17","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@lancedb/lancedb","old_version":"0.26.2","new_version":"0.39.0","repository_url":"https://github.com/lancedb/lancedb"},{"name":"@qdrant/js-client-rest","old_version":"1.17.0","new_version":"1.19.0","repository_url":"https://github.com/qdrant/qdrant-js"},{"name":"p-limit","old_version":"7.3.0","new_version":"7.3.3","repository_url":"https://github.com/sindresorhus/p-limit"},{"name":"uuid","old_version":"14.0.0","new_version":"14.0.2","repository_url":"https://github.com/uuidjs/uuid"},{"name":"web-tree-sitter","old_version":"0.25.10","new_version":"0.27.0","repository_url":"https://github.com/tree-sitter/tree-sitter"},{"name":"@kobalte/core","old_version":"0.13.11","new_version":"0.13.14","repository_url":"https://github.com/kobaltedev/kobalte"},{"name":"@solid-primitives/media","old_version":"2.3.3","new_version":"2.3.6","repository_url":"https://github.com/solidjs-community/solid-primitives"},{"name":"@solid-primitives/resize-observer","old_version":"2.1.5","new_version":"2.2.0","repository_url":"https://github.com/solidjs-community/solid-primitives"},{"name":"@solid-primitives/rootless","old_version":"1.5.2","new_version":"1.5.4","repository_url":"https://github.com/solidjs-community/solid-primitives"},{"name":"strip-ansi","old_version":"7.1.2","new_version":"7.2.0","repository_url":"https://github.com/chalk/strip-ansi"},{"name":"@playwright/test","old_version":"1.57.0","new_version":"1.63.0","repository_url":"https://github.com/microsoft/playwright"},{"name":"@storybook/addon-a11y","old_version":"10.2.10","new_version":"10.6.0","repository_url":"https://github.com/storybookjs/storybook"},{"name":"@storybook/addon-docs","old_version":"10.2.10","new_version":"10.6.0","repository_url":"https://github.com/storybookjs/storybook"},{"name":"@storybook/addon-themes","old_version":"10.2.10","new_version":"10.6.0","repository_url":"https://github.com/storybookjs/storybook"},{"name":"storybook","old_version":"10.2.10","new_version":"10.6.0","repository_url":"https://github.com/storybookjs/storybook"},{"name":"storybook-solidjs-vite","old_version":"10.0.9","new_version":"10.7.2","repository_url":"https://github.com/solidjs-community/storybook"},{"name":"vite-plugin-solid","old_version":"2.11.10","new_version":"2.11.14","repository_url":"https://github.com/solidjs/vite-plugin-solid"},{"name":"@anthropic-ai/sdk","old_version":"0.39.0","new_version":"0.128.0","repository_url":"https://github.com/anthropics/anthropic-sdk-typescript"},{"name":"@lottiefiles/dotlottie-web","old_version":"0.63.0","new_version":"0.80.0","repository_url":"https://github.com/LottieFiles/dotlottie-web"},{"name":"lru-cache","old_version":"11.5.2","new_version":"11.5.3","repository_url":"https://github.com/isaacs/node-lru-cache"},{"name":"playwright-core","old_version":"1.57.0","new_version":"1.63.0","repository_url":"https://github.com/microsoft/playwright"},{"name":"solid-js","old_version":"1.9.12","new_version":"1.9.15","repository_url":"https://github.com/solidjs/solid"},{"name":"ws","old_version":"8.21.0","new_version":"8.21.3","repository_url":"https://github.com/websockets/ws"},{"name":"zod","old_version":"4.1.8","new_version":"4.6.5","repository_url":"https://github.com/colinhacks/zod"},{"name":"@axe-core/playwright","old_version":"4.11.3","new_version":"4.13.0","repository_url":"https://github.com/dequelabs/axe-core-npm"},{"name":"@types/vscode","old_version":"1.125.0","new_version":"1.138.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@vscode/test-cli","old_version":"0.0.12","new_version":"0.0.15","repository_url":"https://github.com/Microsoft/vscode-test-cli"},{"name":"babel-preset-solid","old_version":"1.9.12","new_version":"1.9.15","repository_url":"https://github.com/solidjs/solid"},{"name":"esbuild","old_version":"0.27.7","new_version":"0.28.2","repository_url":"https://github.com/evanw/esbuild"},{"name":"happy-dom","old_version":"20.11.1","new_version":"20.14.5","repository_url":"https://github.com/capricorn86/happy-dom"},{"name":"typescript-eslint","old_version":"8.66.0","new_version":"8.70.1","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@smithy/eventstream-codec","old_version":"4.2.14","new_version":"4.5.2","repository_url":"https://github.com/smithy-lang/smithy-typescript"},{"name":"@smithy/util-utf8","old_version":"4.2.2","new_version":"4.5.2","repository_url":"https://github.com/smithy-lang/smithy-typescript"},{"name":"@modelcontextprotocol/sdk","old_version":"1.29.0","new_version":"1.30.1","repository_url":"https://github.com/modelcontextprotocol/typescript-sdk"},{"name":"@octokit/graphql","old_version":"9.0.2","new_version":"9.0.5","repository_url":"https://github.com/octokit/graphql.js"},{"name":"@opentelemetry/sdk-trace-node","old_version":"2.6.1","new_version":"2.11.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"@secretlint/core","old_version":"13.0.5","new_version":"13.0.6","repository_url":"https://github.com/secretlint/secretlint"},{"name":"@secretlint/secretlint-rule-preset-recommend","old_version":"13.0.5","new_version":"13.0.6","repository_url":"https://github.com/secretlint/secretlint"},{"name":"@solid-primitives/event-bus","old_version":"1.1.2","new_version":"1.1.4","repository_url":"https://github.com/solidjs-community/solid-primitives"},{"name":"@solid-primitives/scheduled","old_version":"1.5.2","new_version":"1.5.3","repository_url":"https://github.com/solidjs-community/solid-primitives"},{"name":"@standard-schema/spec","old_version":"1.0.0","new_version":"1.1.0","repository_url":"https://github.com/standard-schema/standard-schema"},{"name":"@zip.js/zip.js","old_version":"2.7.62","new_version":"2.18.2","repository_url":"https://github.com/gildas-lormeau/zip.js"},{"name":"bonjour-service","old_version":"1.3.0","new_version":"1.4.4","repository_url":"https://github.com/onlxltd/bonjour-service"},{"name":"chardet","old_version":"2.1.1","new_version":"2.2.0","repository_url":"https://github.com/runk/node-chardet"},{"name":"decimal.js","old_version":"10.5.0","new_version":"10.6.0","repository_url":"https://github.com/MikeMcl/decimal.js"},{"name":"iconv-lite","old_version":"0.7.2","new_version":"0.7.3","repository_url":"https://github.com/pillarjs/iconv-lite"},{"name":"mammoth","old_version":"1.12.0","new_version":"1.12.3","repository_url":"https://github.com/mwilliamson/mammoth.js"},{"name":"opencode-poe-auth","old_version":"0.0.1","new_version":"0.0.4","repository_url":"https://github.com/poe-platform/poe-code"},{"name":"tree-sitter-bash","old_version":"0.25.0","new_version":"0.25.1","repository_url":"https://github.com/tree-sitter/tree-sitter-bash"},{"name":"tree-sitter-powershell","old_version":"0.25.10","new_version":"0.26.4","repository_url":"https://github.com/airbus-cert/tree-sitter-powershell"},{"name":"yargs","old_version":"18.0.0","new_version":"18.2.0","repository_url":"https://github.com/yargs/yargs"},{"name":"@effect/language-service","old_version":"0.84.2","new_version":"0.87.2","repository_url":"https://github.com/Effect-TS/language-service"},{"name":"@types/yargs","old_version":"17.0.33","new_version":"17.0.35","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"vscode-languageserver-types","old_version":"3.17.5","new_version":"3.18.4","repository_url":"https://github.com/Microsoft/vscode-languageserver-node"},{"name":"@solid-primitives/bounds","old_version":"0.1.3","new_version":"0.1.7","repository_url":"https://github.com/solidjs-community/solid-primitives"},{"name":"@solid-primitives/event-listener","old_version":"2.4.5","new_version":"2.4.6","repository_url":"https://github.com/solidjs-community/solid-primitives"},{"name":"dompurify","old_version":"3.4.13","new_version":"3.4.16","repository_url":"https://github.com/cure53/DOMPurify"},{"name":"katex","old_version":"0.16.27","new_version":"0.18.9","repository_url":"https://github.com/KaTeX/KaTeX"},{"name":"marked-katex-extension","old_version":"5.1.6","new_version":"5.1.13","repository_url":"https://github.com/UziTech/marked-katex-extension"},{"name":"@types/katex","old_version":"0.16.7","new_version":"0.16.8","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@storybook/addon-links","old_version":"10.5.7","new_version":"10.6.0","repository_url":"https://github.com/storybookjs/storybook"},{"name":"@storybook/addon-onboarding","old_version":"10.5.7","new_version":"10.6.0","repository_url":"https://github.com/storybookjs/storybook"},{"name":"@storybook/addon-vitest","old_version":"10.5.7","new_version":"10.6.0","repository_url":"https://github.com/storybookjs/storybook"},{"name":"vite-plugin-icons-spritesheet","old_version":"3.0.1","new_version":"3.1.0","repository_url":"https://github.com/code-forge-io/vite-plugin-icons-spritesheet"},{"name":"@hey-api/openapi-ts","old_version":"0.97.3","new_version":"0.99.0","repository_url":"https://github.com/hey-api/hey-api"}],"path":null,"ecosystem":"npm"},"body":"Bumps the bun-minor-patch group with 108 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@aws-sdk/client-s3](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3) | `3.933.0` | `3.1141.0` |\n| [glob](https://github.com/isaacs/node-glob) | `13.0.5` | `13.0.6` |\n| [oxlint](https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint) | `1.60.0` | `1.85.0` |\n| [prettier](https://github.com/prettier/prettier) | `3.6.2` | `3.9.9` |\n| [turbo](https://github.com/vercel/turborepo) | `2.10.2` | `2.11.4` |\n| [acorn](https://github.com/acornjs/acorn) | `8.15.0` | `8.18.0` |\n| [@opentelemetry/api](https://github.com/open-telemetry/opentelemetry-js) | `1.9.0` | `1.9.1` |\n| [@opentelemetry/context-async-hooks](https://github.com/open-telemetry/opentelemetry-js) | `2.6.1` | `2.11.0` |\n| [@opentelemetry/exporter-trace-otlp-http](https://github.com/open-telemetry/opentelemetry-js) | `0.214.0` | `0.222.0` |\n| [@opentelemetry/sdk-trace-base](https://github.com/open-telemetry/opentelemetry-js) | `2.6.1` | `2.11.0` |\n| [rotating-file-stream](https://github.com/iccicci/rotating-file-stream) | `3.2.9` | `3.2.10` |\n| [@aws-sdk/credential-providers](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/packages/credential-providers) | `3.1057.0` | `3.1141.0` |\n| [gitlab-ai-provider](https://gitlab.com/vglafirov/gitlab-ai-provider) | `6.12.1` | `6.18.0` |\n| [immer](https://github.com/immerjs/immer) | `11.1.4` | `11.1.18` |\n| [@parcel/watcher](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [bun-pty](https://github.com/sursaone/bun-pty) | `0.4.8` | `0.4.10` |\n| [ignore](https://github.com/kaelzhang/node-ignore) | `7.0.5` | `7.0.10` |\n| [turndown](https://github.com/mixmark-io/turndown) | `7.2.0` | `7.2.4` |\n| [@ff-labs/fff-bun](https://github.com/dmtrKovalenko/fff/tree/HEAD/packages/fff) | `0.9.4` | `0.11.0` |\n| [@types/turndown](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/turndown) | `5.0.5` | `5.0.6` |\n| [@parcel/watcher-darwin-arm64](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [@parcel/watcher-darwin-x64](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [@parcel/watcher-linux-arm64-glibc](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [@parcel/watcher-linux-arm64-musl](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [@parcel/watcher-linux-x64-glibc](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [@parcel/watcher-linux-x64-musl](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [@parcel/watcher-win32-arm64](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [@parcel/watcher-win32-x64](https://github.com/parcel-bundler/watcher) | `2.5.1` | `2.6.0` |\n| [yaml](https://github.com/eemeli/yaml) | `2.8.3` | `2.9.1` |\n| [@markdoc/markdoc](https://github.com/markdoc/markdoc) | `0.5.9` | `0.5.10` |\n| [@vscode/codicons](https://github.com/microsoft/vscode-codicons) | `0.0.44` | `0.0.45` |\n| [@xyflow/react](https://github.com/xyflow/xyflow/tree/HEAD/packages/react) | `12.10.2` | `12.12.0` |\n| [next](https://github.com/vercel/next.js) | `16.3.5` | `16.3.6` |\n| [posthog-js](https://github.com/PostHog/posthog-js) | `1.413.3` | `1.434.14` |\n| [react](https://github.com/react/react/tree/HEAD/packages/react) | `19.2.8` | `19.3.0` |\n| [@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react) | `19.2.18` | `19.3.0` |\n| [react-dom](https://github.com/react/react/tree/HEAD/packages/react-dom) | `19.2.8` | `19.3.0` |\n| [@types/react-dom](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-dom) | `19.2.4` | `19.3.0` |\n| [@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react) | `19.2.18` | `19.3.0` |\n| [@types/react-dom](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-dom) | `19.2.4` | `19.3.0` |\n| [autoprefixer](https://github.com/postcss/autoprefixer) | `10.5.4` | `10.6.1` |\n| [postcss](https://github.com/postcss/postcss) | `8.5.26` | `8.5.28` |\n| [@clack/prompts](https://github.com/bombshell-dev/clack/tree/HEAD/packages/prompts) | `1.0.0-alpha.1` | `1.8.1` |\n| [@aws-sdk/client-bedrock-runtime](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-bedrock-runtime) | `3.1005.0` | `3.1141.0` |\n| [@aws-sdk/credential-provider-ini](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/packages-internal/credential-provider-ini) | `3.972.31` | `3.973.17` |\n| [@lancedb/lancedb](https://github.com/lancedb/lancedb) | `0.26.2` | `0.39.0` |\n| [@qdrant/js-client-rest](https://github.com/qdrant/qdrant-js/tree/HEAD/packages/js-client-rest) | `1.17.0` | `1.19.0` |\n| [p-limit](https://github.com/sindresorhus/p-limit) | `7.3.0` | `7.3.3` |\n| [uuid](https://github.com/uuidjs/uuid) | `14.0.0` | `14.0.2` |\n| [web-tree-sitter](https://github.com/tree-sitter/tree-sitter/tree/HEAD/lib/binding_web) | `0.25.10` | `0.27.0` |\n| [@kobalte/core](https://github.com/kobaltedev/kobalte) | `0.13.11` | `0.13.14` |\n| [@solid-primitives/media](https://github.com/solidjs-community/solid-primitives) | `2.3.3` | `2.3.6` |\n| [@solid-primitives/resize-observer](https://github.com/solidjs-community/solid-primitives) | `2.1.5` | `2.2.0` |\n| [@solid-primitives/rootless](https://github.com/solidjs-community/solid-primitives) | `1.5.2` | `1.5.4` |\n| [strip-ansi](https://github.com/chalk/strip-ansi) | `7.1.2` | `7.2.0` |\n| [@playwright/test](https://github.com/microsoft/playwright) | `1.57.0` | `1.63.0` |\n| [@storybook/addon-a11y](https://github.com/storybookjs/storybook/tree/HEAD/code/addons/a11y) | `10.2.10` | `10.6.0` |\n| [@storybook/addon-docs](https://github.com/storybookjs/storybook/tree/HEAD/code/addons/docs) | `10.2.10` | `10.6.0` |\n| [@storybook/addon-themes](https://github.com/storybookjs/storybook/tree/HEAD/code/addons/themes) | `10.2.10` | `10.6.0` |\n| [storybook](https://github.com/storybookjs/storybook/tree/HEAD/code/core) | `10.2.10` | `10.6.0` |\n| [storybook-solidjs-vite](https://github.com/solidjs-community/storybook) | `10.0.9` | `10.7.2` |\n| [vite-plugin-solid](https://github.com/solidjs/vite-plugin-solid) | `2.11.10` | `2.11.14` |\n| [@anthropic-ai/sdk](https://github.com/anthropics/anthropic-sdk-typescript) | `0.39.0` | `0.128.0` |\n| [@lottiefiles/dotlottie-web](https://github.com/LottieFiles/dotlottie-web/tree/HEAD/packages/web) | `0.63.0` | `0.80.0` |\n| [lru-cache](https://github.com/isaacs/node-lru-cache) | `11.5.2` | `11.5.3` |\n| [playwright-core](https://github.com/microsoft/playwright) | `1.57.0` | `1.63.0` |\n| [solid-js](https://github.com/solidjs/solid) | `1.9.12` | `1.9.15` |\n| [ws](https://github.com/websockets/ws) | `8.21.0` | `8.21.3` |\n| [zod](https://github.com/colinhacks/zod) | `4.1.8` | `4.6.5` |\n| [@axe-core/playwright](https://github.com/dequelabs/axe-core-npm) | `4.11.3` | `4.13.0` |\n| [@types/vscode](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/vscode) | `1.125.0` | `1.138.0` |\n| [@vscode/test-cli](https://github.com/Microsoft/vscode-test-cli) | `0.0.12` | `0.0.15` |\n| [babel-preset-solid](https://github.com/solidjs/solid) | `1.9.12` | `1.9.15` |\n| [esbuild](https://github.com/evanw/esbuild) | `0.27.7` | `0.28.2` |\n| [happy-dom](https://github.com/capricorn86/happy-dom) | `20.11.1` | `20.14.5` |\n| [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint) | `8.66.0` | `8.70.1` |\n| [@smithy/eventstream-codec](https://github.com/smithy-lang/smithy-typescript/tree/HEAD/packages/eventstream-codec) | `4.2.14` | `4.5.2` |\n| [@smithy/util-utf8](https://github.com/smithy-lang/smithy-typescript/tree/HEAD/packages/util-utf8) | `4.2.2` | `4.5.2` |\n| [@modelcontextprotocol/sdk](https://github.com/modelcontextprotocol/typescript-sdk) | `1.29.0` | `1.30.1` |\n| [@octokit/graphql](https://github.com/octokit/graphql.js) | `9.0.2` | `9.0.5` |\n| [@opentelemetry/sdk-trace-node](https://github.com/open-telemetry/opentelemetry-js) | `2.6.1` | `2.11.0` |\n| [@secretlint/core](https://github.com/secretlint/secretlint) | `13.0.5` | `13.0.6` |\n| [@secretlint/secretlint-rule-preset-recommend](https://github.com/secretlint/secretlint) | `13.0.5` | `13.0.6` |\n| [@solid-primitives/event-bus](https://github.com/solidjs-community/solid-primitives) | `1.1.2` | `1.1.4` |\n| [@solid-primitives/scheduled](https://github.com/solidjs-community/solid-primitives) | `1.5.2` | `1.5.3` |\n| [@standard-schema/spec](https://github.com/standard-schema/standard-schema) | `1.0.0` | `1.1.0` |\n| [@zip.js/zip.js](https://github.com/gildas-lormeau/zip.js) | `2.7.62` | `2.18.2` |\n| [bonjour-service](https://github.com/onlxltd/bonjour-service) | `1.3.0` | `1.4.4` |\n| [chardet](https://github.com/runk/node-chardet) | `2.1.1` | `2.2.0` |\n| [decimal.js](https://github.com/MikeMcl/decimal.js) | `10.5.0` | `10.6.0` |\n| [iconv-lite](https://github.com/pillarjs/iconv-lite) | `0.7.2` | `0.7.3` |\n| [mammoth](https://github.com/mwilliamson/mammoth.js) | `1.12.0` | `1.12.3` |\n| [opencode-poe-auth](https://github.com/poe-platform/poe-code/tree/HEAD/packages/opencode-poe-auth) | `0.0.1` | `0.0.4` |\n| [tree-sitter-bash](https://github.com/tree-sitter/tree-sitter-bash) | `0.25.0` | `0.25.1` |\n| [tree-sitter-powershell](https://github.com/airbus-cert/tree-sitter-powershell) | `0.25.10` | `0.26.4` |\n| [yargs](https://github.com/yargs/yargs) | `18.0.0` | `18.2.0` |\n| [@effect/language-service](https://github.com/Effect-TS/language-service) | `0.84.2` | `0.87.2` |\n| [@types/yargs](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/yargs) | `17.0.33` | `17.0.35` |\n| [vscode-languageserver-types](https://github.com/Microsoft/vscode-languageserver-node/tree/HEAD/types) | `3.17.5` | `3.18.4` |\n| [@solid-primitives/bounds](https://github.com/solidjs-community/solid-primitives) | `0.1.3` | `0.1.7` |\n| [@solid-primitives/event-listener](https://github.com/solidjs-community/solid-primitives) | `2.4.5` | `2.4.6` |\n| [dompurify](https://github.com/cure53/DOMPurify) | `3.4.13` | `3.4.16` |\n| [katex](https://github.com/KaTeX/KaTeX) | `0.16.27` | `0.18.9` |\n| [marked-katex-extension](https://github.com/UziTech/marked-katex-extension) | `5.1.6` | `5.1.13` |\n| [@types/katex](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/katex) | `0.16.7` | `0.16.8` |\n| [@storybook/addon-links](https://github.com/storybookjs/storybook/tree/HEAD/code/addons/links) | `10.5.7` | `10.6.0` |\n| [@storybook/addon-onboarding](https://github.com/storybookjs/storybook/tree/HEAD/code/addons/onboarding) | `10.5.7` | `10.6.0` |\n| [@storybook/addon-vitest](https://github.com/storybookjs/storybook/tree/HEAD/code/addons/vitest) | `10.5.7` | `10.6.0` |\n| [vite-plugin-icons-spritesheet](https://github.com/code-forge-io/vite-plugin-icons-spritesheet) | `3.0.1` | `3.1.0` |\n| [@hey-api/openapi-ts](https://github.com/hey-api/hey-api/tree/HEAD/packages/openapi-ts) | `0.97.3` | `0.99.0` |\n\n\nUpdates `@aws-sdk/client-s3` from 3.933.0 to 3.1141.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/client-s3's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1141.0\u003c/h2\u003e\n\u003ch4\u003e3.1141.0(2026-09-25)\u003c/h4\u003e\n\u003ch5\u003eChores\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecodegen:\u003c/strong\u003e  smithy-aws-typescript-codegen 0.54.0 (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8314\"\u003e#8314\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ad80ce3ebaf394679aabc6e26b2dcd023ce8e010\"\u003ead80ce3e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-connect:\u003c/strong\u003e  Agent Privacy During Hold is a new privacy capability for Amazon Connect Voice that prevents agent audio from being captured in call recordings or Contact Lens conversational analytics during hold. When enabled, agents are automatically muted on entering hold and unmuted on resuming the contact (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/03527f9ea153365c1e3654ac6d3f3e064d06b5d0\"\u003e03527f9e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-qconnect:\u003c/strong\u003e  Release shapes for the proactive agentic recommendations and the multi-knowledge base search features. Increases the maximum length of QuickResponseContent. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e008332b0b70c55d22dfca8a9c2317b67d06a5f3\"\u003ee008332b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent:\u003c/strong\u003e  Adds support for calling VPC configuration API's in Bedrock. These configurations allow the use of On Prem connectors in Bedrock Managed Knowledge bases (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/18524dc69cf36ebbb8bc7bc33e0bce6311dcdb23\"\u003e18524dc6\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-mediaconnect:\u003c/strong\u003e  This release adds support for RTMP push router outputs in AWS Elemental MediaConnect. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/5bd8d80bbca2c1c2545521b03d741b46fccd09b4\"\u003e5bd8d80b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-securityagent:\u003c/strong\u003e  This release adds the ListActorMessages operation, which returns the multi-factor authentication messages received at an actor's server-generated email address (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/10e53d506db74c48b09b94d9b9387b84dd40ed58\"\u003e10e53d50\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-arc-region-switch:\u003c/strong\u003e  Adds a service quota checker to Region switch to verify quota parity between your primary and standby Region, and automatically submit quota limit increases. Adds an optional EC2 Auto Scaling and ECS setting that waits for instances or tasks in the scaled-up Region to be healthy in target groups. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/cca33e380a8985e23a0e3fbb420577aab4b60ac7\"\u003ecca33e38\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agentcore-control:\u003c/strong\u003e  Amazon Bedrock AgentCore Payments now supports credential rotation for payment connectors, letting you rotate API and wallet secrets for Quick Create payment auths from the console. This release also adds Type and Creation type columns to the payment managers views. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/adca591f07c448603de2876faaf7914cad441436\"\u003eadca591f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-neptune-graph:\u003c/strong\u003e  Add GraphIdentifier filter for ListImportTasks (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/9b9aea9b553ba84f006f95da5d8ffd5381cc8a17\"\u003e9b9aea9b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-rekognition:\u003c/strong\u003e  This release adds support for Feedback and Metadata in the GetFaceLivenessSessionResults response. Feedback returns codes explaining why a Face Liveness check produced its result. Metadata includes the client SDK type. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0831c361bb69d44357ff57360db39afdbb149337\"\u003e0831c361\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-glue:\u003c/strong\u003e  add support for table level federation (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/a44458b77853cbb25a9fcb362b0a275d7dc1c69b\"\u003ea44458b7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-wellarchitected:\u003c/strong\u003e  This change releases the Well-Architected Agent, a generative AI service that analyzes a customer's AWS environment and delivers personalized, prioritized recommendations across cost, security, performance, and resilience. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d0656586067f70b8d50000300f04512dd089df96\"\u003ed0656586\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1141.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1140.0\u003c/h2\u003e\n\u003ch4\u003e3.1140.0(2026-09-24)\u003c/h4\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-route53resolver:\u003c/strong\u003e  Documentation updates for Route 53 Resolver. Clarifies which Outpost Resolver operations apply to first-generation AWS Outposts and that Resolver is managed automatically on second-generation Outposts. Adds Local Network Interface subnet compatibility notes for Resolver endpoints. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b4432abaaaf19bf4ac5d4d2b09bcc83e4d5440a0\"\u003eb4432aba\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-iot:\u003c/strong\u003e  Fixed ListV2LoggingLevels and DeleteV2LoggingLevel documentation to include all supported target-types (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4dcf76d527e0c1fe76d64cb8ea444ce62d64135b\"\u003e4dcf76d5\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclients:\u003c/strong\u003e  update client endpoints as of 2026-09-24 (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/29a8566cb4c6eeb0cc554f4ae9bf985160556523\"\u003e29a8566c\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eventbridgev2:\u003c/strong\u003e  Introducing Amazon EventBridge enhanced Custom event bus, a new shareable event bus for organizational-scale event-driven applications feature ordered delivery, deduplication, open event formats, and cross-account bus sharing. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/69fbe6a22fd7810332b0b0356803a0eee3f563cf\"\u003e69fbe6a2\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-datazone:\u003c/strong\u003e  Amazon DataZone now supports the TOOLING blueprint category on CreateEnvironmentBlueprint, UpdateEnvironmentBlueprint, GetEnvironmentBlueprint, and ListEnvironmentBlueprints, for custom tooling blueprints. CreateConnection now accepts roleArn in iamProperties. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/591cd6f5a7b714427cbe87b36b13357d560d48ea\"\u003e591cd6f5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-elasticache:\u003c/strong\u003e  Added tagging support for ElastiCache Global DataStore. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0fa9da5946312f09942dad6f711885855f0d0b8e\"\u003e0fa9da59\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-marketplace-discovery:\u003c/strong\u003e  AWS Marketplace Discovery API now supports localized responses and SigV4a request signing. It returns new fulfillment details, including AMI architecture, EBS volume and security group information, SaaS quick-launch status, and SageMaker input and output MIME types. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/510673e376bbc578d318308136ecb5a841416bc3\"\u003e510673e3\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-redshift-data:\u003c/strong\u003e  Updates to the ListDatabases and WorkgroupName validation (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/218c24e106efe1ad64658984123af6634fc7278d\"\u003e218c24e1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-securityagent:\u003c/strong\u003e  Added support for Confluence export, enabling customers to publish security findings to Confluence pages. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/81408527778af52f0c604a4eaca440f445082f78\"\u003e81408527\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch:\u003c/strong\u003e  This release adds Create, Get, Update, and DeleteResourceMetricsConfiguration to enable detailed metric collection for an AWS resource, and adds UpdateOTelEnrichment plus include and exclude filters on StartOTelEnrichment so you can choose which metric namespaces CloudWatch enriches. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/765cc1ce8f95a4f62d83dc07b81a927d74e09b52\"\u003e765cc1ce\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eventbridge:\u003c/strong\u003e  Adds a ManagedBy field to the DescribeEventBus and ListEventBuses responses, identifying the AWS service that created an event bus on your behalf. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/28a639b27585c85376a4b5db528c31efb80e874d\"\u003e28a639b2\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eTests\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eundici-http-handler:\u003c/strong\u003e  update bidi stream e2e test to nova-2-sonic model (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8313\"\u003e#8313\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d9a37d9d318f2ef7f5bcf6286bf3c7b475e4175b\"\u003ed9a37d9d\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-s3/CHANGELOG.md\"\u003e@​aws-sdk/client-s3's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1140.0...v3.1141.0\"\u003e3.1141.0\u003c/a\u003e (2026-09-25)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1139.0...v3.1140.0\"\u003e3.1140.0\u003c/a\u003e (2026-09-24)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1138.0...v3.1139.0\"\u003e3.1139.0\u003c/a\u003e (2026-09-23)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1137.0...v3.1138.0\"\u003e3.1138.0\u003c/a\u003e (2026-09-22)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1136.0...v3.1137.0\"\u003e3.1137.0\u003c/a\u003e (2026-09-21)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1135.0...v3.1136.0\"\u003e3.1136.0\u003c/a\u003e (2026-09-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1134.0...v3.1135.0\"\u003e3.1135.0\u003c/a\u003e (2026-09-17)\u003c/h1\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/5bc8d9a96936723ac90d721e0c5a2bff7ee8520d\"\u003e\u003ccode\u003e5bc8d9a\u003c/code\u003e\u003c/a\u003e Publish v3.1141.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6050a3813c26795562b5ada8b0d9ea498eb9f8a1\"\u003e\u003ccode\u003e6050a38\u003c/code\u003e\u003c/a\u003e Publish v3.1140.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/03d54a858f80012bbc60046a77242223e8dfd9d9\"\u003e\u003ccode\u003e03d54a8\u003c/code\u003e\u003c/a\u003e Publish v3.1139.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c68e50e4a6e0469a20c2894fe8a29c140553ebb8\"\u003e\u003ccode\u003ec68e50e\u003c/code\u003e\u003c/a\u003e Publish v3.1138.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/9a104768684e8f22d4373fcc5d910711e62676d6\"\u003e\u003ccode\u003e9a10476\u003c/code\u003e\u003c/a\u003e chore(codegen): sync for MetricsRecorder support and core error/retry fixes (...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6b432472f9bdf5437319b9186f706e3af5c9a748\"\u003e\u003ccode\u003e6b43247\u003c/code\u003e\u003c/a\u003e Publish v3.1137.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d6b94db8f4a00cc452dbe0aacb247e8ece3897ea\"\u003e\u003ccode\u003ed6b94db\u003c/code\u003e\u003c/a\u003e Publish v3.1136.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/2d5f18d08aa373d95692d83cb3d60a6a79248fae\"\u003e\u003ccode\u003e2d5f18d\u003c/code\u003e\u003c/a\u003e Publish v3.1135.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0d6310bf6979ddbf737a7e15cfd8d0e7cec07063\"\u003e\u003ccode\u003e0d6310b\u003c/code\u003e\u003c/a\u003e Publish v3.1134.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/615a1ca4661ec0e4cb34b8da89fe60c2419b94d0\"\u003e\u003ccode\u003e615a1ca\u003c/code\u003e\u003c/a\u003e Publish v3.1133.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1141.0/clients/client-s3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `glob` from 13.0.5 to 13.0.6\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/e80cb38ae60d6cbff9e75f39032a994858994d35\"\u003e\u003ccode\u003ee80cb38\u003c/code\u003e\u003c/a\u003e 13.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/9cdbbfff75c64fb158c8842d4d0eb3e908676a41\"\u003e\u003ccode\u003e9cdbbff\u003c/code\u003e\u003c/a\u003e revert tsgo, not ready for test coverage correctness yet\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/89c99ba8e276438b8e31ce878b63186e2cd375b4\"\u003e\u003ccode\u003e89c99ba\u003c/code\u003e\u003c/a\u003e use tsgo compiler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/b7275d54f294174607f544acf07cc7ec526b7878\"\u003e\u003ccode\u003eb7275d5\u003c/code\u003e\u003c/a\u003e update deps, expand engines to include node 18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/942e360a669e0c378c0abd261e7d329ca2cee661\"\u003e\u003ccode\u003e942e360\u003c/code\u003e\u003c/a\u003e update workflows, pull taprc out of package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/4a0d53c7531f3f0df97f9e4d26c78489e7f6d7ef\"\u003e\u003ccode\u003e4a0d53c\u003c/code\u003e\u003c/a\u003e update tap for mockImport bugfix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/ef94ad2696c12129628208cf4e38575e7240c1c4\"\u003e\u003ccode\u003eef94ad2\u003c/code\u003e\u003c/a\u003e update tap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/180c2d43cb135f134c0c5446408dc107c79a5a9b\"\u003e\u003ccode\u003e180c2d4\u003c/code\u003e\u003c/a\u003e update docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/37993c86faddcb780458b2d7ae3c2ead7a84bf31\"\u003e\u003ccode\u003e37993c8\u003c/code\u003e\u003c/a\u003e remove stray console.error in test\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v13.0.5...v13.0.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `oxlint` from 1.60.0 to 1.85.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/oxc-project/oxc/releases\"\u003eoxlint's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eoxlint v1.85.0\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e415b742 oxlint,oxfmt: Do not discover nested config in Vite+ mode (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26763\"\u003e#26763\u003c/a\u003e) (leaysgur)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/oxc-project/oxc/blob/main/npm/oxlint/CHANGELOG.md\"\u003eoxlint's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cp\u003eAll notable changes to this package will be documented in this file.\u003c/p\u003e\n\u003cp\u003eThe format is based on \u003ca href=\"https://keepachangelog.com/en/1.0.0\"\u003eKeep a Changelog\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003e[1.86.0] - 2026-09-28\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e9d80eed linter/react/only-export-components: Support \u003ccode\u003eallowCompoundComponents\u003c/code\u003e (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/27117\"\u003e#27117\u003c/a\u003e) (Kuroda Kayn)\u003c/li\u003e\n\u003cli\u003ee05b155 linter: Add typescript/no-generated-empty-object-type (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26958\"\u003e#26958\u003c/a\u003e) (camc314)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e[1.82.0] - 2026-09-07\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e6a0e19c linter/eslint/no-unmodified-loop-condition: Support \u003ccode\u003echeckConditionalExpressions\u003c/code\u003e option (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26249\"\u003e#26249\u003c/a\u003e) (camc314)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e[1.81.0] - 2026-08-31\u003c/h2\u003e\n\u003ch3\u003e📚 Documentation\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ed5be037 linter/typescript/switch-exhaustiveness-check: Clarify default case comment pattern (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26100\"\u003e#26100\u003c/a\u003e) (camc314)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e[1.79.0] - 2026-08-18\u003c/h2\u003e\n\u003ch3\u003e💥 BREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e8c4552d linter: [\u003cstrong\u003eBREAKING\u003c/strong\u003e] Split react/react-compiler into per-category rules (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25500\"\u003e#25500\u003c/a\u003e) (Boshen)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🐛 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e228e8e0 linter: Resolve inactive React compiler rules (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25830\"\u003e#25830\u003c/a\u003e) (Boshen)\u003c/li\u003e\n\u003cli\u003eaa49d86 linter: Allow spread rule options in config types (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25675\"\u003e#25675\u003c/a\u003e) (ch3rry)\u003c/li\u003e\n\u003cli\u003e36f8451 linter/eslint/no-eval: Align indirect default with ESLint (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25656\"\u003e#25656\u003c/a\u003e) (camc314)\u003c/li\u003e\n\u003cli\u003ebeb724d linter/eslint/no-unused-vars: Report bare underscore parameters (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25663\"\u003e#25663\u003c/a\u003e) (camc314)\u003c/li\u003e\n\u003cli\u003e4004c10 linter/eslint/no-irregular-whitespace: Check comments by default (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25660\"\u003e#25660\u003c/a\u003e) (camc314)\u003c/li\u003e\n\u003cli\u003e285820e linter/no-large-snapshots: Precompile and document allowed snapshot matchers (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25611\"\u003e#25611\u003c/a\u003e) (Mikhail Baev)\u003c/li\u003e\n\u003cli\u003e4df5835 linter: Allow capitalized built-in calls (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25516\"\u003e#25516\u003c/a\u003e) (Boshen)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e[1.78.0] - 2026-08-10\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eccb8fe8 linter/jsdoc: Implement \u003ccode\u003eno-blank-blocks\u003c/code\u003e rule (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/25207\"\u003e#25207\u003c/a\u003e) (Mikhail Baev)\u003c/li\u003e\n\u003cli\u003ed4a897c linter/eslint: Implement \u003ccode\u003eone-var\u003c/code\u003e rule (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/24470\"\u003e#24470\u003c/a\u003e) (Cole Ellison)\u003c/li\u003e\n\u003cli\u003e5ab9340 linter/jsx-a11y/anchor-has-content: Add options to match eslint (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/24571\"\u003e#24571\u003c/a\u003e) (Cole Ellison)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🐛 Bug Fixes\u003c/h3\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/288d8cc77984b0a3851c58c423ffe9e6edc79f2e\"\u003e\u003ccode\u003e288d8cc\u003c/code\u003e\u003c/a\u003e release(apps): oxlint v1.85.0 \u0026amp;\u0026amp; oxfmt v0.70.0 (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26903\"\u003e#26903\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/f02a64a517a69a4eaa4ef83b722a3f10cf633f10\"\u003e\u003ccode\u003ef02a64a\u003c/code\u003e\u003c/a\u003e release(apps): oxlint v1.84.0 \u0026amp;\u0026amp; oxfmt v0.69.0 (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26874\"\u003e#26874\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/7bf68f70c20f5329251f19be95076f6eab4fe396\"\u003e\u003ccode\u003e7bf68f7\u003c/code\u003e\u003c/a\u003e release(apps): oxlint v1.83.0 \u0026amp;\u0026amp; oxfmt v0.68.0 (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26631\"\u003e#26631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/b4da00b621ec2f6f67ed218f5366c45ed325331b\"\u003e\u003ccode\u003eb4da00b\u003c/code\u003e\u003c/a\u003e release(apps): oxlint v1.82.0 \u0026amp;\u0026amp; oxfmt v0.67.0 (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26384\"\u003e#26384\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/aa38ddfbea657a9d332f86e42e235ff8cbdcac6d\"\u003e\u003ccode\u003eaa38ddf\u003c/code\u003e\u003c/a\u003e fix(linter/unicorn/numeric-separators-style): correct schema defaults (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26393\"\u003e#26393\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/6a0e19cfaae35ec882de6bc8dde7668d1b0cc58e\"\u003e\u003ccode\u003e6a0e19c\u003c/code\u003e\u003c/a\u003e feat(linter/eslint/no-unmodified-loop-condition): support `checkConditionalEx...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/0b4e2e67f4193e7ebfcc64982275eb583ae82c83\"\u003e\u003ccode\u003e0b4e2e6\u003c/code\u003e\u003c/a\u003e release(apps): oxlint v1.81.0 \u0026amp;\u0026amp; oxfmt v0.66.0 (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26199\"\u003e#26199\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/d5be0375e6303202fcd6d34fa520103eceea0238\"\u003e\u003ccode\u003ed5be037\u003c/code\u003e\u003c/a\u003e docs(linter/typescript/switch-exhaustiveness-check): clarify default case com...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/63bc313934bf1fe94f8e0e6e59336f6036b8506e\"\u003e\u003ccode\u003e63bc313\u003c/code\u003e\u003c/a\u003e chore(npm): update funding URL (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26066\"\u003e#26066\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/oxc-project/oxc/commit/97e99b85483776a72928d675cc05b1cfc1130ba0\"\u003e\u003ccode\u003e97e99b8\u003c/code\u003e\u003c/a\u003e release(apps): oxlint v1.80.0 \u0026amp;\u0026amp; oxfmt v0.65.0 (\u003ca href=\"https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint/issues/26045\"\u003e#26045\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/oxc-project/oxc/commits/oxlint_v1.85.0/npm/oxlint\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `prettier` from 3.6.2 to 3.9.9\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/prettier/prettier/releases\"\u003eprettier's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.9.9\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMarkdown: Fix text with \u003ccode\u003e$\u003c/code\u003e been incorrectly parsed as math syntax (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/20140\"\u003e#20140\u003c/a\u003e by \u003ca href=\"https://github.com/fisker\"\u003e\u003ccode\u003e@​fisker\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.9/CHANGELOG.md#399\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMarkdown: Don't let Liquid objects interrupt paragraphs (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/20087\"\u003e#20087\u003c/a\u003e by \u003ca href=\"https://github.com/seiyab\"\u003e\u003ccode\u003e@​seiyab\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.8/CHANGELOG.md#398\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.7\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSupport Angular 22.2\u003c/li\u003e\n\u003cli\u003eFix regressions in v3.9\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.7/CHANGELOG.md#397\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.6\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ePreserve quotes for methods named \u003ccode\u003enew\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19621\"\u003eprettier/prettier#19621\u003c/a\u003e by \u003ca href=\"https://github.com/kovsu\"\u003e\u003ccode\u003e@​kovsu\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSupport \u003ccode\u003eimport defer\u003c/code\u003e in \u003ccode\u003etypescript\u003c/code\u003e parser (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19624\"\u003eprettier/prettier#19624\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19675\"\u003eprettier/prettier#19675\u003c/a\u003e by \u003ca href=\"https://github.com/fisker\"\u003e\u003ccode\u003e@​fisker\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdded a new official plugin \u003ca href=\"https://github.com/prettier/prettier/tree/3.9.6/packages/plugin-yuku\"\u003e\u003ccode\u003e@prettier/plugin-yuku\u003c/code\u003e 🚀\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19628\"\u003eprettier/prettier#19628\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19629\"\u003eprettier/prettier#19629\u003c/a\u003e by \u003ca href=\"https://github.com/fisker\"\u003e\u003ccode\u003e@​fisker\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.6/CHANGELOG.md#396\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.5\u003c/h2\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.5/CHANGELOG.md#395\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAngular: Format \u003ccode\u003e@content(name)\u003c/code\u003e -\u0026gt; \u003ccode\u003e@content (name)\u003c/code\u003e to align with other block syntax (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19499\"\u003e#19499\u003c/a\u003e by \u003ca href=\"https://github.com/fisker\"\u003e\u003ccode\u003e@​fisker\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.4/CHANGELOG.md#394\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMarkdown: Fix unexpected removal of characters in liquid syntax (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19489\"\u003eprettier/prettier#19489\u003c/a\u003e by \u003ca href=\"https://github.com/seiyab\"\u003e\u003ccode\u003e@​seiyab\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTypeScript: Allow decorators to be used with declare on class fields (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19492\"\u003eprettier/prettier#19492\u003c/a\u003e by \u003ca href=\"https://github.com/evoactivity\"\u003e\u003ccode\u003e@​evoactivity\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.3/CHANGELOG.md#393\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eCLI: Fix ignored file has been cached incorrectly (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19483\"\u003e#19483\u003c/a\u003e by \u003ca href=\"https://github.com/kovsu\"\u003e\u003ccode\u003e@​kovsu\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.9.1/CHANGELOG.md#391\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.9.0\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/prettier/prettier/compare/3.8.5...3.9.0\"\u003ediff\u003c/a\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/prettier/prettier/blob/main/CHANGELOG.md\"\u003eprettier's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e3.9.9\u003c/h1\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/prettier/prettier/compare/3.9.8...3.9.9\"\u003ediff\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eMarkdown: Fix text with \u003ccode\u003e$\u003c/code\u003e been incorrectly parsed as math syntax (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/20140\"\u003e#20140\u003c/a\u003e by \u003ca href=\"https://github.com/fisker\"\u003e\u003ccode\u003e@​fisker\u003c/code\u003e\u003c/a\u003e)\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cpre lang=\"md\"\u003e\u003ccode\u003e\u0026lt;!-- Input --\u0026gt;\n**Uses $FOO** from `a.sh` and `b.sh`, plus `$BAR` from `c.sh`, before anything else runs here.\n\u003cp\u003e\u0026lt;!-- Prettier 3.9.8 --\u0026gt;\n\u003cstrong\u003eUses $FOO\u003c/strong\u003e from \u003ccode\u003ea.sh\u003c/code\u003e and \u003ccode\u003eb.sh\u003c/code\u003e, plus \u003ccode\u003e$BAR\u003c/code\u003efrom\u003ccode\u003ec.sh\u003c/code\u003e, before anything else runs here.\u003c/p\u003e\n\u003cp\u003e\u0026lt;!-- Prettier 3.9.9 --\u0026gt;\n\u003cstrong\u003eUses $FOO\u003c/strong\u003e from \u003ccode\u003ea.sh\u003c/code\u003e and \u003ccode\u003eb.sh\u003c/code\u003e, plus \u003ccode\u003e$BAR\u003c/code\u003e from \u003ccode\u003ec.sh\u003c/code\u003e, before anything else runs here.\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003ch1\u003e3.9.8\u003c/h1\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/prettier/prettier/compare/3.9.7...3.9.8\"\u003ediff\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eMarkdown: Don't let Liquid objects interrupt paragraphs (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/20087\"\u003e#20087\u003c/a\u003e by \u003ca href=\"https://github.com/seiyab\"\u003e\u003ccode\u003e@​seiyab\u003c/code\u003e\u003c/a\u003e)\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cpre lang=\"markdown\"\u003e\u003ccode\u003e\u0026lt;!-- Input --\u0026gt;\nIf `module` is not a [`WebAssembly.Module`](https://github.com/prettier/prettier/blob/main/en-US/docs/WebAssembly/Reference/JavaScript_interface/Module) object instance, a\n{{jsxref(\u0026quot;TypeError\u0026quot;)}} is thrown.\n\u003cp\u003e\u0026lt;!-- Prettier 3.9.7 --\u0026gt;\nIf \u003ccode\u003emodule\u003c/code\u003e is not a \u003ca href=\"https://github.com/prettier/prettier/blob/main/en-US/docs/WebAssembly/Reference/JavaScript_interface/Module\"\u003e\u003ccode\u003eWebAssembly.Module\u003c/code\u003e\u003c/a\u003e object instance, a\u003c/p\u003e\n\u003cp\u003e{{jsxref(\u0026quot;TypeError\u0026quot;)}} is thrown.\u003c/p\u003e\n\u003cp\u003e\u0026lt;!-- Prettier 3.9.8 --\u0026gt;\nIf \u003ccode\u003emodule\u003c/code\u003e is not a \u003ca href=\"https://github.com/prettier/prettier/blob/main/en-US/docs/WebAssembly/Reference/JavaScript_interface/Module\"\u003e\u003ccode\u003eWebAssembly.Module\u003c/code\u003e\u003c/a\u003e object instance, a\n{{jsxref(\u0026quot;TypeError\u0026quot;)}} is thrown.\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003ch1\u003e3.9.7\u003c/h1\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/prettier/prettier/compare/3.9.6...3.9.7\"\u003ediff\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eMarkdown: Prevent indentation drift in list-item code blocks (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19647\"\u003e#19647\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/prettier/prettier/pull/19990\"\u003e#19990\u003c/a\u003e by \u003ca href=\"https://github.com/Austin1serb\"\u003e\u003ccode\u003e@​Austin1serb\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/giaBaoJS\"\u003e\u003ccode\u003e@​giaBaoJS\u003c/code\u003e\u003c/a\u003e)\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cpre lang=\"markdown\"\u003e\u003ccode\u003e\u0026lt;!-- Input --\u0026gt;\n- [x] short first line.\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/cdd17f2288b28b170a76416c72dac56e3ea5daff\"\u003e\u003ccode\u003ecdd17f2\u003c/code\u003e\u003c/a\u003e Release 3.9.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/dc7b8968e678f51ea00e2be3fe8c717d114691a3\"\u003e\u003ccode\u003edc7b896\u003c/code\u003e\u003c/a\u003e Disable \u003ccode\u003esingleDollarTextMath\u003c/code\u003e in \u003ccode\u003emdast-util-math\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/prettier/prettier/issues/20140\"\u003e#20140\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/f9be58fb8ec62dd47197ea19a30aac5ad26dfee0\"\u003e\u003ccode\u003ef9be58f\u003c/code\u003e\u003c/a\u003e Git blame ignore 3.9.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/88470cb79ca3b757dd6b93906d9a992aa1a456c3\"\u003e\u003ccode\u003e88470cb\u003c/code\u003e\u003c/a\u003e Bump Prettier dependency to 3.9.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/9559cab39eb5082c99a27e8829760c055adba841\"\u003e\u003ccode\u003e9559cab\u003c/code\u003e\u003c/a\u003e Clean changelog_unreleased\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/4fc8ee87465de8d54780273a6996d74e8e9da827\"\u003e\u003ccode\u003e4fc8ee8\u003c/code\u003e\u003c/a\u003e Update dependents count\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/4f2ab6765d7cb29408a2abdac75d023d64d44107\"\u003e\u003ccode\u003e4f2ab67\u003c/code\u003e\u003c/a\u003e Release 3.9.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/3d82af8b15b8e89de20dd05cc65f66ab6d4ce8b0\"\u003e\u003ccode\u003e3d82af8\u003c/code\u003e\u003c/a\u003e Update Regex related dependencies (\u003ca href=\"https://redirect.github.com/prettier/prettier/issues/20082\"\u003e#20082\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/5ec8db1745c2bdcca3706ab8cfbbe5c11fc457c1\"\u003e\u003ccode\u003e5ec8db1\u003c/code\u003e\u003c/a\u003e [3.9.x] Markdown: Don't let Liquid objects interrupt paragraphs (\u003ca href=\"https://redirect.github.com/prettier/prettier/issues/20087\"\u003e#20087\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/5b142ed2bce0095161bf6865af30df2d5ba99466\"\u003e\u003ccode\u003e5b142ed\u003c/code\u003e\u003c/a\u003e Release Release \u003ccode\u003e@​prettier/plugin-hermes\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.2.3, \u003ccode\u003e@​prettier/plugin-oxc\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.2.3, an...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/prettier/prettier/compare/3.6.2...3.9.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for prettier since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `turbo` from 2.10.2 to 2.11.4\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/turborepo/releases\"\u003eturbo's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eTurborepo v2.11.4\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efix: Respect negated global dependencies in affected detection by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14164\"\u003evercel/turborepo#14164\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: Release Turborepo 2.11.3 by \u003ca href=\"https://github.com/github-actions\"\u003e\u003ccode\u003e@​github-actions\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14165\"\u003evercel/turborepo#14165\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Share Go compilation caches across integration tests by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14166\"\u003evercel/turborepo#14166\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: Add injectable manifest loading to repository graphs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14167\"\u003evercel/turborepo#14167\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move Go and Cargo scope planning into crate tests by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14168\"\u003evercel/turborepo#14168\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: Extract subprocess-free Go observation assembly by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14169\"\u003evercel/turborepo#14169\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move Cargo environment hash contracts into crates by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14170\"\u003evercel/turborepo#14170\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move Cargo output layout matrices to repository contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14171\"\u003evercel/turborepo#14171\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Cover Go discovery identities in memory by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14172\"\u003evercel/turborepo#14172\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Cover Go hash inputs in repository contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14174\"\u003evercel/turborepo#14174\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move uv hash input contracts into crates by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14175\"\u003evercel/turborepo#14175\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Cover Go task selection in the engine by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14173\"\u003evercel/turborepo#14173\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Inject uv discovery for native task contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14176\"\u003evercel/turborepo#14176\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Inject query contracts over repository graphs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14177\"\u003evercel/turborepo#14177\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Inject dry-run task summary contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14178\"\u003evercel/turborepo#14178\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Expose prune workspace selection plan by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14179\"\u003evercel/turborepo#14179\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Inject change detection at scope entry point by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14180\"\u003evercel/turborepo#14180\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move uv lock affectedness planning into repository contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14184\"\u003evercel/turborepo#14184\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Use virtual clock for package watcher events by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14181\"\u003evercel/turborepo#14181\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move Cargo task query and dry-run planning into contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14185\"\u003evercel/turborepo#14185\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move uv quality query and dry-run projections into contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14186\"\u003evercel/turborepo#14186\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move JavaScript hash and framework projections into contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14188\"\u003evercel/turborepo#14188\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Cover prune closure and native layout plans in process by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14189\"\u003evercel/turborepo#14189\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Cover mixed-toolchain scope filters through injection by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14190\"\u003evercel/turborepo#14190\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Make package watcher suppression and rediscovery deterministic by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14191\"\u003evercel/turborepo#14191\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Inject watch run lifecycle and event collection by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14192\"\u003evercel/turborepo#14192\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move recursive root-script guard into process-free contract by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14193\"\u003evercel/turborepo#14193\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move Go query and summary parity into crate contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14187\"\u003evercel/turborepo#14187\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Remove duplicate CLI filter matrix cases by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14194\"\u003evercel/turborepo#14194\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Trim duplicate prune materialization cases by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14195\"\u003evercel/turborepo#14195\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Match Go library summary path on Windows by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14197\"\u003evercel/turborepo#14197\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Cover mixed-toolchain watch task selection in process by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14196\"\u003evercel/turborepo#14196\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Preserve Windows SystemRoot in strict-env fixture by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14198\"\u003evercel/turborepo#14198\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Retain real watch smokes after selection migration by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14199\"\u003evercel/turborepo#14199\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Only reject secondary \u003ccode\u003ego.work\u003c/code\u003e files Go reads for workspace members by \u003ca href=\"https://github.com/voiys\"\u003e\u003ccode\u003e@​voiys\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14183\"\u003evercel/turborepo#14183\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Split Go north-star cache invalidation into hash contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14201\"\u003evercel/turborepo#14201\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Avoid deleting built prune output in cross-toolchain prune test by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14202\"\u003evercel/turborepo#14202\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Move turbo.json validation cases into crate contracts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14203\"\u003evercel/turborepo#14203\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: Update with-solid example by \u003ca href=\"https://github.com/vercel-gh-bot-2\"\u003e\u003ccode\u003e@​vercel-gh-bot-2\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14200\"\u003evercel/turborepo#14200\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: Split RunBuilder execution context construction into phases by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14204\"\u003evercel/turborepo#14204\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: Inject remote cache status probe by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14205\"\u003evercel/turborepo#14205\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: Inject inputs into config resolution by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14206\"\u003evercel/turborepo#14206\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: Add affected query APIs to turborepo-query by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14207\"\u003evercel/turborepo#14207\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: Wire CLI through affected query APIs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14208\"\u003evercel/turborepo#14208\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: Add pure microfrontend port resolver by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/14209\"\u003evercel/turborepo#14209\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/40c28476951f9498c40555472b799d6a9e6f013d\"\u003e\u003ccode\u003e40c2847\u003c/code\u003e\u003c/a\u003e publish 2.11.4 to registry\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/f74650c96acc8d619eb9b3830fe724970414a344\"\u003e\u003ccode\u003ef74650c\u003c/code\u003e\u003c/a\u003e fix: Put version in \u003ccode\u003eturbo query\u003c/code\u003e JSON output instead of a separate banner (#...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/4d72915a391bc7c33e7cf5f85c9c5fda1a9132ee\"\u003e\u003ccode\u003e4d72915\u003c/code\u003e\u003c/a\u003e test: Move Cargo and Go discovery cases into contracts (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14227\"\u003e#14227\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/8a9a10a9c2435b196595fd5b25189a03d8f98828\"\u003e\u003ccode\u003e8a9a10a\u003c/code\u003e\u003c/a\u003e test: Move Cargo prune layout checks into in-process plan contracts (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14226\"\u003e#14226\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/4b72ac91ef91b9c1e937c6b61f8e1d466ac678f5\"\u003e\u003ccode\u003e4b72ac9\u003c/code\u003e\u003c/a\u003e refactor: Group Run state into execution and services contexts (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14225\"\u003e#14225\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/58a4889a2e6e588481b64fe23d2b8cb14bbedb0f\"\u003e\u003ccode\u003e58a4889\u003c/code\u003e\u003c/a\u003e refactor: Make repository context inputs injectable (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14224\"\u003e#14224\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/813bed0cfe0b1d73fd4f718cf2041b04f03f28b5\"\u003e\u003ccode\u003e813bed0\u003c/code\u003e\u003c/a\u003e fix: Share concurrent remote-cache token recovery (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14223\"\u003e#14223\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/7353b16d16fdc350850350f23fb3a27f09b0e0fc\"\u003e\u003ccode\u003e7353b16\u003c/code\u003e\u003c/a\u003e fix: Coordinate artifact requests after rate limiting (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14221\"\u003e#14221\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/ec329a0fa78be153c195db49eba1e3dcd4b2b037\"\u003e\u003ccode\u003eec329a0\u003c/code\u003e\u003c/a\u003e test: Move affected run planning into RunBuilder contracts (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14212\"\u003e#14212\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/935c9eae1189b89628edb7d7459ee85aeda80f0e\"\u003e\u003ccode\u003e935c9ea\u003c/code\u003e\u003c/a\u003e test: Move config precedence cases into funnel contracts (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/14217\"\u003e#14217\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vercel/turborepo/compare/v2.10.2...v2.11.4\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `acorn` from 8.15.0 to 8.18.0\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/d788421b242ddccb28040f1431438ee5cf474208\"\u003e\u003ccode\u003ed788421\u003c/code\u003e\u003c/a\u003e Mark version 8.18.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/b61cb9a4f245c0f7abc8c3ea9f85b5ac8bc5fbce\"\u003e\u003ccode\u003eb61cb9a\u003c/code\u003e\u003c/a\u003e Add startLocation option\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/c8d515c7f9c8baa62bf5ccffba98507b7be46218\"\u003e\u003ccode\u003ec8d515c\u003c/code\u003e\u003c/a\u003e Don't compute curLine when locations are off\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/a7bd3cd15702d28a7c8ef28365b3f04cf00d107c\"\u003e\u003ccode\u003ea7bd3cd\u003c/code\u003e\u003c/a\u003e Reject an unparenthesized arrow function as the left operand of \u003ccode\u003e**\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/b7c31b626e135c4ed130ff5063c44c20ea8e231a\"\u003e\u003ccode\u003eb7c31b6\u003c/code\u003e\u003c/a\u003e Fix mistake in previous patch\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/5c4af50af1536f144f0a4f254c50e5e34c0a2415\"\u003e\u003ccode\u003e5c4af50\u003c/code\u003e\u003c/a\u003e Avoid scanning from start of document in loose parser's resetTo\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/5b9d16c256b81682d2b26246d86387f1d78633e9\"\u003e\u003ccode\u003e5b9d16c\u003c/code\u003e\u003c/a\u003e Mark version 8.17.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/449f9fafb8e8b8fbb218c75da41de2585e7ccfc1\"\u003e\u003ccode\u003e449f9fa\u003c/code\u003e\u003c/a\u003e Make linter happy\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/9e1bced50d3b7c95749ff4682fbbe80b44f97c31\"\u003e\u003ccode\u003e9e1bced\u003c/code\u003e\u003c/a\u003e Add a strict option to turn on strict mode for scripts\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/acornjs/acorn/commit/8a4781267015166036cced10fca2799906222de7\"\u003e\u003ccode\u003e8a47812\u003c/code\u003e\u003c/a\u003e Convert stack overflow errors to SyntaxError instances\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/acornjs/acorn/compare/8.15.0...8.18.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@opentelemetry/api` from 1.9.0 to 1.9.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/releases\"\u003e@​opentelemetry/api's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eapi/v1.9.1\u003c/h2\u003e\n\u003ch2\u003e1.9.1\u003c/h2\u003e\n\u003ch3\u003e:bug: (Bug Fix)\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efix(api): prioritize \u003ccode\u003eesnext\u003c/code\u003e export condition as it is more specific \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/5458\"\u003e#5458\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(api): update diag \u003ccode\u003econsoleLogger\u003c/code\u003e to use original console methods to prevent infinite loop when a console instrumentation is present \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6395\"\u003e#6395\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(api): use \u003ccode\u003eAttributes\u003c/code\u003e instead of deprecated \u003ccode\u003eSpanAttributes\u003c/code\u003e in \u003ccode\u003eSpanOptions\u003c/code\u003e \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6478\"\u003e#6478\u003c/a\u003e \u003ca href=\"https://github.com/overbalance\"\u003e\u003ccode\u003e@​overbalance\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(diag): change types in \u003ccode\u003eDiagComponentLogger\u003c/code\u003e from \u003ccode\u003eany\u003c/code\u003e to \u003ccode\u003eunknown\u003c/code\u003e\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/5478\"\u003e#5478\u003c/a\u003e \u003ca href=\"https://github.com/loganrosen\"\u003e\u003ccode\u003e@​loganrosen\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(api): re-introduce fallback chain for global utils \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6523/\"\u003e#6523\u003c/a\u003e \u003ca href=\"https://github.com/pichlermarc\"\u003e\u003ccode\u003e@​pichlermarc\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e:house: (Internal)\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003erefactor(api): refactor to avoid circular deps by merging observable types into \u003ccode\u003eMetric.ts\u003c/code\u003e \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6441\"\u003e#6441\u003c/a\u003e \u003ca href=\"https://github.com/pichlermarc\"\u003e\u003ccode\u003e@​pichlermarc\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor(api): remove \u0026quot;export *\u0026quot; in favor of explicit named exports \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/4880\"\u003e#4880\u003c/a\u003e \u003ca href=\"https://github.com/robbkidd\"\u003e\u003ccode\u003e@​robbkidd\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: enable tsconfig isolatedModules \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/5697\"\u003e#5697\u003c/a\u003e \u003ca href=\"https://github.com/legendecas\"\u003e\u003ccode\u003e@​legendecas\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: disallow constructor parameter property syntax \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6187\"\u003e#6187\u003c/a\u003e \u003ca href=\"https://github.com/legendecas\"\u003e\u003ccode\u003e@​legendecas\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor(api): remove platform-specific globalThis, use globalThis directly \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6208\"\u003e#6208\u003c/a\u003e \u003ca href=\"https://github.com/overbalance\"\u003e\u003ccode\u003e@​overbalance\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(api): mark ProxyTracerProvider as deprecated \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6328\"\u003e#6328\u003c/a\u003e \u003ca href=\"https://github.com/cjihrig\"\u003e\u003ccode\u003e@​cjihrig\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: enforce \u003ccode\u003eimport type\u003c/code\u003e for type-only imports via ESLint \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6467\"\u003e#6467\u003c/a\u003e \u003ca href=\"https://github.com/overbalance\"\u003e\u003ccode\u003e@​overbalance\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eperf(api): improve isValidSpanId, isValidTraceId performance \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/5714\"\u003e#5714\u003c/a\u003e \u003ca href=\"https://github.com/seemk\"\u003e\u003ccode\u003e@​seemk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/blob/main/CHANGELOG.md\"\u003e@​opentelemetry/api's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.9.1\u003c/h2\u003e\n\u003ch3\u003e:bug: (Bug Fix)\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efix: avoid grpc types dependency \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/3551\"\u003e#3551\u003c/a\u003e \u003ca href=\"https://github.com/flarna\"\u003e\u003ccode\u003e@​flarna\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(otlp-proto-exporter-base): Match Accept header with Content-Type in the proto exporter\n\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/3562\"\u003e#3562\u003c/a\u003e \u003ca href=\"https://github.com/scheler\"\u003e\u003ccode\u003e@​scheler\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: include tracestate in export \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/3569\"\u003e#3569\u003c/a\u003e \u003ca href=\"https://github.com/flarna\"\u003e\u003ccode\u003e@​flarna\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e:house: (Internal)\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003echore: fix cross project links and missing implicitly exported types \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/3533\"\u003e#3533\u003c/a\u003e \u003ca href=\"https://github.com/legendecas\"\u003e\u003ccode\u003e@​legendecas\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(sdk-metrics): add exponential histogram mapping functions \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/3504\"\u003e#3504\u003c/a\u003e \u003ca href=\"https://github.com/mwear\"\u003e\u003ccode\u003e@​mwear\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/279458e7ddf16f7ddca5fe60c78672e05fafce66\"\u003e\u003ccode\u003e279458e\u003c/code\u003e\u003c/a\u003e Release 1.9.1 / 0.35.1 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3573\"\u003e#3573\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/49787433b66a17a1788a20f3a7edda3aa2580890\"\u003e\u003ccode\u003e4978743\u003c/code\u003e\u003c/a\u003e fix(http): remove outgoing headers normalization (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3557\"\u003e#3557\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/d1f9594d0c691a0422c0d56fc8243d84c32324e2\"\u003e\u003ccode\u003ed1f9594\u003c/code\u003e\u003c/a\u003e chore(deps): update dependency rimraf to v4 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3532\"\u003e#3532\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/e0abcc0b3fe49545a7d0a62825e9f9399c178f60\"\u003e\u003ccode\u003ee0abcc0\u003c/code\u003e\u003c/a\u003e fix: remove JSON syntax error and regenerate tsconfig files (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3566\"\u003e#3566\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/a90c558772e049d614f91c8046b60c49f3211de9\"\u003e\u003ccode\u003ea90c558\u003c/code\u003e\u003c/a\u003e fix(sdk-node): register instrumentations early (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3502\"\u003e#3502\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/5b070b80a43f8c29ac1ea87f868b5ba01b11b0a3\"\u003e\u003ccode\u003e5b070b8\u003c/code\u003e\u003c/a\u003e fix: include TraceState in trace exports (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3569\"\u003e#3569\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/dcb09b76d1013c8e8c18fcb7b34e73b876a716f9\"\u003e\u003ccode\u003edcb09b7\u003c/code\u003e\u003c/a\u003e chore(deps): update dependency gh-pages to v5 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3571\"\u003e#3571\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/3bc93a9fa69ad5bcd32966d044781ee7f0eca496\"\u003e\u003ccode\u003e3bc93a9\u003c/code\u003e\u003c/a\u003e feat: exponential histogram - part 1 - mapping functions (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3504\"\u003e#3504\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/3670071468f95ccc73bc2e89fe9d2415803ac3dc\"\u003e\u003ccode\u003e3670071\u003c/code\u003e\u003c/a\u003e fix: avoid grpc types dependency (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3551\"\u003e#3551\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/b5ef0e4625ad7da67bde80dcb4aa451be98e665a\"\u003e\u003ccode\u003eb5ef0e4\u003c/code\u003e\u003c/a\u003e chore: fix proto generation (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/3567\"\u003e#3567\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/compare/v1.9.0...v1.9.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​opentelemetry/api\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@opentelemetry/context-async-hooks` from 2.6.1 to 2.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/releases\"\u003e@​opentelemetry/context-async-hooks's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.11.0\u003c/h2\u003e\n\u003ch2\u003e2.11.0\u003c/h2\u003e\n\u003ch3\u003e:rocket: Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efeat(context-async-hooks): implement \u003ccode\u003eattach()\u003c/code\u003e on \u003ccode\u003eAsyncLocalStorageContextManager\u003c/code\u003e \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6845\"\u003e#6845\u003c/a\u003e \u003ca href=\"https://github.com/pichlermarc\"\u003e\u003ccode\u003e@​pichlermarc\u003c/code\u003e\u003c/a\u003e\n\u003cul\u003e\n\u003cli\u003eOn Node.js 25.9+, delegates to \u003ccode\u003eAsyncLocalStorage.withScope()\u003c/code\u003e returning a native \u003ccode\u003eRunScope\u003c/code\u003e. On older Node.js, falls back to \u003ccode\u003eenterWith()\u003c/code\u003e with a manual disposable wrapper.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003efeat(sdk-trace): allow configuring the force flush timeout per call \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6929\"\u003e#6929\u003c/a\u003e \u003ca href=\"https://github.com/LarryHu0217\"\u003e\u003ccode\u003e@​LarryHu0217\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e:bug: Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efix(sdk-metrics): ignore \u003ccode\u003eInfinity\u003c/code\u003e in exponential histograms \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/7015\"\u003e#7015\u003c/...\n\n_Description has been truncated_","html_url":"https://github.com/itv3/zlfcode/pull/12","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/itv3%2Fzlfcode/issues/12","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/12/packages"}},{"old_version":"11.1.0","new_version":"13.0.6","update_type":"major","path":null,"pr_created_at":"2026-10-01T17:55:53.000Z","version_change":"11.1.0 → 13.0.6","issue":{"uuid":"5666681025","node_id":"PR_kwDOChBJFs8AAAABGJapSA","number":1770,"state":"closed","title":"chore(deps): bump glob from 11.1.0 to 13.0.6","user":"dependabot[bot]","labels":["dependencies"],"assignees":[],"locked":false,"comments_count":3,"pull_request":true,"closed_at":"2026-10-01T19:16:36.000Z","author_association":null,"state_reason":null,"created_at":"2026-10-01T17:55:53.000Z","updated_at":"2026-10-01T19:16:45.000Z","time_to_close":4843,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"glob","old_version":"11.1.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"}],"path":null,"ecosystem":"npm"},"body":"Bumps [glob](https://github.com/isaacs/node-glob) from 11.1.0 to 13.0.6.\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-glob/blob/main/changelog.md\"\u003eglob's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003echangeglob\u003c/h1\u003e\n\u003ch2\u003e13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMove the CLI program out to a separate package, \u003ccode\u003eglob-bin\u003c/code\u003e.\nInstall that if you'd like to continue using glob from the\ncommand line.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove the unsafe \u003ccode\u003e--shell\u003c/code\u003e option. The \u003ccode\u003e--shell\u003c/code\u003e option is now\nONLY supported on known shells where the behavior can be\nimplemented safely.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.1\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/isaacs/node-glob/security/advisories/GHSA-5j98-mcp5-4vw2\"\u003eGHSA-5j98-mcp5-4vw2\u003c/a\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--shell\u003c/code\u003e option for the command line, with a warning\nthat this is unsafe. (It will be removed in v12.)\u003c/li\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--cmd-arg\u003c/code\u003e/\u003ccode\u003e-g\u003c/code\u003e as a way to \u003cem\u003esafely\u003c/em\u003e add positional\narguments to the command provided to the CLI tool.\u003c/li\u003e\n\u003cli\u003eDetect commands with space or quote characters on known shells,\nand pass positional arguments to them safely, avoiding\n\u003ccode\u003eshell:true\u003c/code\u003e execution.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node before v20\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eincludeChildMatches: false\u003c/code\u003e option\u003c/li\u003e\n\u003cli\u003eExport the \u003ccode\u003eIgnore\u003c/code\u003e class\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e--default -p\u003c/code\u003e flag to provide a default pattern\u003c/li\u003e\n\u003cli\u003eexclude symbolic links to directories when \u003ccode\u003efollow\u003c/code\u003e and \u003ccode\u003enodir\u003c/code\u003e\nare both set\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd glob cli\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReturn \u003ccode\u003e'.'\u003c/code\u003e instead of the empty string \u003ccode\u003e''\u003c/code\u003e when the current\nworking directory is returned as a match.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eposix: true\u003c/code\u003e option to return \u003ccode\u003e/\u003c/code\u003e delimited paths, even on\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/e80cb38ae60d6cbff9e75f39032a994858994d35\"\u003e\u003ccode\u003ee80cb38\u003c/code\u003e\u003c/a\u003e 13.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/9cdbbfff75c64fb158c8842d4d0eb3e908676a41\"\u003e\u003ccode\u003e9cdbbff\u003c/code\u003e\u003c/a\u003e revert tsgo, not ready for test coverage correctness yet\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/89c99ba8e276438b8e31ce878b63186e2cd375b4\"\u003e\u003ccode\u003e89c99ba\u003c/code\u003e\u003c/a\u003e use tsgo compiler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/b7275d54f294174607f544acf07cc7ec526b7878\"\u003e\u003ccode\u003eb7275d5\u003c/code\u003e\u003c/a\u003e update deps, expand engines to include node 18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/942e360a669e0c378c0abd261e7d329ca2cee661\"\u003e\u003ccode\u003e942e360\u003c/code\u003e\u003c/a\u003e update workflows, pull taprc out of package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/4a0d53c7531f3f0df97f9e4d26c78489e7f6d7ef\"\u003e\u003ccode\u003e4a0d53c\u003c/code\u003e\u003c/a\u003e update tap for mockImport bugfix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/ef94ad2696c12129628208cf4e38575e7240c1c4\"\u003e\u003ccode\u003eef94ad2\u003c/code\u003e\u003c/a\u003e update tap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/180c2d43cb135f134c0c5446408dc107c79a5a9b\"\u003e\u003ccode\u003e180c2d4\u003c/code\u003e\u003c/a\u003e update docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/37993c86faddcb780458b2d7ae3c2ead7a84bf31\"\u003e\u003ccode\u003e37993c8\u003c/code\u003e\u003c/a\u003e remove stray console.error in test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/03ae4c244cac6331817158b0bc12effd30deeb43\"\u003e\u003ccode\u003e03ae4c2\u003c/code\u003e\u003c/a\u003e 13.0.5\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v11.1.0...v13.0.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~isaacs\"\u003eisaacs\u003c/a\u003e, a new releaser for glob since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n","html_url":"https://github.com/JeffreyDavidson/Ringside/pull/1770","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/JeffreyDavidson%2FRingside/issues/1770","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/1770/packages"}},{"old_version":"10.4.5","new_version":"10.5.0","update_type":"minor","path":null,"pr_created_at":"2026-09-30T19:20:01.000Z","version_change":"10.4.5 → 10.5.0","issue":{"uuid":"5651790906","node_id":"PR_kwDORNzE7c8AAAABF9eqPA","number":1,"state":"closed","title":"Bump the npm_and_yarn group across 1 directory with 19 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-30T19:20:20.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-30T19:20:01.000Z","updated_at":"2026-09-30T19:20:23.000Z","time_to_close":19,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"npm_and_yarn","update_count":19,"packages":[{"name":"postcss","old_version":"8.5.6","new_version":"8.5.28","repository_url":"https://github.com/postcss/postcss"},{"name":"vite","old_version":"5.4.19","new_version":"8.3.1","repository_url":"https://github.com/vitejs/vite"},{"name":"vitest","old_version":"3.2.4","new_version":"4.1.11","repository_url":"https://github.com/vitest-dev/vitest"},{"name":"postcss-selector-parser","old_version":"6.1.2","new_version":"6.1.4","repository_url":"https://github.com/postcss/postcss-selector-parser"},{"name":"@tootallnate/once","old_version":"2.0.0","new_version":"2.0.1","repository_url":"https://github.com/TooTallNate/once"},{"name":"brace-expansion","old_version":"1.1.12","new_version":"1.1.21","repository_url":"https://github.com/juliangruber/brace-expansion"},{"name":"minimatch","old_version":"3.1.2","new_version":"3.1.5","repository_url":"https://github.com/isaacs/minimatch"},{"name":"picomatch","old_version":"2.3.1","new_version":"2.3.2","repository_url":"https://github.com/micromatch/picomatch"},{"name":"browserslist","old_version":"4.25.1","new_version":"4.29.3","repository_url":"https://github.com/browserslist/browserslist"},{"name":"esbuild","old_version":"0.21.5","new_version":"0.25.0","repository_url":"https://github.com/evanw/esbuild"},{"name":"flatted","old_version":"3.3.1","new_version":"3.4.4","repository_url":"https://github.com/WebReflection/flatted"},{"name":"form-data","old_version":"4.0.5","new_version":"4.0.6","repository_url":"https://github.com/form-data/form-data"},{"name":"glob","old_version":"10.4.5","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"},{"name":"js-yaml","old_version":"4.1.0","new_version":"4.3.2","repository_url":"https://github.com/nodeca/js-yaml"},{"name":"lodash","old_version":"4.17.21","new_version":"4.18.1","repository_url":"https://github.com/lodash/lodash"},{"name":"nanoid","old_version":"3.3.11","new_version":"3.3.19","repository_url":"https://github.com/ai/nanoid"},{"name":"react-router","old_version":"6.30.1","new_version":"7.18.4","repository_url":"https://github.com/remix-run/react-router"},{"name":"ws","old_version":"8.19.0","new_version":"8.22.0","repository_url":"https://github.com/websockets/ws"},{"name":"yaml","old_version":"2.6.0","new_version":"2.9.1","repository_url":"https://github.com/eemeli/yaml"}],"path":null,"ecosystem":"npm"},"body":"Bumps the npm_and_yarn group with 19 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [postcss](https://github.com/postcss/postcss) | `8.5.6` | `8.5.28` |\n| [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) | `5.4.19` | `8.3.1` |\n| [vitest](https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest) | `3.2.4` | `4.1.11` |\n| [postcss-selector-parser](https://github.com/postcss/postcss-selector-parser) | `6.1.2` | `6.1.4` |\n| [@tootallnate/once](https://github.com/TooTallNate/once) | `2.0.0` | `2.0.1` |\n| [brace-expansion](https://github.com/juliangruber/brace-expansion) | `1.1.12` | `1.1.21` |\n| [minimatch](https://github.com/isaacs/minimatch) | `3.1.2` | `3.1.5` |\n| [picomatch](https://github.com/micromatch/picomatch) | `2.3.1` | `2.3.2` |\n| [browserslist](https://github.com/browserslist/browserslist) | `4.25.1` | `4.29.3` |\n| [esbuild](https://github.com/evanw/esbuild) | `0.21.5` | `0.25.0` |\n| [flatted](https://github.com/WebReflection/flatted) | `3.3.1` | `3.4.4` |\n| [form-data](https://github.com/form-data/form-data) | `4.0.5` | `4.0.6` |\n| [glob](https://github.com/isaacs/node-glob) | `10.4.5` | `10.5.0` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `4.1.0` | `4.3.2` |\n| [lodash](https://github.com/lodash/lodash) | `4.17.21` | `4.18.1` |\n| [nanoid](https://github.com/ai/nanoid) | `3.3.11` | `3.3.19` |\n| [react-router](https://github.com/remix-run/react-router/tree/HEAD/packages/react-router) | `6.30.1` | `7.18.4` |\n| [ws](https://github.com/websockets/ws) | `8.19.0` | `8.22.0` |\n| [yaml](https://github.com/eemeli/yaml) | `2.6.0` | `2.9.1` |\n\n\nUpdates `postcss` from 8.5.6 to 8.5.28\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/postcss/releases\"\u003epostcss's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.5.28\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixes types regression.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.27\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed removing any comments starting with \u003ccode\u003e/*#\u003c/code\u003e (by \u003ca href=\"https://github.com/dylanpulver\"\u003e\u003ccode\u003e@​dylanpulver\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003e*\u003c/code\u003e hack before a comment in Custom Properties (by \u003ca href=\"https://github.com/Jaybhade\"\u003e\u003ccode\u003e@​Jaybhade\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed empty values in the middle of \u003ccode\u003elist.comma()\u003c/code\u003e (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed whitespace-only values in \u003ccode\u003elist.space()\u003c/code\u003e (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed rule’s end position on space before semicolon (by \u003ca href=\"https://github.com/maximilliangrand\"\u003e\u003ccode\u003e@​maximilliangrand\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed types (by \u003ca href=\"https://github.com/romainmenke\"\u003e\u003ccode\u003e@​romainmenke\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed Chinese text in deprecation warning (by \u003ca href=\"https://github.com/Jesse205\"\u003e\u003ccode\u003e@​Jesse205\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.26\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003elist.split()\u003c/code\u003e regression (by \u003ca href=\"https://github.com/lazerg\"\u003e\u003ccode\u003e@​lazerg\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eTrack symlinks in path protection in source map loading (by \u003ca href=\"https://github.com/drengir1\"\u003e\u003ccode\u003e@​drengir1\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.25\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed 8.5.17 visitor regression.\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003elist.split()\u003c/code\u003e for non-string values (by \u003ca href=\"https://github.com/amir-rezaei\"\u003e\u003ccode\u003e@​amir-rezaei\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.24\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ePreserve the BOM after the processing (by \u003ca href=\"https://github.com/hdimer\"\u003e\u003ccode\u003e@​hdimer\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.23\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDo not load source map without \u003ccode\u003eopts.from\u003c/code\u003e for security reasons.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.22\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed custom property losing semicolon before a comment (by \u003ca href=\"https://github.com/sarathfrancis90\"\u003e\u003ccode\u003e@​sarathfrancis90\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.21\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed childless at-rule losing semicolon before comment (by \u003ca href=\"https://github.com/sarathfrancis90\"\u003e\u003ccode\u003e@​sarathfrancis90\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed docs (by \u003ca href=\"https://github.com/isker\"\u003e\u003ccode\u003e@​isker\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.20\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed missing space if \u003ccode\u003eAtRule#params\u003c/code\u003e is set after (by \u003ca href=\"https://github.com/sarathfrancis90\"\u003e\u003ccode\u003e@​sarathfrancis90\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed mixing AST error on warnings (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.19\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed cleaning \u003ccode\u003ebefore\u003c/code\u003e for new nodes inserted to \u003ccode\u003eRoot\u003c/code\u003e (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.18\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRestricted loading previous source maps file to the \u003ccode\u003eopts.from\u003c/code\u003e folder for security reasons (use \u003ccode\u003eunsafeMap: true\u003c/code\u003e to disable the check).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.17\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eMaximum call stack size exceeded\u003c/code\u003e error.\u003c/li\u003e\n\u003cli\u003eFixed Prototype hijacking for \u003ccode\u003epostcss.fromJSON()\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003eInput#origin()\u003c/code\u003e for unmapped end position (by \u003ca href=\"https://github.com/chatman-media\"\u003e\u003ccode\u003e@​chatman-media\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.16\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eInput#origin()\u003c/code\u003e position (by \u003ca href=\"https://github.com/mizdra\"\u003e\u003ccode\u003e@​mizdra\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/postcss/blob/main/CHANGELOG.md\"\u003epostcss's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.5.28\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixes types regression.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.27\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed removing any comments starting with \u003ccode\u003e/*#\u003c/code\u003e (by \u003ca href=\"https://github.com/dylanpulver\"\u003e\u003ccode\u003e@​dylanpulver\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003e*\u003c/code\u003e hack before a comment in Custom Properties (by \u003ca href=\"https://github.com/Jaybhade\"\u003e\u003ccode\u003e@​Jaybhade\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed empty values in the middle of \u003ccode\u003elist.comma()\u003c/code\u003e (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed whitespace-only values in \u003ccode\u003elist.space()\u003c/code\u003e (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed rule’s end position on space before semicolon (by \u003ca href=\"https://github.com/maximilliangrand\"\u003e\u003ccode\u003e@​maximilliangrand\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed types (by \u003ca href=\"https://github.com/romainmenke\"\u003e\u003ccode\u003e@​romainmenke\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed Chinese text in deprecation warning (by \u003ca href=\"https://github.com/Jesse205\"\u003e\u003ccode\u003e@​Jesse205\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.26\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003elist.split()\u003c/code\u003e regression (by \u003ca href=\"https://github.com/lazerg\"\u003e\u003ccode\u003e@​lazerg\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eTrack symlinks in path protection in source map loading (by \u003ca href=\"https://github.com/drengir1\"\u003e\u003ccode\u003e@​drengir1\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.25\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed 8.5.17 visitor regression.\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003elist.split()\u003c/code\u003e for non-string values (by \u003ca href=\"https://github.com/amir-rezaei\"\u003e\u003ccode\u003e@​amir-rezaei\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.24\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ePreserve the BOM after the processing (by \u003ca href=\"https://github.com/hdimer\"\u003e\u003ccode\u003e@​hdimer\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.23\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDo not load source map without \u003ccode\u003eopts.from\u003c/code\u003e for security reasons.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.22\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed custom property losing semicolon before a comment (by \u003ca href=\"https://github.com/sarathfrancis90\"\u003e\u003ccode\u003e@​sarathfrancis90\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.21\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed childless at-rule losing semicolon before comment (by \u003ca href=\"https://github.com/sarathfrancis90\"\u003e\u003ccode\u003e@​sarathfrancis90\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed docs (by \u003ca href=\"https://github.com/isker\"\u003e\u003ccode\u003e@​isker\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.20\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed missing space if \u003ccode\u003eAtRule#params\u003c/code\u003e is set after (by \u003ca href=\"https://github.com/sarathfrancis90\"\u003e\u003ccode\u003e@​sarathfrancis90\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed mixing AST error on warnings (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.5.19\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed cleaning \u003ccode\u003ebefore\u003c/code\u003e for new nodes inserted to \u003ccode\u003eRoot\u003c/code\u003e (by \u003ca href=\"https://github.com/MahinAnowar\"\u003e\u003ccode\u003e@​MahinAnowar\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/e544bffc4f4b3966d8ec69c41744b3ed65afc64a\"\u003e\u003ccode\u003ee544bff\u003c/code\u003e\u003c/a\u003e Release 8.5.28 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/f8fc2525717a6a7216659f7be43c525f60c6a15a\"\u003e\u003ccode\u003ef8fc252\u003c/code\u003e\u003c/a\u003e Typo\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/5039fd78962d285abea5d7b3aebef32f053781ce\"\u003e\u003ccode\u003e5039fd7\u003c/code\u003e\u003c/a\u003e Add missed release notes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/ae40ca499cf6a9afdbb264c0ec09e71fe934e2af\"\u003e\u003ccode\u003eae40ca4\u003c/code\u003e\u003c/a\u003e Release 8.5.27 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/62b1626bb7fbb28eda616d002cbd525d239b18ba\"\u003e\u003ccode\u003e62b1626\u003c/code\u003e\u003c/a\u003e Fix linter\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/1dba9384515a2dbc64517697c2f738b6d5c3f9a4\"\u003e\u003ccode\u003e1dba938\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/3e82edc9f037faa41647342dceceba9b841f9881\"\u003e\u003ccode\u003e3e82edc\u003c/code\u003e\u003c/a\u003e Keep non-annotation comments when the processor has no plugins (\u003ca href=\"https://redirect.github.com/postcss/postcss/issues/2150\"\u003e#2150\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/6d23bc362203118478bc8051b81f2910907ebe6e\"\u003e\u003ccode\u003e6d23bc3\u003c/code\u003e\u003c/a\u003e Fix link\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/508e9976be81536292e7666741e1c35e876b9a6a\"\u003e\u003ccode\u003e508e997\u003c/code\u003e\u003c/a\u003e Add GitHub Sponsors link\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss/commit/e993739dc49b6055f7dfc59b161d75702f0b2b8b\"\u003e\u003ccode\u003ee993739\u003c/code\u003e\u003c/a\u003e Add CodeRabbit sponsor (\u003ca href=\"https://redirect.github.com/postcss/postcss/issues/2145\"\u003e#2145\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/postcss/postcss/compare/8.5.6...8.5.28\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for postcss since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `vite` from 5.4.19 to 8.3.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vitejs/vite/releases\"\u003evite's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.3.1\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update all non-major dependencies (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23482\"\u003e#23482\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/3c752c8932bc0599465ba4a6d8f44aaf1e934c3d\"\u003e3c752c8\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update all non-major dependencies (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23537\"\u003e#23537\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e8990c4d6101dfaca2654ed8ab4d0574ee920248\"\u003ee8990c4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update rolldown-related dependencies (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23483\"\u003e#23483\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/9aecbbfa5fb5da4b9981c099cb9746a9fd210806\"\u003e9aecbbf\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ehandle \u003ccode\u003eserver.ws: false\u003c/code\u003e in mergeConfig (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23511\"\u003e#23511\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/f68c0d5a28c96555431413e3e2cbe644337b087f\"\u003ef68c0d5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003emerge \u003ccode\u003ebuild.rolldownOptions.output.comments\u003c/code\u003e correctly (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23514\"\u003e#23514\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/4aba8d8720e82e4c5b694a4b7877755a3f84fc57\"\u003e4aba8d8\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eoptimizer:\u003c/strong\u003e don't skip imports whose binding starts with type (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23540\"\u003e#23540\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/39330f489a0ae08923557f0ce10a307d6662a3f5\"\u003e39330f4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eoptimizer:\u003c/strong\u003e resolve pending discovered dep processing on close before init (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23567\"\u003e#23567\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/5f894339d27882fedc86bf6b1076fa6d92e404f3\"\u003e5f89433\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eserver:\u003c/strong\u003e avoid reinitializing watcher when adding file after server close (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23572\"\u003e#23572\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/6f831f9b58ebda77638b514042ad8d160edfb928\"\u003e6f831f9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003esourcemap:\u003c/strong\u003e skip URL source roots when injecting sources content (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23519\"\u003e#23519\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/04fc30a4b91870e65a436b3420620a2e02a94a41\"\u003e04fc30a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eMiscellaneous Chores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003emerge prereleases in changelog (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23466\"\u003e#23466\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/99bd9d1d46153fa939f4a304cc0177db42e28776\"\u003e99bd9d1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eoptimizer:\u003c/strong\u003e add debug log when waiting for dep before init (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23566\"\u003e#23566\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/63567c73ac132e6384fef384e6b9f7e8d5a37fff\"\u003e63567c7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eupdate \u003ccode\u003eoptimizeDeps.include\u003c/code\u003e comment (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23489\"\u003e#23489\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/6a84c72100da4e4be4badb2d9a0026279b4df136\"\u003e6a84c72\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eCode Refactoring\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eassets regexp use non-capture (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23491\"\u003e#23491\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/f4b4431a2f9097fd9bbb7aaebbf1b63c4b54dea1\"\u003ef4b4431\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eremove duplicate configurations (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23532\"\u003e#23532\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/9abd99bfdd3117149d6faf87fc37bc9899b1c998\"\u003e9abd99b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereplace \u003ccode\u003efind\u003c/code\u003e with \u003ccode\u003esome\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23554\"\u003e#23554\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/af7cdf6964f124f58d66037e808fe687654948e2\"\u003eaf7cdf6\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ecreate-vite@8.3.0\u003c/h2\u003e\n\u003cp\u003ePlease refer to \u003ca href=\"https://github.com/vitejs/vite/blob/create-vite@8.3.0/packages/create-vite/CHANGELOG.md\"\u003eCHANGELOG.md\u003c/a\u003e for details.\u003c/p\u003e\n\u003ch2\u003ev8.3.0\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ebuild:\u003c/strong\u003e avoid settling seen preload dependencies for performance (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23446\"\u003e#23446\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e6f6b3e3119256daa837b2dc399058c8aa45b470\"\u003ee6f6b3e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ehandle CRLF line endings in code frame positions (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23219\"\u003e#23219\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/9913672bee9c34a2df7fff4c2538783cd4f43b4e\"\u003e9913672\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eonly treat whole \u003ccode\u003enode_modules\u003c/code\u003e path segments as dependencies (fix \u003ca href=\"https://redirect.github.com/vitejs/vite/issues/17467\"\u003e#17467\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23437\"\u003e#23437\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/ef0dc17ada53d1169ae5a89cb8f6482831466755\"\u003eef0dc17\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003ePerformance Improvements\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eproxy:\u003c/strong\u003e pre-compile context matchers at server creation (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23263\"\u003e#23263\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/8abf700eeb2411d8402d08f8e2696effafdbe774\"\u003e8abf700\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev8.3.0-beta.1\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edevtools:\u003c/strong\u003e enable dev server integration (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23333\"\u003e#23333\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/68aeb8a3b5a5a2ccd505288999bae1a5e6942ee1\"\u003e68aeb8a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ebuild:\u003c/strong\u003e keep hash placeholders as-is in \u003ccode\u003eresolveFileUrl\u003c/code\u003e hook (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23422\"\u003e#23422\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e8d6a4d3399c739772080d70c7f3c4d548a637c9\"\u003ee8d6a4d\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vitejs/vite/blob/main/packages/vite/CHANGELOG.md\"\u003evite's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003c!-- raw HTML omitted --\u003e\u003ca href=\"https://github.com/vitejs/vite/compare/v8.3.0...v8.3.1\"\u003e8.3.1\u003c/a\u003e (2026-09-24)\u003c!-- raw HTML omitted --\u003e\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update all non-major dependencies (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23482\"\u003e#23482\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/3c752c8932bc0599465ba4a6d8f44aaf1e934c3d\"\u003e3c752c8\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update all non-major dependencies (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23537\"\u003e#23537\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e8990c4d6101dfaca2654ed8ab4d0574ee920248\"\u003ee8990c4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update rolldown-related dependencies (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23483\"\u003e#23483\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/9aecbbfa5fb5da4b9981c099cb9746a9fd210806\"\u003e9aecbbf\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ehandle \u003ccode\u003eserver.ws: false\u003c/code\u003e in mergeConfig (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23511\"\u003e#23511\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/f68c0d5a28c96555431413e3e2cbe644337b087f\"\u003ef68c0d5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003emerge \u003ccode\u003ebuild.rolldownOptions.output.comments\u003c/code\u003e correctly (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23514\"\u003e#23514\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/4aba8d8720e82e4c5b694a4b7877755a3f84fc57\"\u003e4aba8d8\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eoptimizer:\u003c/strong\u003e don't skip imports whose binding starts with type (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23540\"\u003e#23540\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/39330f489a0ae08923557f0ce10a307d6662a3f5\"\u003e39330f4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eoptimizer:\u003c/strong\u003e resolve pending discovered dep processing on close before init (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23567\"\u003e#23567\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/5f894339d27882fedc86bf6b1076fa6d92e404f3\"\u003e5f89433\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eserver:\u003c/strong\u003e avoid reinitializing watcher when adding file after server close (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23572\"\u003e#23572\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/6f831f9b58ebda77638b514042ad8d160edfb928\"\u003e6f831f9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003esourcemap:\u003c/strong\u003e skip URL source roots when injecting sources content (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23519\"\u003e#23519\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/04fc30a4b91870e65a436b3420620a2e02a94a41\"\u003e04fc30a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eMiscellaneous Chores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003emerge prereleases in changelog (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23466\"\u003e#23466\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/99bd9d1d46153fa939f4a304cc0177db42e28776\"\u003e99bd9d1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eoptimizer:\u003c/strong\u003e add debug log when waiting for dep before init (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23566\"\u003e#23566\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/63567c73ac132e6384fef384e6b9f7e8d5a37fff\"\u003e63567c7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eupdate \u003ccode\u003eoptimizeDeps.include\u003c/code\u003e comment (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23489\"\u003e#23489\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/6a84c72100da4e4be4badb2d9a0026279b4df136\"\u003e6a84c72\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eCode Refactoring\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eassets regexp use non-capture (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23491\"\u003e#23491\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/f4b4431a2f9097fd9bbb7aaebbf1b63c4b54dea1\"\u003ef4b4431\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eremove duplicate configurations (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23532\"\u003e#23532\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/9abd99bfdd3117149d6faf87fc37bc9899b1c998\"\u003e9abd99b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereplace \u003ccode\u003efind\u003c/code\u003e with \u003ccode\u003esome\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23554\"\u003e#23554\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/af7cdf6964f124f58d66037e808fe687654948e2\"\u003eaf7cdf6\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/vitejs/vite/compare/v8.2.2...v8.3.0\"\u003e8.3.0\u003c/a\u003e (2026-09-10)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ebuild:\u003c/strong\u003e avoid settling seen preload dependencies for performance (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23446\"\u003e#23446\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e6f6b3e3119256daa837b2dc399058c8aa45b470\"\u003ee6f6b3e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edevtools:\u003c/strong\u003e enable dev server integration (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23333\"\u003e#23333\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/68aeb8a3b5a5a2ccd505288999bae1a5e6942ee1\"\u003e68aeb8a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eaccept Rolldown watch options in \u003ccode\u003eserver.watch\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23133\"\u003e#23133\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/1b5cfe3d3777d4ceb7f35fcee9d3c4279316a084\"\u003e1b5cfe3\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eadd closeServer and closePreviewServer hooks (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23110\"\u003e#23110\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e17d2d565b0288f169c7995adb2b192f917548e7\"\u003ee17d2d5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eadd top-level \u003ccode\u003etsconfig\u003c/code\u003e option (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23310\"\u003e#23310\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/93164c3530a7b4fc7bbedfb986d6afa9546cdef3\"\u003e93164c3\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eadd warning for unsupported hooks in plugin returned from \u003ccode\u003eapplyToEnvironment\u003c/code\u003e hook (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23191\"\u003e#23191\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/fdef04f112aadfea40ad3c448d96a49a04c168bd\"\u003efdef04f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecli:\u003c/strong\u003e support naming the CPU profile via --profile [name] (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23042\"\u003e#23042\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/a500deeb6f52d93ca501a0fc612a5392b939f2f5\"\u003ea500dee\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003econfig:\u003c/strong\u003e warn on named imports from JSON modules (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23378\"\u003e#23378\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/472385e6ec4b21e3167c7abf9769883d1c9675f8\"\u003e472385e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecss:\u003c/strong\u003e minify style tag (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23183\"\u003e#23183\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/8156684572bdcf73e9d8568ed67971f0467fab60\"\u003e8156684\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003esearched params attached to workers are now preserved (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/22280\"\u003e#22280\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/517b97f57ab9473e7417da856eb641d76870a56e\"\u003e517b97f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003esupport subpath imports in dynamic import statements (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23185\"\u003e#23185\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/b78e2f1bc1cba404c4bd9faf518d26ec85e89fc7\"\u003eb78e2f1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003euse \u003ccode\u003eimport.meta.ROLLDOWN_FILE_URL_*\u003c/code\u003e for assets in JS (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/22888\"\u003e#22888\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/4366ac468343252df6d5706361a6348afa66f9cc\"\u003e4366ac4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003euse \u003ccode\u003eimport.meta.ROLLDOWN_FILE_URL_*\u003c/code\u003e for other plugins (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/22894\"\u003e#22894\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e38f29ee48bea5ea3178faec5b78708e86f38afb\"\u003ee38f29e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eworker:\u003c/strong\u003e remove worker chunk if it's detected that it's not referenced (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/22473\"\u003e#22473\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/924997a4bdda9115faee9bdb622fcec4fc8357f0\"\u003e924997a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ehandle CRLF line endings in code frame positions (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23219\"\u003e#23219\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/9913672bee9c34a2df7fff4c2538783cd4f43b4e\"\u003e9913672\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eonly treat whole \u003ccode\u003enode_modules\u003c/code\u003e path segments as dependencies (fix \u003ca href=\"https://redirect.github.com/vitejs/vite/issues/17467\"\u003e#17467\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23437\"\u003e#23437\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/ef0dc17ada53d1169ae5a89cb8f6482831466755\"\u003eef0dc17\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ebuild:\u003c/strong\u003e keep hash placeholders as-is in \u003ccode\u003eresolveFileUrl\u003c/code\u003e hook (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23422\"\u003e#23422\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/e8d6a4d3399c739772080d70c7f3c4d548a637c9\"\u003ee8d6a4d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ebundled-dev:\u003c/strong\u003e mark payload delivered on client report (\u003ca href=\"https://redirect.github.com/vitejs/vite/issues/23373\"\u003e#23373\u003c/a\u003e) (\u003ca href=\"https://github.com/vitejs/vite/commit/a6d43bc9e3464faa4d49f090e75e1ab334ffb7b0\"\u003ea6d43bc\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/39ddf7ccf7e7469ff6a3ba37bca38c32ea804d6e\"\u003e\u003ccode\u003e39ddf7c\u003c/code\u003e\u003c/a\u003e release: v8.3.1 (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23573\"\u003e#23573\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/f68c0d5a28c96555431413e3e2cbe644337b087f\"\u003e\u003ccode\u003ef68c0d5\u003c/code\u003e\u003c/a\u003e fix: handle \u003ccode\u003eserver.ws: false\u003c/code\u003e in mergeConfig (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23511\"\u003e#23511\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/6f831f9b58ebda77638b514042ad8d160edfb928\"\u003e\u003ccode\u003e6f831f9\u003c/code\u003e\u003c/a\u003e fix(server): avoid reinitializing watcher when adding file after server close...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/04fc30a4b91870e65a436b3420620a2e02a94a41\"\u003e\u003ccode\u003e04fc30a\u003c/code\u003e\u003c/a\u003e fix(sourcemap): skip URL source roots when injecting sources content (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23519\"\u003e#23519\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/5f894339d27882fedc86bf6b1076fa6d92e404f3\"\u003e\u003ccode\u003e5f89433\u003c/code\u003e\u003c/a\u003e fix(optimizer): resolve pending discovered dep processing on close before ini...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/63567c73ac132e6384fef384e6b9f7e8d5a37fff\"\u003e\u003ccode\u003e63567c7\u003c/code\u003e\u003c/a\u003e chore(optimizer): add debug log when waiting for dep before init (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23566\"\u003e#23566\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/e8990c4d6101dfaca2654ed8ab4d0574ee920248\"\u003e\u003ccode\u003ee8990c4\u003c/code\u003e\u003c/a\u003e fix(deps): update all non-major dependencies (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23537\"\u003e#23537\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/af7cdf6964f124f58d66037e808fe687654948e2\"\u003e\u003ccode\u003eaf7cdf6\u003c/code\u003e\u003c/a\u003e refactor: replace \u003ccode\u003efind\u003c/code\u003e with \u003ccode\u003esome\u003c/code\u003e (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23554\"\u003e#23554\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/39330f489a0ae08923557f0ce10a307d6662a3f5\"\u003e\u003ccode\u003e39330f4\u003c/code\u003e\u003c/a\u003e fix(optimizer): don't skip imports whose binding starts with type (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23540\"\u003e#23540\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite/commit/9abd99bfdd3117149d6faf87fc37bc9899b1c998\"\u003e\u003ccode\u003e9abd99b\u003c/code\u003e\u003c/a\u003e refactor: remove duplicate configurations (\u003ca href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/23532\"\u003e#23532\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vitejs/vite/commits/v8.3.1/packages/vite\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for vite since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `vitest` from 3.2.4 to 4.1.11\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vitest-dev/vitest/releases\"\u003evitest's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.1.11\u003c/h2\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eRevive global concurrency limit for test lifecycle [backport to v4]  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e and \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10992\"\u003evitest-dev/vitest#10992\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/5146df80b\"\u003e\u003c!-- raw HTML omitted --\u003e(5146d)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ebrowser\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eEncode iframeId in tester iframe URL [backport to v4]  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003ePduhard\u003c/strong\u003e and \u003cstrong\u003eClaude Opus 4.8\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10955\"\u003evitest-dev/vitest#10955\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/10b2cd201\"\u003e\u003c!-- raw HTML omitted --\u003e(10b2c)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eTrigger playwright/chromium gc on lower disk availability [backport to v4]  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e and \u003cstrong\u003eOpenCode\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10951\"\u003evitest-dev/vitest#10951\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/9851dbc41\"\u003e\u003c!-- raw HTML omitted --\u003e(9851d)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003emocker\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eRestrict redirect mocks to the fs allowlist [backport to v4]  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10974\"\u003evitest-dev/vitest#10974\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/fe5a11d3c\"\u003e\u003c!-- raw HTML omitted --\u003e(fe5a1)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/vitest-dev/vitest/compare/v4.1.10...v4.1.11\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev4.1.10\u003c/h2\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ebrowser\u003c/strong\u003e: Check fs access in builtin commands [backport to v4]  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e and \u003cstrong\u003eOpenCode (claude-opus-4-8)\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10680\"\u003evitest-dev/vitest#10680\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/5c18dd267\"\u003e\u003c!-- raw HTML omitted --\u003e(5c18d)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003evm\u003c/strong\u003e: Fix external module resolve error with deps optimizer query for encoded URI [backport to v4]  -  by \u003ca href=\"https://github.com/SveLil\"\u003e\u003ccode\u003e@​SveLil\u003c/code\u003e\u003c/a\u003e and \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10661\"\u003evitest-dev/vitest#10661\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/bae52b511\"\u003e\u003c!-- raw HTML omitted --\u003e(bae52)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/vitest-dev/vitest/compare/v4.1.9...v4.1.10\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev4.1.9\u003c/h2\u003e\n\u003ch3\u003e🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eimportOriginal\u003c/code\u003e with optimizer and query import [backport to v4] - by \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e, \u003cstrong\u003eDavid Harris\u003c/strong\u003e, \u003cstrong\u003eCodex\u003c/strong\u003eand \u003cstrong\u003eVladimir\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10546\"\u003evitest-dev/vitest#10546\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/a5180190c\"\u003e\u003c!-- raw HTML omitted --\u003e(a5180)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ebrowser\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eWait for orchestrator readiness before resolving browser sessions [backport to v4] - by \u003cstrong\u003eVladimir\u003c/strong\u003e and \u003cstrong\u003eSéamus O'Connor\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10555\"\u003evitest-dev/vitest#10555\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/7fb29651a\"\u003e\u003c!-- raw HTML omitted --\u003e(7fb29)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWait for iframe tester readiness before preparing  [backport to v4] - by \u003cstrong\u003eVladimir\u003c/strong\u003e and \u003cstrong\u003eSéamus O'Connor\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10497\"\u003evitest-dev/vitest#10497\u003c/a\u003e and \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10556\"\u003evitest-dev/vitest#10556\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/fbc626c40\"\u003e\u003c!-- raw HTML omitted --\u003e(fbc62)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003emocker\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eHoist vi.mock() for vite-plus/test imports [backport to v4] - by \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e, \u003cstrong\u003eLongYinan\u003c/strong\u003e, \u003cstrong\u003eClaude Opus 4.8\u003c/strong\u003e and \u003cstrong\u003eVladimir\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10548\"\u003evitest-dev/vitest#10548\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/2c9559c02\"\u003e\u003c!-- raw HTML omitted --\u003e(2c955)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003epool\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003ePrevent test run hang on worker crash  [backport to v4] - by \u003cstrong\u003eAri Perkkiö\u003c/strong\u003e and \u003cstrong\u003eJattioui Ismail\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10543\"\u003evitest-dev/vitest#10543\u003c/a\u003e and \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10564\"\u003evitest-dev/vitest#10564\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/934b0f587\"\u003e\u003c!-- raw HTML omitted --\u003e(934b0)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/compare/v4.1.8...v4.1.9\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev4.1.8\u003c/h2\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ebrowser\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eDisable client \u003ccode\u003ecdp\u003c/code\u003e API when \u003ccode\u003eallowWrite/allowExec: false\u003c/code\u003e [backport to v4]  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e and \u003cstrong\u003eCodex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10450\"\u003evitest-dev/vitest#10450\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/e4067b3b1\"\u003e\u003c!-- raw HTML omitted --\u003e(e4067)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove orphaned Playwright route when same module is mocked via multiple ids [backport to v4]  -  by \u003ca href=\"https://github.com/toxik\"\u003e\u003ccode\u003e@​toxik\u003c/code\u003e\u003c/a\u003e and \u003ca href=\"https://github.com/Zelys-DFKH\"\u003e\u003ccode\u003e@​Zelys-DFKH\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10474\"\u003evitest-dev/vitest#10474\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/675b4343f\"\u003e\u003c!-- raw HTML omitted --\u003e(675b4)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/vitest-dev/vitest/compare/v4.1.7...v4.1.8\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev4.1.7\u003c/h2\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003erunner\u003c/strong\u003e: Limit concurrency per task branch in addition to per leaf callbacks (backport)  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10384\"\u003evitest-dev/vitest#10384\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/4f0f2a1ee\"\u003e\u003c!-- raw HTML omitted --\u003e(4f0f2)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/vitest-dev/vitest/compare/v4.1.6...v4.1.7\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/9bd8d464e6328c567c2dbcd8fdd977d57a9425c2\"\u003e\u003ccode\u003e9bd8d46\u003c/code\u003e\u003c/a\u003e chore: release v4.1.11 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest/issues/10995\"\u003e#10995\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/9851dbc41c286a30abfb6b29cce65f3e5b7b40a1\"\u003e\u003ccode\u003e9851dbc\u003c/code\u003e\u003c/a\u003e fix(browser): trigger playwright/chromium gc on lower disk availability [back...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/db616d227b6e0cb07a94f5d1bba262ee95db7e46\"\u003e\u003ccode\u003edb616d2\u003c/code\u003e\u003c/a\u003e chore: release v4.1.10 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest/issues/10718\"\u003e#10718\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/bae52b5112a6fd8200101b88bf8af9685d077295\"\u003e\u003ccode\u003ebae52b5\u003c/code\u003e\u003c/a\u003e fix(vm): fix external module resolve error with deps optimizer query for enco...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/a7a61e78c7d0718f00173cff6800a91a344457d4\"\u003e\u003ccode\u003ea7a61e7\u003c/code\u003e\u003c/a\u003e chore: release v4.1.9 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest/issues/10598\"\u003e#10598\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/934b0f587cb61d8338d83f525295322692a2db40\"\u003e\u003ccode\u003e934b0f5\u003c/code\u003e\u003c/a\u003e fix(pool): prevent test run hang on worker crash (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest/issues/10543\"\u003e#10543\u003c/a\u003e) [backport to v4] (#...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/7fb29651afbae2a9b0cefe6c031a9308f168ac60\"\u003e\u003ccode\u003e7fb2965\u003c/code\u003e\u003c/a\u003e fix(browser): wait for orchestrator readiness before resolving browser sessio...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/a5180190c1be7089e3705e3dd9e84fea118d09d3\"\u003e\u003ccode\u003ea518019\u003c/code\u003e\u003c/a\u003e fix: fix \u003ccode\u003eimportOriginal\u003c/code\u003e with optimizer and query import [backport to v4] (#...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/e61f2dd2a0ba0a266c1c5e0334aad3799fee527f\"\u003e\u003ccode\u003ee61f2dd\u003c/code\u003e\u003c/a\u003e chore: release v4.1.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/e4067b3b150005fd42cf75f994300119245806b9\"\u003e\u003ccode\u003ee4067b3\u003c/code\u003e\u003c/a\u003e fix(browser): disable client \u003ccode\u003ecdp\u003c/code\u003e API when \u003ccode\u003eallowWrite/allowExec: false\u003c/code\u003e [ba...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vitest-dev/vitest/commits/v4.1.11/packages/vitest\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for vitest since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `postcss-selector-parser` from 6.1.2 to 6.1.4\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/postcss-selector-parser/releases\"\u003epostcss-selector-parser's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e6.1.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: tolerate non-node children when serializing selectors\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e6.1.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://github.com/advisories/GHSA-w9m9-85wc-3x92\"\u003eCVE-2026-9358\u003c/a\u003e (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 via backport of (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/316\"\u003e#316\u003c/a\u003e by \u003ca href=\"https://github.com/MoOx\"\u003e\u003ccode\u003e@​MoOx\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/postcss-selector-parser/blob/main/CHANGELOG.md\"\u003epostcss-selector-parser's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChangelog of \u003ccode\u003epostcss-selector-parser\u003c/code\u003e\u003c/h1\u003e\n\u003ch2\u003e7.1.6 - 2026-09-03\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: parse flat selectors in linear time, closing a CPU exhaustion vulnerability (\u003ca href=\"https://github.com/advisories/GHSA-rj75-hqrm-r3gf\"\u003eGHSA-rj75-hqrm-r3gf\u003c/a\u003e, reported by Wayde Shi)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.5 - 2026-08-07\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: don't treat a non-prefix token before \u003ccode\u003e|\u003c/code\u003e as a namespace (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/324\"\u003e#324\u003c/a\u003e by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: preserve whitespace before a \u003ccode\u003e*\u003c/code\u003e namespace in attribute selectors (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/325\"\u003e#325\u003c/a\u003e by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: TypeError on unclosed \u003ccode\u003e[\u003c/code\u003e, \u003ccode\u003e(\u003c/code\u003e and trailing \u003ccode\u003e|\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/330\"\u003e#330\u003c/a\u003e by \u003ca href=\"https://github.com/theRizwan\"\u003e\u003ccode\u003e@​theRizwan\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.4 - 2026-06-11\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: tolerate non-node children when serializing selectors\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.3 - 2026-06-11\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImprove fix CVE-2026-9358 (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 (clone/walk)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.2 - 2026-06-09\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://github.com/advisories/GHSA-w9m9-85wc-3x92\"\u003eCVE-2026-9358\u003c/a\u003e (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/316\"\u003e#316\u003c/a\u003e by \u003ca href=\"https://github.com/MoOx\"\u003e\u003ccode\u003e@​MoOx\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eperf: replace startsWith with strict equality (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/308\"\u003e#308\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(types): add walkUniversal declaration (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/311\"\u003e#311\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: insert(Before|After) support multiple new node\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFeat: make insertions during iteration safe (major)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/4a7e4e3685db8ab8e52e51ecdbe8162a8568f70c\"\u003e\u003ccode\u003e4a7e4e3\u003c/code\u003e\u003c/a\u003e 7.1.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/e2021c523d5ef1bf27836aef3bd724a28ba7894f\"\u003e\u003ccode\u003ee2021c5\u003c/code\u003e\u003c/a\u003e fix: tolerate non-node children when serializing selectors\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/7893b741fa87d0401e39c3a7f00d89cf7408ad32\"\u003e\u003ccode\u003e7893b74\u003c/code\u003e\u003c/a\u003e 7.1.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/5bc698cef66f8abd12610dc623e5d67cbc0f869d\"\u003e\u003ccode\u003e5bc698c\u003c/code\u003e\u003c/a\u003e Improve fix CVE-2026-9358 (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 (clo...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/db3232710d7270b34e50b4ffae493ac19204f570\"\u003e\u003ccode\u003edb32327\u003c/code\u003e\u003c/a\u003e run oxfmt\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/16e2581b40894504cf2b979fc0ebf7d0b2f39366\"\u003e\u003ccode\u003e16e2581\u003c/code\u003e\u003c/a\u003e simplify deps (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/319\"\u003e#319\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/b185e2057871669f9c571ad82e4350799e0a2329\"\u003e\u003ccode\u003eb185e20\u003c/code\u003e\u003c/a\u003e Add description in package.json + full repo url\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/de415f19aac008f0e731590222f3a963193be05c\"\u003e\u003ccode\u003ede415f1\u003c/code\u003e\u003c/a\u003e Add Tidelift security notice\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/c4f2c8c04a8107e4e401f257ef00592b59633774\"\u003e\u003ccode\u003ec4f2c8c\u003c/code\u003e\u003c/a\u003e CI: make Node 14 test job lockfile-v3 compatible (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/318\"\u003e#318\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/4e93663bfe861f9fc3173db603c8fadb70f8090a\"\u003e\u003ccode\u003e4e93663\u003c/code\u003e\u003c/a\u003e Fix test run on node \u0026lt; 20\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/postcss/postcss-selector-parser/compare/v6.1.2...6.1.4\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~moox\"\u003emoox\u003c/a\u003e, a new releaser for postcss-selector-parser since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@tootallnate/once` from 2.0.0 to 2.0.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/TooTallNate/once/releases\"\u003e@​tootallnate/once's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.0.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ea1e5e2d: Fix promise hang when AbortSignal is aborted\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/TooTallNate/once/blob/v2.0.1/CHANGELOG.md\"\u003e@​tootallnate/once's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.0.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ea1e5e2d: Fix promise hang when AbortSignal is aborted\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/TooTallNate/once/commit/bcbb21d387e5fb2d0bf8ec2fd8d0ac97d4553241\"\u003e\u003ccode\u003ebcbb21d\u003c/code\u003e\u003c/a\u003e ci: fix OIDC publishing — Node 24, npm latest, provenance\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/TooTallNate/once/commit/dc24387be8e3405f1e7c911caf76c87b72a0e145\"\u003e\u003ccode\u003edc24387\u003c/code\u003e\u003c/a\u003e Version Packages (2.x) (\u003ca href=\"https://redirect.github.com/TooTallNate/once/issues/12\"\u003e#12\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/TooTallNate/once/commit/b8a6f80afcfd2482b4bdb1e29d784340a05e0ce3\"\u003e\u003ccode\u003eb8a6f80\u003c/code\u003e\u003c/a\u003e CI: test all Node versions on Linux only\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/TooTallNate/once/commit/dabcc0fb6202663cd83994f0a21ea1c710395327\"\u003e\u003ccode\u003edabcc0f\u003c/code\u003e\u003c/a\u003e ci: drop EOL Node.js 14.x/16.x, add 22.x\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/TooTallNate/once/commit/b464efcf4238d92590245b4d211d2fc05a94d28a\"\u003e\u003ccode\u003eb464efc\u003c/code\u003e\u003c/a\u003e Update CI: modern Node versions, fix macOS ARM64 compat\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/TooTallNate/once/commit/a1e5e2d784bcd1c65e49fac1524c6c94fe81f871\"\u003e\u003ccode\u003ea1e5e2d\u003c/code\u003e\u003c/a\u003e Fix promise hang when AbortSignal is aborted\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/TooTallNate/once/compare/2.0.0...v2.0.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​tootallnate/once\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `brace-expansion` from 1.1.12 to 1.1.21\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/juliangruber/brace-expansion/releases\"\u003ebrace-expansion's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.1.15\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBackport v5.0.6 change to v1 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/111\"\u003e#111\u003c/a\u003e)  0b09384\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v1.1.14...v1.1.15\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v1.1.14...v1.1.15\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/8e81e187b6e9c6c723d16c042657c00acefc2483\"\u003e\u003ccode\u003e8e81e18\u003c/code\u003e\u003c/a\u003e 1.1.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/ffdfa3e3806bed17c0874b8f1439b084de354a7e\"\u003e\u003ccode\u003effdfa3e\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/c6513ad31e08edb56dc414a629e39cba724b7548\"\u003e\u003ccode\u003ec6513ad\u003c/code\u003e\u003c/a\u003e 1.1.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1efee7c397c191da6287a78ec19512476a966a7b\"\u003e\u003ccode\u003e1efee7c\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/a34340a053abb475cc226aeb3f71887018e71bd0\"\u003e\u003ccode\u003ea34340a\u003c/code\u003e\u003c/a\u003e 1.1.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/0bcbfc0a5928c3073d48f42999d1ce4fc1c42fbc\"\u003e\u003ccode\u003e0bcbfc0\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/758fcd6d188a95c2342818519c77b8c06794552b\"\u003e\u003ccode\u003e758fcd6\u003c/code\u003e\u003c/a\u003e 1.1.18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/27fbeed22b4fdf2c5f732f66bcf84d43f4a26c6e\"\u003e\u003ccode\u003e27fbeed\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/5c57cc2519dfb067e188b7cb0733fffbd02946bf\"\u003e\u003ccode\u003e5c57cc2\u003c/code\u003e\u003c/a\u003e 1.1.17\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/d757f1dde7808bcbcd7a4628ab913e5185ed3d57\"\u003e\u003ccode\u003ed757f1d\u003c/code\u003e\u003c/a\u003e npm ignore \u003ccode\u003e.claude\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v1.1.12...v1.1.21\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `minimatch` from 3.1.2 to 3.1.5\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/7bba97888a27a6162983056bcce2a6e28f668712\"\u003e\u003ccode\u003e7bba978\u003c/code\u003e\u003c/a\u003e 3.1.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/bd259425b2ca17b42897997f93e890314155522d\"\u003e\u003ccode\u003ebd25942\u003c/code\u003e\u003c/a\u003e docs: add warning about ReDoS\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/1a9c27c75725474dbde57db2995b6281b267756d\"\u003e\u003ccode\u003e1a9c27c\u003c/code\u003e\u003c/a\u003e fix partial matching of globstar patterns\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/1a2e084af579731af66c221214e3ca8222c9bf23\"\u003e\u003ccode\u003e1a2e084\u003c/code\u003e\u003c/a\u003e 3.1.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/ae24656237c3d58067442f790ce17eff84463a47\"\u003e\u003ccode\u003eae24656\u003c/code\u003e\u003c/a\u003e update lockfile\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/b1003749228b2a79e1f237963a0d559ef7a0941e\"\u003e\u003ccode\u003eb100374\u003c/code\u003e\u003c/a\u003e limit recursion for **, improve perf considerably\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/26ffeaa091b9f660833e23f42e07165b33e85c13\"\u003e\u003ccode\u003e26ffeaa\u003c/code\u003e\u003c/a\u003e lockfile update\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/9eca892a4e5dbb20534f9f30483b85cdeee6c2eb\"\u003e\u003ccode\u003e9eca892\u003c/code\u003e\u003c/a\u003e lock node version to 14\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/00c323b188b704e5d4bc534ecec2268cfa70a32a\"\u003e\u003ccode\u003e00c323b\u003c/code\u003e\u003c/a\u003e 3.1.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/30486b2048929264f44d18822891cfffa02af78b\"\u003e\u003ccode\u003e30486b2\u003c/code\u003e\u003c/a\u003e update CI matrix and actions\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/minimatch/compare/v3.1.2...v3.1.5\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `picomatch` from 2.3.1 to 2.3.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/releases\"\u003epicomatch's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.3.2\u003c/h2\u003e\n\u003cp\u003eThis is a security release fixing several security relevant issues.\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: exception when glob pattern contains constructor by \u003ca href=\"https://github.com/Jason3S\"\u003e\u003ccode\u003e@​Jason3S\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003emicromatch/picomatch#144\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\"\u003ehttps://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/blob/master/CHANGELOG.md\"\u003epicomatch's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.3.2 (2026-03-23)\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAvoided an exception when a glob pattern contains \u003ccode\u003econstructor\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003e#144\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/3f4f10e\"\u003e3f4f10e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBackported the extglob-quantifier ReDoS fix from 4.0.4. Risky repeated extglobs are now safely rewritten or treated as literals by default; positive numeric \u003ccode\u003emaxExtglobRecursion\u003c/code\u003e values allow limited nesting, while \u003ccode\u003efalse\u003c/code\u003e disables the safeguard (\u003ca href=\"https://github.com/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/eec17ae\"\u003eeec17ae\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003ePrevented inherited object properties from being interpreted as POSIX character classes (\u003ca href=\"https://github.com/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/fc1f6b6\"\u003efc1f6b6\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/81cba8d4b767cab3cb29d26eb4f691eed75b73b2\"\u003e\u003ccode\u003e81cba8d\u003c/code\u003e\u003c/a\u003e Publish 2.3.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/fc1f6b69006e9435caf8fb40d8aff378bc0b7bce\"\u003e\u003ccode\u003efc1f6b6\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/eec17aee5428a7249e9ca5adbb8a0d28fa29619b\"\u003e\u003ccode\u003eeec17ae\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/78f8ca4362d9e66cadea97b93e292f10096452ed\"\u003e\u003ccode\u003e78f8ca4\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/156\"\u003e#156\u003c/a\u003e from micromatch/backport-144\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/3f4f10eaa65bf3a52e8f2999674cd27e11fa3c9b\"\u003e\u003ccode\u003e3f4f10e\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/144\"\u003e#144\u003c/a\u003e from Jason3S/jdent-object-properties\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `browserslist` from 4.25.1 to 4.29.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/browserslist/browserslist/releases\"\u003ebrowserslist's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.29.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated Firefox ESR.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.29.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed ignoring \u003ccode\u003enull\u003c/code\u003e usage in \u003ccode\u003ecover X in Y\u003c/code\u003e query (by \u003ca href=\"https://github.com/wahidrizka\"\u003e\u003ccode\u003e@​wahidrizka\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.29.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed config name loading protection on Windows (by \u003ca href=\"https://github.com/oss-security-shop\"\u003e\u003ccode\u003e@​oss-security-shop\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed case-insensitive negation queries (by \u003ca href=\"https://github.com/jakezwang\"\u003e\u003ccode\u003e@​jakezwang\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed percentage and supports queries case-insensitive (by \u003ca href=\"https://github.com/wahidrizka\"\u003e\u003ccode\u003e@​wahidrizka\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed old Node.js tests (by \u003ca href=\"https://github.com/aaron-belenky\"\u003e\u003ccode\u003e@​aaron-belenky\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eReduced code (by \u003ca href=\"https://github.com/charmander\"\u003e\u003ccode\u003e@​charmander\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.29.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded query continuations across lines and array entries (by \u003ca href=\"https://github.com/fzlzjerry\"\u003e\u003ccode\u003e@​fzlzjerry\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.9\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImprove \u003ccode\u003eor\u003c/code\u003e parsing performance (by \u003ca href=\"https://github.com/NotAFlightRisk\"\u003e\u003ccode\u003e@​NotAFlightRisk\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eincluding kaios\u003c/code\u003e in baseline queries (by \u003ca href=\"https://github.com/Jaybhade\"\u003e\u003ccode\u003e@​Jaybhade\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.7\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImproved parsing performance.\u003c/li\u003e\n\u003cli\u003eFixed unbounded memory growth (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed prototype write issue (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed Electron version queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003e\u0026gt;\u003c/code\u003e and \u003ccode\u003e\u0026gt;=\u003c/code\u003e queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eSyntaxError\u003c/code\u003e regression of 4.28.3.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed baseline query case-insensitivity (by \u003ca href=\"https://github.com/swwind\"\u003e\u003ccode\u003e@​swwind\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix prototype pollution (by \u003ca href=\"https://github.com/chluo1997\"\u003e\u003ccode\u003e@​chluo1997\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemoved Baseline warning since we have it own warning.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.27.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003eBROWSERSLIST_TRACE_WARNING\u003c/code\u003e environment variable.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.26.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003ethrowOnMissing\u003c/code\u003e with \u003ccode\u003eextends\u003c/code\u003e query (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/browserslist/browserslist/blob/main/CHANGELOG.md\"\u003ebrowserslist's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.29.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated Firefox ESR.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.29.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed ignoring \u003ccode\u003enull\u003c/code\u003e usage in \u003ccode\u003ecover X in Y\u003c/code\u003e query (by \u003ca href=\"https://github.com/wahidrizka\"\u003e\u003ccode\u003e@​wahidrizka\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.29.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed config name loading protection on Windows (by \u003ca href=\"https://github.com/oss-security-shop\"\u003e\u003ccode\u003e@​oss-security-shop\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed case-insensitive negation queries (by \u003ca href=\"https://github.com/jakezwang\"\u003e\u003ccode\u003e@​jakezwang\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed percentage and supports queries case-insensitive (by \u003ca href=\"https://github.com/wahidrizka\"\u003e\u003ccode\u003e@​wahidrizka\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed old Node.js tests (by \u003ca href=\"https://github.com/aaron-belenky\"\u003e\u003ccode\u003e@​aaron-belenky\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eReduced code (by \u003ca href=\"https://github.com/charmander\"\u003e\u003ccode\u003e@​charmander\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.29.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded query continuations across lines and array entries (by \u003ca href=\"https://github.com/fzlzjerry\"\u003e\u003ccode\u003e@​fzlzjerry\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.9\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImproved \u003ccode\u003eor\u003c/code\u003e parsing performance (by \u003ca href=\"https://github.com/NotAFlightRisk\"\u003e\u003ccode\u003e@​NotAFlightRisk\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eincluding kaios\u003c/code\u003e in baseline queries (by \u003ca href=\"https://github.com/Jaybhade\"\u003e\u003ccode\u003e@​Jaybhade\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.7\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImproved parsing performance.\u003c/li\u003e\n\u003cli\u003eFixed unbounded memory growth (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed prototype write issue (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed Electron version queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003e\u0026gt;\u003c/code\u003e and \u003ccode\u003e\u0026gt;=\u003c/code\u003e queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eSyntaxError\u003c/code\u003e regression of 4.28.3.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed baseline query case-insensitivity (by \u003ca href=\"https://github.com/swwind\"\u003e\u003ccode\u003e@​swwind\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/b4809dd2a2a11fbff492258f968130e9b470067f\"\u003e\u003ccode\u003eb4809dd\u003c/code\u003e\u003c/a\u003e Release 4.29.3 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/9d844f8d09c872e2f22e07daa8566fb53585c190\"\u003e\u003ccode\u003e9d844f8\u003c/code\u003e\u003c/a\u003e Update Firefox ESR\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/0033f344c3be446c935f9e515a366738fc0942a5\"\u003e\u003ccode\u003e0033f34\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/906d329968d968479474aab97ae2ab712bf18b5f\"\u003e\u003ccode\u003e906d329\u003c/code\u003e\u003c/a\u003e Release 4.29.2 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/ff8c83f72dd22e3331e89404487a19ec4ea6d5fc\"\u003e\u003ccode\u003eff8c83f\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/067f4a1fa37047e8a53b369cb1fd837399f5d5d5\"\u003e\u003ccode\u003e067f4a1\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/browserslist/browserslist/issues/952\"\u003e#952\u003c/a\u003e from wahidrizka/fix-cover-null-usage\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/f760921db5e420bd8c10e31d0278ab16fdbb9a2d\"\u003e\u003ccode\u003ef760921\u003c/code\u003e\u003c/a\u003e Do not add versions without usage data to cover queries\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/5be63f54fc37cef2db22930bdabfafcb22b6fd46\"\u003e\u003ccode\u003e5be63f5\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/browserslist/browserslist/issues/953\"\u003e#953\u003c/a\u003e from wahidrizka/docs-android-latest-version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/1e5356f16429cb8a30dfa5415c7d0beddff8548f\"\u003e\u003ccode\u003e1e5356f\u003c/code\u003e\u003c/a\u003e Note that Android version queries return only the latest version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/5b7e94169750cedd9e63fdb8d2419542d3aa185f\"\u003e\u003ccode\u003e5b7e941\u003c/code\u003e\u003c/a\u003e Add missed changes to ChangeLog\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/browserslist/browserslist/compare/4.25.1...4.29.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for browserslist since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `esbuild` from 0.21.5 to 0.25.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/evanw/esbuild/releases\"\u003eesbuild's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev0.25.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eThis release deliberately contains backwards-incompatible changes.\u003c/strong\u003e To avoid automatically picking up releases like this, you should either be pinning the exact version of \u003ccode\u003eesbuild\u003c/code\u003e in your \u003ccode\u003epackage.json\u003c/code\u003e file (recommended) or be using a version range syntax that only accepts patch upgrades such as \u003ccode\u003e^0.24.0\u003c/code\u003e or \u003ccode\u003e~0.24.0\u003c/code\u003e. See npm's documentation about \u003ca href=\"https://docs.npmjs.com/cli/v6/using-npm/semver/\"\u003esemver\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eRestrict access to esbuild's development server (\u003ca href=\"https://github.com/evanw/esbuild/security/advisories/GHSA-67mh-4wv8-2f99\"\u003eGHSA-67mh-4wv8-2f99\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eThis change addresses esbuild's first security vulnerability report. Previously esbuild set the \u003ccode\u003eAccess-Control-Allow-Origin\u003c/code\u003e header to \u003ccode\u003e*\u003c/code\u003e to allow esbuild's development server to be flexible in how it's used for development. However, this allows the websites you visit to make HTTP requests to esbuild's local development server, which gives read-only access to your source code if the website were to fetch your source code's specific URL. You can read more information in \u003ca href=\"https://github.com/evanw/esbuild/security/advisories/GHSA-67mh-4wv8-2f99\"\u003ethe report\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003eStarting with this release, \u003ca href=\"https://developer.mozilla.org/en-US/docs/Web/HTTP/CORS\"\u003eCORS\u003c/a\u003e will now be disabled, and requests will now be denied if the host does not match the one provided to \u003ccode\u003e--serve=\u003c/code\u003e. The default host is \u003ccode\u003e0.0.0.0\u003c/code\u003e, which refers to all of the IP addresses that represent the local machine (e.g. both \u003ccode\u003e127.0.0.1\u003c/code\u003e and \u003ccode\u003e192.168.0.1\u003c/code\u003e). If you want to customize anything about esbuild's development server, you can \u003ca href=\"https://esbuild.github.io/api/#serve-proxy\"\u003eput a proxy in front of esbuild\u003c/a\u003e and modify the incoming and/or outgoing requests.\u003c/p\u003e\n\u003cp\u003eIn addition, the \u003ccode\u003eserve()\u003c/code\u003e API call has been changed to return an array of \u003ccode\u003ehosts\u003c/code\u003e instead of a single \u003ccode\u003ehost\u003c/code\u003e string. This makes it possible to determine all of the hosts that esbuild's development server will accept.\u003c/p\u003e\n\u003cp\u003eThanks to \u003ca href=\"https://github.com/sapphi-red\"\u003e\u003ccode\u003e@​sapphi-red\u003c/code\u003e\u003c/a\u003e for reporting this issue.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDelete output files when a build fails in watch mode (\u003ca href=\"https://redirect.github.com/evanw/esbuild/issues/3643\"\u003e#3643\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eIt has been requested for esbuild to delete files when a build fails in watch mode. Previously esbuild left the old files in place, which could cause people to not immediately realize that the most recent build failed. With this release, esbuild will now delete all output files if a rebuild fails. Fixing the build error and triggering another rebuild will restore all output files again.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eFix correctness issues with the CSS nesting transform (\u003ca href=\"https://redirect.github.com/evanw/esbuild/issues/3620\"\u003e#3620\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/evanw/esbuild/issues/3877\"\u003e#3877\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/evanw/esbuild/issues/3933\"\u003e#3933\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/evanw/esbuild/issues/3997\"\u003e#3997\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/evanw/esbuild/issues/4005\"\u003e#4005\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/evanw/esbuild/pull/4037\"\u003e#4037\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/evanw/esbuild/pull/4038\"\u003e#4038\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eThis release fixes the following problems:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eNaive expansion of CSS nesting can result in an exponential blow-up...\n\n_Description has been truncated_","html_url":"https://github.com/Rikufeim/crypto-live-tracker/pull/1","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/Rikufeim%2Fcrypto-live-tracker/issues/1","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/1/packages"}},{"old_version":"11.1.0","new_version":"13.0.6","update_type":"major","path":null,"pr_created_at":"2026-09-30T18:13:56.000Z","version_change":"11.1.0 → 13.0.6","issue":{"uuid":"5650980711","node_id":"PR_kwDOEq5pls8AAAABF805Sg","number":2556,"state":"open","title":"chore(deps): Bump glob from 11.1.0 to 13.0.6","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-30T18:13:56.000Z","updated_at":"2026-09-30T18:19:14.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): Bump","packages":[{"name":"glob","old_version":"11.1.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"}],"path":null,"ecosystem":"npm"},"body":"Bumps [glob](https://github.com/isaacs/node-glob) from 11.1.0 to 13.0.6.\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-glob/blob/main/changelog.md\"\u003eglob's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003echangeglob\u003c/h1\u003e\n\u003ch2\u003e13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMove the CLI program out to a separate package, \u003ccode\u003eglob-bin\u003c/code\u003e.\nInstall that if you'd like to continue using glob from the\ncommand line.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove the unsafe \u003ccode\u003e--shell\u003c/code\u003e option. The \u003ccode\u003e--shell\u003c/code\u003e option is now\nONLY supported on known shells where the behavior can be\nimplemented safely.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.1\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/isaacs/node-glob/security/advisories/GHSA-5j98-mcp5-4vw2\"\u003eGHSA-5j98-mcp5-4vw2\u003c/a\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--shell\u003c/code\u003e option for the command line, with a warning\nthat this is unsafe. (It will be removed in v12.)\u003c/li\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--cmd-arg\u003c/code\u003e/\u003ccode\u003e-g\u003c/code\u003e as a way to \u003cem\u003esafely\u003c/em\u003e add positional\narguments to the command provided to the CLI tool.\u003c/li\u003e\n\u003cli\u003eDetect commands with space or quote characters on known shells,\nand pass positional arguments to them safely, avoiding\n\u003ccode\u003eshell:true\u003c/code\u003e execution.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node before v20\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eincludeChildMatches: false\u003c/code\u003e option\u003c/li\u003e\n\u003cli\u003eExport the \u003ccode\u003eIgnore\u003c/code\u003e class\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e--default -p\u003c/code\u003e flag to provide a default pattern\u003c/li\u003e\n\u003cli\u003eexclude symbolic links to directories when \u003ccode\u003efollow\u003c/code\u003e and \u003ccode\u003enodir\u003c/code\u003e\nare both set\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd glob cli\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReturn \u003ccode\u003e'.'\u003c/code\u003e instead of the empty string \u003ccode\u003e''\u003c/code\u003e when the current\nworking directory is returned as a match.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eposix: true\u003c/code\u003e option to return \u003ccode\u003e/\u003c/code\u003e delimited paths, even on\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/e80cb38ae60d6cbff9e75f39032a994858994d35\"\u003e\u003ccode\u003ee80cb38\u003c/code\u003e\u003c/a\u003e 13.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/9cdbbfff75c64fb158c8842d4d0eb3e908676a41\"\u003e\u003ccode\u003e9cdbbff\u003c/code\u003e\u003c/a\u003e revert tsgo, not ready for test coverage correctness yet\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/89c99ba8e276438b8e31ce878b63186e2cd375b4\"\u003e\u003ccode\u003e89c99ba\u003c/code\u003e\u003c/a\u003e use tsgo compiler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/b7275d54f294174607f544acf07cc7ec526b7878\"\u003e\u003ccode\u003eb7275d5\u003c/code\u003e\u003c/a\u003e update deps, expand engines to include node 18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/942e360a669e0c378c0abd261e7d329ca2cee661\"\u003e\u003ccode\u003e942e360\u003c/code\u003e\u003c/a\u003e update workflows, pull taprc out of package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/4a0d53c7531f3f0df97f9e4d26c78489e7f6d7ef\"\u003e\u003ccode\u003e4a0d53c\u003c/code\u003e\u003c/a\u003e update tap for mockImport bugfix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/ef94ad2696c12129628208cf4e38575e7240c1c4\"\u003e\u003ccode\u003eef94ad2\u003c/code\u003e\u003c/a\u003e update tap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/180c2d43cb135f134c0c5446408dc107c79a5a9b\"\u003e\u003ccode\u003e180c2d4\u003c/code\u003e\u003c/a\u003e update docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/37993c86faddcb780458b2d7ae3c2ead7a84bf31\"\u003e\u003ccode\u003e37993c8\u003c/code\u003e\u003c/a\u003e remove stray console.error in test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/03ae4c244cac6331817158b0bc12effd30deeb43\"\u003e\u003ccode\u003e03ae4c2\u003c/code\u003e\u003c/a\u003e 13.0.5\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v11.1.0...v13.0.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~isaacs\"\u003eisaacs\u003c/a\u003e, a new releaser for glob since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=glob\u0026package-manager=npm_and_yarn\u0026previous-version=11.1.0\u0026new-version=13.0.6)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/wpengine/faustjs/pull/2556","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/wpengine%2Ffaustjs/issues/2556","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/2556/packages"}},{"old_version":"10.3.14","new_version":"10.5.0","update_type":"minor","path":null,"pr_created_at":"2026-09-29T14:04:50.000Z","version_change":"10.3.14 → 10.5.0","issue":{"uuid":"5631838484","node_id":"PR_kwDOT2oxf88AAAABFthBgQ","number":1,"state":"open","title":"ci(deps): bump the npm_and_yarn group across 1 directory with 15 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-29T14:04:50.000Z","updated_at":"2026-09-29T14:05:00.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"ci(deps): bump","group_name":"npm_and_yarn","update_count":15,"packages":[{"name":"@babel/core","old_version":"7.28.0","new_version":"7.29.7","repository_url":"https://github.com/babel/babel"},{"name":"@humanfs/node","old_version":"0.16.6","new_version":"0.16.8","repository_url":"https://github.com/humanwhocodes/humanfs"},{"name":"@isaacs/brace-expansion","old_version":"5.0.0","new_version":"5.0.1"},{"name":"@sigstore/core","old_version":"2.0.0","new_version":"3.2.1","repository_url":"https://github.com/sigstore/sigstore-js"},{"name":"brace-expansion","old_version":"1.1.11","new_version":"1.1.21","repository_url":"https://github.com/juliangruber/brace-expansion"},{"name":"flatted","old_version":"3.3.1","new_version":"3.4.4","repository_url":"https://github.com/WebReflection/flatted"},{"name":"glob","old_version":"10.3.14","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"},{"name":"handlebars","old_version":"4.7.8","new_version":"4.7.9","repository_url":"https://github.com/handlebars-lang/handlebars.js"},{"name":"ip-address","old_version":"9.0.5","new_version":"10.5.0","repository_url":"https://github.com/beaugunderson/ip-address"},{"name":"js-yaml","old_version":"3.14.1","new_version":"3.15.2","repository_url":"https://github.com/nodeca/js-yaml"},{"name":"lodash","old_version":"4.17.21","new_version":"4.18.1","repository_url":"https://github.com/lodash/lodash"},{"name":"minimatch","old_version":"3.1.2","new_version":"3.1.5","repository_url":"https://github.com/isaacs/minimatch"},{"name":"picomatch","old_version":"2.3.1","new_version":"2.3.2","repository_url":"https://github.com/micromatch/picomatch"},{"name":"sigstore","old_version":"3.1.0","new_version":"4.1.1","repository_url":"https://github.com/sigstore/sigstore-js"},{"name":"tar","old_version":"6.2.1","new_version":"7.5.22","repository_url":"https://github.com/isaacs/node-tar"}],"path":null,"ecosystem":"npm"},"body":"Bumps the npm_and_yarn group with 15 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@babel/core](https://github.com/babel/babel/tree/HEAD/packages/babel-core) | `7.28.0` | `7.29.7` |\n| [@humanfs/node](https://github.com/humanwhocodes/humanfs/tree/HEAD/packages/node) | `0.16.6` | `0.16.8` |\n| @isaacs/brace-expansion | `5.0.0` | `5.0.1` |\n| [@sigstore/core](https://github.com/sigstore/sigstore-js) | `2.0.0` | `3.2.1` |\n| [brace-expansion](https://github.com/juliangruber/brace-expansion) | `1.1.11` | `1.1.21` |\n| [flatted](https://github.com/WebReflection/flatted) | `3.3.1` | `3.4.4` |\n| [glob](https://github.com/isaacs/node-glob) | `10.3.14` | `10.5.0` |\n| [handlebars](https://github.com/handlebars-lang/handlebars.js) | `4.7.8` | `4.7.9` |\n| [ip-address](https://github.com/beaugunderson/ip-address) | `9.0.5` | `10.5.0` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `3.14.1` | `3.15.2` |\n| [lodash](https://github.com/lodash/lodash) | `4.17.21` | `4.18.1` |\n| [minimatch](https://github.com/isaacs/minimatch) | `3.1.2` | `3.1.5` |\n| [picomatch](https://github.com/micromatch/picomatch) | `2.3.1` | `2.3.2` |\n| [sigstore](https://github.com/sigstore/sigstore-js) | `3.1.0` | `4.1.1` |\n| [tar](https://github.com/isaacs/node-tar) | `6.2.1` | `7.5.22` |\n\n\nUpdates `@babel/core` from 7.28.0 to 7.29.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/babel/babel/releases\"\u003e@​babel/core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.29.7 (2026-05-25)\u003c/h2\u003e\n\u003cp\u003eRe-release all packages with npm provenance attestations\u003c/p\u003e\n\u003ch2\u003ev7.29.6 (2026-05-25)\u003c/h2\u003e\n\u003ch4\u003e:bug: Bug Fix\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-generator\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/18014\"\u003e#18014\u003c/a\u003e Catchup source map position in preserveFormat (\u003ca href=\"https://github.com/nicolo-ribaudo\"\u003e\u003ccode\u003e@​nicolo-ribaudo\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-core\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/18001\"\u003e#18001\u003c/a\u003e [7.x packport]Improve input source map handling (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-core\u003c/code\u003e, \u003ccode\u003ebabel-generator\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17998\"\u003e#17998\u003c/a\u003e Preserve original identifier names from input sourcemaps (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/17992\"\u003e#17992\u003c/a\u003e) (\u003ca href=\"https://github.com/Andarist\"\u003e\u003ccode\u003e@​Andarist\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCommitters: 3\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eHuáng Jùnliàng (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eMateusz Burzyński (\u003ca href=\"https://github.com/Andarist\"\u003e\u003ccode\u003e@​Andarist\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eNicolò Ribaudo (\u003ca href=\"https://github.com/nicolo-ribaudo\"\u003e\u003ccode\u003e@​nicolo-ribaudo\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.29.5 (2026-05-05)\u003c/h2\u003e\n\u003ch4\u003e:house:  Internal\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-preset-env\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate \u003ccode\u003e@babel/*\u003c/code\u003e dependencies\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.29.4 (2026-05-05)\u003c/h2\u003e\n\u003ch4\u003e:bug: Bug Fix\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-plugin-transform-modules-systemjs\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17974\"\u003e#17974\u003c/a\u003e [7.x backport]fix(systemjs): improve module string name support (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCommitters: 1\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eHuáng Jùnliàng (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.29.3 (2026-04-30)\u003c/h2\u003e\n\u003ch4\u003e:eyeglasses: Spec Compliance\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-parser\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17923\"\u003e#17923\u003c/a\u003e Support flow extends bound (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003e:bug: Bug Fix\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-helper-create-class-features-plugin\u003c/code\u003e, \u003ccode\u003ebabel-plugin-proposal-decorators\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17931\"\u003e#17931\u003c/a\u003e fix(decorators): replace super within all removed static elements (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-register\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17915\"\u003e#17915\u003c/a\u003e Fix thread synchronization issues in \u003ccode\u003e@babel/register\u003c/code\u003e (\u003ca href=\"https://github.com/liuxingbaoyu\"\u003e\u003ccode\u003e@​liuxingbaoyu\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-compat-data\u003c/code\u003e, \u003ccode\u003ebabel-plugin-bugfix-safari-rest-destructuring-rhs-array\u003c/code\u003e, \u003ccode\u003ebabel-preset-env\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17788\"\u003e#17788\u003c/a\u003e Add bugfix plugin for Safari array rest destructuring bug (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003e:nail_care: Polish\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-parser\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/4fba7541180bf5f58256d8e358b544e3831ad090\"\u003e\u003ccode\u003e4fba754\u003c/code\u003e\u003c/a\u003e v7.29.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/04ea6b27fdac8f40c3481aec2080ac9678779509\"\u003e\u003ccode\u003e04ea6b2\u003c/code\u003e\u003c/a\u003e v7.29.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/99f498a9b9fa0b900d603fbe8f6601bb3b9e42bb\"\u003e\u003ccode\u003e99f498a\u003c/code\u003e\u003c/a\u003e [7.x packport]Improve input source map handling (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/18001\"\u003e#18001\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/feba0a3654c596bd369d1ef1231f5d56666d56dc\"\u003e\u003ccode\u003efeba0a3\u003c/code\u003e\u003c/a\u003e Preserve original identifier names from input sourcemaps (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/17992\"\u003e#17992\u003c/a\u003e) (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/17998\"\u003e#17998\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/aa8394e454337d118ac3d40bfa3ee1a3cb3f3ed2\"\u003e\u003ccode\u003eaa8394e\u003c/code\u003e\u003c/a\u003e v7.29.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/ad0d03f0c92404a60ec6b1c12f15febd38e2397a\"\u003e\u003ccode\u003ead0d03f\u003c/code\u003e\u003c/a\u003e [7.x backport] feat: Allow specifying startLine in code frame (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/17739\"\u003e#17739\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/d7f400889567ae18ef9ac41b024b5120f6060e17\"\u003e\u003ccode\u003ed7f4008\u003c/code\u003e\u003c/a\u003e v7.28.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/e130225028e93e106135586f344cfa44c4aac847\"\u003e\u003ccode\u003ee130225\u003c/code\u003e\u003c/a\u003e Polish(standalone): improve message on invalid preset/plugin (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/17606\"\u003e#17606\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/99dcba5e71de3bd81ce14077cfa5b6df58e9b177\"\u003e\u003ccode\u003e99dcba5\u003c/code\u003e\u003c/a\u003e chore: enable some ts-eslint rules (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/17592\"\u003e#17592\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/c92c4919771105140015167f25f7bacac77c90d9\"\u003e\u003ccode\u003ec92c491\u003c/code\u003e\u003c/a\u003e Improve Unicode handling in code-frame tokenizer (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-core/issues/17589\"\u003e#17589\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/babel/babel/commits/v7.29.7/packages/babel-core\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​babel/core\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@humanfs/node` from 0.16.6 to 0.16.8\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/humanwhocodes/humanfs/releases\"\u003e@​humanfs/node's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003enode: v0.16.8\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/compare/node-v0.16.7...node-v0.16.8\"\u003e0.16.8\u003c/a\u003e (2026-04-17)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eInclude type dependencies at runtime (\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/956ce7aac2a998d0af23b7cb08e7630b69693138\"\u003e956ce7a\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/humanwhocodes/humanfs/issues/145\"\u003e#145\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe following workspace dependencies were updated\n\u003cul\u003e\n\u003cli\u003edependencies\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​humanfs/core\u003c/code\u003e bumped from ^0.19.1 to ^0.19.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003enode: v0.16.7\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/compare/node-v0.16.6...node-v0.16.7\"\u003e0.16.7\u003c/a\u003e (2024-11-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdd directory to package.json (\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/f691b60a0df2ce9a5894b6af51acc2461654cf6b\"\u003ef691b60\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/humanwhocodes/humanfs/blob/main/packages/node/CHANGELOG.md\"\u003e@​humanfs/node's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/compare/node-v0.16.7...node-v0.16.8\"\u003e0.16.8\u003c/a\u003e (2026-04-17)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eEnsure symlinks are copied as symlinks in \u003ccode\u003ecopy()\u003c/code\u003e and \u003ccode\u003ecopyAll()\u003c/code\u003e (\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/22bbaa4487a3e6c1197ca619840de4615d0c3404\"\u003e22bbaa44\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eInclude type dependencies at runtime (\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/956ce7aac2a998d0af23b7cb08e7630b69693138\"\u003e956ce7a\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/humanwhocodes/humanfs/issues/145\"\u003e#145\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe following workspace dependencies were updated\n\u003cul\u003e\n\u003cli\u003edependencies\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​humanfs/core\u003c/code\u003e bumped from ^0.19.1 to ^0.19.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/compare/node-v0.16.6...node-v0.16.7\"\u003e0.16.7\u003c/a\u003e (2024-11-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdd directory to package.json (\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/f691b60a0df2ce9a5894b6af51acc2461654cf6b\"\u003ef691b60\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/e96070e897f017ae8abd2b0676d98d14e49665cc\"\u003e\u003ccode\u003ee96070e\u003c/code\u003e\u003c/a\u003e chore: release main (\u003ca href=\"https://github.com/humanwhocodes/humanfs/tree/HEAD/packages/node/issues/146\"\u003e#146\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/22bbaa4487a3e6c1197ca619840de4615d0c3404\"\u003e\u003ccode\u003e22bbaa4\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/956ce7aac2a998d0af23b7cb08e7630b69693138\"\u003e\u003ccode\u003e956ce7a\u003c/code\u003e\u003c/a\u003e fix: Include type dependencies at runtime\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/257b7b53eb2800daca06453ea385f9f2a098fcb9\"\u003e\u003ccode\u003e257b7b5\u003c/code\u003e\u003c/a\u003e chore: release main (\u003ca href=\"https://github.com/humanwhocodes/humanfs/tree/HEAD/packages/node/issues/142\"\u003e#142\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/f691b60a0df2ce9a5894b6af51acc2461654cf6b\"\u003e\u003ccode\u003ef691b60\u003c/code\u003e\u003c/a\u003e fix: Add directory to package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/humanwhocodes/humanfs/commit/7b81d9accf36bed41883e5e0c2eaaefce8c15fee\"\u003e\u003ccode\u003e7b81d9a\u003c/code\u003e\u003c/a\u003e chore(deps): Upgrading retry dependency in node package. (\u003ca href=\"https://github.com/humanwhocodes/humanfs/tree/HEAD/packages/node/issues/140\"\u003e#140\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/humanwhocodes/humanfs/commits/node-v0.16.8/packages/node\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@isaacs/brace-expansion` from 5.0.0 to 5.0.1\n\nUpdates `@sigstore/core` from 2.0.0 to 3.2.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/sigstore/sigstore-js/releases\"\u003e@​sigstore/core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.2.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eb5aa4f1: Apply UTF-8 encoding to payload type during PAE calculation\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.2.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e8f736ef: Update the \u003ccode\u003ecreatePublicKey\u003c/code\u003e function to support base64-encoded keys\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.0\u003c/h2\u003e\n\u003ch3\u003eMajor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e383e200: Drop support for node 18\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c1dc7d4778a450787fc72b083f2490ad02b714c6\"\u003e\u003ccode\u003ec1dc7d4\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1607\"\u003e#1607\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/f074710a91ea9260a9ac2142345634579843a3cd\"\u003e\u003ccode\u003ef074710\u003c/code\u003e\u003c/a\u003e reject integratedTime w/o inclusionPromise (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1659\"\u003e#1659\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/7845532f9d17f6f765363dbee82b01bd159fb52b\"\u003e\u003ccode\u003e7845532\u003c/code\u003e\u003c/a\u003e OID certificate extension verification (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1658\"\u003e#1658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/b5aa4f1f8d2db0a9dfa6430fb114d9c2f1c304f7\"\u003e\u003ccode\u003eb5aa4f1\u003c/code\u003e\u003c/a\u003e proper utf-8 encoding in DSSE PAE (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1657\"\u003e#1657\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c7a34e0e9514f4573f8daf980c0987a4120a7183\"\u003e\u003ccode\u003ec7a34e0\u003c/code\u003e\u003c/a\u003e clarify cert ID matching (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1656\"\u003e#1656\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/9858bd7fc535ff01755c8dd5842ef7171b0fafeb\"\u003e\u003ccode\u003e9858bd7\u003c/code\u003e\u003c/a\u003e Upgrade TypeScript to 6.x (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1655\"\u003e#1655\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/8cef20d0069abd3ff03f2afb9ca320a76ddf6d4b\"\u003e\u003ccode\u003e8cef20d\u003c/code\u003e\u003c/a\u003e bump qs from 6.15.1 to 6.15.2 (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1654\"\u003e#1654\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/aca341b56aa561af4d74ad07fda4acd12c417beb\"\u003e\u003ccode\u003eaca341b\u003c/code\u003e\u003c/a\u003e bump \u003ccode\u003e@​sigstore/mock\u003c/code\u003e deps (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1653\"\u003e#1653\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/0855acac119ae9f9dc21413356ce36eade2a51f8\"\u003e\u003ccode\u003e0855aca\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1652\"\u003e#1652\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/44a374d63107b25d11f880a8427e2e27d45965d8\"\u003e\u003ccode\u003e44a374d\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1650\"\u003e#1650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/sigstore/sigstore-js/compare/@sigstore/core@2.0.0...@sigstore/core@3.2.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​sigstore/core\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `brace-expansion` from 1.1.11 to 1.1.21\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/juliangruber/brace-expansion/releases\"\u003ebrace-expansion's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.1.15\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBackport v5.0.6 change to v1 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/111\"\u003e#111\u003c/a\u003e)  0b09384\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v1.1.14...v1.1.15\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v1.1.14...v1.1.15\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev1.1.12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003epkg: publish on tag 1.x  c460dbd\u003c/li\u003e\n\u003cli\u003efmt  ccb8ac6\u003c/li\u003e\n\u003cli\u003eFix potential ReDoS Vulnerability or Inefficient Regular Expression (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/65\"\u003e#65\u003c/a\u003e)  c3c73c8\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v1.1.11...v1.1.12\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v1.1.11...v1.1.12\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/8e81e187b6e9c6c723d16c042657c00acefc2483\"\u003e\u003ccode\u003e8e81e18\u003c/code\u003e\u003c/a\u003e 1.1.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/ffdfa3e3806bed17c0874b8f1439b084de354a7e\"\u003e\u003ccode\u003effdfa3e\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/c6513ad31e08edb56dc414a629e39cba724b7548\"\u003e\u003ccode\u003ec6513ad\u003c/code\u003e\u003c/a\u003e 1.1.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1efee7c397c191da6287a78ec19512476a966a7b\"\u003e\u003ccode\u003e1efee7c\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/a34340a053abb475cc226aeb3f71887018e71bd0\"\u003e\u003ccode\u003ea34340a\u003c/code\u003e\u003c/a\u003e 1.1.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/0bcbfc0a5928c3073d48f42999d1ce4fc1c42fbc\"\u003e\u003ccode\u003e0bcbfc0\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/758fcd6d188a95c2342818519c77b8c06794552b\"\u003e\u003ccode\u003e758fcd6\u003c/code\u003e\u003c/a\u003e 1.1.18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/27fbeed22b4fdf2c5f732f66bcf84d43f4a26c6e\"\u003e\u003ccode\u003e27fbeed\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/5c57cc2519dfb067e188b7cb0733fffbd02946bf\"\u003e\u003ccode\u003e5c57cc2\u003c/code\u003e\u003c/a\u003e 1.1.17\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/d757f1dde7808bcbcd7a4628ab913e5185ed3d57\"\u003e\u003ccode\u003ed757f1d\u003c/code\u003e\u003c/a\u003e npm ignore \u003ccode\u003e.claude\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/1.1.11...v1.1.21\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `flatted` from 3.3.1 to 3.4.4\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/e6f5ca700c4ca8104a6a83472c8219e267bd5e84\"\u003e\u003ccode\u003ee6f5ca7\u003c/code\u003e\u003c/a\u003e 3.4.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/47f14fac0b1a41989f216b0cda4c50596ca339f6\"\u003e\u003ccode\u003e47f14fa\u003c/code\u003e\u003c/a\u003e removed E_STRICT from PHP\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/40505688464c49fe6374e7bc4cdd9bd2e9e6f330\"\u003e\u003ccode\u003e4050568\u003c/code\u003e\u003c/a\u003e fixced go-lang issues in CI\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/4303f4db38ba0ba8d5e2ed6e9689cefc74c46b63\"\u003e\u003ccode\u003e4303f4d\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/WebReflection/flatted/issues/101\"\u003e#101\u003c/a\u003e from mfinelli/gocriticfixes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/106735b609c15df51539a0d7c0a270182efd904c\"\u003e\u003ccode\u003e106735b\u003c/code\u003e\u003c/a\u003e updated package-lock.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/670a1bdf9dcfba02111c3034294366f10696fb53\"\u003e\u003ccode\u003e670a1bd\u003c/code\u003e\u003c/a\u003e 3.4.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/50a61a90ea5ca64c114f0aa040ad127e3a97feff\"\u003e\u003ccode\u003e50a61a9\u003c/code\u003e\u003c/a\u003e Fix \u003ca href=\"https://redirect.github.com/WebReflection/flatted/issues/104\"\u003e#104\u003c/a\u003e - allow \u003ccode\u003enull\u003c/code\u003e as replacer value\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/8aa64f460cf0c4dac9cc214c831aade28f8f2c6e\"\u003e\u003ccode\u003e8aa64f4\u003c/code\u003e\u003c/a\u003e solved crytical errors over dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/b85577f39ff85959d02e8862cc0dde8114b43762\"\u003e\u003ccode\u003eb85577f\u003c/code\u003e\u003c/a\u003e Fix go-critic errors\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WebReflection/flatted/commit/bb8c63cea5befd4315519cb4458c6fc07bb9cf7b\"\u003e\u003ccode\u003ebb8c63c\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/WebReflection/flatted/issues/100\"\u003e#100\u003c/a\u003e from WebReflection/WebReflection-patch-1\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/WebReflection/flatted/compare/v3.3.1...v3.4.4\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `glob` from 10.3.14 to 10.5.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-glob/blob/main/changelog.md\"\u003eglob's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003echangeglob\u003c/h1\u003e\n\u003ch2\u003e13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMove the CLI program out to a separate package, \u003ccode\u003eglob-bin\u003c/code\u003e.\nInstall that if you'd like to continue using glob from the\ncommand line.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove the unsafe \u003ccode\u003e--shell\u003c/code\u003e option. The \u003ccode\u003e--shell\u003c/code\u003e option is now\nONLY supported on known shells where the behavior can be\nimplemented safely.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.1\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/isaacs/node-glob/security/advisories/GHSA-5j98-mcp5-4vw2\"\u003eGHSA-5j98-mcp5-4vw2\u003c/a\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--shell\u003c/code\u003e option for the command line, with a warning\nthat this is unsafe. (It will be removed in v12.)\u003c/li\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--cmd-arg\u003c/code\u003e/\u003ccode\u003e-g\u003c/code\u003e as a way to \u003cem\u003esafely\u003c/em\u003e add positional\narguments to the command provided to the CLI tool.\u003c/li\u003e\n\u003cli\u003eDetect commands with space or quote characters on known shells,\nand pass positional arguments to them safely, avoiding\n\u003ccode\u003eshell:true\u003c/code\u003e execution.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node before v20\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eincludeChildMatches: false\u003c/code\u003e option\u003c/li\u003e\n\u003cli\u003eExport the \u003ccode\u003eIgnore\u003c/code\u003e class\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e--default -p\u003c/code\u003e flag to provide a default pattern\u003c/li\u003e\n\u003cli\u003eexclude symbolic links to directories when \u003ccode\u003efollow\u003c/code\u003e and \u003ccode\u003enodir\u003c/code\u003e\nare both set\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd glob cli\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReturn \u003ccode\u003e'.'\u003c/code\u003e instead of the empty string \u003ccode\u003e''\u003c/code\u003e when the current\nworking directory is returned as a match.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eposix: true\u003c/code\u003e option to return \u003ccode\u003e/\u003c/code\u003e delimited paths, even on\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1f0c1ca01a5f256cd17f543f83e9aaeedd133939\"\u003e\u003ccode\u003e1f0c1ca\u003c/code\u003e\u003c/a\u003e 10.4.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/eaf31dcb144750a19842a8319c330d021d4c4d5f\"\u003e\u003ccode\u003eeaf31dc\u003c/code\u003e\u003c/a\u003e whatever, just allow any engines\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/78275168e1bbc7a61e372af1ba58307c27faf0cb\"\u003e\u003ccode\u003e7827516\u003c/code\u003e\u003c/a\u003e 10.4.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/d06c8f8c8288c89a4892f4ebcc23ca21840aa4a1\"\u003e\u003ccode\u003ed06c8f8\u003c/code\u003e\u003c/a\u003e restore support for node 14.latest and 16.latest\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/c14b787771f269651f27f6207aaf410fe171f0b6\"\u003e\u003ccode\u003ec14b787\u003c/code\u003e\u003c/a\u003e 10.4.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/8a69def3cad0de9ba26ca831065ffe448d153de3\"\u003e\u003ccode\u003e8a69def\u003c/code\u003e\u003c/a\u003e node 14 no longer supported\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/eef7ea35afe511079c5bf83862ed57ece2bbf7fa\"\u003e\u003ccode\u003eeef7ea3\u003c/code\u003e\u003c/a\u003e 10.4.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/c76a7d255c74133ed33dd7aa965598316d12dd25\"\u003e\u003ccode\u003ec76a7d2\u003c/code\u003e\u003c/a\u003e use package-json-from-dist to look up package.json\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.3.14...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `handlebars` from 4.7.8 to 4.7.9\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/handlebars-lang/handlebars.js/releases\"\u003ehandlebars's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.7.9\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: enable shell mode for spawn to resolve Windows EINVAL issue - e0137c2\u003c/li\u003e\n\u003cli\u003efix type \u0026quot;RuntimeOptions\u0026quot; also accepting string partials - eab1d14\u003c/li\u003e\n\u003cli\u003efeat(types): set \u003ccode\u003ehash\u003c/code\u003e to be a \u003ccode\u003eRecord\u0026lt;string, any\u0026gt;\u003c/code\u003e - de4414d\u003c/li\u003e\n\u003cli\u003efix non-contiguous program indices - 4512766\u003c/li\u003e\n\u003cli\u003erefactor: rename i to startPartIndex - e497a35\u003c/li\u003e\n\u003cli\u003esecurity: fix security issues - 68d8df5\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-2w6w-674q-4c4q\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-2w6w-674q-4c4q\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-3mfm-83xf-c92r\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-3mfm-83xf-c92r\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-xhpv-hc6g-r9c6\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-xhpv-hc6g-r9c6\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-xjpj-3mr7-gcpf\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-xjpj-3mr7-gcpf\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-9cx6-37pm-9jff\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-9cx6-37pm-9jff\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-2qvq-rjwj-gvw9\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-2qvq-rjwj-gvw9\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-7rx3-28cr-v5wh\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-7rx3-28cr-v5wh\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-442j-39wm-28r2\"\u003ehttps://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-442j-39wm-28r2\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/compare/v4.7.8...v4.7.9\"\u003eCommits\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/handlebars-lang/handlebars.js/blob/v4.7.9/release-notes.md\"\u003ehandlebars's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.7.9 - March 26th, 2026\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: enable shell mode for spawn to resolve Windows EINVAL issue - e0137c2\u003c/li\u003e\n\u003cli\u003efix type \u0026quot;RuntimeOptions\u0026quot; also accepting string partials - eab1d14\u003c/li\u003e\n\u003cli\u003efeat(types): set \u003ccode\u003ehash\u003c/code\u003e to be a \u003ccode\u003eRecord\u0026lt;string, any\u0026gt;\u003c/code\u003e - de4414d\u003c/li\u003e\n\u003cli\u003efix non-contiguous program indices - 4512766\u003c/li\u003e\n\u003cli\u003erefactor: rename i to startPartIndex - e497a35\u003c/li\u003e\n\u003cli\u003esecurity: fix security issues - 68d8df5\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/compare/v4.7.8...v4.7.9\"\u003eCommits\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/dce542c9a660048d31f0981ac8a45c08b919bddb\"\u003e\u003ccode\u003edce542c\u003c/code\u003e\u003c/a\u003e v4.7.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/8a41389ba5b2624b6f43a5463d8e2533b843a562\"\u003e\u003ccode\u003e8a41389\u003c/code\u003e\u003c/a\u003e Update release notes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/68d8df5a88e0a26fe9e6084c5c6aaebe67b07da2\"\u003e\u003ccode\u003e68d8df5\u003c/code\u003e\u003c/a\u003e Fix security issues\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/b2a083136b11e1da9f0f47a11f749a9830a49328\"\u003e\u003ccode\u003eb2a0831\u003c/code\u003e\u003c/a\u003e Fix browser tests\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/9f98c1629834abf8de5a127caff8a2eab03d2c12\"\u003e\u003ccode\u003e9f98c16\u003c/code\u003e\u003c/a\u003e Fix release script\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/45443b4290475dfb7cec32a85d344f12ab345eb9\"\u003e\u003ccode\u003e45443b4\u003c/code\u003e\u003c/a\u003e Revert \u0026quot;Improve partial indenting performance\u0026quot;\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/8841a5f6d35096aee95d68e1e49636a4cb5c661e\"\u003e\u003ccode\u003e8841a5f\u003c/code\u003e\u003c/a\u003e Fix CI errors with linting\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/e0137c26f2202593bca7cc25184e733e87d54709\"\u003e\u003ccode\u003ee0137c2\u003c/code\u003e\u003c/a\u003e fix: enable shell mode for spawn to resolve Windows EINVAL issue\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/e914d6037ffb0dd371f7e4823cdb019732ae66d7\"\u003e\u003ccode\u003ee914d60\u003c/code\u003e\u003c/a\u003e Improve rendering performance\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/handlebars-lang/handlebars.js/commit/7de4b41c344a5d702edca93d1841b59642fa32bd\"\u003e\u003ccode\u003e7de4b41\u003c/code\u003e\u003c/a\u003e Upgrade GitHub Actions checkout and setup-node on 4.x branch\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/handlebars-lang/handlebars.js/compare/v4.7.8...v4.7.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ip-address` from 9.0.5 to 10.5.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/beaugunderson/ip-address/releases\"\u003eip-address's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev10.5.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eHonor the fromURL graceful-failure contract for non-IPv6 hosts by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/218\"\u003ebeaugunderson/ip-address#218\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCorrect the documentation where it disagreed with the library by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/219\"\u003ebeaugunderson/ip-address#219\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.4.0...v10.5.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.4.0...v10.5.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.4.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd GitHub Actions CI by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/213\"\u003ebeaugunderson/ip-address#213\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eKeep the package loadable on node 12, and enforce it by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/216\"\u003ebeaugunderson/ip-address#216\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eValidate the byte arrays Address6 is given by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/217\"\u003ebeaugunderson/ip-address#217\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.3.1...v10.4.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.3.1...v10.4.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.3.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.3.0...v10.3.1\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.3.0...v10.3.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.3.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.2.2...v10.3.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.2.2...v10.3.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.2.2\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.2.1...v10.2.2\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.2.1...v10.2.2\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.2.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.2.0...v10.2.1\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.2.0...v10.2.1\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/ef98e0a0e77fbef1fdf8bc3bd33288b00b3103c9\"\u003e\u003ccode\u003eef98e0a\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/9fd111001d66cae1dc9336294d95e11668d4d839\"\u003e\u003ccode\u003e9fd1110\u003c/code\u003e\u003c/a\u003e Correct the documentation where it disagreed with the library (\u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/issues/219\"\u003e#219\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/d4787372b40fbf509c1a3e79c111eafe4aa3b351\"\u003e\u003ccode\u003ed478737\u003c/code\u003e\u003c/a\u003e Honor the fromURL graceful-failure contract for non-IPv6 hosts (\u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/issues/218\"\u003e#218\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/fbb8db28f1559842b7191cab7d8ea6408ed82f7b\"\u003e\u003ccode\u003efbb8db2\u003c/code\u003e\u003c/a\u003e 10.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/45a2b11ec254a2e5620de66e248adcb33d16e669\"\u003e\u003ccode\u003e45a2b11\u003c/code\u003e\u003c/a\u003e Validate the byte arrays Address6 is given (\u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/issues/217\"\u003e#217\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/bac8810b3935cab123316a4bc5ebaa22db140299\"\u003e\u003ccode\u003ebac8810\u003c/code\u003e\u003c/a\u003e Keep the package loadable on node 12, and enforce it (\u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/issues/216\"\u003e#216\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/9b3d8488d15e6bfe5f5503867b088ce056723e08\"\u003e\u003ccode\u003e9b3d848\u003c/code\u003e\u003c/a\u003e Add a security policy and a README section on security posture\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/e84a7b381d02cb97ed114023e44133efae151254\"\u003e\u003ccode\u003ee84a7b3\u003c/code\u003e\u003c/a\u003e Order the README API reference Address4, Address6, AddressError\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/015160b85ee60b39548219817a5de3c4e828a6d6\"\u003e\u003ccode\u003e015160b\u003c/code\u003e\u003c/a\u003e Collapse each class in the README API reference\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/34061a897d526b7a063c3605402cd30a8363a035\"\u003e\u003ccode\u003e34061a8\u003c/code\u003e\u003c/a\u003e Pin checkout and setup-node to commits in the release job\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v9.0.5...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for ip-address since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `js-yaml` from 3.14.1 to 3.15.2\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/nodeca/js-yaml/blob/3.15.2/CHANGELOG.md\"\u003ejs-yaml's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.15.2 - 2026-08-26\u003c/h2\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Hard-limit merge sequence size to 100.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Count empty mappings in merge sequences toward \u003ccode\u003emaxTotalMergeKeys\u003c/code\u003e\nto limit CPU usage, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/797\"\u003e#797\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.15.1 - 2026-07-31\u003c/h2\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Remove quadratic complexity from \u003ccode\u003e!!omap\u003c/code\u003e duplicate key detection.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.15.0 - 2026-06-27\u003c/h2\u003e\n\u003ch3\u003eAdded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003emaxTotalMergeKeys\u003c/code\u003e (10000) loader option to limit the total number of\nkeys processed by YAML merge (\u003ccode\u003e\u0026lt;\u0026lt;\u003c/code\u003e) across one \u003ccode\u003esafeLoad()\u003c/code\u003e / \u003ccode\u003esafeLoadAll()\u003c/code\u003e\ncall.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e[3.14.2] - 2025-11-15\u003c/h2\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFix prototype pollution in merge (\u0026lt;\u0026lt;).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/5c45bd6e960603c13644f5cc8b572ca257723b36\"\u003e\u003ccode\u003e5c45bd6\u003c/code\u003e\u003c/a\u003e 3.15.2 released\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/5a708f9f4f22e78b87ebe363848cfa4fa4818c0d\"\u003e\u003ccode\u003e5a708f9\u003c/code\u003e\u003c/a\u003e dist rebuild\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/3485bc06ff8a0251505f44a00414d90df2466639\"\u003e\u003ccode\u003e3485bc0\u003c/code\u003e\u003c/a\u003e Backport merge limits from v5.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/f34812f1cea794f8c21e0a4e1f3a2584b720f305\"\u003e\u003ccode\u003ef34812f\u003c/code\u003e\u003c/a\u003e Update .gitignore\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/ab85ae2c622bc6d8cdbceccafe9f9b7df80463ed\"\u003e\u003ccode\u003eab85ae2\u003c/code\u003e\u003c/a\u003e 3.15.1 released\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/30a5e7647a4454f7bac969bfbbe7eac9921a4279\"\u003e\u003ccode\u003e30a5e76\u003c/code\u003e\u003c/a\u003e dist rebuild\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/22a8071ef032117bc6249c330b240ac3aa2d3ded\"\u003e\u003ccode\u003e22a8071\u003c/code\u003e\u003c/a\u003e Backport quadratic complexity fix for !!omap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/c34b6c40027a769eb0d67958ae615268a1d55f54\"\u003e\u003ccode\u003ec34b6c4\u003c/code\u003e\u003c/a\u003e 3.15.0 released\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/21e13d363f33501c7ee6ca988b88c29084999f72\"\u003e\u003ccode\u003e21e13d3\u003c/code\u003e\u003c/a\u003e dist rebuild\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/4165c62630d64fe4f25fb0d03139c7e137b24b1c\"\u003e\u003ccode\u003e4165c62\u003c/code\u003e\u003c/a\u003e Add v3-legacy tag for publish\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/nodeca/js-yaml/compare/3.14.1...3.15.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `lodash` from 4.17.21 to 4.18.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/lodash/lodash/releases\"\u003elodash's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.18.1\u003c/h2\u003e\n\u003ch2\u003eBugs\u003c/h2\u003e\n\u003cp\u003eFixes a \u003ccode\u003eReferenceError\u003c/code\u003e issue in \u003ccode\u003elodash\u003c/code\u003e \u003ccode\u003elodash-es\u003c/code\u003e \u003ccode\u003elodash-amd\u003c/code\u003e and \u003ccode\u003elodash.template\u003c/code\u003e when using the \u003ccode\u003etemplate\u003c/code\u003e and \u003ccode\u003efromPairs\u003c/code\u003e functions from the modular builds. See \u003ca href=\"https://redirect.github.com/lodash/lodash/issues/6167#issuecomment-4165269769\"\u003elodash/lodash#6167\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eThese defects were related to how lodash distributions are built from the main branch using \u003ca href=\"https://github.com/lodash-archive/lodash-cli\"\u003ehttps://github.com/lodash-archive/lodash-cli\u003c/a\u003e. When internal dependencies change inside lodash functions, equivalent updates need to be made to a mapping in the lodash-cli. (hey, it was ahead of its time once upon a time!). We know this, but we missed it in the last release. It's the kind of thing that passes in CI, but fails bc the build is not the same thing you tested.\u003c/p\u003e\n\u003cp\u003eThere is no diff on main for this, but you can see the diffs for each of the npm packages on their respective branches:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003elodash\u003c/code\u003e: \u003ca href=\"https://github.com/lodash/lodash/compare/4.18.0-npm...4.18.1-npm\"\u003ehttps://github.com/lodash/lodash/compare/4.18.0-npm...4.18.1-npm\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003elodash-es\u003c/code\u003e: \u003ca href=\"https://github.com/lodash/lodash/compare/4.18.0-es...4.18.1-es\"\u003ehttps://github.com/lodash/lodash/compare/4.18.0-es...4.18.1-es\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003elodash-amd\u003c/code\u003e: \u003ca href=\"https://github.com/lodash/lodash/compare/4.18.0-amd...4.18.1-amd\"\u003ehttps://github.com/lodash/lodash/compare/4.18.0-amd...4.18.1-amd\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003elodash.template\u003c/code\u003e\u003ca href=\"https://github.com/lodash/lodash/compare/4.18.0-npm-packages...4.18.1-npm-packages\"\u003ehttps://github.com/lodash/lodash/compare/4.18.0-npm-packages...4.18.1-npm-packages\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.18.0\u003c/h2\u003e\n\u003ch2\u003ev4.18.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/lodash/lodash/compare/4.17.23...4.18.0\"\u003ehttps://github.com/lodash/lodash/compare/4.17.23...4.18.0\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cp\u003e\u003cstrong\u003e\u003ccode\u003e_.unset\u003c/code\u003e / \u003ccode\u003e_.omit\u003c/code\u003e\u003c/strong\u003e: Fixed prototype pollution via \u003ccode\u003econstructor\u003c/code\u003e/\u003ccode\u003eprototype\u003c/code\u003e path traversal (\u003ca href=\"https://github.com/lodash/lodash/security/advisories/GHSA-f23m-r3pf-42rh\"\u003eGHSA-f23m-r3pf-42rh\u003c/a\u003e, \u003ca href=\"https://github.com/lodash/lodash/commit/fe8d32eda854377349a4f922ab7655c8e5df9a0b\"\u003efe8d32e\u003c/a\u003e). Previously, array-wrapped path segments and primitive roots could bypass the existing guards, allowing deletion of properties from built-in prototypes. Now \u003ccode\u003econstructor\u003c/code\u003e and \u003ccode\u003eprototype\u003c/code\u003e are blocked unconditionally as non-terminal path keys, matching \u003ccode\u003ebaseSet\u003c/code\u003e. Calls that previously returned \u003ccode\u003etrue\u003c/code\u003e and deleted the property now return \u003ccode\u003efalse\u003c/code\u003e and leave the target untouched.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003e\u003ccode\u003e_.template\u003c/code\u003e\u003c/strong\u003e: Fixed code injection via \u003ccode\u003eimports\u003c/code\u003e keys (\u003ca href=\"https://github.com/lodash/lodash/security/advisories/GHSA-r5fr-rjxr-66jc\"\u003eGHSA-r5fr-rjxr-66jc\u003c/a\u003e, CVE-2026-4800, \u003ca href=\"https://github.com/lodash/lodash/commit/879aaa93132d78c2f8d20c60279da9f8b21576d6\"\u003e879aaa9\u003c/a\u003e). Fixes an incomplete patch for CVE-2021-23337. The \u003ccode\u003evariable\u003c/code\u003e option was validated against \u003ccode\u003ereForbiddenIdentifierChars\u003c/code\u003e but \u003ccode\u003eimportsKeys\u003c/code\u003e was left unguarded, allowing code injection via the same \u003ccode\u003eFunction()\u003c/code\u003e constructor sink. \u003ccode\u003eimports\u003c/code\u003e keys containing forbidden identifier characters now throw \u003ccode\u003e\u0026quot;Invalid imports option passed into _.template\u0026quot;\u003c/code\u003e.\u003c/p\u003e\n\u003ch3\u003eDocs\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdd security notice for \u003ccode\u003e_.template\u003c/code\u003e in threat model and API docs (\u003ca href=\"https://redirect.github.com/lodash/lodash/pull/6099\"\u003e#6099\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eDocument \u003ccode\u003elower \u0026gt; upper\u003c/code\u003e behavior in \u003ccode\u003e_.random\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/lodash/lodash/pull/6115\"\u003e#6115\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix quotes in \u003ccode\u003e_.compact\u003c/code\u003e jsdoc (\u003ca href=\"https://redirect.github.com/lodash/lodash/pull/6090\"\u003e#6090\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e\u003ccode\u003elodash.*\u003c/code\u003e modular packages\u003c/h3\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/lodash/lodash/pull/6157\"\u003eDiff\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eWe have also regenerated and published a select number of the \u003ccode\u003elodash.*\u003c/code\u003e modular packages.\u003c/p\u003e\n\u003cp\u003eThese modular packages had fallen out of sync significantly from the minor/patch updates to lodash. Specifically, we have brought the following packages up to parity w/ the latest lodash release because they have had CVEs on them in the past:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.orderby\"\u003elodash.orderby\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.tonumber\"\u003elodash.tonumber\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.trim\"\u003elodash.trim\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.trimend\"\u003elodash.trimend\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.sortedindexby\"\u003elodash.sortedindexby\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.zipobjectdeep\"\u003elodash.zipobjectdeep\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.unset\"\u003elodash.unset\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.omit\"\u003elodash.omit\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.npmjs.com/package/lodash.template\"\u003elodash.template\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/cb0b9b9212521c08e3eafe7c8cb0af1b42b6649e\"\u003e\u003ccode\u003ecb0b9b9\u003c/code\u003e\u003c/a\u003e release(patch): bump main to 4.18.1 (\u003ca href=\"https://redirect.github.com/lodash/lodash/issues/6177\"\u003e#6177\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/75535f57883b7225adb96de1cfc1cd4169cfcb51\"\u003e\u003ccode\u003e75535f5\u003c/code\u003e\u003c/a\u003e chore: prune stale advisory refs (\u003ca href=\"https://redirect.github.com/lodash/lodash/issues/6170\"\u003e#6170\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/62e91bc6a39c98d85b9ada8c44d40593deaf82a4\"\u003e\u003ccode\u003e62e91bc\u003c/code\u003e\u003c/a\u003e docs: remove n_ Node.js \u0026lt; 6 REPL note from README (\u003ca href=\"https://redirect.github.com/lodash/lodash/issues/6165\"\u003e#6165\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/59be2de61f8aa9461c7856533b51d31b7d8babc4\"\u003e\u003ccode\u003e59be2de\u003c/code\u003e\u003c/a\u003e release(minor): bump to 4.18.0 (\u003ca href=\"https://redirect.github.com/lodash/lodash/issues/6161\"\u003e#6161\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/af634573030f979194871da7c68f79420992f53d\"\u003e\u003ccode\u003eaf63457\u003c/code\u003e\u003c/a\u003e fix: broken tests for _.template 879aaa9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/1073a7693e1727e0cf3641e5f71f75ddcf8de7c0\"\u003e\u003ccode\u003e1073a76\u003c/code\u003e\u003c/a\u003e fix: linting issues\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/879aaa93132d78c2f8d20c60279da9f8b21576d6\"\u003e\u003ccode\u003e879aaa9\u003c/code\u003e\u003c/a\u003e fix: validate imports keys in _.template\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/fe8d32eda854377349a4f922ab7655c8e5df9a0b\"\u003e\u003ccode\u003efe8d32e\u003c/code\u003e\u003c/a\u003e fix: block prototype pollution in baseUnset via constructor/prototype traversal\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/18ba0a32f42fd02117f096b032f89c984173462d\"\u003e\u003ccode\u003e18ba0a3\u003c/code\u003e\u003c/a\u003e refactor(fromPairs): use baseAssignValue for consistent assignment (\u003ca href=\"https://redirect.github.com/lodash/lodash/issues/6153\"\u003e#6153\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lodash/lodash/commit/b8190803d48d60b8c80ad45d39125f32fa618cb2\"\u003e\u003ccode\u003eb819080\u003c/code\u003e\u003c/a\u003e ci: add dist sync validation workflow (\u003ca href=\"https://redirect.github.com/lodash/lodash/issues/6137\"\u003e#6137\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/lodash/lodash/compare/4.17.21...4.18.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `minimatch` from 3.1.2 to 3.1.5\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/7bba97888a27a6162983056bcce2a6e28f668712\"\u003e\u003ccode\u003e7bba978\u003c/code\u003e\u003c/a\u003e 3.1.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/bd259425b2ca17b42897997f93e890314155522d\"\u003e\u003ccode\u003ebd25942\u003c/code\u003e\u003c/a\u003e docs: add warning about ReDoS\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/1a9c27c75725474dbde57db2995b6281b267756d\"\u003e\u003ccode\u003e1a9c27c\u003c/code\u003e\u003c/a\u003e fix partial matching of globstar patterns\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/1a2e084af579731af66c221214e3ca8222c9bf23\"\u003e\u003ccode\u003e1a2e084\u003c/code\u003e\u003c/a\u003e 3.1.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/ae24656237c3d58067442f790ce17eff84463a47\"\u003e\u003ccode\u003eae24656\u003c/code\u003e\u003c/a\u003e update lockfile\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/b1003749228b2a79e1f237963a0d559ef7a0941e\"\u003e\u003ccode\u003eb100374\u003c/code\u003e\u003c/a\u003e limit recursion for **, improve perf considerably\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/26ffeaa091b9f660833e23f42e07165b33e85c13\"\u003e\u003ccode\u003e26ffeaa\u003c/code\u003e\u003c/a\u003e lockfile update\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/9eca892a4e5dbb20534f9f30483b85cdeee6c2eb\"\u003e\u003ccode\u003e9eca892\u003c/code\u003e\u003c/a\u003e lock node version to 14\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/00c323b188b704e5d4bc534ecec2268cfa70a32a\"\u003e\u003ccode\u003e00c323b\u003c/code\u003e\u003c/a\u003e 3.1.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/30486b2048929264f44d18822891cfffa02af78b\"\u003e\u003ccode\u003e30486b2\u003c/code\u003e\u003c/a\u003e update CI matrix and actions\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/minimatch/compare/v3.1.2...v3.1.5\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `picomatch` from 2.3.1 to 2.3.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/releases\"\u003epicomatch's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.3.2\u003c/h2\u003e\n\u003cp\u003eThis is a security release fixing several security relevant issues.\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: exception when glob pattern contains constructor by \u003ca href=\"https://github.com/Jason3S\"\u003e\u003ccode\u003e@​Jason3S\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003emicromatch/picomatch#144\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\"\u003ehttps://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/blob/master/CHANGELOG.md\"\u003epicomatch's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.3.2 (2026-03-23)\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAvoided an exception when a glob pattern contains \u003ccode\u003econstructor\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003e#144\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/3f4f10e\"\u003e3f4f10e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBackported the extglob-quantifier ReDoS fix from 4.0.4. Risky repeated extglobs are now safely rewritten or treated as literals by default; positive numeric \u003ccode\u003emaxExtglobRecursion\u003c/code\u003e values allow limited nesting, while \u003ccode\u003efalse\u003c/code\u003e disables the safeguard (\u003ca href=\"https://github.com/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/eec17ae\"\u003eeec17ae\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003ePrevented inherited object properties from being interpreted as POSIX character classes (\u003ca href=\"https://github.com/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/fc1f6b6\"\u003efc1f6b6\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/81cba8d4b767cab3cb29d26eb4f691eed75b73b2\"\u003e\u003ccode\u003e81cba8d\u003c/code\u003e\u003c/a\u003e Publish 2.3.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/fc1f6b69006e9435caf8fb40d8aff378bc0b7bce\"\u003e\u003ccode\u003efc1f6b6\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/eec17aee5428a7249e9ca5adbb8a0d28fa29619b\"\u003e\u003ccode\u003eeec17ae\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/78f8ca4362d9e66cadea97b93e292f10096452ed\"\u003e\u003ccode\u003e78f8ca4\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/156\"\u003e#156\u003c/a\u003e from micromatch/backport-144\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/3f4f10eaa65bf3a52e8f2999674cd27e11fa3c9b\"\u003e\u003ccode\u003e3f4f10e\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/144\"\u003e#144\u003c/a\u003e from Jason3S/jdent-object-properties\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `sigstore` from 3.1.0 to 4.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/sigstore/sigstore-js/releases\"\u003esigstore's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003esigstore@4.1.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e7845532: Verification of OID certificate extensions\u003c/li\u003e\n\u003cli\u003ef074710: Require inclusion promise in Rekor entry when used as timestamp source\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [b5aa4f1]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [7845532]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f074710]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.2.1\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/verify\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.1\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esigstore@4.1.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eeba6a52: \u003ccode\u003everify(bundle[, payload][, options])\u003c/code\u003e now returns a \u003ccode\u003eSigner\u003c/code\u003e object containing the public key and identity information from the verification.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [cee51c0]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [2042aad]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [018974e]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [dea916f]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [61a4f9e]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [5ffadc0]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [5ffadc0]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [1663b3e]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/tuf\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.1\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/verify\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/sign\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.1.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esigstore@4.0.0\u003c/h2\u003e\n\u003ch3\u003eMajor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e383e200: Drop support for node 18\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [40395f5]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [383e200]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [383e200]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [383e200]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/tuf\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/sign\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/bundle\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/verify\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c1dc7d4778a450787fc72b083f2490ad02b714c6\"\u003e\u003ccode\u003ec1dc7d4\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1607\"\u003e#1607\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/f074710a91ea9260a9ac2142345634579843a3cd\"\u003e\u003ccode\u003ef074710\u003c/code\u003e\u003c/a\u003e reject integratedTime w/o inclusionPromise (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1659\"\u003e#1659\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/7845532f9d17f6f765363dbee82b01bd159fb52b\"\u003e\u003ccode\u003e7845532\u003c/code\u003e\u003c/a\u003e OID certificate extension verification (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1658\"\u003e#1658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/b5aa4f1f8d2db0a9dfa6430fb114d9c2f1c304f7\"\u003e\u003ccode\u003eb5aa4f1\u003c/code\u003e\u003c/a\u003e proper utf-8 encoding in DSSE PAE (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1657\"\u003e#1657\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c7a34e0e9514f4573f8daf980c0987a4120a7183\"\u003e\u003ccode\u003ec7a34e0\u003c/code\u003e\u003c/a\u003e clarify cert ID matching (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1656\"\u003e#1656\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/9858bd7fc535ff01755c8dd5842ef7171b0fafeb\"\u003e\u003ccode\u003e9858bd7\u003c/code\u003e\u003c/a\u003e Upgrade TypeScript to 6.x (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1655\"\u003e#1655\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/8cef20d0069abd3ff03f2afb9ca320a76ddf6d4b\"\u003e\u003ccode\u003e8cef20d\u003c/code\u003e\u003c/a\u003e bump qs from 6.15.1 to 6.15.2 (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1654\"\u003e#1654\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/aca341b56aa561af4d74ad07fda4acd12c417beb\"\u003e\u003ccode\u003eaca341b\u003c/code\u003e\u003c/a\u003e bump \u003ccode\u003e@​sigstore/mock\u003c/code\u003e deps (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1653\"\u003e#1653\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/0855acac119ae9f9dc21413356ce36eade2a51f8\"\u003e\u003ccode\u003e0855aca\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1652\"\u003e#1652\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/44a374d63107b25d11f880a8427e2e27d45965d8\"\u003e\u003ccode\u003e44a374d\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1650\"\u003e#1650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/sigstore/sigstore-js/compare/sigstore@3.1.0...sigstore@4.1.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for sigstore since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `tar` from 6.2.1 to 7.5.22\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-tar/blob/main/CHANGELOG.md\"\u003etar's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003ch2\u003e7.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003ezstd\u003c/code\u003e compression support.\u003c/li\u003e\n\u003cli\u003eConsistent TOCTOU behavior in sync t.list\u003c/li\u003e\n\u003cli\u003eOnly read from ustar block if not specified in Pax\u003c/li\u003e\n\u003cli\u003eFix sync tar.list when file size reduces while reading\u003c/li\u003e\n\u003cli\u003eSanitize absolute linkpaths properly\u003c/li\u003e\n\u003cli\u003ePrevent writing hardlink entries to the archive ahead of their\nfile target\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDeprecate \u003ccode\u003eonentry\u003c/code\u003e in favor of \u003ccode\u003eonReadEntry\u003c/code\u003e for clarity.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eonWriteEntry\u003c/code\u003e option\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDRY the command definitions into a single \u003ccode\u003emakeCommand\u003c/code\u003e method,\nand update the type signatures to more appropriately infer the\nreturn type from the options and arguments provided.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate minipass to v7.1.0\u003c/li\u003e\n\u003cli\u003eUpdate the type definitions of \u003ccode\u003ewrite()\u003c/code\u003e and \u003ccode\u003eend()\u003c/code\u003e methods on\n\u003ccode\u003eUnpack\u003c/code\u003e and \u003ccode\u003eParser\u003c/code\u003e classes to be compatible with the\nNodeJS.WritableStream type in the latest versions of\n\u003ccode\u003e@types/node\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node \u0026lt;18\u003c/li\u003e\n\u003cli\u003eRewrite in TypeScript, provide ESM and CommonJS hybrid\ninterface\u003c/li\u003e\n\u003cli\u003eAdd tree-shake friendly exports, like \u003ccode\u003eimport('tar/create')\u003c/code\u003e\nand \u003ccode\u003eimport('tar/read-entry')\u003c/code\u003e to get individual functions or\nclasses.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003echmod\u003c/code\u003e option that defaults to false, and deprecate\n\u003ccode\u003enoChmod\u003c/code\u003e. That is, reverse the default option regarding\nexplicitly setting file system modes to match tar entry\nsettings.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eprocessUmask\u003c/code\u003e option to avoid having to call\n\u003ccode\u003eprocess.umask()\u003c/code\u003e when \u003ccode\u003echmod: true\u003c/code\u003e (or \u003ccode\u003enoChmod: false\u003c/code\u003e) is\nset.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/2a22bfc5d3a432a606d9da0e2d87ba634aa3b1cb\"\u003e\u003ccode\u003e2a22bfc\u003c/code\u003e\u003c/a\u003e 7.5.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/df1cd8dc09cded47b00c4129698824b3986432ac\"\u003e\u003ccode\u003edf1cd8d\u003c/code\u003e\u003c/a\u003e Allow transform to be falsey\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/0cd9cc3c5814446d3c0cbea6a31d6c00c2c8a9d9\"\u003e\u003ccode\u003e0cd9cc3\u003c/code\u003e\u003c/a\u003e 7.5.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/631ae59121bf8fc8a22bbae35f074cb9b789cd4a\"\u003e\u003ccode\u003e631ae59\u003c/code\u003e\u003c/a\u003e list: prevent unbounded recursion\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/ebbb72094159d003f428dcd1cb28255d37ea4873\"\u003e\u003ccode\u003eebbb720\u003c/code\u003e\u003c/a\u003e 7.5.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/2f271963a7fe5a5960aee5dd6adf9647a1e266fd\"\u003e\u003ccode\u003e2f27196\u003c/code\u003e\u003c/a\u003e fix: fully disable and dispose of unzip when aborting parser\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/be440da64e9fe80c68c755d8147328ea1cc2a9ad\"\u003e\u003ccode\u003ebe440da\u003c/code\u003e\u003c/a\u003e 7.5.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/2812e9338665659b183aa7226518c307044957d3\"\u003e\u003ccode\u003e2812e93\u003c/code\u003e\u003c/a\u003e add maxDecompressionRatio guard against explosive decompression\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/9ecd4d2956fd915507eca018ddc1fea727fbba93\"\u003e\u003ccode\u003e9ecd4d2\u003c/code\u003e\u003c/a\u003e 7.5.18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/9e78bf058b2c22dd4d52e00d8922d5c06fc2f7b5\"\u003e\u003ccode\u003e9e78bf0\u003c/code\u003e\u003c/a\u003e refuse to let header size be less than 0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-tar/compare/v6.2.1...v7.5.22\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~isaacs\"\u003eisaacs\u003c/a\u003e, a new releaser for tar since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/The-cribgang/eslint-config-fido/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/The-cribgang/eslint-config-fido/pull/1","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/The-cribgang%2Feslint-config-fido/issues/1","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/1/packages"}},{"old_version":"10.4.5","new_version":"7.2.3","update_type":null,"path":null,"pr_created_at":"2026-09-26T08:56:40.000Z","version_change":"10.4.5 → 7.2.3","issue":{"uuid":"5592731083","node_id":"PR_kwDOOdaHgc8AAAABFO0ctA","number":1,"state":"closed","title":"Bump the npm_and_yarn group across 1 directory with 29 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-26T08:57:43.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-26T08:56:40.000Z","updated_at":"2026-09-26T08:57:45.000Z","time_to_close":63,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"npm_and_yarn","update_count":29,"packages":[{"name":"@babel/runtime","old_version":"7.25.0","new_version":"7.29.7","repository_url":"https://github.com/babel/babel"},{"name":"@langchain/core","old_version":"0.2.24","new_version":"1.2.12","repository_url":"https://github.com/langchain-ai/langchainjs"},{"name":"langsmith","old_version":"0.1.41","new_version":"0.10.5","repository_url":"https://github.com/langchain-ai/langsmith-sdk"},{"name":"@smithy/config-resolver","old_version":"3.0.5","new_version":"3.0.13","repository_url":"https://github.com/smithy-lang/smithy-typescript"},{"name":"ajv","old_version":"8.17.1","new_version":"8.20.0","repository_url":"https://github.com/ajv-validator/ajv"},{"name":"basic-ftp","old_version":"5.0.5","new_version":"5.3.1","repository_url":"https://github.com/patrickjuchli/basic-ftp"},{"name":"body-parser","old_version":"1.20.2","new_version":"1.20.8","repository_url":"https://github.com/expressjs/body-parser"},{"name":"express","old_version":"4.19.2","new_version":"4.22.3","repository_url":"https://github.com/expressjs/express"},{"name":"brace-expansion","old_version":"2.0.1","new_version":"2.1.7","repository_url":"https://github.com/juliangruber/brace-expansion"},{"name":"cookie","old_version":"0.4.2","new_version":"0.7.2","repository_url":"https://github.com/jshttp/cookie"},{"name":"cross-spawn","old_version":"7.0.3","new_version":"7.0.6","repository_url":"https://github.com/moxystudio/node-cross-spawn"},{"name":"drizzle-orm","old_version":"0.32.2","new_version":"0.45.3","repository_url":"https://github.com/drizzle-team/drizzle-orm"},{"name":"engine.io","old_version":"6.5.5","new_version":"6.6.11","repository_url":"https://github.com/socketio/socket.io"},{"name":"express","old_version":"4.19.2","new_version":"5.2.1","repository_url":"https://github.com/expressjs/express"},{"name":"fast-uri","old_version":"3.0.1","new_version":"3.1.8","repository_url":"https://github.com/fastify/fast-uri"},{"name":"fast-xml-parser","old_version":"4.4.1","new_version":"5.11.1","repository_url":"https://github.com/NaturalIntelligence/fast-xml-parser"},{"name":"form-data","old_version":"4.0.0","new_version":"4.0.6","repository_url":"https://github.com/form-data/form-data"},{"name":"glob","old_version":"10.4.5","new_version":"7.2.3","repository_url":"https://github.com/isaacs/node-glob"},{"name":"ip-address","old_version":"9.0.5","new_version":"10.7.2","repository_url":"https://github.com/beaugunderson/ip-address"},{"name":"js-yaml","old_version":"4.1.0","new_version":"5.4.1","repository_url":"https://github.com/nodeca/js-yaml"},{"name":"jws","old_version":"3.2.2","new_version":"4.0.1","repository_url":"https://github.com/brianloveswords/node-jws"},{"name":"minimatch","old_version":"9.0.5","new_version":"3.1.5","repository_url":"https://github.com/isaacs/minimatch"},{"name":"on-headers","old_version":"1.0.2","new_version":"1.1.0","repository_url":"https://github.com/jshttp/on-headers"},{"name":"path-to-regexp","old_version":"0.1.7","new_version":"8.4.2","repository_url":"https://github.com/pillarjs/path-to-regexp"},{"name":"qs","old_version":"6.11.0","new_version":"6.16.0","repository_url":"https://github.com/ljharb/qs"},{"name":"send","old_version":"0.18.0","new_version":"1.2.1","repository_url":"https://github.com/pillarjs/send"},{"name":"serve-static","old_version":"1.15.0","new_version":"2.2.1","repository_url":"https://github.com/expressjs/serve-static"},{"name":"socket.io-parser","old_version":"4.2.4","new_version":"4.2.7","repository_url":"https://github.com/socketio/socket.io"},{"name":"ws","old_version":"8.17.1","new_version":"8.21.3","repository_url":"https://github.com/websockets/ws"},{"name":"yaml","old_version":"2.5.0","new_version":"2.9.1","repository_url":"https://github.com/eemeli/yaml"}],"path":null,"ecosystem":"npm"},"body":"Bumps the npm_and_yarn group with 29 updates in the /prompt_evaluations/05_prompt_foo_code_graded_animals directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@babel/runtime](https://github.com/babel/babel/tree/HEAD/packages/babel-runtime) | `7.25.0` | `7.29.7` |\n| [@langchain/core](https://github.com/langchain-ai/langchainjs) | `0.2.24` | `1.2.12` |\n| [langsmith](https://github.com/langchain-ai/langsmith-sdk) | `0.1.41` | `0.10.5` |\n| [@smithy/config-resolver](https://github.com/smithy-lang/smithy-typescript/tree/HEAD/packages/config-resolver) | `3.0.5` | `3.0.13` |\n| [ajv](https://github.com/ajv-validator/ajv) | `8.17.1` | `8.20.0` |\n| [basic-ftp](https://github.com/patrickjuchli/basic-ftp) | `5.0.5` | `5.3.1` |\n| [body-parser](https://github.com/expressjs/body-parser) | `1.20.2` | `1.20.8` |\n| [express](https://github.com/expressjs/express) | `4.19.2` | `4.22.3` |\n| [brace-expansion](https://github.com/juliangruber/brace-expansion) | `2.0.1` | `2.1.7` |\n| [cookie](https://github.com/jshttp/cookie) | `0.4.2` | `0.7.2` |\n| [cross-spawn](https://github.com/moxystudio/node-cross-spawn) | `7.0.3` | `7.0.6` |\n| [drizzle-orm](https://github.com/drizzle-team/drizzle-orm) | `0.32.2` | `0.45.3` |\n| [engine.io](https://github.com/socketio/socket.io) | `6.5.5` | `6.6.11` |\n| [express](https://github.com/expressjs/express) | `4.19.2` | `5.2.1` |\n| [fast-uri](https://github.com/fastify/fast-uri) | `3.0.1` | `3.1.8` |\n| [fast-xml-parser](https://github.com/NaturalIntelligence/fast-xml-parser) | `4.4.1` | `5.11.1` |\n| [form-data](https://github.com/form-data/form-data) | `4.0.0` | `4.0.6` |\n| [glob](https://github.com/isaacs/node-glob) | `10.4.5` | `7.2.3` |\n| [ip-address](https://github.com/beaugunderson/ip-address) | `9.0.5` | `10.7.2` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `4.1.0` | `5.4.1` |\n| [jws](https://github.com/brianloveswords/node-jws) | `3.2.2` | `4.0.1` |\n| [minimatch](https://github.com/isaacs/minimatch) | `9.0.5` | `3.1.5` |\n| [on-headers](https://github.com/jshttp/on-headers) | `1.0.2` | `1.1.0` |\n| [path-to-regexp](https://github.com/pillarjs/path-to-regexp) | `0.1.7` | `8.4.2` |\n| [qs](https://github.com/ljharb/qs) | `6.11.0` | `6.16.0` |\n| [send](https://github.com/pillarjs/send) | `0.18.0` | `1.2.1` |\n| [serve-static](https://github.com/expressjs/serve-static) | `1.15.0` | `2.2.1` |\n| [socket.io-parser](https://github.com/socketio/socket.io) | `4.2.4` | `4.2.7` |\n| [ws](https://github.com/websockets/ws) | `8.17.1` | `8.21.3` |\n| [yaml](https://github.com/eemeli/yaml) | `2.5.0` | `2.9.1` |\n\n\nUpdates `@babel/runtime` from 7.25.0 to 7.29.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/babel/babel/releases\"\u003e@​babel/runtime's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.29.7 (2026-05-25)\u003c/h2\u003e\n\u003cp\u003eRe-release all packages with npm provenance attestations\u003c/p\u003e\n\u003ch2\u003ev7.29.6 (2026-05-25)\u003c/h2\u003e\n\u003ch4\u003e:bug: Bug Fix\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-generator\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/18014\"\u003e#18014\u003c/a\u003e Catchup source map position in preserveFormat (\u003ca href=\"https://github.com/nicolo-ribaudo\"\u003e\u003ccode\u003e@​nicolo-ribaudo\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-core\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/18001\"\u003e#18001\u003c/a\u003e [7.x packport]Improve input source map handling (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-core\u003c/code\u003e, \u003ccode\u003ebabel-generator\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17998\"\u003e#17998\u003c/a\u003e Preserve original identifier names from input sourcemaps (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-runtime/issues/17992\"\u003e#17992\u003c/a\u003e) (\u003ca href=\"https://github.com/Andarist\"\u003e\u003ccode\u003e@​Andarist\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCommitters: 3\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eHuáng Jùnliàng (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eMateusz Burzyński (\u003ca href=\"https://github.com/Andarist\"\u003e\u003ccode\u003e@​Andarist\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eNicolò Ribaudo (\u003ca href=\"https://github.com/nicolo-ribaudo\"\u003e\u003ccode\u003e@​nicolo-ribaudo\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.29.5 (2026-05-05)\u003c/h2\u003e\n\u003ch4\u003e:house:  Internal\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-preset-env\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate \u003ccode\u003e@babel/*\u003c/code\u003e dependencies\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.29.4 (2026-05-05)\u003c/h2\u003e\n\u003ch4\u003e:bug: Bug Fix\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-plugin-transform-modules-systemjs\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17974\"\u003e#17974\u003c/a\u003e [7.x backport]fix(systemjs): improve module string name support (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCommitters: 1\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eHuáng Jùnliàng (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.29.3 (2026-04-30)\u003c/h2\u003e\n\u003ch4\u003e:eyeglasses: Spec Compliance\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-parser\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17923\"\u003e#17923\u003c/a\u003e Support flow extends bound (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003e:bug: Bug Fix\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-helper-create-class-features-plugin\u003c/code\u003e, \u003ccode\u003ebabel-plugin-proposal-decorators\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17931\"\u003e#17931\u003c/a\u003e fix(decorators): replace super within all removed static elements (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-register\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17915\"\u003e#17915\u003c/a\u003e Fix thread synchronization issues in \u003ccode\u003e@babel/register\u003c/code\u003e (\u003ca href=\"https://github.com/liuxingbaoyu\"\u003e\u003ccode\u003e@​liuxingbaoyu\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ebabel-compat-data\u003c/code\u003e, \u003ccode\u003ebabel-plugin-bugfix-safari-rest-destructuring-rhs-array\u003c/code\u003e, \u003ccode\u003ebabel-preset-env\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/babel/babel/pull/17788\"\u003e#17788\u003c/a\u003e Add bugfix plugin for Safari array rest destructuring bug (\u003ca href=\"https://github.com/JLHwung\"\u003e\u003ccode\u003e@​JLHwung\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003e:nail_care: Polish\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebabel-parser\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/4fba7541180bf5f58256d8e358b544e3831ad090\"\u003e\u003ccode\u003e4fba754\u003c/code\u003e\u003c/a\u003e v7.29.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/37d5595fca9f188f0534458180611f2e776acd31\"\u003e\u003ccode\u003e37d5595\u003c/code\u003e\u003c/a\u003e v7.29.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/d7f400889567ae18ef9ac41b024b5120f6060e17\"\u003e\u003ccode\u003ed7f4008\u003c/code\u003e\u003c/a\u003e v7.28.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/35055e392079a65830b7bf5b1d1c1fc4de90a78f\"\u003e\u003ccode\u003e35055e3\u003c/code\u003e\u003c/a\u003e v7.28.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/ef155f5ca83c73dbc1ea8d95216830b7dc3b0ac2\"\u003e\u003ccode\u003eef155f5\u003c/code\u003e\u003c/a\u003e v7.28.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/cac0ff4c3426eed30b4d27e7971b348da7c9f1e6\"\u003e\u003ccode\u003ecac0ff4\u003c/code\u003e\u003c/a\u003e v7.28.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/f68ac511f091f6d1f698e8ce59cd668d3bfc6102\"\u003e\u003ccode\u003ef68ac51\u003c/code\u003e\u003c/a\u003e chore: Avoid CITGM errors (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-runtime/issues/17382\"\u003e#17382\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/baa4cb8b9f8a551d7dae9042b19ea2f74df6b110\"\u003e\u003ccode\u003ebaa4cb8\u003c/code\u003e\u003c/a\u003e v7.27.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/7d069309fdfcedda2928a043f6f7c98135c1242a\"\u003e\u003ccode\u003e7d06930\u003c/code\u003e\u003c/a\u003e v7.27.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/babel/babel/commit/5b9468d9bf1ab4f427241673e9f03593da115a69\"\u003e\u003ccode\u003e5b9468d\u003c/code\u003e\u003c/a\u003e Reduce \u003ccode\u003eregenerator\u003c/code\u003e size more (\u003ca href=\"https://github.com/babel/babel/tree/HEAD/packages/babel-runtime/issues/17287\"\u003e#17287\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/babel/babel/commits/v7.29.7/packages/babel-runtime\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​babel/runtime\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@langchain/core` from 0.2.24 to 1.2.12\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/langchain-ai/langchainjs/releases\"\u003e@​langchain/core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.2.12\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langchainjs/pull/11675\"\u003e#11675\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langchainjs/commit/030a726639e0147488bc8c23c063a2e72b004c2e\"\u003e\u003ccode\u003e030a726\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/hntrl\"\u003e\u003ccode\u003e@​hntrl\u003c/code\u003e\u003c/a\u003e! - Preserve structured tool arguments in tracer run inputs.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.2.11\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langchainjs/pull/11603\"\u003e#11603\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langchainjs/commit/fec9cd87b01976014dd549bd2cf7849aee89a566\"\u003e\u003ccode\u003efec9cd8\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/thushanth-bengre-langchain\"\u003e\u003ccode\u003e@​thushanth-bengre-langchain\u003c/code\u003e\u003c/a\u003e! - fix(core): build streaming \u003ccode\u003ellmOutput.tokenUsage\u003c/code\u003e from the fully-accumulated chunk instead of whichever individual chunk's \u003ccode\u003eusage_metadata\u003c/code\u003e arrived last\u003c/p\u003e\n\u003cp\u003eAffects both core streaming paths — \u003ccode\u003e.stream()\u003c/code\u003e/\u003ccode\u003e.streamEvents()\u003c/code\u003e (\u003ccode\u003e_streamIterator\u003c/code\u003e) and \u003ccode\u003e.invoke()\u003c/code\u003e/\u003ccode\u003e.generate()\u003c/code\u003e when a streaming-preferring callback is attached (\u003ccode\u003e_generateWithCache\u003c/code\u003e's \u003ccode\u003ehasStreamingHandler\u003c/code\u003e branch). Previously, \u003ccode\u003ellmOutput.tokenUsage\u003c/code\u003e was overwritten by each chunk in turn, so only the last chunk carrying \u003ccode\u003eusage_metadata\u003c/code\u003e won — correct for providers that emit one cumulative total on a final chunk, but wrong for providers (e.g. \u003ccode\u003e@langchain/google\u003c/code\u003e, \u003ccode\u003e@langchain/anthropic\u003c/code\u003e) that emit \u003ccode\u003eusage_metadata\u003c/code\u003e as a per-chunk delta across multiple chunks, where the values must be summed.\u003c/p\u003e\n\u003cp\u003eNote for provider authors: this assumes each streamed chunk's \u003ccode\u003eusage_metadata\u003c/code\u003e is either a per-chunk delta or appears only on a single final chunk. A provider that instead repeats a cumulative total on every chunk will now see it summed (and inflated) in \u003ccode\u003ellmOutput.tokenUsage\u003c/code\u003e, matching the existing behavior of the correctly-working \u003ccode\u003emessage.usage_metadata\u003c/code\u003e field.\u003c/p\u003e\n\u003cp\u003eAlso fixes \u003ccode\u003e@langchain/google\u003c/code\u003e's \u003ccode\u003einvoke({streaming: true})\u003c/code\u003e path (no streaming-preferring callback attached), where \u003ccode\u003ellmOutput\u003c/code\u003e was never populated at all.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langchainjs/pull/11590\"\u003e#11590\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langchainjs/commit/ffebdc2f00f3290d19f85e5afd6a297920ae584c\"\u003e\u003ccode\u003effebdc2\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/thushanth-bengre-langchain\"\u003e\u003ccode\u003e@​thushanth-bengre-langchain\u003c/code\u003e\u003c/a\u003e! - Fix OpenAI Responses API replay under Zero Data Retention when a response contains more than one reasoning item, for both v0 and v1. In v0, the default replay path now reuses \u003ccode\u003eresponse_metadata.output\u003c/code\u003e directly, preserving every reasoning item's \u003ccode\u003eid\u003c/code\u003e/\u003ccode\u003eencrypted_content\u003c/code\u003e in original order. In v1, \u003ccode\u003eAIMessage.contentBlocks\u003c/code\u003e (\u003ccode\u003eoutputVersion: \u0026quot;v1\u0026quot;\u003c/code\u003e) is fixed the same way. \u003ccode\u003eadditional_kwargs.reasoning\u003c/code\u003e is unchanged.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.2.10\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langchainjs/pull/10047\"\u003e#10047\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langchainjs/commit/ff1248fd49dacdb35f5da128278cd777068481d7\"\u003e\u003ccode\u003eff1248f\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/afirstenberg\"\u003e\u003ccode\u003e@​afirstenberg\u003c/code\u003e\u003c/a\u003e! - fix(core): BaseMessage.text use contentBlocks\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.2.9\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langchainjs/pull/11402\"\u003e#11402\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langchainjs/commit/43e439698fa7794c10ab8d7355d4433e058e4d62\"\u003e\u003ccode\u003e43e4396\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/thushanth-bengre-langchain\"\u003e\u003ccode\u003e@​thushanth-bengre-langchain\u003c/code\u003e\u003c/a\u003e! - Fix ChatVertexAI/ChatGoogle content blocks: include \u003ccode\u003etool_call\u003c/code\u003e blocks from \u003ccode\u003emessage.tool_calls\u003c/code\u003e and skip spurious empty \u003ccode\u003etext\u003c/code\u003e blocks in \u003ccode\u003econtentBlocks\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.2.8\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langchainjs/pull/11369\"\u003e#11369\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langchainjs/commit/d6ad9735640a6c729f81ef79361acc5e83c526f1\"\u003e\u003ccode\u003ed6ad973\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/hntrl\"\u003e\u003ccode\u003e@​hntrl\u003c/code\u003e\u003c/a\u003e! - fix(langchain): use unified endpoint for gateway\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langchainjs/pull/11342\"\u003e#11342\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langchainjs/commit/3b0e4c48a31811031a460c4d95519a7c1163dc41\"\u003e\u003ccode\u003e3b0e4c4\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/thushanth-bengre-langchain\"\u003e\u003ccode\u003e@​thushanth-bengre-langchain\u003c/code\u003e\u003c/a\u003e! - feat(core): mark errors as retryable or not, and stop retrying the ones that aren't\u003c/p\u003e\n\u003cp\u003eRetry middleware retried every failure up to \u003ccode\u003emaxRetries\u003c/code\u003e, including deterministic ones like a bad API key or an unknown model. Retries also nest, so a single such failure could cost dozens of API calls.\u003c/p\u003e\n\u003cp\u003e\u003ccode\u003e@langchain/core/errors\u003c/code\u003e adds \u003ccode\u003estampRetryable(error, retryable)\u003c/code\u003e and \u003ccode\u003egetRetryable(error)\u003c/code\u003e. Marking an error leaves its class and shape untouched, so a provider SDK error can be classified without breaking \u003ccode\u003einstanceof\u003c/code\u003e. \u003ccode\u003egetRetryable\u003c/code\u003e returns \u003ccode\u003eundefined\u003c/code\u003e for errors nobody classified, and both are exported so tool authors can mark their own failures.\u003c/p\u003e\n\u003cp\u003e\u003ccode\u003emodelRetryMiddleware\u003c/code\u003e and \u003ccode\u003etoolRetryMiddleware\u003c/code\u003e now respect the mark by default, and retries stop as soon as one is found rather than each layer spending its own budget. Aborted calls, context overflow, and oversized payloads are marked non-retryable out of the box.\nModels accept a per-call \u003ccode\u003emaxRetries\u003c/code\u003e so a surrounding retry loop can take over.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eBehavior change:\u003c/strong\u003e errors marked non-retryable now fail on the first attempt. Unclassified errors — including any from third-party integrations or custom tools — retry exactly as before. Pass \u003ccode\u003eretryOn: () =\u0026gt; true\u003c/code\u003e to restore the old default. A custom \u003ccode\u003eonFailedAttempt\u003c/code\u003e replaces the built-in handler and opts out of marking.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/langchain-ai/langchainjs/commits/@langchain/core@1.2.12\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​langchain/core\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `langsmith` from 0.1.41 to 0.10.5\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/langchain-ai/langsmith-sdk/releases\"\u003elangsmith's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev0.10.5\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore: sync langsmith_api by \u003ca href=\"https://github.com/langtions-bot\"\u003e\u003ccode\u003e@​langtions-bot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3205\"\u003elangchain-ai/langsmith-sdk#3205\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: patch high-severity JS dependencies by \u003ca href=\"https://github.com/jkennedyvz\"\u003e\u003ccode\u003e@​jkennedyvz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3210\"\u003elangchain-ai/langsmith-sdk#3210\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(js): 0.8.3 by \u003ca href=\"https://github.com/KiewanVillatel\"\u003e\u003ccode\u003e@​KiewanVillatel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3213\"\u003elangchain-ai/langsmith-sdk#3213\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(python): bump py version to 0.10.5 by \u003ca href=\"https://github.com/KiewanVillatel\"\u003e\u003ccode\u003e@​KiewanVillatel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3212\"\u003elangchain-ai/langsmith-sdk#3212\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/langchain-ai/langsmith-sdk/compare/v0.10.4...v0.10.5\"\u003ehttps://github.com/langchain-ai/langsmith-sdk/compare/v0.10.4...v0.10.5\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev0.10.4\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003erelease(js): 0.8.2 by \u003ca href=\"https://github.com/KiewanVillatel\"\u003e\u003ccode\u003e@​KiewanVillatel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3204\"\u003elangchain-ai/langsmith-sdk#3204\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(livekit): capture realtime user transcript via instrument_session by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3201\"\u003elangchain-ai/langsmith-sdk#3201\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(voice): capture OpenAI Agents realtime model costs by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3193\"\u003elangchain-ai/langsmith-sdk#3193\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(voice): capture Google ADK Live (Gemini) model costs by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3194\"\u003elangchain-ai/langsmith-sdk#3194\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(python): bump py version to 0.10.4 by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3207\"\u003elangchain-ai/langsmith-sdk#3207\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/langchain-ai/langsmith-sdk/compare/v0.10.3...v0.10.4\"\u003ehttps://github.com/langchain-ai/langsmith-sdk/compare/v0.10.3...v0.10.4\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev0.10.3\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: Auto-Batch Processing Drops Workspace Override Leading to Cross-Tenant Data Leakage by \u003ca href=\"https://github.com/corridor-security\"\u003e\u003ccode\u003e@​corridor-security\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3174\"\u003elangchain-ai/langsmith-sdk#3174\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: bump _MIN_BACKEND_VERSION to 0.16.13rc1 by \u003ca href=\"https://github.com/langtions-bot\"\u003e\u003ccode\u003e@​langtions-bot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3182\"\u003elangchain-ai/langsmith-sdk#3182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(voice): capture LiveKit realtime model costs by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3191\"\u003elangchain-ai/langsmith-sdk#3191\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(voice): capture Pipecat TTS/realtime model costs by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3192\"\u003elangchain-ai/langsmith-sdk#3192\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump esbuild from 0.17.19 to 0.28.1 in /js/internal/environment_tests/test-exports-cf in the npm_and_yarn group across 1 directory by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3172\"\u003elangchain-ai/langsmith-sdk#3172\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump nltk from 3.9.4 to 3.10.0 in /python by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3186\"\u003elangchain-ai/langsmith-sdk#3186\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump soupsieve from 2.8.3 to 2.8.4 in /python by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3200\"\u003elangchain-ai/langsmith-sdk#3200\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: sync langsmith_api by \u003ca href=\"https://github.com/langtions-bot\"\u003e\u003ccode\u003e@​langtions-bot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3165\"\u003elangchain-ai/langsmith-sdk#3165\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(python): bump py version to 0.10.3 by \u003ca href=\"https://github.com/KiewanVillatel\"\u003e\u003ccode\u003e@​KiewanVillatel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3203\"\u003elangchain-ai/langsmith-sdk#3203\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/langchain-ai/langsmith-sdk/compare/v0.10.2...v0.10.3\"\u003ehttps://github.com/langchain-ai/langsmith-sdk/compare/v0.10.2...v0.10.3\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev0.10.2\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003erelease(js): 0.8.1 by \u003ca href=\"https://github.com/KiewanVillatel\"\u003e\u003ccode\u003e@​KiewanVillatel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3185\"\u003elangchain-ai/langsmith-sdk#3185\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor(voice): move span attribute setters onto TranslatedSpan by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3179\"\u003elangchain-ai/langsmith-sdk#3179\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: add SmithDB by-key path to add_runs_to_annotation_queue (runs= param) [LSDK-287] by \u003ca href=\"https://github.com/ayoung19\"\u003e\u003ccode\u003e@​ayoung19\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3077\"\u003elangchain-ai/langsmith-sdk#3077\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor(livekit + pipecat): Refactor for clarity by \u003ca href=\"https://github.com/carolinedivittorio\"\u003e\u003ccode\u003e@​carolinedivittorio\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3187\"\u003elangchain-ai/langsmith-sdk#3187\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(py): re-export OpenAPI client exceptions from langsmith package by \u003ca href=\"https://github.com/KiewanVillatel\"\u003e\u003ccode\u003e@​KiewanVillatel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3188\"\u003elangchain-ai/langsmith-sdk#3188\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(python): bump py version to 0.10.2 by \u003ca href=\"https://github.com/KiewanVillatel\"\u003e\u003ccode\u003e@​KiewanVillatel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3189\"\u003elangchain-ai/langsmith-sdk#3189\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ayoung19\"\u003e\u003ccode\u003e@​ayoung19\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/langchain-ai/langsmith-sdk/pull/3077\"\u003elangchain-ai/langsmith-sdk#3077\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/langchain-ai/langsmith-sdk/compare/v0.10.1...v0.10.2\"\u003ehttps://github.com/langchain-ai/langsmith-sdk/compare/v0.10.1...v0.10.2\u003c/a\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/langchain-ai/langsmith-sdk/commits/v0.10.5\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for langsmith since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version modifies \u003ccode\u003eprepublish\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@smithy/config-resolver` from 3.0.5 to 3.0.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/smithy-lang/smithy-typescript/releases\"\u003e@​smithy/config-resolver's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​smithy/signature-v4\u003c/code\u003e\u003ca href=\"https://github.com/5\"\u003e\u003ccode\u003e@​5\u003c/code\u003e\u003c/a\u003e.7.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e2033184: preserve non-ASCII whitespace in canonical headers\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​smithy/signature-v4\u003c/code\u003e\u003ca href=\"https://github.com/5\"\u003e\u003ccode\u003e@​5\u003c/code\u003e\u003c/a\u003e.7.3\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ea825452: switch for-in loops to guarded\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [e82a22b]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [a825452]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.33.3\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​smithy/signature-v4a\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.6.2\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e99c3f91: Restore npm provenance attestations. No functional changes.\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [99c3f91]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.33.2\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/signature-v4\u003c/code\u003e\u003ca href=\"https://github.com/5\"\u003e\u003ccode\u003e@​5\u003c/code\u003e\u003c/a\u003e.7.2\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/types\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.17.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​smithy/util-utf8\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.5.2\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e99c3f91: Restore npm provenance attestations. No functional changes.\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [99c3f91]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.33.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​smithy/util-base64\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.6.2\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e99c3f91: Restore npm provenance attestations. No functional changes.\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [99c3f91]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.33.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​smithy/signature-v4\u003c/code\u003e\u003ca href=\"https://github.com/5\"\u003e\u003ccode\u003e@​5\u003c/code\u003e\u003c/a\u003e.7.2\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e99c3f91: Restore npm provenance attestations. No functional changes.\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [99c3f91]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.33.2\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/types\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.17.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​smithy/md5-js\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.5.2\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e99c3f91: Restore npm provenance attestations. No functional changes.\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [99c3f91]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.33.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/smithy-lang/smithy-typescript/blob/@smithy/config-resolver@3.0.13/packages/config-resolver/CHANGELOG.md\"\u003e@​smithy/config-resolver's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.0.13\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [b52b4e8]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/types\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.7.2\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/node-config-provider\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.12\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/util-middleware\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.11\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.12\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [fcd5ca8]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/types\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.7.1\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/node-config-provider\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.11\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/util-middleware\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.10\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.11\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [cd1929b]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/types\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.7.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/node-config-provider\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.10\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/util-middleware\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.9\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.10\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [84bec05]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/types\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.6.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/node-config-provider\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.9\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/util-middleware\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.8\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.9\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [a4c1285]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/types\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.5.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/node-config-provider\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.8\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​smithy/util-middleware\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.7\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.8\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [e7b438b]\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/50d8c5457e7feea41169a37fb2fdb1e448f82e9e\"\u003e\u003ccode\u003e50d8c54\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/7877c9e3681a9b5aa6e16d15ce8bce8fda0477ea\"\u003e\u003ccode\u003e7877c9e\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/012775ca4d9f3c9c3b0067fafefeda5be421d404\"\u003e\u003ccode\u003e012775c\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/cd1929bb6e1eefe5430804d90714f1e60cd438d5\"\u003e\u003ccode\u003ecd1929b\u003c/code\u003e\u003c/a\u003e test: convert tests to vitest (\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/tree/HEAD/packages/config-resolver/issues/1440\"\u003e#1440\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/5de4524d147db44e627dadf222238552d6ff613d\"\u003e\u003ccode\u003e5de4524\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/80515513f9b4ff3e6140d335a8edfb2126b8c352\"\u003e\u003ccode\u003e8051551\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/b12dc1de610c91d3daab39315a62b04826a93439\"\u003e\u003ccode\u003eb12dc1d\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/b2be4f32e45432da17b0dcbc777a11855a53a13f\"\u003e\u003ccode\u003eb2be4f3\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commit/f95b9c3eeda338ff4e69c90e786b852657ceb199\"\u003e\u003ccode\u003ef95b9c3\u003c/code\u003e\u003c/a\u003e Version NPM packages\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/smithy-lang/smithy-typescript/commits/@smithy/config-resolver@3.0.13/packages/config-resolver\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ajv` from 8.17.1 to 8.20.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ajv-validator/ajv/releases\"\u003eajv's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.20.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: add support for node 22/24, drop node 16/21 by \u003ca href=\"https://github.com/jasoniangreen\"\u003e\u003ccode\u003e@​jasoniangreen\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2580\"\u003eajv-validator/ajv#2580\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: add ES2022.RegExp for RegExpIndicesArray by \u003ca href=\"https://github.com/SignpostMarv\"\u003e\u003ccode\u003e@​SignpostMarv\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2604\"\u003eajv-validator/ajv#2604\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/ajv-validator/ajv/compare/v8.19.0...v8.20.0\"\u003ehttps://github.com/ajv-validator/ajv/compare/v8.19.0...v8.20.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev8.19.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix prototype pollution via format keyword using $data ref by \u003ca href=\"https://github.com/epoberezkin\"\u003e\u003ccode\u003e@​epoberezkin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2607\"\u003eajv-validator/ajv#2607\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/ajv-validator/ajv/compare/v8.18.0...v8.19.0\"\u003ehttps://github.com/ajv-validator/ajv/compare/v8.18.0...v8.19.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev8.18.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: allow tree-shaking by adding \u003ccode\u003e\u0026quot;sideEffects\u0026quot;: false\u003c/code\u003e to \u003ccode\u003epackage.json\u003c/code\u003e by \u003ca href=\"https://github.com/josdejong\"\u003e\u003ccode\u003e@​josdejong\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2480\"\u003eajv-validator/ajv#2480\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2482\"\u003e#2482\u003c/a\u003e Infinity and NaN serialise to null by \u003ca href=\"https://github.com/jasoniangreen\"\u003e\u003ccode\u003e@​jasoniangreen\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2487\"\u003eajv-validator/ajv#2487\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: small grammatical error in managing-schemas.md by \u003ca href=\"https://github.com/monteiro-renato\"\u003e\u003ccode\u003e@​monteiro-renato\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2508\"\u003eajv-validator/ajv#2508\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: typos in schema-language.md by \u003ca href=\"https://github.com/monteiro-renato\"\u003e\u003ccode\u003e@​monteiro-renato\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2507\"\u003eajv-validator/ajv#2507\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(pattern): use configured RegExp engine with $data keyword to mitigate ReDoS attacks (CVE-2025-69873) by \u003ca href=\"https://github.com/epoberezkin\"\u003e\u003ccode\u003e@​epoberezkin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2586\"\u003eajv-validator/ajv#2586\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/josdejong\"\u003e\u003ccode\u003e@​josdejong\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2480\"\u003eajv-validator/ajv#2480\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/monteiro-renato\"\u003e\u003ccode\u003e@​monteiro-renato\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/pull/2508\"\u003eajv-validator/ajv#2508\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/ajv-validator/ajv/compare/v8.17.1...v8.18.0\"\u003ehttps://github.com/ajv-validator/ajv/compare/v8.17.1...v8.18.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/0fba0b8e649909613cfce0999b149cd08f4a4987\"\u003e\u003ccode\u003e0fba0b8\u003c/code\u003e\u003c/a\u003e 8.20.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/9caf8d64409b05e2c670b3ff09cf7ca07937342e\"\u003e\u003ccode\u003e9caf8d6\u003c/code\u003e\u003c/a\u003e fix: add ES2022.RegExp for RegExpIndicesArray; fixes \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2603\"\u003eajv-validator/ajv#2603\u003c/a\u003e (...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/206535071f776f57737394c8896d4b2dc2bfb9a3\"\u003e\u003ccode\u003e2065350\u003c/code\u003e\u003c/a\u003e fix: add support for node 22/24, drop node 16/21 (\u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2580\"\u003e#2580\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/154b58d690c6596e09ca676e12720ab8234ee3d2\"\u003e\u003ccode\u003e154b58d\u003c/code\u003e\u003c/a\u003e 8.19.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/e8d2bdc501b3ba6f03922db5e595770d4763d9da\"\u003e\u003ccode\u003ee8d2bdc\u003c/code\u003e\u003c/a\u003e test/fix prototype pollution via $data ref with format keyword (\u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2607\"\u003e#2607\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/142ce84b807c4fe66e619c22480a28d0e4bd50fa\"\u003e\u003ccode\u003e142ce84\u003c/code\u003e\u003c/a\u003e 8.18.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/720a23fa453ffae8340e92c9b0fe886c54cfe0d5\"\u003e\u003ccode\u003e720a23f\u003c/code\u003e\u003c/a\u003e fix(pattern): use configured RegExp engine with $data keyword to mitigate ReD...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/82735a15826a30cc51e97a1bbfb59b3d388e4b98\"\u003e\u003ccode\u003e82735a1\u003c/code\u003e\u003c/a\u003e fix: typos in schema-language.md (\u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2507\"\u003e#2507\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/b17ec32cd97542e90ae27231d8a8bce88b9e53b6\"\u003e\u003ccode\u003eb17ec32\u003c/code\u003e\u003c/a\u003e fix: small grammatical error in managing-schemas.md (\u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2508\"\u003e#2508\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ajv-validator/ajv/commit/69568d08564303e2c32a2de61feb833b41075f96\"\u003e\u003ccode\u003e69568d0\u003c/code\u003e\u003c/a\u003e fix: \u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2482\"\u003e#2482\u003c/a\u003e Infinity and NaN serialise to null (\u003ca href=\"https://redirect.github.com/ajv-validator/ajv/issues/2487\"\u003e#2487\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/ajv-validator/ajv/compare/v8.17.1...v8.20.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `basic-ftp` from 5.0.5 to 5.3.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/releases\"\u003ebasic-ftp's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.3.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed: Protect against unbounded control response, fixes \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rpmf-866q-6p89\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rpmf-866q-6p89\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.3.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eChanged: Introduced an upper bound for total bytes of directory listing, fixes \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rp42-5vxx-qpwr\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rp42-5vxx-qpwr\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eAdded: Option to increase the upper bound for total bytes of directory listing in Client constructor.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.2.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed: Improve control character rejection, fixes \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-6v7q-wjvx-w8wg\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-6v7q-wjvx-w8wg\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.2.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed: Reject control character injection attempts using paths. See \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-chqc-8p9q-pq6q\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-chqc-8p9q-pq6q\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.2.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eChanged: Skip files with invalid name in downloadToDir.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded: Add the option to prevent the use of separate transfer host IPs when using PASV. (\u003ca href=\"https://redirect.github.com/patrickjuchli/basic-ftp/issues/259\"\u003e#259\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/blob/master/CHANGELOG.md\"\u003ebasic-ftp's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.3.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed: Protect against unbounded control response, fixes \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rpmf-866q-6p89\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rpmf-866q-6p89\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.3.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eChanged: Introduced an upper bound for total bytes of directory listing, fixes \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rp42-5vxx-qpwr\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-rp42-5vxx-qpwr\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eAdded: Option to increase the upper bound for total bytes of directory listing in Client constructor.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.2.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed: Improve control character rejection, fixes \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-6v7q-wjvx-w8wg\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-6v7q-wjvx-w8wg\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.2.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed: Reject control character injection attempts using paths. See \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-chqc-8p9q-pq6q\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-chqc-8p9q-pq6q\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.2.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eChanged: Skip files with invalid name in downloadToDir. Fixes security vulnerability CVE-2026-27699, see \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-5rq4-664w-9x2c\"\u003ehttps://github.com/patrickjuchli/basic-ftp/security/advisories/GHSA-5rq4-664w-9x2c\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded: Add the option to prevent the use of separate transfer host IPs when using PASV. (\u003ca href=\"https://redirect.github.com/patrickjuchli/basic-ftp/issues/259\"\u003e#259\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/980371bb6057d78d479b5cfc18683392abd2c45f\"\u003e\u003ccode\u003e980371b\u003c/code\u003e\u003c/a\u003e Guard against unbounded control response\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/50827c73ca6c1d786c97276e47be8a33d0f2277d\"\u003e\u003ccode\u003e50827c7\u003c/code\u003e\u003c/a\u003e Adjust changelog to match release notes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/c9378a8ff73b96e89f17525266d648ce495286a6\"\u003e\u003ccode\u003ec9378a8\u003c/code\u003e\u003c/a\u003e Fix test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/22abe4356782f499d97418f0a7a2c3bb02db72b7\"\u003e\u003ccode\u003e22abe43\u003c/code\u003e\u003c/a\u003e Update Github Actions\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/0feaaec3d4394bb3470edd006df933d2b6e64689\"\u003e\u003ccode\u003e0feaaec\u003c/code\u003e\u003c/a\u003e Fix test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/6629d7d7abe9169543a8ff60a6dc32e6fe7cf91c\"\u003e\u003ccode\u003e6629d7d\u003c/code\u003e\u003c/a\u003e Improve error message\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/9c3bf4f893470cd2418b54862eb9b609efc3d335\"\u003e\u003ccode\u003e9c3bf4f\u003c/code\u003e\u003c/a\u003e Set higher default value for max size of directory listing\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/acd3942c81ac27caf998b0ed13f3ce85c0fc6320\"\u003e\u003ccode\u003eacd3942\u003c/code\u003e\u003c/a\u003e Bump version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/130442932b1ef27a550c915f231c07eae01e665a\"\u003e\u003ccode\u003e1304429\u003c/code\u003e\u003c/a\u003e Offer maxListingBytes as an option\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/patrickjuchli/basic-ftp/commit/5cb5367e86d8a2991224fb2b82e4933d27c07904\"\u003e\u003ccode\u003e5cb5367\u003c/code\u003e\u003c/a\u003e Add bounded StringWriter\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/patrickjuchli/basic-ftp/compare/v5.0.5...v5.3.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~patrickjuchli\"\u003epatrickjuchli\u003c/a\u003e, a new releaser for basic-ftp since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `body-parser` from 1.20.2 to 1.20.8\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/body-parser/releases\"\u003ebody-parser's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.20.8\u003c/h2\u003e\n\u003ch2\u003eImportant\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eSame code base as \u003ca href=\"https://github.com/expressjs/body-parser/releases/tag/1.20.7\"\u003e1.20.7\u003c/a\u003e. This was created to test the new release process.\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eci: backport npm-publish workflow from master by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/769\"\u003eexpressjs/body-parser#769\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e1.20.8 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/770\"\u003eexpressjs/body-parser#770\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/body-parser/compare/1.20.7...1.20.8\"\u003ehttps://github.com/expressjs/body-parser/compare/1.20.7...1.20.8\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e1.20.7\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edocs: include security fix in 1.20.6 changes by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/747\"\u003eexpressjs/body-parser#747\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps: qs@~6.16.0 by \u003ca href=\"https://github.com/krzysdz\"\u003e\u003ccode\u003e@​krzysdz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/761\"\u003eexpressjs/body-parser#761\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e1.20.7 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/767\"\u003eexpressjs/body-parser#767\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/body-parser/compare/1.20.6...1.20.7\"\u003ehttps://github.com/expressjs/body-parser/compare/1.20.6...1.20.7\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e1.20.6\u003c/h2\u003e\n\u003ch2\u003eImportant: Security\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2025-13466\"\u003eCVE-2026-12590\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/body-parser/security/advisories/GHSA-v422-hmwv-36x6\"\u003eGHSA-v422-hmwv-36x6\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: improve limit option validation by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/741\"\u003eexpressjs/body-parser#741\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/body-parser/compare/1.20.5...1.20.6\"\u003ehttps://github.com/expressjs/body-parser/compare/1.20.5...1.20.6\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev1.20.5\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cp\u003eThe reason for this release is a fix to the extended urlencoded parser returning objects instead of arrays for large array inputs (\u0026gt; 100) on qs@6.14.2+. (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/716\"\u003eexpressjs/body-parser#716\u003c/a\u003e)\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003erefactor(json): simplify strict mode error string construction by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/692\"\u003eexpressjs/body-parser#692\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: correct off-by-one error in parameterCount by \u003ca href=\"https://github.com/abhu85\"\u003e\u003ccode\u003e@​abhu85\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/716\"\u003eexpressjs/body-parser#716\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps(qs): bump qs to 6.15.1 by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/722\"\u003eexpressjs/body-parser#722\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRelease: 1.20.5 by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/721\"\u003eexpressjs/body-parser#721\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/abhu85\"\u003e\u003ccode\u003e@​abhu85\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/716\"\u003eexpressjs/body-parser#716\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSpecial thanks to triager \u003ca href=\"https://github.com/krzysdz\"\u003e\u003ccode\u003e@​krzysdz\u003c/code\u003e\u003c/a\u003e for keeping this on our radar and effectively triaging the specific issue!\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/body-parser/compare/1.20.4...1.20.5\"\u003ehttps://github.com/expressjs/body-parser/compare/1.20.4...1.20.5\u003c/a\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/body-parser/blob/1.20.8/HISTORY.md\"\u003ebody-parser's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.20.8\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eSame code base as 1.20.7. This was created to test the new release process.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.20.7\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: qs@~6.16.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.20.6\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://github.com/expressjs/body-parser/security/advisories/GHSA-v422-hmwv-36x6\"\u003eGHSA-v422-hmwv-36x6\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: improve \u003ccode\u003elimit\u003c/code\u003e option validation (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/698\"\u003e#698\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eInvalid \u003ccode\u003elimit\u003c/code\u003e values (e.g. unparseable strings or \u003ccode\u003eNaN\u003c/code\u003e) now throw instead of being silently ignored, which previously disabled size limit enforcement\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enull\u003c/code\u003e and \u003ccode\u003eundefined\u003c/code\u003e fall back to the default 100kb limit\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.20.5\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003erefactor(json): simplify strict mode error string construction\u003c/li\u003e\n\u003cli\u003efix: extended urlencoded parsing of arrays with \u0026gt;100 elements (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/716\"\u003e#716\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003edeps: qs@~6.15.1\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.20.4\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: qs@~6.14.0\u003c/li\u003e\n\u003cli\u003edeps: use tilde notation for dependencies\u003c/li\u003e\n\u003cli\u003edeps: http-errors@~2.0.1\u003c/li\u003e\n\u003cli\u003edeps: raw-body@~2.5.3\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.20.3\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: qs@6.13.0\u003c/li\u003e\n\u003cli\u003eadd \u003ccode\u003edepth\u003c/code\u003e option to customize the depth level in the parser\u003c/li\u003e\n\u003cli\u003eIMPORTANT: The default \u003ccode\u003edepth\u003c/code\u003e level for parsing URL-encoded data is now \u003ccode\u003e32\u003c/code\u003e (previously was \u003ccode\u003eInfinity\u003c/code\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/5c08c2008eac79abddb8abfa5095491d02958d56\"\u003e\u003ccode\u003e5c08c20\u003c/code\u003e\u003c/a\u003e 1.20.8 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/770\"\u003e#770\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/0cea4f42a40996eafac441d0e71084afbe1407d4\"\u003e\u003ccode\u003e0cea4f4\u003c/code\u003e\u003c/a\u003e ci: backport npm-publish workflow from master (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/769\"\u003e#769\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/0f0f0d7f96fc7444407aef85a6d1fa363279e654\"\u003e\u003ccode\u003e0f0f0d7\u003c/code\u003e\u003c/a\u003e 1.20.7 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/767\"\u003e#767\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/355eb04ade7c27f57f93a0e90e26ed6f121becc5\"\u003e\u003ccode\u003e355eb04\u003c/code\u003e\u003c/a\u003e deps: qs@~6.16.0 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/761\"\u003e#761\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/8be369a5f8b0f4070ebb7a0ae9aca12db9d8f947\"\u003e\u003ccode\u003e8be369a\u003c/code\u003e\u003c/a\u003e docs: include security fix in 1.20.6 changes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/5cc4fb8867c93a3aa4455927e38858c9ab89ff43\"\u003e\u003ccode\u003e5cc4fb8\u003c/code\u003e\u003c/a\u003e 1.20.6 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/746\"\u003e#746\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/3492672eee593d5c158f239b6e9115498a5dbeac\"\u003e\u003ccode\u003e3492672\u003c/code\u003e\u003c/a\u003e fix: improve limit option validation (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/741\"\u003e#741\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/0defdbe7f95ad0d3bc007d3a7c59c8c0ab9e6575\"\u003e\u003ccode\u003e0defdbe\u003c/code\u003e\u003c/a\u003e release(patch): 1.20.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/cd0e7a000c53e7be7262d303e57a352b6a00db7f\"\u003e\u003ccode\u003ecd0e7a0\u003c/code\u003e\u003c/a\u003e deps(qs): bump qs to 6.15.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/6f24d7e8bcd9860b136920926ce86da1a7dd1d51\"\u003e\u003ccode\u003e6f24d7e\u003c/code\u003e\u003c/a\u003e fix: correct off-by-one error in parameterCount (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/716\"\u003e#716\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/body-parser/compare/1.20.2...1.20.8\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for body-parser since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `express` from 4.19.2 to 4.22.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/express/releases\"\u003eexpress's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.22.2\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: restore \u0026gt;20 array parsing for \u003ccode\u003ereq.query\u003c/code\u003e repeated keys (\u003ca href=\"https://github.com/expressjs/express/commit/8d09bfe6d88983da5c3e12cfdd54782c4dc675db\"\u003e\u003ccode\u003e8d09bfe6\u003c/code\u003e\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eThis also unifies array-cap behavior across notations. Indexed notation (\u003ccode\u003ea[0]=...\u003c/code\u003e) was historically capped at qs's default \u003ccode\u003earrayLimit\u003c/code\u003e of 20 even in older qs versions; after this change it also allows up to 1000 items.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: qs@~6.15.1\u003c/li\u003e\n\u003cli\u003edeps: body-parser@~1.20.5\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/suuuuuuminnnnnn\"\u003e\u003ccode\u003e@​suuuuuuminnnnnn\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/7021\"\u003eexpressjs/express#7021\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SAY-5\"\u003e\u003ccode\u003e@​SAY-5\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/7181\"\u003eexpressjs/express#7181\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/express/compare/v4.22.1...v4.22.2\"\u003ehttps://github.com/expressjs/express/compare/v4.22.1...v4.22.2\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev4.22.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cblockquote\u003e\n\u003cp\u003e[!IMPORTANT]\u003cbr /\u003e\nThe prior release (4.22.0) included an erroneous breaking change related to the extended query parser. There is no actual security vulnerability associated with this behavior (CVE-2024-51999 has been rejected). The change has been fully reverted in this release.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003cul\u003e\n\u003cli\u003eRelease: 4.22.1 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6934\"\u003eexpressjs/express#6934\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/express/compare/4.22.0...v4.22.1\"\u003ehttps://github.com/expressjs/express/compare/4.22.0...v4.22.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e4.22.0\u003c/h2\u003e\n\u003ch2\u003eImportant: Security\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2024-51999\"\u003eCVE-2024-51999\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6\"\u003eGHSA-pj86-cfqh-vqx6\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRefactor: improve readability by \u003ca href=\"https://github.com/sazk07\"\u003e\u003ccode\u003e@​sazk07\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6190\"\u003eexpressjs/express#6190\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add support for Node.js@23.0 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6080\"\u003eexpressjs/express#6080\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMethod functions with no path should error by \u003ca href=\"https://github.com/wesleytodd\"\u003e\u003ccode\u003e@​wesleytodd\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/5957\"\u003eexpressjs/express#5957\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: updated github actions ci workflow by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6323\"\u003eexpressjs/express#6323\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: reorder \u003ccode\u003enpm i\u003c/code\u003e steps to fix ci for older node versions by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6336\"\u003eexpressjs/express#6336\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBackport: ci: add node.js 24 to test matrix by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6506\"\u003eexpressjs/express#6506\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(4.x): wider range for query test skip by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6513\"\u003eexpressjs/express#6513\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003euse tilde notation for certain dependencies by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6905\"\u003eexpressjs/express#6905\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps: qs@6.14.0 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6909\"\u003eexpressjs/express#6909\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps: use tilde notation for \u003ccode\u003eqs\u003c/code\u003e by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6919\"\u003eexpressjs/express#6919\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRelease: 4.22.0 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6921\"\u003eexpressjs/express#6921\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/express/compare/4.21.2...4.22.0\"\u003ehttps://github.com/expressjs/express/compare/4.21.2...4.22.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e4.21.2\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/express/blob/v4.22.3/History.md\"\u003eexpress's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e4.22.3\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eAllow conditional revalidation for QUERY requests\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ereq.fresh\u003c/code\u003e now includes QUERY in the freshness check, so QUERY responses can return 304 when a validator matches\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: qs@~6.16.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.22.2\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003efix: restore \u0026gt;20 array parsing for \u003ccode\u003ereq.query\u003c/code\u003e repeated keys (\u003ca href=\"https://github.com/expressjs/express/commit/8d09bfe6d88983da5c3e12cfdd54782c4dc675db\"\u003e\u003ccode\u003e8d09bfe6\u003c/code\u003e\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eThis also unifies array-cap behavior across notations. Indexed notation (\u003ccode\u003ea[0]=...\u003c/code\u003e) was historically capped at qs's default \u003ccode\u003earrayLimit\u003c/code\u003e of 20 even in older qs versions; after this change it also allows up to 1000 items.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: qs@~6.15.1\u003c/li\u003e\n\u003cli\u003edeps: body-parser@~1.20.5\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.22.1\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eRevert security fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2024-51999\"\u003eCVE-2024-51999\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6\"\u003eGHSA-pj86-cfqh-vqx6\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eThe prior release (4.22.0) included an erroneous breaking change related to the extended query parser. There is no actual security vulnerability associated with this behavior (CVE-2024-51999 has been rejected). The change has been fully reverted in this release.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.22.0\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2024-51999\"\u003eCVE-2024-51999\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6\"\u003eGHSA-pj86-cfqh-vqx6\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003edeps: use tilde notation for dependencies\u003c/li\u003e\n\u003cli\u003edeps: qs@6.14.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.21.2\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: path-to-regexp@0.1.12\n\u003cul\u003e\n\u003cli\u003eFix backtracking protection\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: path-to-regexp@0.1.11\n\u003cul\u003e\n\u003cli\u003eThrows an error on invalid path values\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.21.1\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eBackported a fix for \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2024-47764\"\u003eCVE-2024-47764\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.21.0\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eDeprecate \u003ccode\u003eres.location(\u0026quot;back\u0026quot;)\u003c/code\u003e and \u003ccode\u003eres.redirect(\u0026quot;back\u0026quot;)\u003c/code\u003e magic string\u003c/li\u003e\n\u003cli\u003edeps: serve-static@1.16.2\n\u003cul\u003e\n\u003cli\u003eincludes send@0.19.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: finalhandler@1.3.1\u003c/li\u003e\n\u003cli\u003edeps: qs@6.13.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/899b52494e74327905c16164decdc6e51f803af8\"\u003e\u003ccode\u003e899b524\u003c/code\u003e\u003c/a\u003e 4.22.3 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7466\"\u003e#7466\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/1fad2c30eff02268bb9751f9d0cb6644c14b0fbb\"\u003e\u003ccode\u003e1fad2c3\u003c/code\u003e\u003c/a\u003e ci: add npm staged publication with dist-tag support (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7465\"\u003e#7465\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/41386506a9ca6874a79b304f1baafd50522e6078\"\u003e\u003ccode\u003e4138650\u003c/code\u003e\u003c/a\u003e deps: qs@~6.16.0 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7440\"\u003e#7440\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/61ccf2ea8c1bd19cbca6acfb7cd276c5fcd410d3\"\u003e\u003ccode\u003e61ccf2e\u003c/code\u003e\u003c/a\u003e feat: allow conditional revalidation for QUERY requests (v4) (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7377\"\u003e#7377\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/715101bd27ec9c14a7ccc8a37c476f330d98ad53\"\u003e\u003ccode\u003e715101b\u003c/code\u003e\u003c/a\u003e Update path-to-regexp to 0.1.13 because CVE-2026-4867 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7135\"\u003e#7135\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/f472e5fe28d7a4c1ec8b6832d504c46f8a056d1c\"\u003e\u003ccode\u003ef472e5f\u003c/code\u003e\u003c/a\u003e docs: fix the release date format for 4.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/df0abc9333a3398b97b71f6ea7cd77d5ea3e9f97\"\u003e\u003ccode\u003edf0abc9\u003c/code\u003e\u003c/a\u003e 4.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/836d36668ea750f78b4373b4de79bbd22634e6ec\"\u003e\u003ccode\u003e836d366\u003c/code\u003e\u003c/a\u003e \u003ccode\u003e4.x\u003c/code\u003e update qs to 6.15.1, body-parser 1.20.5 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7224\"\u003e#7224\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/8d09bfe6d88983da5c3e12cfdd54782c4dc675db\"\u003e\u003ccode\u003e8d09bfe\u003c/code\u003e\u003c/a\u003e fix: restore array parsing for req.query repeated keys (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7181\"\u003e#7181\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/d39e8ad1778a0b8a606a5a7b17096d0cc5ec722d\"\u003e\u003ccode\u003ed39e8ad\u003c/code\u003e\u003c/a\u003e deps: body-parser@~1.20.4 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/7021\"\u003e#7021\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/express/compare/4.19.2...v4.22.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for express since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `brace-expansion` from 2.0.1 to 2.1.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/juliangruber/brace-expansion/releases\"\u003ebrace-expansion's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBackport v5.0.6 change to v2 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/109\"\u003e#109\u003c/a\u003e)  c3a817c\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.1.0...v2.1.1\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v2.1.0...v2.1.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.0.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003epkg: publish on tag 2.x  14f1d91\u003c/li\u003e\n\u003cli\u003efmt  ed7780a\u003c/li\u003e\n\u003cli\u003eFix potential ReDoS Vulnerability or Inefficient Regular Expression (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/65\"\u003e#65\u003c/a\u003e)  36603d5\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.0.1...v2.0.2\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v2.0.1...v2.0.2\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/714b6228a5878cfc6b07dc319db0eb6376ab2c4d\"\u003e\u003ccode\u003e714b622\u003c/code\u003e\u003c/a\u003e 2.1.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/bdff773f98e5988616b7039cc9b508df5d640b22\"\u003e\u003ccode\u003ebdff773\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/5a5c07b25ea84a899322ebb820336260277cbe90\"\u003e\u003ccode\u003e5a5c07b\u003c/code\u003e\u003c/a\u003e 2.1.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/6463f2fd6a31f97a09c2f827513a7faaf96bde33\"\u003e\u003ccode\u003e6463f2f\u003c/code\u003e\u003c/a\u003e update lockfile\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1ba3c71f89fb3448c8be6dcf2d17b543c2738f16\"\u003e\u003ccode\u003e1ba3c71\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/aae3387e0d4c551480c963f1241abd3a80a279e6\"\u003e\u003ccode\u003eaae3387\u003c/code\u003e\u003c/a\u003e 2.1.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/5171e681c0922b7ae8bfaf9a331e309107be6edc\"\u003e\u003ccode\u003e5171e68\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/b25213dff0446d622f97d736420b9830ee1abc32\"\u003e\u003ccode\u003eb25213d\u003c/code\u003e\u003c/a\u003e 2.1.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1e30c930238d7162802d88a94189182def178dac\"\u003e\u003ccode\u003e1e30c93\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/878df3989e816dfb28cbe0d64de0b88738ff0ed6\"\u003e\u003ccode\u003e878df39\u003c/code\u003e\u003c/a\u003e 2.1.3\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.0.1...v2.1.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `cookie` from 0.4.2 to 0.7.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jshttp/cookie/releases\"\u003ecookie's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev0.7.2\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFixed\u003c/strong\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eFix object assignment of \u003ccode\u003ehasOwnProperty\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/jshttp/cookie/issues/177\"\u003e#177\u003c/...\n\n_Description has been truncated_","html_url":"https://github.com/helderharada/courses2025ForMe/pull/1","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/helderharada%2Fcourses2025ForMe/issues/1","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/1/packages"}},{"old_version":"10.4.5","new_version":"10.5.0","update_type":"minor","path":null,"pr_created_at":"2026-09-25T05:07:37.000Z","version_change":"10.4.5 → 10.5.0","issue":{"uuid":"5578431298","node_id":"PR_kwDOPgPDH88AAAABFDny6w","number":153,"state":"closed","title":"Bump glob from 10.4.5 to 10.5.0","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-09-25T05:09:25.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-25T05:07:37.000Z","updated_at":"2026-09-25T05:09:30.000Z","time_to_close":108,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"glob","old_version":"10.4.5","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"}],"path":null,"ecosystem":"npm"},"body":"Bumps [glob](https://github.com/isaacs/node-glob) from 10.4.5 to 10.5.0.\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.4.5...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=glob\u0026package-manager=npm_and_yarn\u0026previous-version=10.4.5\u0026new-version=10.5.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/raffertyuy/uy-kape/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/raffertyuy/uy-kape/pull/153","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/raffertyuy%2Fuy-kape/issues/153","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/153/packages"}},{"old_version":"10.4.5","new_version":"10.5.0","update_type":"minor","path":null,"pr_created_at":"2026-09-24T15:59:15.000Z","version_change":"10.4.5 → 10.5.0","issue":{"uuid":"5571038154","node_id":"PR_kwDONc9njM8AAAABE9uD0A","number":212,"state":"closed","title":"chore(deps): bump the frontend-security group across 1 directory with 3 updates","user":"dependabot[bot]","labels":["dependencies","major","javascript"],"assignees":[],"locked":false,"comments_count":3,"pull_request":true,"closed_at":"2026-09-24T16:14:48.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-24T15:59:15.000Z","updated_at":"2026-09-24T16:14:58.000Z","time_to_close":933,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"frontend-security","update_count":3,"packages":[{"name":"@vitest/mocker","old_version":"4.1.10","new_version":"5.0.1","repository_url":"https://github.com/vitest-dev/vitest"},{"name":"glob","old_version":"10.4.5","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"},{"name":"postcss-selector-parser","old_version":"7.1.0","new_version":"7.1.6","repository_url":"https://github.com/postcss/postcss-selector-parser"}],"path":null,"ecosystem":"npm"},"body":"Bumps the frontend-security group with 3 updates in the /frontend directory: [@vitest/mocker](https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker), [glob](https://github.com/isaacs/node-glob) and [postcss-selector-parser](https://github.com/postcss/postcss-selector-parser).\n\nUpdates `@vitest/mocker` from 4.1.10 to 5.0.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vitest-dev/vitest/releases\"\u003e@​vitest/mocker's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.0.1\u003c/h2\u003e\n\u003ch3\u003e   🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eui\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eMove trace attempts selector to viewer header  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e and \u003cstrong\u003eCodex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11189\"\u003evitest-dev/vitest#11189\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/5dc4b5c92\"\u003e\u003c!-- raw HTML omitted --\u003e(5dc4b)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd focused trace view layout mode  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e, \u003cstrong\u003eOpenCode (gpt-5.6-sol)\u003c/strong\u003e and \u003cstrong\u003eCodex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11190\"\u003evitest-dev/vitest#11190\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/376dc3bc1\"\u003e\u003c!-- raw HTML omitted --\u003e(376dc)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eExit 1 when vitest list fails collection  -  by \u003ca href=\"https://github.com/hamed-bavar\"\u003e\u003ccode\u003e@​hamed-bavar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11145\"\u003evitest-dev/vitest#11145\u003c/a\u003e and \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11146\"\u003evitest-dev/vitest#11146\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/6108b8197\"\u003e\u003c!-- raw HTML omitted --\u003e(6108b)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eKeep parse error details in static collection  -  by \u003ca href=\"https://github.com/hamed-bavar\"\u003e\u003ccode\u003e@​hamed-bavar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11150\"\u003evitest-dev/vitest#11150\u003c/a\u003e and \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11151\"\u003evitest-dev/vitest#11151\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/7c818153a\"\u003e\u003c!-- raw HTML omitted --\u003e(7c818)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid recursive prototype in automocking  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11195\"\u003evitest-dev/vitest#11195\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/99fc52591\"\u003e\u003c!-- raw HTML omitted --\u003e(99fc5)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePrevent false Vitest import resolution  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11196\"\u003evitest-dev/vitest#11196\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/b426c1976\"\u003e\u003c!-- raw HTML omitted --\u003e(b426c)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eKeep metadata file when clearing the cache  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11199\"\u003evitest-dev/vitest#11199\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/73614654a\"\u003e\u003c!-- raw HTML omitted --\u003e(73614)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCorrect typos in error message and comments  -  by \u003ca href=\"https://github.com/shinji00222\"\u003e\u003ccode\u003e@​shinji00222\u003c/code\u003e\u003c/a\u003e and \u003cstrong\u003eShinji\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11187\"\u003evitest-dev/vitest#11187\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/115c3f6d2\"\u003e\u003c!-- raw HTML omitted --\u003e(115c3)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eResolve ResolvedConfig exactOptionalPropertyTypes errors  -  by \u003ca href=\"https://github.com/LukeAbby\"\u003e\u003ccode\u003e@​LukeAbby\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11175\"\u003evitest-dev/vitest#11175\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/498fbe922\"\u003e\u003c!-- raw HTML omitted --\u003e(498fb)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eShare the server on self-referencing \u003ccode\u003eextends\u003c/code\u003e  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11034\"\u003evitest-dev/vitest#11034\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/23dda738c\"\u003e\u003c!-- raw HTML omitted --\u003e(23dda)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWarn when deprecated \u003ccode\u003edeps.optimizer.web\u003c/code\u003e is used  -  by \u003ca href=\"https://github.com/im10furry\"\u003e\u003ccode\u003e@​im10furry\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11214\"\u003evitest-dev/vitest#11214\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/2ce29d5fa\"\u003e\u003c!-- raw HTML omitted --\u003e(2ce29)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ebrowser\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eAvoid double quotes in \u003ccode\u003econfig.define\u003c/code\u003e  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11198\"\u003evitest-dev/vitest#11198\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/972e24bab\"\u003e\u003c!-- raw HTML omitted --\u003e(972e2)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edoctor\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eMeasure vm pools for custom environments  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11212\"\u003evitest-dev/vitest#11212\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/91ab1588c\"\u003e\u003c!-- raw HTML omitted --\u003e(91ab1)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eexpect\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eCorrect return value in \u003ccode\u003etoMatchAriaSnapshot\u003c/code\u003e  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11208\"\u003evitest-dev/vitest#11208\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/c119be016\"\u003e\u003c!-- raw HTML omitted --\u003e(c119b)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003efakeTimers\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eForce \u003ccode\u003equeueMicrotask\u003c/code\u003e and \u003ccode\u003enextTick\u003c/code\u003e in \u003ccode\u003etoNotFake\u003c/code\u003e  -  by \u003ca href=\"https://github.com/kingmakeruix\"\u003e\u003ccode\u003e@​kingmakeruix\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003ekingmakeruix\u003c/strong\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e, \u003cstrong\u003eCodex\u003c/strong\u003e and \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11261\"\u003evitest-dev/vitest#11261\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/a47d7908f\"\u003e\u003c!-- raw HTML omitted --\u003e(a47d7)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003esnapshot\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eReport obsolete keys next to skipped tests  -  by \u003ca href=\"https://github.com/hamed-bavar\"\u003e\u003ccode\u003e@​hamed-bavar\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e and \u003cstrong\u003eOpenCode (gpt-5.6-sol)\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11157\"\u003evitest-dev/vitest#11157\u003c/a\u003e and \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11158\"\u003evitest-dev/vitest#11158\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/17e2b22dd\"\u003e\u003c!-- raw HTML omitted --\u003e(17e2b)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etypes\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eMake public declarations self-contained  -  by \u003ca href=\"https://github.com/ZoeySigel\"\u003e\u003ccode\u003e@​ZoeySigel\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11141\"\u003evitest-dev/vitest#11141\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/455466c16\"\u003e\u003c!-- raw HTML omitted --\u003e(45546)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eui\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eFix collapse/expand suite with file name search  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e and \u003cstrong\u003eCodex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11260\"\u003evitest-dev/vitest#11260\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/0a7122daa\"\u003e\u003c!-- raw HTML omitted --\u003e(0a712)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix explorer file summary count  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e, \u003cstrong\u003eOpenCode (gpt-5.6-sol)\u003c/strong\u003e and \u003cstrong\u003eCodex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11125\"\u003evitest-dev/vitest#11125\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/05982297d\"\u003e\u003c!-- raw HTML omitted --\u003e(05982)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eutils\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003edeepMerge\u003c/code\u003e to handle prototype  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eHiroshi Ogawa\u003c/strong\u003e and \u003cstrong\u003eCodex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/11215\"\u003evitest-dev/vitest#11215\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/4944cf498\"\u003e\u003c!-- raw HTML omitted --\u003e(4944c)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/vitest-dev/vitest/compare/v5.0.0...v5.0.1\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev5.0.0\u003c/h2\u003e\n\u003cp\u003eVitest 5 is officially out! This release focuses on performance and brings a lot of new features while fixing long-standing bugs. See our \u003ca href=\"https://vitest.dev/blog/vitest-5.html\"\u003eblog post\u003c/a\u003e for the official announcement.\u003c/p\u003e\n\u003ch3\u003e   🚨 Breaking Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eReplace \u003ccode\u003eloupe.inspect\u003c/code\u003e with pretty-format  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e, \u003cstrong\u003eClaude Opus 5 (1M context)\u003c/strong\u003e and \u003cstrong\u003eOpenAI Codex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/9609\"\u003evitest-dev/vitest#9609\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/3f802da4b\"\u003e\u003c!-- raw HTML omitted --\u003e(3f802)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove quotes from string values in \u003ccode\u003etest.for/each\u003c/code\u003e title \u003ccode\u003e$\u003c/code\u003e variable (take 2)  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10170\"\u003evitest-dev/vitest#10170\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/04d37e9d7\"\u003e\u003c!-- raw HTML omitted --\u003e(04d37)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDefault \u003ccode\u003eattachmentsDir\u003c/code\u003e from \u003ccode\u003e.vitest-attachements/\u003c/code\u003e to \u003ccode\u003e.vitest/attachments/\u003c/code\u003e  -  by \u003ca href=\"https://github.com/MdSadiqMd\"\u003e\u003ccode\u003e@​MdSadiqMd\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10186\"\u003evitest-dev/vitest#10186\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/1ba7338c3\"\u003e\u003c!-- raw HTML omitted --\u003e(1ba73)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove \u003ccode\u003esequential\u003c/code\u003e test/suite options in favor of \u003ccode\u003econcurrent\u003c/code\u003e  -  by \u003ca href=\"https://github.com/hi-ogawa\"\u003e\u003ccode\u003e@​hi-ogawa\u003c/code\u003e\u003c/a\u003e and \u003cstrong\u003eOpenAI Codex\u003c/strong\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10198\"\u003evitest-dev/vitest#10198\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/9229f2edc\"\u003e\u003c!-- raw HTML omitted --\u003e(9229f)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRepresent locator as an object instead of a string  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10212\"\u003evitest-dev/vitest#10212\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/80f07edf6\"\u003e\u003c!-- raw HTML omitted --\u003e(80f07)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eInline \u003ccode\u003eexpect\u003c/code\u003e package  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10221\"\u003evitest-dev/vitest#10221\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/ad16223e7\"\u003e\u003c!-- raw HTML omitted --\u003e(ad162)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove deprecated entry points  -  by \u003ca href=\"https://github.com/sheremet-va\"\u003e\u003ccode\u003e@​sheremet-va\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vitest-dev/vitest/issues/10222\"\u003evitest-dev/vitest#10222\u003c/a\u003e \u003ca href=\"https://github.com/vitest-dev/vitest/commit/994c6ddb9\"\u003e\u003c!-- raw HTML omitted --\u003e(994c6)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/03630a5995d10455fa136be53bfb2b2409381106\"\u003e\u003ccode\u003e03630a5\u003c/code\u003e\u003c/a\u003e chore: release v5.0.1 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/11275\"\u003e#11275\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/f441c6fab25e579c5b7dd3dd50538416f415fbae\"\u003e\u003ccode\u003ef441c6f\u003c/code\u003e\u003c/a\u003e chore: release v5.0.0 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/11130\"\u003e#11130\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/897f51fd2493046c52ec9539b7d02fe3763bd63e\"\u003e\u003ccode\u003e897f51f\u003c/code\u003e\u003c/a\u003e chore: release v5.0.0-rc.4 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/11107\"\u003e#11107\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/7db80dc27e5948010c00160ed0b86570baad6ce8\"\u003e\u003ccode\u003e7db80dc\u003c/code\u003e\u003c/a\u003e chore: release v5.0.0-rc.3 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/11089\"\u003e#11089\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/732df2c2b4bc73e8fcddc256228e43c6e479a87e\"\u003e\u003ccode\u003e732df2c\u003c/code\u003e\u003c/a\u003e fix(deps): update all non-major dependencies (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/11043\"\u003e#11043\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/1e9f80ec18c06be06211c93536d90a81955e661a\"\u003e\u003ccode\u003e1e9f80e\u003c/code\u003e\u003c/a\u003e perf(vm): don't prewarm modules the worker never requests (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/11033\"\u003e#11033\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/af83d1b1933b5d74c421d30849717369b828de0b\"\u003e\u003ccode\u003eaf83d1b\u003c/code\u003e\u003c/a\u003e chore: release v5.0.0-rc.2 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/10976\"\u003e#10976\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/8ff9b9a9efca7c6cfd5243569440de8d7a33aec4\"\u003e\u003ccode\u003e8ff9b9a\u003c/code\u003e\u003c/a\u003e fix(mocker): restrict redirect mocks to the fs allowlist (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/10972\"\u003e#10972\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/65263d74e6783cf052e1eff2f2a4e371bbd40635\"\u003e\u003ccode\u003e65263d7\u003c/code\u003e\u003c/a\u003e fix(deps): update all non-major dependencies (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/10966\"\u003e#10966\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitest-dev/vitest/commit/a7fa111fef94bdc80ca9614c4e20b56f3393c920\"\u003e\u003ccode\u003ea7fa111\u003c/code\u003e\u003c/a\u003e chore: release v5.0.0-rc.1 (\u003ca href=\"https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker/issues/10920\"\u003e#10920\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vitest-dev/vitest/commits/v5.0.1/packages/mocker\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `glob` from 10.4.5 to 10.5.0\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.4.5...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `postcss-selector-parser` from 7.1.0 to 7.1.6\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/postcss-selector-parser/releases\"\u003epostcss-selector-parser's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e7.1.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: parse flat selectors in linear time, closing a CPU exhaustion vulnerability (\u003ca href=\"https://github.com/advisories/GHSA-rj75-hqrm-r3gf\"\u003eGHSA-rj75-hqrm-r3gf\u003c/a\u003e, reported by Wayde Shi)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: don't treat a non-prefix token before \u003ccode\u003e|\u003c/code\u003e as a namespace (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/324\"\u003e#324\u003c/a\u003e by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: preserve whitespace before a \u003ccode\u003e*\u003c/code\u003e namespace in attribute selectors (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/325\"\u003e#325\u003c/a\u003e by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: TypeError on unclosed \u003ccode\u003e[\u003c/code\u003e, \u003ccode\u003e(\u003c/code\u003e and trailing \u003ccode\u003e|\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/330\"\u003e#330\u003c/a\u003e by \u003ca href=\"https://github.com/theRizwan\"\u003e\u003ccode\u003e@​theRizwan\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: tolerate non-node children when serializing selectors\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImprove fix CVE-2026-9358 (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 (clone/walk)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://github.com/advisories/GHSA-w9m9-85wc-3x92\"\u003eCVE-2026-9358\u003c/a\u003e (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/316\"\u003e#316\u003c/a\u003e by \u003ca href=\"https://github.com/MoOx\"\u003e\u003ccode\u003e@​MoOx\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.1.1\u003c/h2\u003e\n\u003ch1\u003e7.1.1\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eperf: replace startsWith with strict equality (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/308\"\u003e#308\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(types): add walkUniversal declaration (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/311\"\u003e#311\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/postcss-selector-parser/blob/main/CHANGELOG.md\"\u003epostcss-selector-parser's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e7.1.6 - 2026-09-03\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: parse flat selectors in linear time, closing a CPU exhaustion vulnerability (\u003ca href=\"https://github.com/advisories/GHSA-rj75-hqrm-r3gf\"\u003eGHSA-rj75-hqrm-r3gf\u003c/a\u003e, reported by Wayde Shi)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.5 - 2026-08-07\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: don't treat a non-prefix token before \u003ccode\u003e|\u003c/code\u003e as a namespace (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/324\"\u003e#324\u003c/a\u003e by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: preserve whitespace before a \u003ccode\u003e*\u003c/code\u003e namespace in attribute selectors (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/325\"\u003e#325\u003c/a\u003e by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: TypeError on unclosed \u003ccode\u003e[\u003c/code\u003e, \u003ccode\u003e(\u003c/code\u003e and trailing \u003ccode\u003e|\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/330\"\u003e#330\u003c/a\u003e by \u003ca href=\"https://github.com/theRizwan\"\u003e\u003ccode\u003e@​theRizwan\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.4 - 2026-06-11\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: tolerate non-node children when serializing selectors\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.3 - 2026-06-11\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImprove fix CVE-2026-9358 (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 (clone/walk)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.2 - 2026-06-09\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://github.com/advisories/GHSA-w9m9-85wc-3x92\"\u003eCVE-2026-9358\u003c/a\u003e (NVD) / SNYK-JS-POSTCSSSELECTORPARSER-16873882 (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/pull/316\"\u003e#316\u003c/a\u003e by \u003ca href=\"https://github.com/MoOx\"\u003e\u003ccode\u003e@​MoOx\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eperf: replace startsWith with strict equality (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/308\"\u003e#308\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(types): add walkUniversal declaration (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/311\"\u003e#311\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/4eb3468e754f9f94d2092d103767bae98aa41438\"\u003e\u003ccode\u003e4eb3468\u003c/code\u003e\u003c/a\u003e 7.1.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/62b191792df0a0bc56062e5a875bc74aae2a51cd\"\u003e\u003ccode\u003e62b1917\u003c/code\u003e\u003c/a\u003e fix: parse flat selectors in linear time, closing a CPU exhaustion vulnerability\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/e33e9bca3e9afd7ba07ffaad4fe0868d421dfb34\"\u003e\u003ccode\u003ee33e9bc\u003c/code\u003e\u003c/a\u003e 7.1.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/6f4e6c1def46c2591f6874d2cd39a1aec767d5bb\"\u003e\u003ccode\u003e6f4e6c1\u003c/code\u003e\u003c/a\u003e fix: TypeError on unclosed \u003ccode\u003e[\u003c/code\u003e, \u003ccode\u003e(\u003c/code\u003e and trailing \u003ccode\u003e|\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/330\"\u003e#330\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/4d8437ffc4a510606b78f0bc762620fcff2b1d7c\"\u003e\u003ccode\u003e4d8437f\u003c/code\u003e\u003c/a\u003e fix: preserve whitespace before a \u003ccode\u003e*\u003c/code\u003e namespace in attribute selectors (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/325\"\u003e#325\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/e2f902954c83f6580eaacdf174232882e293cd5a\"\u003e\u003ccode\u003ee2f9029\u003c/code\u003e\u003c/a\u003e fix: don't treat a non-prefix token before \u003ccode\u003e|\u003c/code\u003e as a namespace (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/dd50ee11ad57e3ac1b901864f0d55a702eef0780\"\u003e\u003ccode\u003edd50ee1\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump postcss from 8.5.18 to 8.5.23 (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/331\"\u003e#331\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/7e3abb2c7250bb8ef1e7a8d196d0ea0ca47b8430\"\u003e\u003ccode\u003e7e3abb2\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump postcss from 8.5.15 to 8.5.18 (\u003ca href=\"https://redirect.github.com/postcss/postcss-selector-parser/issues/328\"\u003e#328\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/4a7e4e3685db8ab8e52e51ecdbe8162a8568f70c\"\u003e\u003ccode\u003e4a7e4e3\u003c/code\u003e\u003c/a\u003e 7.1.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/postcss-selector-parser/commit/e2021c523d5ef1bf27836aef3bd724a28ba7894f\"\u003e\u003ccode\u003ee2021c5\u003c/code\u003e\u003c/a\u003e fix: tolerate non-node children when serializing selectors\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/postcss/postcss-selector-parser/compare/v7.1.0...7.1.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~moox\"\u003emoox\u003c/a\u003e, a new releaser for postcss-selector-parser since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version modifies \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/FPGSchiba/vcs-srs-server/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/FPGSchiba/vcs-srs-server/pull/212","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/FPGSchiba%2Fvcs-srs-server/issues/212","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/212/packages"}},{"old_version":"10.5.0","new_version":"13.0.6","update_type":"major","path":"/editors/vscode","pr_created_at":"2026-09-21T20:11:39.000Z","version_change":"10.5.0 → 13.0.6","issue":{"uuid":"5531948374","node_id":"PR_kwDOUkhE8c8AAAABEeyjfA","number":10,"state":"closed","title":"Bump glob from 10.5.0 to 13.0.6 in /editors/vscode","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-09-21T20:16:20.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-21T20:11:39.000Z","updated_at":"2026-09-21T20:17:03.000Z","time_to_close":281,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"glob","old_version":"10.5.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"}],"path":"/editors/vscode","ecosystem":"npm"},"body":"Bumps [glob](https://github.com/isaacs/node-glob) from 10.5.0 to 13.0.6.\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-glob/blob/main/changelog.md\"\u003eglob's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003echangeglob\u003c/h1\u003e\n\u003ch2\u003e13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMove the CLI program out to a separate package, \u003ccode\u003eglob-bin\u003c/code\u003e.\nInstall that if you'd like to continue using glob from the\ncommand line.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove the unsafe \u003ccode\u003e--shell\u003c/code\u003e option. The \u003ccode\u003e--shell\u003c/code\u003e option is now\nONLY supported on known shells where the behavior can be\nimplemented safely.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.1\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/isaacs/node-glob/security/advisories/GHSA-5j98-mcp5-4vw2\"\u003eGHSA-5j98-mcp5-4vw2\u003c/a\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--shell\u003c/code\u003e option for the command line, with a warning\nthat this is unsafe. (It will be removed in v12.)\u003c/li\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--cmd-arg\u003c/code\u003e/\u003ccode\u003e-g\u003c/code\u003e as a way to \u003cem\u003esafely\u003c/em\u003e add positional\narguments to the command provided to the CLI tool.\u003c/li\u003e\n\u003cli\u003eDetect commands with space or quote characters on known shells,\nand pass positional arguments to them safely, avoiding\n\u003ccode\u003eshell:true\u003c/code\u003e execution.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node before v20\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eincludeChildMatches: false\u003c/code\u003e option\u003c/li\u003e\n\u003cli\u003eExport the \u003ccode\u003eIgnore\u003c/code\u003e class\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e--default -p\u003c/code\u003e flag to provide a default pattern\u003c/li\u003e\n\u003cli\u003eexclude symbolic links to directories when \u003ccode\u003efollow\u003c/code\u003e and \u003ccode\u003enodir\u003c/code\u003e\nare both set\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd glob cli\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReturn \u003ccode\u003e'.'\u003c/code\u003e instead of the empty string \u003ccode\u003e''\u003c/code\u003e when the current\nworking directory is returned as a match.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eposix: true\u003c/code\u003e option to return \u003ccode\u003e/\u003c/code\u003e delimited paths, even on\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/e80cb38ae60d6cbff9e75f39032a994858994d35\"\u003e\u003ccode\u003ee80cb38\u003c/code\u003e\u003c/a\u003e 13.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/9cdbbfff75c64fb158c8842d4d0eb3e908676a41\"\u003e\u003ccode\u003e9cdbbff\u003c/code\u003e\u003c/a\u003e revert tsgo, not ready for test coverage correctness yet\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/89c99ba8e276438b8e31ce878b63186e2cd375b4\"\u003e\u003ccode\u003e89c99ba\u003c/code\u003e\u003c/a\u003e use tsgo compiler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/b7275d54f294174607f544acf07cc7ec526b7878\"\u003e\u003ccode\u003eb7275d5\u003c/code\u003e\u003c/a\u003e update deps, expand engines to include node 18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/942e360a669e0c378c0abd261e7d329ca2cee661\"\u003e\u003ccode\u003e942e360\u003c/code\u003e\u003c/a\u003e update workflows, pull taprc out of package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/4a0d53c7531f3f0df97f9e4d26c78489e7f6d7ef\"\u003e\u003ccode\u003e4a0d53c\u003c/code\u003e\u003c/a\u003e update tap for mockImport bugfix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/ef94ad2696c12129628208cf4e38575e7240c1c4\"\u003e\u003ccode\u003eef94ad2\u003c/code\u003e\u003c/a\u003e update tap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/180c2d43cb135f134c0c5446408dc107c79a5a9b\"\u003e\u003ccode\u003e180c2d4\u003c/code\u003e\u003c/a\u003e update docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/37993c86faddcb780458b2d7ae3c2ead7a84bf31\"\u003e\u003ccode\u003e37993c8\u003c/code\u003e\u003c/a\u003e remove stray console.error in test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/03ae4c244cac6331817158b0bc12effd30deeb43\"\u003e\u003ccode\u003e03ae4c2\u003c/code\u003e\u003c/a\u003e 13.0.5\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.5.0...v13.0.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=glob\u0026package-manager=npm_and_yarn\u0026previous-version=10.5.0\u0026new-version=13.0.6)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/Sunrisepeak/mcpp-language-server/pull/10","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/Sunrisepeak%2Fmcpp-language-server/issues/10","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/10/packages"}},{"old_version":"10.5.0","new_version":"13.0.6","update_type":"major","path":null,"pr_created_at":"2026-09-21T11:11:59.000Z","version_change":"10.5.0 → 13.0.6","issue":{"uuid":"5526186170","node_id":"PR_kwDOSRFXP88AAAABEaJ24Q","number":121,"state":"closed","title":"deps(deps): bump the major group with 56 updates","user":"dependabot[bot]","labels":["invalid","dependencies"],"assignees":[],"locked":false,"comments_count":3,"pull_request":true,"closed_at":"2026-09-21T11:12:23.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-21T11:11:59.000Z","updated_at":"2026-09-21T11:12:32.000Z","time_to_close":24,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"deps(deps): bump","group_name":"major","update_count":56,"packages":[{"name":"body-parser","old_version":"1.20.8","new_version":"2.3.0","repository_url":"https://github.com/expressjs/body-parser"},{"name":"check-dependencies","old_version":"1.1.1","new_version":"2.0.0","repository_url":"https://github.com/mgol/check-dependencies"},{"name":"config","old_version":"3.3.12","new_version":"5.0.1","repository_url":"https://github.com/node-config/node-config"},{"name":"express","old_version":"4.22.3","new_version":"5.2.1","repository_url":"https://github.com/expressjs/express"},{"name":"express-jwt","old_version":"0.1.3","new_version":"8.5.1","repository_url":"https://github.com/auth0/express-jwt"},{"name":"express-rate-limit","old_version":"7.5.1","new_version":"8.7.0","repository_url":"https://github.com/express-rate-limit/express-rate-limit"},{"name":"express-robots-txt","old_version":"0.5.0","new_version":"1.0.0","repository_url":"https://github.com/modosc/express-robots-txt"},{"name":"file-type","old_version":"16.5.4","new_version":"22.1.1","repository_url":"https://github.com/sindresorhus/file-type"},{"name":"fs-extra","old_version":"9.1.0","new_version":"11.4.0","repository_url":"https://github.com/jprichardson/node-fs-extra"},{"name":"fuzzball","old_version":"1.4.0","new_version":"2.2.6","repository_url":"https://github.com/nol13/fuzzball.js"},{"name":"glob","old_version":"10.5.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"},{"name":"grunt-contrib-compress","old_version":"1.6.0","new_version":"2.0.0","repository_url":"https://github.com/gruntjs/grunt-contrib-compress"},{"name":"helmet","old_version":"4.6.0","new_version":"8.3.0","repository_url":"https://github.com/helmetjs/helmet"},{"name":"html-entities","old_version":"1.4.0","new_version":"2.6.0","repository_url":"https://github.com/mdevils/html-entities"},{"name":"js-yaml","old_version":"3.15.2","new_version":"5.4.2","repository_url":"https://github.com/nodeca/js-yaml"},{"name":"jsonwebtoken","old_version":"0.4.0","new_version":"9.0.3","repository_url":"https://github.com/auth0/node-jsonwebtoken"},{"name":"multer","old_version":"1.4.5-lts.2","new_version":"2.4.0","repository_url":"https://github.com/expressjs/multer"},{"name":"otplib","old_version":"12.0.1","new_version":"13.5.0","repository_url":"https://github.com/yeojz/otplib"},{"name":"prom-client","old_version":"14.2.0","new_version":"15.1.3","repository_url":"https://github.com/siimon/prom-client"},{"name":"sanitize-html","old_version":"1.4.2","new_version":"2.17.7","repository_url":"https://github.com/apostrophecms/apostrophe"},{"name":"socket.io","old_version":"3.1.2","new_version":"4.8.3","repository_url":"https://github.com/socketio/socket.io"},{"name":"sqlite3","old_version":"5.1.7","new_version":"6.0.1","repository_url":"https://github.com/TryGhost/node-sqlite3"},{"name":"ts-node-dev","old_version":"1.1.8","new_version":"2.0.0","repository_url":"https://github.com/whitecolor/ts-node-dev"},{"name":"@types/chai","old_version":"4.3.20","new_version":"5.2.3","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/config","old_version":"3.3.5","new_version":"4.4.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/diff","old_version":"7.0.2","new_version":"8.0.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/express","old_version":"4.17.25","new_version":"5.0.6","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/express-jwt","old_version":"6.0.4","new_version":"7.4.4","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/fs-extra","old_version":"9.0.13","new_version":"11.0.4","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/glob","old_version":"7.2.0","new_version":"9.0.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/jest","old_version":"26.0.24","new_version":"30.0.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/js-yaml","old_version":"3.12.10","new_version":"4.0.9","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/jsonwebtoken","old_version":"8.5.9","new_version":"9.0.10","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/mocha","old_version":"8.2.3","new_version":"10.0.10","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/multer","old_version":"1.4.13","new_version":"2.2.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/node","old_version":"20.19.43","new_version":"26.6.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/sanitize-html","old_version":"1.27.2","new_version":"2.16.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/sequelize","old_version":"4.28.20","new_version":"6.12.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/sinon","old_version":"10.0.20","new_version":"22.0.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/sinon-chai","old_version":"3.2.12","new_version":"4.0.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/socket.io","old_version":"2.1.13","new_version":"3.0.2","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/socket.io-client","old_version":"1.4.36","new_version":"3.0.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@typescript-eslint/eslint-plugin","old_version":"6.18.1","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/parser","old_version":"6.18.1","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"chai","old_version":"4.5.0","new_version":"6.2.2","repository_url":"https://github.com/chaijs/chai"},{"name":"concurrently","old_version":"5.3.0","new_version":"10.0.5","repository_url":"https://github.com/open-cli-tools/concurrently"},{"name":"cypress","old_version":"13.17.0","new_version":"16.1.0","repository_url":"https://github.com/cypress-io/cypress"},{"name":"eslint","old_version":"8.57.1","new_version":"10.10.0","repository_url":"https://github.com/eslint/eslint"},{"name":"eslint-plugin-promise","old_version":"6.6.0","new_version":"7.3.0","repository_url":"https://github.com/eslint-community/eslint-plugin-promise"},{"name":"jest","old_version":"29.7.0","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"mocha","old_version":"8.4.0","new_version":"12.0.2","repository_url":"https://github.com/mochajs/mocha"},{"name":"nyc","old_version":"15.1.0","new_version":"18.0.0","repository_url":"https://github.com/istanbuljs/nyc"},{"name":"sinon","old_version":"11.1.2","new_version":"22.1.0","repository_url":"https://github.com/sinonjs/sinon"},{"name":"sinon-chai","old_version":"3.7.0","new_version":"4.0.1","repository_url":"https://github.com/chaijs/sinon-chai"},{"name":"socket.io-client","old_version":"3.1.3","new_version":"4.8.3","repository_url":"https://github.com/socketio/socket.io"},{"name":"typescript","old_version":"5.3.3","new_version":"7.0.2","repository_url":"https://github.com/microsoft/TypeScript"}],"path":null,"ecosystem":"npm"},"body":"Bumps the major group with 56 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [body-parser](https://github.com/expressjs/body-parser) | `1.20.8` | `2.3.0` |\n| [check-dependencies](https://github.com/mgol/check-dependencies) | `1.1.1` | `2.0.0` |\n| [config](https://github.com/node-config/node-config) | `3.3.12` | `5.0.1` |\n| [express](https://github.com/expressjs/express) | `4.22.3` | `5.2.1` |\n| [express-jwt](https://github.com/auth0/express-jwt) | `0.1.3` | `8.5.1` |\n| [express-rate-limit](https://github.com/express-rate-limit/express-rate-limit) | `7.5.1` | `8.7.0` |\n| [express-robots-txt](https://github.com/modosc/express-robots-txt) | `0.5.0` | `1.0.0` |\n| [file-type](https://github.com/sindresorhus/file-type) | `16.5.4` | `22.1.1` |\n| [fs-extra](https://github.com/jprichardson/node-fs-extra) | `9.1.0` | `11.4.0` |\n| [fuzzball](https://github.com/nol13/fuzzball.js) | `1.4.0` | `2.2.6` |\n| [glob](https://github.com/isaacs/node-glob) | `10.5.0` | `13.0.6` |\n| [grunt-contrib-compress](https://github.com/gruntjs/grunt-contrib-compress) | `1.6.0` | `2.0.0` |\n| [helmet](https://github.com/helmetjs/helmet) | `4.6.0` | `8.3.0` |\n| [html-entities](https://github.com/mdevils/html-entities) | `1.4.0` | `2.6.0` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `3.15.2` | `5.4.2` |\n| [jsonwebtoken](https://github.com/auth0/node-jsonwebtoken) | `0.4.0` | `9.0.3` |\n| [multer](https://github.com/expressjs/multer) | `1.4.5-lts.2` | `2.4.0` |\n| [otplib](https://github.com/yeojz/otplib/tree/HEAD/packages/otplib) | `12.0.1` | `13.5.0` |\n| [prom-client](https://github.com/siimon/prom-client) | `14.2.0` | `15.1.3` |\n| [sanitize-html](https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html) | `1.4.2` | `2.17.7` |\n| [socket.io](https://github.com/socketio/socket.io) | `3.1.2` | `4.8.3` |\n| [sqlite3](https://github.com/TryGhost/node-sqlite3) | `5.1.7` | `6.0.1` |\n| [ts-node-dev](https://github.com/whitecolor/ts-node-dev) | `1.1.8` | `2.0.0` |\n| [@types/chai](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/chai) | `4.3.20` | `5.2.3` |\n| [@types/config](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/config) | `3.3.5` | `4.4.0` |\n| [@types/diff](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/diff) | `7.0.2` | `8.0.0` |\n| [@types/express](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/express) | `4.17.25` | `5.0.6` |\n| [@types/express-jwt](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/express-jwt) | `6.0.4` | `7.4.4` |\n| [@types/fs-extra](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/fs-extra) | `9.0.13` | `11.0.4` |\n| [@types/glob](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/glob) | `7.2.0` | `9.0.0` |\n| [@types/jest](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/jest) | `26.0.24` | `30.0.0` |\n| [@types/js-yaml](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/js-yaml) | `3.12.10` | `4.0.9` |\n| [@types/jsonwebtoken](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/jsonwebtoken) | `8.5.9` | `9.0.10` |\n| [@types/mocha](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/mocha) | `8.2.3` | `10.0.10` |\n| [@types/multer](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/multer) | `1.4.13` | `2.2.0` |\n| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `20.19.43` | `26.6.1` |\n| [@types/sanitize-html](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/sanitize-html) | `1.27.2` | `2.16.1` |\n| [@types/sequelize](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/sequelize) | `4.28.20` | `6.12.0` |\n| [@types/sinon](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/sinon) | `10.0.20` | `22.0.0` |\n| [@types/sinon-chai](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/sinon-chai) | `3.2.12` | `4.0.0` |\n| [@types/socket.io](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/socket.io) | `2.1.13` | `3.0.2` |\n| [@types/socket.io-client](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/socket.io-client) | `1.4.36` | `3.0.0` |\n| [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) | `6.18.1` | `8.70.0` |\n| [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) | `6.18.1` | `8.70.0` |\n| [chai](https://github.com/chaijs/chai) | `4.5.0` | `6.2.2` |\n| [concurrently](https://github.com/open-cli-tools/concurrently) | `5.3.0` | `10.0.5` |\n| [cypress](https://github.com/cypress-io/cypress) | `13.17.0` | `16.1.0` |\n| [eslint](https://github.com/eslint/eslint) | `8.57.1` | `10.10.0` |\n| [eslint-plugin-promise](https://github.com/eslint-community/eslint-plugin-promise) | `6.6.0` | `7.3.0` |\n| [jest](https://github.com/jestjs/jest/tree/HEAD/packages/jest) | `29.7.0` | `30.5.1` |\n| [mocha](https://github.com/mochajs/mocha) | `8.4.0` | `12.0.2` |\n| [nyc](https://github.com/istanbuljs/nyc) | `15.1.0` | `18.0.0` |\n| [sinon](https://github.com/sinonjs/sinon) | `11.1.2` | `22.1.0` |\n| [sinon-chai](https://github.com/chaijs/sinon-chai) | `3.7.0` | `4.0.1` |\n| [socket.io-client](https://github.com/socketio/socket.io) | `3.1.3` | `4.8.3` |\n| [typescript](https://github.com/microsoft/TypeScript) | `5.3.3` | `7.0.2` |\n\nUpdates `body-parser` from 1.20.8 to 2.3.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/body-parser/releases\"\u003ebody-parser's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.3.0\u003c/h2\u003e\n\u003ch2\u003eImportant: Security\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2025-13466\"\u003eCVE-2026-12590\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/body-parser/security/advisories/GHSA-v422-hmwv-36x6\"\u003eGHSA-v422-hmwv-36x6\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ebuild(deps): bump actions/download-artifact from 6.0.0 to 7.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/681\"\u003eexpressjs/body-parser#681\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/checkout from 5.0.0 to 6.0.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/682\"\u003eexpressjs/body-parser#682\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.0.0 to 6.1.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/683\"\u003eexpressjs/body-parser#683\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/upload-artifact from 5.0.0 to 6.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/685\"\u003eexpressjs/body-parser#685\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.31.2 to 4.31.9 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/684\"\u003eexpressjs/body-parser#684\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eperf(urlencoded): move empty-body guard to avoid extra function closure by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/647\"\u003eexpressjs/body-parser#647\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove ESM compatibility by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/697\"\u003eexpressjs/body-parser#697\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: add recommendations for configuring payload limits by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/699\"\u003eexpressjs/body-parser#699\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.1.0 to 6.2.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/701\"\u003eexpressjs/body-parser#701\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.31.10 to 4.32.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/702\"\u003eexpressjs/body-parser#702\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/checkout from 6.0.1 to 6.0.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/700\"\u003eexpressjs/body-parser#700\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore:  add explicit type commonjs to package.json by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/711\"\u003eexpressjs/body-parser#711\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps: update dependencies to latest versions by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/708\"\u003eexpressjs/body-parser#708\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/download-artifact from 7.0.0 to 8.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/712\"\u003eexpressjs/body-parser#712\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.32.0 to 4.32.4 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/713\"\u003eexpressjs/body-parser#713\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/upload-artifact from 6.0.0 to 7.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/714\"\u003eexpressjs/body-parser#714\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: improve limit option validation by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/698\"\u003eexpressjs/body-parser#698\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.32.4 to 4.35.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/719\"\u003eexpressjs/body-parser#719\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.2.0 to 6.3.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/718\"\u003eexpressjs/body-parser#718\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/download-artifact from 8.0.0 to 8.0.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/717\"\u003eexpressjs/body-parser#717\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eperf: eliminate conditional check in json strict mode hot path by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/651\"\u003eexpressjs/body-parser#651\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add node.js 26 to text matrix by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/726\"\u003eexpressjs/body-parser#726\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.3.0 to 6.4.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/725\"\u003eexpressjs/body-parser#725\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/724\"\u003eexpressjs/body-parser#724\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.35.1 to 4.35.3 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/723\"\u003eexpressjs/body-parser#723\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade \u0026quot;content-type\u0026quot; by \u003ca href=\"https://github.com/blakeembrey\"\u003e\u003ccode\u003e@​blakeembrey\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/728\"\u003eexpressjs/body-parser#728\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: switch to const/let and enable eslint no-var rule by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/729\"\u003eexpressjs/body-parser#729\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate outdated reference to MDN docs by \u003ca href=\"https://github.com/krzysdz\"\u003e\u003ccode\u003e@​krzysdz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/730\"\u003eexpressjs/body-parser#730\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.35.3 to 4.36.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/731\"\u003eexpressjs/body-parser#731\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/checkout from 6.0.2 to 6.0.3 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/732\"\u003eexpressjs/body-parser#732\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: updated deps to latest by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/733\"\u003eexpressjs/body-parser#733\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e2.3.0 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/735\"\u003eexpressjs/body-parser#735\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/krzysdz\"\u003e\u003ccode\u003e@​krzysdz\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/730\"\u003eexpressjs/body-parser#730\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/body-parser/compare/v2.2.2...v2.3.0\"\u003ehttps://github.com/expressjs/body-parser/compare/v2.2.2...v2.3.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.2.2\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edocs: update README links by \u003ca href=\"https://github.com/efekrskl\"\u003e\u003ccode\u003e@​efekrskl\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/673\"\u003eexpressjs/body-parser#673\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: release notes for the v1.20.4 release by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/674\"\u003eexpressjs/body-parser#674\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: update URL-encoded parser description to include ISO-8859-1 encoding support by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/679\"\u003eexpressjs/body-parser#679\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: use standard jsdoc tags everywhere by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/677\"\u003eexpressjs/body-parser#677\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/body-parser/blob/master/HISTORY.md\"\u003ebody-parser's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e2.3.0 / 2026-06-15\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://github.com/expressjs/body-parser/security/advisories/GHSA-v422-hmwv-36x6\"\u003eGHSA-v422-hmwv-36x6\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: use static exports instead of lazy getters to improve ESM compatibility\u003c/li\u003e\n\u003cli\u003efeat: add subpath exports for individual parsers\u003c/li\u003e\n\u003cli\u003efix: improve \u003ccode\u003elimit\u003c/code\u003e option validation (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/698\"\u003e#698\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eInvalid \u003ccode\u003elimit\u003c/code\u003e values (e.g. unparseable strings or \u003ccode\u003eNaN\u003c/code\u003e) now throw instead of being silently ignored, which previously disabled size limit enforcement\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enull\u003c/code\u003e and \u003ccode\u003eundefined\u003c/code\u003e fall back to the default 100kb limit\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps:\n\u003cul\u003e\n\u003cli\u003econtent-type@^2.0.0\u003c/li\u003e\n\u003cli\u003ehttp-errors@^2.0.1\u003c/li\u003e\n\u003cli\u003eiconv-lite^0.7.2\u003c/li\u003e\n\u003cli\u003eqs@^6.15.2\u003c/li\u003e\n\u003cli\u003eraw-body@^3.0.2\u003c/li\u003e\n\u003cli\u003etype-is@^2.1.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e2.2.2 / 2026-01-07\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: qs@^6.14.1\u003c/li\u003e\n\u003cli\u003erefactor(json): simplify strict mode error string construction\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e2.2.1 / 2025-11-24\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://github.com/expressjs/body-parser/security/advisories/GHSA-wqch-xfxh-vrr4\"\u003eGHSA-wqch-xfxh-vrr4\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps:\n\u003cul\u003e\n\u003cli\u003etype-is@^2.0.1\u003c/li\u003e\n\u003cli\u003eiconv-lite@^0.7.0\n\u003cul\u003e\n\u003cli\u003eHandle split surrogate pairs when encoding UTF-8\u003c/li\u003e\n\u003cli\u003eAvoid false positives in \u003ccode\u003eencodingExists\u003c/code\u003e by using prototype-less objects\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eraw-body@^3.0.1\u003c/li\u003e\n\u003cli\u003edebug@^4.4.3\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e2.2.0 / 2025-03-27\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003erefactor: normalize common options for all parsers\u003c/li\u003e\n\u003cli\u003edeps:\n\u003cul\u003e\n\u003cli\u003eiconv-lite@^0.6.3\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e2.1.0 / 2025-02-10\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps:\n\u003cul\u003e\n\u003cli\u003etype-is@^2.0.0\u003c/li\u003e\n\u003cli\u003edebug@^4.4.0\u003c/li\u003e\n\u003cli\u003eRemoved destroy\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003erefactor: prefix built-in node module imports\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/d0f2ace6c74769da7d19b8661b9a01c01bdb0bf7\"\u003e\u003ccode\u003ed0f2ace\u003c/code\u003e\u003c/a\u003e 2.3.0 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/735\"\u003e#735\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/7d03f2f9d561dafd1576b137713353c95253512c\"\u003e\u003ccode\u003e7d03f2f\u003c/code\u003e\u003c/a\u003e chore: updated deps to latest (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/733\"\u003e#733\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/8024ba7a813e6647ed63832d209a2abb8531267a\"\u003e\u003ccode\u003e8024ba7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 6.0.2 to 6.0.3 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/732\"\u003e#732\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/32b4ed4639281f04563adcd41d724ab06c9105d4\"\u003e\u003ccode\u003e32b4ed4\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.35.3 to 4.36.1 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/731\"\u003e#731\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/ff0f6b907106ec5a1b81c80f5a552d921c1bc9a5\"\u003e\u003ccode\u003eff0f6b9\u003c/code\u003e\u003c/a\u003e docs: update outdated reference to MDN docs (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/730\"\u003e#730\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/14d001a9c90abc05891d895ad3e9cf0a65b7b34a\"\u003e\u003ccode\u003e14d001a\u003c/code\u003e\u003c/a\u003e refactor: switch to const/let and enable eslint no-var rule (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/729\"\u003e#729\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/37f36a27528e65d7216f2c31c7039d3458c72147\"\u003e\u003ccode\u003e37f36a2\u003c/code\u003e\u003c/a\u003e deps: update content-type and type-is (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/728\"\u003e#728\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/e1c244bf55fb00a6de4be882b4ed9fc20807d864\"\u003e\u003ccode\u003ee1c244b\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.35.1 to 4.35.3 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/723\"\u003e#723\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/e01087f52192e20e2d0f8726d4f28a8d49d06c87\"\u003e\u003ccode\u003ee01087f\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/724\"\u003e#724\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/a7698d30280a3e931ea8841396e5d0ac5414e429\"\u003e\u003ccode\u003ea7698d3\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/setup-node from 6.3.0 to 6.4.0 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/725\"\u003e#725\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/body-parser/compare/1.20.8...v2.3.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eAttestation changes\u003c/summary\u003e\n\u003cp\u003eThis version has no provenance attestation, while the previous version (1.20.8) was attested. Review the \u003ca href=\"https://www.npmjs.com/package/body-parser?activeTab=versions\"\u003epackage versions\u003c/a\u003e before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `check-dependencies` from 1.1.1 to 2.0.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/mgol/check-dependencies/releases\"\u003echeck-dependencies's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.0.0\u003c/h2\u003e\n\u003cp\u003eNotable non-breaking changes:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003esupport npm package aliases (\u003ca href=\"https://redirect.github.com/mgol/check-dependencies/issues/50\"\u003e#50\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereduced a number of external dependencies\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enpm prune\u003c/code\u003e is no longer called as\u003ccode\u003enpm install\u003c/code\u003e already prunes\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eBreaking changes:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003edropped the callback interface - use promises instead\u003c/li\u003e\n\u003cli\u003edropped the \u003ccode\u003echeckCustomPackageNames\u003c/code\u003e option\u003c/li\u003e\n\u003cli\u003eCLI argument parsing is more strict now; camelCase parameter versions like \u003ccode\u003e--packageDir\u003c/code\u003e are no longer supported; use their kebab-case versions like \u003ccode\u003e--package-dir\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003edropped Bower support\u003c/li\u003e\n\u003cli\u003edropped support for Node.js \u003ccode\u003e\u0026lt;18.3\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/03c88471d9b99857bcc78171fc5dd89a4a402a16\"\u003e\u003ccode\u003e03c8847\u003c/code\u003e\u003c/a\u003e Tag 2.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/65d9ef555c2e986b849e7abeac0474bfee663b0e\"\u003e\u003ccode\u003e65d9ef5\u003c/code\u003e\u003c/a\u003e Set Node.js requirement in package.json engines to \u0026gt;=18.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/4917ab0b9362530a95cc2bef028c2a6dcedf2ab7\"\u003e\u003ccode\u003e4917ab0\u003c/code\u003e\u003c/a\u003e Simplify the spawn logic\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/fc04cc87fe4284c083702e36a9a4055034d9fcc9\"\u003e\u003ccode\u003efc04cc8\u003c/code\u003e\u003c/a\u003e Drop support for the callback interface\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/28257dd04168aab66793fd0fe8ed0f46d52abec9\"\u003e\u003ccode\u003e28257dd\u003c/code\u003e\u003c/a\u003e Tweak ESLint settings\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/dc16e8ac809502cf7509ef2de7429895b806535e\"\u003e\u003ccode\u003edc16e8a\u003c/code\u003e\u003c/a\u003e Drop the bluebird devDependency\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/412337ae3691296cbe7c2d69f0c51201894afc07\"\u003e\u003ccode\u003e412337a\u003c/code\u003e\u003c/a\u003e Drop fs-extra \u0026amp; graceful-fs devDependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/091279a22472c299cbdba0ab6e3e8a2dfbba11b5\"\u003e\u003ccode\u003e091279a\u003c/code\u003e\u003c/a\u003e Drop the findup-sync dependency\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/10ac9c5b2ed92cdad11ce0f390551072e7509f18\"\u003e\u003ccode\u003e10ac9c5\u003c/code\u003e\u003c/a\u003e Drop lodash.camelcase \u0026amp; minimist dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mgol/check-dependencies/commit/35dce52450b99241942c24d18a572c55fecc44d9\"\u003e\u003ccode\u003e35dce52\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/mgol/check-dependencies/compare/1.1.1...2.0.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `config` from 3.3.12 to 5.0.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/node-config/node-config/releases\"\u003econfig's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.0.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix issue with async defers calls not being replaced in the config data.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/MMShep97\"\u003e\u003ccode\u003e@​MMShep97\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/926\"\u003enode-config/node-config#926\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/node-config/node-config/compare/v5.0.0...v5.0.1\"\u003ehttps://github.com/node-config/node-config/compare/v5.0.0...v5.0.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.0.0\u003c/h2\u003e\n\u003cp\u003eThe 5.0 release contains ESM support, removes some deprecations, strengthens some immutability constraints in a few call paths, and fixes some incorrect filename matches for files that only contain the NODE_ENV value but don't start with it.\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eESM conversion of node-config by \u003ca href=\"https://github.com/jdmarshall\"\u003e\u003ccode\u003e@​jdmarshall\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/889\"\u003enode-config/node-config#889\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: prevent setEnv from clobbering envConfig when merging NODE_CONFIG by \u003ca href=\"https://github.com/sputnik-mac\"\u003e\u003ccode\u003e@​sputnik-mac\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/896\"\u003enode-config/node-config#896\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemoved .iced support by \u003ca href=\"https://github.com/jdmarshall\"\u003e\u003ccode\u003e@​jdmarshall\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/902\"\u003enode-config/node-config#902\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove ergonomics of setModuleDefaults/Load.scan() by \u003ca href=\"https://github.com/jdmarshall\"\u003e\u003ccode\u003e@​jdmarshall\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/903\"\u003enode-config/node-config#903\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: use anchored regex for NODE_ENV file matching (closes \u003ca href=\"https://redirect.github.com/node-config/node-config/issues/867\"\u003e#867\u003c/a\u003e) by \u003ca href=\"https://github.com/sputnik-mac\"\u003e\u003ccode\u003e@​sputnik-mac\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/904\"\u003enode-config/node-config#904\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd perf test for the new scan changes. by \u003ca href=\"https://github.com/jdmarshall\"\u003e\u003ccode\u003e@​jdmarshall\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/908\"\u003enode-config/node-config#908\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eGuard against odd object prototypes triggered by changes in TOML 4.0 by \u003ca href=\"https://github.com/jdmarshall\"\u003e\u003ccode\u003e@​jdmarshall\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/917\"\u003enode-config/node-config#917\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sputnik-mac\"\u003e\u003ccode\u003e@​sputnik-mac\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/896\"\u003enode-config/node-config#896\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/node-config/node-config/compare/v4.4.1...v5.0.0\"\u003ehttps://github.com/node-config/node-config/compare/v4.4.1...v5.0.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.0.0-alpha.2\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: prevent setEnv from clobbering envConfig when merging NODE_CONFIG\u003c/li\u003e\n\u003cli\u003e.iced files are never loaded, and support has been removed.\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eLoad.scan()\u003c/code\u003e now returns the configuration data that was loaded, simplifying the calling convention for \u003ccode\u003esetModuleDefaults()\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eTOML regression in 4.4.1 fixed in mainline\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBreaking Changes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eScanning of the config directory no longer loads files that contain the NODE_ENV value as a substring of the file name instead of the prefix. Ex: \u0026quot;prod-server1.js\u0026quot; versus \u0026quot;preprod.json\u0026quot; for NODE_ENV=prod\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sputnik-mac\"\u003e\u003ccode\u003e@​sputnik-mac\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/node-config/node-config/pull/896\"\u003enode-config/node-config#896\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/node-config/node-config/compare/v5.0.0-alpha.1...v5.0.0-alpha.2\"\u003ehttps://github.com/node-config/node-config/compare/v5.0.0-alpha.1...v5.0.0-alpha.2\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.0.0-alpha.1\u003c/h2\u003e\n\u003ch1\u003eWhat's Changed\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eFixed TS type list in README\u003c/li\u003e\n\u003cli\u003eFixed version tag issue\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/node-config/node-config/compare/v5.0.0-alpha.0...v5.0.0-alpha.1\"\u003ehttps://github.com/node-config/node-config/compare/v5.0.0-alpha.0...v5.0.0-alpha.1\u003c/a\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/f89ef8bdecd493934c819b3ce5f4dc92b67ed4f8\"\u003e\u003ccode\u003ef89ef8b\u003c/code\u003e\u003c/a\u003e 5.0.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/8114c255fcbdb013b0d62cfebe1e261cc4623dab\"\u003e\u003ccode\u003e8114c25\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-config/node-config/issues/926\"\u003e#926\u003c/a\u003e from MMShep97/fix-resolve-async-configs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/08edfa07bb1cd5fcd1ec6629812a1be54a24d218\"\u003e\u003ccode\u003e08edfa0\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-config/node-config/issues/928\"\u003e#928\u003c/a\u003e from jdmarshall/workflowMain\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/9705d756ca99688ab4b71570d0999adbf774ceda\"\u003e\u003ccode\u003e9705d75\u003c/code\u003e\u003c/a\u003e Fix workflow for PRs.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/77b8752262fb33060e77a98e0035628694902d8b\"\u003e\u003ccode\u003e77b8752\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-config/node-config/issues/927\"\u003e#927\u003c/a\u003e from jdmarshall/main\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/1cd86a7c455c6b28f7d1db9a8a8d122192018a66\"\u003e\u003ccode\u003e1cd86a7\u003c/code\u003e\u003c/a\u003e Remove method signature change\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/a06d8971df7f6607370937f71b15e338384e856b\"\u003e\u003ccode\u003ea06d897\u003c/code\u003e\u003c/a\u003e Fix resolveAsyncConfigs leaving promises in the exported config\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/fbb28f8af7e218612840f07b992b15904efda83b\"\u003e\u003ccode\u003efbb28f8\u003c/code\u003e\u003c/a\u003e Release 5.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/b4dfbd2d683bb58141eb33342080060584ee95b5\"\u003e\u003ccode\u003eb4dfbd2\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-config/node-config/issues/923\"\u003e#923\u003c/a\u003e from jdmarshall/supplyChain44\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-config/node-config/commit/3a4851b602bb4411097a0bcd22d6af6f8afbfee0\"\u003e\u003ccode\u003e3a4851b\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-config/node-config/issues/922\"\u003e#922\u003c/a\u003e from jdmarshall/supplyChain\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/node-config/node-config/compare/v3.3.12...v5.0.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~jdmarshall\"\u003ejdmarshall\u003c/a\u003e, a new releaser for config since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `express` from 4.22.3 to 5.2.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/express/releases\"\u003eexpress's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.2.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cblockquote\u003e\n\u003cp\u003e[!IMPORTANT]\u003cbr /\u003e\nThe prior release (5.2.0) included an erroneous breaking change related to the extended query parser. There is no actual security vulnerability associated with this behavior (CVE-2024-51999 has been rejected). The change has been fully reverted in this release.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003cul\u003e\n\u003cli\u003eRelease: 5.2.1 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6933\"\u003eexpressjs/express#6933\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/express/compare/v5.2.0...v5.2.1\"\u003ehttps://github.com/expressjs/express/compare/v5.2.0...v5.2.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.2.0\u003c/h2\u003e\n\u003ch2\u003eImportant: Security\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2024-51999\"\u003eCVE-2024-51999\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6\"\u003eGHSA-pj86-cfqh-vqx6\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 3.28.11 to 3.28.13 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6429\"\u003eexpressjs/express#6429\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor: simplify \u003ccode\u003eacceptsLanguages\u003c/code\u003e implementation using spread operator by \u003ca href=\"https://github.com/Ayoub-Mabrouk\"\u003e\u003ccode\u003e@​Ayoub-Mabrouk\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6137\"\u003eexpressjs/express#6137\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eincreased code coverage of utils.js file by \u003ca href=\"https://github.com/ashish3011\"\u003e\u003ccode\u003e@​ashish3011\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6386\"\u003eexpressjs/express#6386\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: remove duplicate word by \u003ca href=\"https://github.com/dufucun\"\u003e\u003ccode\u003e@​dufucun\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6456\"\u003eexpressjs/express#6456\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 3.28.13 to 3.28.16 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6498\"\u003eexpressjs/express#6498\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 4.3.0 to 4.4.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6497\"\u003eexpressjs/express#6497\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/download-artifact from 4.2.1 to 4.3.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6496\"\u003eexpressjs/express#6496\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add node.js 24 to test matrix by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6504\"\u003eexpressjs/express#6504\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: update codeql config by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6488\"\u003eexpressjs/express#6488\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: wider range for query test skip by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6512\"\u003eexpressjs/express#6512\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: fix typos in test by \u003ca href=\"https://github.com/noritaka1166\"\u003e\u003ccode\u003e@​noritaka1166\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6535\"\u003eexpressjs/express#6535\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: disable credential persistence for checkout actions by \u003ca href=\"https://github.com/mertssmnoglu\"\u003e\u003ccode\u003e@​mertssmnoglu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6522\"\u003eexpressjs/express#6522\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: allow manual triggering of workflow by \u003ca href=\"https://github.com/shivarm\"\u003e\u003ccode\u003e@​shivarm\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6515\"\u003eexpressjs/express#6515\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: add coverage for app.listen() variants by \u003ca href=\"https://github.com/kgarg1\"\u003e\u003ccode\u003e@​kgarg1\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6476\"\u003eexpressjs/express#6476\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: move documentation and charters to the discussions and .github … by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6427\"\u003eexpressjs/express#6427\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 3.28.16 to 3.28.18 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6549\"\u003eexpressjs/express#6549\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump ossf/scorecard-action from 2.4.1 to 2.4.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6548\"\u003eexpressjs/express#6548\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: enforce explicit \u003ccode\u003eBuffer\u003c/code\u003e import and add lint rule by \u003ca href=\"https://github.com/shivarm\"\u003e\u003ccode\u003e@​shivarm\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6525\"\u003eexpressjs/express#6525\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: use node protocol for querystring by \u003ca href=\"https://github.com/shivarm\"\u003e\u003ccode\u003e@​shivarm\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6520\"\u003eexpressjs/express#6520\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: fix typo by \u003ca href=\"https://github.com/mountdisk\"\u003e\u003ccode\u003e@​mountdisk\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6609\"\u003eexpressjs/express#6609\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 3.28.18 to 3.29.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6618\"\u003eexpressjs/express#6618\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eadd deprecation warnings for redirect arguments undefined by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6405\"\u003eexpressjs/express#6405\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: run CI when the markdown changes by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6632\"\u003eexpressjs/express#6632\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edoc: fix CONTRIBUTING link by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6653\"\u003eexpressjs/express#6653\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edoc: update contributing guidelines and code of conduct links by \u003ca href=\"https://github.com/ShubhamOulkar\"\u003e\u003ccode\u003e@​ShubhamOulkar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6601\"\u003eexpressjs/express#6601\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps-dev): bump morgan from 1.10.0 to 1.10.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6679\"\u003eexpressjs/express#6679\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps-dev): bump cookie-session from 2.1.0 to 2.1.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6678\"\u003eexpressjs/express#6678\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003elint: add --fix flag to automatic fix linting issue by \u003ca href=\"https://github.com/shivarm\"\u003e\u003ccode\u003e@​shivarm\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6644\"\u003eexpressjs/express#6644\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: ignore yarn.lock file and update example by \u003ca href=\"https://github.com/shivarm\"\u003e\u003ccode\u003e@​shivarm\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6588\"\u003eexpressjs/express#6588\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003elib: use req.socket over deprecated req.connection by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6705\"\u003eexpressjs/express#6705\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edoc: update express app example by \u003ca href=\"https://github.com/shivarm\"\u003e\u003ccode\u003e@​shivarm\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6718\"\u003eexpressjs/express#6718\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 3.29.2 to 3.29.5 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6675\"\u003eexpressjs/express#6675\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove history.md from being packaged on publish by \u003ca href=\"https://github.com/sheplu\"\u003e\u003ccode\u003e@​sheplu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/express/pull/6780\"\u003eexpressjs/express#6780\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/express/blob/master/History.md\"\u003eexpress's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e5.2.1 / 2025-12-01\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eRevert security fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2024-51999\"\u003eCVE-2024-51999\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6\"\u003eGHSA-pj86-cfqh-vqx6\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eThe prior release (5.2.0) included an erroneous breaking change related to the extended query parser. There is no actual security vulnerability associated with this behavior (CVE-2024-51999 has been rejected). The change has been fully reverted in this release.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e5.2.0 / 2025-12-01\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity fix for \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2024-51999\"\u003eCVE-2024-51999\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6\"\u003eGHSA-pj86-cfqh-vqx6\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003ebody-parser@^2.2.1\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eA deprecation warning was added when using \u003ccode\u003eres.redirect\u003c/code\u003e with undefined arguments, Express now emits a warning to help detect calls that pass undefined as the status or URL and make them easier to fix.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e5.1.0 / 2025-03-31\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eAdd support for \u003ccode\u003eUint8Array\u003c/code\u003e in \u003ccode\u003eres.send()\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eAdd support for ETag option in \u003ccode\u003eres.sendFile()\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eAdd support for multiple links with the same rel in \u003ccode\u003eres.links()\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eAdd funding field to package.json\u003c/li\u003e\n\u003cli\u003eperf: use loop for acceptParams\u003c/li\u003e\n\u003cli\u003erefactor: prefix built-in node module imports\u003c/li\u003e\n\u003cli\u003edeps: remove \u003ccode\u003esetprototypeof\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: remove \u003ccode\u003esafe-buffer\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: remove \u003ccode\u003eutils-merge\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: remove \u003ccode\u003emethods\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: remove \u003ccode\u003edepd\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003edebug@^4.4.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003ebody-parser@^2.2.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003erouter@^2.2.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003econtent-type@^1.0.5\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003efinalhandler@^2.1.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003eqs@^6.14.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003eserver-static@2.2.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: \u003ccode\u003etype-is@2.0.1\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e5.0.1 / 2024-10-08\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate \u003ccode\u003ecookie\u003c/code\u003e semver lock to address \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2024-47764\"\u003eCVE-2024-47764\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e5.0.0 / 2024-09-10\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eremove:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003epath-is-absolute\u003c/code\u003e dependency - use \u003ccode\u003epath.isAbsolute\u003c/code\u003e instead\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003ebreaking:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eres.status()\u003c/code\u003e accepts only integers, and input must be greater than 99 and less than 1000\n\u003cul\u003e\n\u003cli\u003ewill throw a \u003ccode\u003eRangeError: Invalid status code: ${code}. Status code must be greater than 99 and less than 1000.\u003c/code\u003e for inputs outside this range\u003c/li\u003e\n\u003cli\u003ewill throw a \u003ccode\u003eTypeError: Invalid status code: ${code}. Status code must be an integer.\u003c/code\u003e for non integer inputs\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: send@1.0.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/dbac741a49a5a64336b70c06e85c2e2706e36336\"\u003e\u003ccode\u003edbac741\u003c/code\u003e\u003c/a\u003e 5.2.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/697547cde621d8b0a47b4fff6e98b29337f8c980\"\u003e\u003ccode\u003e697547c\u003c/code\u003e\u003c/a\u003e Revert \u0026quot;sec: security patch for CVE-2024-51999\u0026quot;\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/4007ad103ba29f6426b2ec9eccfb1ceb792682a8\"\u003e\u003ccode\u003e4007ad1\u003c/code\u003e\u003c/a\u003e Release: 5.2.0 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/6920\"\u003e#6920\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/2f64f68c37c64ae333e41ff38032d21860f22255\"\u003e\u003ccode\u003e2f64f68\u003c/code\u003e\u003c/a\u003e sec: security patch for CVE-2024-51999\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/ed0ba3f1dc905d6b62eabf23bd383abcae4901ba\"\u003e\u003ccode\u003eed0ba3f\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 5.0.0 to 6.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/6928\"\u003e#6928\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/8eace4603cb2547608578a4fbb259dc984216f71\"\u003e\u003ccode\u003e8eace46\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.31.2 to 4.31.6 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/6929\"\u003e#6929\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/30bae810279b2ea162bed5b14ce6c35a110a87f5\"\u003e\u003ccode\u003e30bae81\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 2.3.6 to 2.3.7 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/6930\"\u003e#6930\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/758d4355d45322b4c8cd347ebcefbf3b154c7e7f\"\u003e\u003ccode\u003e758d435\u003c/code\u003e\u003c/a\u003e deps: body-parser@^2.2.1 (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/6922\"\u003e#6922\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/77bcd5274a87047e5b3fe2f17f6c342db3909c53\"\u003e\u003ccode\u003e77bcd52\u003c/code\u003e\u003c/a\u003e docs: update emeritus triagers (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/6890\"\u003e#6890\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/express/commit/f33caf1f89a028f0ea98ff5a156a68e65a2eabdd\"\u003e\u003ccode\u003ef33caf1\u003c/code\u003e\u003c/a\u003e Nominate to \u003ca href=\"https://github.com/efekrskl\"\u003e\u003ccode\u003e@​efekrskl\u003c/code\u003e\u003c/a\u003e for triage team (\u003ca href=\"https://redirect.github.com/expressjs/express/issues/6888\"\u003e#6888\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/express/compare/v4.22.3...v5.2.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eAttestation changes\u003c/summary\u003e\n\u003cp\u003eThis version has no provenance attestation, while the previous version (4.22.3) was attested. Review the \u003ca href=\"https://www.npmjs.com/package/express?activeTab=versions\"\u003epackage versions\u003c/a\u003e before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `express-jwt` from 0.1.3 to 8.5.1\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/auth0/express-jwt/blob/master/CHANGELOG.md\"\u003eexpress-jwt's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChange Log\u003c/h1\u003e\n\u003cp\u003eAll notable changes to this project will be documented in this file starting from version \u003cstrong\u003ev4.0.0\u003c/strong\u003e.\nThis project adheres to \u003ca href=\"http://semver.org/\"\u003eSemantic Versioning\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003e8.3.0 - 2023-01-04\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003erequestProperty support for nested properties (\u003ca href=\"https://github.com/auth0/express-jwt/commit/bbd3606ce68da2602733d6e4ac32564570753ca1\"\u003ebbd3606ce68da2602733d6e4ac32564570753ca1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUpdate Typescript instructions in Readme.MD (\u003ca href=\"https://github.com/auth0/express-jwt/commit/3c1d5cf8a08a6afbcfc78640b8cdb26fac8002ca\"\u003e3c1d5cf8a08a6afbcfc78640b8cdb26fac8002ca\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.2.1 - 2022-12-26\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eadd secret rotation example in readme. close \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/310\"\u003e#310\u003c/a\u003e (\u003ca href=\"https://github.com/auth0/express-jwt/commit/0000a44ed58aac97798007af19b0324f28acc436\"\u003e0000a44ed58aac97798007af19b0324f28acc436\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/310\"\u003e#310\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eupdate \u003ccode\u003e@​types/jsonwebtoken\u003c/code\u003e and fix deps in package-lock (\u003ca href=\"https://github.com/auth0/express-jwt/commit/2322a9b67a5b5c716f953a53a0bb4bbc696d0a11\"\u003e2322a9b67a5b5c716f953a53a0bb4bbc696d0a11\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.2.0 - 2022-12-22\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eadd an optional handler for expired tokens. closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/6048\"\u003e#6048\u003c/a\u003e (\u003ca href=\"https://github.com/auth0/express-jwt/commit/ca6c90ccbb4b61b91f417a5dfa56f0b931b81528\"\u003eca6c90ccbb4b61b91f417a5dfa56f0b931b81528\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/6048\"\u003e#6048\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.1.0 - 2022-12-22\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eupdate type to match jwks-rsa (\u003ca href=\"https://github.com/auth0/express-jwt/commit/bcad8af9cad82b3777cc38d1c05864a35f82bc53\"\u003ebcad8af9cad82b3777cc38d1c05864a35f82bc53\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat: export middleware options type. closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/308\"\u003e#308\u003c/a\u003e (\u003ca href=\"https://github.com/auth0/express-jwt/commit/25a30f0d50c02cc75ab17b09f3592e76e09f9666\"\u003e25a30f0d50c02cc75ab17b09f3592e76e09f9666\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/308\"\u003e#308\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.0.0 - 2022-12-22\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade jsonwebtoken to v9. \u003ca href=\"https://github.com/advisories/GHSA-27h2-hvpr-p74q\"\u003ehttps://github.com/advisories/GHSA-27h2-hvpr-p74q\u003c/a\u003e .\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.7.3 - 2022-05-30\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix tsc build error for express-unless (\u003ca href=\"https://github.com/auth0/express-jwt/commit/e1fe1d264bc5363e008d23fea9d8c5d2ac0d8198\"\u003ee1fe1d264bc5363e008d23fea9d8c5d2ac0d8198\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRemove esModuleInterop and fix assert import in tests (\u003ca href=\"https://github.com/auth0/express-jwt/commit/9ccf0cfd6aaa4cc61fce2f8ccdb961c4b0358201\"\u003e9ccf0cfd6aaa4cc61fce2f8ccdb961c4b0358201\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.7.2 - 2022-05-19\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix instaceof comparison for UnauthorizedError. closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/292\"\u003e#292\u003c/a\u003e (\u003ca href=\"https://github.com/auth0/express-jwt/commit/6c87fe401ecba868feda1ffa530082c7c539321a\"\u003e6c87fe401ecba868feda1ffa530082c7c539321a\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/292\"\u003e#292\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eupdate changelog (\u003ca href=\"https://github.com/auth0/express-jwt/commit/b1344fa7f6f9dd3d27115a9107b3ef4323733895\"\u003eb1344fa7f6f9dd3d27115a9107b3ef4323733895\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.7.1 - 2022-05-13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix readme and package-lock (\u003ca href=\"https://github.com/auth0/express-jwt/commit/7a02ca76c5d7842cfa8b256dcc89dcef1ffbcdc1\"\u003e7a02ca76c5d7842cfa8b256dcc89dcef1ffbcdc1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ebuild(deps): required runtime types (\u003ca href=\"https://github.com/auth0/express-jwt/commit/f3f5af5c214241b4f92b91c49db8586ec20e4526\"\u003ef3f5af5c214241b4f92b91c49db8586ec20e4526\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003edocs: fix tiny typo (\u003ca href=\"https://github.com/auth0/express-jwt/commit/07e771857489b6344a8dc457069d040a76e84230\"\u003e07e771857489b6344a8dc457069d040a76e84230\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.7.0 - 2022-05-06\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edeprecate ExpressJwtRequest in favor of Request with optional auth, closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/284\"\u003e#284\u003c/a\u003e (\u003ca href=\"https://github.com/auth0/express-jwt/commit/de169def56f98f4237741aa6755d0c5e248bd561\"\u003ede169def56f98f4237741aa6755d0c5e248bd561\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/284\"\u003e#284\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.6.2 - 2022-05-02\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/0dfe63b9a702b0755ec60d171152747942210be6\"\u003e\u003ccode\u003e0dfe63b\u003c/code\u003e\u003c/a\u003e 8.5.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/105ef5ec66fa32aa5861a09d3290545253adcbbb\"\u003e\u003ccode\u003e105ef5e\u003c/code\u003e\u003c/a\u003e add readme to package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/c028e7098ea3dbdd4684f6e4960564e38fccdb96\"\u003e\u003ccode\u003ec028e70\u003c/code\u003e\u003c/a\u003e 8.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/75203815ab759f65aa114f4eb01faa58bc0e1e0c\"\u003e\u003ccode\u003e7520381\u003c/code\u003e\u003c/a\u003e fix: signature of middleware returned\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/ecd42788a7a24641ec78c8b21767c5f8aca5600a\"\u003e\u003ccode\u003eecd4278\u003c/code\u003e\u003c/a\u003e update deps\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/f42a0e99422fe85fadd0a209b8497b64995e94cf\"\u003e\u003ccode\u003ef42a0e9\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/auth0/express-jwt/issues/339\"\u003e#339\u003c/a\u003e from auth0/integrate-semgrep\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/dacb316f8d485a9c335434f2812561ca9c282ecb\"\u003e\u003ccode\u003edacb316\u003c/code\u003e\u003c/a\u003e Create semgrep.yml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/00763facd650da5aa378ed876f4a1e863957642b\"\u003e\u003ccode\u003e00763fa\u003c/code\u003e\u003c/a\u003e Modify tests to actually exercise wrong signature case by removing base64 pad...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/d15b92c3424ecb1713df106f615c2a770ddbc0b8\"\u003e\u003ccode\u003ed15b92c\u003c/code\u003e\u003c/a\u003e 8.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/auth0/express-jwt/commit/d1e88c73ed81b67d8f43eb748f8f33aa5c5b4aaf\"\u003e\u003ccode\u003ed1e88c7\u003c/code\u003e\u003c/a\u003e Merge branch 'glensc-patch-1'\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/auth0/express-jwt/compare/v0.1.3...v8.5.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `express-rate-limit` from 7.5.1 to 8.7.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/releases\"\u003eexpress-rate-limit's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.7.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.6.2\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.6.1\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.6.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.5.2\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.5.1\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.5.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.4.1\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.4.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.3.2\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.3.1\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.3.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.2.1\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.2.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.1.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.0.1\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev8.0.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/48db09eab351ef0c5992384b1133c7839632bb83\"\u003e\u003ccode\u003e48db09e\u003c/code\u003e\u003c/a\u003e 8.7.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/dce58719951667f74362d8353d0c5342a9a6e338\"\u003e\u003ccode\u003edce5871\u003c/code\u003e\u003c/a\u003e v8.7.0 changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/2f08044ab2f1d15a8211a4dc55f58d6304b4dace\"\u003e\u003ccode\u003e2f08044\u003c/code\u003e\u003c/a\u003e Add inspect.software health badge (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/673\"\u003e#673\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/a29757cdfb06eb57d1b8110d7c7852a50dbe7f0a\"\u003e\u003ccode\u003ea29757c\u003c/code\u003e\u003c/a\u003e feat: add retryAfter option (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/661\"\u003e#661\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/146e88b6d3eb4c787ae17894933ed6840bc81874\"\u003e\u003ccode\u003e146e88b\u003c/code\u003e\u003c/a\u003e chore: rename license\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/5cfb8e89f0f358618fd0cc812ff289f8c4a6ee1e\"\u003e\u003ccode\u003e5cfb8e8\u003c/code\u003e\u003c/a\u003e ci: drop top-level \u003ccode\u003eid-token: write\u003c/code\u003e from the workflow token (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/676\"\u003e#676\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/062bbdde4cfc21a8b302632bf972a12dd7917d9c\"\u003e\u003ccode\u003e062bbdd\u003c/code\u003e\u003c/a\u003e fix: re-wrap license.md so GitHub recognizes it as MIT (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/675\"\u003e#675\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/514772d42b253045025cfad40f7dce28c76e6755\"\u003e\u003ccode\u003e514772d\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump mintlify in the development-dependencies group (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/674\"\u003e#674\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/4f06c8a0068b0131682fffcaf6711b59b6b2652c\"\u003e\u003ccode\u003e4f06c8a\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump the development-dependencies group with 2 updates (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/671\"\u003e#671\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/83356a58e899a4fbe98b8f265a0fafd26553d97c\"\u003e\u003ccode\u003e83356a5\u003c/code\u003e\u003c/a\u003e chore(deps): bump ip-address from 10.4.0 to 10.5.0 (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/672\"\u003e#672\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/compare/v7.5.1...v8.7.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for express-rate-limit since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version modifies \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `express-robots-txt` from 0.5.0 to 1.0.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/modosc/express-robots-txt/blob/main/HISTORY.md\"\u003eexpress-robots-txt's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[v1.0.0] - {2021-08-20}\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRewrite as es6, add separate commonjs + esm exports\u003c/li\u003e\n\u003cli\u003eUpdate deps\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/2791589d8c96fc4d2190cc217d262d70cc569a93\"\u003e\u003ccode\u003e2791589\u003c/code\u003e\u003c/a\u003e es6 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/55\"\u003e#55\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/0eb20919053c95e94b5d439a9fd48a98147d35bd\"\u003e\u003ccode\u003e0eb2091\u003c/code\u003e\u003c/a\u003e update deps\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/940a03c2ebc9b8b8798df855ac92535e4240b060\"\u003e\u003ccode\u003e940a03c\u003c/code\u003e\u003c/a\u003e Bump supertest from 6.1.3 to 6.1.5 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/52\"\u003e#52\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/6c933f1f9936c1470b0ad405310b5979294ccdff\"\u003e\u003ccode\u003e6c933f1\u003c/code\u003e\u003c/a\u003e Bump jest from 27.0.4 to 27.0.6 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/50\"\u003e#50\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/308c9057a4baf7365d515cae1920f57653229711\"\u003e\u003ccode\u003e308c905\u003c/code\u003e\u003c/a\u003e Bump path-parse from 1.0.6 to 1.0.7 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/53\"\u003e#53\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/0bdaaa00b7781540b145fe18abdca11c7a924aee\"\u003e\u003ccode\u003e0bdaaa0\u003c/code\u003e\u003c/a\u003e Bump jest from 26.6.3 to 27.0.4 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/48\"\u003e#48\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/974a926e5dfbfcca2d99742032e4750ca478c22d\"\u003e\u003ccode\u003e974a926\u003c/code\u003e\u003c/a\u003e Bump ws from 7.4.3 to 7.4.6 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/46\"\u003e#46\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/c12444cfcf67cde0d249495d11bbc9b4a7e3f686\"\u003e\u003ccode\u003ec12444c\u003c/code\u003e\u003c/a\u003e Bump hosted-git-info from 2.8.8 to 2.8.9 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/43\"\u003e#43\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/72f7ca8ab5f45592e9d9a49df94e73e03814c793\"\u003e\u003ccode\u003e72f7ca8\u003c/code\u003e\u003c/a\u003e Bump lodash from 4.17.20 to 4.17.21 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/44\"\u003e#44\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/modosc/express-robots-txt/commit/6c35250df606de1bd355cd93850514cea82bb037\"\u003e\u003ccode\u003e6c35250\u003c/code\u003e\u003c/a\u003e Bump chai from 4.3.3 to 4.3.4 (\u003ca href=\"https://redirect.github.com/modosc/express-robots-txt/issues/42\"\u003e#42\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/modosc/express-robots-txt/compare/v0.5.0...v1.0.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `file-type` from 16.5.4 to 22.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/sindresorhus/file-type/releases\"\u003efile-type's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev22.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix streamed OOXML files being detected as zip (\u003ca href=\"https://redirect.github.com/sindresorhus/file-type/issues/801\"\u003e#801\u003c/a\u003e)  1347414\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/compare/v22.1.0...v22.1.1\"\u003ehttps://github.com/sindresorhus/file-type/compare/v22.1.0...v22.1.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev22.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSuppress Vite and webpack warnings for the intentional runtime import  2da7522\u003c/li\u003e\n\u003cli\u003eAdd support for ISO 9660 (.iso) (\u003ca href=\"https://redirect.github.com/sindresorhus/file-type/issues/796\"\u003e#796\u003c/a\u003e)  a675457\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/compare/v22.0.2...v22.1.0\"\u003ehttps://github.com/sindresorhus/file-type/compare/v22.0.2...v22.1.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev22.0.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix ZIP detection on Node.js 24 for entries with a data descriptor  f24af84\u003c/li\u003e\n\u003cli\u003eFix UTF-16 LE text being detected as MPEG audio  c891929\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/compare/v22.0.1...v22.0.2\"\u003ehttps://github.com/sindresorhus/file-type/compare/v22.0.1...v22.0.2\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev22.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix: Work around esbuild resolving Node-only imports  ce4262f\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/compare/v22.0.0...v22.0.1\"\u003ehttps://github.com/sindresorhus/file-type/compare/v22.0.0...v22.0.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev22.0.0\u003c/h2\u003e\n\u003ch3\u003eBreaking\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eRequires Node.js 22\u003c/li\u003e\n\u003cli\u003eDropped Node.js \u003ccode\u003estream.Readable\u003c/code\u003e support from \u003ccode\u003efileTypeFromStream()\u003c/code\u003e and \u003ccode\u003efileTypeStream()\u003c/code\u003e\n\u003cul\u003e\n\u003cli\u003eThese now only accept a web \u003ccode\u003eReadableStream\u003c/code\u003e. Migrate with \u003ca href=\"https://nodejs.org/api/stream.html#streamreadabletowebstreamreadable-options\"\u003e\u003ccode\u003eReadable.toWeb()\u003c/code\u003e\u003c/a\u003e:\u003c/li\u003e\n\u003c/ul\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003e// Before\r\nimport fs from 'node:fs';\r\nfileTypeFromStream(fs.createReadStream('file.mp4'));\r\n\u003cp\u003e// After\u003cbr /\u003e\nimport fs from 'node:fs';\u003cbr /\u003e\nimport {Readable} from 'node:stream';\u003cbr /\u003e\nfileTypeFromStream(Readable.toWeb(fs.createReadStream('file.mp4')));\u003cbr /\u003e\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003eSub-exports (e.g. \u003ccode\u003efile-type/core\u003c/code\u003e) have been removed. Import everything from \u003ccode\u003efile-type\u003c/code\u003e directly.\u003c/li\u003e\n\u003cli\u003eThe \u003ccode\u003eReadableStreamWithFileType\u003c/code\u003e type has been removed. Use \u003ccode\u003eAnyWebReadableByteStreamWithFileType\u003c/code\u003e instead.\u003c/li\u003e\n\u003cli\u003eSeveral MIME types have been corrected or normalized:\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/32b087c6eaa2c03a083f599cf2f91fe9d1aba452\"\u003e\u003ccode\u003e32b087c\u003c/code\u003e\u003c/a\u003e 22.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/1347414c7c0463bf2c190a6593a7e882771add12\"\u003e\u003ccode\u003e1347414\u003c/code\u003e\u003c/a\u003e Fix streamed OOXML files being detected as zip (\u003ca href=\"https://redirect.github.com/sindresorhus/file-type/issues/801\"\u003e#801\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/2d261fabb71bfc549d8e26cfe044a5b2753b68ad\"\u003e\u003ccode\u003e2d261fa\u003c/code\u003e\u003c/a\u003e 22.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/60315838c50c18c6bbaa22bb59fb3129d5746ad3\"\u003e\u003ccode\u003e6031583\u003c/code\u003e\u003c/a\u003e Update readme\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/2da7522bbadbd96411e68ecfdf62983b6e587397\"\u003e\u003ccode\u003e2da7522\u003c/code\u003e\u003c/a\u003e Suppress Vite and webpack warnings for the intentional runtime import\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/a6754574e1bcca36892435bf4e7f7eda6716a0ce\"\u003e\u003ccode\u003ea675457\u003c/code\u003e\u003c/a\u003e Add support for ISO 9660 (.iso) (\u003ca href=\"https://redirect.github.com/sindresorhus/file-type/issues/796\"\u003e#796\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/1562005a4dfb8215b9407a54cc4b55700af46b03\"\u003e\u003ccode\u003e1562005\u003c/code\u003e\u003c/a\u003e 22.0.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/f24af84f56e920d4bc4a27321cc31842d7e5bb16\"\u003e\u003ccode\u003ef24af84\u003c/code\u003e\u003c/a\u003e Fix ZIP detection on Node.js 24 for entries with a data descriptor\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/file-type/commit/c8919296512b249b4c8f594b3a3e26352467a3b2\"\u003e\u003ccode\u003ec891929\u003c/code\u003e\u003c/a\u003e Fix UTF-16 LE text being detected as MPEG audio\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sindresorhus/fil...\n\n_Description has been truncated_","html_url":"https://github.com/SriKaratalapu/juice-shop-krishna/pull/121","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/SriKaratalapu%2Fjuice-shop-krishna/issues/121","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/121/packages"}},{"old_version":"11.1.0","new_version":"13.0.6","update_type":"major","path":null,"pr_created_at":"2026-09-20T21:46:17.000Z","version_change":"11.1.0 → 13.0.6","issue":{"uuid":"5520673862","node_id":"PR_kwDOQMnSG88AAAABEVxlsg","number":61,"state":"open","title":"chore(deps-dev): bump the dev-dependencies group across 1 directory with 33 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-20T21:46:17.000Z","updated_at":"2026-09-20T21:51:03.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps-dev): bump","group_name":"dev-dependencies","update_count":33,"packages":[{"name":"@antfu/eslint-config","old_version":"6.7.3","new_version":"9.5.1","repository_url":"https://github.com/antfu/eslint-config"},{"name":"@antv/g6","old_version":"4.8.25","new_version":"5.1.1","repository_url":"https://github.com/antvis/g6"},{"name":"@codecov/webpack-plugin","old_version":"1.9.1","new_version":"2.0.1"},{"name":"@eslint-react/eslint-plugin","old_version":"2.13.0","new_version":"5.19.1","repository_url":"https://github.com/Rel1cx/eslint-react"},{"name":"@inquirer/prompts","old_version":"7.10.1","new_version":"8.7.2","repository_url":"https://github.com/SBoudrias/Inquirer.js"},{"name":"@npmcli/run-script","old_version":"10.0.4","new_version":"11.0.0","repository_url":"https://github.com/npm/run-script"},{"name":"@size-limit/file","old_version":"11.2.0","new_version":"14.0.0","repository_url":"https://github.com/ai/size-limit"},{"name":"@testing-library/jest-dom","old_version":"6.10.0","new_version":"7.0.1","repository_url":"https://github.com/testing-library/jest-dom"},{"name":"@types/css-tree","old_version":"2.3.11","new_version":"3.2.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/jquery","old_version":"3.5.34","new_version":"4.0.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/node","old_version":"24.13.6","new_version":"26.6.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/react-resizable","old_version":"3.0.8","new_version":"4.0.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@types/tar","old_version":"6.1.13","new_version":"7.0.87","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"antd-style","old_version":"3.7.1","new_version":"4.1.0","repository_url":"https://github.com/ant-design/antd-style"},{"name":"antd-token-previewer","old_version":"2.0.8","new_version":"3.0.1","repository_url":"https://github.com/ant-design/antd-token-previewer"},{"name":"chalk","old_version":"5.6.2","new_version":"6.0.0","repository_url":"https://github.com/chalk/chalk"},{"name":"dotenv","old_version":"17.4.2","new_version":"18.0.0","repository_url":"https://github.com/motdotla/dotenv"},{"name":"env-paths","old_version":"3.0.0","new_version":"4.0.0","repository_url":"https://github.com/sindresorhus/env-paths"},{"name":"eslint","old_version":"9.39.5","new_version":"10.10.0","repository_url":"https://github.com/eslint/eslint"},{"name":"eslint-plugin-compat","old_version":"6.2.1","new_version":"7.0.2","repository_url":"https://github.com/amilajack/eslint-plugin-compat"},{"name":"glob","old_version":"11.1.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"},{"name":"immer","old_version":"10.2.0","new_version":"11.1.18","repository_url":"https://github.com/immerjs/immer"},{"name":"jest-axe","old_version":"10.0.0","new_version":"11.0.0","repository_url":"https://github.com/NickColley/jest-axe"},{"name":"jquery","old_version":"3.7.1","new_version":"4.0.0","repository_url":"https://github.com/jquery/jquery"},{"name":"jsdom","old_version":"27.0.0","new_version":"30.1.0","repository_url":"https://github.com/jsdom/jsdom"},{"name":"lint-staged","old_version":"16.4.0","new_version":"17.5.1","repository_url":"https://github.com/lint-staged/lint-staged"},{"name":"open","old_version":"10.2.0","new_version":"11.0.4","repository_url":"https://github.com/sindresorhus/open"},{"name":"puppeteer","old_version":"24.43.1","new_version":"25.11.0","repository_url":"https://github.com/puppeteer/puppeteer"},{"name":"react-infinite-scroll-component","old_version":"6.1.1","new_version":"7.2.1","repository_url":"https://github.com/ankeetmaini/react-infinite-scroll-component"},{"name":"react-resizable","old_version":"3.2.0","new_version":"4.0.2","repository_url":"https://github.com/react-grid-layout/react-resizable"},{"name":"size-limit","old_version":"11.2.0","new_version":"14.0.0","repository_url":"https://github.com/ai/size-limit"},{"name":"typescript","old_version":"5.9.3","new_version":"7.0.2","repository_url":"https://github.com/microsoft/TypeScript"},{"name":"webpack-bundle-analyzer","old_version":"4.10.2","new_version":"5.4.0","repository_url":"https://github.com/webpack/webpack-bundle-analyzer"}],"path":null,"ecosystem":"npm"},"body":"Bumps the dev-dependencies group with 33 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@antfu/eslint-config](https://github.com/antfu/eslint-config) | `6.7.3` | `9.5.1` |\n| [@antv/g6](https://github.com/antvis/g6) | `4.8.25` | `5.1.1` |\n| @codecov/webpack-plugin | `1.9.1` | `2.0.1` |\n| [@eslint-react/eslint-plugin](https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin) | `2.13.0` | `5.19.1` |\n| [@inquirer/prompts](https://github.com/SBoudrias/Inquirer.js) | `7.10.1` | `8.7.2` |\n| [@npmcli/run-script](https://github.com/npm/run-script) | `10.0.4` | `11.0.0` |\n| [@size-limit/file](https://github.com/ai/size-limit) | `11.2.0` | `14.0.0` |\n| [@testing-library/jest-dom](https://github.com/testing-library/jest-dom) | `6.10.0` | `7.0.1` |\n| [@types/css-tree](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/css-tree) | `2.3.11` | `3.2.0` |\n| [@types/jquery](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/jquery) | `3.5.34` | `4.0.1` |\n| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `24.13.6` | `26.6.1` |\n| [@types/react-resizable](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-resizable) | `3.0.8` | `4.0.0` |\n| [@types/tar](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/tar) | `6.1.13` | `7.0.87` |\n| [antd-style](https://github.com/ant-design/antd-style) | `3.7.1` | `4.1.0` |\n| [antd-token-previewer](https://github.com/ant-design/antd-token-previewer) | `2.0.8` | `3.0.1` |\n| [chalk](https://github.com/chalk/chalk) | `5.6.2` | `6.0.0` |\n| [dotenv](https://github.com/motdotla/dotenv) | `17.4.2` | `18.0.0` |\n| [env-paths](https://github.com/sindresorhus/env-paths) | `3.0.0` | `4.0.0` |\n| [eslint](https://github.com/eslint/eslint) | `9.39.5` | `10.10.0` |\n| [eslint-plugin-compat](https://github.com/amilajack/eslint-plugin-compat) | `6.2.1` | `7.0.2` |\n| [glob](https://github.com/isaacs/node-glob) | `11.1.0` | `13.0.6` |\n| [immer](https://github.com/immerjs/immer) | `10.2.0` | `11.1.18` |\n| [jest-axe](https://github.com/NickColley/jest-axe) | `10.0.0` | `11.0.0` |\n| [jquery](https://github.com/jquery/jquery) | `3.7.1` | `4.0.0` |\n| [jsdom](https://github.com/jsdom/jsdom) | `27.0.0` | `30.1.0` |\n| [lint-staged](https://github.com/lint-staged/lint-staged) | `16.4.0` | `17.5.1` |\n| [open](https://github.com/sindresorhus/open) | `10.2.0` | `11.0.4` |\n| [puppeteer](https://github.com/puppeteer/puppeteer) | `24.43.1` | `25.11.0` |\n| [react-infinite-scroll-component](https://github.com/ankeetmaini/react-infinite-scroll-component) | `6.1.1` | `7.2.1` |\n| [react-resizable](https://github.com/react-grid-layout/react-resizable) | `3.2.0` | `4.0.2` |\n| [size-limit](https://github.com/ai/size-limit) | `11.2.0` | `14.0.0` |\n| [typescript](https://github.com/microsoft/TypeScript) | `5.9.3` | `7.0.2` |\n| [webpack-bundle-analyzer](https://github.com/webpack/webpack-bundle-analyzer) | `4.10.2` | `5.4.0` |\n\n\nUpdates `@antfu/eslint-config` from 6.7.3 to 9.5.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/antfu/eslint-config/releases\"\u003e@​antfu/eslint-config's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev9.5.1\u003c/h2\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eantislop\u003c/code\u003e plugins composition, refactor  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/a213d4e\"\u003e\u003c!-- raw HTML omitted --\u003e(a213d)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/antfu/eslint-config/compare/v9.5.0...v9.5.1\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev9.5.0\u003c/h2\u003e\n\u003ch3\u003e   🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdd antislop option  -  by \u003ca href=\"https://github.com/antfubot\"\u003e\u003ccode\u003e@​antfubot\u003c/code\u003e\u003c/a\u003e and \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antfu/eslint-config/issues/861\"\u003eantfu/eslint-config#861\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/f6906f6\"\u003e\u003c!-- raw HTML omitted --\u003e(f6906)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/antfu/eslint-config/compare/v9.4.1...v9.5.0\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev9.4.1\u003c/h2\u003e\n\u003ch3\u003e   🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003epnpm\u003c/strong\u003e: Enforce new-line style for pnpm-workspace.yaml  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/ab4004a\"\u003e\u003c!-- raw HTML omitted --\u003e(ab400)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/antfu/eslint-config/compare/v9.4.0...v9.4.1\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev9.4.0\u003c/h2\u003e\n\u003ch3\u003e   🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate plugins \u003ccode\u003ejsdoc v64\u003c/code\u003e \u003ccode\u003eunicorn v74\u003c/code\u003e \u003ccode\u003ee18e v0.8\u003c/code\u003e \u003ccode\u003esolid v0.17\u003c/code\u003e  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/33a41b4\"\u003e\u003c!-- raw HTML omitted --\u003e(33a41)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003epnpm\u003c/strong\u003e:\n\u003cul\u003e\n\u003cli\u003eEnable \u003ccode\u003eminimumReleaseAgeExcludePrune\u003c/code\u003e by default  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/9526c8d\"\u003e\u003c!-- raw HTML omitted --\u003e(9526c)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove the pnpm workspaces fields ordering  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/aa64d59\"\u003e\u003c!-- raw HTML omitted --\u003e(aa64d)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/antfu/eslint-config/compare/v9.3.0...v9.4.0\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev9.3.0\u003c/h2\u003e\n\u003ch3\u003e   🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate plugins  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/de152ed\"\u003e\u003c!-- raw HTML omitted --\u003e(de152)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eMark \u003ccode\u003eeslint-plugin-erasable-syntax-only\u003c/code\u003e as optional peer  -  by \u003ca href=\"https://github.com/KazariAI\"\u003e\u003ccode\u003e@​KazariAI\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antfu/eslint-config/issues/859\"\u003eantfu/eslint-config#859\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/016425f\"\u003e\u003c!-- raw HTML omitted --\u003e(01642)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003e    \u003ca href=\"https://github.com/antfu/eslint-config/compare/v9.2.0...v9.3.0\"\u003eView changes on GitHub\u003c/a\u003e\u003c/h5\u003e\n\u003ch2\u003ev9.2.0\u003c/h2\u003e\n\u003ch3\u003e   🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate plugins  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/9ff1e11\"\u003e\u003c!-- raw HTML omitted --\u003e(9ff1e)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e   🐞 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003escripts-info\u003c/code\u003e in package.json sorting  -  by \u003ca href=\"https://github.com/antfu\"\u003e\u003ccode\u003e@​antfu\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/antfu/eslint-config/commit/09680e4\"\u003e\u003c!-- raw HTML omitted --\u003e(09680)\u003c!-- raw HTML omitted --\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/df4d896ed9b493ca0562fdf2c8c0fcd92fd16f6e\"\u003e\u003ccode\u003edf4d896\u003c/code\u003e\u003c/a\u003e chore: release v9.5.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/a213d4e9abd9945c7ee0408aeafdca34abdaf9c6\"\u003e\u003ccode\u003ea213d4e\u003c/code\u003e\u003c/a\u003e fix: \u003ccode\u003eantislop\u003c/code\u003e plugins composition, refactor\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/0870a3a73066aea9a1586672d779a4608b3375c7\"\u003e\u003ccode\u003e0870a3a\u003c/code\u003e\u003c/a\u003e chore: release v9.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/f6906f6b0c68a756bed2eb4bbd42358cf6ec4c55\"\u003e\u003ccode\u003ef6906f6\u003c/code\u003e\u003c/a\u003e feat: add antislop option (\u003ca href=\"https://redirect.github.com/antfu/eslint-config/issues/861\"\u003e#861\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/8808d4ef652f2a87d0b387c6a5765c037cd4a3fd\"\u003e\u003ccode\u003e8808d4e\u003c/code\u003e\u003c/a\u003e chore: release v9.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/ab4004a34932cc2b7208d324a5512a3b4c10d826\"\u003e\u003ccode\u003eab4004a\u003c/code\u003e\u003c/a\u003e feat(pnpm): enforce new-line style for pnpm-workspace.yaml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/c058aa0cf9569eb0de68e95efdd66c750c971d6e\"\u003e\u003ccode\u003ec058aa0\u003c/code\u003e\u003c/a\u003e chore: release v9.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/33a41b4d58a9cc754d52f4eb2b6767899310d69a\"\u003e\u003ccode\u003e33a41b4\u003c/code\u003e\u003c/a\u003e feat: update plugins \u003ccode\u003ejsdoc v64\u003c/code\u003e \u003ccode\u003eunicorn v74\u003c/code\u003e \u003ccode\u003ee18e v0.8\u003c/code\u003e \u003ccode\u003esolid v0.17\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/4e17083ff0e325eb9dfec7b887658c01d72d061f\"\u003e\u003ccode\u003e4e17083\u003c/code\u003e\u003c/a\u003e chore: update deps\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/antfu/eslint-config/commit/aa64d594d744902d57c885743cc7ca44d3976c0c\"\u003e\u003ccode\u003eaa64d59\u003c/code\u003e\u003c/a\u003e feat(pnpm): improve the pnpm workspaces fields ordering\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/antfu/eslint-config/compare/v6.7.3...v9.5.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@antv/g6` from 4.8.25 to 5.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/antvis/g6/releases\"\u003e@​antv/g6's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.1.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edocs: replace playground with ob by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7226\"\u003eantvis/G6#7226\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 更新图表示例中, 点选示例配置 by \u003ca href=\"https://github.com/louhaojie99\"\u003e\u003ccode\u003e@​louhaojie99\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7247\"\u003eantvis/G6#7247\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: update labelText attribute types for generic node configuration by \u003ca href=\"https://github.com/louhaojie99\"\u003e\u003ccode\u003e@​louhaojie99\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7248\"\u003eantvis/G6#7248\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 修正元素 Element 内置节点 HTML 文档中样式配置类型以及默认值问题 by \u003ca href=\"https://github.com/louhaojie99\"\u003e\u003ccode\u003e@​louhaojie99\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7249\"\u003eantvis/G6#7249\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 修正元素 Element 的通用配置项中，属性介绍表头的类型与默认值位置错误 by \u003ca href=\"https://github.com/louhaojie99\"\u003e\u003ccode\u003e@​louhaojie99\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7250\"\u003eantvis/G6#7250\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 修正 Graph - 图 介绍中的内容符号缺失及空格问题 by \u003ca href=\"https://github.com/louhaojie99\"\u003e\u003ccode\u003e@​louhaojie99\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7251\"\u003eantvis/G6#7251\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: restructure of the menu by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7253\"\u003eantvis/G6#7253\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 更新元素通用属性文档 by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7256\"\u003eantvis/G6#7256\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 丰富html节点文档 by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7257\"\u003eantvis/G6#7257\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 更新元素状态和Tooltip插件文档，增强内容和示例 by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7260\"\u003eantvis/G6#7260\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: fix indented-tree demo by \u003ca href=\"https://github.com/TZZack\"\u003e\u003ccode\u003e@​TZZack\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7242\"\u003eantvis/G6#7242\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(edge-badge): add default edge badge opacity by \u003ca href=\"https://github.com/TZZack\"\u003e\u003ccode\u003e@​TZZack\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7243\"\u003eantvis/G6#7243\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: fix type of is-to-be-destroyed by \u003ca href=\"https://github.com/Aarebecca\"\u003e\u003ccode\u003e@​Aarebecca\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7246\"\u003eantvis/G6#7246\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: compact box layout docs by \u003ca href=\"https://github.com/SamuNatsu\"\u003e\u003ccode\u003e@​SamuNatsu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7284\"\u003eantvis/G6#7284\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(layout): add comboFilter by \u003ca href=\"https://github.com/TZZack\"\u003e\u003ccode\u003e@​TZZack\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7244\"\u003eantvis/G6#7244\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(transform): prevent redirected edges from being re-added in process-parallel-edges by \u003ca href=\"https://github.com/lyw405\"\u003e\u003ccode\u003e@​lyw405\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7266\"\u003eantvis/G6#7266\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: minimap，配置项，shape方法，添加第3个参数，传入完整图形 by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7286\"\u003eantvis/G6#7286\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: divide by zero error when fitView with no content by \u003ca href=\"https://github.com/louisch\"\u003e\u003ccode\u003e@​louisch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7292\"\u003eantvis/G6#7292\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(brush-select and lasso-select): adapt html node by \u003ca href=\"https://github.com/TZZack\"\u003e\u003ccode\u003e@​TZZack\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7293\"\u003eantvis/G6#7293\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: skip react node test case to make ci work by \u003ca href=\"https://github.com/hustcc\"\u003e\u003ccode\u003e@​hustcc\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7311\"\u003eantvis/G6#7311\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: correct drag node position at rotated canvas by \u003ca href=\"https://github.com/Sloth9527\"\u003e\u003ccode\u003e@​Sloth9527\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7310\"\u003eantvis/G6#7310\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: title plugin by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7294\"\u003eantvis/G6#7294\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: console.error emit from grid line plugin when followZoom is on by \u003ca href=\"https://github.com/louisch\"\u003e\u003ccode\u003e@​louisch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7289\"\u003eantvis/G6#7289\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 添加g6-extension-vue自定义节点文档 by \u003ca href=\"https://github.com/Child-qjj\"\u003e\u003ccode\u003e@​Child-qjj\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7320\"\u003eantvis/G6#7320\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: make redirect link right by \u003ca href=\"https://github.com/ZWkang\"\u003e\u003ccode\u003e@​ZWkang\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7323\"\u003eantvis/G6#7323\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: 修正元素状态属性栏, 禁用状态名描述错误，将 disable 更正为 disabled by \u003ca href=\"https://github.com/louhaojie99\"\u003e\u003ccode\u003e@​louhaojie99\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7334\"\u003eantvis/G6#7334\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: add hasNode/hasEdge/hasCombo API by \u003ca href=\"https://github.com/Aarebecca\"\u003e\u003ccode\u003e@​Aarebecca\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7345\"\u003eantvis/G6#7345\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: 修复 React 16/17 版本下 react-dom/client 模块解析失败的问题 by \u003ca href=\"https://github.com/yinsong19\"\u003e\u003ccode\u003e@​yinsong19\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7389\"\u003eantvis/G6#7389\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate BaseNode.zh.md by \u003ca href=\"https://github.com/Gitsifu\"\u003e\u003ccode\u003e@​Gitsifu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7370\"\u003eantvis/G6#7370\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore:add issue automated by \u003ca href=\"https://github.com/interstellarmt\"\u003e\u003ccode\u003e@​interstellarmt\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7391\"\u003eantvis/G6#7391\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade canvas version in g6-ssr by \u003ca href=\"https://github.com/hustcc\"\u003e\u003ccode\u003e@​hustcc\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7395\"\u003eantvis/G6#7395\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: upgrade canvas to v3 in g6-ssr by \u003ca href=\"https://github.com/hustcc\"\u003e\u003ccode\u003e@​hustcc\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7398\"\u003eantvis/G6#7398\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: update version to 5.0.50 by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7426\"\u003eantvis/G6#7426\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: g6-extension-react 支持 React16~19 渲染兼容 by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7434\"\u003eantvis/G6#7434\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate webpack configuration instructions by \u003ca href=\"https://github.com/JieWongGitHub\"\u003e\u003ccode\u003e@​JieWongGitHub\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7433\"\u003eantvis/G6#7433\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e更新bundle.zh.md by \u003ca href=\"https://github.com/JieWongGitHub\"\u003e\u003ccode\u003e@​JieWongGitHub\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7431\"\u003eantvis/G6#7431\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: tooltip when shown and next not enable, hide tooltip by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7462\"\u003eantvis/G6#7462\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: remove petercat by \u003ca href=\"https://github.com/yvonneyx\"\u003e\u003ccode\u003e@​yvonneyx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7469\"\u003eantvis/G6#7469\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs(site): 修复 v5 文档交互示例，将 'drag-node' 更正为 'drag-element' by \u003ca href=\"https://github.com/baozjj\"\u003e\u003ccode\u003e@​baozjj\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7478\"\u003eantvis/G6#7478\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eThe getNeighborIds method within the ClickSelect behavior has been changed from private to protected. by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7481\"\u003eantvis/G6#7481\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: zoom-canvas scroll-canvas conflict by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7488\"\u003eantvis/G6#7488\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: drag-element add trigger config by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7497\"\u003eantvis/G6#7497\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: focus element trigger option by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7501\"\u003eantvis/G6#7501\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eupdate: 增加扩展实现相关文档指引 by \u003ca href=\"https://github.com/imindtrack\"\u003e\u003ccode\u003e@​imindtrack\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7493\"\u003eantvis/G6#7493\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: canvas event sample fix by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7506\"\u003eantvis/G6#7506\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: update announcement content and link in .dumirc.ts by \u003ca href=\"https://github.com/Aarebecca\"\u003e\u003ccode\u003e@​Aarebecca\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7511\"\u003eantvis/G6#7511\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(shortcut): 修正全局事件监听器错误移除focus事件的问题 by \u003ca href=\"https://github.com/Child-qjj\"\u003e\u003ccode\u003e@​Child-qjj\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7470\"\u003eantvis/G6#7470\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: legend getMarkerData to protected by \u003ca href=\"https://github.com/XiaoMing-xmg666\"\u003e\u003ccode\u003e@​XiaoMing-xmg666\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/antvis/G6/pull/7507\"\u003eantvis/G6#7507\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/antvis/g6/commits/5.1.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@codecov/webpack-plugin` from 1.9.1 to 2.0.1\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~thomasrockhu\"\u003ethomasrockhu\u003c/a\u003e, a new releaser for \u003ccode\u003e@​codecov/webpack-plugin\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@eslint-react/eslint-plugin` from 2.13.0 to 5.19.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/Rel1cx/eslint-react/releases\"\u003e@​eslint-react/eslint-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.19.1 (2026-09-15)\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003e🐞 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: the first parameter of a function is now classified as props only when the function is a confirmed component — one that returns JSX or calls hooks — so mutating the first parameter of a function that merely looks like a component (e.g. an event-handler factory whose returned function never renders and calls no hooks) is no longer reported. (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1952\"\u003e#1952\u003c/a\u003e, closes \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1951\"\u003e#1951\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🏗️ Internal\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: renamed \u003ccode\u003eMUTATING_METHODS\u003c/code\u003e/\u003ccode\u003eNAVIGATION_HOOKS\u003c/code\u003e to \u003ccode\u003eKNOWN_MUTATING_METHODS\u003c/code\u003e/\u003ccode\u003eKNOWN_MUTATING_HOOKS\u003c/code\u003e and added precise behavior boundary tests.\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/globals\u003c/code\u003e: restructured internals (split into \u003ccode\u003ecollect\u003c/code\u003e, \u003ccode\u003eeffects\u003c/code\u003e, and \u003ccode\u003eorigins\u003c/code\u003e modules) to match the in-progress \u003ccode\u003efeat/environment-config\u003c/code\u003e implementation; no behavior change.\u003c/li\u003e\n\u003cli\u003eWebsite: awaited the async llms.txt index generation and fixed the website data update step to run before building.\u003c/li\u003e\n\u003cli\u003eCI: removed the generated file verification step.\u003c/li\u003e\n\u003cli\u003eBumped \u003ccode\u003etypescript-eslint\u003c/code\u003e to \u003ccode\u003e8.70.0\u003c/code\u003e, \u003ccode\u003ereact\u003c/code\u003e/\u003ccode\u003ereact-dom\u003c/code\u003e to \u003ccode\u003e19.3.0\u003c/code\u003e, \u003ccode\u003enext\u003c/code\u003e to \u003ccode\u003e16.3.5\u003c/code\u003e, \u003ccode\u003evite\u003c/code\u003e to \u003ccode\u003e8.3.0\u003c/code\u003e, \u003ccode\u003eeffect\u003c/code\u003e to \u003ccode\u003e3.22.2\u003c/code\u003e, \u003ccode\u003efumadocs\u003c/code\u003e to \u003ccode\u003e16.15.10\u003c/code\u003e, \u003ccode\u003eeslint-plugin-jsdoc\u003c/code\u003e to \u003ccode\u003e64.3.9\u003c/code\u003e, \u003ccode\u003etailwind-merge\u003c/code\u003e to \u003ccode\u003e3.7.0\u003c/code\u003e, \u003ccode\u003eansis\u003c/code\u003e to \u003ccode\u003e4.4.0\u003c/code\u003e, \u003ccode\u003enx\u003c/code\u003e to \u003ccode\u003e23.2.1\u003c/code\u003e, \u003ccode\u003eeslint-plugin-react-refresh\u003c/code\u003e to \u003ccode\u003e0.5.6\u003c/code\u003e, \u003ccode\u003eeslint-plugin-package-json\u003c/code\u003e to \u003ccode\u003e1.8.1\u003c/code\u003e, \u003ccode\u003e@types/node\u003c/code\u003e to \u003ccode\u003e26.5.1\u003c/code\u003e, \u003ccode\u003e@types/react\u003c/code\u003e to \u003ccode\u003e19.3.0\u003c/code\u003e, \u003ccode\u003e@types/react-dom\u003c/code\u003e to \u003ccode\u003e19.3.0\u003c/code\u003e, and \u003ccode\u003epnpm\u003c/code\u003e to \u003ccode\u003e12.4.1\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/Rel1cx/eslint-react/compare/v5.19.0...v5.19.1\"\u003ehttps://github.com/Rel1cx/eslint-react/compare/v5.19.0...v5.19.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eAttestation\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/attestations/47410636\"\u003ehttps://github.com/Rel1cx/eslint-react/attestations/47410636\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.19.0 (2026-09-07)\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003e✨ New\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: direct mutations of props and state are now reported — member assignments, updates, deletions, and mutating method calls are flagged when the mutated value resolves (through variable-declarator aliases) to a component's props, a \u003ccode\u003euseState\u003c/code\u003e/\u003ccode\u003euseReducer\u003c/code\u003e state value, or a custom hook matching the \u003ccode\u003eadditionalStateHooks\u003c/code\u003e setting, independent of whether the mutation happens inside a function that reaches a freeze sink. (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1948\"\u003e#1948\u003c/a\u003e, closes \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1941\"\u003e#1941\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: added shallow-copy awareness — nested mutations through an object/array literal built by spreading a props or state value (e.g. \u003ccode\u003econst copy = { ...state }\u003c/code\u003e / \u003ccode\u003econst copy = [...state]\u003c/code\u003e) are reported, since the nested values are still shared with the original; writes to the copy's own top-level slots are not reported. (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1948\"\u003e#1948\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/Rel1cx/eslint-react/compare/v5.18.10...v5.19.0\"\u003ehttps://github.com/Rel1cx/eslint-react/compare/v5.18.10...v5.19.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eAttestation\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/attestations/45585492\"\u003ehttps://github.com/Rel1cx/eslint-react/attestations/45585492\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.18.10 (2026-09-06)\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003e🐞 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe remaining \u003ccode\u003edisable-*\u003c/code\u003e preset configs in \u003ccode\u003ereact-x\u003c/code\u003e and \u003ccode\u003ereact-rsc\u003c/code\u003e now also register the same plugin object as the package's default export, so ESLint no longer reports a \u0026quot;Cannot redefine plugin\u0026quot; error when combining them with a manually registered plugin. (follow-up to \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1947\"\u003e#1947\u003c/a\u003e, see \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1946\"\u003e#1946\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🏗️ Internal\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eWebsite: removed \u003ccode\u003efumadocs-twoslash\u003c/code\u003e from \u003ccode\u003eserverExternalPackages\u003c/code\u003e to fix a prerender error.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/Rel1cx/eslint-react/blob/main/CHANGELOG.md\"\u003e@​eslint-react/eslint-plugin's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.19.1 (2026-09-15)\u003c/h2\u003e\n\u003ch3\u003e🐞 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: the first parameter of a function is now classified as props only when the function is a confirmed component — one that returns JSX or calls hooks — so mutating the first parameter of a function that merely looks like a component (e.g. an event-handler factory whose returned function never renders and calls no hooks) is no longer reported. (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1952\"\u003e#1952\u003c/a\u003e, closes \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1951\"\u003e#1951\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🏗️ Internal\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: renamed \u003ccode\u003eMUTATING_METHODS\u003c/code\u003e/\u003ccode\u003eNAVIGATION_HOOKS\u003c/code\u003e to \u003ccode\u003eKNOWN_MUTATING_METHODS\u003c/code\u003e/\u003ccode\u003eKNOWN_MUTATING_HOOKS\u003c/code\u003e and added precise behavior boundary tests.\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/globals\u003c/code\u003e: restructured internals (split into \u003ccode\u003ecollect\u003c/code\u003e, \u003ccode\u003eeffects\u003c/code\u003e, and \u003ccode\u003eorigins\u003c/code\u003e modules) to match the in-progress \u003ccode\u003efeat/environment-config\u003c/code\u003e implementation; no behavior change.\u003c/li\u003e\n\u003cli\u003eWebsite: awaited the async llms.txt index generation and fixed the website data update step to run before building.\u003c/li\u003e\n\u003cli\u003eCI: removed the generated file verification step.\u003c/li\u003e\n\u003cli\u003eBumped \u003ccode\u003etypescript-eslint\u003c/code\u003e to \u003ccode\u003e8.70.0\u003c/code\u003e, \u003ccode\u003ereact\u003c/code\u003e/\u003ccode\u003ereact-dom\u003c/code\u003e to \u003ccode\u003e19.3.0\u003c/code\u003e, \u003ccode\u003enext\u003c/code\u003e to \u003ccode\u003e16.3.5\u003c/code\u003e, \u003ccode\u003evite\u003c/code\u003e to \u003ccode\u003e8.3.0\u003c/code\u003e, \u003ccode\u003eeffect\u003c/code\u003e to \u003ccode\u003e3.22.2\u003c/code\u003e, \u003ccode\u003efumadocs\u003c/code\u003e to \u003ccode\u003e16.15.10\u003c/code\u003e, \u003ccode\u003eeslint-plugin-jsdoc\u003c/code\u003e to \u003ccode\u003e64.3.9\u003c/code\u003e, \u003ccode\u003etailwind-merge\u003c/code\u003e to \u003ccode\u003e3.7.0\u003c/code\u003e, \u003ccode\u003eansis\u003c/code\u003e to \u003ccode\u003e4.4.0\u003c/code\u003e, \u003ccode\u003enx\u003c/code\u003e to \u003ccode\u003e23.2.1\u003c/code\u003e, \u003ccode\u003eeslint-plugin-react-refresh\u003c/code\u003e to \u003ccode\u003e0.5.6\u003c/code\u003e, \u003ccode\u003eeslint-plugin-package-json\u003c/code\u003e to \u003ccode\u003e1.8.1\u003c/code\u003e, \u003ccode\u003e@types/node\u003c/code\u003e to \u003ccode\u003e26.5.1\u003c/code\u003e, \u003ccode\u003e@types/react\u003c/code\u003e to \u003ccode\u003e19.3.0\u003c/code\u003e, \u003ccode\u003e@types/react-dom\u003c/code\u003e to \u003ccode\u003e19.3.0\u003c/code\u003e, and \u003ccode\u003epnpm\u003c/code\u003e to \u003ccode\u003e12.4.1\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/Rel1cx/eslint-react/compare/v5.19.0...v5.19.1\"\u003ehttps://github.com/Rel1cx/eslint-react/compare/v5.19.0...v5.19.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.19.0 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e✨ New\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: direct mutations of props and state are now reported — member assignments, updates, deletions, and mutating method calls are flagged when the mutated value resolves (through variable-declarator aliases) to a component's props, a \u003ccode\u003euseState\u003c/code\u003e/\u003ccode\u003euseReducer\u003c/code\u003e state value, or a custom hook matching the \u003ccode\u003eadditionalStateHooks\u003c/code\u003e setting, independent of whether the mutation happens inside a function that reaches a freeze sink. (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1948\"\u003e#1948\u003c/a\u003e, closes \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1941\"\u003e#1941\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ereact-x/immutability\u003c/code\u003e: added shallow-copy awareness — nested mutations through an object/array literal built by spreading a props or state value (e.g. \u003ccode\u003econst copy = { ...state }\u003c/code\u003e / \u003ccode\u003econst copy = [...state]\u003c/code\u003e) are reported, since the nested values are still shared with the original; writes to the copy's own top-level slots are not reported. (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1948\"\u003e#1948\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/Rel1cx/eslint-react/compare/v5.18.10...v5.19.0\"\u003ehttps://github.com/Rel1cx/eslint-react/compare/v5.18.10...v5.19.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.18.10 (2026-09-06)\u003c/h2\u003e\n\u003ch3\u003e🐞 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe remaining \u003ccode\u003edisable-*\u003c/code\u003e preset configs in \u003ccode\u003ereact-x\u003c/code\u003e and \u003ccode\u003ereact-rsc\u003c/code\u003e now also register the same plugin object as the package's default export, so ESLint no longer reports a \u0026quot;Cannot redefine plugin\u0026quot; error when combining them with a manually registered plugin. (follow-up to \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1947\"\u003e#1947\u003c/a\u003e, see \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1946\"\u003e#1946\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🏗️ Internal\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eWebsite: removed \u003ccode\u003efumadocs-twoslash\u003c/code\u003e from \u003ccode\u003eserverExternalPackages\u003c/code\u003e to fix a prerender error.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/Rel1cx/eslint-react/compare/v5.18.9...v5.18.10\"\u003ehttps://github.com/Rel1cx/eslint-react/compare/v5.18.9...v5.18.10\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.18.9 (2026-09-06)\u003c/h2\u003e\n\u003ch3\u003e🏗️ Internal\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBumped \u003ccode\u003eeslint\u003c/code\u003e to \u003ccode\u003e10.10.0\u003c/code\u003e, \u003ccode\u003evitest\u003c/code\u003e to \u003ccode\u003e5.0.0\u003c/code\u003e, \u003ccode\u003etsdown\u003c/code\u003e to \u003ccode\u003e0.23.0\u003c/code\u003e, \u003ccode\u003enx\u003c/code\u003e to \u003ccode\u003e23.2.0\u003c/code\u003e, \u003ccode\u003edprint\u003c/code\u003e to \u003ccode\u003e0.57.4\u003c/code\u003e, \u003ccode\u003e@types/react-dom\u003c/code\u003e to \u003ccode\u003e19.2.7\u003c/code\u003e, \u003ccode\u003e@eslint/compat\u003c/code\u003e to \u003ccode\u003e2.1.1\u003c/code\u003e, and \u003ccode\u003e@nubjs/nub\u003c/code\u003e to \u003ccode\u003e0.8.3\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/Rel1cx/eslint-react/compare/v5.18.8...v5.18.9\"\u003ehttps://github.com/Rel1cx/eslint-react/compare/v5.18.8...v5.18.9\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev5.18.8 (2026-09-05)\u003c/h2\u003e\n\u003ch3\u003e🐞 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ePreset configs (\u003ccode\u003erecommended\u003c/code\u003e, \u003ccode\u003estrict\u003c/code\u003e, etc.) now register the same plugin object as the package's default export, so ESLint no longer reports a \u0026quot;Cannot redefine plugin\u0026quot; error when the plugin is registered manually and a preset is extended at the same time. (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1947\"\u003e#1947\u003c/a\u003e, closes \u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1946\"\u003e#1946\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/27d850f85b0195b83120bf0f672a504f163a9525\"\u003e\u003ccode\u003e27d850f\u003c/code\u003e\u003c/a\u003e release: 5.19.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/9025c56005e74d83542a69243cce32f224b11fd5\"\u003e\u003ccode\u003e9025c56\u003c/code\u003e\u003c/a\u003e chore(deps): update react to 19.3.0 and other deps\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/6eee240688de585fa55f0348d48dae1302634483\"\u003e\u003ccode\u003e6eee240\u003c/code\u003e\u003c/a\u003e release: 5.19.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/3613135c3aa05f12c593ac297cdb282b5d1d9007\"\u003e\u003ccode\u003e3613135\u003c/code\u003e\u003c/a\u003e release: 5.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/662e99a7d6766d8c37775f511e9d441cc37ee5d0\"\u003e\u003ccode\u003e662e99a\u003c/code\u003e\u003c/a\u003e release: 5.18.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/f9eeb3ec8c25462532d8a6410a50a06bec33ec10\"\u003e\u003ccode\u003ef9eeb3e\u003c/code\u003e\u003c/a\u003e chore(deps): update eslint to 10.10.0, vitest to 5.0.0, tsdown to 0.23.0 and ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/5a586080978243ec58134245f7cf257fd8cd1663\"\u003e\u003ccode\u003e5a58608\u003c/code\u003e\u003c/a\u003e release: 5.18.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/4eb8b486ad580a5e3a570d4901e765d67891207f\"\u003e\u003ccode\u003e4eb8b48\u003c/code\u003e\u003c/a\u003e fix: register the same plugin object in preset configs as the default… (\u003ca href=\"https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin/issues/1947\"\u003e#1947\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/466ff59318c72aae36914d724fca33b809190dc7\"\u003e\u003ccode\u003e466ff59\u003c/code\u003e\u003c/a\u003e chore(deps): pin fast-uri to ^3.1.5 to fix CVE-2026-18446 (GHSA-7p8r-x3mc-p8w7)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Rel1cx/eslint-react/commit/1943f39bc2fd2ead651a467619b29e96857f7b87\"\u003e\u003ccode\u003e1943f39\u003c/code\u003e\u003c/a\u003e chore(deps): update typescript to 7.0.2 and other deps\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/Rel1cx/eslint-react/commits/v5.19.1/plugins/eslint-plugin\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@inquirer/prompts` from 7.10.1 to 8.7.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/SBoudrias/Inquirer.js/releases\"\u003e@​inquirer/prompts's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​inquirer/prompts\u003c/code\u003e\u003ca href=\"https://github.com/8\"\u003e\u003ccode\u003e@​8\u003c/code\u003e\u003c/a\u003e.7.2\u003c/h2\u003e\n\u003ch3\u003eWhat's new\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFixed a race where keystrokes batched in the same tick as the key that settled a prompt could still reach keypress handlers after the prompt was done, cancelled, or aborted (\u003ccode\u003e@inquirer/core\u003c/code\u003e, \u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/pull/2255\"\u003e#2255\u003c/a\u003e, closes \u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/issues/1816\"\u003e#1816\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003econfirm()\u003c/code\u003e now trims surrounding whitespace from answers before matching yes/no keywords (\u003ccode\u003e@inquirer/confirm\u003c/code\u003e, \u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/pull/2254\"\u003e#2254\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eIncluded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/checkbox@^5.2.5\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/confirm@^6.3.2\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/editor@^5.3.3\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/expand@^5.1.5\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/input@^5.1.6\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/number@^4.2.3\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/password@^5.2.2\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/rawlist@^5.3.5\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/search@^4.3.3\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/select@^5.2.5\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​inquirer/prompts\u003c/code\u003e\u003ca href=\"https://github.com/8\"\u003e\u003ccode\u003e@​8\u003c/code\u003e\u003c/a\u003e.7.1\u003c/h2\u003e\n\u003ch3\u003eWhat's new\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAll bundled prompts now pin \u003ccode\u003e@inquirer/type\u003c/code\u003e to an exact version in their published manifests. Since these type definitions leak into consumers' \u003ccode\u003etsc\u003c/code\u003e runs, a semver range on the types-only dependency could break downstream TypeScript builds without any change to Inquirer.js itself (\u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/pull/2247\"\u003e#2247\u003c/a\u003e, fixes \u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/issues/2244\"\u003e#2244\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eIncluded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/checkbox@^5.2.4\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/confirm@^6.3.1\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/editor@^5.3.2\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/expand@^5.1.4\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/input@^5.1.5\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/number@^4.2.2\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/password@^5.2.1\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/rawlist@^5.3.4\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/search@^4.3.2\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@inquirer/select@^5.2.4\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​inquirer/prompts\u003c/code\u003e\u003ca href=\"https://github.com/8\"\u003e\u003ccode\u003e@​8\u003c/code\u003e\u003c/a\u003e.7.0\u003c/h2\u003e\n\u003ch3\u003eWhat's new\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003epassword\u003c/code\u003e gains the \u003ccode\u003etoggleMask\u003c/code\u003e option (ctrl+t to reveal the typed value).\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003econfirm\u003c/code\u003e now matches localized yes/no answers per-locale.\u003c/li\u003e\n\u003cli\u003ePrettified prompt and theme types for better IDE display.\u003c/li\u003e\n\u003cli\u003eAdded \u003ccode\u003einquirer-grouped-checkbox\u003c/code\u003e to the community prompts list (\u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/pull/2236\"\u003e#2236\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eIncluded\u003c/h3\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/cbdb34bfc6c245941d80ef88493c50b3d6dbfce6\"\u003e\u003ccode\u003ecbdb34b\u003c/code\u003e\u003c/a\u003e chore: Publish new release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/8340d2dd764d4b11d4e200412b614f9964ae0691\"\u003e\u003ccode\u003e8340d2d\u003c/code\u003e\u003c/a\u003e fix(\u003ccode\u003e@​inquirer/core\u003c/code\u003e): clear hook effects before settling prompts\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/2475e07186d824d52504095c71c2272d9e7338fe\"\u003e\u003ccode\u003e2475e07\u003c/code\u003e\u003c/a\u003e test(\u003ccode\u003e@​inquirer/core\u003c/code\u003e): cover hook cleanup error semantics\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/15cd8d3b53bfc270633072073c24d6be6ce3d83b\"\u003e\u003ccode\u003e15cd8d3\u003c/code\u003e\u003c/a\u003e fix(confirm): ignore surrounding whitespace in answers\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/9cb0da6c187346c955ab0b788fa1a88c897f16da\"\u003e\u003ccode\u003e9cb0da6\u003c/code\u003e\u003c/a\u003e chore(deps): Bump github/codeql-action/analyze from 4.37.7 to 4.37.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/1c750bc55ab4fac310d70db84a7a6ada76c0e854\"\u003e\u003ccode\u003e1c750bc\u003c/code\u003e\u003c/a\u003e chore(deps-dev): Bump the build group with 3 updates (\u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/issues/2251\"\u003e#2251\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/81f1525110990603e9796d48eecde0f8c2d2fc98\"\u003e\u003ccode\u003e81f1525\u003c/code\u003e\u003c/a\u003e chore(deps-dev): Bump \u003ccode\u003e@​types/node\u003c/code\u003e in the types group (\u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/issues/2252\"\u003e#2252\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/7c27f26606a16b6e8f55b51e4431c72658c674c5\"\u003e\u003ccode\u003e7c27f26\u003c/code\u003e\u003c/a\u003e chore(deps-dev): Bump oxfmt in the formatting group (\u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/issues/2249\"\u003e#2249\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/6119088a4e07ec59460c3cd44d06817de97bfdac\"\u003e\u003ccode\u003e6119088\u003c/code\u003e\u003c/a\u003e chore(deps): Bump github/codeql-action/init from 4.37.7 to 4.37.9 (\u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/issues/2250\"\u003e#2250\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SBoudrias/Inquirer.js/commit/0d167c0aface3f5cf95132ada9bfec7946dd5b74\"\u003e\u003ccode\u003e0d167c0\u003c/code\u003e\u003c/a\u003e chore(deps-dev): Bump the linting group with 4 updates (\u003ca href=\"https://redirect.github.com/SBoudrias/Inquirer.js/issues/2248\"\u003e#2248\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/SBoudrias/Inquirer.js/compare/@inquirer/prompts@7.10.1...@inquirer/prompts@8.7.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​inquirer/prompts\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@npmcli/run-script` from 10.0.4 to 11.0.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/npm/run-script/releases\"\u003e@​npmcli/run-script's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev11.0.0\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/run-script/compare/v10.0.4...v11.0.0\"\u003e11.0.0\u003c/a\u003e (2026-06-15)\u003c/h2\u003e\n\u003ch3\u003e⚠️ BREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@npmcli/run-script\u003c/code\u003e now supports node \u003ccode\u003e^22.22.2 || ^24.15.0 || \u0026gt;=26.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003etemplate-oss-apply\u003c/li\u003e\n\u003cli\u003eIf a package has a server.js file but no start script, it will no longer be automatically run when the start event is triggered. This change removes the implicit behavior of running server.js and requires an explicit start script to be defined in the package.json.\u003c/li\u003e\n\u003cli\u003ethe banner that shows the command being ran has been moved to a log event\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/88cce50a0e5cc2e022e2b36a25eda84ea9e21247\"\u003e\u003ccode\u003e88cce50\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e bump to new node engine range (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/2b1f2f44caf54b83ae08bece8e996aa4bf745ada\"\u003e\u003ccode\u003e2b1f2f4\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e template-oss-apply (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/99150de3b2a812d19970b8a5dd5941a2c128e040\"\u003e\u003ccode\u003e99150de\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/264\"\u003e#264\u003c/a\u003e make banner info a log event (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/eb5482637b57f34578395056304c20e76135b567\"\u003e\u003ccode\u003eeb54826\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/262\"\u003e#262\u003c/a\u003e do not auto-discover and run a server.js file on \u003ccode\u003enpm start\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/npm/run-script/issues/262\"\u003e#262\u003c/a\u003e) (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/babf6cc3e1606317cc417e342e8658db146541ef\"\u003e\u003ccode\u003ebabf6cc\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/264\"\u003e#264\u003c/a\u003e rename variable (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/539bb6b19e4e1bb3fb7708bc2eeafc637cb029b3\"\u003e\u003ccode\u003e539bb6b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003enode-gyp@13.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/cbe988efd2533f04e91e435c70733754965fa2d3\"\u003e\u003ccode\u003ecbe988e\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003eproc-log@7.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/cec9fc0b490b72c4b7cafa687307445f799e0ea0\"\u003e\u003ccode\u003ecec9fc0\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/promise-spawn@10.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/d6287dfa95c940b46cff962cb774042bf6c19b21\"\u003e\u003ccode\u003ed6287df\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/package-json@8.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/c5f38b06d69c499f372e3eec6a8ebc30f0de0bcb\"\u003e\u003ccode\u003ec5f38b0\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/node-gyp@6.0.0\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/f5be71cc9fc0cb54f7a75f1dd3e98303c546e7e7\"\u003e\u003ccode\u003ef5be71c\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/eslint-config@7.0.0\u003c/code\u003e (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/1e839aaf6ec9e84de26830a14d17f2393538748d\"\u003e\u003ccode\u003e1e839aa\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e template-oss-apply (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/88e6692d3d416faadefb37039abd56434643faf3\"\u003e\u003ccode\u003e88e6692\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e bumping \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e from 4.30.0 to 5.1.0 (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/812508814782e53606dc741d561380048ea67076\"\u003e\u003ccode\u003e8125088\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/265\"\u003e#265\u003c/a\u003e updateNpm: false (\u003ca href=\"https://redirect.github.com/npm/run-script/issues/265\"\u003e#265\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/73909c5b8b2a4d040a52a1ce73a5d1a70dfc0fb0\"\u003e\u003ccode\u003e73909c5\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/263\"\u003e#263\u003c/a\u003e bump \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e from 4.29.0 to 4.30.0 (\u003ca href=\"https://redirect.github.com/npm/run-script/issues/263\"\u003e#263\u003c/a\u003e) (\u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot], \u003ca href=\"https://github.com/npm-cli-bot\"\u003e\u003ccode\u003e@​npm-cli-bot\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/npm/run-script/blob/main/CHANGELOG.md\"\u003e@​npmcli/run-script's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/run-script/compare/v10.0.4...v11.0.0\"\u003e11.0.0\u003c/a\u003e (2026-06-15)\u003c/h2\u003e\n\u003ch3\u003e⚠️ BREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@npmcli/run-script\u003c/code\u003e now supports node \u003ccode\u003e^22.22.2 || ^24.15.0 || \u0026gt;=26.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003etemplate-oss-apply\u003c/li\u003e\n\u003cli\u003eIf a package has a server.js file but no start script, it will no longer be automatically run when the start event is triggered. This change removes the implicit behavior of running server.js and requires an explicit start script to be defined in the package.json.\u003c/li\u003e\n\u003cli\u003ethe banner that shows the command being ran has been moved to a log event\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/88cce50a0e5cc2e022e2b36a25eda84ea9e21247\"\u003e\u003ccode\u003e88cce50\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e bump to new node engine range (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/2b1f2f44caf54b83ae08bece8e996aa4bf745ada\"\u003e\u003ccode\u003e2b1f2f4\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e template-oss-apply (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/99150de3b2a812d19970b8a5dd5941a2c128e040\"\u003e\u003ccode\u003e99150de\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/264\"\u003e#264\u003c/a\u003e make banner info a log event (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/eb5482637b57f34578395056304c20e76135b567\"\u003e\u003ccode\u003eeb54826\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/262\"\u003e#262\u003c/a\u003e do not auto-discover and run a server.js file on \u003ccode\u003enpm start\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/npm/run-script/issues/262\"\u003e#262\u003c/a\u003e) (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/babf6cc3e1606317cc417e342e8658db146541ef\"\u003e\u003ccode\u003ebabf6cc\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/264\"\u003e#264\u003c/a\u003e rename variable (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/539bb6b19e4e1bb3fb7708bc2eeafc637cb029b3\"\u003e\u003ccode\u003e539bb6b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003enode-gyp@13.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/cbe988efd2533f04e91e435c70733754965fa2d3\"\u003e\u003ccode\u003ecbe988e\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003eproc-log@7.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/cec9fc0b490b72c4b7cafa687307445f799e0ea0\"\u003e\u003ccode\u003ecec9fc0\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/promise-spawn@10.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/d6287dfa95c940b46cff962cb774042bf6c19b21\"\u003e\u003ccode\u003ed6287df\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/package-json@8.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/c5f38b06d69c499f372e3eec6a8ebc30f0de0bcb\"\u003e\u003ccode\u003ec5f38b0\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/node-gyp@6.0.0\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/f5be71cc9fc0cb54f7a75f1dd3e98303c546e7e7\"\u003e\u003ccode\u003ef5be71c\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e \u003ccode\u003e@npmcli/eslint-config@7.0.0\u003c/code\u003e (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/1e839aaf6ec9e84de26830a14d17f2393538748d\"\u003e\u003ccode\u003e1e839aa\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e template-oss-apply (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/88e6692d3d416faadefb37039abd56434643faf3\"\u003e\u003ccode\u003e88e6692\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/277\"\u003e#277\u003c/a\u003e bumping \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e from 4.30.0 to 5.1.0 (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/812508814782e53606dc741d561380048ea67076\"\u003e\u003ccode\u003e8125088\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/265\"\u003e#265\u003c/a\u003e updateNpm: false (\u003ca href=\"https://redirect.github.com/npm/run-script/issues/265\"\u003e#265\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/73909c5b8b2a4d040a52a1ce73a5d1a70dfc0fb0\"\u003e\u003ccode\u003e73909c5\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/run-script/pull/263\"\u003e#263\u003c/a\u003e bump \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e from 4.29.0 to 4.30.0 (\u003ca href=\"https://redirect.github.com/npm/run-script/issues/263\"\u003e#263\u003c/a\u003e) (\u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot], \u003ca href=\"https://github.com/npm-cli-bot\"\u003e\u003ccode\u003e@​npm-cli-bot\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/357e4d6445c6a2fd52de41626b3f66845bb20a27\"\u003e\u003ccode\u003e357e4d6\u003c/code\u003e\u003c/a\u003e chore: release 11.0.0 (\u003ca href=\"https://redirect.github.com/npm/run-script/issues/266\"\u003e#266\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/539bb6b19e4e1bb3fb7708bc2eeafc637cb029b3\"\u003e\u003ccode\u003e539bb6b\u003c/code\u003e\u003c/a\u003e deps: node-gyp@13.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/f5be71cc9fc0cb54f7a75f1dd3e98303c546e7e7\"\u003e\u003ccode\u003ef5be71c\u003c/code\u003e\u003c/a\u003e chore: \u003ccode\u003e@​npmcli/eslint-config\u003c/code\u003e\u003ca href=\"https://github.com/7\"\u003e\u003ccode\u003e@​7\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/cbe988efd2533f04e91e435c70733754965fa2d3\"\u003e\u003ccode\u003ecbe988e\u003c/code\u003e\u003c/a\u003e deps: proc-log@7.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/cec9fc0b490b72c4b7cafa687307445f799e0ea0\"\u003e\u003ccode\u003ecec9fc0\u003c/code\u003e\u003c/a\u003e deps: \u003ccode\u003e@​npmcli/promise-spawn\u003c/code\u003e\u003ca href=\"https://github.com/10\"\u003e\u003ccode\u003e@​10\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/d6287dfa95c940b46cff962cb774042bf6c19b21\"\u003e\u003ccode\u003ed6287df\u003c/code\u003e\u003c/a\u003e deps: \u003ccode\u003e@​npmcli/package-json\u003c/code\u003e\u003ca href=\"https://github.com/8\"\u003e\u003ccode\u003e@​8\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/c5f38b06d69c499f372e3eec6a8ebc30f0de0bcb\"\u003e\u003ccode\u003ec5f38b0\u003c/code\u003e\u003c/a\u003e deps: \u003ccode\u003e@​npmcli/node-gyp\u003c/code\u003e\u003ca href=\"https://github.com/6\"\u003e\u003ccode\u003e@​6\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/1e839aaf6ec9e84de26830a14d17f2393538748d\"\u003e\u003ccode\u003e1e839aa\u003c/code\u003e\u003c/a\u003e chore: template-oss-apply\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/88cce50a0e5cc2e022e2b36a25eda84ea9e21247\"\u003e\u003ccode\u003e88cce50\u003c/code\u003e\u003c/a\u003e feat!: bump to new node engine range\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/run-script/commit/2b1f2f44caf54b83ae08bece8e996aa4bf745ada\"\u003e\u003ccode\u003e2b1f2f4\u003c/code\u003e\u003c/a\u003e feat!: template-oss-apply\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/npm/run-script/compare/v10.0.4...v11.0.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@size-limit/file` from 11.2.0 to 14.0.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ai/size-limit/releases\"\u003e@​size-limit/file's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e14.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMoved to \u003ccode\u003erolldown\u003c/code\u003e by default in \u003ccode\u003e@size-limit/preset-small-lib\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eUnified Node.js support accross projects.\u003c/li\u003e\n\u003cli\u003eRemoved dependencies.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed release.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003erolldown\u003c/code\u003e \u0026amp; \u003ccode\u003erolldown-why\u003c/code\u003e plugins (by \u003ca href=\"https://github.com/dangreen\"\u003e\u003ccode\u003e@​dangreen\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemoved \u003ccode\u003epicocolors\u003c/code\u003e dependencies.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed glob pattern regression.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed publishing process.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemoved Node.js 20 support.\u003c/li\u003e\n\u003cli\u003eRemoved \u003ccode\u003etinyglobby\u003c/code\u003e and \u003ccode\u003ejiti\u003c/code\u003e dependencies.\u003c/li\u003e\n\u003cli\u003eAdded npm provenance.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003edisablePlugins\u003c/code\u003e option (by \u003ca href=\"https://github.com/JPeer264\"\u003e\u003ccode\u003e@​JPeer264\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdated \u003ccode\u003eesbuild\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated \u003ccode\u003ecss-minimizer-webpack-plugin\u003c/code\u003e (by \u003ca href=\"https://github.com/SevereCloud\"\u003e\u003ccode\u003e@​SevereCloud\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMoved \u003ccode\u003ejiti\u003c/code\u003e to optional dependency.\u003c/li\u003e\n\u003cli\u003eRemoved \u003ccode\u003echokidar\u003c/code\u003e dependency in favor of \u003ccode\u003efs.watch\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eRemoved Node.js 18 support.\u003c/li\u003e\n\u003cli\u003eUpdated \u003ccode\u003eopen\u003c/code\u003e \u0026amp; \u003ccode\u003eesbuild\u003c/code\u003e dependencies.\u003c/li\u003e\n\u003cli\u003eFixed docs (by \u003ca href=\"https://github.com/nlopin\"\u003e\u003ccode\u003e@​nlopin\u003c/code\u003e\u003c/a\u003e \u0026amp; \u003ca href=\"https://github.com/just-boris\"\u003e\u003ccode\u003e@​just-boris\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ai/size-limit/blob/main/CHANGELOG.md\"\u003e@​size-limit/file's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e14.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMoved to \u003ccode\u003erolldown\u003c/code\u003e by default in \u003ccode\u003e@size-limit/preset-small-lib\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eUnified Node.js support accross projects.\u003c/li\u003e\n\u003cli\u003eRemoved dependencies.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed release.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003erolldown\u003c/code\u003e \u0026amp; \u003ccode\u003erolldown-why\u003c/code\u003e plugins (by \u003ca href=\"https://github.com/dangreen\"\u003e\u003ccode\u003e@​dangreen\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemoved \u003ccode\u003epicocolors\u003c/code\u003e dependencies.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed glob pattern regression.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed publishing process.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e13.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemoved Node.js 20 support.\u003c/li\u003e\n\u003cli\u003eRemoved \u003ccode\u003etinyglobby\u003c/code\u003e and \u003ccode\u003ejiti\u003c/code\u003e dependencies.\u003c/li\u003e\n\u003cli\u003eAdded npm provenance.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003edisablePlugins\u003c/code\u003e option (by \u003ca href=\"https://github.com/JPeer264\"\u003e\u003ccode\u003e@​JPeer264\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdated \u003ccode\u003eesbuild\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated \u003ccode\u003ecss-minimizer-webpack-plugin\u003c/code\u003e (by \u003ca href=\"https://github.com/SevereCloud\"\u003e\u003ccode\u003e@​SevereCloud\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMoved \u003ccode\u003ejiti\u003c/code\u003e to optional dependency.\u003c/li\u003e\n\u003cli\u003eRemoved \u003ccode\u003echokidar\u003c/code\u003e dependency in favor of \u003ccode\u003efs.watch\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eRemoved Node.js 18 support.\u003c/li\u003e\n\u003cli\u003eUpdated \u003ccode\u003eopen\u003c/code\u003e \u0026amp; \u003ccode\u003eesbuild\u003c/code\u003e dependencies.\u003c/li\u003e\n\u003cli\u003eFixed docs (by \u003ca href=\"https://github.com/nlopin\"\u003e\u003ccode\u003e@​nlopin\u003c/code\u003e\u003c/a\u003e \u0026amp; \u003ca href=\"https://github.com/just-boris\"\u003e\u003ccode\u003e@​just-boris\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/b1d4c43c6a92ea8b610898d342c9086c66d43ac3\"\u003e\u003ccode\u003eb1d4c43\u003c/code\u003e\u003c/a\u003e Release 14.0 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/be6aec989ba942e49345d38571b4eeb30681f6b7\"\u003e\u003ccode\u003ebe6aec9\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/2b763e33a163ab6e0b1af36db879fad5360a78ef\"\u003e\u003ccode\u003e2b763e3\u003c/code\u003e\u003c/a\u003e Fix test and docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/951aef217bf65bd07af3f065cfd795af83dde58d\"\u003e\u003ccode\u003e951aef2\u003c/code\u003e\u003c/a\u003e Move from esbuild to rolldown in small lib preset\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/464d07d74dbda14d4be94a8d3caf2a798e2d3981\"\u003e\u003ccode\u003e464d07d\u003c/code\u003e\u003c/a\u003e Reduce dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/8afbde166d38a4086c1bd4f051e0ed5a112c644b\"\u003e\u003ccode\u003e8afbde1\u003c/code\u003e\u003c/a\u003e Remove nanoid\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/5f549b8caa66c6fa405a520c4d61968a22bc9b39\"\u003e\u003ccode\u003e5f549b8\u003c/code\u003e\u003c/a\u003e Unify Node.js support\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/609a09f3cdaefb9dd9ccfab2dff6e7bf647f5991\"\u003e\u003ccode\u003e609a09f\u003c/code\u003e\u003c/a\u003e Release 13.1.1 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/70c4be69519e736e3fa8c27806fc793b03b54862\"\u003e\u003ccode\u003e70c4be6\u003c/code\u003e\u003c/a\u003e Do not stop releasing on broken package\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ai/size-limit/commit/e0e132d472dd54a9835bc9ed6d28826de096dc07\"\u003e\u003ccode\u003ee0e132d\u003c/code\u003e\u003c/a\u003e Release 13.1.0 version\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/ai/size-limit/compare/11.2.0...14.0.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​size-limit/file\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@testing-library/jest-dom` from 6.10.0 to 7.0.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/testing-library/jest-dom/releases\"\u003e@​testing-library/jest-dom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.0.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/testing-library/jest-dom/compare/v7.0.0...v7.0.1\"\u003e7.0.1\u003c/a\u003e (2026-08-09)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003edeclare vitest as an optional peer dependency (\u003ca href=\"https://redirect.github.com/testing-library/jest-dom/issues/733\"\u003e#733\u003c/a\u003e) (\u003ca href=\"https://github.com/testing-library/jest-dom/commit/3782c78b3dc9824675afe0cb8f1722f8c96f494d\"\u003e3782c78\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.0.0\u003c/h2\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/testing-library/jest-dom/compare/v6.10.0...v7.0.0\"\u003e7.0.0\u003c/a\u003e (2026-07-20)\u003c/h1\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eadd toContainAnyBy* and toContainOneBy* query matchers (\u003ca href=\"https://github.com/testing-library/jest-dom/commit/1e39089d850408a583c83495d00d8aa27078933f\"\u003e1e39089\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​testing-library/dom\u003c/code\u003e is now a required peer dependency. The minimum supported\nNode.js version is now 22.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eRepaired release for \u003ca href=\"https://redirect.github.com/testing-library/jest-dom/pull/731\"\u003etesting-library/jest-dom#731\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/testing-library/jest-dom/commit/3782c78b3dc9824675afe0cb8f1722f8c96f494d\"\u003e\u003ccode\u003e3782c78\u003c/code\u003e\u003c/a\u003e fix: declare vitest as an optional peer dependency (\u003ca href=\"https://redirect.github.com/testing-library/jest-dom/issues/733\"\u003e#733\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/testing-library/jest-dom/commit/1e39089d850408a583c83495d00d8aa27078933f\"\u003e\u003ccode\u003e1e39089\u003c/code\u003e\u003c/a\u003e feat: add toContainAnyBy* and toContainOneBy* query matchers\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/testing-library/jest-dom/compare/v6.10.0...v7.0.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​testing-library/jest-dom\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/css-tree` from 2.3.11 to 3.2.0\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/css-tree\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/jquery` from 3.5.34 to 4.0.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/jquery\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/node` from 24.13.6 to 26.6.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/react-resizable` from 3.0.8 to 4.0.0\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/react-resizable\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/tar` from 6.1.13 to 7.0.87\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/tar\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `antd-style` from 3.7.1 to 4.1.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ant-design/antd-style/releases\"\u003eantd-style's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.0.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003e✨ Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSupport antd v6 cssVar (\u003ca href=\"https://redirect.github.com/ant-design/antd-style/issues/203\"\u003e#203\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🐛 Bug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eRe-export the \u003ccode\u003e*Transformer\u003c/code\u003e method of cssinjs (\u003ca href=\"https://redirect.github.com/ant-design/antd-style/issues/196\"\u003e#196\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/ant-design/antd-style/compare/v3.7.1...v4.0.0\"\u003ehttps://github.com/ant-design/antd-style/compare/v3.7.1...v4.0.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev4.0.0-alpha.1\u003c/h2\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/ant-design/antd-style/compare/v3.7.1...v4.0.0-alpha.1\"\u003e4.0.0-alpha.1\u003c/a\u003e (2025-07-24)\u003c/h1\u003e\n\u003ch3\u003e✨ Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSupport antd v6 cssVar (\u003ca href=\"https://github.com/ant-design/antd-style/commit/cd838b0\"\u003ecd838b0\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e💥 BREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ebump peerDependencies antd \u0026gt;= v6\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev3.7.2-alpha.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/ant-design/antd-style/compare/v3.7.1...v3.7.2-alpha.1\"\u003e3.7.2-alpha.1\u003c/a\u003e (2024-12-01)\u003c/h2\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ant-design/antd-style/blob/master/CHANGELOG.md\"\u003eantd-style's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/ant-design/antd-style/compare/v3.7.1...v4.0.0-alpha.1\"\u003e4.0.0-alpha.1\u003c/a\u003e (2025-07-24)\u003c/h1\u003e\n\u003ch3\u003e✨ Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSupport antd v6 cssVar (\u003ca href=\"https://github.com/ant-design/antd-style/commit/cd838b0\"\u003ecd838b0\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e💥 BREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ebump peerDependencies antd \u0026gt;= v6\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/ant-design/antd-style/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `antd-token-previewer` from 2.0.8 to 3.0.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ant-design/antd-token-previewer/releases\"\u003eantd-token-previewer's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: preserve falsy token values in pro token panel (\u003ca href=\"https://redirect.github.com/ant-design/antd-token-previewer/issues/225\"\u003e#225\u003c/a\u003e)  b581de5\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/ant-design/antd-token-previewer/compare/v3.0.0...v3.0.1\"\u003ehttps://github.com/ant-design/antd-token-previewer/compare/v3.0.0...v3.0.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev3.0.0-alpha.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix import path (\u003ca href=\"https://redirect.github.com/ant-design/antd-token-previewer/issues/221\"\u003e#221\u003c/a\u003e)  df44e7a\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/ant-design/antd-token-previewer/compare/v3.0.0-alpha.2...v3.0.0-alpha.3\"\u003ehttps://github.com/ant-design/antd-token-previewer/compare/v3.0.0-alpha.2...v3.0.0-alpha.3\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev3.0.0-alpha.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore: upgrade to React 19 (\u003ca href=\"https://redirect.github.com/ant-design/antd-token-previewer/issues/220\"\u003e#220\u003c/a\u003e)  b92278e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/ant-design/antd-token-previewer/compare/v3.0.0-alpha.1...v3.0.0-alpha.2\"\u003ehttps://github.com/ant-design/antd-token-previewer/compare/v3.0.0-alpha.1...v3.0.0-alpha.2\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev3.0.0-alpha.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: Modify the theme editor theme color selection position (\u003ca href=\"https://redirect.github.com/ant-design/antd-token-previewer/issues/219\"\u003e#219\u003c/a\u003e)  59e3565\u003c/li\u003e\n\u003cli\u003eci: update ver  2a05294\u003c/li\u003e\n\u003cli\u003efix: The Ghost Button of the theme is not visible (\u003ca href=\"https://redirect.github.com/ant-design/antd-token-previewer/issues/218\"\u003e#218\u003c/a\u003e)  d00fcab\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/ant-design/antd-token-previewer/compare/v3.0.0-alpha.0...v3.0.0-alpha.1\"\u003ehttps://github.com/ant-design/antd-token-previewer/compare/v3.0.0-alpha.0...v3.0.0-alpha.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev3.0.0-alpha.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore: bump cssinjs (\u003ca href=\"https://redirect.github.com/ant-design/antd-token-previewer/issues/...\n\n_Description has been truncated_","html_url":"https://github.com/menghao112233/test/pull/61","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/menghao112233%2Ftest/issues/61","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/61/packages"}},{"old_version":"7.2.3","new_version":"10.5.0","update_type":"major","path":null,"pr_created_at":"2026-09-17T07:08:43.000Z","version_change":"7.2.3 → 10.5.0","issue":{"uuid":"5484169145","node_id":"PR_kwDOAQ_Fh88AAAABD4q_Kg","number":456,"state":"open","title":"Bump the npm-minor-patch group across 1 directory with 95 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-17T07:08:43.000Z","updated_at":"2026-09-17T07:09:02.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"npm-minor-patch","update_count":95,"packages":[{"name":"@jest/globals","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@testing-library/dom","old_version":"10.4.1","new_version":"10.4.2","repository_url":"https://github.com/testing-library/dom-testing-library"},{"name":"@testing-library/react","old_version":"16.3.2","new_version":"16.3.3","repository_url":"https://github.com/testing-library/react-testing-library"},{"name":"@types/node","old_version":"26.2.0","new_version":"26.5.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@typescript-eslint/eslint-plugin","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/parser","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"eslint","old_version":"10.8.1","new_version":"10.10.0","repository_url":"https://github.com/eslint/eslint"},{"name":"eslint-plugin-jest","old_version":"29.16.1","new_version":"29.16.6","repository_url":"https://github.com/jest-community/eslint-plugin-jest"},{"name":"globals","old_version":"17.11.0","new_version":"17.12.0","repository_url":"https://github.com/sindresorhus/globals"},{"name":"jest","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-environment-jsdom","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"react","old_version":"19.2.8","new_version":"19.3.0","repository_url":"https://github.com/react/react"},{"name":"@types/react","old_version":"19.2.18","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"react-dom","old_version":"19.2.8","new_version":"19.3.0","repository_url":"https://github.com/react/react"},{"name":"@types/react-dom","old_version":"19.2.4","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"@babel/generator","old_version":"7.29.7","new_version":"7.29.8","repository_url":"https://github.com/babel/babel"},{"name":"@eslint/plugin-kit","old_version":"0.7.2","new_version":"0.7.3","repository_url":"https://github.com/eslint/rewrite"},{"name":"@jest/console","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/core","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/diff-sequences","old_version":"30.4.0","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/environment-jsdom-abstract","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/environment","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/expect-utils","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/expect","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/fake-timers","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/get-type","old_version":"30.1.0","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/pattern","old_version":"30.4.0","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/reporters","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/schemas","old_version":"30.4.1","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/snapshot-utils","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/source-map","old_version":"30.0.1","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/test-result","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/test-sequencer","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/transform","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@jest/types","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"@napi-rs/wasm-runtime","old_version":"1.1.5","new_version":"1.2.4","repository_url":"https://github.com/napi-rs/napi-rs"},{"name":"@tybys/wasm-util","old_version":"0.10.2","new_version":"0.10.4","repository_url":"https://github.com/toyobayashi/wasm-util"},{"name":"@typescript-eslint/project-service","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/scope-manager","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/tsconfig-utils","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/type-utils","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/types","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/typescript-estree","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/utils","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/visitor-keys","old_version":"8.67.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@ungap/structured-clone","old_version":"1.3.3","new_version":"1.4.0","repository_url":"https://github.com/ungap/structured-clone"},{"name":"acorn","old_version":"8.17.0","new_version":"8.18.0","repository_url":"https://github.com/acornjs/acorn"},{"name":"babel-jest","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"babel-plugin-istanbul","old_version":"7.0.1","new_version":"8.0.0","repository_url":"https://github.com/istanbuljs/babel-plugin-istanbul"},{"name":"babel-plugin-jest-hoist","old_version":"30.4.0","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"babel-preset-jest","old_version":"30.4.0","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"baseline-browser-mapping","old_version":"2.11.15","new_version":"2.11.23","repository_url":"https://github.com/web-platform-dx/baseline-browser-mapping"},{"name":"brace-expansion","old_version":"1.1.18","new_version":"2.1.4","repository_url":"https://github.com/juliangruber/brace-expansion"},{"name":"browserslist","old_version":"4.28.8","new_version":"4.28.9","repository_url":"https://github.com/browserslist/browserslist"},{"name":"caniuse-lite","old_version":"1.0.30001809","new_version":"1.0.30001810","repository_url":"https://github.com/browserslist/caniuse-lite"},{"name":"cjs-module-lexer","old_version":"2.2.0","new_version":"2.2.1","repository_url":"https://github.com/nodejs/cjs-module-lexer"},{"name":"electron-to-chromium","old_version":"1.5.411","new_version":"1.5.427","repository_url":"https://github.com/Kilian/electron-to-chromium"},{"name":"expect","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"file-entry-cache","old_version":"8.0.0","new_version":"11.1.5","repository_url":"https://github.com/jaredwray/cacheable"},{"name":"flat-cache","old_version":"4.0.1","new_version":"6.1.23","repository_url":"https://github.com/jaredwray/cacheable"},{"name":"glob","old_version":"7.2.3","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"},{"name":"jest-changed-files","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-circus","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-cli","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-config","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-diff","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-docblock","old_version":"30.4.0","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-each","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-environment-node","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-haste-map","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-leak-detector","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-matcher-utils","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-message-util","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-mock","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-regex-util","old_version":"30.4.0","new_version":"30.5.0","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-resolve-dependencies","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-resolve","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-runner","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-runtime","old_version":"30.4.2","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-snapshot","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-util","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-validate","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-watcher","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-worker","old_version":"30.4.1","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"js-yaml","old_version":"3.15.1","new_version":"3.15.2","repository_url":"https://github.com/nodeca/js-yaml"},{"name":"keyv","old_version":"4.5.4","new_version":"5.6.0","repository_url":"https://github.com/jaredwray/keyv"},{"name":"minimatch","old_version":"3.1.5","new_version":"9.0.9","repository_url":"https://github.com/isaacs/minimatch"},{"name":"node-releases","old_version":"2.0.53","new_version":"2.0.55","repository_url":"https://github.com/chicoxyzzy/node-releases"},{"name":"nwsapi","old_version":"2.2.24","new_version":"2.2.27","repository_url":"https://github.com/dperini/nwsapi"},{"name":"scheduler","old_version":"0.27.0","new_version":"0.28.0","repository_url":"https://github.com/react/react"},{"name":"test-exclude","old_version":"6.0.0","new_version":"7.0.2","repository_url":"https://github.com/istanbuljs/test-exclude"},{"name":"undici-types","old_version":"8.3.0","new_version":"8.9.0","repository_url":"https://github.com/nodejs/undici"},{"name":"update-browserslist-db","old_version":"1.3.1","new_version":"1.3.3","repository_url":"https://github.com/browserslist/update-db"},{"name":"ws","old_version":"8.21.0","new_version":"8.21.3","repository_url":"https://github.com/websockets/ws"},{"name":"yargs","old_version":"17.7.2","new_version":"17.7.3","repository_url":"https://github.com/yargs/yargs"}],"path":null,"ecosystem":"npm"},"body":"Bumps the npm-minor-patch group with 95 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@jest/globals](https://github.com/jestjs/jest/tree/HEAD/packages/jest-globals) | `30.4.1` | `30.5.1` |\n| [@testing-library/dom](https://github.com/testing-library/dom-testing-library) | `10.4.1` | `10.4.2` |\n| [@testing-library/react](https://github.com/testing-library/react-testing-library) | `16.3.2` | `16.3.3` |\n| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `26.2.0` | `26.5.1` |\n| [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) | `8.67.0` | `8.70.0` |\n| [eslint](https://github.com/eslint/eslint) | `10.8.1` | `10.10.0` |\n| [eslint-plugin-jest](https://github.com/jest-community/eslint-plugin-jest) | `29.16.1` | `29.16.6` |\n| [globals](https://github.com/sindresorhus/globals) | `17.11.0` | `17.12.0` |\n| [jest](https://github.com/jestjs/jest/tree/HEAD/packages/jest) | `30.4.2` | `30.5.1` |\n| [jest-environment-jsdom](https://github.com/jestjs/jest/tree/HEAD/packages/jest-environment-jsdom) | `30.4.1` | `30.5.1` |\n| [react](https://github.com/react/react/tree/HEAD/packages/react) | `19.2.8` | `19.3.0` |\n| [@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react) | `19.2.18` | `19.3.0` |\n| [react-dom](https://github.com/react/react/tree/HEAD/packages/react-dom) | `19.2.8` | `19.3.0` |\n| [@types/react-dom](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-dom) | `19.2.4` | `19.3.0` |\n| [@babel/generator](https://github.com/babel/babel/tree/HEAD/packages/babel-generator) | `7.29.7` | `7.29.8` |\n| [@eslint/plugin-kit](https://github.com/eslint/rewrite/tree/HEAD/packages/plugin-kit) | `0.7.2` | `0.7.3` |\n| [@jest/console](https://github.com/jestjs/jest/tree/HEAD/packages/jest-console) | `30.4.1` | `30.5.1` |\n| [@jest/core](https://github.com/jestjs/jest/tree/HEAD/packages/jest-core) | `30.4.2` | `30.5.1` |\n| [@jest/diff-sequences](https://github.com/jestjs/jest/tree/HEAD/packages/diff-sequences) | `30.4.0` | `30.5.0` |\n| [@jest/environment-jsdom-abstract](https://github.com/jestjs/jest/tree/HEAD/packages/jest-environment-jsdom-abstract) | `30.4.1` | `30.5.1` |\n| [@jest/environment](https://github.com/jestjs/jest/tree/HEAD/packages/jest-environment) | `30.4.1` | `30.5.1` |\n| [@jest/expect-utils](https://github.com/jestjs/jest/tree/HEAD/packages/expect-utils) | `30.4.1` | `30.5.1` |\n| [@jest/expect](https://github.com/jestjs/jest/tree/HEAD/packages/jest-expect) | `30.4.1` | `30.5.1` |\n| [@jest/fake-timers](https://github.com/jestjs/jest/tree/HEAD/packages/jest-fake-timers) | `30.4.1` | `30.5.1` |\n| [@jest/get-type](https://github.com/jestjs/jest/tree/HEAD/packages/jest-get-type) | `30.1.0` | `30.5.0` |\n| [@jest/pattern](https://github.com/jestjs/jest/tree/HEAD/packages/jest-pattern) | `30.4.0` | `30.5.0` |\n| [@jest/reporters](https://github.com/jestjs/jest/tree/HEAD/packages/jest-reporters) | `30.4.1` | `30.5.1` |\n| [@jest/schemas](https://github.com/jestjs/jest/tree/HEAD/packages/jest-schemas) | `30.4.1` | `30.5.0` |\n| [@jest/snapshot-utils](https://github.com/jestjs/jest/tree/HEAD/packages/jest-snapshot-utils) | `30.4.1` | `30.5.1` |\n| [@jest/source-map](https://github.com/jestjs/jest/tree/HEAD/packages/jest-source-map) | `30.0.1` | `30.5.0` |\n| [@jest/test-result](https://github.com/jestjs/jest/tree/HEAD/packages/jest-test-result) | `30.4.1` | `30.5.1` |\n| [@jest/test-sequencer](https://github.com/jestjs/jest/tree/HEAD/packages/jest-test-sequencer) | `30.4.1` | `30.5.1` |\n| [@jest/transform](https://github.com/jestjs/jest/tree/HEAD/packages/jest-transform) | `30.4.1` | `30.5.1` |\n| [@jest/types](https://github.com/jestjs/jest/tree/HEAD/packages/jest-types) | `30.4.1` | `30.5.1` |\n| [@napi-rs/wasm-runtime](https://github.com/napi-rs/napi-rs/tree/HEAD/wasm-runtime) | `1.1.5` | `1.2.4` |\n| [@tybys/wasm-util](https://github.com/toyobayashi/wasm-util) | `0.10.2` | `0.10.4` |\n| [@typescript-eslint/project-service](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/project-service) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/scope-manager](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/scope-manager) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/tsconfig-utils](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/tsconfig-utils) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/type-utils](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/type-utils) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/types](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/types) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/typescript-estree](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-estree) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/utils](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/utils) | `8.67.0` | `8.70.0` |\n| [@typescript-eslint/visitor-keys](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/visitor-keys) | `8.67.0` | `8.70.0` |\n| [@ungap/structured-clone](https://github.com/ungap/structured-clone) | `1.3.3` | `1.4.0` |\n| [acorn](https://github.com/acornjs/acorn) | `8.17.0` | `8.18.0` |\n| [babel-jest](https://github.com/jestjs/jest/tree/HEAD/packages/babel-jest) | `30.4.1` | `30.5.1` |\n| [babel-plugin-istanbul](https://github.com/istanbuljs/babel-plugin-istanbul) | `7.0.1` | `8.0.0` |\n| [babel-plugin-jest-hoist](https://github.com/jestjs/jest/tree/HEAD/packages/babel-plugin-jest-hoist) | `30.4.0` | `30.5.0` |\n| [babel-preset-jest](https://github.com/jestjs/jest/tree/HEAD/packages/babel-preset-jest) | `30.4.0` | `30.5.0` |\n| [baseline-browser-mapping](https://github.com/web-platform-dx/baseline-browser-mapping) | `2.11.15` | `2.11.23` |\n| [brace-expansion](https://github.com/juliangruber/brace-expansion) | `1.1.18` | `2.1.4` |\n| [browserslist](https://github.com/browserslist/browserslist) | `4.28.8` | `4.28.9` |\n| [caniuse-lite](https://github.com/browserslist/caniuse-lite) | `1.0.30001809` | `1.0.30001810` |\n| [cjs-module-lexer](https://github.com/nodejs/cjs-module-lexer) | `2.2.0` | `2.2.1` |\n| [electron-to-chromium](https://github.com/Kilian/electron-to-chromium) | `1.5.411` | `1.5.427` |\n| [expect](https://github.com/jestjs/jest/tree/HEAD/packages/expect) | `30.4.1` | `30.5.1` |\n| [file-entry-cache](https://github.com/jaredwray/cacheable/tree/HEAD/packages/file-entry-cache) | `8.0.0` | `11.1.5` |\n| [flat-cache](https://github.com/jaredwray/cacheable/tree/HEAD/packages/flat-cache) | `4.0.1` | `6.1.23` |\n| [glob](https://github.com/isaacs/node-glob) | `7.2.3` | `10.5.0` |\n| [jest-changed-files](https://github.com/jestjs/jest/tree/HEAD/packages/jest-changed-files) | `30.4.1` | `30.5.1` |\n| [jest-circus](https://github.com/jestjs/jest/tree/HEAD/packages/jest-circus) | `30.4.2` | `30.5.1` |\n| [jest-cli](https://github.com/jestjs/jest/tree/HEAD/packages/jest-cli) | `30.4.2` | `30.5.1` |\n| [jest-config](https://github.com/jestjs/jest/tree/HEAD/packages/jest-config) | `30.4.2` | `30.5.1` |\n| [jest-diff](https://github.com/jestjs/jest/tree/HEAD/packages/jest-diff) | `30.4.1` | `30.5.1` |\n| [jest-docblock](https://github.com/jestjs/jest/tree/HEAD/packages/jest-docblock) | `30.4.0` | `30.5.0` |\n| [jest-each](https://github.com/jestjs/jest/tree/HEAD/packages/jest-each) | `30.4.1` | `30.5.1` |\n| [jest-environment-node](https://github.com/jestjs/jest/tree/HEAD/packages/jest-environment-node) | `30.4.1` | `30.5.1` |\n| [jest-haste-map](https://github.com/jestjs/jest/tree/HEAD/packages/jest-haste-map) | `30.4.1` | `30.5.1` |\n| [jest-leak-detector](https://github.com/jestjs/jest/tree/HEAD/packages/jest-leak-detector) | `30.4.1` | `30.5.1` |\n| [jest-matcher-utils](https://github.com/jestjs/jest/tree/HEAD/packages/jest-matcher-utils) | `30.4.1` | `30.5.1` |\n| [jest-message-util](https://github.com/jestjs/jest/tree/HEAD/packages/jest-message-util) | `30.4.1` | `30.5.1` |\n| [jest-mock](https://github.com/jestjs/jest/tree/HEAD/packages/jest-mock) | `30.4.1` | `30.5.1` |\n| [jest-regex-util](https://github.com/jestjs/jest/tree/HEAD/packages/jest-regex-util) | `30.4.0` | `30.5.0` |\n| [jest-resolve-dependencies](https://github.com/jestjs/jest/tree/HEAD/packages/jest-resolve-dependencies) | `30.4.2` | `30.5.1` |\n| [jest-resolve](https://github.com/jestjs/jest/tree/HEAD/packages/jest-resolve) | `30.4.1` | `30.5.1` |\n| [jest-runner](https://github.com/jestjs/jest/tree/HEAD/packages/jest-runner) | `30.4.2` | `30.5.1` |\n| [jest-runtime](https://github.com/jestjs/jest/tree/HEAD/packages/jest-runtime) | `30.4.2` | `30.5.1` |\n| [jest-snapshot](https://github.com/jestjs/jest/tree/HEAD/packages/jest-snapshot) | `30.4.1` | `30.5.1` |\n| [jest-util](https://github.com/jestjs/jest/tree/HEAD/packages/jest-util) | `30.4.1` | `30.5.1` |\n| [jest-validate](https://github.com/jestjs/jest/tree/HEAD/packages/jest-validate) | `30.4.1` | `30.5.1` |\n| [jest-watcher](https://github.com/jestjs/jest/tree/HEAD/packages/jest-watcher) | `30.4.1` | `30.5.1` |\n| [jest-worker](https://github.com/jestjs/jest/tree/HEAD/packages/jest-worker) | `30.4.1` | `30.5.1` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `3.15.1` | `3.15.2` |\n| [keyv](https://github.com/jaredwray/keyv) | `4.5.4` | `5.6.0` |\n| [minimatch](https://github.com/isaacs/minimatch) | `3.1.5` | `9.0.9` |\n| [node-releases](https://github.com/chicoxyzzy/node-releases) | `2.0.53` | `2.0.55` |\n| [nwsapi](https://github.com/dperini/nwsapi) | `2.2.24` | `2.2.27` |\n| [scheduler](https://github.com/react/react/tree/HEAD/packages/scheduler) | `0.27.0` | `0.28.0` |\n| [test-exclude](https://github.com/istanbuljs/test-exclude) | `6.0.0` | `7.0.2` |\n| [undici-types](https://github.com/nodejs/undici) | `8.3.0` | `8.9.0` |\n| [update-browserslist-db](https://github.com/browserslist/update-db) | `1.3.1` | `1.3.3` |\n| [ws](https://github.com/websockets/ws) | `8.21.0` | `8.21.3` |\n| [yargs](https://github.com/yargs/yargs) | `17.7.2` | `17.7.3` |\n\n\nUpdates `@jest/globals` from 30.4.1 to 30.5.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jestjs/jest/releases\"\u003e@​jest/globals's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev30.5.1\u003c/h2\u003e\n\u003ch2\u003eFixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e[jest-config]\u003c/code\u003e Don't warn about global-only options in the config that supplies the global config - the root config a project resolves to, or the first entry of \u003ccode\u003e--projects\u003c/code\u003e when no root config is passed (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16411\"\u003e#16411\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-config, jest-types]\u003c/code\u003e Stop accepting \u003ccode\u003ereporters\u003c/code\u003e, \u003ccode\u003ecoverageReporters\u003c/code\u003e, \u003ccode\u003eworkerIdleMemoryLimit\u003c/code\u003e, \u003ccode\u003ecwd\u003c/code\u003e and \u003ccode\u003erunnerOptions\u003c/code\u003e in a project config - they were silently ignored, and now warn like the other global-only options (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16411\"\u003e#16411\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-config, jest-validate]\u003c/code\u003e Warn about \u003ccode\u003emaxWorkers\u003c/code\u003e and \u003ccode\u003ecoverageThreshold\u003c/code\u003e in a project config instead of dropping them without a word (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16411\"\u003e#16411\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-resolve]\u003c/code\u003e Match \u003ccode\u003emoduleNameMapper\u003c/code\u003e patterns against the specifier as written again (reverting \u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16390\"\u003e#16390\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16417\"\u003e#16417\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Resolve package \u003ccode\u003eimports\u003c/code\u003e specifiers like \u003ccode\u003e#dep\u003c/code\u003e under ESM again (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16413\"\u003e#16413\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eChore \u0026amp; Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e[jest-util]\u003c/code\u003e Name the \u003ccode\u003etestEnvironmentOptions.globalsCleanup\u003c/code\u003e option and link the docs from the \u003ccode\u003eJEST-01\u003c/code\u003e deprecation warning, and document the option's modes (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16404\"\u003e#16404\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/HuzaifaChaudary\"\u003e\u003ccode\u003e@​HuzaifaChaudary\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16413\"\u003ejestjs/jest#16413\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/jestjs/jest/compare/v30.5.0...v30.5.1\"\u003ehttps://github.com/jestjs/jest/compare/v30.5.0...v30.5.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev30.5.0\u003c/h2\u003e\n\u003cp\u003eOn a personal note: King Harald V of Norway passed away this morning. He ascended the throne 35 years ago, two months before I was born. This release is dedicated to his memory. Hvil i fred 🇳🇴\u003c/p\u003e\n\u003chr /\u003e\n\u003cp\u003eThis is a big release. It touches \u003ccode\u003ejest-runtime\u003c/code\u003e, \u003ccode\u003ejest-resolve\u003c/code\u003e and \u003ccode\u003ejest-haste-map\u003c/code\u003e in many places, and with this many changes there might be regressions 😬. If your suite behaves differently after upgrading, please \u003ca href=\"https://github.com/jestjs/jest/issues\"\u003eopen an issue\u003c/a\u003e.\u003c/p\u003e\n\u003ch1\u003eHighlights\u003c/h1\u003e\n\u003ch2\u003e\u003ccode\u003ewhenCalledWith\u003c/code\u003e\u003c/h2\u003e\n\u003cp\u003eMock functions can now configure return values per argument list, contributed by \u003ca href=\"https://github.com/timkindberg\"\u003e\u003ccode\u003e@​timkindberg\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16053\"\u003e#16053\u003c/a\u003e):\u003c/p\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003econst fn = jest.fn();\r\nfn.whenCalledWith('apple').mockReturnValue('red');\r\nfn.whenCalledWith('banana').mockReturnValue('yellow');\r\nfn.whenCalledWith(expect.any(Number)).mockReturnValue('numeric');\r\n\u003cp\u003efn('apple'); // 'red'\nfn('banana'); // 'yellow'\nfn(42); // 'numeric'\nfn('grape'); // undefined\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003cp\u003eThe returned object is a real \u003ccode\u003eMock\u003c/code\u003e, so \u003ccode\u003emockReturnValueOnce\u003c/code\u003e, \u003ccode\u003emockResolvedValue\u003c/code\u003e, \u003ccode\u003emockImplementation\u003c/code\u003e etc. all chain here too. Argument slots accept literals or any asymmetric matcher, with the same equality semantics as \u003ccode\u003etoHaveBeenCalledWith()\u003c/code\u003e. Calls that match nothing fall through to the base mock. See the \u003ca href=\"https://jestjs.io/docs/mock-function-api#mockfnwhencalledwithargs\"\u003eMock Functions docs\u003c/a\u003e for matching and precedence details.\u003c/p\u003e\n\u003ch2\u003eDescribe-level retries\u003c/h2\u003e\n\u003cp\u003e\u003ccode\u003ejest.retryTimes()\u003c/code\u003e can now retry a whole \u003ccode\u003edescribe\u003c/code\u003e block instead of a single test, contributed by \u003ca href=\"https://github.com/soltonigiri\"\u003e\u003ccode\u003e@​soltonigiri\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16322\"\u003e#16322\u003c/a\u003e). Each attempt reruns the block's \u003ccode\u003ebeforeAll\u003c/code\u003e/\u003ccode\u003eafterAll\u003c/code\u003e hooks, child tests and nested describes, which helps when tests in a block depend on shared state:\u003c/p\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003e\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jestjs/jest/blob/main/CHANGELOG.md\"\u003e@​jest/globals's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e30.5.1\u003c/h2\u003e\n\u003ch3\u003eFixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e[jest-config]\u003c/code\u003e Don't warn about global-only options in the config that supplies the global config - the root config a project resolves to, or the first entry of \u003ccode\u003e--projects\u003c/code\u003e when no root config is passed (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16411\"\u003e#16411\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-config, jest-types]\u003c/code\u003e Stop accepting \u003ccode\u003ereporters\u003c/code\u003e, \u003ccode\u003ecoverageReporters\u003c/code\u003e, \u003ccode\u003eworkerIdleMemoryLimit\u003c/code\u003e, \u003ccode\u003ecwd\u003c/code\u003e and \u003ccode\u003erunnerOptions\u003c/code\u003e in a project config - they were silently ignored, and now warn like the other global-only options (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16411\"\u003e#16411\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-config, jest-validate]\u003c/code\u003e Warn about \u003ccode\u003emaxWorkers\u003c/code\u003e and \u003ccode\u003ecoverageThreshold\u003c/code\u003e in a project config instead of dropping them without a word (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16411\"\u003e#16411\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-resolve]\u003c/code\u003e Match \u003ccode\u003emoduleNameMapper\u003c/code\u003e patterns against the specifier as written again (reverting \u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16390\"\u003e#16390\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16417\"\u003e#16417\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Resolve package \u003ccode\u003eimports\u003c/code\u003e specifiers like \u003ccode\u003e#dep\u003c/code\u003e under ESM again (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16413\"\u003e#16413\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChore \u0026amp; Maintenance\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e[jest-util]\u003c/code\u003e Name the \u003ccode\u003etestEnvironmentOptions.globalsCleanup\u003c/code\u003e option and link the docs from the \u003ccode\u003eJEST-01\u003c/code\u003e deprecation warning, and document the option's modes (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16404\"\u003e#16404\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e30.5.0\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e[@jest/expect-utils, jest-mock]\u003c/code\u003e Add \u003ccode\u003emockFn.whenCalledWith(...args)\u003c/code\u003e for configuring return values per argument list, with first-class asymmetric-matcher support (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16053\"\u003e#16053\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[@jest/expect-utils]\u003c/code\u003e Export \u003ccode\u003eAsymmetricMatcher\u003c/code\u003e and \u003ccode\u003eFunctionParameters\u003c/code\u003e types (previously private to \u003ccode\u003eexpect\u003c/code\u003e) (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16053\"\u003e#16053\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus, jest-core, jest-jasmine2, jest-test-result, jest-types]\u003c/code\u003e \u003ccode\u003e--collectTests\u003c/code\u003e now expands \u003ccode\u003etest.each\u003c/code\u003e/\u003ccode\u003edescribe.each\u003c/code\u003e cases and reports per-status counts (skipped/todo via the new \u003ccode\u003ewouldRun\u003c/code\u003e flag for selected tests) plus a summary line that match a real run, including under \u003ccode\u003e--testNamePattern\u003c/code\u003e and \u003ccode\u003e.only\u003c/code\u003e/\u003ccode\u003efdescribe\u003c/code\u003e focus on both the circus and jasmine2 runners (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16259\"\u003e#16259\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus, jest-environment, jest-runtime, jest-types]\u003c/code\u003e Add describe-level retries via \u003ccode\u003ejest.retryTimes(..., {entireDescribe: true})\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16322\"\u003e#16322\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus, jest-message-util, jest-reporters, jest-types]\u003c/code\u003e Add \u003ccode\u003eretryMessages\u003c/code\u003e to \u003ccode\u003eAssertionResult\u003c/code\u003e and export \u003ccode\u003eformatErrorStack\u003c/code\u003e, so the retry log renders nested \u003ccode\u003ecause\u003c/code\u003e and \u003ccode\u003eAggregateError\u003c/code\u003e sections with code frames instead of serialized \u003ccode\u003e[cause]:\u003c/code\u003e/\u003ccode\u003e[errors]:\u003c/code\u003e markers (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16316\"\u003e#16316\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus, jest-types]\u003c/code\u003e Add \u003ccode\u003eunhandledErrorsDetailed\u003c/code\u003e to \u003ccode\u003eCircus.RunResult\u003c/code\u003e, so an unhandled rejection reports its \u003ccode\u003ecause\u003c/code\u003e chain and \u003ccode\u003eAggregateError\u003c/code\u003e entries with code frames instead of a pre-serialized stack (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16316\"\u003e#16316\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-haste-map]\u003c/code\u003e Replace \u003ccode\u003eNodeWatcher\u003c/code\u003e and \u003ccode\u003eFSEventsWatcher\u003c/code\u003e with \u003ccode\u003e@parcel/watcher\u003c/code\u003e for the non-watchman watch path (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16188\"\u003e#16188\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-resolve]\u003c/code\u003e Bump \u003ccode\u003eunrs-resolver\u003c/code\u003e to 1.12.1, remove \u003ccode\u003ejest-pnp-resolver\u003c/code\u003e and unnecessary checks (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/15721\"\u003e#15721\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-resolve]\u003c/code\u003e Honor Node's \u003ccode\u003e--preserve-symlinks\u003c/code\u003e / \u003ccode\u003eNODE_PRESERVE_SYMLINKS\u003c/code\u003e in the default resolver by passing \u003ccode\u003esymlinks: false\u003c/code\u003e to \u003ccode\u003eunrs-resolver\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16260\"\u003e#16260\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Apply automocking and manual \u003ccode\u003e__mocks__\u003c/code\u003e files to synchronously evaluable ESM graphs on Node 24.9+ - static imports, dynamic \u003ccode\u003eimport()\u003c/code\u003e and \u003ccode\u003erequire()\u003c/code\u003e of an ESM file now generate an automock from the real module's namespace instead of failing with \u0026quot;Attempting to import a mock without a factory\u0026quot;. Graphs that need async evaluation (top-level await) or an async-only resolver or transformer still throw (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16391\"\u003e#16391\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Route \u003ccode\u003eprocess.getBuiltinModule\u003c/code\u003e through the sandbox, so it returns the sandbox \u003ccode\u003eprocess\u003c/code\u003e and the hooked \u003ccode\u003enode:module\u003c/code\u003e instead of the host's (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16391\"\u003e#16391\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Throw an actionable error from \u003ccode\u003emodule.register()\u003c/code\u003e and \u003ccode\u003emodule.registerHooks()\u003c/code\u003e inside a test - the hooks attached to the loader running Jest itself, never saw the sandboxed requires they were meant for, and stayed registered for every later test file in the worker (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16391\"\u003e#16391\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Surface resolution and import-attribute errors in an ESM graph before executing any of its CJS dependencies on Node 24.9+, matching Node's run-nothing-on-a-broken-graph behavior; the legacy loader on older versions keeps its linking-time execution order (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16391\"\u003e#16391\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Throw \u003ccode\u003eERR_SOURCE_PHASE_NOT_DEFINED\u003c/code\u003e with an actionable message for \u003ccode\u003eimport source\u003c/code\u003e and \u003ccode\u003eimport.source()\u003c/code\u003e, instead of failing at instantiation with V8's bare \u0026quot;Source phase import object is not defined\u0026quot; (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16391\"\u003e#16391\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Emit the JSON-without-import-attribute deprecation warning once per test file instead of once per worker, so it is no longer silently swallowed for every file after the first (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16391\"\u003e#16391\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Set \u003ccode\u003eimport.meta.main\u003c/code\u003e to \u003ccode\u003etrue\u003c/code\u003e in the test file and \u003ccode\u003efalse\u003c/code\u003e in every module it loads, matching Node 24+ (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16367\"\u003e#16367\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-runtime]\u003c/code\u003e Resolve the \u003ccode\u003emodule-sync\u003c/code\u003e export condition, so a package that exposes its ESM entry point for \u003ccode\u003erequire()\u003c/code\u003e loads the same file Node would (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16336\"\u003e#16336\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-snapshot]\u003c/code\u003e Add external snapshot paths to custom reporter failure details (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16374\"\u003e#16374\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e[jest-console, jest-reporters]\u003c/code\u003e \u003ccode\u003eCustomConsole\u003c/code\u003e now buffers console output so \u003ccode\u003eTestResult.console\u003c/code\u003e is populated for reporters when \u003ccode\u003everbose\u003c/code\u003e is enabled, while \u003ccode\u003eGitHubActionsReporter\u003c/code\u003e avoids replaying buffered output in verbose mode (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16155\"\u003e#16155\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[expect, jest-message-util, jest-pattern, jest-regex-util, jest-util]\u003c/code\u003e Revert \u003ccode\u003enode:\u003c/code\u003e protocol imports to restore webpack/browser-bundle compatibility (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16167\"\u003e#16167\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[expect]\u003c/code\u003e Widen \u003ccode\u003etoMatchObject\u003c/code\u003e and \u003ccode\u003eobjectContaining\u003c/code\u003e parameter type from \u003ccode\u003eRecord\u0026lt;string, unknown\u0026gt;\u003c/code\u003e to \u003ccode\u003eobject\u003c/code\u003e so class instances are accepted (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16196\"\u003e#16196\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus]\u003c/code\u003e Call a generator test body with the shared test context, so \u003ccode\u003ethis\u003c/code\u003e matches what a regular test function receives (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16347\"\u003e#16347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus]\u003c/code\u003e Capture the error listeners of the parent process instead of the in-sandbox \u003ccode\u003eprocess\u003c/code\u003e, so listeners registered before the test file survive teardown and sandbox listeners no longer leak onto the parent (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16347\"\u003e#16347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus]\u003c/code\u003e Clear \u003ccode\u003ecurrentlyRunningTest\u003c/code\u003e after skipped and todo tests (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16342\"\u003e#16342\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus]\u003c/code\u003e Prevent late \u003ccode\u003edone()\u003c/code\u003e callbacks from affecting later test or hook invocations (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16343\"\u003e#16343\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus, jest-jasmine2]\u003c/code\u003e Honor \u003ccode\u003e--expand\u003c/code\u003e when formatting \u003ccode\u003enode:assert\u003c/code\u003e failures, instead of always collapsing the diff (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16347\"\u003e#16347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus, jest-jasmine2, jest-message-util]\u003c/code\u003e Serialize the inner errors of an \u003ccode\u003eAggregateError\u003c/code\u003e into \u003ccode\u003efailureMessages\u003c/code\u003e, \u003ccode\u003eretryReasons\u003c/code\u003e and \u003ccode\u003eunhandledErrors\u003c/code\u003e, so \u003ccode\u003e--json\u003c/code\u003e output and reporter annotations include them (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16316\"\u003e#16316\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[jest-circus, jest-snapshot]\u003c/code\u003e Keep snapshot state and counts correct when a test retries (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16344\"\u003e#16344\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e[@jest/create-cache-key-function]\u003c/code\u003e Include the caller support flags in the generated key, so a transformer that emits ESM or CJS based on them no longer shares one cache entry between the two (\u003ca href=\"https://redirect.github.com/jestjs/jest/pull/16331\"\u003e#16331\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jestjs/jest/commit/9ab14feccd6c15fec1334dbcb03a53a079d153d3\"\u003e\u003ccode\u003e9ab14fe\u003c/code\u003e\u003c/a\u003e v30.5.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jestjs/jest/commit/912baa37afaa979e8179240c238cb493f960527a\"\u003e\u003ccode\u003e912baa3\u003c/code\u003e\u003c/a\u003e v30.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jestjs/jest/commit/b91717a68e091cf492a361d61906d17849fb3282\"\u003e\u003ccode\u003eb91717a\u003c/code\u003e\u003c/a\u003e chore: refresh coding agent instructions (\u003ca href=\"https://github.com/jestjs/jest/tree/HEAD/packages/jest-globals/issues/16182\"\u003e#16182\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/jestjs/jest/commits/v30.5.1/packages/jest-globals\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@testing-library/dom` from 10.4.1 to 10.4.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/testing-library/dom-testing-library/releases\"\u003e@​testing-library/dom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev10.4.2\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/testing-library/dom-testing-library/compare/v10.4.1...v10.4.2\"\u003e10.4.2\u003c/a\u003e (2026-09-13)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e pin \u003ccode\u003e@​types/node\u003c/code\u003e to a TypeScript 4-compatible version (\u003ca href=\"https://redirect.github.com/testing-library/dom-testing-library/issues/1386\"\u003e#1386\u003c/a\u003e) (\u003ca href=\"https://github.com/testing-library/dom-testing-library/commit/6049cc0bc7cf2201625c476c95fa6299d0e2fa8b\"\u003e6049cc0\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/testing-library/dom-testing-library/commit/6049cc0bc7cf2201625c476c95fa6299d0e2fa8b\"\u003e\u003ccode\u003e6049cc0\u003c/code\u003e\u003c/a\u003e fix(deps): pin \u003ccode\u003e@​types/node\u003c/code\u003e to a TypeScript 4-compatible version (\u003ca href=\"https://redirect.github.com/testing-library/dom-testing-library/issues/1386\"\u003e#1386\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/testing-library/dom-testing-library/commit/e395d5b8ecd4ec95cc02540ddcf16571ecd33e0f\"\u003e\u003ccode\u003ee395d5b\u003c/code\u003e\u003c/a\u003e Switch to trusted publishing (\u003ca href=\"https://redirect.github.com/testing-library/dom-testing-library/issues/1368\"\u003e#1368\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/testing-library/dom-testing-library/compare/v10.4.1...v10.4.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​testing-library/dom\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@testing-library/react` from 16.3.2 to 16.3.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/testing-library/react-testing-library/releases\"\u003e@​testing-library/react's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev16.3.3\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/testing-library/react-testing-library/compare/v16.3.2...v16.3.3\"\u003e16.3.3\u003c/a\u003e (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAvoid act() re-entrant when dispatching events (\u003ca href=\"https://redirect.github.com/testing-library/react-testing-library/issues/1468\"\u003e#1468\u003c/a\u003e) (\u003ca href=\"https://github.com/testing-library/react-testing-library/commit/20ce75f2907ca0e5c5a8ae595c0e9a4e368c7800\"\u003e20ce75f\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/testing-library/react-testing-library/commit/20ce75f2907ca0e5c5a8ae595c0e9a4e368c7800\"\u003e\u003ccode\u003e20ce75f\u003c/code\u003e\u003c/a\u003e fix: Avoid act() re-entrant when dispatching events (\u003ca href=\"https://redirect.github.com/testing-library/react-testing-library/issues/1468\"\u003e#1468\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/testing-library/react-testing-library/commit/be9d81d91314c9f0bafaa363f70b409b4b31989c\"\u003e\u003ccode\u003ebe9d81d\u003c/code\u003e\u003c/a\u003e docs: fix typos in comments and types (\u003ca href=\"https://redirect.github.com/testing-library/react-testing-library/issues/1446\"\u003e#1446\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/testing-library/react-testing-library/compare/v16.3.2...v16.3.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/node` from 26.2.0 to 26.5.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@typescript-eslint/eslint-plugin` from 8.67.0 to 8.70.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases\"\u003e@​typescript-eslint/eslint-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.70.0\u003c/h2\u003e\n\u003ch2\u003e8.70.0 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-generated-empty-object-type] add rule (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12730\"\u003e#12730\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ewebsite:\u003c/strong\u003e generate per-page social preview cards (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12734\"\u003e#12734\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003euse stable release of pnpm 12 (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12808\"\u003e#12808\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eupdate pnpm to 12.3.4 and dedupe Docusaurus packages (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12829\"\u003e#12829\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [member-ordering] don't report fields that read fields declared before them (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12729\"\u003e#12729\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-unnecessary-condition] no false positive on RHS of a nested logical expression (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12728\"\u003e#12728\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-deprecated] report deprecated imported values used in object shorthand properties (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12780\"\u003e#12780\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eproject-service:\u003c/strong\u003e avoid discarded tsserver logs (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12748\"\u003e#12748\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etypescript-estree:\u003c/strong\u003e clarify the parserOptions.project error message (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12817\"\u003e#12817\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBarry \u003ca href=\"https://github.com/barry166\"\u003e\u003ccode\u003e@​barry166\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEvyatar Daud \u003ca href=\"https://github.com/StyleShit\"\u003e\u003ccode\u003e@​StyleShit\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJosh Goldberg\u003c/li\u003e\n\u003cli\u003eJosh Goldberg ✨ \u003ca href=\"https://github.com/JoshuaKGoldberg\"\u003e\u003ccode\u003e@​JoshuaKGoldberg\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eKirk Waiblinger \u003ca href=\"https://github.com/kirkwaiblinger\"\u003e\u003ccode\u003e@​kirkwaiblinger\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUlrich Stark \u003ca href=\"https://github.com/ulrichstark\"\u003e\u003ccode\u003e@​ulrichstark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e송재욱\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases/tag/v8.70.0\"\u003eGitHub Releases\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cp\u003eYou can read about our \u003ca href=\"https://typescript-eslint.io/users/versioning\"\u003eversioning strategy\u003c/a\u003e and \u003ca href=\"https://typescript-eslint.io/users/releases\"\u003ereleases\u003c/a\u003e on our website.\u003c/p\u003e\n\u003ch2\u003ev8.69.0\u003c/h2\u003e\n\u003ch2\u003e8.69.0 (2026-08-31)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-misused-promises] add flagUnions option for checkConditionals (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12603\"\u003e#12603\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-mixed-enums] use scope analysis instead of type checking for merged namespaces (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12731\"\u003e#12731\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [unified-signatures] compare type parameters by constraint instead of name (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12741\"\u003e#12741\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-meaningless-void-operator] report void on non-call expressions (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12727\"\u003e#12727\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ewebsite:\u003c/strong\u003e respect allowJs playground config (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12744\"\u003e#12744\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAbdu Alim Arlikhozhaev \u003ca href=\"https://github.com/Arlikhozhaev\"\u003e\u003ccode\u003e@​Arlikhozhaev\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEvyatar Daud \u003ca href=\"https://github.com/StyleShit\"\u003e\u003ccode\u003e@​StyleShit\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/eslint-plugin/CHANGELOG.md\"\u003e@​typescript-eslint/eslint-plugin's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.70.0 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-generated-empty-object-type] add rule (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12730\"\u003e#12730\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-deprecated] report deprecated imported values used in object shorthand properties (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12780\"\u003e#12780\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-unnecessary-condition] no false positive on RHS of a nested logical expression (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12728\"\u003e#12728\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [member-ordering] don't report fields that read fields declared before them (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12729\"\u003e#12729\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eJosh Goldberg ✨ \u003ca href=\"https://github.com/JoshuaKGoldberg\"\u003e\u003ccode\u003e@​JoshuaKGoldberg\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUlrich Stark \u003ca href=\"https://github.com/ulrichstark\"\u003e\u003ccode\u003e@​ulrichstark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases/tag/v8.70.0\"\u003eGitHub Releases\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cp\u003eYou can read about our \u003ca href=\"https://typescript-eslint.io/users/versioning\"\u003eversioning strategy\u003c/a\u003e and \u003ca href=\"https://typescript-eslint.io/users/releases\"\u003ereleases\u003c/a\u003e on our website.\u003c/p\u003e\n\u003ch2\u003e8.69.0 (2026-08-31)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-misused-promises] add flagUnions option for checkConditionals (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12603\"\u003e#12603\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-meaningless-void-operator] report void on non-call expressions (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12727\"\u003e#12727\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [unified-signatures] compare type parameters by constraint instead of name (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12741\"\u003e#12741\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-mixed-enums] use scope analysis instead of type checking for merged namespaces (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12731\"\u003e#12731\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAbdu Alim Arlikhozhaev \u003ca href=\"https://github.com/Arlikhozhaev\"\u003e\u003ccode\u003e@​Arlikhozhaev\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEvyatar Daud \u003ca href=\"https://github.com/StyleShit\"\u003e\u003ccode\u003e@​StyleShit\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJosh Goldberg ✨\u003c/li\u003e\n\u003cli\u003ewonbeanie \u003ca href=\"https://github.com/wonbeanie\"\u003e\u003ccode\u003e@​wonbeanie\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases/tag/v8.69.0\"\u003eGitHub Releases\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cp\u003eYou can read about our \u003ca href=\"https://typescript-eslint.io/users/versioning\"\u003eversioning strategy\u003c/a\u003e and \u003ca href=\"https://typescript-eslint.io/users/releases\"\u003ereleases\u003c/a\u003e on our website.\u003c/p\u003e\n\u003ch2\u003e8.68.0 (2026-08-24)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [strict-void-return] add fix suggestions (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12086\"\u003e#12086\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/7ee76085c22e923c0036b8e0733a3ca7dfd82b60\"\u003e\u003ccode\u003e7ee7608\u003c/code\u003e\u003c/a\u003e chore(release): publish 8.70.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/f66bdcac30c13c7ca8932667494550fd13fde5fc\"\u003e\u003ccode\u003ef66bdca\u003c/code\u003e\u003c/a\u003e test(eslint-plugin): [member-ordering] use \u003ccode\u003eRuleTester\u003c/code\u003e directly in `optional...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/4586535ab24d7d5e9b3ba87e4adb8636f9314aca\"\u003e\u003ccode\u003e4586535\u003c/code\u003e\u003c/a\u003e fix(eslint-plugin): [no-deprecated] report deprecated imported values used in...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/f8e1e4e2f7454ab2ba680cb523f9e3abe6582f81\"\u003e\u003ccode\u003ef8e1e4e\u003c/code\u003e\u003c/a\u003e fix(eslint-plugin): [no-unnecessary-condition] no false positive on RHS of a ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/889cece8bba520fc8c342dade4adf42b5d7f671e\"\u003e\u003ccode\u003e889cece\u003c/code\u003e\u003c/a\u003e fix(eslint-plugin): [member-ordering] don't report fields that read fields de...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/1a5a8b124b905c81a76ba1104a6396e65ad407dd\"\u003e\u003ccode\u003e1a5a8b1\u003c/code\u003e\u003c/a\u003e feat(eslint-plugin): [no-generated-empty-object-type] add rule (\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin/issues/12730\"\u003e#12730\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/9a6e546823e5d8f2dc015df2aa66c0230615e209\"\u003e\u003ccode\u003e9a6e546\u003c/code\u003e\u003c/a\u003e chore(release): publish 8.69.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/513638effe9e7b78566cc153d4d809a1435153f3\"\u003e\u003ccode\u003e513638e\u003c/code\u003e\u003c/a\u003e fix(eslint-plugin): [no-meaningless-void-operator] report void on non-call ex...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/1dba4c50f0599cc212e9d1eca9ec0f21a818f0b5\"\u003e\u003ccode\u003e1dba4c5\u003c/code\u003e\u003c/a\u003e chore(eslint-plugin): fix \u003ccode\u003eeslint-plugin/require-test-error-positions\u003c/code\u003e report...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/a2fccae39c7cb1e516a29b1c746b7767bffa03e2\"\u003e\u003ccode\u003ea2fccae\u003c/code\u003e\u003c/a\u003e fix(eslint-plugin): [unified-signatures] compare type parameters by constrain...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commits/v8.70.0/packages/eslint-plugin\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@typescript-eslint/parser` from 8.67.0 to 8.70.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases\"\u003e@​typescript-eslint/parser's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.70.0\u003c/h2\u003e\n\u003ch2\u003e8.70.0 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-generated-empty-object-type] add rule (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12730\"\u003e#12730\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ewebsite:\u003c/strong\u003e generate per-page social preview cards (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12734\"\u003e#12734\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003euse stable release of pnpm 12 (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12808\"\u003e#12808\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eupdate pnpm to 12.3.4 and dedupe Docusaurus packages (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12829\"\u003e#12829\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [member-ordering] don't report fields that read fields declared before them (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12729\"\u003e#12729\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-unnecessary-condition] no false positive on RHS of a nested logical expression (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12728\"\u003e#12728\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-deprecated] report deprecated imported values used in object shorthand properties (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12780\"\u003e#12780\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eproject-service:\u003c/strong\u003e avoid discarded tsserver logs (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12748\"\u003e#12748\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etypescript-estree:\u003c/strong\u003e clarify the parserOptions.project error message (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12817\"\u003e#12817\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBarry \u003ca href=\"https://github.com/barry166\"\u003e\u003ccode\u003e@​barry166\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEvyatar Daud \u003ca href=\"https://github.com/StyleShit\"\u003e\u003ccode\u003e@​StyleShit\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJosh Goldberg\u003c/li\u003e\n\u003cli\u003eJosh Goldberg ✨ \u003ca href=\"https://github.com/JoshuaKGoldberg\"\u003e\u003ccode\u003e@​JoshuaKGoldberg\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eKirk Waiblinger \u003ca href=\"https://github.com/kirkwaiblinger\"\u003e\u003ccode\u003e@​kirkwaiblinger\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUlrich Stark \u003ca href=\"https://github.com/ulrichstark\"\u003e\u003ccode\u003e@​ulrichstark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e송재욱\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases/tag/v8.70.0\"\u003eGitHub Releases\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cp\u003eYou can read about our \u003ca href=\"https://typescript-eslint.io/users/versioning\"\u003eversioning strategy\u003c/a\u003e and \u003ca href=\"https://typescript-eslint.io/users/releases\"\u003ereleases\u003c/a\u003e on our website.\u003c/p\u003e\n\u003ch2\u003ev8.69.0\u003c/h2\u003e\n\u003ch2\u003e8.69.0 (2026-08-31)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-misused-promises] add flagUnions option for checkConditionals (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12603\"\u003e#12603\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-mixed-enums] use scope analysis instead of type checking for merged namespaces (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12731\"\u003e#12731\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [unified-signatures] compare type parameters by constraint instead of name (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12741\"\u003e#12741\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint-plugin:\u003c/strong\u003e [no-meaningless-void-operator] report void on non-call expressions (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12727\"\u003e#12727\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ewebsite:\u003c/strong\u003e respect allowJs playground config (\u003ca href=\"https://redirect.github.com/typescript-eslint/typescript-eslint/pull/12744\"\u003e#12744\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAbdu Alim Arlikhozhaev \u003ca href=\"https://github.com/Arlikhozhaev\"\u003e\u003ccode\u003e@​Arlikhozhaev\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEvyatar Daud \u003ca href=\"https://github.com/StyleShit\"\u003e\u003ccode\u003e@​StyleShit\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md\"\u003e@​typescript-eslint/parser's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.70.0 (2026-09-07)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for parser to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases/tag/v8.70.0\"\u003eGitHub Releases\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cp\u003eYou can read about our \u003ca href=\"https://typescript-eslint.io/users/versioning\"\u003eversioning strategy\u003c/a\u003e and \u003ca href=\"https://typescript-eslint.io/users/releases\"\u003ereleases\u003c/a\u003e on our website.\u003c/p\u003e\n\u003ch2\u003e8.69.0 (2026-08-31)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for parser to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases/tag/v8.69.0\"\u003eGitHub Releases\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cp\u003eYou can read about our \u003ca href=\"https://typescript-eslint.io/users/versioning\"\u003eversioning strategy\u003c/a\u003e and \u003ca href=\"https://typescript-eslint.io/users/releases\"\u003ereleases\u003c/a\u003e on our website.\u003c/p\u003e\n\u003ch2\u003e8.68.0 (2026-08-24)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for parser to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/releases/tag/v8.68.0\"\u003eGitHub Releases\u003c/a\u003e for more information.\u003c/p\u003e\n\u003cp\u003eYou can read about our \u003ca href=\"https://typescript-eslint.io/users/versioning\"\u003eversioning strategy\u003c/a\u003e and \u003ca href=\"https://typescript-eslint.io/users/releases\"\u003ereleases\u003c/a\u003e on our website.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/7ee76085c22e923c0036b8e0733a3ca7dfd82b60\"\u003e\u003ccode\u003e7ee7608\u003c/code\u003e\u003c/a\u003e chore(release): publish 8.70.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/9a6e546823e5d8f2dc015df2aa66c0230615e209\"\u003e\u003ccode\u003e9a6e546\u003c/code\u003e\u003c/a\u003e chore(release): publish 8.69.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/8f4e00a4e8f3bdf93a5e5e8bc568ba1c15a4f896\"\u003e\u003ccode\u003e8f4e00a\u003c/code\u003e\u003c/a\u003e chore(release): publish 8.68.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commit/55f6d5d4ca39d2fab93db97ced497b956017878d\"\u003e\u003ccode\u003e55f6d5d\u003c/code\u003e\u003c/a\u003e chore: enable source maps (\u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser/issues/12677\"\u003e#12677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/typescript-eslint/typescript-eslint/commits/v8.70.0/packages/parser\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `eslint` from 10.8.1 to 10.10.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/eslint/eslint/releases\"\u003eeslint's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev10.10.0\u003c/h2\u003e\n\u003ch2\u003eFeatures\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/264b4346d1963701df0c398b4aeb2f6e8b2af93e\"\u003e\u003ccode\u003e264b434\u003c/code\u003e\u003c/a\u003e feat: add \u003ccode\u003ed\u003c/code\u003e and \u003ccode\u003ev\u003c/code\u003e flags to \u003ccode\u003eno-unexpected-multiline\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21305\"\u003e#21305\u003c/a\u003e) (Gihyeon Jeong / 정기현)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/c6cc6c592f30901345d94ef75e0d42c1894fae6c\"\u003e\u003ccode\u003ec6cc6c5\u003c/code\u003e\u003c/a\u003e feat: check \u003ccode\u003eObject.prototype\u003c/code\u003e property names in \u003ccode\u003enew-cap\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21269\"\u003e#21269\u003c/a\u003e) (crimsonjay0)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/5661fa65fde9fd4c14f0b730e3cee6a42fc657c1\"\u003e\u003ccode\u003e5661fa6\u003c/code\u003e\u003c/a\u003e feat: no-extra-bind false negatives with class fields and static blocks (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21260\"\u003e#21260\u003c/a\u003e) (synthex-byte)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/bb47dc6da2399a8f76c0c0c3273e6bc314c480e5\"\u003e\u003ccode\u003ebb47dc6\u003c/code\u003e\u003c/a\u003e fix: update dependency file-entry-cache to v11 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20801\"\u003e#20801\u003c/a\u003e) (Milos Djermanovic)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/427ac0a014066c36aa57fa8fa9af20fd9fb591e1\"\u003e\u003ccode\u003e427ac0a\u003c/code\u003e\u003c/a\u003e fix: use format strings in debug calls (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21247\"\u003e#21247\u003c/a\u003e) (Francesco Trotta)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/9d8153223dbf47b9aecdc1474202aaee4845f146\"\u003e\u003ccode\u003e9d81532\u003c/code\u003e\u003c/a\u003e fix: support \u003ccode\u003e__proto__\u003c/code\u003e in \u003ccode\u003e/* exported */\u003c/code\u003e comments (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21261\"\u003e#21261\u003c/a\u003e) (sethamus)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/87e0a082438264ad90b87fd74165ab4fd90f63ef\"\u003e\u003ccode\u003e87e0a08\u003c/code\u003e\u003c/a\u003e fix: prefer-object-has-own autofix breaks when Object is shadowed (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21282\"\u003e#21282\u003c/a\u003e) (김채영)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/8e2cb142217f2efee1d10dcc02bfb75145ae775d\"\u003e\u003ccode\u003e8e2cb14\u003c/code\u003e\u003c/a\u003e fix: \u003ccode\u003enew-cap\u003c/code\u003e false positive for \u003ccode\u003eUTC\u003c/code\u003e calls with \u003ccode\u003eproperties: false\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21275\"\u003e#21275\u003c/a\u003e) (Pixel)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/9f4a364ab0ade048dfce1f37792b1d461d866e55\"\u003e\u003ccode\u003e9f4a364\u003c/code\u003e\u003c/a\u003e fix: Ignore static imports in no-unreachable (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21276\"\u003e#21276\u003c/a\u003e) (Taha Kotil)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eDocumentation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/2417cad57d7d1bc4cf3ecf0f0575cfb10ff2011c\"\u003e\u003ccode\u003e2417cad\u003c/code\u003e\u003c/a\u003e docs: Update README (GitHub Actions Bot)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/9cecb8a0a2348070abf72321965d41919c7cc626\"\u003e\u003ccode\u003e9cecb8a\u003c/code\u003e\u003c/a\u003e docs: document \u003ccode\u003e\\c\u003c/code\u003e control letter escapes in no-control-regex (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21286\"\u003e#21286\u003c/a\u003e) (한국)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/8724829f69f8ed80c876e3a5a017da199ce78739\"\u003e\u003ccode\u003e8724829\u003c/code\u003e\u003c/a\u003e docs: update compat table links (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21263\"\u003e#21263\u003c/a\u003e) (fnx)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/5634542be580750ffb1a5766470f9e9c72719696\"\u003e\u003ccode\u003e5634542\u003c/code\u003e\u003c/a\u003e docs: Clarify eqeqeq suggestion behavior (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21256\"\u003e#21256\u003c/a\u003e) (Müslüm Yılmaz)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eChores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/b3d876b46083d67899eb1d9613118c1c583632a2\"\u003e\u003ccode\u003eb3d876b\u003c/code\u003e\u003c/a\u003e chore: disable npm audit in ecosystem tests (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21306\"\u003e#21306\u003c/a\u003e) (Francesco Trotta)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/1696682791661c13167eb905da2f38d1b8f4a3bf\"\u003e\u003ccode\u003e1696682\u003c/code\u003e\u003c/a\u003e ci: restore EMFILE test on Node.js 26 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21297\"\u003e#21297\u003c/a\u003e) (Marry (Subin Yang))\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/2c7f5d6f47a92e8c0847af103e40fdb2f4dc61ef\"\u003e\u003ccode\u003e2c7f5d6\u003c/code\u003e\u003c/a\u003e chore: update github/codeql-action action to v4.37.9 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21296\"\u003e#21296\u003c/a\u003e) (renovate[bot])\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/3c753f18b461bfbf36d41a79a7863c093ef48489\"\u003e\u003ccode\u003e3c753f1\u003c/code\u003e\u003c/a\u003e chore: update eslint (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21289\"\u003e#21289\u003c/a\u003e) (renovate[bot])\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/1c734690bf6f4f9c542bec428d5a1a5c6cc4a19b\"\u003e\u003ccode\u003e1c73469\u003c/code\u003e\u003c/a\u003e chore: update ecosystem plugins (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21280\"\u003e#21280\u003c/a\u003e) (ESLint Bot)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/08a02be429e21fc93d86c8dd16cec6dc945ea2c1\"\u003e\u003ccode\u003e08a02be\u003c/code\u003e\u003c/a\u003e test: add error locations to \u003ccode\u003eno-extra-boolean-cast\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21266\"\u003e#21266\u003c/a\u003e) (lumir)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/77bb1db8e730b7da2347c647d60f215706aa349a\"\u003e\u003ccode\u003e77bb1db\u003c/code\u003e\u003c/a\u003e chore: update github/codeql-action action to v4.37.8 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21270\"\u003e#21270\u003c/a\u003e) (renovate[bot])\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/007e81ac0ad66bd0be4887d88a276df292ae0bed\"\u003e\u003ccode\u003e007e81a\u003c/code\u003e\u003c/a\u003e ci: skip EMFILE test on Node.js 26 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21265\"\u003e#21265\u003c/a\u003e) (lumir)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/0430280e7cca9dc0fdbf0bc50464e98e84285c49\"\u003e\u003ccode\u003e0430280\u003c/code\u003e\u003c/a\u003e chore: improve ecosystem tests compatibility on Windows (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21178\"\u003e#21178\u003c/a\u003e) (crimsonjay0)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.9.1\u003c/h2\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/1e641c919fc1421493bf913feb607896982451a3\"\u003e\u003ccode\u003e1e641c9\u003c/code\u003e\u003c/a\u003e fix: no-loss-of-precision false positive with trailing decimal point (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21251\"\u003e#21251\u003c/a\u003e) (Aleksandr Shoronov)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eDocumentation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/ad74a8dada2aaa17bfd0b8cc7b4119ff7a8ac04b\"\u003e\u003ccode\u003ead74a8d\u003c/code\u003e\u003c/a\u003e docs: add deprecation steps for EOL package versions (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21248\"\u003e#21248\u003c/a\u003e) (Francesco Trotta)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eChores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/3c3ae53a43721162f0db76c69665ebd9d752ea52\"\u003e\u003ccode\u003e3c3ae53\u003c/code\u003e\u003c/a\u003e chore: update ecosystem plugins (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21249\"\u003e#21249\u003c/a\u003e) (ESLint Bot)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.9.0\u003c/h2\u003e\n\u003ch2\u003eFeatures\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/08de88e50294c4e01f6cae97eceeb578da55792b\"\u003e\u003ccode\u003e08de88e\u003c/code\u003e\u003c/a\u003e feat: handle underflow in no-loss-of-precision (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21218\"\u003e#21218\u003c/a\u003e) (Rithish S)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/55db4791120ae591d88089c43127b7b0e16866d4\"\u003e\u003ccode\u003e55db479\u003c/code\u003e\u003c/a\u003e feat: add checkConditionalExpressions to \u003ccode\u003eno-unmodified-loop-condition\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21175\"\u003e#21175\u003c/a\u003e) (sethamus)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/2ba302554e7a24e9909bbdd026fd0c2d1d0d8638\"\u003e\u003ccode\u003e2ba3025\u003c/code\u003e\u003c/a\u003e fix: prevent unsafe \u003ccode\u003eno-var\u003c/code\u003e autofix with hoisted functions (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21213\"\u003e#21213\u003c/a\u003e) (sethamus)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/8e6962219a605c5f5add10953aa31027da839194\"\u003e\u003ccode\u003e8e69622\u003c/code\u003e\u003c/a\u003e fix: Prevent no-var autofix when var is shadowed by catch parameter (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21204\"\u003e#21204\u003c/a\u003e) (Yang Hyeonjong)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/684b57972e1ddf25e076fb36189c60bbcacee635\"\u003e\u003ccode\u003e684b579\u003c/code\u003e\u003c/a\u003e fix: prefer-template invalid autofix creates a tagged template call (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21207\"\u003e#21207\u003c/a\u003e) (김채영)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/3f20a57c6293371b6193d3fb6746c2b7b2ac2689\"\u003e\u003ccode\u003e3f20a57\u003c/code\u003e\u003c/a\u003e 10.10.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/f4e5284803854423c4c2536696888c28ce4a151f\"\u003e\u003ccode\u003ef4e5284\u003c/code\u003e\u003c/a\u003e Build: changelog update for 10.10.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/bb47dc6da2399a8f76c0c0c3273e6bc314c480e5\"\u003e\u003ccode\u003ebb47dc6\u003c/code\u003e\u003c/a\u003e fix: update dependency file-entry-cache to v11 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20801\"\u003e#20801\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/427ac0a014066c36aa57fa8fa9af20fd9fb591e1\"\u003e\u003ccode\u003e427ac0a\u003c/code\u003e\u003c/a\u003e fix: use format strings in debug calls (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21247\"\u003e#21247\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/b3d876b46083d67899eb1d9613118c1c583632a2\"\u003e\u003ccode\u003eb3d876b\u003c/code\u003e\u003c/a\u003e chore: disable npm audit in ecosystem tests (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21306\"\u003e#21306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/9d8153223dbf47b9aecdc1474202aaee4845f146\"\u003e\u003ccode\u003e9d81532\u003c/code\u003e\u003c/a\u003e fix: support \u003ccode\u003e__proto__\u003c/code\u003e in \u003ccode\u003e/* exported */\u003c/code\u003e comments (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21261\"\u003e#21261\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/264b4346d1963701df0c398b4aeb2f6e8b2af93e\"\u003e\u003ccode\u003e264b434\u003c/code\u003e\u003c/a\u003e feat: add \u003ccode\u003ed\u003c/code\u003e and \u003ccode\u003ev\u003c/code\u003e flags to \u003ccode\u003eno-unexpected-multiline\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21305\"\u003e#21305\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/1696682791661c13167eb905da2f38d1b8f4a3bf\"\u003e\u003ccode\u003e1696682\u003c/code\u003e\u003c/a\u003e ci: restore EMFILE test on Node.js 26 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21297\"\u003e#21297\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/2c7f5d6f47a92e8c0847af103e40fdb2f4dc61ef\"\u003e\u003ccode\u003e2c7f5d6\u003c/code\u003e\u003c/a\u003e chore: update github/codeql-action action to v4.37.9 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21296\"\u003e#21296\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/87e0a082438264ad90b87fd74165ab4fd90f63ef\"\u003e\u003ccode\u003e87e0a08\u003c/code\u003e\u003c/a\u003e fix: prefer-object-has-own autofix breaks when Object is shadowed (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/21282\"\u003e#21282\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/eslint/eslint/compare/v10.8.1...v10.10.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `eslint-plugin-jest` from 29.16.1 to 29.16.6\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/releases\"\u003eeslint-plugin-jest's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev29.16.6\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.5...v29.16.6\"\u003e29.16.6\u003c/a\u003e (2026-08-30)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eprefer-to-have-been-called:\u003c/strong\u003e don't crash on matcher without an argument (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2016\"\u003e#2016\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/58e487fecda05ddafcac2fcf67475d90bd515957\"\u003e58e487f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eprefer-to-have-length:\u003c/strong\u003e don't crash on \u003ccode\u003eexpect\u003c/code\u003e chain without a value (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2014\"\u003e#2014\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/3629019d8e84e096115c8774a34178ff5b83aaf2\"\u003e3629019\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev29.16.5\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.4...v29.16.5\"\u003e29.16.5\u003c/a\u003e (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eno-export:\u003c/strong\u003e handle literal property accessors (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2011\"\u003e#2011\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/d848f70d5ae1a143d4ae2ef52bf00c6658f5070d\"\u003ed848f70\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev29.16.4\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.3...v29.16.4\"\u003e29.16.4\u003c/a\u003e (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eno-export:\u003c/strong\u003e handle nested assignment chains (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2009\"\u003e#2009\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/14b559af7f3d93ca585f65deae97c4b24a83e900\"\u003e14b559a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev29.16.3\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.2...v29.16.3\"\u003e29.16.3\u003c/a\u003e (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eno-export:\u003c/strong\u003e check for \u003ccode\u003eexports\u003c/code\u003e global (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/1988\"\u003e#1988\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/f506cb2b90743767d9619f22ebfe29b4ff047783\"\u003ef506cb2\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev29.16.2\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.1...v29.16.2\"\u003e29.16.2\u003c/a\u003e (2026-08-25)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eprefer-equality-matcher:\u003c/strong\u003e don't crash on \u003ccode\u003eexpect\u003c/code\u003e chain without a value (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2006\"\u003e#2006\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/27665cdddb1971ff2c19b0f897fee83112c95462\"\u003e27665cd\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/blob/main/CHANGELOG.md\"\u003eeslint-plugin-jest's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.5...v29.16.6\"\u003e29.16.6\u003c/a\u003e (2026-08-30)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eprefer-to-have-been-called:\u003c/strong\u003e don't crash on matcher without an argument (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2016\"\u003e#2016\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/58e487fecda05ddafcac2fcf67475d90bd515957\"\u003e58e487f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eprefer-to-have-length:\u003c/strong\u003e don't crash on \u003ccode\u003eexpect\u003c/code\u003e chain without a value (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2014\"\u003e#2014\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/3629019d8e84e096115c8774a34178ff5b83aaf2\"\u003e3629019\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.4...v29.16.5\"\u003e29.16.5\u003c/a\u003e (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eno-export:\u003c/strong\u003e handle literal property accessors (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2011\"\u003e#2011\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/d848f70d5ae1a143d4ae2ef52bf00c6658f5070d\"\u003ed848f70\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.3...v29.16.4\"\u003e29.16.4\u003c/a\u003e (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eno-export:\u003c/strong\u003e handle nested assignment chains (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2009\"\u003e#2009\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/14b559af7f3d93ca585f65deae97c4b24a83e900\"\u003e14b559a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.2...v29.16.3\"\u003e29.16.3\u003c/a\u003e (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eno-export:\u003c/strong\u003e check for \u003ccode\u003eexports\u003c/code\u003e global (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/1988\"\u003e#1988\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/f506cb2b90743767d9619f22ebfe29b4ff047783\"\u003ef506cb2\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/compare/v29.16.1...v29.16.2\"\u003e29.16.2\u003c/a\u003e (2026-08-25)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eprefer-equality-matcher:\u003c/strong\u003e don't crash on \u003ccode\u003eexpect\u003c/code\u003e chain without a value (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/issues/2006\"\u003e#2006\u003c/a\u003e) (\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/27665cdddb1971ff2c19b0f897fee83112c95462\"\u003e27665cd\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/94076f052370b6efc333af3b915d157e76a05b52\"\u003e\u003ccode\u003e94076f0\u003c/code\u003e\u003c/a\u003e chore(release): 29.16.6 [skip ci]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/58e487fecda05ddafcac2fcf67475d90bd515957\"\u003e\u003ccode\u003e58e487f\u003c/code\u003e\u003c/a\u003e fix(prefer-to-have-been-called): don't crash on matcher without an argument (...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jest-community/eslint-plugin-jest/commit/3629019d8e84e096115c8774a34178ff5b83aaf2\"\u003e\u003ccode\u003e3629019\u003c/code\u003e\u003c/a\u003e fix(prefer-to-have-length): don't crash on \u003ccode\u003eexpect\u003c/code\u003e chain without a value (\u003ca href=\"https://redirect.github.com/jest-community/eslint-plugin-jest/...\n\n_Description has been truncated_","html_url":"https://github.com/zpao/qrcode.react/pull/456","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/zpao%2Fqrcode.react/issues/456","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/456/packages"}},{"old_version":"10.3.10","new_version":"10.5.0","update_type":"minor","path":null,"pr_created_at":"2026-09-16T03:30:30.000Z","version_change":"10.3.10 → 10.5.0","issue":{"uuid":"5469884783","node_id":"PR_kwDOMXBbm88AAAABDtLyIQ","number":5,"state":"closed","title":"Bump glob and eslint-config-next","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-16T03:30:42.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-16T03:30:30.000Z","updated_at":"2026-09-16T03:30:50.000Z","time_to_close":12,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"glob","repository_url":"https://github.com/isaacs/node-glob","old_version":"10.3.10","new_version":"10.5.0"},{"name":"eslint-config-next","repository_url":"https://github.com/vercel/next.js","old_version":"14.2.5","new_version":"16.3.5"}],"path":null,"ecosystem":"npm"},"body":"Bumps [glob](https://github.com/isaacs/node-glob) to 10.5.0 and updates ancestor dependency [eslint-config-next](https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next). These dependencies need to be updated together.\n\nUpdates `glob` from 10.3.10 to 10.5.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-glob/blob/main/changelog.md\"\u003eglob's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003echangeglob\u003c/h1\u003e\n\u003ch2\u003e13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMove the CLI program out to a separate package, \u003ccode\u003eglob-bin\u003c/code\u003e.\nInstall that if you'd like to continue using glob from the\ncommand line.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove the unsafe \u003ccode\u003e--shell\u003c/code\u003e option. The \u003ccode\u003e--shell\u003c/code\u003e option is now\nONLY supported on known shells where the behavior can be\nimplemented safely.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.1\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/isaacs/node-glob/security/advisories/GHSA-5j98-mcp5-4vw2\"\u003eGHSA-5j98-mcp5-4vw2\u003c/a\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--shell\u003c/code\u003e option for the command line, with a warning\nthat this is unsafe. (It will be removed in v12.)\u003c/li\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--cmd-arg\u003c/code\u003e/\u003ccode\u003e-g\u003c/code\u003e as a way to \u003cem\u003esafely\u003c/em\u003e add positional\narguments to the command provided to the CLI tool.\u003c/li\u003e\n\u003cli\u003eDetect commands with space or quote characters on known shells,\nand pass positional arguments to them safely, avoiding\n\u003ccode\u003eshell:true\u003c/code\u003e execution.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node before v20\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eincludeChildMatches: false\u003c/code\u003e option\u003c/li\u003e\n\u003cli\u003eExport the \u003ccode\u003eIgnore\u003c/code\u003e class\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e--default -p\u003c/code\u003e flag to provide a default pattern\u003c/li\u003e\n\u003cli\u003eexclude symbolic links to directories when \u003ccode\u003efollow\u003c/code\u003e and \u003ccode\u003enodir\u003c/code\u003e\nare both set\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd glob cli\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReturn \u003ccode\u003e'.'\u003c/code\u003e instead of the empty string \u003ccode\u003e''\u003c/code\u003e when the current\nworking directory is returned as a match.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eposix: true\u003c/code\u003e option to return \u003ccode\u003e/\u003c/code\u003e delimited paths, even on\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1f0c1ca01a5f256cd17f543f83e9aaeedd133939\"\u003e\u003ccode\u003e1f0c1ca\u003c/code\u003e\u003c/a\u003e 10.4.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/eaf31dcb144750a19842a8319c330d021d4c4d5f\"\u003e\u003ccode\u003eeaf31dc\u003c/code\u003e\u003c/a\u003e whatever, just allow any engines\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/78275168e1bbc7a61e372af1ba58307c27faf0cb\"\u003e\u003ccode\u003e7827516\u003c/code\u003e\u003c/a\u003e 10.4.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/d06c8f8c8288c89a4892f4ebcc23ca21840aa4a1\"\u003e\u003ccode\u003ed06c8f8\u003c/code\u003e\u003c/a\u003e restore support for node 14.latest and 16.latest\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/c14b787771f269651f27f6207aaf410fe171f0b6\"\u003e\u003ccode\u003ec14b787\u003c/code\u003e\u003c/a\u003e 10.4.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/8a69def3cad0de9ba26ca831065ffe448d153de3\"\u003e\u003ccode\u003e8a69def\u003c/code\u003e\u003c/a\u003e node 14 no longer supported\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/eef7ea35afe511079c5bf83862ed57ece2bbf7fa\"\u003e\u003ccode\u003eeef7ea3\u003c/code\u003e\u003c/a\u003e 10.4.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/c76a7d255c74133ed33dd7aa965598316d12dd25\"\u003e\u003ccode\u003ec76a7d2\u003c/code\u003e\u003c/a\u003e use package-json-from-dist to look up package.json\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.3.10...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `eslint-config-next` from 14.2.5 to 16.3.5\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/next.js/releases\"\u003eeslint-config-next's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev16.3.5\u003c/h2\u003e\n\u003cp\u003eThe following bug fixes have been backported. It does not include all pending features/changes on canary.\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003enext/image: Skip 0-byte entries when initializing disk LRU cache (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/98185\"\u003e#98185\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003enext/image: Reject empty images when reading/writing to the disk cache (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/98186\"\u003e#98186\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eEmit whole-app server NFTs when \u003ccode\u003eoutput: 'standalone'\u003c/code\u003e is used with an adapter (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/98167\"\u003e#98167\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdd CSP nonce to script tags of loading and template files (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/98403\"\u003e#98403\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003euse cache\u003c/code\u003e prerender signal retention (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/98448\"\u003e#98448\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev16.3.4\u003c/h2\u003e\n\u003cp\u003eFollow-up release to \u003ca href=\"https://github.com/vercel/next.js/releases/tag/v16.3.3\"\u003ev16.3.3\u003c/a\u003e re-enabling AVIF Image Optimization (\u003ca href=\"https://redirect.github.com/vercel/next.js/pull/97949\"\u003e#97949\u003c/a\u003e).\u003c/p\u003e\n\u003cp\u003eThe following bug fixes have been backported. It does \u003cstrong\u003enot\u003c/strong\u003e include all pending features/changes on canary.\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003etestmode: Fix infinite recursion in testmode passthrough fetch (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97691\"\u003e#97691\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix build error when aliasing typescript to \u003ccode\u003e@​typescript/typescript6\u003c/code\u003e (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97997\"\u003e#97997\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix unset crossOrigin in Turbopack manifests (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97930\"\u003e#97930\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eCredits\u003c/h3\u003e\n\u003cp\u003eHuge thanks to \u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/mischnic\"\u003e\u003ccode\u003e@​mischnic\u003c/code\u003e\u003c/a\u003e, and \u003ca href=\"https://github.com/timneutkens\"\u003e\u003ccode\u003e@​timneutkens\u003c/code\u003e\u003c/a\u003e for helping!\u003c/p\u003e\n\u003ch2\u003ev16.3.3\u003c/h2\u003e\n\u003cp\u003eThis release contains security fixes for the following advisories:\u003c/p\u003e\n\u003cp\u003eCritical:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/security/advisories/GHSA-p293-qw3h-jr36\"\u003eUnauthenticated Remote Code Execution on windows-hosted servers\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/security/advisories/GHSA-2xp9-vwfh-vxw4\"\u003eUnauthenticated Remote Code Execution in Image Optimization API when AVIF files are used\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev16.3.2\u003c/h2\u003e\n\u003cblockquote\u003e\n\u003cp\u003e[!NOTE]\nThis release is backporting bug fixes. It does \u003cstrong\u003enot\u003c/strong\u003e include all pending features/changes on canary.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003ch3\u003eCore Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Scope app-entry export validation to files inside the app directory (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97357\"\u003e#97357\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Fix catch-all index page being served for every other slug (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97416\"\u003e#97416\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[16.3] Turbopack: don't trace embedded WASM loader helpers (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97353\"\u003e#97353\u003c/a\u003e) (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97463\"\u003e#97463\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[16.3] Turbopack: retain conditions when replacing resolve request keys (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97453\"\u003e#97453\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[16.3.x] Fix Turbopack worker chunk loading with asset prefix (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97419\"\u003e#97419\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[16.3.x] Authenticate Turborepo remote caching with OIDC instead of a static PAT (\u003ca href=\"https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next/issues/97603\"\u003e#97603\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eCredits\u003c/h3\u003e\n\u003cp\u003eHuge thanks to \u003ca href=\"https://github.com/lubieowoce\"\u003e\u003ccode\u003e@​lubieowoce\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/unstubbable\"\u003e\u003ccode\u003e@​unstubbable\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/timneutkens\"\u003e\u003ccode\u003e@​timneutkens\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/mischnic\"\u003e\u003ccode\u003e@​mischnic\u003c/code\u003e\u003c/a\u003e, and \u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e for helping!\u003c/p\u003e\n\u003ch2\u003ev16.3.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e[16.x] Turbopack: don't strip async-module runtime from shared runtime chunks by \u003ca href=\"https://github.com/lukesandberg\"\u003e\u003ccode\u003e@​lukesandberg\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/next.js/pull/96653\"\u003evercel/next.js#96653\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/ca2c75eb7f8d9dd012a8bb83c06132149fe221f9\"\u003e\u003ccode\u003eca2c75e\u003c/code\u003e\u003c/a\u003e v16.3.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/299180d3315c7ebd7b199d2b1a265b5986c5fc7d\"\u003e\u003ccode\u003e299180d\u003c/code\u003e\u003c/a\u003e v16.3.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/a9a1cb7859f178f830ad3773b303130c21b19586\"\u003e\u003ccode\u003ea9a1cb7\u003c/code\u003e\u003c/a\u003e v16.3.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/d0ac8828c2fe6026dd7d700488bfd8289711fde6\"\u003e\u003ccode\u003ed0ac882\u003c/code\u003e\u003c/a\u003e v16.3.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/3d32eb870fb4c7009d580a31e2de81a626562270\"\u003e\u003ccode\u003e3d32eb8\u003c/code\u003e\u003c/a\u003e v16.3.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/d73f5622e226358dcef8cf7a8a373333ff265ae7\"\u003e\u003ccode\u003ed73f562\u003c/code\u003e\u003c/a\u003e v16.3.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/4fd843fb488f770c5b2023ddc58ff4be4ee81f14\"\u003e\u003ccode\u003e4fd843f\u003c/code\u003e\u003c/a\u003e v16.3.0-canary.107\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/9480f7f9ffdc271014d959e7b10d681882eaabb5\"\u003e\u003ccode\u003e9480f7f\u003c/code\u003e\u003c/a\u003e v16.3.0-canary.106\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/a8dcd2562f0bde39380d48507ec3fffd86c21e53\"\u003e\u003ccode\u003ea8dcd25\u003c/code\u003e\u003c/a\u003e v16.3.0-canary.105\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/38f0cdee4659b1b8f987bc46e3f1aacd12ee5c90\"\u003e\u003ccode\u003e38f0cde\u003c/code\u003e\u003c/a\u003e v16.3.0-canary.104\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vercel/next.js/commits/v16.3.5/packages/eslint-config-next\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for eslint-config-next since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/Fredasante/movie-mania/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/Fredasante/movie-mania/pull/5","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/Fredasante%2Fmovie-mania/issues/5","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/5/packages"}},{"old_version":"10.4.5","new_version":"10.5.0","update_type":"minor","path":null,"pr_created_at":"2026-09-16T02:14:31.000Z","version_change":"10.4.5 → 10.5.0","issue":{"uuid":"5469420880","node_id":"PR_kwDOP4k45M8AAAABDs0QzQ","number":14,"state":"open","title":"Bump glob from 10.4.5 to 10.5.0","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-16T02:14:31.000Z","updated_at":"2026-09-16T02:15:13.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"glob","old_version":"10.4.5","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"}],"path":null,"ecosystem":"npm"},"body":"Bumps [glob](https://github.com/isaacs/node-glob) from 10.4.5 to 10.5.0.\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.4.5...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=glob\u0026package-manager=npm_and_yarn\u0026previous-version=10.4.5\u0026new-version=10.5.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/johnmberger/earworms/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/johnmberger/earworms/pull/14","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/johnmberger%2Fearworms/issues/14","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/14/packages"}},{"old_version":"10.4.5","new_version":"13.0.6","update_type":"major","path":null,"pr_created_at":"2026-09-15T14:25:32.000Z","version_change":"10.4.5 → 13.0.6","issue":{"uuid":"5463239686","node_id":"PR_kwDOPBiX2M8AAAABDn19lw","number":1,"state":"open","title":"Bump the npm_and_yarn group across 1 directory with 9 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-15T14:25:32.000Z","updated_at":"2026-09-15T14:26:07.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"npm_and_yarn","update_count":9,"packages":[{"name":"pacote","old_version":"21.0.0","new_version":"21.5.1","repository_url":"https://github.com/npm/pacote"},{"name":"@sigstore/core","old_version":"2.0.0","new_version":"3.2.1"},{"name":"brace-expansion","old_version":"2.0.2","new_version":"5.0.12"},{"name":"tar","old_version":"6.2.1","new_version":"7.5.22"},{"name":"glob","old_version":"10.4.5","new_version":"13.0.6"},{"name":"ip-address","old_version":"9.0.5","new_version":"10.7.1"},{"name":"minimatch","old_version":"9.0.5","new_version":"10.2.6"},{"name":"picomatch","old_version":"4.0.2","new_version":"4.0.7"},{"name":"sigstore","old_version":"3.1.0","new_version":"4.1.1"}],"path":null,"ecosystem":"npm"},"body":"Bumps the npm_and_yarn group with 1 update in the / directory: [pacote](https://github.com/npm/pacote).\n\nUpdates `pacote` from 21.0.0 to 21.5.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/npm/pacote/releases\"\u003epacote's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev21.5.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.5.0...v21.5.1\"\u003e21.5.1\u003c/a\u003e (2026-06-09)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/627a7dc1a214d857472a13b48e42559c75288c9e\"\u003e\u003ccode\u003e627a7dc\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/499\"\u003e#499\u003c/a\u003e avoid ReDoS in addGitSha committish stripping (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/790a24b4201fa1f844645f99601d478621f079e4\"\u003e\u003ccode\u003e790a24b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/500\"\u003e#500\u003c/a\u003e template-oss-apply (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/500\"\u003e#500\u003c/a\u003e) (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e, test)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/09cb304ca4f85ef85b2acdb2108f3e839ad9556e\"\u003e\u003ccode\u003e09cb304\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/499\"\u003e#499\u003c/a\u003e template-oss-apply (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/bea9f847decbcd1a712481643b15d92ddd8f8087\"\u003e\u003ccode\u003ebea9f84\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/499\"\u003e#499\u003c/a\u003e \u003ccode\u003e@npmcli/template-oss@5.1.0\u003c/code\u003e (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev21.5.0\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.4.0...v21.5.0\"\u003e21.5.0\u003c/a\u003e (2026-03-09)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/d912f17785cd547879c59342b1c2104f71a5a0e6\"\u003e\u003ccode\u003ed912f17\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/457\"\u003e#457\u003c/a\u003e expose fetched attestation bundles on manifest (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/457\"\u003e#457\u003c/a\u003e) (\u003ca href=\"https://github.com/mitchdenny\"\u003e\u003ccode\u003e@​mitchdenny\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/586a55dc0cb9e44740be28ffd1fb227cf8111d2a\"\u003e\u003ccode\u003e586a55d\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/471\"\u003e#471\u003c/a\u003e template-oss-apply for new macos images (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/471\"\u003e#471\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/d1cc5c8bf2ac35c52fc606f96d47129f042739e6\"\u003e\u003ccode\u003ed1cc5c8\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/460\"\u003e#460\u003c/a\u003e template-oss-apply for release branches (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/460\"\u003e#460\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/b741e8b1a401c46841b7c37241e8ec85ad420841\"\u003e\u003ccode\u003eb741e8b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/468\"\u003e#468\u003c/a\u003e bump \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e from 4.28.0 to 4.29.0 (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/468\"\u003e#468\u003c/a\u003e) (\u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot], \u003ca href=\"https://github.com/npm-cli-bot\"\u003e\u003ccode\u003e@​npm-cli-bot\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev21.4.0\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.3.1...v21.4.0\"\u003e21.4.0\u003c/a\u003e (2026-02-24)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/6912f249599e9e27ed0b79ab0652cc60f6d2f755\"\u003e\u003ccode\u003e6912f24\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/451\"\u003e#451\u003c/a\u003e add allowRegistry option (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/451\"\u003e#451\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/ab37bc1e7d0f1c0a590770e650f93500caa9b206\"\u003e\u003ccode\u003eab37bc1\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/452\"\u003e#452\u003c/a\u003e prevent path duplication in attestation URL for registries with … (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/452\"\u003e#452\u003c/a\u003e) (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/ab37bc1e7d0f1c0a590770e650f93500caa9b206\"\u003e\u003ccode\u003eab37bc1\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/452\"\u003e#452\u003c/a\u003e prevent path duplication in attestation URL for registries with (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/8b8ea3b27f49097806fc798b478c5179bea21266\"\u003e\u003ccode\u003e8b8ea3b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/454\"\u003e#454\u003c/a\u003e skip registry key check for keyless (Sigstore/Fulcio) attestations (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/454\"\u003e#454\u003c/a\u003e) (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/8b8ea3b27f49097806fc798b478c5179bea21266\"\u003e\u003ccode\u003e8b8ea3b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/454\"\u003e#454\u003c/a\u003e skip registry key check for keyless (Sigstore/Fulcio) attestations (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/0dfd1cdc15cf8586d0d7c1f4b30bffe73d5277dc\"\u003e\u003ccode\u003e0dfd1cd\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/456\"\u003e#456\u003c/a\u003e remove git config from tests (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/456\"\u003e#456\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev21.3.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.3.0...v21.3.1\"\u003e21.3.1\u003c/a\u003e (2026-02-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/96e571a4c2f1eaab1932ba40eb495cc6b9798c9b\"\u003e\u003ccode\u003e96e571a\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/439\"\u003e#439\u003c/a\u003e ensure that resolved git ref matches expected sha (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/439\"\u003e#439\u003c/a\u003e) (\u003ca href=\"https://github.com/klassiker\"\u003e\u003ccode\u003e@​klassiker\u003c/code\u003e\u003c/a\u003e, pacotedev)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/91847c43637a5308119076371300be497cfcff74\"\u003e\u003ccode\u003e91847c4\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/447\"\u003e#447\u003c/a\u003e fix test for ssri ignoring invalid hashes (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/447\"\u003e#447\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev21.3.0\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.2.0...v21.3.0\"\u003e21.3.0\u003c/a\u003e (2026-02-09)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/8f5091d0a7fc356756707241f8b52dc8a036c34e\"\u003e\u003ccode\u003e8f5091d\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/445\"\u003e#445\u003c/a\u003e add support for git-256 sha lengths (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/445\"\u003e#445\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev21.2.0\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.1.0...v21.2.0\"\u003e21.2.0\u003c/a\u003e (2026-02-06)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/db21624fd9ee8fe3ccea5f671f2e39c7f68546eb\"\u003e\u003ccode\u003edb21624\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/442\"\u003e#442\u003c/a\u003e implement gitSubdir according to npa spec (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/442\"\u003e#442\u003c/a\u003e) (\u003ca href=\"https://github.com/Kakadus\"\u003e\u003ccode\u003e@​Kakadus\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/c2a4217fc8b49d58c4bafd41ec1127105a37ae05\"\u003e\u003ccode\u003ec2a4217\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/443\"\u003e#443\u003c/a\u003e add allowRemote, allowFile, allowDirectory (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/443\"\u003e#443\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev21.1.0\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.0.4...v21.1.0\"\u003e21.1.0\u003c/a\u003e (2026-01-28)\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/npm/pacote/blob/v21.5.1/CHANGELOG.md\"\u003epacote's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.5.0...v21.5.1\"\u003e21.5.1\u003c/a\u003e (2026-06-09)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/627a7dc1a214d857472a13b48e42559c75288c9e\"\u003e\u003ccode\u003e627a7dc\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/499\"\u003e#499\u003c/a\u003e avoid ReDoS in addGitSha committish stripping (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/790a24b4201fa1f844645f99601d478621f079e4\"\u003e\u003ccode\u003e790a24b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/500\"\u003e#500\u003c/a\u003e template-oss-apply (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/500\"\u003e#500\u003c/a\u003e) (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e, test)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/09cb304ca4f85ef85b2acdb2108f3e839ad9556e\"\u003e\u003ccode\u003e09cb304\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/499\"\u003e#499\u003c/a\u003e template-oss-apply (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/bea9f847decbcd1a712481643b15d92ddd8f8087\"\u003e\u003ccode\u003ebea9f84\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/499\"\u003e#499\u003c/a\u003e \u003ccode\u003e@npmcli/template-oss@5.1.0\u003c/code\u003e (\u003ca href=\"https://github.com/owlstronaut\"\u003e\u003ccode\u003e@​owlstronaut\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.4.0...v21.5.0\"\u003e21.5.0\u003c/a\u003e (2026-03-09)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/d912f17785cd547879c59342b1c2104f71a5a0e6\"\u003e\u003ccode\u003ed912f17\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/457\"\u003e#457\u003c/a\u003e expose fetched attestation bundles on manifest (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/457\"\u003e#457\u003c/a\u003e) (\u003ca href=\"https://github.com/mitchdenny\"\u003e\u003ccode\u003e@​mitchdenny\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/586a55dc0cb9e44740be28ffd1fb227cf8111d2a\"\u003e\u003ccode\u003e586a55d\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/471\"\u003e#471\u003c/a\u003e template-oss-apply for new macos images (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/471\"\u003e#471\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/d1cc5c8bf2ac35c52fc606f96d47129f042739e6\"\u003e\u003ccode\u003ed1cc5c8\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/460\"\u003e#460\u003c/a\u003e template-oss-apply for release branches (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/460\"\u003e#460\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/b741e8b1a401c46841b7c37241e8ec85ad420841\"\u003e\u003ccode\u003eb741e8b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/468\"\u003e#468\u003c/a\u003e bump \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e from 4.28.0 to 4.29.0 (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/468\"\u003e#468\u003c/a\u003e) (\u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot], \u003ca href=\"https://github.com/npm-cli-bot\"\u003e\u003ccode\u003e@​npm-cli-bot\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.3.1...v21.4.0\"\u003e21.4.0\u003c/a\u003e (2026-02-24)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/6912f249599e9e27ed0b79ab0652cc60f6d2f755\"\u003e\u003ccode\u003e6912f24\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/451\"\u003e#451\u003c/a\u003e add allowRegistry option (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/451\"\u003e#451\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/ab37bc1e7d0f1c0a590770e650f93500caa9b206\"\u003e\u003ccode\u003eab37bc1\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/452\"\u003e#452\u003c/a\u003e prevent path duplication in attestation URL for registries with … (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/452\"\u003e#452\u003c/a\u003e) (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/ab37bc1e7d0f1c0a590770e650f93500caa9b206\"\u003e\u003ccode\u003eab37bc1\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/452\"\u003e#452\u003c/a\u003e prevent path duplication in attestation URL for registries with (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/8b8ea3b27f49097806fc798b478c5179bea21266\"\u003e\u003ccode\u003e8b8ea3b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/454\"\u003e#454\u003c/a\u003e skip registry key check for keyless (Sigstore/Fulcio) attestations (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/454\"\u003e#454\u003c/a\u003e) (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/8b8ea3b27f49097806fc798b478c5179bea21266\"\u003e\u003ccode\u003e8b8ea3b\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/454\"\u003e#454\u003c/a\u003e skip registry key check for keyless (Sigstore/Fulcio) attestations (\u003ca href=\"https://github.com/ajayk\"\u003e\u003ccode\u003e@​ajayk\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/0dfd1cdc15cf8586d0d7c1f4b30bffe73d5277dc\"\u003e\u003ccode\u003e0dfd1cd\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/456\"\u003e#456\u003c/a\u003e remove git config from tests (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/456\"\u003e#456\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.3.0...v21.3.1\"\u003e21.3.1\u003c/a\u003e (2026-02-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/96e571a4c2f1eaab1932ba40eb495cc6b9798c9b\"\u003e\u003ccode\u003e96e571a\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/439\"\u003e#439\u003c/a\u003e ensure that resolved git ref matches expected sha (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/439\"\u003e#439\u003c/a\u003e) (\u003ca href=\"https://github.com/klassiker\"\u003e\u003ccode\u003e@​klassiker\u003c/code\u003e\u003c/a\u003e, pacotedev)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/91847c43637a5308119076371300be497cfcff74\"\u003e\u003ccode\u003e91847c4\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/447\"\u003e#447\u003c/a\u003e fix test for ssri ignoring invalid hashes (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/447\"\u003e#447\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.2.0...v21.3.0\"\u003e21.3.0\u003c/a\u003e (2026-02-09)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/8f5091d0a7fc356756707241f8b52dc8a036c34e\"\u003e\u003ccode\u003e8f5091d\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/445\"\u003e#445\u003c/a\u003e add support for git-256 sha lengths (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/445\"\u003e#445\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.1.0...v21.2.0\"\u003e21.2.0\u003c/a\u003e (2026-02-06)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/db21624fd9ee8fe3ccea5f671f2e39c7f68546eb\"\u003e\u003ccode\u003edb21624\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/442\"\u003e#442\u003c/a\u003e implement gitSubdir according to npa spec (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/442\"\u003e#442\u003c/a\u003e) (\u003ca href=\"https://github.com/Kakadus\"\u003e\u003ccode\u003e@​Kakadus\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/c2a4217fc8b49d58c4bafd41ec1127105a37ae05\"\u003e\u003ccode\u003ec2a4217\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/443\"\u003e#443\u003c/a\u003e add allowRemote, allowFile, allowDirectory (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/443\"\u003e#443\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.0.4...v21.1.0\"\u003e21.1.0\u003c/a\u003e (2026-01-28)\u003c/h2\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/258e5fde5576b5dfebc0d5f9a098b15afdd70875\"\u003e\u003ccode\u003e258e5fd\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/440\"\u003e#440\u003c/a\u003e add allowGit option (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/440\"\u003e#440\u003c/a\u003e) (\u003ca href=\"https://github.com/wraithgar\"\u003e\u003ccode\u003e@​wraithgar\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/npm/pacote/compare/v21.0.3...v21.0.4\"\u003e21.0.4\u003c/a\u003e (2025-11-13)\u003c/h2\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/edbcc02933255ad72ab1d9f5adc070692e402c9b\"\u003e\u003ccode\u003eedbcc02\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/436\"\u003e#436\u003c/a\u003e \u003ccode\u003eproc-log@6.0.0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/8dc1f2294ffc8843e65fe582dde49756581580e1\"\u003e\u003ccode\u003e8dc1f22\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/npm/pacote/pull/436\"\u003e#436\u003c/a\u003e \u003ccode\u003e@npmcli/installed-package-contents@4.0.0\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/d36266f5e4001cffdf70de242b6e825cef06f0c1\"\u003e\u003ccode\u003ed36266f\u003c/code\u003e\u003c/a\u003e chore: release 21.5.1 (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/499\"\u003e#499\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/790a24b4201fa1f844645f99601d478621f079e4\"\u003e\u003ccode\u003e790a24b\u003c/code\u003e\u003c/a\u003e chore: template-oss-apply (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/500\"\u003e#500\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/09cb304ca4f85ef85b2acdb2108f3e839ad9556e\"\u003e\u003ccode\u003e09cb304\u003c/code\u003e\u003c/a\u003e chore: template-oss-apply\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/bea9f847decbcd1a712481643b15d92ddd8f8087\"\u003e\u003ccode\u003ebea9f84\u003c/code\u003e\u003c/a\u003e chore: \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e\u003ca href=\"https://github.com/5\"\u003e\u003ccode\u003e@​5\u003c/code\u003e\u003c/a\u003e.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/627a7dc1a214d857472a13b48e42559c75288c9e\"\u003e\u003ccode\u003e627a7dc\u003c/code\u003e\u003c/a\u003e fix: avoid ReDoS in addGitSha committish stripping\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/6c2555a38a2dc0ab2fb98c4f934d714be5f3ba49\"\u003e\u003ccode\u003e6c2555a\u003c/code\u003e\u003c/a\u003e chore: release 21.5.0 (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/470\"\u003e#470\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/586a55dc0cb9e44740be28ffd1fb227cf8111d2a\"\u003e\u003ccode\u003e586a55d\u003c/code\u003e\u003c/a\u003e chore: template-oss-apply for new macos images (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/471\"\u003e#471\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/d912f17785cd547879c59342b1c2104f71a5a0e6\"\u003e\u003ccode\u003ed912f17\u003c/code\u003e\u003c/a\u003e feat: expose fetched attestation bundles on manifest (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/457\"\u003e#457\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/b741e8b1a401c46841b7c37241e8ec85ad420841\"\u003e\u003ccode\u003eb741e8b\u003c/code\u003e\u003c/a\u003e chore: bump \u003ccode\u003e@​npmcli/template-oss\u003c/code\u003e from 4.28.0 to 4.29.0 (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/468\"\u003e#468\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/npm/pacote/commit/d1cc5c8bf2ac35c52fc606f96d47129f042739e6\"\u003e\u003ccode\u003ed1cc5c8\u003c/code\u003e\u003c/a\u003e chore: template-oss-apply for release branches (\u003ca href=\"https://redirect.github.com/npm/pacote/issues/460\"\u003e#460\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/npm/pacote/compare/v21.0.0...v21.5.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for pacote since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@sigstore/core` from 2.0.0 to 3.2.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/sigstore/sigstore-js/releases\"\u003e@​sigstore/core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.2.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eb5aa4f1: Apply UTF-8 encoding to payload type during PAE calculation\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.2.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e8f736ef: Update the \u003ccode\u003ecreatePublicKey\u003c/code\u003e function to support base64-encoded keys\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.0\u003c/h2\u003e\n\u003ch3\u003eMajor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e383e200: Drop support for node 18\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c1dc7d4778a450787fc72b083f2490ad02b714c6\"\u003e\u003ccode\u003ec1dc7d4\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1607\"\u003e#1607\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/f074710a91ea9260a9ac2142345634579843a3cd\"\u003e\u003ccode\u003ef074710\u003c/code\u003e\u003c/a\u003e reject integratedTime w/o inclusionPromise (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1659\"\u003e#1659\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/7845532f9d17f6f765363dbee82b01bd159fb52b\"\u003e\u003ccode\u003e7845532\u003c/code\u003e\u003c/a\u003e OID certificate extension verification (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1658\"\u003e#1658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/b5aa4f1f8d2db0a9dfa6430fb114d9c2f1c304f7\"\u003e\u003ccode\u003eb5aa4f1\u003c/code\u003e\u003c/a\u003e proper utf-8 encoding in DSSE PAE (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1657\"\u003e#1657\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c7a34e0e9514f4573f8daf980c0987a4120a7183\"\u003e\u003ccode\u003ec7a34e0\u003c/code\u003e\u003c/a\u003e clarify cert ID matching (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1656\"\u003e#1656\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/9858bd7fc535ff01755c8dd5842ef7171b0fafeb\"\u003e\u003ccode\u003e9858bd7\u003c/code\u003e\u003c/a\u003e Upgrade TypeScript to 6.x (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1655\"\u003e#1655\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/8cef20d0069abd3ff03f2afb9ca320a76ddf6d4b\"\u003e\u003ccode\u003e8cef20d\u003c/code\u003e\u003c/a\u003e bump qs from 6.15.1 to 6.15.2 (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1654\"\u003e#1654\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/aca341b56aa561af4d74ad07fda4acd12c417beb\"\u003e\u003ccode\u003eaca341b\u003c/code\u003e\u003c/a\u003e bump \u003ccode\u003e@​sigstore/mock\u003c/code\u003e deps (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1653\"\u003e#1653\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/0855acac119ae9f9dc21413356ce36eade2a51f8\"\u003e\u003ccode\u003e0855aca\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1652\"\u003e#1652\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/44a374d63107b25d11f880a8427e2e27d45965d8\"\u003e\u003ccode\u003e44a374d\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1650\"\u003e#1650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/sigstore/sigstore-js/compare/@sigstore/core@2.0.0...@sigstore/core@3.2.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​sigstore/core\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `brace-expansion` from 2.0.2 to 5.0.12\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/juliangruber/brace-expansion/releases\"\u003ebrace-expansion's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efmt  5a5cc17\u003c/li\u003e\n\u003cli\u003eFix potential ReDoS Vulnerability or Inefficient Regular Expression (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/65\"\u003e#65\u003c/a\u003e)  0b6a978\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v4.0.0...v4.0.1\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v4.0.0...v4.0.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev4.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: use string replaces instead of splits (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/64\"\u003e#64\u003c/a\u003e)  278132b\u003c/li\u003e\n\u003cli\u003efmt  dd72a59\u003c/li\u003e\n\u003cli\u003eadd \u003ccode\u003etea.yaml\u003c/code\u003e  70e4c1b\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v3.0.0...v4.0.0\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v3.0.0...v4.0.0\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eAs a precaution to not risk breaking anything with 278132b, this is a new semver major release\u003c/p\u003e\n\u003ch2\u003ev3.0.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003epkg: publish on tag 3.x  3059c07\u003c/li\u003e\n\u003cli\u003efmt  8229e6f\u003c/li\u003e\n\u003cli\u003eFix potential ReDoS Vulnerability or Inefficient Regular Expression (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/65\"\u003e#65\u003c/a\u003e)  15f9b3c\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v3.0.0...v3.0.1\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v3.0.0...v3.0.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev3.0.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSwitch to ES Modules and balanced-match 3.0.0 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/62\"\u003e#62\u003c/a\u003e)  c0360e8\u003c/li\u003e\n\u003cli\u003eadded jsdoc (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/55\"\u003e#55\u003c/a\u003e)  68c0e37\u003c/li\u003e\n\u003cli\u003enode 16 is EOL  9e781e9\u003c/li\u003e\n\u003cli\u003eadd standard  3494c4d\u003c/li\u003e\n\u003cli\u003euse const and let (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/57\"\u003e#57\u003c/a\u003e)  dd5a4cb\u003c/li\u003e\n\u003cli\u003edocs  6dad209\u003c/li\u003e\n\u003cli\u003eremove \u003ccode\u003etest\u003c/code\u003e  e3dd8ae\u003c/li\u003e\n\u003cli\u003eci: update node versions  d23ede9\u003c/li\u003e\n\u003cli\u003edocs: add \u003ca href=\"https://github.com/lanodan\"\u003e\u003ccode\u003e@​lanodan\u003c/code\u003e\u003c/a\u003e to contributors  1eb3fa4\u003c/li\u003e\n\u003cli\u003edocs  1e7c9cd\u003c/li\u003e\n\u003cli\u003eswitch from tape to test module (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/60\"\u003e#60\u003c/a\u003e)  2520537\u003c/li\u003e\n\u003cli\u003eBump minimist from 1.2.5 to 1.2.6 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/59\"\u003e#59\u003c/a\u003e)  61a94f1\u003c/li\u003e\n\u003cli\u003eBump path-parse from 1.0.6 to 1.0.7 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/51\"\u003e#51\u003c/a\u003e)  dc741cf\u003c/li\u003e\n\u003cli\u003edocs: add back ci badge  8ee5626\u003c/li\u003e\n\u003cli\u003eAdd github actions, remove travis. Closes \u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/52\"\u003e#52\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/53\"\u003e#53\u003c/a\u003e)  5c8756a\u003c/li\u003e\n\u003cli\u003eCI: Drop unused sudo: false Travis directive (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/50\"\u003e#50\u003c/a\u003e)  05978a7\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.0.1...v3.0.0\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v2.0.1...v3.0.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBackport v5.0.6 change to v2 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/109\"\u003e#109\u003c/a\u003e)  c3a817c\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/f3410159d768f56c9d9f4511d3e1b46425fc1099\"\u003e\u003ccode\u003ef341015\u003c/code\u003e\u003c/a\u003e 5.0.12\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/33a5ef17b8d800bbfa8c52b14c39043b6aac1a96\"\u003e\u003ccode\u003e33a5ef1\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/82479277b90f2f86263e946f9ff89689b3734568\"\u003e\u003ccode\u003e8247927\u003c/code\u003e\u003c/a\u003e 5.0.11\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/935d78f32f335b2ff76578e5c5e877d31ae9888c\"\u003e\u003ccode\u003e935d78f\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/df7682f386cdf2d7fef6067bc78ed70d824e1f3f\"\u003e\u003ccode\u003edf7682f\u003c/code\u003e\u003c/a\u003e 5.0.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1ade9de71f3a8719c82c61a7977121067bb55b02\"\u003e\u003ccode\u003e1ade9de\u003c/code\u003e\u003c/a\u003e npm run format\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/6735c94873ca570bcdd6a0690033bdd3126379d3\"\u003e\u003ccode\u003e6735c94\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/4e7046543469d31e2b324b1bf14d8606d74f7f18\"\u003e\u003ccode\u003e4e70465\u003c/code\u003e\u003c/a\u003e chore: ensure prettier formatting (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/154\"\u003e#154\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/fd7a5e34cfcd9a9df6e0ee17817807104392ecff\"\u003e\u003ccode\u003efd7a5e3\u003c/code\u003e\u003c/a\u003e Bump ip-address from 10.2.0 to 10.4.0 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/152\"\u003e#152\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1790143e9aa05279b087b94104c03d3cb775e2e4\"\u003e\u003ccode\u003e1790143\u003c/code\u003e\u003c/a\u003e Bump uuid and \u003ccode\u003e@​tapjs/processinfo\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/120\"\u003e#120\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.0.2...v5.0.12\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `tar` from 6.2.1 to 7.5.22\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-tar/blob/main/CHANGELOG.md\"\u003etar's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003ch2\u003e7.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003ezstd\u003c/code\u003e compression support.\u003c/li\u003e\n\u003cli\u003eConsistent TOCTOU behavior in sync t.list\u003c/li\u003e\n\u003cli\u003eOnly read from ustar block if not specified in Pax\u003c/li\u003e\n\u003cli\u003eFix sync tar.list when file size reduces while reading\u003c/li\u003e\n\u003cli\u003eSanitize absolute linkpaths properly\u003c/li\u003e\n\u003cli\u003ePrevent writing hardlink entries to the archive ahead of their\nfile target\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDeprecate \u003ccode\u003eonentry\u003c/code\u003e in favor of \u003ccode\u003eonReadEntry\u003c/code\u003e for clarity.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eonWriteEntry\u003c/code\u003e option\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDRY the command definitions into a single \u003ccode\u003emakeCommand\u003c/code\u003e method,\nand update the type signatures to more appropriately infer the\nreturn type from the options and arguments provided.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate minipass to v7.1.0\u003c/li\u003e\n\u003cli\u003eUpdate the type definitions of \u003ccode\u003ewrite()\u003c/code\u003e and \u003ccode\u003eend()\u003c/code\u003e methods on\n\u003ccode\u003eUnpack\u003c/code\u003e and \u003ccode\u003eParser\u003c/code\u003e classes to be compatible with the\nNodeJS.WritableStream type in the latest versions of\n\u003ccode\u003e@types/node\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node \u0026lt;18\u003c/li\u003e\n\u003cli\u003eRewrite in TypeScript, provide ESM and CommonJS hybrid\ninterface\u003c/li\u003e\n\u003cli\u003eAdd tree-shake friendly exports, like \u003ccode\u003eimport('tar/create')\u003c/code\u003e\nand \u003ccode\u003eimport('tar/read-entry')\u003c/code\u003e to get individual functions or\nclasses.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003echmod\u003c/code\u003e option that defaults to false, and deprecate\n\u003ccode\u003enoChmod\u003c/code\u003e. That is, reverse the default option regarding\nexplicitly setting file system modes to match tar entry\nsettings.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eprocessUmask\u003c/code\u003e option to avoid having to call\n\u003ccode\u003eprocess.umask()\u003c/code\u003e when \u003ccode\u003echmod: true\u003c/code\u003e (or \u003ccode\u003enoChmod: false\u003c/code\u003e) is\nset.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/2a22bfc5d3a432a606d9da0e2d87ba634aa3b1cb\"\u003e\u003ccode\u003e2a22bfc\u003c/code\u003e\u003c/a\u003e 7.5.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/df1cd8dc09cded47b00c4129698824b3986432ac\"\u003e\u003ccode\u003edf1cd8d\u003c/code\u003e\u003c/a\u003e Allow transform to be falsey\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/0cd9cc3c5814446d3c0cbea6a31d6c00c2c8a9d9\"\u003e\u003ccode\u003e0cd9cc3\u003c/code\u003e\u003c/a\u003e 7.5.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/631ae59121bf8fc8a22bbae35f074cb9b789cd4a\"\u003e\u003ccode\u003e631ae59\u003c/code\u003e\u003c/a\u003e list: prevent unbounded recursion\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/ebbb72094159d003f428dcd1cb28255d37ea4873\"\u003e\u003ccode\u003eebbb720\u003c/code\u003e\u003c/a\u003e 7.5.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/2f271963a7fe5a5960aee5dd6adf9647a1e266fd\"\u003e\u003ccode\u003e2f27196\u003c/code\u003e\u003c/a\u003e fix: fully disable and dispose of unzip when aborting parser\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/be440da64e9fe80c68c755d8147328ea1cc2a9ad\"\u003e\u003ccode\u003ebe440da\u003c/code\u003e\u003c/a\u003e 7.5.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/2812e9338665659b183aa7226518c307044957d3\"\u003e\u003ccode\u003e2812e93\u003c/code\u003e\u003c/a\u003e add maxDecompressionRatio guard against explosive decompression\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/9ecd4d2956fd915507eca018ddc1fea727fbba93\"\u003e\u003ccode\u003e9ecd4d2\u003c/code\u003e\u003c/a\u003e 7.5.18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-tar/commit/9e78bf058b2c22dd4d52e00d8922d5c06fc2f7b5\"\u003e\u003ccode\u003e9e78bf0\u003c/code\u003e\u003c/a\u003e refuse to let header size be less than 0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-tar/compare/v6.2.1...v7.5.22\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~isaacs\"\u003eisaacs\u003c/a\u003e, a new releaser for tar since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `glob` from 10.4.5 to 13.0.6\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/node-glob/blob/main/changelog.md\"\u003eglob's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003echangeglob\u003c/h1\u003e\n\u003ch2\u003e13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMove the CLI program out to a separate package, \u003ccode\u003eglob-bin\u003c/code\u003e.\nInstall that if you'd like to continue using glob from the\ncommand line.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove the unsafe \u003ccode\u003e--shell\u003c/code\u003e option. The \u003ccode\u003e--shell\u003c/code\u003e option is now\nONLY supported on known shells where the behavior can be\nimplemented safely.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.1\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/isaacs/node-glob/security/advisories/GHSA-5j98-mcp5-4vw2\"\u003eGHSA-5j98-mcp5-4vw2\u003c/a\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--shell\u003c/code\u003e option for the command line, with a warning\nthat this is unsafe. (It will be removed in v12.)\u003c/li\u003e\n\u003cli\u003eAdd the \u003ccode\u003e--cmd-arg\u003c/code\u003e/\u003ccode\u003e-g\u003c/code\u003e as a way to \u003cem\u003esafely\u003c/em\u003e add positional\narguments to the command provided to the CLI tool.\u003c/li\u003e\n\u003cli\u003eDetect commands with space or quote characters on known shells,\nand pass positional arguments to them safely, avoiding\n\u003ccode\u003eshell:true\u003c/code\u003e execution.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDrop support for node before v20\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eincludeChildMatches: false\u003c/code\u003e option\u003c/li\u003e\n\u003cli\u003eExport the \u003ccode\u003eIgnore\u003c/code\u003e class\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e--default -p\u003c/code\u003e flag to provide a default pattern\u003c/li\u003e\n\u003cli\u003eexclude symbolic links to directories when \u003ccode\u003efollow\u003c/code\u003e and \u003ccode\u003enodir\u003c/code\u003e\nare both set\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd glob cli\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReturn \u003ccode\u003e'.'\u003c/code\u003e instead of the empty string \u003ccode\u003e''\u003c/code\u003e when the current\nworking directory is returned as a match.\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eposix: true\u003c/code\u003e option to return \u003ccode\u003e/\u003c/code\u003e delimited paths, even on\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/e80cb38ae60d6cbff9e75f39032a994858994d35\"\u003e\u003ccode\u003ee80cb38\u003c/code\u003e\u003c/a\u003e 13.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/9cdbbfff75c64fb158c8842d4d0eb3e908676a41\"\u003e\u003ccode\u003e9cdbbff\u003c/code\u003e\u003c/a\u003e revert tsgo, not ready for test coverage correctness yet\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/89c99ba8e276438b8e31ce878b63186e2cd375b4\"\u003e\u003ccode\u003e89c99ba\u003c/code\u003e\u003c/a\u003e use tsgo compiler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/b7275d54f294174607f544acf07cc7ec526b7878\"\u003e\u003ccode\u003eb7275d5\u003c/code\u003e\u003c/a\u003e update deps, expand engines to include node 18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/942e360a669e0c378c0abd261e7d329ca2cee661\"\u003e\u003ccode\u003e942e360\u003c/code\u003e\u003c/a\u003e update workflows, pull taprc out of package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/4a0d53c7531f3f0df97f9e4d26c78489e7f6d7ef\"\u003e\u003ccode\u003e4a0d53c\u003c/code\u003e\u003c/a\u003e update tap for mockImport bugfix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/ef94ad2696c12129628208cf4e38575e7240c1c4\"\u003e\u003ccode\u003eef94ad2\u003c/code\u003e\u003c/a\u003e update tap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/180c2d43cb135f134c0c5446408dc107c79a5a9b\"\u003e\u003ccode\u003e180c2d4\u003c/code\u003e\u003c/a\u003e update docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/37993c86faddcb780458b2d7ae3c2ead7a84bf31\"\u003e\u003ccode\u003e37993c8\u003c/code\u003e\u003c/a\u003e remove stray console.error in test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/03ae4c244cac6331817158b0bc12effd30deeb43\"\u003e\u003ccode\u003e03ae4c2\u003c/code\u003e\u003c/a\u003e 13.0.5\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.4.5...v13.0.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~isaacs\"\u003eisaacs\u003c/a\u003e, a new releaser for glob since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ip-address` from 9.0.5 to 10.7.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/beaugunderson/ip-address/releases\"\u003eip-address's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev10.7.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump js-yaml and brace-expansion in the lockfile by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/226\"\u003ebeaugunderson/ip-address#226\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.7.0...v10.7.1\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.7.0...v10.7.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.7.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd offset() and nextNetwork(), accept prefix-length ip6.arpa names, correct the IPv6 end-address docs by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/225\"\u003ebeaugunderson/ip-address#225\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.6.0...v10.7.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.6.0...v10.7.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.6.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd isGlobal() and pin the classifiers to the IANA special-purpose registries by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/224\"\u003ebeaugunderson/ip-address#224\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.5.1...v10.6.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.5.1...v10.6.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.5.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.5.0...v10.5.1\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.5.0...v10.5.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.5.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eHonor the fromURL graceful-failure contract for non-IPv6 hosts by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/218\"\u003ebeaugunderson/ip-address#218\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCorrect the documentation where it disagreed with the library by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/219\"\u003ebeaugunderson/ip-address#219\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.4.0...v10.5.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.4.0...v10.5.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.4.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd GitHub Actions CI by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/213\"\u003ebeaugunderson/ip-address#213\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eKeep the package loadable on node 12, and enforce it by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/216\"\u003ebeaugunderson/ip-address#216\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eValidate the byte arrays Address6 is given by \u003ca href=\"https://github.com/beaugunderson\"\u003e\u003ccode\u003e@​beaugunderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/pull/217\"\u003ebeaugunderson/ip-address#217\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.3.1...v10.4.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.3.1...v10.4.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.3.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.3.0...v10.3.1\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.3.0...v10.3.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.3.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.2.2...v10.3.0\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.2.2...v10.3.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev10.2.2\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v10.2.1...v10.2.2\"\u003ehttps://github.com/beaugunderson/ip-address/compare/v10.2.1...v10.2.2\u003c/a\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/f0c25dfd4fbf7886e45116ba0940207f81401e28\"\u003e\u003ccode\u003ef0c25df\u003c/code\u003e\u003c/a\u003e 10.7.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/8b34a21e0839b37c094066816fb2c2c48a2adcf5\"\u003e\u003ccode\u003e8b34a21\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/13b615554f129bdcdbd10f39b5918fef4bcf96c5\"\u003e\u003ccode\u003e13b6155\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/469ead1231b4cc059f2150c626e1e0c2895c0134\"\u003e\u003ccode\u003e469ead1\u003c/code\u003e\u003c/a\u003e Reject an address longer than the family allows before parsing it\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/1343629d57fea413644a5c9d41ff1e59619f3f28\"\u003e\u003ccode\u003e1343629\u003c/code\u003e\u003c/a\u003e Report an address of the other family as not contained\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/4c2184a0cbd8f913e15a64a2063afc9eef410bd2\"\u003e\u003ccode\u003e4c2184a\u003c/code\u003e\u003c/a\u003e Bump js-yaml and brace-expansion in the lockfile (\u003ca href=\"https://redirect.github.com/beaugunderson/ip-address/issues/226\"\u003e#226\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/2b7cab51c7aec0cb56f820f192a38901614e5a9f\"\u003e\u003ccode\u003e2b7cab5\u003c/code\u003e\u003c/a\u003e 10.7.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/87fae235d95ab0ce18665ae5690f98f65e882d6a\"\u003e\u003ccode\u003e87fae23\u003c/code\u003e\u003c/a\u003e Add offset() and nextNetwork(), accept prefix-length ip6.arpa names, correct ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/42c1f8b37aa0069f7944b097437a9b4afd16e064\"\u003e\u003ccode\u003e42c1f8b\u003c/code\u003e\u003c/a\u003e 10.6.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beaugunderson/ip-address/commit/fb12583ab920ef6fd199f3378344a07f8eb4dca6\"\u003e\u003ccode\u003efb12583\u003c/code\u003e\u003c/a\u003e Add isGlobal() and pin the classifiers to the IANA special-purpose registries...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/beaugunderson/ip-address/compare/v9.0.5...v10.7.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for ip-address since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `minimatch` from 9.0.5 to 10.2.6\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/isaacs/minimatch/blob/main/changelog.md\"\u003eminimatch's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003echange log\u003c/h1\u003e\n\u003ch2\u003e10.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003ebraceExpandMax\u003c/code\u003e option\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003emagicalBraces\u003c/code\u003e option for \u003ccode\u003eescape\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003emakeRe\u003c/code\u003e when \u003ccode\u003epartial: true\u003c/code\u003e is set.\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003emakeRe\u003c/code\u003e when pattern ends in a final \u003ccode\u003e**\u003c/code\u003e path part.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRequire node 20 or 22 and higher\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e9.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eNo default export, only named exports.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRecursive descent parser for extglob, allowing correct support\nfor arbitrarily nested extglob expressions\u003c/li\u003e\n\u003cli\u003eBump required Node.js version\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eescape()\u003c/code\u003e method\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eunescape()\u003c/code\u003e method\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eMinimatch.hasMagic()\u003c/code\u003e method\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd support for posix character classes in a unicode-aware way.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003ewindowsNoMagicRoot\u003c/code\u003e option\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e7.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eoptimizationLevel\u003c/code\u003e configuration option, and revert the\ndefault back to the 6.2 style minimal optimizations, making the\nadvanced transforms introduced in 7.0 opt-in. Also, process\nprovided file paths in the same way in optimizationLevel:2\nmode, so \u003cem\u003emost\u003c/em\u003e things that matched with optimizationLevel 1 or\n0 \u003cem\u003eshould\u003c/em\u003e match with level 2 as well. However, level 1 is the\ndefault, out of an abundance of caution.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/ded1bbd01beca62a5978bc1650ed0a1ccf9039d5\"\u003e\u003ccode\u003eded1bbd\u003c/code\u003e\u003c/a\u003e 10.2.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/0215dfef073cb3ba933cc95911e6a31418f799f8\"\u003e\u003ccode\u003e0215dfe\u003c/code\u003e\u003c/a\u003e update deps and lint\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/10968eae898cac1b6c5feedada0de793b1fed0bf\"\u003e\u003ccode\u003e10968ea\u003c/code\u003e\u003c/a\u003e improve test for .. eating drive letters\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/693c82377d0948401be4c6d3220c9a74132ab112\"\u003e\u003ccode\u003e693c823\u003c/code\u003e\u003c/a\u003e 10.2.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/7953af1fac53267c05e362f036b70de898318faa\"\u003e\u003ccode\u003e7953af1\u003c/code\u003e\u003c/a\u003e do not allow .. to consume drive letter on Windows\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/1caf91893b67586255c68e2e513b14ac66785a24\"\u003e\u003ccode\u003e1caf918\u003c/code\u003e\u003c/a\u003e lint and format\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/7783ed6670442acb4d455b9b164a1b2a33507a45\"\u003e\u003ccode\u003e7783ed6\u003c/code\u003e\u003c/a\u003e ignore docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/6d9b356cd59372de00e1d5f3b8907a3350b9b8e5\"\u003e\u003ccode\u003e6d9b356\u003c/code\u003e\u003c/a\u003e update deps etc\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/c36addb94e33f14254b9ca9017e63ae9c9d80d1d\"\u003e\u003ccode\u003ec36addb\u003c/code\u003e\u003c/a\u003e 10.2.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/26b90027d5ad0c383b5253a4e45d6dc7da282db4\"\u003e\u003ccode\u003e26b9002\u003c/code\u003e\u003c/a\u003e docs: add warning about ReDoS\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/minimatch/compare/v9.0.5...v10.2.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `picomatch` from 4.0.2 to 4.0.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/releases\"\u003epicomatch's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.0.7\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: handle terminal globstars in parenthesized patterns by \u003ca href=\"https://github.com/mrmlnc\"\u003e\u003ccode\u003e@​mrmlnc\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/198\"\u003emicromatch/picomatch#198\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/4.0.6...4.0.7\"\u003ehttps://github.com/micromatch/picomatch/compare/4.0.6...4.0.7\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e4.0.6\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: scan full pattern when tokens are requested by \u003ca href=\"https://github.com/mrmlnc\"\u003e\u003ccode\u003e@​mrmlnc\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/197\"\u003emicromatch/picomatch#197\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: return complete pattern parts from scan by \u003ca href=\"https://github.com/mrmlnc\"\u003e\u003ccode\u003e@​mrmlnc\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/199\"\u003emicromatch/picomatch#199\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/4.0.5...4.0.6\"\u003ehttps://github.com/micromatch/picomatch/compare/4.0.5...4.0.6\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e4.0.5\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: preserve all branches when rewriting risky repeated extglobs by \u003ca href=\"https://github.com/MerlijnW70\"\u003e\u003ccode\u003e@​MerlijnW70\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/182\"\u003emicromatch/picomatch#182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: honor the windows option when matching basenames by \u003ca href=\"https://github.com/MerlijnW70\"\u003e\u003ccode\u003e@​MerlijnW70\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/183\"\u003emicromatch/picomatch#183\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/MerlijnW70\"\u003e\u003ccode\u003e@​MerlijnW70\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/182\"\u003emicromatch/picomatch#182\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/4.0.4...4.0.5\"\u003ehttps://github.com/micromatch/picomatch/compare/4.0.4...4.0.5\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e4.0.4\u003c/h2\u003e\n\u003cp\u003eThis is a security release fixing several security relevant issues.\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/4.0.3...4.0.4\"\u003ehttps://github.com/micromatch/picomatch/compare/4.0.3...4.0.4\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e4.0.3\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: exception when glob pattern contains \u003ccode\u003econstructor\u003c/code\u003e by \u003ca href=\"https://github.com/Jason3S\"\u003e\u003ccode\u003e@​Jason3S\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003emicromatch/picomatch#144\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Jason3S\"\u003e\u003ccode\u003e@​Jason3S\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003emicromatch/picomatch#144\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/4.0.2...4.0.3\"\u003ehttps://github.com/micromatch/picomatch/compare/4.0.2...4.0.3\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/blob/master/CHANGELOG.md\"\u003epicomatch's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.0.7 (2026-08-24)\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFixed terminal globstars in parenthesized patterns (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/142\"\u003e#142\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/e279bd7\"\u003ee279bd7\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.6 (2026-08-24)\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003escan()\u003c/code\u003e now scans the full pattern when tokens are requested, instead of merging the remaining path segments into the final token (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/62\"\u003e#62\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/5f5819d\"\u003e5f5819d\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003escan()\u003c/code\u003e now returns complete pattern parts, including leading and trailing empty segments, and handles nested and escaped parentheses correctly (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/58\"\u003e#58\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/f201165\"\u003ef201165\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.5 (2026-07-02)\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ePreserved every branch when safely rewriting repeated extglobs (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/182\"\u003e#182\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/6289307\"\u003e6289307\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eHonored the \u003ccode\u003ewindows\u003c/code\u003e option when matching basenames (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/183\"\u003e#183\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/ab8bc4d\"\u003eab8bc4d\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.4 (2026-03-23)\u003c/h2\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ePrevented regular expression denial of service (ReDoS) from crafted repeated or nested extglob quantifiers by safely rewriting or treating risky patterns as literals. The new \u003ccode\u003emaxExtglobRecursion\u003c/code\u003e option defaults to \u003ccode\u003e0\u003c/code\u003e; positive numeric values allow limited nesting, while \u003ccode\u003efalse\u003c/code\u003e disables the safeguard (\u003ca href=\"https://github.com/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/5eceecd\"\u003e5eceecd\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003ePrevented inherited object properties from being interpreted as POSIX character classes (\u003ca href=\"https://github.com/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/4516eb5\"\u003e4516eb5\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.3 (2025-07-15)\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAvoided an exception when a glob pattern contains \u003ccode\u003econstructor\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003e#144\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/a9e2dd2\"\u003ea9e2dd2\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/6bb40679c218cefba5d4e9662408c5fdf699a8bb\"\u003e\u003ccode\u003e6bb4067\u003c/code\u003e\u003c/a\u003e 4.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/fdfb1559e4ef761f95c3009c1fd7afceb8830f55\"\u003e\u003ccode\u003efdfb155\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/198\"\u003e#198\u003c/a\u003e from micromatch/issue-142\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/38c6b7aefe50af10cfa978f362120d295d39cfa2\"\u003e\u003ccode\u003e38c6b7a\u003c/code\u003e\u003c/a\u003e 4.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/ada9d3fe9eb5a606bb4f6d87bc5cd7ac87fe63a4\"\u003e\u003ccode\u003eada9d3f\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/199\"\u003e#199\u003c/a\u003e from micromatch/issue-58\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/9b74f6fc70ed828ea4ef7106833a31428b8d7329\"\u003e\u003ccode\u003e9b74f6f\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/197\"\u003e#197\u003c/a\u003e from micromatch/issue-62\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/f2011653e8eaa13bae6dffed7e7016ea8e123485\"\u003e\u003ccode\u003ef201165\u003c/code\u003e\u003c/a\u003e fix: return complete pattern parts from scan\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/e279bd7f34c4f8b5f9d0490cf7810a1f0c2de178\"\u003e\u003ccode\u003ee279bd7\u003c/code\u003e\u003c/a\u003e fix: handle terminal globstars in parenthesized patterns\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/5f5819dd4c0572c87df9a8011dffa65df5b6879f\"\u003e\u003ccode\u003e5f5819d\u003c/code\u003e\u003c/a\u003e fix: scan full pattern when tokens are requested\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/4f41a8edade7a5ab19832f7b40ecce46b288767f\"\u003e\u003ccode\u003e4f41a8e\u003c/code\u003e\u003c/a\u003e 4.0.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/02cfc1bf912c79ea75ef1fe7da2ce4efade39903\"\u003e\u003ccode\u003e02cfc1b\u003c/code\u003e\u003c/a\u003e Update .verb.md and run verb to generate README documentation\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/micromatch/picomatch/compare/4.0.2...4.0.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `sigstore` from 3.1.0 to 4.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/sigstore/sigstore-js/releases\"\u003esigstore's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003esigstore@4.1.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e7845532: Verification of OID certificate extensions\u003c/li\u003e\n\u003cli\u003ef074710: Require inclusion promise in Rekor entry when used as timestamp source\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [b5aa4f1]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [7845532]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f074710]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.2.1\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/verify\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.1\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esigstore@4.1.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eeba6a52: \u003ccode\u003everify(bundle[, payload][, options])\u003c/code\u003e now returns a \u003ccode\u003eSigner\u003c/code\u003e object containing the public key and identity information from the verification.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [cee51c0]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [2042aad]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [018974e]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [dea916f]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [61a4f9e]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [5ffadc0]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [5ffadc0]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [1663b3e]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/tuf\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.1\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/verify\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/sign\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.1.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.1.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esigstore@4.0.0\u003c/h2\u003e\n\u003ch3\u003eMajor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e383e200: Drop support for node 18\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [40395f5]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [383e200]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [383e200]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [383e200]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/tuf\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/sign\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/bundle\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/verify\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​sigstore/core\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c1dc7d4778a450787fc72b083f2490ad02b714c6\"\u003e\u003ccode\u003ec1dc7d4\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1607\"\u003e#1607\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/f074710a91ea9260a9ac2142345634579843a3cd\"\u003e\u003ccode\u003ef074710\u003c/code\u003e\u003c/a\u003e reject integratedTime w/o inclusionPromise (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1659\"\u003e#1659\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/7845532f9d17f6f765363dbee82b01bd159fb52b\"\u003e\u003ccode\u003e7845532\u003c/code\u003e\u003c/a\u003e OID certificate extension verification (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1658\"\u003e#1658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/b5aa4f1f8d2db0a9dfa6430fb114d9c2f1c304f7\"\u003e\u003ccode\u003eb5aa4f1\u003c/code\u003e\u003c/a\u003e proper utf-8 encoding in DSSE PAE (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1657\"\u003e#1657\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/c7a34e0e9514f4573f8daf980c0987a4120a7183\"\u003e\u003ccode\u003ec7a34e0\u003c/code\u003e\u003c/a\u003e clarify cert ID matching (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1656\"\u003e#1656\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/9858bd7fc535ff01755c8dd5842ef7171b0fafeb\"\u003e\u003ccode\u003e9858bd7\u003c/code\u003e\u003c/a\u003e Upgrade TypeScript to 6.x (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1655\"\u003e#1655\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/8cef20d0069abd3ff03f2afb9ca320a76ddf6d4b\"\u003e\u003ccode\u003e8cef20d\u003c/code\u003e\u003c/a\u003e bump qs from 6.15.1 to 6.15.2 (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1654\"\u003e#1654\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/aca341b56aa561af4d74ad07fda4acd12c417beb\"\u003e\u003ccode\u003eaca341b\u003c/code\u003e\u003c/a\u003e bump \u003ccode\u003e@​sigstore/mock\u003c/code\u003e deps (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1653\"\u003e#1653\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/0855acac119ae9f9dc21413356ce36eade2a51f8\"\u003e\u003ccode\u003e0855aca\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1652\"\u003e#1652\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sigstore/sigstore-js/commit/44a374d63107b25d11f880a8427e2e27d45965d8\"\u003e\u003ccode\u003e44a374d\u003c/code\u003e\u003c/a\u003e Pin all \u003ccode\u003e@​swc/core\u003c/code\u003e platform binaries as optionalDependencies (\u003ca href=\"https://redirect.github.com/sigstore/sigstore-js/issues/1650\"\u003e#1650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/sigstore/sigstore-js/compare/sigstore@3.1.0...sigstore@4.1.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for sigstore since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/alphaleadership/betternpm/network/alerts).\n\n\u003c/details\u003e\n\n\u003c!-- This is an auto-generated description by cubic. --\u003e\n---\n## Summary by cubic\nUpdates 9 packages in the npm_and_yarn group, mostly transitive dependencies of pacote and sigstore, and bumps the project version to 1.0.1. The update includes security fixes for ReDoS vulnerabilities in pacote, brace-expansion, and picomatch, plus decompression guards in tar.\n\n**Dependencies**\n- Security fixes: ReDoS in pacote and brace-expansion, CVEs in picomatch, decompression guard in tar.\n- Major version bumps: tar 6→7, glob 10→13, sigstore 3→4, minimatch 9→10, brace-expansion 2→5.\n- glob 13 moves the CLI to a separate `glob-bin` package (only relevant if used directly).\n\n**Migration**\n- Several updated packages now require Node 20.17+ or 22.9+; the runtime must meet this.\n\n\u003csup\u003eWritten for commit 90ea6aaed97a74c8ca873209f8066939fce162ac. Summary will update on new commits.\u003c/sup\u003e\n\n\u003ca href=\"https://cubic.dev/pr/alphaleadership/betternpm/pull/1?utm_source=github\" target=\"_blank\" rel=\"noopener noreferrer\" data-no-image-dialog=\"true\"\u003e\u003cpicture\u003e\u003csource media=\"(prefers-color-scheme: dark)\" srcset=\"https://www.cubic.dev/buttons/review-in-cubic-dark.svg\"\u003e\u003csource media=\"(prefers-color-scheme: light)\" srcset=\"https://www.cubic.dev/buttons/review-in-cubic-light.svg\"\u003e\u003cimg alt=\"Review in cubic\" src=\"https://www.cubic.dev/buttons/review-in-cubic-dark.svg\"\u003e\u003c/picture\u003e\u003c/a\u003e\n\n\u003c!-- End of auto-generated description by cubic. --\u003e\n\n","html_url":"https://github.com/alphaleadership/betternpm/pull/1","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/alphaleadership%2Fbetternpm/issues/1","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/1/packages"}},{"old_version":"10.4.5","new_version":"10.5.0","update_type":"minor","path":"/app-e2e","pr_created_at":"2026-09-15T13:49:51.000Z","version_change":"10.4.5 → 10.5.0","issue":{"uuid":"5462779336","node_id":"PR_kwDOTdVhtc8AAAABDne3Ow","number":31,"state":"closed","title":"chore(deps): bump glob from 10.4.5 to 10.5.0 in /app-e2e","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-09-16T03:51:19.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-15T13:49:51.000Z","updated_at":"2026-09-16T03:51:21.000Z","time_to_close":50488,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"glob","old_version":"10.4.5","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"}],"path":"/app-e2e","ecosystem":"npm"},"body":"Bumps [glob](https://github.com/isaacs/node-glob) from 10.4.5 to 10.5.0.\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.4.5...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n","html_url":"https://github.com/zhouqs666/shared-todolist/pull/31","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/zhouqs666%2Fshared-todolist/issues/31","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/31/packages"}},{"old_version":"10.5.0","new_version":"13.0.6","update_type":"major","path":null,"pr_created_at":"2026-09-15T12:58:17.000Z","version_change":"10.5.0 → 13.0.6","issue":{"uuid":"5462196925","node_id":"PR_kwDOOR2sic8AAAABDnBIFQ","number":8,"state":"closed","title":"build(deps): bump the website-dependencies group across 1 directory with 22 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-15T19:41:34.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-15T12:58:17.000Z","updated_at":"2026-09-15T19:41:44.000Z","time_to_close":24197,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps): bump","group_name":"website-dependencies","update_count":22,"packages":[{"name":"i18next","old_version":"23.16.8","new_version":"26.4.2","repository_url":"https://github.com/i18next/i18next"},{"name":"lucide-react","old_version":"0.501.0","new_version":"1.45.0","repository_url":"https://github.com/lucide-icons/lucide"},{"name":"react","old_version":"18.3.1","new_version":"19.3.0","repository_url":"https://github.com/react/react"},{"name":"@types/react","old_version":"18.3.31","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"react-dom","old_version":"18.3.1","new_version":"19.3.0","repository_url":"https://github.com/react/react"},{"name":"@types/react-dom","old_version":"18.3.7","new_version":"19.3.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"react-i18next","old_version":"15.7.4","new_version":"17.0.13","repository_url":"https://github.com/i18next/react-i18next"},{"name":"simple-icons","old_version":"10.4.0","new_version":"16.30.0","repository_url":"https://github.com/simple-icons/simple-icons"},{"name":"@eslint/js","old_version":"8.57.1","new_version":"10.0.1","repository_url":"https://github.com/eslint/eslint"},{"name":"@typescript-eslint/eslint-plugin","old_version":"7.18.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@typescript-eslint/parser","old_version":"7.18.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"@vitejs/plugin-react","old_version":"4.7.0","new_version":"6.1.1","repository_url":"https://github.com/vitejs/vite-plugin-react"},{"name":"autoprefixer","old_version":"10.5.5","new_version":"10.5.6","repository_url":"https://github.com/postcss/autoprefixer"},{"name":"eslint","old_version":"8.57.1","new_version":"10.10.0","repository_url":"https://github.com/eslint/eslint"},{"name":"eslint-config-prettier","old_version":"9.1.2","new_version":"10.1.8","repository_url":"https://github.com/prettier/eslint-config-prettier"},{"name":"eslint-plugin-react-hooks","old_version":"4.6.2","new_version":"7.1.1","repository_url":"https://github.com/facebook/react"},{"name":"glob","old_version":"10.5.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"},{"name":"globals","old_version":"14.0.0","new_version":"17.12.0","repository_url":"https://github.com/sindresorhus/globals"},{"name":"prettier-plugin-tailwindcss","old_version":"0.5.14","new_version":"0.8.1","repository_url":"https://github.com/tailwindlabs/prettier-plugin-tailwindcss"},{"name":"rimraf","old_version":"5.0.10","new_version":"6.1.3","repository_url":"https://github.com/isaacs/rimraf"},{"name":"tailwindcss","old_version":"3.4.19","new_version":"4.3.3","repository_url":"https://github.com/tailwindlabs/tailwindcss"},{"name":"vite","old_version":"6.4.3","new_version":"8.3.0","repository_url":"https://github.com/vitejs/vite"}],"path":null,"ecosystem":"npm"},"body":"Bumps the website-dependencies group with 22 updates in the /website directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [i18next](https://github.com/i18next/i18next) | `23.16.8` | `26.4.2` |\n| [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react) | `0.501.0` | `1.45.0` |\n| [react](https://github.com/react/react/tree/HEAD/packages/react) | `18.3.1` | `19.3.0` |\n| [@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react) | `18.3.31` | `19.3.0` |\n| [react-dom](https://github.com/react/react/tree/HEAD/packages/react-dom) | `18.3.1` | `19.3.0` |\n| [@types/react-dom](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-dom) | `18.3.7` | `19.3.0` |\n| [react-i18next](https://github.com/i18next/react-i18next) | `15.7.4` | `17.0.13` |\n| [simple-icons](https://github.com/simple-icons/simple-icons) | `10.4.0` | `16.30.0` |\n| [@eslint/js](https://github.com/eslint/eslint/tree/HEAD/packages/js) | `8.57.1` | `10.0.1` |\n| [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) | `7.18.0` | `8.70.0` |\n| [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) | `7.18.0` | `8.70.0` |\n| [@vitejs/plugin-react](https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react) | `4.7.0` | `6.1.1` |\n| [autoprefixer](https://github.com/postcss/autoprefixer) | `10.5.5` | `10.5.6` |\n| [eslint](https://github.com/eslint/eslint) | `8.57.1` | `10.10.0` |\n| [eslint-config-prettier](https://github.com/prettier/eslint-config-prettier) | `9.1.2` | `10.1.8` |\n| [eslint-plugin-react-hooks](https://github.com/facebook/react/tree/HEAD/packages/eslint-plugin-react-hooks) | `4.6.2` | `7.1.1` |\n| [glob](https://github.com/isaacs/node-glob) | `10.5.0` | `13.0.6` |\n| [globals](https://github.com/sindresorhus/globals) | `14.0.0` | `17.12.0` |\n| [prettier-plugin-tailwindcss](https://github.com/tailwindlabs/prettier-plugin-tailwindcss) | `0.5.14` | `0.8.1` |\n| [rimraf](https://github.com/isaacs/rimraf) | `5.0.10` | `6.1.3` |\n| [tailwindcss](https://github.com/tailwindlabs/tailwindcss/tree/HEAD/packages/tailwindcss) | `3.4.19` | `4.3.3` |\n| [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) | `6.4.3` | `8.3.0` |\n\n\nUpdates `i18next` from 23.16.8 to 26.4.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/i18next/i18next/releases\"\u003ei18next's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev26.4.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: \u003ccode\u003e$\u0026amp;\u003c/code\u003e, \u003ccode\u003e$`\u003c/code\u003e, \u003ccode\u003e$'\u003c/code\u003e and \u003ccode\u003e$$\u003c/code\u003e inside a nested value (\u003ccode\u003e$t(key)\u003c/code\u003e) now stay literal. \u003ccode\u003enest()\u003c/code\u003e handed the resolved value straight to \u003ccode\u003eString.replace\u003c/code\u003e as the replacement argument, so those sequences were read as replacement patterns: \u003ccode\u003e$\u0026amp;\u003c/code\u003e re-inserted the \u003ccode\u003e$t(...)\u003c/code\u003e match, \u003ccode\u003e$`\u003c/code\u003e / \u003ccode\u003e$'\u003c/code\u003e inserted the text before / after it, and \u003ccode\u003e$$\u003c/code\u003e collapsed to \u003ccode\u003e$\u003c/code\u003e. Through \u003ccode\u003et()\u003c/code\u003e the \u003ccode\u003e$\u0026amp;\u003c/code\u003e case was worse than a wrong string: the nested lookup resets the shared nesting regexp, so the re-inserted \u003ccode\u003e$t(...)\u003c/code\u003e was matched again on every pass and \u003ccode\u003et()\u003c/code\u003e never returned — also under the default \u003ccode\u003eescapeValue: true\u003c/code\u003e when the value arrives via a variable forwarded through nesting options (\u003ccode\u003e$t(key, { \u0026quot;name\u0026quot;: \u0026quot;{{name}}\u0026quot; })\u003c/code\u003e with a name containing \u003ccode\u003e$\u0026amp;\u003c/code\u003e). The value is now \u003ccode\u003e$\u003c/code\u003e-escaped at the \u003ccode\u003eString.replace\u003c/code\u003e call, the same guard \u003ccode\u003einterpolate()\u003c/code\u003e already has, and a non-string value returned by a formatter in the nesting chain (\u003ccode\u003e$t(key, myFormat)\u003c/code\u003e) is stringified before that. Nested values are still not HTML-escaped (\u003ca href=\"https://redirect.github.com/i18next/i18next/issues/854\"\u003e#854\u003c/a\u003e). Thanks \u003ca href=\"https://github.com/mahirhir\"\u003e\u003ccode\u003e@​mahirhir\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2447\"\u003e#2447\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.4.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): the selector-form \u003ccode\u003ekeyPrefix\u003c/code\u003e overload of \u003ccode\u003egetFixedT()\u003c/code\u003e is now available under \u003ccode\u003eenableSelector: 'strict'\u003c/code\u003e. Its constraint was gated on \u003ccode\u003etrue | 'optimize'\u003c/code\u003e only, so under \u003ccode\u003e'strict'\u003c/code\u003e it collapsed to \u003ccode\u003enever\u003c/code\u003e, the overload dropped out, and the returned \u003ccode\u003et\u003c/code\u003e silently lost its \u003ccode\u003ekeyPrefix\u003c/code\u003e scope (\u003ccode\u003et(($) =\u0026gt; $.deep)\u003c/code\u003e failed with \u003ccode\u003eProperty 'deep' does not exist on type '{}'\u003c/code\u003e). The same call already typechecked under \u003ccode\u003etrue\u003c/code\u003e and \u003ccode\u003e'optimize'\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/hovelopin\"\u003e\u003ccode\u003e@​hovelopin\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2446\"\u003e#2446\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.4.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eperf: cache \u003ccode\u003etoResolveHierarchy\u003c/code\u003e results per \u003ccode\u003e(code, fallbackCode)\u003c/code\u003e pair. The hierarchy resolver runs on every \u003ccode\u003et()\u003c/code\u003e call and calls \u003ccode\u003eIntl.getCanonicalLocales\u003c/code\u003e multiple times, which showed up prominently when profiling render-heavy UIs (e.g. virtualized data grids); with the cache the per-call cost drops from ~886 ns to ~41 ns. The cache is invalidated automatically when \u003ccode\u003eoptions.fallbackLng\u003c/code\u003e changes (reassignment or in-place array mutation); if you mutate other resolution-relevant options at runtime (\u003ccode\u003eload\u003c/code\u003e, \u003ccode\u003elowerCaseLng\u003c/code\u003e, \u003ccode\u003ecleanCode\u003c/code\u003e, \u003ccode\u003enonExplicitSupportedLngs\u003c/code\u003e), call \u003ccode\u003ei18next.services.languageUtils.clearCache()\u003c/code\u003e afterwards. Function-valued \u003ccode\u003efallbackLng\u003c/code\u003e and per-call array/object \u003ccode\u003efallbackLng\u003c/code\u003e options are never cached, so dynamic fallbacks keep working as before. Thanks \u003ca href=\"https://github.com/equaterina\"\u003e\u003ccode\u003e@​equaterina\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2444\"\u003e#2444\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003echore: update all devDependencies (Babel stays on 7.x until \u003ccode\u003e@rollup/plugin-babel\u003c/code\u003e supports 8, eslint on 9.x for neostandard). Removed the unused \u003ccode\u003ecoveralls\u003c/code\u003e package (CI uses the Coveralls GitHub Action) and replaced \u003ccode\u003esinon\u003c/code\u003e with \u003ccode\u003enise\u003c/code\u003e + \u003ccode\u003evitest.spyOn\u003c/code\u003e in the v1 compatibility tests, which resolves all open \u003ccode\u003enpm audit\u003c/code\u003e findings (0 vulnerabilities) and should close the dependabot alerts on the lockfile.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.3.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: allow TypeScript 7 in the optional \u003ccode\u003etypescript\u003c/code\u003e peer dependency range (\u003ccode\u003e^5 || ^6 || ^7\u003c/code\u003e). With \u003ccode\u003etypescript@7.0.2\u003c/code\u003e in a project, \u003ccode\u003enpm install\u003c/code\u003e failed with an \u003ccode\u003eERESOLVE\u003c/code\u003e peer conflict. The published types are TS7-compatible as-is: every \u003ccode\u003etest/typescript\u003c/code\u003e suite produces identical results under 6.0 and 7.0.2. Reported in \u003ca href=\"https://redirect.github.com/i18next/react-i18next/issues/1927\"\u003ereact-i18next#1927\u003c/a\u003e, thanks \u003ca href=\"https://github.com/andikapradanaarif\"\u003e\u003ccode\u003e@​andikapradanaarif\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.3.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: \u003ccode\u003e$t()\u003c/code\u003e nesting options blocks that span multiple lines are now parsed. \u003ccode\u003enest()\u003c/code\u003e decided where the nested key ends by testing \u003ccode\u003ematch[1]\u003c/code\u003e with \u003ccode\u003e/{.*}/\u003c/code\u003e, whose dot does not cross line breaks — so a \u003ccode\u003e$t(key, { ... })\u003c/code\u003e options object containing a newline was treated as having no options, mis-split as formatters, and the nested lookup ran without its options (placeholders stayed unresolved). The nesting regexp itself already matches newlines inside \u003ccode\u003e$t(...)\u003c/code\u003e; adding the \u003ccode\u003es\u003c/code\u003e (dotAll) flag makes multiline options behave like the single-line form. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2440\"\u003e#2440\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003egetUsedParamsDetails\u003c/code\u003e (the \u003ccode\u003ereturnDetails: true\u003c/code\u003e path) no longer mutates the passed \u003ccode\u003ereplace\u003c/code\u003e object. It wrote \u003ccode\u003ecount\u003c/code\u003e straight onto \u003ccode\u003eoptions.replace\u003c/code\u003e so the returned \u003ccode\u003eusedParams\u003c/code\u003e would include it — a caller reusing one \u003ccode\u003ereplace\u003c/code\u003e object across \u003ccode\u003et()\u003c/code\u003e calls then carried a stale \u003ccode\u003ecount\u003c/code\u003e into later interpolations (e.g. a previous call's \u003ccode\u003ecount: 5\u003c/code\u003e rendered instead of the current call's value). The details are now built from a copy; \u003ccode\u003eusedParams\u003c/code\u003e still includes \u003ccode\u003ecount\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2441\"\u003e#2441\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003efix: with the default \u003ccode\u003eskipOnVariables: true\u003c/code\u003e + \u003ccode\u003eescapeValue: true\u003c/code\u003e, a \u003ccode\u003e{{placeholder}}\u003c/code\u003e carried inside an interpolated value now stays literal even when the value contains escapable characters. The skip logic advanced the regex \u003ccode\u003elastIndex\u003c/code\u003e by the raw value length, but the escaped text written into the string is longer, so \u003ccode\u003elastIndex\u003c/code\u003e landed inside the inserted value and a trailing \u003ccode\u003e{{placeholder}}\u003c/code\u003e in it got interpolated — leaking another in-scope variable that should have stayed literal (values without escapable characters were already skipped correctly). The advance now uses the escaped length that is actually written, and the regex-safe \u003ccode\u003e$\u003c/code\u003e-doubling is applied only at the \u003ccode\u003eString.replace\u003c/code\u003e call so it can't distort the length arithmetic. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2442\"\u003e#2442\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.3.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(security): \u003ccode\u003edeepExtend\u003c/code\u003e (used by \u003ccode\u003eaddResourceBundle(..., deep, overwrite)\u003c/code\u003e) no longer recurses into inherited properties. It checked key existence with the \u003ccode\u003ein\u003c/code\u003e operator, which walks the prototype chain, so a source key matching an inherited built-in (e.g. \u003ccode\u003ehasOwnProperty\u003c/code\u003e, \u003ccode\u003etoString\u003c/code\u003e) caused recursion into the shared \u003ccode\u003eObject.prototype\u003c/code\u003e function and, with \u003ccode\u003eoverwrite: true\u003c/code\u003e, could overwrite e.g. \u003ccode\u003eObject.prototype.hasOwnProperty.call\u003c/code\u003e with a non-callable value — corrupting a shared built-in process-wide (DoS). Existence is now checked with \u003ccode\u003eObject.prototype.hasOwnProperty.call\u003c/code\u003e, so such keys are copied as plain own data instead. This complements the existing \u003ccode\u003e__proto__\u003c/code\u003e/\u003ccode\u003econstructor\u003c/code\u003e guard and is also strictly more correct for an own-property merge. Only affects applications that pass attacker-controlled data with \u003ccode\u003edeep: true\u003c/code\u003e and \u003ccode\u003eoverwrite: true\u003c/code\u003e; no standard backend/integration does this. Distinct from CVE-2026-48713 / CVE-2026-48714 (different packages, \u003ccode\u003esetPath\u003c/code\u003e mechanism). Thanks to zx (Jace) for the responsible disclosure.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.3.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): selector \u003ccode\u003et($ =\u0026gt; $.arr, { returnObjects: true, context })\u003c/code\u003e on a JSON array of \u003cstrong\u003eheterogeneous\u003c/strong\u003e objects now preserves each element's full shape (e.g. \u003ccode\u003e{ transKey1: string; transKey2: string }[]\u003c/code\u003e) instead of collapsing to a union of partial element types. Two type-level causes: (1) \u003ccode\u003eFilterKeys\u003c/code\u003e evaluated the whole array element type at once, so \u003ccode\u003ekeyof (A | B)\u003c/code\u003e only saw the keys common to every element — it now distributes over the object union and filters each element independently; (2) when TypeScript merges mismatched array element types it injects phantom optional \u003ccode\u003eundefined\u003c/code\u003e keys (e.g. \u003ccode\u003etransKey1_withContext?: undefined\u003c/code\u003e on elements that don't define it), which the context-detection helpers mistook for real context variants — they now skip keys typed as \u003ccode\u003eundefined\u003c/code\u003e. Also adds a dedicated \u003ccode\u003econtext\u003c/code\u003e + \u003ccode\u003ereturnObjects: true\u003c/code\u003e selector overload using \u003ccode\u003econst Fn\u003c/code\u003e + \u003ccode\u003eReturnType\u0026lt;Fn\u0026gt;\u003c/code\u003e, so \u003ccode\u003eTarget\u003c/code\u003e is no longer collapsed to \u003ccode\u003eunknown\u003c/code\u003e via \u003ccode\u003eApplyTarget\u003c/code\u003e. Resolves Problem 1 of \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2398\"\u003e#2398\u003c/a\u003e (Problem 2 was already fixed on master). Thanks \u003ca href=\"https://github.com/sauravgupta-dotcom\"\u003e\u003ccode\u003e@​sauravgupta-dotcom\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2438\"\u003e#2438\u003c/a\u003e). Fixes \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2398\"\u003e#2398\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.3.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: chained formatters with a parenthesised option that contains the format separator (e.g. \u003ccode\u003ejoin(separator: ', ')\u003c/code\u003e) now work at \u003cstrong\u003eany\u003c/strong\u003e position in the chain, not just first. Previously the comma-in-parens reassembly only repaired \u003ccode\u003eformats[0]\u003c/code\u003e, so \u003ccode\u003e{{v, uppercase, join(separator: ', ')}}\u003c/code\u003e split the \u003ccode\u003ejoin(...)\u003c/code\u003e option on the inner comma and never rejoined it, producing corrupt output. Replaced the first-position-only repair with a position-independent pass that re-joins fragments until each open paren closes. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2437\"\u003e#2437\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.3.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): \u003ccode\u003et()\u003c/code\u003e with a \u003ccode\u003ekeyPrefix\u003c/code\u003e no longer pollutes its return type with sibling keys' values. A regression in 26.3.0 — the \u003ccode\u003e[Res] extends [never]\u003c/code\u003e guards added to \u003ccode\u003eKeysBuilderWithReturnObjects\u003c/code\u003e / \u003ccode\u003eKeysBuilderWithoutReturnObjects\u003c/code\u003e turned the builders into deferred conditional types, so \u003ccode\u003eKeyPrefix\u0026lt;Ns\u0026gt;\u003c/code\u003e stopped resolving to a literal union and \u003ccode\u003ekeyPrefix\u003c/code\u003e inference widened to the whole namespace. Symptom: \u003ccode\u003euseTranslation(ns, { keyPrefix: 'a.b' })\u003c/code\u003e then \u003ccode\u003et('title')\u003c/code\u003e would resolve to \u003ccode\u003e'\u0026lt;a.b\u0026gt;.title' | '\u0026lt;other.path\u0026gt;.title' | ...\u003c/code\u003e instead of just the scoped value. Affected every \u003ccode\u003ereact-i18next\u003c/code\u003e user using \u003ccode\u003ekeyPrefix\u003c/code\u003e. Restored to the eager 26.2.0 form. The same-namespace conflict handling from \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2434\"\u003e#2434\u003c/a\u003e still works via \u003ccode\u003e_DropConflictKeys\u003c/code\u003e at the merge layer (in \u003ccode\u003eoptions.d.ts\u003c/code\u003e). Thanks \u003ca href=\"https://github.com/aaronrosenthal\"\u003e\u003ccode\u003e@​aaronrosenthal\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2436\"\u003e#2436\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.3.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(types): introduce \u003ccode\u003eResourceNamespaceMap\u003c/code\u003e — a separate mergeable augmentation surface for namespace resource types, designed for monorepos where multiple packages each want to contribute their own namespaces. Previously, every package had to coordinate on a single \u003ccode\u003eCustomTypeOptions.resources\u003c/code\u003e declaration (or fall back to typing dependency namespaces as \u003ccode\u003eany\u003c/code\u003e) because \u003ccode\u003eresources\u003c/code\u003e is a single property of an interface and TypeScript reports TS2717 when two declarations of the same property disagree. The new interface merges naturally across \u003ccode\u003edeclare module 'i18next'\u003c/code\u003e blocks, so each package can ship its own \u003ccode\u003ei18next.d.ts\u003c/code\u003e independently. Per-property merge handles same-namespace contributions from multiple packages, and same-key/different-literal conflicts are silently dropped to avoid poisoning \u003ccode\u003et()\u003c/code\u003e overload resolution. Fully backwards-compatible — existing \u003ccode\u003eCustomTypeOptions.resources\u003c/code\u003e augmentations continue to work, and both surfaces can coexist. Scalar options (\u003ccode\u003edefaultNS\u003c/code\u003e, \u003ccode\u003ereturnNull\u003c/code\u003e, \u003ccode\u003eenableSelector\u003c/code\u003e, etc.) still belong on \u003ccode\u003eCustomTypeOptions\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/sh3xu\"\u003e\u003ccode\u003e@​sh3xu\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2434\"\u003e#2434\u003c/a\u003e). Fixes \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2409\"\u003e#2409\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.2.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(types): new \u003ccode\u003eparseInterpolation\u003c/code\u003e TypeOption (default \u003ccode\u003etrue\u003c/code\u003e). When set to \u003ccode\u003efalse\u003c/code\u003e in \u003ccode\u003eCustomTypeOptions\u003c/code\u003e, the type-level extractor stops parsing translation strings for \u003ccode\u003e{{variable}}\u003c/code\u003e patterns. Required by \u003ccode\u003ei18next-icu\u003c/code\u003e users — the default extractor mistakes ICU MessageFormat nested-brace plurals like \u003ccode\u003e{count, plural, one {{count} row} other {{count} rows}}\u003c/code\u003e for an interpolation block and demands a phantom variable name. The flag is type-only; runtime interpolation is governed by \u003ccode\u003eInterpolationOptions\u003c/code\u003e and is unaffected. Fixes \u003ca href=\"https://redirect.github.com/i18next/i18next-icu/issues/85\"\u003ei18next-icu#85\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003efix(types): expose \u003ccode\u003eenableSelector\u003c/code\u003e on \u003ccode\u003eInitOptions\u003c/code\u003e so \u003ccode\u003ei18next.init({ enableSelector: 'strict' })\u003c/code\u003e typechecks without a module augmentation. The runtime already reads \u003ccode\u003eopts?.enableSelector\u003c/code\u003e from init options; this lands the matching type declaration next to the other selector-resolution knobs. Accepts \u003ccode\u003efalse | true | 'optimize' | 'strict'\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/Faithfinder\"\u003e\u003ccode\u003e@​Faithfinder\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2431\"\u003e#2431\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.1.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: \u003ccode\u003eenableSelector: 'strict'\u003c/code\u003e (TypeOptions + runtime option). Opt-in mode that drops the flattened-primary form from \u003ccode\u003eNsResource\u003c/code\u003e at the type level — every namespace (primary included) is exposed only under its own key on \u003ccode\u003e$\u003c/code\u003e, uniformly across single- and multi-ns hooks. At runtime, a leading selector path segment matching the scope's namespace list is always rewritten as a namespace prefix, including the primary. Eliminates the silent-miss surface area where \u003ccode\u003et($ =\u0026gt; $.primary.foo)\u003c/code\u003e typechecks but doesn't resolve under the default mode (see \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2429\"\u003e#2429\u003c/a\u003e). Backward-compatible: default \u003ccode\u003eenableSelector: false | true | 'optimize'\u003c/code\u003e behavior is unchanged. Note: strict mode is incompatible with the \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2405\"\u003e#2405\u003c/a\u003e pattern (keys whose names match sibling namespaces) — those users should stay on default mode.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.0.10\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: \u003ccode\u003egetFixedT\u003c/code\u003e accepts a fourth optional \u003ccode\u003efixedOpts\u003c/code\u003e argument carrying \u003ccode\u003escopeNs\u003c/code\u003e — the full namespace list the bound \u003ccode\u003et\u003c/code\u003e was created for. The selector API uses \u003ccode\u003escopeNs\u003c/code\u003e to detect when a path's first segment is a namespace prefix, \u003cstrong\u003ewithout\u003c/strong\u003e changing resolution scope. Resolution still uses the bound \u003ccode\u003ens\u003c/code\u003e (a single primary string in the typical react-i18next setup), so plain \u003ccode\u003et('key')\u003c/code\u003e lookups stay isolated to the primary namespace exactly as before — only \u003ccode\u003et($ =\u0026gt; $.secondaryNs.foo)\u003c/code\u003e selectors now route correctly under \u003ccode\u003euseTranslation([nsA, nsB])\u003c/code\u003e. Fixes the runtime side of \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2429\"\u003e#2429\u003c/a\u003e for the \u003ccode\u003ereact-i18next\u003c/code\u003e default-\u003ccode\u003ensMode\u003c/code\u003e case. The 4th argument is opt-in: existing 3-arg \u003ccode\u003egetFixedT(lng, ns, keyPrefix)\u003c/code\u003e callers see no behavior change.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.0.9\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): unformatted interpolation values are now typed as \u003ccode\u003estring | number\u003c/code\u003e (was \u003ccode\u003estring\u003c/code\u003e). i18next stringifies values at runtime, so requiring callers to wrap numbers in \u003ccode\u003eString(...)\u003c/code\u003e for plain \u003ccode\u003e{{var}}\u003c/code\u003e placeholders was unnecessary friction — and could mask the real problem when a non-string value was passed alongside multiple interpolation slots (the \u003ccode\u003et()\u003c/code\u003e overload resolution would fall through to the 3-arg form and report a confusing \u0026quot;not assignable to string\u0026quot; error against the options object). Typed format specifiers like \u003ccode\u003e{{x, number}}\u003c/code\u003e, \u003ccode\u003e{{x, currency}}\u003c/code\u003e, \u003ccode\u003e{{x, datetime}}\u003c/code\u003e, etc. keep their precise types; this only relaxes the no-format default. The \u003ccode\u003ecount\u003c/code\u003e variable remains \u003ccode\u003enumber\u003c/code\u003e-only\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.0.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): restore the pre-v25.10.4 \u003ccode\u003eExistsFunction\u003c/code\u003e shape so plain arrow functions can again be assigned to \u003ccode\u003eExistsFunction\u003c/code\u003e-typed variables (TypeScript cannot infer type predicates through multi-overload assignment). Direct \u003ccode\u003ei18next.exists(key)\u003c/code\u003e calls still narrow \u003ccode\u003ekey\u003c/code\u003e to \u003ccode\u003eSelectorKey\u003c/code\u003e — the predicate is now declared inline on \u003ccode\u003ei18n.exists\u003c/code\u003e. Custom wrappers that want the narrowing can type themselves as \u003ccode\u003etypeof i18next.exists\u003c/code\u003e \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2425\"\u003e2425\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev26.0.7\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/i18next/i18next/blob/master/CHANGELOG.md\"\u003ei18next's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e26.4.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: \u003ccode\u003e$\u0026amp;\u003c/code\u003e, \u003ccode\u003e$`\u003c/code\u003e, \u003ccode\u003e$'\u003c/code\u003e and \u003ccode\u003e$$\u003c/code\u003e inside a nested value (\u003ccode\u003e$t(key)\u003c/code\u003e) now stay literal. \u003ccode\u003enest()\u003c/code\u003e handed the resolved value straight to \u003ccode\u003eString.replace\u003c/code\u003e as the replacement argument, so those sequences were read as replacement patterns: \u003ccode\u003e$\u0026amp;\u003c/code\u003e re-inserted the \u003ccode\u003e$t(...)\u003c/code\u003e match, \u003ccode\u003e$`\u003c/code\u003e / \u003ccode\u003e$'\u003c/code\u003e inserted the text before / after it, and \u003ccode\u003e$$\u003c/code\u003e collapsed to \u003ccode\u003e$\u003c/code\u003e. Through \u003ccode\u003et()\u003c/code\u003e the \u003ccode\u003e$\u0026amp;\u003c/code\u003e case was worse than a wrong string: the nested lookup resets the shared nesting regexp, so the re-inserted \u003ccode\u003e$t(...)\u003c/code\u003e was matched again on every pass and \u003ccode\u003et()\u003c/code\u003e never returned — also under the default \u003ccode\u003eescapeValue: true\u003c/code\u003e when the value arrives via a variable forwarded through nesting options (\u003ccode\u003e$t(key, { \u0026quot;name\u0026quot;: \u0026quot;{{name}}\u0026quot; })\u003c/code\u003e with a name containing \u003ccode\u003e$\u0026amp;\u003c/code\u003e). The value is now \u003ccode\u003e$\u003c/code\u003e-escaped at the \u003ccode\u003eString.replace\u003c/code\u003e call, the same guard \u003ccode\u003einterpolate()\u003c/code\u003e already has, and a non-string value returned by a formatter in the nesting chain (\u003ccode\u003e$t(key, myFormat)\u003c/code\u003e) is stringified before that. Nested values are still not HTML-escaped (\u003ca href=\"https://redirect.github.com/i18next/i18next/issues/854\"\u003e#854\u003c/a\u003e). Thanks \u003ca href=\"https://github.com/mahirhir\"\u003e\u003ccode\u003e@​mahirhir\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2447\"\u003e#2447\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.4.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): the selector-form \u003ccode\u003ekeyPrefix\u003c/code\u003e overload of \u003ccode\u003egetFixedT()\u003c/code\u003e is now available under \u003ccode\u003eenableSelector: 'strict'\u003c/code\u003e. Its constraint was gated on \u003ccode\u003etrue | 'optimize'\u003c/code\u003e only, so under \u003ccode\u003e'strict'\u003c/code\u003e it collapsed to \u003ccode\u003enever\u003c/code\u003e, the overload dropped out, and the returned \u003ccode\u003et\u003c/code\u003e silently lost its \u003ccode\u003ekeyPrefix\u003c/code\u003e scope (\u003ccode\u003et(($) =\u0026gt; $.deep)\u003c/code\u003e failed with \u003ccode\u003eProperty 'deep' does not exist on type '{}'\u003c/code\u003e). The same call already typechecked under \u003ccode\u003etrue\u003c/code\u003e and \u003ccode\u003e'optimize'\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/hovelopin\"\u003e\u003ccode\u003e@​hovelopin\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2446\"\u003e#2446\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.4.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eperf: cache \u003ccode\u003etoResolveHierarchy\u003c/code\u003e results per \u003ccode\u003e(code, fallbackCode)\u003c/code\u003e pair. The hierarchy resolver runs on every \u003ccode\u003et()\u003c/code\u003e call and calls \u003ccode\u003eIntl.getCanonicalLocales\u003c/code\u003e multiple times, which showed up prominently when profiling render-heavy UIs (e.g. virtualized data grids); with the cache the per-call cost drops from ~886 ns to ~41 ns. The cache is invalidated automatically when \u003ccode\u003eoptions.fallbackLng\u003c/code\u003e changes (reassignment or in-place array mutation); if you mutate other resolution-relevant options at runtime (\u003ccode\u003eload\u003c/code\u003e, \u003ccode\u003elowerCaseLng\u003c/code\u003e, \u003ccode\u003ecleanCode\u003c/code\u003e, \u003ccode\u003enonExplicitSupportedLngs\u003c/code\u003e), call \u003ccode\u003ei18next.services.languageUtils.clearCache()\u003c/code\u003e afterwards. Function-valued \u003ccode\u003efallbackLng\u003c/code\u003e and per-call array/object \u003ccode\u003efallbackLng\u003c/code\u003e options are never cached, so dynamic fallbacks keep working as before. Thanks \u003ca href=\"https://github.com/equaterina\"\u003e\u003ccode\u003e@​equaterina\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2444\"\u003e#2444\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003echore: update all devDependencies (Babel stays on 7.x until \u003ccode\u003e@rollup/plugin-babel\u003c/code\u003e supports 8, eslint on 9.x for neostandard). Removed the unused \u003ccode\u003ecoveralls\u003c/code\u003e package (CI uses the Coveralls GitHub Action) and replaced \u003ccode\u003esinon\u003c/code\u003e with \u003ccode\u003enise\u003c/code\u003e + \u003ccode\u003evitest.spyOn\u003c/code\u003e in the v1 compatibility tests, which resolves all open \u003ccode\u003enpm audit\u003c/code\u003e findings (0 vulnerabilities) and should close the dependabot alerts on the lockfile.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.3.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: allow TypeScript 7 in the optional \u003ccode\u003etypescript\u003c/code\u003e peer dependency range (\u003ccode\u003e^5 || ^6 || ^7\u003c/code\u003e). With \u003ccode\u003etypescript@7.0.2\u003c/code\u003e in a project, \u003ccode\u003enpm install\u003c/code\u003e failed with an \u003ccode\u003eERESOLVE\u003c/code\u003e peer conflict. The published types are TS7-compatible as-is: every \u003ccode\u003etest/typescript\u003c/code\u003e suite produces identical results under 6.0 and 7.0.2. Reported in \u003ca href=\"https://redirect.github.com/i18next/react-i18next/issues/1927\"\u003ereact-i18next#1927\u003c/a\u003e, thanks \u003ca href=\"https://github.com/andikapradanaarif\"\u003e\u003ccode\u003e@​andikapradanaarif\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.3.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: \u003ccode\u003e$t()\u003c/code\u003e nesting options blocks that span multiple lines are now parsed. \u003ccode\u003enest()\u003c/code\u003e decided where the nested key ends by testing \u003ccode\u003ematch[1]\u003c/code\u003e with \u003ccode\u003e/{.*}/\u003c/code\u003e, whose dot does not cross line breaks — so a \u003ccode\u003e$t(key, { ... })\u003c/code\u003e options object containing a newline was treated as having no options, mis-split as formatters, and the nested lookup ran without its options (placeholders stayed unresolved). The nesting regexp itself already matches newlines inside \u003ccode\u003e$t(...)\u003c/code\u003e; adding the \u003ccode\u003es\u003c/code\u003e (dotAll) flag makes multiline options behave like the single-line form. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2440\"\u003e#2440\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003egetUsedParamsDetails\u003c/code\u003e (the \u003ccode\u003ereturnDetails: true\u003c/code\u003e path) no longer mutates the passed \u003ccode\u003ereplace\u003c/code\u003e object. It wrote \u003ccode\u003ecount\u003c/code\u003e straight onto \u003ccode\u003eoptions.replace\u003c/code\u003e so the returned \u003ccode\u003eusedParams\u003c/code\u003e would include it — a caller reusing one \u003ccode\u003ereplace\u003c/code\u003e object across \u003ccode\u003et()\u003c/code\u003e calls then carried a stale \u003ccode\u003ecount\u003c/code\u003e into later interpolations (e.g. a previous call's \u003ccode\u003ecount: 5\u003c/code\u003e rendered instead of the current call's value). The details are now built from a copy; \u003ccode\u003eusedParams\u003c/code\u003e still includes \u003ccode\u003ecount\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2441\"\u003e#2441\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003efix: with the default \u003ccode\u003eskipOnVariables: true\u003c/code\u003e + \u003ccode\u003eescapeValue: true\u003c/code\u003e, a \u003ccode\u003e{{placeholder}}\u003c/code\u003e carried inside an interpolated value now stays literal even when the value contains escapable characters. The skip logic advanced the regex \u003ccode\u003elastIndex\u003c/code\u003e by the raw value length, but the escaped text written into the string is longer, so \u003ccode\u003elastIndex\u003c/code\u003e landed inside the inserted value and a trailing \u003ccode\u003e{{placeholder}}\u003c/code\u003e in it got interpolated — leaking another in-scope variable that should have stayed literal (values without escapable characters were already skipped correctly). The advance now uses the escaped length that is actually written, and the regex-safe \u003ccode\u003e$\u003c/code\u003e-doubling is applied only at the \u003ccode\u003eString.replace\u003c/code\u003e call so it can't distort the length arithmetic. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2442\"\u003e#2442\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.3.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(security): \u003ccode\u003edeepExtend\u003c/code\u003e (used by \u003ccode\u003eaddResourceBundle(..., deep, overwrite)\u003c/code\u003e) no longer recurses into inherited properties. It checked key existence with the \u003ccode\u003ein\u003c/code\u003e operator, which walks the prototype chain, so a source key matching an inherited built-in (e.g. \u003ccode\u003ehasOwnProperty\u003c/code\u003e, \u003ccode\u003etoString\u003c/code\u003e) caused recursion into the shared \u003ccode\u003eObject.prototype\u003c/code\u003e function and, with \u003ccode\u003eoverwrite: true\u003c/code\u003e, could overwrite e.g. \u003ccode\u003eObject.prototype.hasOwnProperty.call\u003c/code\u003e with a non-callable value — corrupting a shared built-in process-wide (DoS). Existence is now checked with \u003ccode\u003eObject.prototype.hasOwnProperty.call\u003c/code\u003e, so such keys are copied as plain own data instead. This complements the existing \u003ccode\u003e__proto__\u003c/code\u003e/\u003ccode\u003econstructor\u003c/code\u003e guard and is also strictly more correct for an own-property merge. Only affects applications that pass attacker-controlled data with \u003ccode\u003edeep: true\u003c/code\u003e and \u003ccode\u003eoverwrite: true\u003c/code\u003e; no standard backend/integration does this. Distinct from CVE-2026-48713 / CVE-2026-48714 (different packages, \u003ccode\u003esetPath\u003c/code\u003e mechanism). See advisory \u003ca href=\"https://github.com/i18next/i18next/security/advisories/GHSA-6jcc-5g8w-32mx\"\u003eGHSA-6jcc-5g8w-32mx\u003c/a\u003e, CVSS 5.9 (\u003ccode\u003eCVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H\u003c/code\u003e). Thanks to zx (Jace) \u003ca href=\"https://github.com/manus-use\"\u003e\u003ccode\u003e@​manus-use\u003c/code\u003e\u003c/a\u003e for the responsible disclosure.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.3.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): selector \u003ccode\u003et($ =\u0026gt; $.arr, { returnObjects: true, context })\u003c/code\u003e on a JSON array of \u003cstrong\u003eheterogeneous\u003c/strong\u003e objects now preserves each element's full shape (e.g. \u003ccode\u003e{ transKey1: string; transKey2: string }[]\u003c/code\u003e) instead of collapsing to a union of partial element types. Two type-level causes: (1) \u003ccode\u003eFilterKeys\u003c/code\u003e evaluated the whole array element type at once, so \u003ccode\u003ekeyof (A | B)\u003c/code\u003e only saw the keys common to every element — it now distributes over the object union and filters each element independently; (2) when TypeScript merges mismatched array element types it injects phantom optional \u003ccode\u003eundefined\u003c/code\u003e keys (e.g. \u003ccode\u003etransKey1_withContext?: undefined\u003c/code\u003e on elements that don't define it), which the context-detection helpers mistook for real context variants — they now skip keys typed as \u003ccode\u003eundefined\u003c/code\u003e. Also adds a dedicated \u003ccode\u003econtext\u003c/code\u003e + \u003ccode\u003ereturnObjects: true\u003c/code\u003e selector overload using \u003ccode\u003econst Fn\u003c/code\u003e + \u003ccode\u003eReturnType\u0026lt;Fn\u0026gt;\u003c/code\u003e, so \u003ccode\u003eTarget\u003c/code\u003e is no longer collapsed to \u003ccode\u003eunknown\u003c/code\u003e via \u003ccode\u003eApplyTarget\u003c/code\u003e. Resolves Problem 1 of \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2398\"\u003e#2398\u003c/a\u003e (Problem 2 was already fixed on master). Thanks \u003ca href=\"https://github.com/sauravgupta-dotcom\"\u003e\u003ccode\u003e@​sauravgupta-dotcom\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2438\"\u003e#2438\u003c/a\u003e). Fixes \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2398\"\u003e#2398\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.3.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: chained formatters with a parenthesised option that contains the format separator (e.g. \u003ccode\u003ejoin(separator: ', ')\u003c/code\u003e) now work at \u003cstrong\u003eany\u003c/strong\u003e position in the chain, not just first. Previously the comma-in-parens reassembly only repaired \u003ccode\u003eformats[0]\u003c/code\u003e, so \u003ccode\u003e{{v, uppercase, join(separator: ', ')}}\u003c/code\u003e split the \u003ccode\u003ejoin(...)\u003c/code\u003e option on the inner comma and never rejoined it, producing corrupt output. Replaced the first-position-only repair with a position-independent pass that re-joins fragments until each open paren closes. Thanks \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2437\"\u003e#2437\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.3.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(types): \u003ccode\u003et()\u003c/code\u003e with a \u003ccode\u003ekeyPrefix\u003c/code\u003e no longer pollutes its return type with sibling keys' values. A regression in 26.3.0 — the \u003ccode\u003e[Res] extends [never]\u003c/code\u003e guards added to \u003ccode\u003eKeysBuilderWithReturnObjects\u003c/code\u003e / \u003ccode\u003eKeysBuilderWithoutReturnObjects\u003c/code\u003e turned the builders into deferred conditional types, so \u003ccode\u003eKeyPrefix\u0026lt;Ns\u0026gt;\u003c/code\u003e stopped resolving to a literal union and \u003ccode\u003ekeyPrefix\u003c/code\u003e inference widened to the whole namespace. Symptom: \u003ccode\u003euseTranslation(ns, { keyPrefix: 'a.b' })\u003c/code\u003e then \u003ccode\u003et('title')\u003c/code\u003e would resolve to \u003ccode\u003e'\u0026lt;a.b\u0026gt;.title' | '\u0026lt;other.path\u0026gt;.title' | ...\u003c/code\u003e instead of just the scoped value. Affected every \u003ccode\u003ereact-i18next\u003c/code\u003e user using \u003ccode\u003ekeyPrefix\u003c/code\u003e. Restored to the eager 26.2.0 form. The same-namespace conflict handling from \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2434\"\u003e#2434\u003c/a\u003e still works via \u003ccode\u003e_DropConflictKeys\u003c/code\u003e at the merge layer (in \u003ccode\u003eoptions.d.ts\u003c/code\u003e). Thanks \u003ca href=\"https://github.com/aaronrosenthal\"\u003e\u003ccode\u003e@​aaronrosenthal\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2436\"\u003e#2436\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.3.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(types): introduce \u003ccode\u003eResourceNamespaceMap\u003c/code\u003e — a separate mergeable augmentation surface for namespace resource types, designed for monorepos where multiple packages each want to contribute their own namespaces. Previously, every package had to coordinate on a single \u003ccode\u003eCustomTypeOptions.resources\u003c/code\u003e declaration (or fall back to typing dependency namespaces as \u003ccode\u003eany\u003c/code\u003e) because \u003ccode\u003eresources\u003c/code\u003e is a single property of an interface and TypeScript reports TS2717 when two declarations of the same property disagree. The new interface merges naturally across \u003ccode\u003edeclare module 'i18next'\u003c/code\u003e blocks, so each package can ship its own \u003ccode\u003ei18next.d.ts\u003c/code\u003e independently. Per-property merge handles same-namespace contributions from multiple packages, and same-key/different-literal conflicts are silently dropped to avoid poisoning \u003ccode\u003et()\u003c/code\u003e overload resolution. Fully backwards-compatible — existing \u003ccode\u003eCustomTypeOptions.resources\u003c/code\u003e augmentations continue to work, and both surfaces can coexist. Scalar options (\u003ccode\u003edefaultNS\u003c/code\u003e, \u003ccode\u003ereturnNull\u003c/code\u003e, \u003ccode\u003eenableSelector\u003c/code\u003e, etc.) still belong on \u003ccode\u003eCustomTypeOptions\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/sh3xu\"\u003e\u003ccode\u003e@​sh3xu\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2434\"\u003e#2434\u003c/a\u003e). Fixes \u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2409\"\u003e#2409\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.2.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(types): new \u003ccode\u003eparseInterpolation\u003c/code\u003e TypeOption (default \u003ccode\u003etrue\u003c/code\u003e). When set to \u003ccode\u003efalse\u003c/code\u003e in \u003ccode\u003eCustomTypeOptions\u003c/code\u003e, the type-level extractor stops parsing translation strings for \u003ccode\u003e{{variable}}\u003c/code\u003e patterns. Required by \u003ccode\u003ei18next-icu\u003c/code\u003e users — the default extractor mistakes ICU MessageFormat nested-brace plurals like \u003ccode\u003e{count, plural, one {{count} row} other {{count} rows}}\u003c/code\u003e for an interpolation block and demands a phantom variable name. The flag is type-only; runtime interpolation is governed by \u003ccode\u003eInterpolationOptions\u003c/code\u003e and is unaffected. Fixes \u003ca href=\"https://redirect.github.com/i18next/i18next-icu/issues/85\"\u003ei18next-icu#85\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003efix(types): expose \u003ccode\u003eenableSelector\u003c/code\u003e on \u003ccode\u003eInitOptions\u003c/code\u003e so \u003ccode\u003ei18next.init({ enableSelector: 'strict' })\u003c/code\u003e typechecks without a module augmentation. The runtime already reads \u003ccode\u003eopts?.enableSelector\u003c/code\u003e from init options; this lands the matching type declaration next to the other selector-resolution knobs. Accepts \u003ccode\u003efalse | true | 'optimize' | 'strict'\u003c/code\u003e. Thanks \u003ca href=\"https://github.com/Faithfinder\"\u003e\u003ccode\u003e@​Faithfinder\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/i18next/i18next/pull/2431\"\u003e#2431\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e26.1.0\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/4dba50f20669c3678db0812255716eb7693ad2da\"\u003e\u003ccode\u003e4dba50f\u003c/code\u003e\u003c/a\u003e 26.4.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/e436b625a648e1a48ea27ecf5f2fba8020d67009\"\u003e\u003ccode\u003ee436b62\u003c/code\u003e\u003c/a\u003e build\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/d955fb086e9f4ded1200f51ecbb21034dbad1d92\"\u003e\u003ccode\u003ed955fb0\u003c/code\u003e\u003c/a\u003e fix: stringify formatter results in nested values, changelog v26.4.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/dfafa3ca725e1415ef20e7fb5b1b3e4468f3c425\"\u003e\u003ccode\u003edfafa3c\u003c/code\u003e\u003c/a\u003e fix: keep replacement patterns literal in nested values (\u003ca href=\"https://redirect.github.com/i18next/i18next/issues/2447\"\u003e#2447\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/3c9981e22dd471b6bca224aa1f60e04ba3f6153a\"\u003e\u003ccode\u003e3c9981e\u003c/code\u003e\u003c/a\u003e chore: keep dev-only and local files out of the npm package\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/c057ee048c55a61c095acc017365e997e4f723f8\"\u003e\u003ccode\u003ec057ee0\u003c/code\u003e\u003c/a\u003e 26.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/02e3e1659b7cc9fedaaf53797597483ef8003df2\"\u003e\u003ccode\u003e02e3e16\u003c/code\u003e\u003c/a\u003e changelog v26.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/6f198f2508ba8986d1bbf25a8b922d01afcf0751\"\u003e\u003ccode\u003e6f198f2\u003c/code\u003e\u003c/a\u003e fix(types): allow selector keyPrefix in getFixedT under enableSelector 'stric...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/652847e70fd68344d00456f20ef0584da51e59f7\"\u003e\u003ccode\u003e652847e\u003c/code\u003e\u003c/a\u003e 26.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/i18next/i18next/commit/6c6025f87e89f0b5e8ef3f0bf23fd61158bd64d3\"\u003e\u003ccode\u003e6c6025f\u003c/code\u003e\u003c/a\u003e prettier fix\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/i18next/i18next/compare/v23.16.8...v26.4.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version modifies \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `lucide-react` from 0.501.0 to 1.45.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/lucide-icons/lucide/releases\"\u003elucide-react's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.45.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003ecalendar-chevrons-right\u003c/code\u003e icon by \u003ca href=\"https://github.com/AlexandrePhilibert\"\u003e\u003ccode\u003e@​AlexandrePhilibert\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3565\"\u003elucide-icons/lucide#3565\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003ebuilding-complex-plus\u003c/code\u003e icon by \u003ca href=\"https://github.com/tylerkade\"\u003e\u003ccode\u003e@​tylerkade\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4758\"\u003elucide-icons/lucide#4758\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): add hourglass-cog icon by \u003ca href=\"https://github.com/lazerg\"\u003e\u003ccode\u003e@​lazerg\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4635\"\u003elucide-icons/lucide#4635\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003emouth\u003c/code\u003e \u0026amp; \u003ccode\u003emouth-off\u003c/code\u003e by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4787\"\u003elucide-icons/lucide#4787\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003eiv-bag\u003c/code\u003e icon by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4821\"\u003elucide-icons/lucide#4821\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): changed \u003ccode\u003electern\u003c/code\u003e icon by \u003ca href=\"https://github.com/UsamaKhan\"\u003e\u003ccode\u003e@​UsamaKhan\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/2925\"\u003elucide-icons/lucide#2925\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): add \u003ccode\u003elayout-arrow-right\u003c/code\u003e and \u003ccode\u003elayout-arrow-down\u003c/code\u003e by \u003ca href=\"https://github.com/samuelalake\"\u003e\u003ccode\u003e@​samuelalake\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4541\"\u003elucide-icons/lucide#4541\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003epark\u003c/code\u003e icon by \u003ca href=\"https://github.com/skajosborn\"\u003e\u003ccode\u003e@​skajosborn\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3177\"\u003elucide-icons/lucide#3177\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): changed \u003ccode\u003ealbum\u003c/code\u003e, \u003ccode\u003ebook-marked\u003c/code\u003e, \u003ccode\u003efolder-bookmark\u003c/code\u003e icons by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3043\"\u003elucide-icons/lucide#3043\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): correct misspelled tags by \u003ca href=\"https://github.com/decknamec\"\u003e\u003ccode\u003e@​decknamec\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4836\"\u003elucide-icons/lucide#4836\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003ehouses\u003c/code\u003e icon by \u003ca href=\"https://github.com/danielbayley\"\u003e\u003ccode\u003e@​danielbayley\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3241\"\u003elucide-icons/lucide#3241\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003enotebook-dot\u003c/code\u003e icon by \u003ca href=\"https://github.com/elenakovelskikh\"\u003e\u003ccode\u003e@​elenakovelskikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3228\"\u003elucide-icons/lucide#3228\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): add \u003ccode\u003emessages-circle\u003c/code\u003e icon by \u003ca href=\"https://github.com/Mirazstudio-offical\"\u003e\u003ccode\u003e@​Mirazstudio-offical\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4754\"\u003elucide-icons/lucide#4754\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003eplant-pot\u003c/code\u003e icon by \u003ca href=\"https://github.com/vqh2602\"\u003e\u003ccode\u003e@​vqh2602\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3122\"\u003elucide-icons/lucide#3122\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): changed \u003ccode\u003ecookie\u003c/code\u003e icon by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4815\"\u003elucide-icons/lucide#4815\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): remove duplicate use-cases prop from cookie.json by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4838\"\u003elucide-icons/lucide#4838\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(site): fix home card icons by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4839\"\u003elucide-icons/lucide#4839\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(docs): added \u0026quot;How to use Lucide icons\u0026quot; section to resources by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4829\"\u003elucide-icons/lucide#4829\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(packages/vue): fix generated icon declaration types for \u003ccode\u003e@​lucide/vue\u003c/code\u003e by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4841\"\u003elucide-icons/lucide#4841\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps-dev): bump vitest from 4.1.10 to 4.1.11 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4845\"\u003elucide-icons/lucide#4845\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps-dev): bump vitest from 4.1.10 to 4.1.11 in /integrations/lucide-react/vite by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4844\"\u003elucide-icons/lucide#4844\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci(ci.yml): Add dispatch post release by \u003ca href=\"https://github.com/ericfennis\"\u003e\u003ccode\u003e@​ericfennis\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4847\"\u003elucide-icons/lucide#4847\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003eglobe-code\u003c/code\u003e icon by \u003ca href=\"https://github.com/AleksejDix\"\u003e\u003ccode\u003e@​AleksejDix\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3722\"\u003elucide-icons/lucide#3722\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tylerkade\"\u003e\u003ccode\u003e@​tylerkade\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4758\"\u003elucide-icons/lucide#4758\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/alx-xo\"\u003e\u003ccode\u003e@​alx-xo\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4115\"\u003elucide-icons/lucide#4115\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/skajosborn\"\u003e\u003ccode\u003e@​skajosborn\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3177\"\u003elucide-icons/lucide#3177\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/elenakovelskikh\"\u003e\u003ccode\u003e@​elenakovelskikh\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3228\"\u003elucide-icons/lucide#3228\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Mirazstudio-offical\"\u003e\u003ccode\u003e@​Mirazstudio-offical\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4754\"\u003elucide-icons/lucide#4754\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/AleksejDix\"\u003e\u003ccode\u003e@​AleksejDix\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/3722\"\u003elucide-icons/lucide#3722\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/lucide-icons/lucide/compare/1.44.0...1.45.0\"\u003ehttps://github.com/lucide-icons/lucide/compare/1.44.0...1.45.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eVersion 1.44.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(packages/icons): fixed \u003ccode\u003e@​lucide/icons\u003c/code\u003e rollup config by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4824\"\u003elucide-icons/lucide#4824\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): changed \u003ccode\u003edoor-open\u003c/code\u003e by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4826\"\u003elucide-icons/lucide#4826\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(docs): replace missing LucideIcon icon names in guides by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4827\"\u003elucide-icons/lucide#4827\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(docs): fixed fuse js search by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4825\"\u003elucide-icons/lucide#4825\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): changed \u003ccode\u003esatellite-dish\u003c/code\u003e icon by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4813\"\u003elucide-icons/lucide#4813\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): arcified flip icons \u0026amp; renamed them by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4833\"\u003elucide-icons/lucide#4833\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): improve legibility of credit card icons by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4831\"\u003elucide-icons/lucide#4831\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(lab): add check-x icon by \u003ca href=\"https://github.com/ishanbagra18\"\u003e\u003ccode\u003e@​ishanbagra18\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4737\"\u003elucide-icons/lucide#4737\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(icons): correct compromised tags in shield icons by \u003ca href=\"https://github.com/decknamec\"\u003e\u003ccode\u003e@​decknamec\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4835\"\u003elucide-icons/lucide#4835\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(icons): added \u003ccode\u003etoothbrush\u003c/code\u003e icon by \u003ca href=\"https://github.com/karsa-mistmere\"\u003e\u003ccode\u003e@​karsa-mistmere\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4755\"\u003elucide-icons/lucide#4755\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/94e4cb9d9db5907053ebf3636a97c45529cf776b\"\u003e\u003ccode\u003e94e4cb9\u003c/code\u003e\u003c/a\u003e chore(dependencies): Update dependencies (\u003ca href=\"https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/4806\"\u003e#4806\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/99d25bdee231922e73e19525f57a585d1682fab2\"\u003e\u003ccode\u003e99d25bd\u003c/code\u003e\u003c/a\u003e feat(packages): extract icon build logic into \u003ccode\u003e@lucide/shared\u003c/code\u003e (\u003ca href=\"https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/4409\"\u003e#4409\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/75b55160aa9edd7095dfed1a6e3d88e66fb2b153\"\u003e\u003ccode\u003e75b5516\u003c/code\u003e\u003c/a\u003e chore(dev): upgrade ESLint to latest compatible stack (v10) (\u003ca href=\"https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/4378\"\u003e#4378\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/0f8d48b266e7af1e2bab49ff12ab6ec0795ed204\"\u003e\u003ccode\u003e0f8d48b\u003c/code\u003e\u003c/a\u003e test(packages): updates unit test snapshots with face-slightly-smiling (\u003ca href=\"https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/4676\"\u003e#4676\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/f229f83f0c42f46befeac3cfd8ef7aaa82a71325\"\u003e\u003ccode\u003ef229f83\u003c/code\u003e\u003c/a\u003e chore(depedencies): Update dependencies (\u003ca href=\"https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/4553\"\u003e#4553\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/5ff536e1391335e4f7dc38d244c1bc458b9443e2\"\u003e\u003ccode\u003e5ff536e\u003c/code\u003e\u003c/a\u003e ci(release.yml): Fix workflow and remove \u003ccode\u003eversion\u003c/code\u003e scripts in package scripts...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/07c885e6c1f9952965ba388b7fd2bb7c4d416a67\"\u003e\u003ccode\u003e07c885e\u003c/code\u003e\u003c/a\u003e fix(docs): fix zephyr-cloud URL in readmes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/50d8af5a1012e188f3d71ac8f1fc0fba1aab5357\"\u003e\u003ccode\u003e50d8af5\u003c/code\u003e\u003c/a\u003e docs(readme): Update readme files (\u003ca href=\"https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/4320\"\u003e#4320\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/653e44b83293567ff24dcb90ca1094a9cf0a042a\"\u003e\u003ccode\u003e653e44b\u003c/code\u003e\u003c/a\u003e feat(packages): use .mjs for ESM bundles (\u003ca href=\"https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/4285\"\u003e#4285\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lucide-icons/lucide/commit/7623e23f787fe78e5075a613fd22da2cecbb9b1b\"\u003e\u003ccode\u003e7623e23\u003c/code\u003e\u003c/a\u003e feat(docs): add Zephyr Cloud to Hero Backers tier \u0026amp; rework updateSponsors scr...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/lucide-icons/lucide/commits/1.45.0/packages/lucide-react\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for lucide-react since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `react` from 18.3.1 to 19.3.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/react/react/releases\"\u003ereact's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e19.3.0 (September 9, 2026)\u003c/h2\u003e\n\u003cp\u003eBelow is a list of all new features, APIs, and bug fixes.\u003c/p\u003e\n\u003cp\u003eRead the \u003ca href=\"https://react.dev/blog/2026/09/09/react-19-3\"\u003eReact 19.3 release post\u003c/a\u003e for more information.\u003c/p\u003e\n\u003ch2\u003eNew React Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e\u0026lt;ViewTransition /\u0026gt;\u003c/code\u003e: Adds \u003ccode\u003e\u0026lt;ViewTransition /\u0026gt;\u003c/code\u003e and \u003ccode\u003eaddTransitionType\u003c/code\u003e APIs to power View Transition animations in React (\u003ca href=\"https://github.com/sebmarkbage\"\u003e\u003ccode\u003e@​sebmarkbage\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/jackpope\"\u003e\u003ccode\u003e@​jackpope\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/gaearon\"\u003e\u003ccode\u003e@​gaearon\u003c/code\u003e\u003c/a\u003e: \u003ca href=\"https://redirect.github.com/facebook/react/pull/31975\"\u003e#31975\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/31987\"\u003e#31987\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/31996\"\u003e#31996\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/31999\"\u003e#31999\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32001\"\u003e#32001\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32002\"\u003e#32002\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32028\"\u003e#32028\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32029\"\u003e#32029\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32031\"\u003e#32031\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32034\"\u003e#32034\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32038\"\u003e#32038\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32041\"\u003e#32041\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32050\"\u003e#32050\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32090\"\u003e#32090\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32105\"\u003e#32105\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32254\"\u003e#32254\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32379\"\u003e#32379\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32422\"\u003e#32422\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32462\"\u003e#32462\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32540\"\u003e#32540\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32545\"\u003e#32545\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32585\"\u003e#32585\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32599\"\u003e#32599\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32611\"\u003e#32611\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32612\"\u003e#32612\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32617\"\u003e#32617\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32651\"\u003e#32651\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32653\"\u003e#32653\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32656\"\u003e#32656\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32664\"\u003e#32664\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32699\"\u003e#32699\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32723\"\u003e#32723\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32734\"\u003e#32734\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32751\"\u003e#32751\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32752\"\u003e#32752\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32760\"\u003e#32760\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32761\"\u003e#32761\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32764\"\u003e#32764\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32772\"\u003e#32772\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32790\"\u003e#32790\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32819\"\u003e#32819\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32820\"\u003e#32820\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32822\"\u003e#32822\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32833\"\u003e#32833\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32849\"\u003e#32849\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33094\"\u003e#33094\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33191\"\u003e#33191\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33200\"\u003e#33200\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33206\"\u003e#33206\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33293\"\u003e#33293\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33330\"\u003e#33330\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33331\"\u003e#33331\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33332\"\u003e#33332\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33357\"\u003e#33357\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33362\"\u003e#33362\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33433\"\u003e#33433\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33576\"\u003e#33576\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34374\"\u003e#34374\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34450\"\u003e#34450\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34481\"\u003e#34481\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34500\"\u003e#34500\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34502\"\u003e#34502\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34510\"\u003e#34510\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34511\"\u003e#34511\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34539\"\u003e#34539\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35567\"\u003e#35567\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35564\"\u003e#35564\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35485\"\u003e#35485\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35380\"\u003e#35380\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35063\"\u003e#35063\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35060\"\u003e#35060\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34676\"\u003e#34676\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/36917\"\u003e#36917\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35337\"\u003e#35337\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35520\"\u003e#35520\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFragment Refs: Add Refs to \u003ccode\u003e\u0026lt;Fragment /\u0026gt;\u003c/code\u003e to support composable platform behavior (\u003ca href=\"https://github.com/jackpope\"\u003e\u003ccode\u003e@​jackpope\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/sebmarkbage\"\u003e\u003ccode\u003e@​sebmarkbage\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/Dhakshin2007\"\u003e\u003ccode\u003e@​Dhakshin2007\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/chirokas\"\u003e\u003ccode\u003e@​chirokas\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/teamleaderleo\"\u003e\u003ccode\u003e@​teamleaderleo\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/fallintoplace\"\u003e\u003ccode\u003e@​fallintoplace\u003c/code\u003e\u003c/a\u003e: \u003ca href=\"https://redirect.github.com/facebook/react/pull/32465\"\u003e#32465\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32613\"\u003e#32613\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32619\"\u003e#32619\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32654\"\u003e#32654\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32660\"\u003e#32660\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32682\"\u003e#32682\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32722\"\u003e#32722\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32813\"\u003e#32813\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/32814\"\u003e#32814\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33056\"\u003e#33056\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33058\"\u003e#33058\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/33093\"\u003e#33093\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34069\"\u003e#34069\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34103\"\u003e#34103\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34544\"\u003e#34544\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34545\"\u003e#34545\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37062\"\u003e#37062\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37061\"\u003e#37061\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37060\"\u003e#37060\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/36047\"\u003e#36047\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/36010\"\u003e#36010\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35642\"\u003e#35642\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35641\"\u003e#35641\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35637\"\u003e#35637\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/35630\"\u003e#35630\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/34935\"\u003e#34935\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37457\"\u003e#37457\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37408\"\u003e#37408\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37326\"\u003e#37326\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37251\"\u003e#37251\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37171\"\u003e#37171\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37169\"\u003e#37169\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37168\"\u003e#37168\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37167\"\u003e#37167\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37166\"\u003e#37166\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37165\"\u003e#37165\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37164\"\u003e#37164\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37163\"\u003e#37163\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37162\"\u003e#37162\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37161\"\u003e#37161\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37160\"\u003e#37160\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37125\"\u003e#37125\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37063\"\u003e#37063\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew React DOM Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003ebrowser()\u003c/code\u003e: a new \u003ccode\u003ereact-dom\u003c/code\u003e API that returns a usable which errors during server rendering and resolves in the browser. \u003ccode\u003euse(browser())\u003c/code\u003e inside a \u003ccode\u003e\u0026lt;Suspense\u0026gt;\u003c/code\u003e boundary marks a subtree as browser-only without reporting a recoverable error (\u003ca href=\"https://github.com/gnoff\"\u003e\u003ccode\u003e@​gnoff\u003c/code\u003e\u003c/a\u003e: \u003ca href=\"https://redirect.github.com/facebook/react/pull/37143\"\u003e#37143\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37241\"\u003e#37241\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eAdded an \u003ccode\u003eonBrowserBailout\u003c/code\u003e option to the \u003ccode\u003ereact-dom/server\u003c/code\u003e APIs to observe when a subtree defers to the browser (\u003ca href=\"https://github.com/gnoff\"\u003e\u003ccode\u003e@​gnoff\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/37193\"\u003e#37193\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNotable changes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eEnable Trusted Types API integration (\u003ca href=\"https://github.com/rickhanlonii\"\u003e\u003ccode\u003e@​rickhanlonii\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/35816\"\u003e#35816\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTransitions now render independently instead of being entangled into a single render, so a slow transition no longer holds up unrelated ones (\u003ca href=\"https://github.com/acdlite\"\u003e\u003ccode\u003e@​acdlite\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/37290\"\u003e#37290\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdded a DEV-only warning when a component appears to have been unblocked by calling \u003ccode\u003euse()\u003c/code\u003e conditionally (\u003ca href=\"https://github.com/hoxyq\"\u003e\u003ccode\u003e@​hoxyq\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e: \u003ca href=\"https://redirect.github.com/facebook/react/pull/37104\"\u003e#37104\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37203\"\u003e#37203\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/facebook/react/pull/37491\"\u003e#37491\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eAll Changes\u003c/h2\u003e\n\u003ch3\u003eReact\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFast Refresh Fixes\n\u003cul\u003e\n\u003cli\u003eFix Fast Refresh to find and remount edits to components wrapped behind \u003ccode\u003elazy()\u003c/code\u003e (\u003ca href=\"https://github.com/sophiebits\"\u003e\u003ccode\u003e@​sophiebits\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/36965\"\u003e#36965\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix Fast Refresh so edits to a \u003ccode\u003ememo()\u003c/code\u003e comparison function take effect (\u003ca href=\"https://github.com/sophiebits\"\u003e\u003ccode\u003e@​sophiebits\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/36964\"\u003e#36964\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix Fast Refresh crash when an edit changes the kind of a component's type (\u003ca href=\"https://github.com/sophiebits\"\u003e\u003ccode\u003e@​sophiebits\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/36963\"\u003e#36963\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUnify hot reload type resolution for Fast Refresh (\u003ca href=\"https://github.com/sophiebits\"\u003e\u003ccode\u003e@​sophiebits\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/36962\"\u003e#36962\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix Fast Refresh to remount correctly when an edit changes the component kind (\u003ca href=\"https://github.com/sophiebits\"\u003e\u003ccode\u003e@​sophiebits\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/36950\"\u003e#36950\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eDouble invoke effects in StrictMode after Fast Refresh (\u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/35962\"\u003e#35962\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003ePerformance Track Fixes\n\u003cul\u003e\n\u003cli\u003ePrevent crash when accessing \u003ccode\u003e$$typeof\u003c/code\u003e in Performance Tracks (\u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/35679\"\u003e#35679\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eHandle non-string function names in Performance Tracks (\u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/35659\"\u003e#35659\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse minus (\u003ccode\u003e-\u003c/code\u003e) instead of en dash for removed props in Performance Tracks (\u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://redirect.github.com/facebook/react/pull/35649\"\u003e#35649\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eHandle arrays with bigints in deep objects in Performance Tr...\n\n_Description has been truncated_","html_url":"https://github.com/rbcorrales/gestalyze/pull/8","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/rbcorrales%2Fgestalyze/issues/8","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/8/packages"}},{"old_version":"10.4.5","new_version":"10.5.0","update_type":"minor","path":null,"pr_created_at":"2026-09-15T10:19:49.000Z","version_change":"10.4.5 → 10.5.0","issue":{"uuid":"5460615607","node_id":"PR_kwDONFF-Cc8AAAABDlvBFw","number":16,"state":"open","title":"Bump the npm_and_yarn group across 3 directories with 18 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-15T10:19:49.000Z","updated_at":"2026-09-15T10:20:29.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"npm_and_yarn","update_count":18,"packages":[{"name":"webpack","old_version":"5.97.1","new_version":"5.111.0","repository_url":"https://github.com/webpack/webpack"},{"name":"wrangler","old_version":"4.34.0","new_version":"4.59.1","repository_url":"https://github.com/cloudflare/workers-sdk"},{"name":"brace-expansion","old_version":"2.0.1","new_version":"2.1.7","repository_url":"https://github.com/juliangruber/brace-expansion"},{"name":"glob","old_version":"10.4.5","new_version":"10.5.0","repository_url":"https://github.com/isaacs/node-glob"},{"name":"glob","old_version":"11.0.0","new_version":"11.1.0","repository_url":"https://github.com/isaacs/node-glob"},{"name":"minimatch","old_version":"9.0.5","new_version":"9.0.9","repository_url":"https://github.com/isaacs/minimatch"},{"name":"minimatch","old_version":"5.1.6","new_version":"5.1.9","repository_url":"https://github.com/isaacs/minimatch"},{"name":"js-yaml","old_version":"4.1.0","new_version":"4.3.2","repository_url":"https://github.com/nodeca/js-yaml"},{"name":"picomatch","old_version":"2.3.1","new_version":"2.3.2","repository_url":"https://github.com/micromatch/picomatch"},{"name":"serialize-javascript","old_version":"6.0.2","new_version":"7.1.1","repository_url":"https://github.com/yahoo/serialize-javascript"},{"name":"ws","old_version":"8.18.0","new_version":"8.21.0","repository_url":"https://github.com/websockets/ws"}],"path":null,"ecosystem":"npm"},"body":"Bumps the npm_and_yarn group with 9 updates in the /api directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [webpack](https://github.com/webpack/webpack) | `5.97.1` | `5.111.0` |\n| [wrangler](https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler) | `4.34.0` | `4.59.1` |\n| [brace-expansion](https://github.com/juliangruber/brace-expansion) | `2.0.1` | `2.1.7` |\n| [glob](https://github.com/isaacs/node-glob) | `10.4.5` | `10.5.0` |\n| [glob](https://github.com/isaacs/node-glob) | `11.0.0` | `11.1.0` |\n| [minimatch](https://github.com/isaacs/minimatch) | `9.0.5` | `9.0.9` |\n| [minimatch](https://github.com/isaacs/minimatch) | `5.1.6` | `5.1.9` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `4.1.0` | `4.3.2` |\n| [picomatch](https://github.com/micromatch/picomatch) | `2.3.1` | `2.3.2` |\n| [serialize-javascript](https://github.com/yahoo/serialize-javascript) | `6.0.2` | `7.1.1` |\n| [ws](https://github.com/websockets/ws) | `8.18.0` | `8.21.0` |\n\nBumps the npm_and_yarn group with 8 updates in the /scraper directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [brace-expansion](https://github.com/juliangruber/brace-expansion) | `2.0.1` | `2.1.7` |\n| [glob](https://github.com/isaacs/node-glob) | `10.4.5` | `10.5.0` |\n| [minimatch](https://github.com/isaacs/minimatch) | `9.0.5` | `9.0.9` |\n| [minimatch](https://github.com/isaacs/minimatch) | `5.1.6` | `5.1.9` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `4.1.0` | `4.3.2` |\n| [picomatch](https://github.com/micromatch/picomatch) | `2.3.1` | `2.3.2` |\n| [serialize-javascript](https://github.com/yahoo/serialize-javascript) | `6.0.2` | `7.1.1` |\n| [undici](https://github.com/nodejs/undici) | `6.21.3` | `6.28.1` |\n| [form-data](https://github.com/form-data/form-data) | `4.0.4` | `4.0.6` |\n\nBumps the npm_and_yarn group with 7 updates in the /web directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [browserslist](https://github.com/browserslist/browserslist) | `4.23.3` | `4.28.9` |\n| [js-yaml](https://github.com/nodeca/js-yaml) | `4.1.0` | `4.3.2` |\n| [picomatch](https://github.com/micromatch/picomatch) | `2.3.1` | `2.3.2` |\n| [postcss](https://github.com/postcss/postcss) | `8.4.49` | `8.5.28` |\n| [@parcel/reporter-dev-server](https://github.com/parcel-bundler/parcel) | `2.13.3` | `2.16.4` |\n| [postcss-selector-parser](https://github.com/postcss/postcss-selector-parser) | `6.1.2` | `6.1.4` |\n| [svgo](https://github.com/svg/svgo) | `3.3.2` | `3.3.5` |\n\n\nUpdates `webpack` from 5.97.1 to 5.111.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/webpack/webpack/releases\"\u003ewebpack's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.111.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eEnable \u003ccode\u003eoutput.module\u003c/code\u003e by default with \u003ccode\u003efutureDefaults\u003c/code\u003e on ESM-capable targets. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22088\"\u003e#22088\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eRemove \u003ccode\u003eexperiments.outputModule\u003c/code\u003e, set \u003ccode\u003eoutput.module\u003c/code\u003e to emit ESM instead. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22011\"\u003e#22011\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eoutput.copy\u003c/code\u003e to copy files and directories into the output directory. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21938\"\u003e#21938\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAccept a file URL in any spelling Node reads where an absolute path is taken. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22012\"\u003e#22012\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMinify inline CSS and JSON via \u003ccode\u003erenderEmbeddedSource\u003c/code\u003e, exporting webpack's own. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21993\"\u003e#21993\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eExport \u003ccode\u003ecssMinify\u003c/code\u003e and \u003ccode\u003ehtmlMinify\u003c/code\u003e on \u003ccode\u003ecss.syntax\u003c/code\u003e and \u003ccode\u003ehtml.syntax\u003c/code\u003e. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21953\"\u003e#21953\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMake \u003ccode\u003eprocessResult\u003c/code\u003e async and let a tap rename the asset it rewrote. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21854\"\u003e#21854\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eLower a CSS spelling a target cannot read and write a color fallback before one. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21926\"\u003e#21926\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAllow optional filesystem cache build dependencies. (by \u003ca href=\"https://github.com/xiaoxiaojx\"\u003e\u003ccode\u003e@​xiaoxiaojx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21849\"\u003e#21849\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eoutput.environment.topLevelAwait\u003c/code\u003e and await every async ESM entry. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21915\"\u003e#21915\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eunusedSymbols\u003c/code\u003e and \u003ccode\u003epseudoClasses\u003c/code\u003e, and evaluate a CSS color function. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21927\"\u003e#21927\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDrop an implied shorthand slot, fold a math function, tighten color conversion. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21929\"\u003e#21929\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003emodule.parser.javascript.specNamespaceObject\u003c/code\u003e for spec namespace objects. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22049\"\u003e#22049\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDrop what is already said or only a gone engine reads, add \u003ccode\u003elowerUnsupported\u003c/code\u003e. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21931\"\u003e#21931\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003enormalizeUrlAttributes\u003c/code\u003e, \u003ccode\u003emergeScripts\u003c/code\u003e, boolean and token switches. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21960\"\u003e#21960\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMinify an event handler attribute, and name the production each script body is. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21968\"\u003e#21968\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd source-map, asset, module, bailout, federation hints; group config checks. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21961\"\u003e#21961\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eLower CSS nesting, \u003ccode\u003e:dir()\u003c/code\u003e and custom at-rules; gate case folding and escapes. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21950\"\u003e#21950\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eoptimization.minimize.css.mergeDistantRules\u003c/code\u003e to join rules across a gap. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21969\"\u003e#21969\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eMinify an embedded body through the embedded path, dropping three html options. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21936\"\u003e#21936\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eTake a minified \u003ccode\u003estyle\u003c/code\u003e attribute's answer whatever quoting it needs. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21936\"\u003e#21936\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eName chunk imports in the chunk loader, not at each import site. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22076\"\u003e#22076\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eRepair hashed names; under HMR bake hashed url maps and reload moved css names. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21916\"\u003e#21916\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/webpack/webpack/blob/main/CHANGELOG.md\"\u003ewebpack's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.111.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eEnable \u003ccode\u003eoutput.module\u003c/code\u003e by default with \u003ccode\u003efutureDefaults\u003c/code\u003e on ESM-capable targets. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22088\"\u003e#22088\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eRemove \u003ccode\u003eexperiments.outputModule\u003c/code\u003e, set \u003ccode\u003eoutput.module\u003c/code\u003e to emit ESM instead. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22011\"\u003e#22011\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eoutput.copy\u003c/code\u003e to copy files and directories into the output directory. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21938\"\u003e#21938\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAccept a file URL in any spelling Node reads where an absolute path is taken. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22012\"\u003e#22012\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMinify inline CSS and JSON via \u003ccode\u003erenderEmbeddedSource\u003c/code\u003e, exporting webpack's own. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21993\"\u003e#21993\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eExport \u003ccode\u003ecssMinify\u003c/code\u003e and \u003ccode\u003ehtmlMinify\u003c/code\u003e on \u003ccode\u003ecss.syntax\u003c/code\u003e and \u003ccode\u003ehtml.syntax\u003c/code\u003e. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21953\"\u003e#21953\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMake \u003ccode\u003eprocessResult\u003c/code\u003e async and let a tap rename the asset it rewrote. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21854\"\u003e#21854\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eLower a CSS spelling a target cannot read and write a color fallback before one. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21926\"\u003e#21926\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAllow optional filesystem cache build dependencies. (by \u003ca href=\"https://github.com/xiaoxiaojx\"\u003e\u003ccode\u003e@​xiaoxiaojx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21849\"\u003e#21849\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eoutput.environment.topLevelAwait\u003c/code\u003e and await every async ESM entry. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21915\"\u003e#21915\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eunusedSymbols\u003c/code\u003e and \u003ccode\u003epseudoClasses\u003c/code\u003e, and evaluate a CSS color function. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21927\"\u003e#21927\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDrop an implied shorthand slot, fold a math function, tighten color conversion. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21929\"\u003e#21929\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003emodule.parser.javascript.specNamespaceObject\u003c/code\u003e for spec namespace objects. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22049\"\u003e#22049\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDrop what is already said or only a gone engine reads, add \u003ccode\u003elowerUnsupported\u003c/code\u003e. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21931\"\u003e#21931\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003enormalizeUrlAttributes\u003c/code\u003e, \u003ccode\u003emergeScripts\u003c/code\u003e, boolean and token switches. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21960\"\u003e#21960\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMinify an event handler attribute, and name the production each script body is. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21968\"\u003e#21968\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd source-map, asset, module, bailout, federation hints; group config checks. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21961\"\u003e#21961\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eLower CSS nesting, \u003ccode\u003e:dir()\u003c/code\u003e and custom at-rules; gate case folding and escapes. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21950\"\u003e#21950\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd \u003ccode\u003eoptimization.minimize.css.mergeDistantRules\u003c/code\u003e to join rules across a gap. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21969\"\u003e#21969\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eMinify an embedded body through the embedded path, dropping three html options. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21936\"\u003e#21936\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eTake a minified \u003ccode\u003estyle\u003c/code\u003e attribute's answer whatever quoting it needs. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/21936\"\u003e#21936\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eName chunk imports in the chunk loader, not at each import site. (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/webpack/webpack/pull/22076\"\u003e#22076\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/92561183fc7cf44dce57f9d05b4819ba7693c961\"\u003e\u003ccode\u003e9256118\u003c/code\u003e\u003c/a\u003e chore(release): new release (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/21914\"\u003e#21914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/3ef9663a5a10715e1923893adecd779a34c510f8\"\u003e\u003ccode\u003e3ef9663\u003c/code\u003e\u003c/a\u003e refactor: consolidate getter and value format of export fragment (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22100\"\u003e#22100\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/aff7c4c258e745f16446121d3b55ef52cc1b5a9d\"\u003e\u003ccode\u003eaff7c4c\u003c/code\u003e\u003c/a\u003e perf: emit less chunk-loading runtime (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22094\"\u003e#22094\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/e954b8113f051305bebbbe5ad4b0f60ddc3ef540\"\u003e\u003ccode\u003ee954b81\u003c/code\u003e\u003c/a\u003e build(html): sweep the HTML printer for spelling-dependent output (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22097\"\u003e#22097\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/da4ad136424eed8d330f6aa3e1801e6f9b4299b3\"\u003e\u003ccode\u003eda4ad13\u003c/code\u003e\u003c/a\u003e fix(css): replace a \u003ca href=\"https://github.com/value\"\u003e\u003ccode\u003e@​value\u003c/code\u003e\u003c/a\u003e named in an at-rule prelude only once (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22036\"\u003e#22036\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/df7284080ab10780c52a203357e049b155ff14de\"\u003e\u003ccode\u003edf72840\u003c/code\u003e\u003c/a\u003e perf(runtime): test the spec namespace cache slot for truthiness (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22098\"\u003e#22098\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/4c80c99d10702bc4f0aad2ae66039ce5c0c2d819\"\u003e\u003ccode\u003e4c80c99\u003c/code\u003e\u003c/a\u003e fix(html): minify an attribute by what it says, not how it was spelled (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22095\"\u003e#22095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/f6fd097598951d38e479ea3106be05e294828ca9\"\u003e\u003ccode\u003ef6fd097\u003c/code\u003e\u003c/a\u003e fix: release stale compilation data from nested children and idle watches (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/2\"\u003e#2\u003c/a\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/55c9808be06358c04c6547b16b83ef1a4a0175f5\"\u003e\u003ccode\u003e55c9808\u003c/code\u003e\u003c/a\u003e refactor(js): own the ECMAScript parser and drop the acorn dependency (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22042\"\u003e#22042\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webpack/webpack/commit/e1ab6f2e8eecb429daf6735773ee7d4f5c184cae\"\u003e\u003ccode\u003ee1ab6f2\u003c/code\u003e\u003c/a\u003e fix(html): escape a text run the tag after it would fuse with (\u003ca href=\"https://redirect.github.com/webpack/webpack/issues/22086\"\u003e#22086\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/webpack/webpack/compare/v5.97.1...v5.111.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for webpack since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `wrangler` from 4.34.0 to 4.59.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/37a86071615a67ceaa4565f177642e9c69768168\"\u003e\u003ccode\u003e37a8607\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11890\"\u003e#11890\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/99b1f328a9afe181b49f1114ed47f15f6d25f0be\"\u003e\u003ccode\u003e99b1f32\u003c/code\u003e\u003c/a\u003e fix: execute git commands in pages deploy safely (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11889\"\u003e#11889\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/e98c95aa22938f5ab6c3c1befe91350b9dc2ba0c\"\u003e\u003ccode\u003ee98c95a\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11836\"\u003e#11836\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/ad65efa73ae8b666e1669964ccacc2680b12c853\"\u003e\u003ccode\u003ead65efa\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003e--check\u003c/code\u003e flag to \u003ccode\u003ewrangler types\u003c/code\u003e (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11852\"\u003e#11852\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/beb96af470aefaae73237309244cf7369b329ff0\"\u003e\u003ccode\u003ebeb96af\u003c/code\u003e\u003c/a\u003e feat(unenv-preset): add support for native node:sqlite module (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11841\"\u003e#11841\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/b0e54b26f261234ec47dcc673a5240734ba03fcc\"\u003e\u003ccode\u003eb0e54b2\u003c/code\u003e\u003c/a\u003e [wrangler] Add AI agent detection to analytics events (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11820\"\u003e#11820\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/2203af44331dd80d93ff412f1b9dbd1b6f2edf9c\"\u003e\u003ccode\u003e2203af4\u003c/code\u003e\u003c/a\u003e Add Node.js 24 and 25 compatibility to the test suites for Miniflare, Wrangle...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/b6148ed733f6d6873261df5ae61e71c475ba8a8d\"\u003e\u003ccode\u003eb6148ed\u003c/code\u003e\u003c/a\u003e chore(deps): bump the workerd-and-workers-types group with 2 updates (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11872\"\u003e#11872\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/0eb973deb57b8d8b9bb2fe4e5cb471fabab51bac\"\u003e\u003ccode\u003e0eb973d\u003c/code\u003e\u003c/a\u003e Do not warn user when using a redirected config that came from a config with ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cloudflare/workers-sdk/commit/0f8d69d31071abeb567aa3c8478492536b5740fb\"\u003e\u003ccode\u003e0f8d69d\u003c/code\u003e\u003c/a\u003e containers: users can set multiple tiers for constraints (\u003ca href=\"https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler/issues/11755\"\u003e#11755\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/cloudflare/workers-sdk/commits/wrangler@4.59.1/packages/wrangler\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for wrangler since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `brace-expansion` from 2.0.1 to 2.1.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/juliangruber/brace-expansion/releases\"\u003ebrace-expansion's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.1.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBackport v5.0.6 change to v2 (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/109\"\u003e#109\u003c/a\u003e)  c3a817c\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.1.0...v2.1.1\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v2.1.0...v2.1.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.0.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003epkg: publish on tag 2.x  14f1d91\u003c/li\u003e\n\u003cli\u003efmt  ed7780a\u003c/li\u003e\n\u003cli\u003eFix potential ReDoS Vulnerability or Inefficient Regular Expression (\u003ca href=\"https://redirect.github.com/juliangruber/brace-expansion/issues/65\"\u003e#65\u003c/a\u003e)  36603d5\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.0.1...v2.0.2\"\u003ehttps://github.com/juliangruber/brace-expansion/compare/v2.0.1...v2.0.2\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/714b6228a5878cfc6b07dc319db0eb6376ab2c4d\"\u003e\u003ccode\u003e714b622\u003c/code\u003e\u003c/a\u003e 2.1.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/bdff773f98e5988616b7039cc9b508df5d640b22\"\u003e\u003ccode\u003ebdff773\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/5a5c07b25ea84a899322ebb820336260277cbe90\"\u003e\u003ccode\u003e5a5c07b\u003c/code\u003e\u003c/a\u003e 2.1.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/6463f2fd6a31f97a09c2f827513a7faaf96bde33\"\u003e\u003ccode\u003e6463f2f\u003c/code\u003e\u003c/a\u003e update lockfile\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1ba3c71f89fb3448c8be6dcf2d17b543c2738f16\"\u003e\u003ccode\u003e1ba3c71\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/aae3387e0d4c551480c963f1241abd3a80a279e6\"\u003e\u003ccode\u003eaae3387\u003c/code\u003e\u003c/a\u003e 2.1.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/5171e681c0922b7ae8bfaf9a331e309107be6edc\"\u003e\u003ccode\u003e5171e68\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/b25213dff0446d622f97d736420b9830ee1abc32\"\u003e\u003ccode\u003eb25213d\u003c/code\u003e\u003c/a\u003e 2.1.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/1e30c930238d7162802d88a94189182def178dac\"\u003e\u003ccode\u003e1e30c93\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangruber/brace-expansion/commit/878df3989e816dfb28cbe0d64de0b88738ff0ed6\"\u003e\u003ccode\u003e878df39\u003c/code\u003e\u003c/a\u003e 2.1.3\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/juliangruber/brace-expansion/compare/v2.0.1...v2.1.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `browserslist` from 4.24.2 to 4.28.9\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/browserslist/browserslist/releases\"\u003ebrowserslist's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.28.9\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImprove \u003ccode\u003eor\u003c/code\u003e parsing performance (by \u003ca href=\"https://github.com/NotAFlightRisk\"\u003e\u003ccode\u003e@​NotAFlightRisk\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eincluding kaios\u003c/code\u003e in baseline queries (by \u003ca href=\"https://github.com/Jaybhade\"\u003e\u003ccode\u003e@​Jaybhade\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.7\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImproved parsing performance.\u003c/li\u003e\n\u003cli\u003eFixed unbounded memory growth (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed prototype write issue (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed Electron version queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003e\u0026gt;\u003c/code\u003e and \u003ccode\u003e\u0026gt;=\u003c/code\u003e queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eSyntaxError\u003c/code\u003e regression of 4.28.3.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed baseline query case-insensitivity (by \u003ca href=\"https://github.com/swwind\"\u003e\u003ccode\u003e@​swwind\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix prototype pollution (by \u003ca href=\"https://github.com/chluo1997\"\u003e\u003ccode\u003e@​chluo1997\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemoved Baseline warning since we have it own warning.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.27.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003eBROWSERSLIST_TRACE_WARNING\u003c/code\u003e environment variable.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.26.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003ethrowOnMissing\u003c/code\u003e with \u003ccode\u003eextends\u003c/code\u003e query (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.26.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003ebaseline-browser-mapping\u003c/code\u003e version requirement.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.26.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated Firefox ESR.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.26.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded Baseline queries (by \u003ca href=\"https://github.com/tonypconway\"\u003e\u003ccode\u003e@​tonypconway\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.25.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed Windows support for custom stats (by \u003ca href=\"https://github.com/torgeilo\"\u003e\u003ccode\u003e@​torgeilo\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.25.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed ReDoS (by \u003ca href=\"https://github.com/ericcornelissen\"\u003e\u003ccode\u003e@​ericcornelissen\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/browserslist/browserslist/blob/main/CHANGELOG.md\"\u003ebrowserslist's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.28.9\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImproved \u003ccode\u003eor\u003c/code\u003e parsing performance (by \u003ca href=\"https://github.com/NotAFlightRisk\"\u003e\u003ccode\u003e@​NotAFlightRisk\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eincluding kaios\u003c/code\u003e in baseline queries (by \u003ca href=\"https://github.com/Jaybhade\"\u003e\u003ccode\u003e@​Jaybhade\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.7\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImproved parsing performance.\u003c/li\u003e\n\u003cli\u003eFixed unbounded memory growth (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed prototype write issue (by \u003ca href=\"https://github.com/alanturing881\"\u003e\u003ccode\u003e@​alanturing881\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed Electron version queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003e\u0026gt;\u003c/code\u003e and \u003ccode\u003e\u0026gt;=\u003c/code\u003e queries (by \u003ca href=\"https://github.com/spokodev\"\u003e\u003ccode\u003e@​spokodev\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003eSyntaxError\u003c/code\u003e regression of 4.28.3.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed baseline query case-insensitivity (by \u003ca href=\"https://github.com/swwind\"\u003e\u003ccode\u003e@​swwind\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix prototype pollution (by \u003ca href=\"https://github.com/chluo1997\"\u003e\u003ccode\u003e@​chluo1997\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.28.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemoved Baseline warning since we have it own warning.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.48.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003efirefox \u0026gt;= esr\u003c/code\u003e query support (by \u003ca href=\"https://github.com/SethFalco\"\u003e\u003ccode\u003e@​SethFalco\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed docs (by \u003ca href=\"https://github.com/SethFalco\"\u003e\u003ccode\u003e@​SethFalco\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.27.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003eBROWSERSLIST_TRACE_WARNING\u003c/code\u003e environment variable.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.26.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003ethrowOnMissing\u003c/code\u003e with \u003ccode\u003eextends\u003c/code\u003e query (by \u003ca href=\"https://github.com/alexander-akait\"\u003e\u003ccode\u003e@​alexander-akait\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/12ed5252dabc14fee4e97b465894b2f90910ca62\"\u003e\u003ccode\u003e12ed525\u003c/code\u003e\u003c/a\u003e Release 4.28.9 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/b1d8cf9d7a7dc76f6585425a8360218289194297\"\u003e\u003ccode\u003eb1d8cf9\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/21517b651c915cdbbfb8c122268bc36f5cabb7ef\"\u003e\u003ccode\u003e21517b6\u003c/code\u003e\u003c/a\u003e Improve \u003ccode\u003eor\u003c/code\u003e parsing performance\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/f2f2e6cfb01bb4942941d328737546f4e2ae41ad\"\u003e\u003ccode\u003ef2f2e6c\u003c/code\u003e\u003c/a\u003e Release 4.28.8 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/d0787c88fa29ba895fea51cfe921232c7b5d1377\"\u003e\u003ccode\u003ed0787c8\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/fcf8fa9857b30ccdf801a548f5d09d3c4ff0d43f\"\u003e\u003ccode\u003efcf8fa9\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/browserslist/browserslist/issues/939\"\u003e#939\u003c/a\u003e from Jaybhade/fix/baseline-kaios-without-downstream\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/57ecd64454e9252afdd6a7e76926e13dda48a38c\"\u003e\u003ccode\u003e57ecd64\u003c/code\u003e\u003c/a\u003e fix: support \u0026quot;including kaios\u0026quot; without downstream\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/093a0f67bb0becda55235d767b134df3197c54a1\"\u003e\u003ccode\u003e093a0f6\u003c/code\u003e\u003c/a\u003e Update EM banner\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/b637868045806d2fba4c24eb0060e4cc8b1db276\"\u003e\u003ccode\u003eb637868\u003c/code\u003e\u003c/a\u003e Release 4.28.7 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/browserslist/browserslist/commit/313f4659b9f985ade89d1d6a54a860371c41cc46\"\u003e\u003ccode\u003e313f465\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/browserslist/browserslist/compare/4.23.3...4.28.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for browserslist since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `glob` from 10.4.5 to 10.5.0\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.4.5...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `glob` from 11.0.0 to 11.1.0\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/56774ef73b495eb0b17cdd0f42921f5ef62297c1\"\u003e\u003ccode\u003e56774ef\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/1e4e297342a09f2aa0ced87fcd4a70ddc325d75f\"\u003e\u003ccode\u003e1e4e297\u003c/code\u003e\u003c/a\u003e bin: Do not expose filenames to shell expansion\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v10.4.5...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `minimatch` from 9.0.5 to 9.0.9\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/8a10e473e2e0ff03c2d4de308f257093af2bce21\"\u003e\u003ccode\u003e8a10e47\u003c/code\u003e\u003c/a\u003e 9.0.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/c6f180636cebd4de2f9af7ef29ca4c9bf2eeef02\"\u003e\u003ccode\u003ec6f1806\u003c/code\u003e\u003c/a\u003e brace-expansion@2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/446cfa3e2aa3ef45bd4a27fa4418221e158489f6\"\u003e\u003ccode\u003e446cfa3\u003c/code\u003e\u003c/a\u003e 9.0.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/8fa151ab95fd4e2acd6e1a81f10d02dc7c1098d3\"\u003e\u003ccode\u003e8fa151a\u003c/code\u003e\u003c/a\u003e docs: add warning about ReDoS\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/71b78a2a4cad3a40af08a39c065e71bbf69ea7f7\"\u003e\u003ccode\u003e71b78a2\u003c/code\u003e\u003c/a\u003e fix partial matching of globstar patterns\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/2de496f6d9362dd92460f35ffa6ff8de2907244b\"\u003e\u003ccode\u003e2de496f\u003c/code\u003e\u003c/a\u003e 9.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/0d4616de9193bf1d359271662e92657bb51b2f75\"\u003e\u003ccode\u003e0d4616d\u003c/code\u003e\u003c/a\u003e limit nested extglob recursion, flatten extglobs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/7117ef381e74deace1c62a74d2298c8fe61d10ca\"\u003e\u003ccode\u003e7117ef3\u003c/code\u003e\u003c/a\u003e 9.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/2418458b7fe82e0a1fd1a1b6f618c41c90b9848a\"\u003e\u003ccode\u003e2418458\u003c/code\u003e\u003c/a\u003e update deps, do not checkin dist\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/1d1f531009d5e4a86083de37e5ef3f301e073986\"\u003e\u003ccode\u003e1d1f531\u003c/code\u003e\u003c/a\u003e update deps\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/minimatch/compare/v9.0.5...v9.0.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `minimatch` from 5.1.6 to 5.1.9\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/8a10e473e2e0ff03c2d4de308f257093af2bce21\"\u003e\u003ccode\u003e8a10e47\u003c/code\u003e\u003c/a\u003e 9.0.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/c6f180636cebd4de2f9af7ef29ca4c9bf2eeef02\"\u003e\u003ccode\u003ec6f1806\u003c/code\u003e\u003c/a\u003e brace-expansion@2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/446cfa3e2aa3ef45bd4a27fa4418221e158489f6\"\u003e\u003ccode\u003e446cfa3\u003c/code\u003e\u003c/a\u003e 9.0.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/8fa151ab95fd4e2acd6e1a81f10d02dc7c1098d3\"\u003e\u003ccode\u003e8fa151a\u003c/code\u003e\u003c/a\u003e docs: add warning about ReDoS\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/71b78a2a4cad3a40af08a39c065e71bbf69ea7f7\"\u003e\u003ccode\u003e71b78a2\u003c/code\u003e\u003c/a\u003e fix partial matching of globstar patterns\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/2de496f6d9362dd92460f35ffa6ff8de2907244b\"\u003e\u003ccode\u003e2de496f\u003c/code\u003e\u003c/a\u003e 9.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/0d4616de9193bf1d359271662e92657bb51b2f75\"\u003e\u003ccode\u003e0d4616d\u003c/code\u003e\u003c/a\u003e limit nested extglob recursion, flatten extglobs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/7117ef381e74deace1c62a74d2298c8fe61d10ca\"\u003e\u003ccode\u003e7117ef3\u003c/code\u003e\u003c/a\u003e 9.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/2418458b7fe82e0a1fd1a1b6f618c41c90b9848a\"\u003e\u003ccode\u003e2418458\u003c/code\u003e\u003c/a\u003e update deps, do not checkin dist\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/minimatch/commit/1d1f531009d5e4a86083de37e5ef3f301e073986\"\u003e\u003ccode\u003e1d1f531\u003c/code\u003e\u003c/a\u003e update deps\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/minimatch/compare/v9.0.5...v9.0.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `js-yaml` from 4.1.0 to 4.3.2\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/nodeca/js-yaml/blob/4.3.2/CHANGELOG.md\"\u003ejs-yaml's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.3.2 - 2026-08-26\u003c/h2\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Hard-limit merge sequence size to 100.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Count empty mappings in merge sequences toward \u003ccode\u003emaxTotalMergeKeys\u003c/code\u003e\nto limit CPU usage, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/797\"\u003e#797\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.3.1 - 2026-07-31\u003c/h2\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Remove quadratic complexity from \u003ccode\u003e!!omap\u003c/code\u003e duplicate key detection.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.3.0 - 2026-06-27\u003c/h2\u003e\n\u003ch3\u003eAdded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] Added \u003ccode\u003emaxTotalMergeKeys\u003c/code\u003e (10000) loader option to limit the total number of\nkeys processed by YAML merge (\u003ccode\u003e\u0026lt;\u0026lt;\u003c/code\u003e) across one \u003ccode\u003eload()\u003c/code\u003e / \u003ccode\u003eloadAll()\u003c/code\u003e call.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eRestore umd builds back to es5.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eRemoved\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[backport] \u003ccode\u003emaxMergeSeqLength\u003c/code\u003e replaced with \u003ccode\u003emaxTotalMergeKeys\u003c/code\u003e for limiting YAML merge\nprocessing.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e[4.2.0] - 2026-06-01\u003c/h2\u003e\n\u003ch3\u003eAdded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003edocs/safety.md\u003c/code\u003e with notes about processing untrusted YAML.\u003c/li\u003e\n\u003cli\u003eAdded \u003ccode\u003emaxDepth\u003c/code\u003e (100) loader option. Not a problem, but gives a better\nexception instead of RangeError on stack overflow.\u003c/li\u003e\n\u003cli\u003eAdded \u003ccode\u003emaxMergeSeqLength\u003c/code\u003e (20) loader option. Not a problem after \u003ccode\u003emerge\u003c/code\u003e fix,\nbut an additional restriction for safety.\u003c/li\u003e\n\u003cli\u003eAdded sourcemaps to \u003ccode\u003edist/\u003c/code\u003e builds.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eStop resolving numbers with underscores as numeric scalars, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/627\"\u003e#627\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eSwitched dev toolchains to Vite / neostandard.\u003c/li\u003e\n\u003cli\u003eUpdated demo.\u003c/li\u003e\n\u003cli\u003eReorganized tests.\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003edist/\u003c/code\u003e files are no longer kept in the repository.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFix parsing of properties on the first implicit block mapping key, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/62\"\u003e#62\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eFix trailing whitespace handling when folding flow scalar lines, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/307\"\u003e#307\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eReject top-level block scalars without content indentation, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/280\"\u003e#280\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eEnsure numbers survive round-trip, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/737\"\u003e#737\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eFix test coverage for issue \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/221\"\u003e#221\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eFix flow scalar trailing whitespace folding, \u003ca href=\"https://redirect.github.com/nodeca/js-yaml/issues/307\"\u003e#307\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/79ca68d90f333fbe6d9e42827527e62636200191\"\u003e\u003ccode\u003e79ca68d\u003c/code\u003e\u003c/a\u003e 4.3.2 released\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/d90b6612a5a84385bdcb556c44578eac76dc0f6b\"\u003e\u003ccode\u003ed90b661\u003c/code\u003e\u003c/a\u003e Backport merge limits from v5.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/86e91b815b8794c3c73a179c1770871e37ec2df8\"\u003e\u003ccode\u003e86e91b8\u003c/code\u003e\u003c/a\u003e 4.3.1 released\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/c3cc4b0bb9ddb9af2dd9b61e0d56f5ce7983cd4a\"\u003e\u003ccode\u003ec3cc4b0\u003c/code\u003e\u003c/a\u003e Backport quadratic complexity fix for !!omap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/33d05b5d29a8c21360f620f7e1c1706e24522eda\"\u003e\u003ccode\u003e33d05b5\u003c/code\u003e\u003c/a\u003e 4.3.0 released\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/663bfab6db2b4a146a9366fd685f069345be4ddb\"\u003e\u003ccode\u003e663bfab\u003c/code\u003e\u003c/a\u003e Drop demo publish, to not override new v5 one.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/1cb8c7b94bf75e15116869c1c0482dcb22785986\"\u003e\u003ccode\u003e1cb8c7b\u003c/code\u003e\u003c/a\u003e Add v4-legacy tag for publish\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/02f27afad532763263cd2b6be35c24ee8e1f6157\"\u003e\u003ccode\u003e02f27af\u003c/code\u003e\u003c/a\u003e Restore umd builds back to es5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/8be84edaf15e7c394fa3b813179d1bcc280e87fb\"\u003e\u003ccode\u003e8be84ed\u003c/code\u003e\u003c/a\u003e Fix es5 compatibility\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodeca/js-yaml/commit/59423c6f8cdc78742ac00e25a4dd39ef16b702e4\"\u003e\u003ccode\u003e59423c6\u003c/code\u003e\u003c/a\u003e Replace \u003ccode\u003emaxMergeSeqLength\u003c/code\u003e option with \u003ccode\u003emaxTotalMergeKeys\u003c/code\u003e (more robust). Ba...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/nodeca/js-yaml/compare/4.1.0...4.3.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `picomatch` from 2.3.1 to 2.3.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/releases\"\u003epicomatch's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.3.2\u003c/h2\u003e\n\u003cp\u003eThis is a security release fixing several security relevant issues.\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: exception when glob pattern contains constructor by \u003ca href=\"https://github.com/Jason3S\"\u003e\u003ccode\u003e@​Jason3S\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003emicromatch/picomatch#144\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix for \u003ca href=\"https://github.com/micromatch/picomatch/security/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\"\u003ehttps://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/micromatch/picomatch/blob/master/CHANGELOG.md\"\u003epicomatch's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.3.2 (2026-03-23)\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAvoided an exception when a glob pattern contains \u003ccode\u003econstructor\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/micromatch/picomatch/pull/144\"\u003e#144\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/3f4f10e\"\u003e3f4f10e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBackported the extglob-quantifier ReDoS fix from 4.0.4. Risky repeated extglobs are now safely rewritten or treated as literals by default; positive numeric \u003ccode\u003emaxExtglobRecursion\u003c/code\u003e values allow limited nesting, while \u003ccode\u003efalse\u003c/code\u003e disables the safeguard (\u003ca href=\"https://github.com/advisories/GHSA-c2c7-rcm5-vvqj\"\u003eCVE-2026-33671\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/eec17ae\"\u003eeec17ae\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003ePrevented inherited object properties from being interpreted as POSIX character classes (\u003ca href=\"https://github.com/advisories/GHSA-3v7f-55p6-f55p\"\u003eCVE-2026-33672\u003c/a\u003e, \u003ca href=\"https://github.com/micromatch/picomatch/commit/fc1f6b6\"\u003efc1f6b6\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/81cba8d4b767cab3cb29d26eb4f691eed75b73b2\"\u003e\u003ccode\u003e81cba8d\u003c/code\u003e\u003c/a\u003e Publish 2.3.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/fc1f6b69006e9435caf8fb40d8aff378bc0b7bce\"\u003e\u003ccode\u003efc1f6b6\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/eec17aee5428a7249e9ca5adbb8a0d28fa29619b\"\u003e\u003ccode\u003eeec17ae\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/78f8ca4362d9e66cadea97b93e292f10096452ed\"\u003e\u003ccode\u003e78f8ca4\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/156\"\u003e#156\u003c/a\u003e from micromatch/backport-144\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/micromatch/picomatch/commit/3f4f10eaa65bf3a52e8f2999674cd27e11fa3c9b\"\u003e\u003ccode\u003e3f4f10e\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/micromatch/picomatch/issues/144\"\u003e#144\u003c/a\u003e from Jason3S/jdent-object-properties\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/micromatch/picomatch/compare/2.3.1...2.3.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `serialize-javascript` from 6.0.2 to 7.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/yahoo/serialize-javascript/releases\"\u003eserialize-javascript's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.1.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: fix XSS bypass via split \u003ccode\u003e\u0026lt;/script\u003c/code\u003e payload across function bodies by \u003ca href=\"https://github.com/okuryu\"\u003e\u003ccode\u003e@​okuryu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/226\"\u003eyahoo/serialize-javascript#226\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease: v7.1.1 by \u003ca href=\"https://github.com/okuryu\"\u003e\u003ccode\u003e@​okuryu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/227\"\u003eyahoo/serialize-javascript#227\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/yahoo/serialize-javascript/compare/v7.1.0...v7.1.1\"\u003ehttps://github.com/yahoo/serialize-javascript/compare/v7.1.0...v7.1.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.1.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add Node.js 26 to test matrix by \u003ca href=\"https://github.com/okuryu\"\u003e\u003ccode\u003e@​okuryu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/224\"\u003eyahoo/serialize-javascript#224\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease: v7.1.0 by \u003ca href=\"https://github.com/okuryu\"\u003e\u003ccode\u003e@​okuryu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/225\"\u003eyahoo/serialize-javascript#225\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/yahoo/serialize-javascript/compare/v7.0.7...v7.1.0\"\u003ehttps://github.com/yahoo/serialize-javascript/compare/v7.0.7...v7.1.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.0.7\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: reject spoofed RegExp objects with non-string source property by \u003ca href=\"https://github.com/redonkulus\"\u003e\u003ccode\u003e@​redonkulus\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/222\"\u003eyahoo/serialize-javascript#222\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease: v7.0.7 by \u003ca href=\"https://github.com/okuryu\"\u003e\u003ccode\u003e@​okuryu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/223\"\u003eyahoo/serialize-javascript#223\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/yahoo/serialize-javascript/compare/v7.0.6...v7.0.7\"\u003ehttps://github.com/yahoo/serialize-javascript/compare/v7.0.6...v7.0.7\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.0.6\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ebuild(deps-dev): bump lodash from 4.17.23 to 4.18.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/215\"\u003eyahoo/serialize-javascript#215\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: reject spoofed URL objects with non-string toString() result by \u003ca href=\"https://github.com/redonkulus\"\u003e\u003ccode\u003e@​redonkulus\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/217\"\u003eyahoo/serialize-javascript#217\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease: v7.0.6 by \u003ca href=\"https://github.com/okuryu\"\u003e\u003ccode\u003e@​okuryu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/221\"\u003eyahoo/serialize-javascript#221\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/yahoo/serialize-javascript/compare/v7.0.5...v7.0.6\"\u003ehttps://github.com/yahoo/serialize-javascript/compare/v7.0.5...v7.0.6\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.0.5\u003c/h2\u003e\n\u003ch3\u003eFixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eImprove robustness and validation for array-like object serialization.\u003c/li\u003e\n\u003cli\u003eFix an issue where certain object structures could lead to excessive CPU usage.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eFor more details, please see GHSA-qj8w-gfj5-8c6v.\u003c/p\u003e\n\u003ch2\u003ev7.0.4\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003erelease: v7.0.4 by \u003ca href=\"https://github.com/okuryu\"\u003e\u003ccode\u003e@​okuryu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/pull/211\"\u003eyahoo/serialize-javascript#211\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/yahoo/serialize-javascript/compare/v7.0.3...v7.0.4\"\u003ehttps://github.com/yahoo/serialize-javascript/compare/v7.0.3...v7.0.4\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.0.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(CVE-2020-7660): fix for RegExp.flags and  Date.prototype.toISOString (\u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/issues/207\"\u003e#207\u003c/a\u003e)  2e609d0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/8c8caa7066a52106fa719c6abb5dc69858c9f799\"\u003e\u003ccode\u003e8c8caa7\u003c/code\u003e\u003c/a\u003e release: v7.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/ffda9f11d946f2d161471340f92ac0b7a7208449\"\u003e\u003ccode\u003effda9f1\u003c/code\u003e\u003c/a\u003e fix: fix XSS bypass via split \u003ccode\u003e\u0026lt;/script\u003c/code\u003e payload across function bodies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/739145a671afd4b81a416e15888f8f5e637d08d6\"\u003e\u003ccode\u003e739145a\u003c/code\u003e\u003c/a\u003e release: v7.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/57865edc0f3ae4fcc3c649bbb135122303519c11\"\u003e\u003ccode\u003e57865ed\u003c/code\u003e\u003c/a\u003e feat: add Node.js 26 to test matrix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/01bec60c108143e69f6b105e443d62a13b61cbbe\"\u003e\u003ccode\u003e01bec60\u003c/code\u003e\u003c/a\u003e release: v7.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/500971592a433239011332b7f0217aa0cb011226\"\u003e\u003ccode\u003e5009715\u003c/code\u003e\u003c/a\u003e fix: reject spoofed RegExp objects with non-string source property\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/153eb437d45310f34f4b8414a4ac1f8658a622dd\"\u003e\u003ccode\u003e153eb43\u003c/code\u003e\u003c/a\u003e release: v7.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/a83d2cb9e04a85726827a23c941f03177018774b\"\u003e\u003ccode\u003ea83d2cb\u003c/code\u003e\u003c/a\u003e fix: reject spoofed URL objects with non-string toString() result\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/451af655bcf055489f39a2629673ae8f67023b90\"\u003e\u003ccode\u003e451af65\u003c/code\u003e\u003c/a\u003e build(deps-dev): bump lodash from 4.17.23 to 4.18.1 (\u003ca href=\"https://redirect.github.com/yahoo/serialize-javascript/issues/215\"\u003e#215\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yahoo/serialize-javascript/commit/df3f1c1fa9ca16b050ae893cb63ac23c91deed55\"\u003e\u003ccode\u003edf3f1c1\u003c/code\u003e\u003c/a\u003e release: v7.0.5\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/yahoo/serialize-javascript/compare/v6.0.2...v7.1.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for serialize-javascript since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `sharp` from 0.33.5 to 0.34.5\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/lovell/sharp/releases\"\u003esharp's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev0.34.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eUpgrade to libvips v8.17.3 for upstream bug fixes.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd experimental support for prebuilt Linux RISC-V 64-bit binaries.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eSupport building from source with npm v12+, deprecate \u003ccode\u003e--build-from-source\u003c/code\u003e flag.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4458\"\u003e#4458\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd support for BigTIFF output.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/pull/4459\"\u003e#4459\u003c/a\u003e\n\u003ca href=\"https://github.com/throwbi\"\u003e\u003ccode\u003e@​throwbi\u003c/code\u003e\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eImprove error messaging when only warnings issued.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4465\"\u003e#4465\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eSimplify ICC processing when retaining input profiles.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4468\"\u003e#4468\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev0.34.5-rc.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eUpgrade to libvips v8.17.3 for upstream bug fixes.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd experimental support for prebuilt Linux RISC-V 64-bit binaries.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eSupport building from source with npm v12+, deprecate \u003ccode\u003e--build-from-source\u003c/code\u003e flag.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4458\"\u003e#4458\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd support for BigTIFF output.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/pull/4459\"\u003e#4459\u003c/a\u003e\n\u003ca href=\"https://github.com/throwbi\"\u003e\u003ccode\u003e@​throwbi\u003c/code\u003e\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eImprove error messaging when only warnings issued.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4465\"\u003e#4465\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eSimplify ICC processing when retaining input profiles.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4468\"\u003e#4468\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev0.34.5-rc.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eUpgrade to libvips v8.17.3 for upstream bug fixes.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd experimental support for prebuilt Linux RISC-V 64-bit binaries.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eSupport building from source with npm v12+, deprecate \u003ccode\u003e--build-from-source\u003c/code\u003e flag.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4458\"\u003e#4458\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdd support for BigTIFF output.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/pull/4459\"\u003e#4459\u003c/a\u003e\n\u003ca href=\"https://github.com/throwbi\"\u003e\u003ccode\u003e@​throwbi\u003c/code\u003e\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eImprove error messaging when only warnings issued.\n\u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4465\"\u003e#4465\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/e0624568686516209c434de2d3c0ef6688f0811d\"\u003e\u003ccode\u003ee062456\u003c/code\u003e\u003c/a\u003e Release v0.34.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/6450c704a686d4205a2c21ddb1d10d5fc28c6c23\"\u003e\u003ccode\u003e6450c70\u003c/code\u003e\u003c/a\u003e Prerelease v0.34.5-rc.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/f7c95d1bf0f24049ee6ee77b21b1c1bb8d181aa2\"\u003e\u003ccode\u003ef7c95d1\u003c/code\u003e\u003c/a\u003e TypeScript: consolidate a few enum-like properties\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/ef86a75560adb40605d3dfc85dc3656a0b88c413\"\u003e\u003ccode\u003eef86a75\u003c/code\u003e\u003c/a\u003e Prerelease v0.34.5-rc.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/6c1e840098ea4a25d833518b30703d9b0af83d32\"\u003e\u003ccode\u003e6c1e840\u003c/code\u003e\u003c/a\u003e Use structured binding for tuples where possible\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/e1628d8ef5033dedde9ed1ddd4dd681e1fc30e1e\"\u003e\u003ccode\u003ee1628d8\u003c/code\u003e\u003c/a\u003e Simplify ICC processing when retaining input profiles \u003ca href=\"https://redirect.github.com/lovell/sharp/issues/4468\"\u003e#4468\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/4f9f8179a6350448a32851e5daf5508d61c727ba\"\u003e\u003ccode\u003e4f9f817\u003c/code\u003e\u003c/a\u003e Linter: apply all recommended biome settings\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/09d5aa8cfa09522ddc67342295cb75ab1d044b09\"\u003e\u003ccode\u003e09d5aa8\u003c/code\u003e\u003c/a\u003e Docs: update internal and libvips doc links\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/040b73ca746f4b8e71950708de4a464c7ba6a188\"\u003e\u003ccode\u003e040b73c\u003c/code\u003e\u003c/a\u003e Upgrade to libvips v8.17.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lovell/sharp/commit/1f2f33d9a7eb8ffba91b8576e49a39df5fdebb76\"\u003e\u003ccode\u003e1f2f33d\u003c/code\u003e\u003c/a\u003e Ensure licensing headers are retained by code bundlers\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/lovell/sharp/compare/v0.33.5...v0.34.5\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for sharp since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version modifies \u003ccode\u003einstall\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `undici` from 7.15.0 to 7.14.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/nodejs/undici/releases\"\u003eundici's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev6.28.1\u003c/h2\u003e\n\u003ch2\u003e⚠️ Security fixes\u003c/h2\u003e\n\u003ch3\u003eHigh severity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-rfgv-xxqx-mfg5\"\u003eGHSA-rfgv-xxqx-mfg5\u003c/a\u003e: a WebSocket server could select a subprotocol when none was requested, causing an uncaught \u003ccode\u003eTypeError\u003c/code\u003e that could terminate the process. Undici now rejects the handshake with protocol error 1002. Fixed by \u003ca href=\"https://github.com/nodejs/undici/commit/2af0faf88b906d3127a360c3ac75164c0f95e5a5\"\u003e2af0faf8\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eMedium severity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-3wwx-pv8p-q78v\"\u003eGHSA-3wwx-pv8p-q78v\u003c/a\u003e: a malformed permessage-deflate payload exceeding the configured decompression limit could emit an unhandled zlib error and terminate the process. Undici now destroys the inflater after reaching the limit. Fixed by \u003ca href=\"https://github.com/nodejs/undici/commit/07c60d9c7099a910451244afe42861bbdbdd974c\"\u003e07c60d9c\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eLow severity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-r53p-7pc4-xj5r\"\u003eGHSA-r53p-7pc4-xj5r\u003c/a\u003e: the retry interceptor could concatenate a resumed response with inconsistent framing into downstream output, enabling response splitting or corruption. Undici now validates \u003ccode\u003eContent-Range\u003c/code\u003e against the original response framing before resuming. Fixed by \u003ca href=\"https://github.com/nodejs/undici/commit/ce31bc824b578008faae5d3350da66c1b5f71548\"\u003ece31bc82\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eperf: reduce EventSourceStream parser allocations (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5032\"\u003e#5032\u003c/a\u003e) by \u003ca href=\"https://github.com/mcollina\"\u003e\u003ccode\u003e@​mcollina\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/nodejs/undici/pull/5647\"\u003enodejs/undici#5647\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[v6.x] perf(h1): drop idle-socket timer floor with a ref'd setImmediate (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5707\"\u003e#5707\u003c/a\u003e) by \u003ca href=\"https://github.com/mcollina\"\u003e\u003ccode\u003e@​mcollina\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/nodejs/undici/pull/5770\"\u003enodejs/undici#5770\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/nodejs/undici/compare/v6.28.0...v6.28.1\"\u003ehttps://github.com/nodejs/undici/compare/v6.28.0...v6.28.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev6.28.0\u003c/h2\u003e\n\u003ch2\u003e⚠️ Security fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-m8rv-5g2x-5cg5\"\u003eGHSA-m8rv-5g2x-5cg5\u003c/a\u003e: a malicious \u003ccode\u003etype\u003c/code\u003e property on a duck-typed blob-like HTTP/1.1 request body could inject CRLF sequences into the generated \u003ccode\u003econtent-type\u003c/code\u003e header. Undici now coerces and validates the value before adding it to the request. Fixed by \u003ca href=\"https://github.com/nodejs/undici/commit/740a0b7c173cb4a83a5b693e96e8f3a116cfc400\"\u003e740a0b7c\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-8xcm-r25x-g524\"\u003eGHSA-8xcm-r25x-g524\u003c/a\u003e: the retry interceptor could expose a stale \u003ccode\u003eContent-Length\u003c/code\u003e after resuming a partial response, potentially causing downstream response desynchronization, hangs, or corruption. Undici now rejects partial responses whose \u003ccode\u003eContent-Length\u003c/code\u003e is inconsistent with \u003ccode\u003eContent-Range\u003c/code\u003e. Fixed by \u003ca href=\"https://github.com/nodejs/undici/commit/cba3a52ac2e7abcc4e656d82af8579ea82c2bb9e\"\u003ecba3a52a\u003c/a\u003e, with corrected fixtures in \u003ca href=\"https://github.com/nodejs/undici/commit/4fd5a0c61e627f928b7003adc4ffe1e55ec63420\"\u003e4fd5a0c6\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-v3r7-h72x-cjcm\"\u003eGHSA-v3r7-h72x-cjcm\u003c/a\u003e: unsanitized \u003ccode\u003edomain\u003c/code\u003e and \u003ccode\u003eunparsed\u003c/code\u003e values passed to \u003ccode\u003esetCookie()\u003c/code\u003e could inject cookie attributes. Undici now validates cookie domains, paths, and unparsed attributes more strictly. Fixed by \u003ca href=\"https://github.com/nodejs/undici/commit/af7484043ee075a6f216da0ad77e1dac55199235\"\u003eaf748404\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-4cwx-7wf7-3272\"\u003eGHSA-4cwx-7wf7-3272\u003c/a\u003e and \u003ca href=\"https://github.com/nodejs/undici/security/advisories/GHSA-jr45-8vmc-qm54\"\u003eGHSA-jr45-8vmc-qm54\u003c/a\u003e affect the cache interceptor in Undici v7 and v8; Undici v6 is not in their affected version ranges.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/nodejs/undici/compare/v6.27.0...v6.28.0\"\u003ehttps://github.com/nodejs/undici/compare/v6.27.0...v6.28.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev6.27.0\u003c/h2\u003e\n\u003ch1\u003e⚠️ Security Release\u003c/h1\u003e\n\u003cp\u003eThis release line addresses \u003cstrong\u003e4 security advisories\u003c/strong\u003e.\u003c/p\u003e\n\u003cblockquote\u003e\n\u003cp\u003e\u003cstrong\u003eAction required:\u003c/strong\u003e Upgrade to \u003cstrong\u003eundici 6.27.0\u003c/strong\u003e or later.\u003c/p\u003e\n\u003cpre lang=\"sh\"\u003e\u003ccode\u003enpm install undici@^6.27.0\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cblockquote\u003e\n\u003cp\u003e\u003cstrong\u003eNote on patched version:\u003c/strong\u003e the v6 fixes shipped in \u003cstrong\u003ev6.27.0\u003c/strong\u003e, not \u003ccode\u003e6.26.0\u003c/code\u003e\n— \u003ccode\u003ev6.26.0\u003c/code\u003e contains only the chunked-EOF fix (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5308\"\u003e#5308\u003c/a\u003e) and the version bump, none\nof the security fixes below.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/ffc8aa0fdd4c54024f384e57784d5047c8b4085a\"\u003e\u003ccode\u003effc8aa0\u003c/code\u003e\u003c/a\u003e Bumped v6.28.1 (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5773\"\u003e#5773\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/3866a3bc4ebaea2c6400db9193c2366072080dc4\"\u003e\u003ccode\u003e3866a3b\u003c/code\u003e\u003c/a\u003e perf(h1): drop idle-socket timer floor with a ref'd setImmediate (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5707\"\u003e#5707\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5770\"\u003e#5770\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/ce31bc824b578008faae5d3350da66c1b5f71548\"\u003e\u003ccode\u003ece31bc8\u003c/code\u003e\u003c/a\u003e fix(retry): validate resumed response framing\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/2af0faf88b906d3127a360c3ac75164c0f95e5a5\"\u003e\u003ccode\u003e2af0faf\u003c/code\u003e\u003c/a\u003e fix(websocket): reject unrequested subprotocols\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/07c60d9c7099a910451244afe42861bbdbdd974c\"\u003e\u003ccode\u003e07c60d9\u003c/code\u003e\u003c/a\u003e fix(websocket): destroy inflater after decompression limit\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/bd90fff2a6e1350ba87e9b70811c5337502d2e39\"\u003e\u003ccode\u003ebd90fff\u003c/code\u003e\u003c/a\u003e perf: reduce EventSourceStream parser allocations (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5032\"\u003e#5032\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5647\"\u003e#5647\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/01a912e49a50c48009ed2639d2a457a6ec26752a\"\u003e\u003ccode\u003e01a912e\u003c/code\u003e\u003c/a\u003e Bumped v6.28.0 (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5591\"\u003e#5591\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/481ecfc3280292ab7eb0abbc4d0139219126f15e\"\u003e\u003ccode\u003e481ecfc\u003c/code\u003e\u003c/a\u003e Use Node 22 and npm 11 to release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/740a0b7c173cb4a83a5b693e96e8f3a116cfc400\"\u003e\u003ccode\u003e740a0b7\u003c/code\u003e\u003c/a\u003e fix: validate blob body content type\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodejs/undici/commit/2698e492ed22c9ec704b5df573d612bdd03f6ca0\"\u003e\u003ccode\u003e2698e49\u003c/code\u003e\u003c/a\u003e fix: validate coerced header values for CRLF (\u003ca href=\"https://redirect.github.com/nodejs/undici/issues/5579\"\u003e#5579\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/nodejs/undici/compare/v6.21.3...v6.28.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for undici since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ws` from 8.18.0 to 8.21.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/websockets/ws/releases\"\u003ews's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.21.0\u003c/h2\u003e\n\u003ch1\u003eFeatures\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eIntroduced the \u003ccode\u003emaxBufferedChunks\u003c/code\u003e and \u003ccode\u003emaxFragments\u003c/code\u003e options (2b2abd45).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eBug fixes\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eFixed a remote memory exhaustion DoS vulnerability (2b2abd45).\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eA high volume of tiny fragments and data chunks could be sent by a peer, using\nmodest network traffic, to crash a \u003ccode\u003ews\u003c/code\u003e server or client due to OOM.\u003c/p\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003eimport { WebSocket, WebSocketServer } from 'ws';\r\n\u003cp\u003econst wss = new WebSocketServer({ port: 0 }, function () {\nconst data = Buffer.alloc(1);\nconst options = { fin: false };\nconst { port } = wss.address();\nconst ws = new WebSocket(\u003ccode\u003ews://localhost:${port}\u003c/code\u003e);\u003c/p\u003e\n\u003cp\u003ews.on('open', function () {\n(function send() {\nws.send(data, options, function (err) {\nif (err) return;\nsend();\n});\n})();\n});\u003c/p\u003e\n\u003cp\u003ews.on('error', console.error);\nws.on('close', function (code, reason) {\nconsole.log(\u003ccode\u003eclient close - code: ${code} reason: ${reason.toString()}\u003c/code\u003e);\n});\n});\u003c/p\u003e\n\u003cp\u003ewss.on('connection', function (ws) {\nws.on('error', console.error);\nws.on('close', function (code, reason) {\nconsole.log(\u003ccode\u003eserver close - code: ${code} reason: ${reason.toString()}\u003c/code\u003e);\n});\n});\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003cp\u003eThe vulnerability was responsibly disclosed and fixed by \u003ca href=\"https://github.com/Nadav0077\"\u003eNadav Magier\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003eIn vulnerable versions, the issue can be mitigated by lowering the value of the\n\u003ccode\u003emaxPayload\u003c/code\u003e option if possible.\u003c/p\u003e\n\u003ch2\u003e8.20.1\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/websockets/ws/commit/bca91adf15677e47dbe4f959653452727be28b94\"\u003e\u003ccode\u003ebca91ad\u003c/code\u003e\u003c/a\u003e [dist] 8.21.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/websockets/ws/co...\n\n_Description has been truncated_","html_url":"https://github.com/lupiter/rageagain/pull/16","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/lupiter%2Frageagain/issues/16","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/16/packages"}},{"old_version":"13.0.0","new_version":"13.0.6","update_type":"patch","path":null,"pr_created_at":"2026-09-15T07:47:31.000Z","version_change":"13.0.0 → 13.0.6","issue":{"uuid":"5459125583","node_id":"PR_kwDOOruz0c8AAAABDkhxVA","number":92,"state":"open","title":"Bump the patch-updates group across 1 directory with 14 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-15T07:47:31.000Z","updated_at":"2026-09-15T07:49:02.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"patch-updates","update_count":14,"packages":[{"name":"@astrojs/check","old_version":"0.9.9","new_version":"0.9.10","repository_url":"https://github.com/withastro/astro"},{"name":"@astrojs/sitemap","old_version":"3.7.3","new_version":"3.7.4","repository_url":"https://github.com/withastro/astro"},{"name":"@astrojs/vercel","old_version":"11.0.2","new_version":"11.0.10","repository_url":"https://github.com/withastro/astro"},{"name":"@iconify-json/material-symbols","old_version":"1.2.50","new_version":"1.2.92","repository_url":"https://github.com/iconify/icon-sets"},{"name":"@tailwindcss/typography","old_version":"0.5.19","new_version":"0.5.20","repository_url":"https://github.com/tailwindlabs/tailwindcss-typography"},{"name":"fast-xml-parser","old_version":"4.5.6","new_version":"4.5.7","repository_url":"https://github.com/NaturalIntelligence/fast-xml-parser"},{"name":"nodemailer","old_version":"8.0.7","new_version":"8.0.11","repository_url":"https://github.com/nodemailer/nodemailer"},{"name":"@types/nodemailer","old_version":"8.0.0","new_version":"8.0.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"sanitize-html","old_version":"2.17.0","new_version":"2.17.7","repository_url":"https://github.com/apostrophecms/apostrophe"},{"name":"@types/sanitize-html","old_version":"2.16.0","new_version":"2.16.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"ua-parser-js","old_version":"2.0.9","new_version":"2.0.10","repository_url":"https://github.com/faisalman/ua-parser-js"},{"name":"@astrojs/ts-plugin","old_version":"1.10.10","new_version":"1.10.11","repository_url":"https://github.com/withastro/astro"},{"name":"cssnano","old_version":"7.1.3","new_version":"7.1.9","repository_url":"https://github.com/cssnano/cssnano"},{"name":"glob","old_version":"13.0.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"}],"path":null,"ecosystem":"npm"},"body":"Bumps the patch-updates group with 14 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@astrojs/check](https://github.com/withastro/astro/tree/HEAD/packages/language-tools/astro-check) | `0.9.9` | `0.9.10` |\n| [@astrojs/sitemap](https://github.com/withastro/astro/tree/HEAD/packages/integrations/sitemap) | `3.7.3` | `3.7.4` |\n| [@astrojs/vercel](https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel) | `11.0.2` | `11.0.10` |\n| [@iconify-json/material-symbols](https://github.com/iconify/icon-sets) | `1.2.50` | `1.2.92` |\n| [@tailwindcss/typography](https://github.com/tailwindlabs/tailwindcss-typography) | `0.5.19` | `0.5.20` |\n| [fast-xml-parser](https://github.com/NaturalIntelligence/fast-xml-parser) | `4.5.6` | `4.5.7` |\n| [nodemailer](https://github.com/nodemailer/nodemailer) | `8.0.7` | `8.0.11` |\n| [@types/nodemailer](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/nodemailer) | `8.0.0` | `8.0.1` |\n| [sanitize-html](https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html) | `2.17.0` | `2.17.7` |\n| [@types/sanitize-html](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/sanitize-html) | `2.16.0` | `2.16.1` |\n| [ua-parser-js](https://github.com/faisalman/ua-parser-js) | `2.0.9` | `2.0.10` |\n| [@astrojs/ts-plugin](https://github.com/withastro/astro/tree/HEAD/packages/language-tools/ts-plugin) | `1.10.10` | `1.10.11` |\n| [cssnano](https://github.com/cssnano/cssnano) | `7.1.3` | `7.1.9` |\n| [glob](https://github.com/isaacs/node-glob) | `13.0.0` | `13.0.6` |\n\n\nUpdates `@astrojs/check` from 0.9.9 to 0.9.10\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/releases\"\u003e@​astrojs/check's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/check\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.9.10\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17447\"\u003e#17447\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/b01a6921cd8be574db2d82a6d2bbde7c7d319295\"\u003e\u003ccode\u003eb01a692\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ocavue\"\u003e\u003ccode\u003e@​ocavue\u003c/code\u003e\u003c/a\u003e! - Update dependency \u003ccode\u003eyargs\u003c/code\u003e to version 18. See the \u003ca href=\"https://github.com/yargs/yargs/releases/tag/v18.0.0\"\u003eyargs changelog\u003c/a\u003e for details.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/blob/main/packages/language-tools/astro-check/CHANGELOG.md\"\u003e@​astrojs/check's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e0.9.10\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17447\"\u003e#17447\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/b01a6921cd8be574db2d82a6d2bbde7c7d319295\"\u003e\u003ccode\u003eb01a692\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ocavue\"\u003e\u003ccode\u003e@​ocavue\u003c/code\u003e\u003c/a\u003e! - Update dependency \u003ccode\u003eyargs\u003c/code\u003e to version 18. See the \u003ca href=\"https://github.com/yargs/yargs/releases/tag/v18.0.0\"\u003eyargs changelog\u003c/a\u003e for details.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/112d3ea14cf997218239fd8a436707e56a3815fb\"\u003e\u003ccode\u003e112d3ea\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/astro-check/issues/17469\"\u003e#17469\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/b01a6921cd8be574db2d82a6d2bbde7c7d319295\"\u003e\u003ccode\u003eb01a692\u003c/code\u003e\u003c/a\u003e chore(deps): update \u003ccode\u003eyargs\u003c/code\u003e to v18 (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/astro-check/issues/17447\"\u003e#17447\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/3652d1cff899be55fc2441c2e0d39f4756d8d960\"\u003e\u003ccode\u003e3652d1c\u003c/code\u003e\u003c/a\u003e chore: merge main into next\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/8062391a97fb2a80f7448f1d5b5ac3a4119d3b23\"\u003e\u003ccode\u003e8062391\u003c/code\u003e\u003c/a\u003e chore(deps): dedupe \u003ccode\u003evite\u003c/code\u003e installations (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/astro-check/issues/16788\"\u003e#16788\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/ce88423b0b16858b1767dd32ed23f3ade1ceeabf\"\u003e\u003ccode\u003ece88423\u003c/code\u003e\u003c/a\u003e Dedupe \u003ccode\u003evite\u003c/code\u003e (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/astro-check/issues/16787\"\u003e#16787\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/b8061a6f0a065752f6947aaf579c56bc0e747715\"\u003e\u003ccode\u003eb8061a6\u003c/code\u003e\u003c/a\u003e refactor: use TypeScript project service in ESLint (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/astro-check/issues/16623\"\u003e#16623\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/5a8cd099fe373f907b8884cd596eee76a8d48952\"\u003e\u003ccode\u003e5a8cd09\u003c/code\u003e\u003c/a\u003e refactor: update tsconfig to use TypeScript project references (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/astro-check/issues/16505\"\u003e#16505\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/withastro/astro/commits/@astrojs/check@0.9.10/packages/language-tools/astro-check\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@astrojs/sitemap` from 3.7.3 to 3.7.4\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/releases\"\u003e@​astrojs/sitemap's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/sitemap\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.7.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17851\"\u003e#17851\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/52d3f56999ecdf92510b2c16ed2a3a4785b9c73a\"\u003e\u003ccode\u003e52d3f56\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/apps/astro-factory\"\u003e\u003ccode\u003e@​astro-factory\u003c/code\u003e\u003c/a\u003e! - Fixes the sitemap outputting a URL with an empty path for the homepage (e.g. \u003ccode\u003ehttps://example.com\u003c/code\u003e instead of \u003ccode\u003ehttps://example.com/\u003c/code\u003e) when \u003ccode\u003etrailingSlash\u003c/code\u003e is set to \u003ccode\u003e\u0026quot;never\u0026quot;\u003c/code\u003e or \u003ccode\u003ebuild.format\u003c/code\u003e is set to \u003ccode\u003e\u0026quot;file\u0026quot;\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/blob/main/packages/integrations/sitemap/CHANGELOG.md\"\u003e@​astrojs/sitemap's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.7.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17851\"\u003e#17851\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/52d3f56999ecdf92510b2c16ed2a3a4785b9c73a\"\u003e\u003ccode\u003e52d3f56\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/apps/astro-factory\"\u003e\u003ccode\u003e@​astro-factory\u003c/code\u003e\u003c/a\u003e! - Fixes the sitemap outputting a URL with an empty path for the homepage (e.g. \u003ccode\u003ehttps://example.com\u003c/code\u003e instead of \u003ccode\u003ehttps://example.com/\u003c/code\u003e) when \u003ccode\u003etrailingSlash\u003c/code\u003e is set to \u003ccode\u003e\u0026quot;never\u0026quot;\u003c/code\u003e or \u003ccode\u003ebuild.format\u003c/code\u003e is set to \u003ccode\u003e\u0026quot;file\u0026quot;\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/2fdf731428aa738d5dcf3041b4e78eb9d036968c\"\u003e\u003ccode\u003e2fdf731\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/sitemap/issues/17849\"\u003e#17849\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/52d3f56999ecdf92510b2c16ed2a3a4785b9c73a\"\u003e\u003ccode\u003e52d3f56\u003c/code\u003e\u003c/a\u003e fix(\u003ccode\u003e@​astrojs/sitemap\u003c/code\u003e): preserve root path \u003ccode\u003e/\u003c/code\u003e in sitemap URLs when trailingSl...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/2bfb179545249786e9f395325c88a9dfef574acb\"\u003e\u003ccode\u003e2bfb179\u003c/code\u003e\u003c/a\u003e chore: simpler package.json types (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/sitemap/issues/17229\"\u003e#17229\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/withastro/astro/commits/@astrojs/sitemap@3.7.4/packages/integrations/sitemap\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@astrojs/vercel` from 11.0.2 to 11.0.10\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/releases\"\u003e@​astrojs/vercel's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/vercel\u003c/code\u003e\u003ca href=\"https://github.com/11\"\u003e\u003ccode\u003e@​11\u003c/code\u003e\u003c/a\u003e.0.10\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17818\"\u003e#17818\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/c0b65811dfa0dafa1aa04b7d6d67fd09250ff8c1\"\u003e\u003ccode\u003ec0b6581\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/florian-lefebvre\"\u003e\u003ccode\u003e@​florian-lefebvre\u003c/code\u003e\u003c/a\u003e! - Updates the development image service to forward every argument it receives to Astro's Sharp service, including the new \u003ccode\u003elogger\u003c/code\u003e parameter\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/vercel\u003c/code\u003e\u003ca href=\"https://github.com/11\"\u003e\u003ccode\u003e@​11\u003c/code\u003e\u003c/a\u003e.0.9\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17450\"\u003e#17450\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/19dae210d42bd22662ee678c173676573b6168f2\"\u003e\u003ccode\u003e19dae21\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ocavue\"\u003e\u003ccode\u003e@​ocavue\u003c/code\u003e\u003c/a\u003e! - Updates dependency \u003ccode\u003e@vercel/analytics\u003c/code\u003e to v2. See the \u003ca href=\"https://github.com/vercel/analytics/releases/tag/v2.0.0\"\u003echangelog\u003c/a\u003e for more details.\nUpdates dependency \u003ccode\u003e@vercel/routing-utils\u003c/code\u003e to v6. See the \u003ca href=\"https://github.com/vercel/vercel/blob/@vercel/routing-utils@6.4.0/packages/routing-utils/CHANGELOG.md#600\"\u003echangelog\u003c/a\u003e for more details.\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [\u003ca href=\"https://github.com/withastro/astro/commit/f8e94585ab6c38e2702ee1e2e540858f72058a40\"\u003e\u003ccode\u003ef8e9458\u003c/code\u003e\u003c/a\u003e]:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​astrojs/internal-helpers\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.11.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/vercel\u003c/code\u003e\u003ca href=\"https://github.com/11\"\u003e\u003ccode\u003e@​11\u003c/code\u003e\u003c/a\u003e.0.8\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17794\"\u003e#17794\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/dd29ce81f5b562f5d0dccdd96e28dade350c5e4c\"\u003e\u003ccode\u003edd29ce8\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/apps/astro-factory\"\u003e\u003ccode\u003e@​astro-factory\u003c/code\u003e\u003c/a\u003e! - Fixes a bug where \u003ccode\u003e@vercel/nft\u003c/code\u003e file tracing silently dropped all dependency files when \u003ccode\u003eoutDir\u003c/code\u003e was configured outside \u003ccode\u003eroot\u003c/code\u003e, causing deployed functions to crash with \u003ccode\u003eERR_MODULE_NOT_FOUND\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/vercel\u003c/code\u003e\u003ca href=\"https://github.com/11\"\u003e\u003ccode\u003e@​11\u003c/code\u003e\u003c/a\u003e.0.7\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17687\"\u003e#17687\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/0a22ff5b7e4600356ccabfe571b7ffdad76064d7\"\u003e\u003ccode\u003e0a22ff5\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/asmyshlyaev177\"\u003e\u003ccode\u003e@​asmyshlyaev177\u003c/code\u003e\u003c/a\u003e! - Fixes \u003ccode\u003emiddlewareMode: 'edge'\u003c/code\u003e not running your middleware when \u003ccode\u003eisr\u003c/code\u003e is also enabled\u003c/p\u003e\n\u003cp\u003ePreviously, enabling both options deployed the edge middleware but never reached it: requests went straight to the ISR function, which skips rendering entirely on a cache hit. Middleware now runs at the edge for ISR-backed routes before the cached response is served, and query strings are preserved when it forwards the request.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/withastro/astro/commit/05763a0884aabb1da78a2749d5bb9d41ae620527\"\u003e\u003ccode\u003e05763a0\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​astrojs/internal-helpers\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.10.4\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/vercel\u003c/code\u003e\u003ca href=\"https://github.com/11\"\u003e\u003ccode\u003e@​11\u003c/code\u003e\u003c/a\u003e.0.6\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17680\"\u003e#17680\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/ce9f1da4867f07206dec720fdab7f1d02112f73e\"\u003e\u003ccode\u003ece9f1da\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/astrobot-houston\"\u003e\u003ccode\u003e@​astrobot-houston\u003c/code\u003e\u003c/a\u003e! - Fixes server islands returning 404 responses in Vercel deployments using \u003ccode\u003eoutput: \u0026quot;static\u0026quot;\u003c/code\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/withastro/astro/commit/8c193f67cce77cf2e41fb702c88ca46f788f1277\"\u003e\u003ccode\u003e8c193f6\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​astrojs/internal-helpers\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.10.3\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/vercel\u003c/code\u003e\u003ca href=\"https://github.com/11\"\u003e\u003ccode\u003e@​11\u003c/code\u003e\u003c/a\u003e.0.5\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17569\"\u003e#17569\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/d1bb7fa0059a04ed8039ce92660c7c07a8b04914\"\u003e\u003ccode\u003ed1bb7fa\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/lazerg\"\u003e\u003ccode\u003e@​lazerg\u003c/code\u003e\u003c/a\u003e! - Prevents \u003ccode\u003eastro build\u003c/code\u003e from crashing with \u003ccode\u003eEEXIST\u003c/code\u003e when \u003ccode\u003e.vercel/output/server/\u003c/code\u003e already exists by creating it with \u003ccode\u003e{ recursive: true }\u003c/code\u003e, matching the sibling \u003ccode\u003estatic/\u003c/code\u003e directory call\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/vercel\u003c/code\u003e\u003ca href=\"https://github.com/11\"\u003e\u003ccode\u003e@​11\u003c/code\u003e\u003c/a\u003e.0.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [\u003ca href=\"https://github.com/withastro/astro/commit/c895b12b99a73f5a9f98d6699452d12c138f8a18\"\u003e\u003ccode\u003ec895b12\u003c/code\u003e\u003c/a\u003e]:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​astrojs/internal-helpers\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.10.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/blob/main/packages/integrations/vercel/CHANGELOG.md\"\u003e@​astrojs/vercel's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e11.0.10\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17818\"\u003e#17818\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/c0b65811dfa0dafa1aa04b7d6d67fd09250ff8c1\"\u003e\u003ccode\u003ec0b6581\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/florian-lefebvre\"\u003e\u003ccode\u003e@​florian-lefebvre\u003c/code\u003e\u003c/a\u003e! - Updates the development image service to forward every argument it receives to Astro's Sharp service, including the new \u003ccode\u003elogger\u003c/code\u003e parameter\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0.9\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17450\"\u003e#17450\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/19dae210d42bd22662ee678c173676573b6168f2\"\u003e\u003ccode\u003e19dae21\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ocavue\"\u003e\u003ccode\u003e@​ocavue\u003c/code\u003e\u003c/a\u003e! - Updates dependency \u003ccode\u003e@vercel/analytics\u003c/code\u003e to v2. See the \u003ca href=\"https://github.com/vercel/analytics/releases/tag/v2.0.0\"\u003echangelog\u003c/a\u003e for more details.\nUpdates dependency \u003ccode\u003e@vercel/routing-utils\u003c/code\u003e to v6. See the \u003ca href=\"https://github.com/vercel/vercel/blob/@vercel/routing-utils@6.4.0/packages/routing-utils/CHANGELOG.md#600\"\u003echangelog\u003c/a\u003e for more details.\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [\u003ca href=\"https://github.com/withastro/astro/commit/f8e94585ab6c38e2702ee1e2e540858f72058a40\"\u003e\u003ccode\u003ef8e9458\u003c/code\u003e\u003c/a\u003e]:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​astrojs/internal-helpers\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.11.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0.8\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17794\"\u003e#17794\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/dd29ce81f5b562f5d0dccdd96e28dade350c5e4c\"\u003e\u003ccode\u003edd29ce8\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/apps/astro-factory\"\u003e\u003ccode\u003e@​astro-factory\u003c/code\u003e\u003c/a\u003e! - Fixes a bug where \u003ccode\u003e@vercel/nft\u003c/code\u003e file tracing silently dropped all dependency files when \u003ccode\u003eoutDir\u003c/code\u003e was configured outside \u003ccode\u003eroot\u003c/code\u003e, causing deployed functions to crash with \u003ccode\u003eERR_MODULE_NOT_FOUND\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0.7\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17687\"\u003e#17687\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/0a22ff5b7e4600356ccabfe571b7ffdad76064d7\"\u003e\u003ccode\u003e0a22ff5\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/asmyshlyaev177\"\u003e\u003ccode\u003e@​asmyshlyaev177\u003c/code\u003e\u003c/a\u003e! - Fixes \u003ccode\u003emiddlewareMode: 'edge'\u003c/code\u003e not running your middleware when \u003ccode\u003eisr\u003c/code\u003e is also enabled\u003c/p\u003e\n\u003cp\u003ePreviously, enabling both options deployed the edge middleware but never reached it: requests went straight to the ISR function, which skips rendering entirely on a cache hit. Middleware now runs at the edge for ISR-backed routes before the cached response is served, and query strings are preserved when it forwards the request.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/withastro/astro/commit/05763a0884aabb1da78a2749d5bb9d41ae620527\"\u003e\u003ccode\u003e05763a0\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​astrojs/internal-helpers\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.10.4\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0.6\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17680\"\u003e#17680\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/ce9f1da4867f07206dec720fdab7f1d02112f73e\"\u003e\u003ccode\u003ece9f1da\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/astrobot-houston\"\u003e\u003ccode\u003e@​astrobot-houston\u003c/code\u003e\u003c/a\u003e! - Fixes server islands returning 404 responses in Vercel deployments using \u003ccode\u003eoutput: \u0026quot;static\u0026quot;\u003c/code\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/withastro/astro/commit/8c193f67cce77cf2e41fb702c88ca46f788f1277\"\u003e\u003ccode\u003e8c193f6\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​astrojs/internal-helpers\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.10.3\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0.5\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17569\"\u003e#17569\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/d1bb7fa0059a04ed8039ce92660c7c07a8b04914\"\u003e\u003ccode\u003ed1bb7fa\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/lazerg\"\u003e\u003ccode\u003e@​lazerg\u003c/code\u003e\u003c/a\u003e! - Prevents \u003ccode\u003eastro build\u003c/code\u003e from crashing with \u003ccode\u003eEEXIST\u003c/code\u003e when \u003ccode\u003e.vercel/output/server/\u003c/code\u003e already exists by creating it with \u003ccode\u003e{ recursive: true }\u003c/code\u003e, matching the sibling \u003ccode\u003estatic/\u003c/code\u003e directory call\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e11.0.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/f800de13ffab9542f8d1bd13a8f4481c5f5c083a\"\u003e\u003ccode\u003ef800de1\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17881\"\u003e#17881\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/c0b65811dfa0dafa1aa04b7d6d67fd09250ff8c1\"\u003e\u003ccode\u003ec0b6581\u003c/code\u003e\u003c/a\u003e feat: use logger instead of console where possible (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17818\"\u003e#17818\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/2fdf731428aa738d5dcf3041b4e78eb9d036968c\"\u003e\u003ccode\u003e2fdf731\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17849\"\u003e#17849\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/19dae210d42bd22662ee678c173676573b6168f2\"\u003e\u003ccode\u003e19dae21\u003c/code\u003e\u003c/a\u003e fix(vercel): update vercel dependencies (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17450\"\u003e#17450\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/d38ed60390abfc9087a0cbfce99b9a4893229de5\"\u003e\u003ccode\u003ed38ed60\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17753\"\u003e#17753\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/dd29ce81f5b562f5d0dccdd96e28dade350c5e4c\"\u003e\u003ccode\u003edd29ce8\u003c/code\u003e\u003c/a\u003e Fix NFT trace base to include outDir when it is outside root in \u003ccode\u003e@​astrojs/verc\u003c/code\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/8a31cba625a23d886614172e1d3b02b8eb896a18\"\u003e\u003ccode\u003e8a31cba\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17739\"\u003e#17739\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/cd233f80d5b67c9955c68711ffce6723984fdc85\"\u003e\u003ccode\u003ecd233f8\u003c/code\u003e\u003c/a\u003e [ci] format\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/0a22ff5b7e4600356ccabfe571b7ffdad76064d7\"\u003e\u003ccode\u003e0a22ff5\u003c/code\u003e\u003c/a\u003e fix(vercel): run edge middleware when isr is enabled (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17687\"\u003e#17687\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/52e6c34790cc8ac4e69e6135ace06049867e5c4a\"\u003e\u003ccode\u003e52e6c34\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/integrations/vercel/issues/17691\"\u003e#17691\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/withastro/astro/commits/@astrojs/vercel@11.0.10/packages/integrations/vercel\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@iconify-json/material-symbols` from 1.2.50 to 1.2.92\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/iconify/icon-sets/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@tailwindcss/typography` from 0.5.19 to 0.5.20\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/releases\"\u003e@​tailwindcss/typography's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev0.5.20\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSupport installing with stable versions of Tailwind CSS v4 (\u003ca href=\"https://redirect.github.com/tailwindlabs/tailwindcss-typography/pull/424\"\u003e#424\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/blob/main/CHANGELOG.md\"\u003e@​tailwindcss/typography's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[0.5.20] - 2026-06-08\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSupport installing with stable versions of Tailwind CSS v4 (\u003ca href=\"https://redirect.github.com/tailwindlabs/tailwindcss-typography/pull/424\"\u003e#424\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/commit/e3714a3fe55551ce9d51eec4721183ed6b1d5cd1\"\u003e\u003ccode\u003ee3714a3\u003c/code\u003e\u003c/a\u003e 0.5.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/commit/f34283d2961e18dd0dc2a849702e0dfd45fc80cb\"\u003e\u003ccode\u003ef34283d\u003c/code\u003e\u003c/a\u003e Update tailwindcss peer dependency version (\u003ca href=\"https://redirect.github.com/tailwindlabs/tailwindcss-typography/issues/424\"\u003e#424\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/commit/543de4274390e90c4aab5d216729b46a3ba5541b\"\u003e\u003ccode\u003e543de42\u003c/code\u003e\u003c/a\u003e bump Node.js\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/commit/881b0488df9fd05e5361276b66a9ee8e7f39a3a7\"\u003e\u003ccode\u003e881b048\u003c/code\u003e\u003c/a\u003e Setup OIDC (\u003ca href=\"https://redirect.github.com/tailwindlabs/tailwindcss-typography/issues/423\"\u003e#423\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/commit/74a3da779bb43e4e68f446395224c768704c1fb6\"\u003e\u003ccode\u003e74a3da7\u003c/code\u003e\u003c/a\u003e Fix typo in README.md (\u003ca href=\"https://redirect.github.com/tailwindlabs/tailwindcss-typography/issues/413\"\u003e#413\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/commit/3963dfede4845f46451db1863fd5321f4cdea03b\"\u003e\u003ccode\u003e3963dfe\u003c/code\u003e\u003c/a\u003e Bump js-yaml from 3.14.1 to 3.14.2 (\u003ca href=\"https://redirect.github.com/tailwindlabs/tailwindcss-typography/issues/410\"\u003e#410\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/commit/abf85cc6e1b4f9b914b0f66453e5a97a9899a15c\"\u003e\u003ccode\u003eabf85cc\u003c/code\u003e\u003c/a\u003e className instead of classname (\u003ca href=\"https://redirect.github.com/tailwindlabs/tailwindcss-typography/issues/406\"\u003e#406\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/tailwindlabs/tailwindcss-typography/compare/v0.5.19...v0.5.20\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​tailwindcss/typography\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `fast-xml-parser` from 4.5.6 to 4.5.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/NaturalIntelligence/fast-xml-parser/releases\"\u003efast-xml-parser's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eSummary update on all the previous releases from v4.2.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMultiple minor fixes provided in the validator and parser\u003c/li\u003e\n\u003cli\u003ev6 is added for experimental use.\u003c/li\u003e\n\u003cli\u003eignoreAttributes support function, and array of string or regex\u003c/li\u003e\n\u003cli\u003eAdd support for parsing HTML numeric entities\u003c/li\u003e\n\u003cli\u003ev5 of the application is ESM module now. However, JS is also supported\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eNote\u003c/strong\u003e: Release section in not updated frequently. Please check \u003ca href=\"https://github.com/NaturalIntelligence/fast-xml-parser/blob/master/CHANGELOG.md\"\u003eCHANGELOG\u003c/a\u003e or \u003ca href=\"https://github.com/NaturalIntelligence/fast-xml-parser/tags\"\u003eTags\u003c/a\u003e for latest release information.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/NaturalIntelligence/fast-xml-parser/commit/49a12f10e9a44da765f045ca0c60e8d9e5be5aa0\"\u003e\u003ccode\u003e49a12f1\u003c/code\u003e\u003c/a\u003e 4.5.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/NaturalIntelligence/fast-xml-parser/commit/59d01455b29a1576f0add8972d2c2b8502581937\"\u003e\u003ccode\u003e59d0145\u003c/code\u003e\u003c/a\u003e update changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/NaturalIntelligence/fast-xml-parser/commit/e561c2188607a108a9a8d9b6428902a28aad8fb0\"\u003e\u003ccode\u003ee561c21\u003c/code\u003e\u003c/a\u003e fix: escape comment and CDATA delimiters when building XML (GHSA-gh4j-gqv2-49...\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/NaturalIntelligence/fast-xml-parser/compare/v4.5.6...v4.5.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `nodemailer` from 8.0.7 to 8.0.11\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/nodemailer/nodemailer/releases\"\u003enodemailer's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.0.11\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.10...v8.0.11\"\u003e8.0.11\u003c/a\u003e (2026-06-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eapply the transport-level newline option in stream and sendmail transports (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/cb4f904a53d2c2feeaf327203c92378d46304398\"\u003ecb4f904\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003einclude icalEvent path/href content in the application/ics attachment (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/b801c48fab8e9b71bc7e0ea1fb32ce6b34675b15\"\u003eb801c48\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse Ethereal response props without polynomial regex backtracking (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/067aebec83b8cbe7682905e89b30ab19d260b503\"\u003e067aebe\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eresolve oauth2_provision_cb at send time for non-pooled SMTP transports (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/203c8ecf97594ac2e69919b0f3ba966c0f86750e\"\u003e203c8ec\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereturn the promise from every resolveContent branch (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/07ffe8cfd97f0486b8c7b541f398922ddab47882\"\u003e07ffe8c\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003estrip the url scheme from List-ID header values (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/77e5885cfa0c6723ea7749c1ee74b1c11aeb78bd\"\u003e77e5885\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etag AWS SES transport errors with the ESES code (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/efa647a125dd698413a7cf6813b8e36881a06f91\"\u003eefa647a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev8.0.10\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.9...v8.0.10\"\u003e8.0.10\u003c/a\u003e (2026-05-29)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efall back to lower-severity handler when custom logger lacks a level method (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/6d849df59a56184b48844ed10b5fb7b8e9f74634\"\u003e6d849df\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev8.0.9\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.8...v8.0.9\"\u003e8.0.9\u003c/a\u003e (2026-05-26)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003etwo pending security advisories (jsonTransport access bypass, List-* CRLF injection) (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1820\"\u003e#1820\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/5f694977da2e0e13dc947037566e8e689a01217e\"\u003e5f69497\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev8.0.8\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.7...v8.0.8\"\u003e8.0.8\u003c/a\u003e (2026-05-23)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eenforce strict TLS for OAuth2 and Ethereal credential requests (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1818\"\u003e#1818\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/833d6e58c8b717962bbb1b23e16923cd267c3bc9\"\u003e833d6e5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efour listener/stream leaks in SMTP transport, connection, pool (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1817\"\u003e#1817\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/850bb91bff7707ed498c1424df01c4e5b30ea14b\"\u003e850bb91\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/nodemailer/nodemailer/blob/master/CHANGELOG.md\"\u003enodemailer's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.10...v8.0.11\"\u003e8.0.11\u003c/a\u003e (2026-06-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eapply the transport-level newline option in stream and sendmail transports (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/cb4f904a53d2c2feeaf327203c92378d46304398\"\u003ecb4f904\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003einclude icalEvent path/href content in the application/ics attachment (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/b801c48fab8e9b71bc7e0ea1fb32ce6b34675b15\"\u003eb801c48\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse Ethereal response props without polynomial regex backtracking (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/067aebec83b8cbe7682905e89b30ab19d260b503\"\u003e067aebe\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eresolve oauth2_provision_cb at send time for non-pooled SMTP transports (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/203c8ecf97594ac2e69919b0f3ba966c0f86750e\"\u003e203c8ec\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereturn the promise from every resolveContent branch (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/07ffe8cfd97f0486b8c7b541f398922ddab47882\"\u003e07ffe8c\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003estrip the url scheme from List-ID header values (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/77e5885cfa0c6723ea7749c1ee74b1c11aeb78bd\"\u003e77e5885\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etag AWS SES transport errors with the ESES code (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/efa647a125dd698413a7cf6813b8e36881a06f91\"\u003eefa647a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.9...v8.0.10\"\u003e8.0.10\u003c/a\u003e (2026-05-29)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efall back to lower-severity handler when custom logger lacks a level method (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/6d849df59a56184b48844ed10b5fb7b8e9f74634\"\u003e6d849df\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.8...v8.0.9\"\u003e8.0.9\u003c/a\u003e (2026-05-26)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003etwo pending security advisories (jsonTransport access bypass, List-* CRLF injection) (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1820\"\u003e#1820\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/5f694977da2e0e13dc947037566e8e689a01217e\"\u003e5f69497\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.7...v8.0.8\"\u003e8.0.8\u003c/a\u003e (2026-05-23)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eenforce strict TLS for OAuth2 and Ethereal credential requests (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1818\"\u003e#1818\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/833d6e58c8b717962bbb1b23e16923cd267c3bc9\"\u003e833d6e5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efour listener/stream leaks in SMTP transport, connection, pool (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1817\"\u003e#1817\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/850bb91bff7707ed498c1424df01c4e5b30ea14b\"\u003e850bb91\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/e3b1bdab0f8913b031ffd7a0d4e3592da6fd4c01\"\u003e\u003ccode\u003ee3b1bda\u003c/code\u003e\u003c/a\u003e chore(master): release 8.0.11 (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1826\"\u003e#1826\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/4358caf1112c547be8292ef9b4f53308f108274d\"\u003e\u003ccode\u003e4358caf\u003c/code\u003e\u003c/a\u003e refactor: remove dead checks flagged by Code Quality analysis\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/cf5195cfa25dda6177c265dcf03790f5d1d541e1\"\u003e\u003ccode\u003ecf5195c\u003c/code\u003e\u003c/a\u003e chore: harden workflow token permissions and update GitHub Actions\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/067aebec83b8cbe7682905e89b30ab19d260b503\"\u003e\u003ccode\u003e067aebe\u003c/code\u003e\u003c/a\u003e fix: parse Ethereal response props without polynomial regex backtracking\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/0cee4fe1a52813b98a056ea67f87c195960e693c\"\u003e\u003ccode\u003e0cee4fe\u003c/code\u003e\u003c/a\u003e chore: add CodeQL code scanning workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/cb9da471bf28b4a83e5ea2a773d070ef57f1993c\"\u003e\u003ccode\u003ecb9da47\u003c/code\u003e\u003c/a\u003e chore: update dev dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/e0a4928f4b2d2acb2d888a22c8e7490315d9f8cf\"\u003e\u003ccode\u003ee0a4928\u003c/code\u003e\u003c/a\u003e chore: format CLAUDE.md with prettier\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/8620f2fb6b0f4882a8cef2a29e23de917c6ef413\"\u003e\u003ccode\u003e8620f2f\u003c/code\u003e\u003c/a\u003e docs: correct stale timeout defaults in SMTPConnection options JSDoc\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/efa647a125dd698413a7cf6813b8e36881a06f91\"\u003e\u003ccode\u003eefa647a\u003c/code\u003e\u003c/a\u003e fix: tag AWS SES transport errors with the ESES code\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/07ffe8cfd97f0486b8c7b541f398922ddab47882\"\u003e\u003ccode\u003e07ffe8c\u003c/code\u003e\u003c/a\u003e fix: return the promise from every resolveContent branch\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.7...v8.0.11\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/nodemailer` from 8.0.0 to 8.0.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/nodemailer\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `sanitize-html` from 2.17.0 to 2.17.7\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apostrophecms/apostrophe/blob/main/packages/sanitize-html/CHANGELOG.md\"\u003esanitize-html's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.17.7 (2026-08-13)\u003c/h2\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFixed an XSS / URL scheme policy bypass affecting configurations that allow the SVG animation elements (\u003ccode\u003eanimate\u003c/code\u003e, \u003ccode\u003eanimateColor\u003c/code\u003e, \u003ccode\u003eanimateMotion\u003c/code\u003e, \u003ccode\u003eanimateTransform\u003c/code\u003e or \u003ccode\u003eset\u003c/code\u003e) together with \u003ccode\u003eattributeName\u003c/code\u003e and one of the animation value attributes. The default configuration was not affected, as these elements are not in the default \u003ccode\u003eallowedTags\u003c/code\u003e. \u003ccode\u003eapostrophecms\u003c/code\u003e was not affected. Thanks to \u003ca href=\"https://github.com/koyokr\"\u003ekoyokr\u003c/a\u003e for responsibly disclosing the vulnerability (GHSA-g8qq-57p8-ggw5).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.17.6 (2026-07-10)\u003c/h2\u003e\n\u003ch3\u003eFixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAllow transformTags to emit text when textFilter is set, even if the tag is initially empty. This is consistent with the documentation. Thanks to \u003ca href=\"https://github.com/spokodev\"\u003espokodev\u003c/a\u003e for the fix.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFixed an XSS/allowlist bypass in which the contents of a raw-text element (\u003ccode\u003etextarea\u003c/code\u003e or \u003ccode\u003exmp\u003c/code\u003e) nested inside an \u003ccode\u003esvg\u003c/code\u003e or \u003ccode\u003emath\u003c/code\u003e root were re-emitted without HTML-escaping. \u003ccode\u003esanitize-html\u003c/code\u003e treated that content as inert raw text because \u003ccode\u003ehtmlparser2\u003c/code\u003e 10.x classified raw-text elements by tag name and ignored the namespace, but a real HTML5 parser treats \u003ccode\u003etextarea\u003c/code\u003e/\u003ccode\u003exmp\u003c/code\u003e as ordinary foreign elements inside SVG/MathML and re-parses their contents as live markup. As a result, markup and event-handler attributes that the allowlist never permitted (for example \u003ccode\u003e\u0026lt;svg\u0026gt;\u0026lt;textarea\u0026gt;\u0026lt;img src=x onerror=alert(1)\u0026gt;\u003c/code\u003e) could survive sanitization and execute in the browser. This is now fixed on two fronts: \u003ccode\u003ehtmlparser2\u003c/code\u003e was upgraded to 12.x, which is namespace-aware and parses \u003ccode\u003etextarea\u003c/code\u003e/\u003ccode\u003exmp\u003c/code\u003e inside SVG/MathML as ordinary elements, so their non-allowlisted children (such as the injected \u003ccode\u003eimg\u003c/code\u003e) are dropped by the allowlist instead of being preserved as raw text; and any raw-text content \u003ccode\u003esanitize-html\u003c/code\u003e still emits for these tags (at HTML integration points such as \u003ccode\u003eforeignObject\u003c/code\u003e/\u003ccode\u003emtext\u003c/code\u003e, or outside foreign content) is always HTML-escaped. The default configuration is not affected; the precondition is an \u003ccode\u003eallowedTags\u003c/code\u003e that includes \u003ccode\u003esvg\u003c/code\u003e or \u003ccode\u003emath\u003c/code\u003e together with \u003ccode\u003etextarea\u003c/code\u003e or \u003ccode\u003exmp\u003c/code\u003e. Thanks to \u003ca href=\"https://github.com/khoadb175\"\u003ekhoadb175\u003c/a\u003e for responsibly disclosing the vulnerability.\u003c/li\u003e\n\u003cli\u003eFixed a mutation-XSS / \u003ccode\u003eallowedTags\u003c/code\u003e bypass affecting configurations that allow the \u003ccode\u003etextarea\u003c/code\u003e or \u003ccode\u003exmp\u003c/code\u003e raw-text tags. \u003ccode\u003ehtmlparser2\u003c/code\u003e 10.x did not recognize an end tag with a trailing solidus (e.g. \u003ccode\u003e\u0026lt;/textarea/\u0026gt;\u003c/code\u003e) as closing the element, so it kept the following markup as raw text, but a spec-compliant browser treats \u003ccode\u003e\u0026lt;/textarea/\u0026gt;\u003c/code\u003e as a valid close and parses that markup as a live element. Because raw-text content was re-emitted without escaping, a payload such as \u003ccode\u003e\u0026lt;textarea\u0026gt;\u0026lt;/textarea/\u0026gt;\u0026lt;img src=x onerror=...\u0026gt;\u003c/code\u003e could smuggle non-allowlisted, executable markup through the sanitizer. The default configuration was not affected. This is now defended at two layers: \u003ccode\u003ehtmlparser2\u003c/code\u003e was upgraded to 12.x, whose tokenizer closes these end tags correctly, and the raw text sanitize-html emits for these tags is always escaped so no \u003ccode\u003e\u0026lt;\u003c/code\u003e can reopen a tag when the output is re-parsed (\u003ccode\u003etextarea\u003c/code\u003e, an RCDATA element whose entities \u003ccode\u003ehtmlparser2\u003c/code\u003e decodes, is escaped like normal text, while \u003ccode\u003exmp\u003c/code\u003e, a raw-text element, has only its angle brackets escaped to avoid double-encoding already-encoded entities). Because \u003ccode\u003ehtmlparser2\u003c/code\u003e is ESM-only from version 11 onward, \u003ccode\u003esanitize-html\u003c/code\u003e now requires Node.js \u003ccode\u003e\u0026gt;=22.12.0\u003c/code\u003e (the first 22.x release in which \u003ccode\u003erequire()\u003c/code\u003e of an ES module is available unflagged). Thanks to \u003ca href=\"https://github.com/bibu123456\"\u003ebibu123456\u003c/a\u003e for reporting the vulnerability and \u003ca href=\"https://github.com/Kayiz-PT\"\u003eKayiz-PT\u003c/a\u003e for coordinating the disclosure (GHSA-jxwj-j7wr-gfrw).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.17.5 (2026-06-10)\u003c/h2\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdded a number of new attributes to be protected against unsafe URLs, e.g. \u003ccode\u003ejavascript:\u003c/code\u003e and similar. None of these are used in the default configuration of \u003ccode\u003esanitize-html\u003c/code\u003e or \u003ccode\u003eapostrophe\u003c/code\u003e or likely to be used there, and some attributes, like an \u003ccode\u003eaction\u003c/code\u003e for a \u003ccode\u003eform\u003c/code\u003e, are inherently unsafe to allow if XSS protection is your goal. Nevertheless it makes sense to block certain URL types where they are not appropriate. Some attributes are not supported at all by modern browsers but are included for completeness. Thanks to \u003ca href=\"https://github.com/crattack\"\u003ecrattack\u003c/a\u003e for reporting the vulnerability.\u003c/li\u003e\n\u003cli\u003eAddress a potential vulnerability when nonTextTags is configured in a nonstandard way. While it is never a good idea to remove known non-text tags from the standard list e.g. script, styles, etc., this change ensures that doing so does not result in nested tags being passed through without sanitization when they are not expressly allowed. (ApostropheCMS would never trigger this situation.) Thanks to \u003ca href=\"https://github.com/Dipanshusinghh\"\u003eDipanshu singh\u003c/a\u003e for pointing out the issue and contributing the fix.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.17.4\u003c/h2\u003e\n\u003ch3\u003eChanges\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003esanitize-html\u003c/code\u003e and \u003ccode\u003elaunder\u003c/code\u003e now share a single implementation of \u003ccode\u003enaughtyHref\u003c/code\u003e, based on that which previously existed in \u003ccode\u003esanitize-html\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSecurity vulnerability: the xmp tag could be used to pass forbidden markup through sanitize-html, even when xmp itself is not explicitly allowed All users of sanitize-html should update immediately. Thanks to \u003ca href=\"https://github.com/sushi-gif\"\u003eVincenzo Turturro\u003c/a\u003e for reporting the vulnerability.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.17.3 (2026-04-15)\u003c/h2\u003e\n\u003ch3\u003eSecurity\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFix vulnerability introduced in version 2.17.2 that allowed XSS attacks if the developer chose to permit \u003ccode\u003eoption\u003c/code\u003e tags. There was no vulnerability when not explicitly allowing \u003ccode\u003eoption\u003c/code\u003e tags.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.17.2 (2026-03-19)\u003c/h2\u003e\n\u003ch3\u003eChanges\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade \u003ccode\u003ehtmlparser2\u003c/code\u003e from 8.x to 10.1.0. This improves security by correctly decoding zero-padded numeric character references (e.g., \u003ccode\u003e\u0026amp;[#0000001](https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/0000001)\u003c/code\u003e) that previously bypassed \u003ccode\u003ejavascript:\u003c/code\u003e URL detection. Also fixes double-encoding of entities inside raw text elements like \u003ccode\u003etextarea\u003c/code\u003e and \u003ccode\u003eoption\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.17.1 (2026-02-18)\u003c/h2\u003e\n\u003ch3\u003eFixes\u003c/h3\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/72f4531e7b491738049eec423d0c1c2342828e5f\"\u003e\u003ccode\u003e72f4531\u003c/code\u003e\u003c/a\u003e Latest reconciliation q2 m3 2026 (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5555\"\u003e#5555\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/207846a3aec6b1914a2b9f4dc36d45daf6a4afb9\"\u003e\u003ccode\u003e207846a\u003c/code\u003e\u003c/a\u003e ready for 4.32.0 release (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5513\"\u003e#5513\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/f82003349abf4245babdb1afcb225255a9694979\"\u003e\u003ccode\u003ef820033\u003c/code\u003e\u003c/a\u003e Latest reconciliation q2 m2 (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5511\"\u003e#5511\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/24275081ab67f2060782e141dc3554721c1bae5a\"\u003e\u003ccode\u003e2427508\u003c/code\u003e\u003c/a\u003e release and changelog edits (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5465\"\u003e#5465\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/5a88e9630cbbdde33154ef8abe7557ddf7be418b\"\u003e\u003ccode\u003e5a88e96\u003c/code\u003e\u003c/a\u003e Latest security q2 (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5464\"\u003e#5464\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/958d16214ff4b94b9280fddd088060ff401ded0d\"\u003e\u003ccode\u003e958d162\u003c/code\u003e\u003c/a\u003e merge main to latest (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5460\"\u003e#5460\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/e9b0ab0849a5dfea0f75335fbdf99b5c6bf9e4b3\"\u003e\u003ccode\u003ee9b0ab0\u003c/code\u003e\u003c/a\u003e release only (changelogs formatted) (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5408\"\u003e#5408\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/f03fa5b7746132bf46244036ab961bba995b611d\"\u003e\u003ccode\u003ef03fa5b\u003c/code\u003e\u003c/a\u003e Latest security merge (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5407\"\u003e#5407\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/96cf174486e1387948e189786c2d574cf7c3f3d0\"\u003e\u003ccode\u003e96cf174\u003c/code\u003e\u003c/a\u003e For release only (\u003ca href=\"https://github.com/apostrophecms/apostrophe/tree/HEAD/packages/sanitize-html/issues/5381\"\u003e#5381\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apostrophecms/apostrophe/commit/7ca2d16237c72718ef7e5c7ae0458e6027ac4f64\"\u003e\u003ccode\u003e7ca2d16\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apostrophecms/apostrophe/commits/sanitize-html@2.17.7/packages/sanitize-html\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/sanitize-html` from 2.16.0 to 2.16.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/sanitize-html\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ua-parser-js` from 2.0.9 to 2.0.10\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/faisalman/ua-parser-js/releases\"\u003eua-parser-js's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.0.10\u003c/h2\u003e\n\u003ch2\u003eVersion 2.0.10\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix ReDoS vulnerability by limiting Client Hints input length (GHSA-9h5v-pfqq-x599)\u003c/li\u003e\n\u003cli\u003eAdd new method \u003ccode\u003euseExtension()\u003c/code\u003e in UAParser to extend custom detection rules\u003c/li\u003e\n\u003cli\u003eAdd new device vendor: Blackview, Coolpad, CUBOT, T-Mobile\u003c/li\u003e\n\u003cli\u003eImprove browser detection: Huawei Browser, UCBrowser\u003c/li\u003e\n\u003cli\u003eImprove OS detection: iOS\u003c/li\u003e\n\u003cli\u003eIdentify WebView user-agent as \u003ccode\u003einapp\u003c/code\u003e browser\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eextensions\u003c/code\u003e submodule:\n\u003cul\u003e\n\u003cli\u003eAdd new crawler: atlassian-bot, Audisto Crawler, AwarioBot, AwarioRssBot, AwarioSmartBot, BrightEdge Crawler, HubSpot Crawler, Meta-ExternalAds, Meta-WebIndexer, proximic, yacybot\u003c/li\u003e\n\u003cli\u003eAdd new fetcher: Feedly, GoogleDocs, UptimeBot, virustotal\u003c/li\u003e\n\u003cli\u003eAdd new library: phpcrawl\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ehelpers\u003c/code\u003e submodule:\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eisElectron()\u003c/code\u003e function return itself\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd Headline ev-crawler detection by \u003ca href=\"https://github.com/Carel155\"\u003e\u003ccode\u003e@​Carel155\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/807\"\u003efaisalman/ua-parser-js#807\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[extensions] Add new crawlers: Meta-WebIndexer, Meta-ExternalAds by \u003ca href=\"https://github.com/23tux\"\u003e\u003ccode\u003e@​23tux\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/824\"\u003efaisalman/ua-parser-js#824\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix: remove desktop from enums according to documentation by \u003ca href=\"https://github.com/mksotto\"\u003e\u003ccode\u003e@​mksotto\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/808\"\u003efaisalman/ua-parser-js#808\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd sideEffects=false to package.json by \u003ca href=\"https://github.com/denisx\"\u003e\u003ccode\u003e@​denisx\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/781\"\u003efaisalman/ua-parser-js#781\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Carel155\"\u003e\u003ccode\u003e@​Carel155\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/807\"\u003efaisalman/ua-parser-js#807\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/23tux\"\u003e\u003ccode\u003e@​23tux\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/824\"\u003efaisalman/ua-parser-js#824\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mksotto\"\u003e\u003ccode\u003e@​mksotto\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/808\"\u003efaisalman/ua-parser-js#808\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/denisx\"\u003e\u003ccode\u003e@​denisx\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/pull/781\"\u003efaisalman/ua-parser-js#781\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/faisalman/ua-parser-js/compare/2.0.9...2.0.10\"\u003ehttps://github.com/faisalman/ua-parser-js/compare/2.0.9...2.0.10\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/faisalman/ua-parser-js/blob/master/CHANGELOG.md\"\u003eua-parser-js's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 2.0.10\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix ReDoS vulnerability by limiting Client Hints input length (GHSA-9h5v-pfqq-x599)\u003c/li\u003e\n\u003cli\u003eAdd new method \u003ccode\u003euseExtension()\u003c/code\u003e in UAParser to extend custom detection rules\u003c/li\u003e\n\u003cli\u003eAdd new device vendor: Blackview, Coolpad, CUBOT, T-Mobile\u003c/li\u003e\n\u003cli\u003eImprove browser detection: Huawei Browser, UCBrowser\u003c/li\u003e\n\u003cli\u003eImprove OS detection: iOS\u003c/li\u003e\n\u003cli\u003eIdentify WebView user-agent as \u003ccode\u003einapp\u003c/code\u003e browser\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eextensions\u003c/code\u003e submodule:\n\u003cul\u003e\n\u003cli\u003eAdd new crawler: atlassian-bot, Audisto Crawler, AwarioBot, AwarioRssBot, AwarioSmartBot, BrightEdge Crawler, HubSpot Crawler, Meta-ExternalAds, Meta-WebIndexer, proximic, yacybot\u003c/li\u003e\n\u003cli\u003eAdd new fetcher: Feedly, GoogleDocs, UptimeBot, virustotal\u003c/li\u003e\n\u003cli\u003eAdd new library: phpcrawl\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ehelpers\u003c/code\u003e submodule:\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eisElectron()\u003c/code\u003e function return itself\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/4121c59060c3f9b814f07978c361e44016028c74\"\u003e\u003ccode\u003e4121c59\u003c/code\u003e\u003c/a\u003e Build: Bump version \u003ccode\u003e2.0.10\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/90354d3458495628b1d3ba68a9d76673e6d14fc5\"\u003e\u003ccode\u003e90354d3\u003c/code\u003e\u003c/a\u003e Fix: Prevent ReDoS vulnerability by limiting Client Hints input length (GHSA-...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/3baa3bc9f71de39491371ba04a49ca331bd49a42\"\u003e\u003ccode\u003e3baa3bc\u003c/code\u003e\u003c/a\u003e Test: Increase nyc timeout to fix timeout error\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/18d39b53dd803710cb8e76856d18c1dcf7533d11\"\u003e\u003ccode\u003e18d39b5\u003c/code\u003e\u003c/a\u003e CI: Add GitHub Actions workflow to publish to Docker Hub\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/58b5a0cff9187e3a505dbf74c505fe478b915a14\"\u003e\u003ccode\u003e58b5a0c\u003c/code\u003e\u003c/a\u003e Build: Add Dockerfile for container image build\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/965c20d55bb6bd5879175a4d638171da7fdf2037\"\u003e\u003ccode\u003e965c20d\u003c/code\u003e\u003c/a\u003e CI: Update fuzz test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/ad97fea94772da9cc9ad9e3c145e07ee2c10533d\"\u003e\u003ccode\u003ead97fea\u003c/code\u003e\u003c/a\u003e Build: Set sideEffects=false in package.json for tree shaking (\u003ca href=\"https://redirect.github.com/faisalman/ua-parser-js/issues/781\"\u003e#781\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/312598f5f432de911bbe4d1b4bfddc5939bf9fdf\"\u003e\u003ccode\u003e312598f\u003c/code\u003e\u003c/a\u003e CI: Add AI and spam detection to pull request workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/8f9e4dc6c94c2c9c91cec4bb3725b9e663ea0beb\"\u003e\u003ccode\u003e8f9e4dc\u003c/code\u003e\u003c/a\u003e Test: Fix relative path and update done() callback in CLI test spec\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/faisalman/ua-parser-js/commit/eb809eca611e11a7b2311454ff7eec4febc1045c\"\u003e\u003ccode\u003eeb809ec\u003c/code\u003e\u003c/a\u003e Chore(license): Add THIRD_PARTY_NOTICES.md for third-party assets\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/faisalman/ua-parser-js/compare/2.0.9...2.0.10\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@astrojs/ts-plugin` from 1.10.10 to 1.10.11\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/releases\"\u003e@​astrojs/ts-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​astrojs/ts-plugin\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.10.11\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17668\"\u003e#17668\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/bef9db51186d7201604fc561e1c599a0610d54b0\"\u003e\u003ccode\u003ebef9db5\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/lazerg\"\u003e\u003ccode\u003e@​lazerg\u003c/code\u003e\u003c/a\u003e! - Fixes Astro's ambient types leaking into unrelated TypeScript projects. In a monorepo with hoisted \u003ccode\u003enode_modules\u003c/code\u003e, the plugin found the shared \u003ccode\u003eastro\u003c/code\u003e install from any project and injected \u003ccode\u003eenv.d.ts\u003c/code\u003e and \u003ccode\u003eastro-jsx.d.ts\u003c/code\u003e into it, which pulled \u003ccode\u003e@types/node\u003c/code\u003e into projects that never asked for it. The plugin now only injects those types when the project actually depends on \u003ccode\u003eastro\u003c/code\u003e or has an \u003ccode\u003eastro.config.*\u003c/code\u003e file.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/withastro/astro/blob/main/packages/language-tools/ts-plugin/CHANGELOG.md\"\u003e@​astrojs/ts-plugin's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.10.11\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/withastro/astro/pull/17668\"\u003e#17668\u003c/a\u003e \u003ca href=\"https://github.com/withastro/astro/commit/bef9db51186d7201604fc561e1c599a0610d54b0\"\u003e\u003ccode\u003ebef9db5\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/lazerg\"\u003e\u003ccode\u003e@​lazerg\u003c/code\u003e\u003c/a\u003e! - Fixes Astro's ambient types leaking into unrelated TypeScript projects. In a monorepo with hoisted \u003ccode\u003enode_modules\u003c/code\u003e, the plugin found the shared \u003ccode\u003eastro\u003c/code\u003e install from any project and injected \u003ccode\u003eenv.d.ts\u003c/code\u003e and \u003ccode\u003eastro-jsx.d.ts\u003c/code\u003e into it, which pulled \u003ccode\u003e@types/node\u003c/code\u003e into projects that never asked for it. The plugin now only injects those types when the project actually depends on \u003ccode\u003eastro\u003c/code\u003e or has an \u003ccode\u003eastro.config.*\u003c/code\u003e file.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/52e6c34790cc8ac4e69e6135ace06049867e5c4a\"\u003e\u003ccode\u003e52e6c34\u003c/code\u003e\u003c/a\u003e [ci] release (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/ts-plugin/issues/17691\"\u003e#17691\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/withastro/astro/commit/bef9db51186d7201604fc561e1c599a0610d54b0\"\u003e\u003ccode\u003ebef9db5\u003c/code\u003e\u003c/a\u003e fix(ts-plugin): only inject Astro types into Astro projects (\u003ca href=\"https://github.com/withastro/astro/tree/HEAD/packages/language-tools/ts-plugin/issues/17668\"\u003e#17668\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/withastro/astro/commits/@astrojs/ts-plugin@1.10.11/packages/language-tools/ts-plugin\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/nodemailer` from 8.0.0 to 8.0.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/nodemailer\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@types/sanitize-html` from 2.16.0 to 2.16.1\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/sanitize-html\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `cssnano` from 7.1.3 to 7.1.9\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cssnano/cssnano/releases\"\u003ecssnano's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.1.9\u003c/h2\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReject :is() fold for unknown pseudo-classes with arguments by \u003ca href=\"https://github.com/dkryaklin\"\u003e\u003ccode\u003e@​dkryaklin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1791\"\u003ecssnano/cssnano#1791\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/cssnano/cssnano/compare/cssnano@7.1.8...cssnano@7.1.9\"\u003ehttps://github.com/cssnano/cssnano/compare/cssnano@7.1.8...cssnano@7.1.9\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.1.8\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(postcss-minify-selectors): reject :is() fold for :nth-child(... of S) to preserve cascade by \u003ca href=\"https://github.com/dkryaklin\"\u003e\u003ccode\u003e@​dkryaklin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1785\"\u003ecssnano/cssnano#1785\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate postcss and \u003ccode\u003e@​colordx/core\u003c/code\u003e by \u003ca href=\"https://github.com/ludofischer\"\u003e\u003ccode\u003e@​ludofischer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1786\"\u003ecssnano/cssnano#1786\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/cssnano/cssnano/compare/cssnano@7.1.7...cssnano@7.1.8\"\u003ehttps://github.com/cssnano/cssnano/compare/cssnano@7.1.7...cssnano@7.1.8\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev.7.1.7\u003c/h2\u003e\n\u003cp\u003eThis release is idnetical to the previous one, but is being published to ensure that the latest versions of \u003ccode\u003epostcss-normalize-repeat-style\u003c/code\u003e and \u003ccode\u003epostcss-normalize-positions\u003c/code\u003e are uploaded to the npm registry.\u003c/p\u003e\n\u003ch2\u003ev7.1.6\u003c/h2\u003e\n\u003ch2\u003eNew feature\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(postcss-minify-selectors): fold selector lists into :is() (\u003ca href=\"https://redirect.github.com/cssnano/cssnano/issues/1703\"\u003e#1703\u003c/a\u003e) by \u003ca href=\"https://github.com/dkryaklin\"\u003e\u003ccode\u003e@​dkryaklin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1775\"\u003ecssnano/cssnano#1775\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBug fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: update colordx and autoprefixer\u003c/li\u003e\n\u003cli\u003efix: update postcss peer dependency by \u003ca href=\"https://github.com/ludofischer\"\u003e\u003ccode\u003e@​ludofischer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1779\"\u003ecssnano/cssnano#1779\u003c/a\u003e Solves possible security issue\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/cssnano/cssnano/compare/cssnano@7.1.5...cssnano@7.1.6\"\u003ehttps://github.com/cssnano/cssnano/compare/cssnano@7.1.5...cssnano@7.1.6\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.1.5\u003c/h2\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(postcss-reduce-idents): support counter-set property by \u003ca href=\"https://github.com/dkryaklin\"\u003e\u003ccode\u003e@​dkryaklin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1765\"\u003ecssnano/cssnano#1765\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(postcss-convert-values): add transformCustomProperties option by \u003ca href=\"https://github.com/dkryaklin\"\u003e\u003ccode\u003e@​dkryaklin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1769\"\u003ecssnano/cssnano#1769\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(postcss-colormin): add transformCustomProperties option by \u003ca href=\"https://github.com/dkryaklin\"\u003e\u003ccode\u003e@​dkryaklin\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/cssnano/cssnano/pull/1768\"\u003ecssnano/cssnano#1768\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/cssnano/cssnano/compare/cssnano@7.1.4...cssnano@7.1.5\"\u003ehttps://github.com/cssnano/cssnano/compare/cssnano@7.1.4...cssnano@7.1.5\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev7.1.4\u003c/h2\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cp\u003eUpdate color conversion library to \u003ccode\u003e@​colordx/core\u003c/code\u003e to fix rounding errors in color conversions \u003ca href=\"https://redirect.github.com/cssnano/cssnano/issues/1755\"\u003e#1755\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/206940709f1f3bb0dca3bdeae55851244aaf5106\"\u003e\u003ccode\u003e2069407\u003c/code\u003e\u003c/a\u003e Publish cssnano 7.1.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/fc0c79d58f6722f196c518bb4d02b44edccaa669\"\u003e\u003ccode\u003efc0c79d\u003c/code\u003e\u003c/a\u003e fix(postcss-minify-selectors): reject :is() fold for unknown pseudo-classes w...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/d9fee3bdbe5c5bf2fb4d239036cf7e594642af5a\"\u003e\u003ccode\u003ed9fee3b\u003c/code\u003e\u003c/a\u003e chore: enforce TypeScript isolated modules\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/d6c96c46ea9999b33e1929bbe9192f9e03bca40e\"\u003e\u003ccode\u003ed6c96c4\u003c/code\u003e\u003c/a\u003e chore: update development deps\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/709f16a4d50edafd5d257970727326e9e16e2d4d\"\u003e\u003ccode\u003e709f16a\u003c/code\u003e\u003c/a\u003e docs: update website depenencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/ed403dbb66413f54f0f6b6674c5ec720704cea6f\"\u003e\u003ccode\u003eed403db\u003c/code\u003e\u003c/a\u003e Publish cssnano 7.1.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/7e56dba523026352996d1402f110907d6fe97bb1\"\u003e\u003ccode\u003e7e56dba\u003c/code\u003e\u003c/a\u003e fix: update postcss\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/d1780fd7ca1a9a4b08dd47a727377b7c0be32b89\"\u003e\u003ccode\u003ed1780fd\u003c/code\u003e\u003c/a\u003e fix: update \u003ca href=\"https://github.com/colordx-core\"\u003e\u003ccode\u003e@​colordx-core\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/00054437b0015d11251690f055534f74146aff2d\"\u003e\u003ccode\u003e0005443\u003c/code\u003e\u003c/a\u003e chore: add changeset\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cssnano/cssnano/commit/bedd6093de6a2a31fb8d040dbaafa63f4992cd01\"\u003e\u003ccode\u003ebedd609\u003c/code\u003e\u003c/a\u003e fix(postcss-minify-selectors): reject :is() fold for :nth-child(... of S) to ...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/cssnano/cssnano/compare/cssnano@7.1.3...cssnano@7.1.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `glob` from 13.0.0 to 13.0.6\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/e80cb38ae60d6cbff9e75f39032a994858994d35\"\u003e\u003ccode\u003ee80cb38\u003c/code\u003e\u003c/a\u003e 13.0.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/9cdbbfff75c64fb158c8842d4d0eb3e908676a41\"\u003e\u003ccode\u003e9cdbbff\u003c/code\u003e\u003c/a\u003e revert tsgo, not ready for test coverage correctness yet\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/89c99ba8e276438b8e31ce878b63186e2cd375b4\"\u003e\u003ccode\u003e89c99ba\u003c/code\u003e\u003c/a\u003e use tsgo compiler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/b7275d54f294174607f544acf07cc7ec526b7878\"\u003e\u003ccode\u003eb7275d5\u003c/code\u003e\u003c/a\u003e update deps, expand engines to include node 18\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/942e360a669e0c378c0abd261e7d329ca2cee661\"\u003e\u003ccode\u003e942e360\u003c/code\u003e\u003c/a\u003e update workflows, pull taprc out of package.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/4a0d53c7531f3f0df97f9e4d26c78489e7f6d7ef\"\u003e\u003ccode\u003e4a0d53c\u003c/code\u003e\u003c/a\u003e update tap for mockImport bugfix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/ef94ad2696c12129628208cf4e38575e7240c1c4\"\u003e\u003ccode\u003eef94ad2\u003c/code\u003e\u003c/a\u003e update tap\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/180c2d43cb135f134c0c5446408dc107c79a5a9b\"\u003e\u003ccode\u003e180c2d4\u003c/code\u003e\u003c/a\u003e update docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/37993c86faddcb780458b2d7ae3c2ead7a84bf31\"\u003e\u003ccode\u003e37993c8\u003c/code\u003e\u003c/a\u003e remove stray console.error in test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/isaacs/node-glob/commit/03ae4c244cac6331817158b0bc12effd30deeb43\"\u003e\u003ccode\u003e03ae4c2\u003c/code\u003e\u003c/a\u003e 13.0.5\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/isaacs/node-glob/compare/v13.0.0...v13.0.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version modifies \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n\u003c/details\u003e","html_url":"https://github.com/mikann-OMO/Orange/pull/92","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/mikann-OMO%2FOrange/issues/92","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/92/packages"}},{"old_version":"13.0.0","new_version":"13.0.6","update_type":"patch","path":null,"pr_created_at":"2026-09-14T20:41:39.000Z","version_change":"13.0.0 → 13.0.6","issue":{"uuid":"5454392265","node_id":"PR_kwDORQc-388AAAABDgwtVg","number":38,"state":"closed","title":"Bump the compatible-updates group across 1 directory with 29 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-21T20:39:18.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-14T20:41:39.000Z","updated_at":"2026-09-21T20:39:21.000Z","time_to_close":604659,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"compatible-updates","update_count":29,"packages":[{"name":"@noble/hashes","old_version":"2.0.1","new_version":"2.4.0","repository_url":"https://github.com/paulmillr/noble-hashes"},{"name":"@openzeppelin/contracts","old_version":"5.4.0","new_version":"5.6.1","repository_url":"https://github.com/OpenZeppelin/openzeppelin-contracts"},{"name":"@supabase/supabase-js","old_version":"2.90.0","new_version":"2.116.0","repository_url":"https://github.com/supabase/supabase-js"},{"name":"@walletconnect/ethereum-provider","old_version":"2.23.1","new_version":"2.24.0","repository_url":"https://github.com/WalletConnect/walletconnect-monorepo"},{"name":"axios","old_version":"1.19.0","new_version":"1.20.0","repository_url":"https://github.com/axios/axios"},{"name":"date-fns","old_version":"4.1.0","new_version":"4.4.0","repository_url":"https://github.com/date-fns/date-fns"},{"name":"dotenv","old_version":"17.2.3","new_version":"17.4.2","repository_url":"https://github.com/motdotla/dotenv"},{"name":"playwright","old_version":"1.57.0","new_version":"1.63.0","repository_url":"https://github.com/microsoft/playwright"},{"name":"preact","old_version":"10.28.2","new_version":"10.29.8","repository_url":"https://github.com/preactjs/preact"},{"name":"react-is","old_version":"19.2.3","new_version":"19.3.0","repository_url":"https://github.com/react/react"},{"name":"recharts","old_version":"3.6.0","new_version":"3.10.1","repository_url":"https://github.com/recharts/recharts"},{"name":"@eslint/eslintrc","old_version":"3.3.3","new_version":"3.3.7","repository_url":"https://github.com/eslint/eslintrc"},{"name":"@rollup/plugin-commonjs","old_version":"29.0.0","new_version":"29.0.3","repository_url":"https://github.com/rollup/plugins"},{"name":"@testing-library/react","old_version":"16.3.1","new_version":"16.3.3","repository_url":"https://github.com/testing-library/react-testing-library"},{"name":"@testing-library/user-event","old_version":"14.6.1","new_version":"14.6.7","repository_url":"https://github.com/testing-library/user-event"},{"name":"@typescript-eslint/eslint-plugin","old_version":"8.52.0","new_version":"8.70.0","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"babel-jest","old_version":"30.2.0","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"eslint-plugin-react-hooks","old_version":"7.0.1","new_version":"7.1.1","repository_url":"https://github.com/facebook/react"},{"name":"eslint-plugin-react-refresh","old_version":"0.4.26","new_version":"0.5.6","repository_url":"https://github.com/ArnaudBarre/eslint-plugin-react-refresh"},{"name":"glob","old_version":"13.0.0","new_version":"13.0.6","repository_url":"https://github.com/isaacs/node-glob"},{"name":"globals","old_version":"17.0.0","new_version":"17.12.0","repository_url":"https://github.com/sindresorhus/globals"},{"name":"hardhat","old_version":"3.13.0","new_version":"3.16.0","repository_url":"https://github.com/NomicFoundation/hardhat"},{"name":"jest","old_version":"30.2.0","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"jest-environment-jsdom","old_version":"30.2.0","new_version":"30.5.1","repository_url":"https://github.com/jestjs/jest"},{"name":"solc","old_version":"0.8.36","new_version":"0.8.37","repository_url":"https://github.com/ethereum/solc-js"},{"name":"vite-plugin-node-polyfills","old_version":"0.2.0","new_version":"0.28.0","repository_url":"https://github.com/davidmyersdev/vite-plugin-node-polyfills"}],"path":null,"ecosystem":"npm"},"body":"Bumps the compatible-updates group with 26 updates in the /public-repo directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@noble/hashes](https://github.com/paulmillr/noble-hashes) | `2.0.1` | `2.4.0` |\n| [@openzeppelin/contracts](https://github.com/OpenZeppelin/openzeppelin-contracts) | `5.4.0` | `5.6.1` |\n| [@supabase/supabase-js](https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js) | `2.90.0` | `2.116.0` |\n| [@walletconnect/ethereum-provider](https://github.com/WalletConnect/walletconnect-monorepo/tree/HEAD/providers/ethereum-provider) | `2.23.1` | `2.24.0` |\n| [axios](https://github.com/axios/axios) | `1.19.0` | `1.20.0` |\n| [date-fns](https://github.com/date-fns/date-fns) | `4.1.0` | `4.4.0` |\n| [dotenv](https://github.com/motdotla/dotenv) | `17.2.3` | `17.4.2` |\n| [playwright](https://github.com/microsoft/playwright) | `1.57.0` | `1.63.0` |\n| [preact](https://github.com/preactjs/preact) | `10.28.2` | `10.29.8` |\n| [react-is](https://github.com/react/react/tree/HEAD/packages/react-is) | `19.2.3` | `19.3.0` |\n| [recharts](https://github.com/recharts/recharts) | `3.6.0` | `3.10.1` |\n| [@eslint/eslintrc](https://github.com/eslint/eslintrc) | `3.3.3` | `3.3.7` |\n| [@rollup/plugin-commonjs](https://github.com/rollup/plugins/tree/HEAD/packages/commonjs) | `29.0.0` | `29.0.3` |\n| [@testing-library/react](https://github.com/testing-library/react-testing-library) | `16.3.1` | `16.3.3` |\n| [@testing-library/user-event](https://github.com/testing-library/user-event) | `14.6.1` | `14.6.7` |\n| [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) | `8.52.0` | `8.70.0` |\n| [babel-jest](https://github.com/jestjs/jest/tree/HEAD/packages/babel-jest) | `30.2.0` | `30.5.1` |\n| [eslint-plugin-react-hooks](https://github.com/facebook/react/tree/HEAD/packages/eslint-plugin-react-hooks) | `7.0.1` | `7.1.1` |\n| [eslint-plugin-react-refresh](https://github.com/ArnaudBarre/eslint-plugin-react-refresh) | `0.4.26` | `0.5.6` |\n| [glob](https://github.com/isaacs/node-glob) | `13.0.0` | `13.0.6` |\n| [globals](https://github.com/sindresorhus/globals) | `17.0.0` | `17.12.0` |\n| [hardhat](https://github.com/NomicFoundation/hardhat/tree/HEAD/packages/hardhat) | `3.13.0` | `3.16.0` |\n| [jest](https://github.com/jestjs/jest/tree/HEAD/packages/jest) | `30.2.0` | `30.5.1` |\n| [jest-environment-jsdom](https://github.com/jestjs/jest/tree/HEAD/packages/jest-environment-jsdom) | `30.2.0` | `30.5.1` |\n| [solc](https://github.com/ethereum/solc-js) | `0.8.36` | `0.8.37` |\n| [vite-plugin-node-polyfills](https://github.com/davidmyersdev/vite-plugin-node-polyfills) | `0.2.0` | `0.28.0` |\n\n\nUpdates `@noble/hashes` from 2.0.1 to 2.4.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/paulmillr/noble-hashes/releases\"\u003e@​noble/hashes's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.4.0\u003c/h2\u003e\n\u003ch3\u003eSecurity and correctness\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eProtect passed options against mutation / pollution\u003c/li\u003e\n\u003cli\u003ekeccakprg: fail until entropy is added\u003c/li\u003e\n\u003cli\u003ewebcrypto: reject output sizes which crashed engine\u003c/li\u003e\n\u003cli\u003eblake3: fix tree merging for multi-terabyte streams\u003c/li\u003e\n\u003cli\u003eImprove zeroization\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eMisc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSpeed-up Argon2 by 20%\u003c/li\u003e\n\u003cli\u003eArgon2 cost options are now optional. The defaults are \u003ccode\u003et: 3\u003c/code\u003e, \u003ccode\u003em: 1024 ** 2\u003c/code\u003e KiB (1 GiB), \u003ccode\u003ep: 1\u003c/code\u003e, \u003ccode\u003edkLen: 32\u003c/code\u003e, and a 1 GiB \u003ccode\u003emaxmem\u003c/code\u003e limit; larger-memory calls must set \u003ccode\u003emaxmem\u003c/code\u003e explicitly.\u003c/li\u003e\n\u003cli\u003eCorrected scrypt's default \u003ccode\u003emaxmem\u003c/code\u003e to work for \u003ccode\u003eN: 2 ** 20\u003c/code\u003e, \u003ccode\u003er: 8\u003c/code\u003e, and \u003ccode\u003ep: 1\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enextTick\u003c/code\u003e and \u003ccode\u003easyncLoop\u003c/code\u003e now yield through \u003ccode\u003escheduler.yield()\u003c/code\u003e when available or \u003ccode\u003esetTimeout\u003c/code\u003e otherwise, allowing timers, I/O, and rendering to progress. They also accept optional rejection cleanup; async Argon2, PBKDF2, and scrypt use it to wipe work state if scheduling is aborted.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/paulmillr/noble-hashes/compare/2.3.0...2.4.0\"\u003ehttps://github.com/paulmillr/noble-hashes/compare/2.3.0...2.4.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e2.3.0\u003c/h2\u003e\n\u003cp\u003eImprove speed:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e+10-45% 32b inputs across all hashes\u003c/li\u003e\n\u003cli\u003e+40% SHA-3 / SHAKE, +50% 1mb KT128 / KT256 / TurboSHAKE, +20% kmac\u003c/li\u003e\n\u003cli\u003e2.2x argon\u003c/li\u003e\n\u003cli\u003e+20% pbkdf2 and hkdf\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eOther changes:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eBetter error messages and stricter type checks everywhere\u003c/li\u003e\n\u003cli\u003eBugfix: HMAC _cloneInto now preserves canXOF (\u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/issues/134\"\u003e#134\u003c/a\u003e, ChALkeR); Argon2d typo rename (\u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/issues/135\"\u003e#135\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eblake2.compress renamed to _compress (marked internal).\u003c/li\u003e\n\u003cli\u003eReduce on-disk unpacked size 869kb → 665kb (-204kb) by disabling source maps (they became less relevant).\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/paulmillr/noble-hashes/compare/2.2.0...2.3.0\"\u003ehttps://github.com/paulmillr/noble-hashes/compare/2.2.0...2.3.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e2.2.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eMarch 2026 self-audit\u003c/strong\u003e (all files): no major issues found\n\u003cul\u003e\n\u003cli\u003eAudited for spec compliance and security\u003c/li\u003e\n\u003cli\u003eFix: \u003ccode\u003edkLen=0\u003c/code\u003e handling in \u003ccode\u003epbkdf2\u003c/code\u003e, \u003ccode\u003eblake2\u003c/code\u003e, \u003ccode\u003eturboshake\u003c/code\u003e, \u003ccode\u003ekt\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eFix: \u003ccode\u003eparallelHash\u003c/code\u003e with \u003ccode\u003eblockLen=0\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eFix: \u003ccode\u003eargon2\u003c/code\u003e progress callback now reaches 100%\u003c/li\u003e\n\u003cli\u003eImprove: \u003ccode\u003edigestInto\u003c/code\u003e no longer returns a value (better performance)\u003c/li\u003e\n\u003cli\u003eImprove: \u003ccode\u003eargon2\u003c/code\u003e, \u003ccode\u003eblake2\u003c/code\u003e support non-4-divisible \u003ccode\u003edkLen\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eFix all Byte Array types, to ensure proper work in both TypeScript 5.6 \u0026amp; TypeScript 5.9+\n\u003cul\u003e\n\u003cli\u003eTS 5.6 has \u003ccode\u003eUint8Array\u003c/code\u003e, while TS 5.9+ made it generic \u003ccode\u003eUint8Array\u0026lt;ArrayBuffer\u0026gt;\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eThis creates incompatibility of code between versions\u003c/li\u003e\n\u003cli\u003ePreviously, it was hard to use and constantly emitted errors similar to \u003ccode\u003eTS2345\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eSee \u003ca href=\"https://redirect.github.com/microsoft/TypeScript/issues/62240\"\u003etypescript#62240\u003c/a\u003e for more context\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003esha3: speed-up by up to 50%. Contributed by \u003ca href=\"https://github.com/ChALkeR\"\u003e\u003ccode\u003e@​ChALkeR\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/pull/126\"\u003epaulmillr/noble-hashes#126\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix compilation issues on TypeScript v6\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/paulmillr/noble-hashes/blob/main/CHANGELOG.md\"\u003e@​noble/hashes's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.4.0 (2026-08-27)\u003c/h2\u003e\n\u003ch3\u003eSecurity and correctness\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eProtect passed options against mutation / pollution\u003c/li\u003e\n\u003cli\u003ekeccakprg: fail until entropy is added\u003c/li\u003e\n\u003cli\u003ewebcrypto: reject output sizes which crashed engine\u003c/li\u003e\n\u003cli\u003eblake3: fix tree merging for multi-terabyte streams\u003c/li\u003e\n\u003cli\u003eImprove zeroization\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eMisc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eSpeed-up Argon2 by 20%\u003c/li\u003e\n\u003cli\u003eArgon2 cost options are now optional. The defaults are \u003ccode\u003et: 3\u003c/code\u003e, \u003ccode\u003em: 1024 ** 2\u003c/code\u003e KiB (1 GiB), \u003ccode\u003ep: 1\u003c/code\u003e, \u003ccode\u003edkLen: 32\u003c/code\u003e, and a 1 GiB \u003ccode\u003emaxmem\u003c/code\u003e limit; larger-memory calls must set \u003ccode\u003emaxmem\u003c/code\u003e explicitly.\u003c/li\u003e\n\u003cli\u003eCorrected scrypt's default \u003ccode\u003emaxmem\u003c/code\u003e to work for \u003ccode\u003eN: 2 ** 20\u003c/code\u003e, \u003ccode\u003er: 8\u003c/code\u003e, and \u003ccode\u003ep: 1\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enextTick\u003c/code\u003e and \u003ccode\u003easyncLoop\u003c/code\u003e now yield through \u003ccode\u003escheduler.yield()\u003c/code\u003e when available or \u003ccode\u003esetTimeout\u003c/code\u003e otherwise, allowing timers, I/O, and rendering to progress. They also accept optional rejection cleanup; async Argon2, PBKDF2, and scrypt use it to wipe work state if scheduling is aborted.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.3.0 (2026-08-06)\u003c/h2\u003e\n\u003ch3\u003ePerformance\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eImproved 32-byte input performance across all hashes by 10–45%.\u003c/li\u003e\n\u003cli\u003eImproved SHA-3 and SHAKE by 40%, one-megabyte KangarooTwelve, MarsupilamiFourteen, and TurboSHAKE by 50%, and KMAC by 20%.\u003c/li\u003e\n\u003cli\u003eImproved Argon2 performance by 2.2×.\u003c/li\u003e\n\u003cli\u003eImproved PBKDF2 and HKDF performance by 20%.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eOther changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdded better error messages and stricter type checks throughout the package.\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003eHMAC._cloneInto\u003c/code\u003e so it preserves \u003ccode\u003ecanXOF\u003c/code\u003e in issue \u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/issues/134\"\u003e#134\u003c/a\u003e, reported by \u003ca href=\"https://github.com/ChALkeR\"\u003e\u003ccode\u003e@​ChALkeR\u003c/code\u003e\u003c/a\u003e, and corrected an Argon2d typo in issue \u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/issues/135\"\u003e#135\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eRenamed \u003ccode\u003eblake2.compress\u003c/code\u003e to the internal \u003ccode\u003e_compress\u003c/code\u003e method.\u003c/li\u003e\n\u003cli\u003eReduced unpacked on-disk size from 869 KB to 665 KB by disabling less-relevant source maps.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.2.0 (2026-04-11)\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eMarch 2026 self-audit\u003c/strong\u003e (all files): no major issues found.\n\u003cul\u003e\n\u003cli\u003eAudited for specification compliance and security.\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003edkLen=0\u003c/code\u003e handling in \u003ccode\u003epbkdf2\u003c/code\u003e, \u003ccode\u003eblake2\u003c/code\u003e, \u003ccode\u003eturboshake\u003c/code\u003e, and \u003ccode\u003ekt\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eFixed \u003ccode\u003eparallelHash\u003c/code\u003e with \u003ccode\u003eblockLen=0\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eMade the \u003ccode\u003eargon2\u003c/code\u003e progress callback reach 100%.\u003c/li\u003e\n\u003cli\u003eChanged \u003ccode\u003edigestInto\u003c/code\u003e to return no value for better performance.\u003c/li\u003e\n\u003cli\u003eAdded support for non-four-divisible \u003ccode\u003edkLen\u003c/code\u003e values in \u003ccode\u003eargon2\u003c/code\u003e and \u003ccode\u003eblake2\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eFixed all byte-array types for compatibility with both TypeScript 5.6 and TypeScript 5.9+.\n\u003cul\u003e\n\u003cli\u003eTypeScript 5.6 uses \u003ccode\u003eUint8Array\u003c/code\u003e, while TypeScript 5.9+ made it generic as \u003ccode\u003eUint8Array\u0026lt;ArrayBuffer\u0026gt;\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eThis previously caused incompatibilities and errors such as \u003ccode\u003eTS2345\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eSee [TypeScript issue \u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/issues/62240\"\u003e#62240\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/microsoft/TypeScript/issues/62240\"\u003emicrosoft/TypeScript#62240\u003c/a\u003e) for more context.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eSped up SHA-3 by as much as 50%, contributed by \u003ca href=\"https://github.com/ChALkeR\"\u003e\u003ccode\u003e@​ChALkeR\u003c/code\u003e\u003c/a\u003e in [pull request \u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/issues/126\"\u003e#126\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/paulmillr/noble-hashes/pull/126\"\u003epaulmillr/noble-hashes#126\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFixed compilation issues on TypeScript 6.\u003c/li\u003e\n\u003cli\u003eAdded big-endian support; all tests pass on s390x.\u003c/li\u003e\n\u003cli\u003eImproved tree-shaking and reduced bundle sizes.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/663c2aeeffc308ac0cded59bd32f7c212adacfc2\"\u003e\u003ccode\u003e663c2ae\u003c/code\u003e\u003c/a\u003e Release 2.4.0.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/a6f75198a162ba5ee46c4c7dd64aa1b402b6adb0\"\u003e\u003ccode\u003ea6f7519\u003c/code\u003e\u003c/a\u003e Add changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/1bbc433c98007747518deb335c33a48139bca45b\"\u003e\u003ccode\u003e1bbc433\u003c/code\u003e\u003c/a\u003e webcrypto: snapshot opts\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/5bd2e153661344bd8dcab84c948e416c359c71d0\"\u003e\u003ccode\u003e5bd2e15\u003c/code\u003e\u003c/a\u003e Remove unused files\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/a3bc7ffbb28e21e8eec0d762c4c2f31e8bb0ca67\"\u003e\u003ccode\u003ea3bc7ff\u003c/code\u003e\u003c/a\u003e Bump vectors\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/fcb6cb69b80dee1f897f3a183ab1b9a06ee4494e\"\u003e\u003ccode\u003efcb6cb6\u003c/code\u003e\u003c/a\u003e README\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/64f3033300c696263ff3922261ff24df310ba5eb\"\u003e\u003ccode\u003e64f3033\u003c/code\u003e\u003c/a\u003e readme\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/9ac61653c94407ea1ed48b2d574baf887fa4fe33\"\u003e\u003ccode\u003e9ac6165\u003c/code\u003e\u003c/a\u003e Bump ci workflows\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/6587b514d21bf8c5c6a42c6ad7d84835e38714fb\"\u003e\u003ccode\u003e6587b51\u003c/code\u003e\u003c/a\u003e Fix test on bun\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/paulmillr/noble-hashes/commit/91ecf918e6bf5e8b04dacb711ca716f4039add87\"\u003e\u003ccode\u003e91ecf91\u003c/code\u003e\u003c/a\u003e Fix tests\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/paulmillr/noble-hashes/compare/2.0.1...2.4.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​noble/hashes\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@openzeppelin/contracts` from 5.4.0 to 5.6.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/releases\"\u003e@​openzeppelin/contracts's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.6.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eInteroperableAddress\u003c/code\u003e: Fix overflow in the parsing functions that caused silent misparse of large interoperable addresses. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6372\"\u003e#6372\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev5.6.0\u003c/h2\u003e\n\u003ch3\u003eBreaking changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eStrings\u003c/code\u003e: The \u003ccode\u003eescapeJSON\u003c/code\u003e function now escapes all control characters in the range U+0000 to U+001F per RFC-4627. Previously only backspace, tab, newline, form feed, carriage return, double quote, and backslash were escaped. Input strings containing any other control character (e.g. null \u003ccode\u003e0x00\u003c/code\u003e) or raw bytes in U+0001–U+001F will now produce different, longer output (e.g. \u003ccode\u003e\\u0000\u003c/code\u003e for null). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6344\"\u003e#6344\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC1155\u003c/code\u003e: Performing batch transfers with exactly one id/value in the batch no-longer calls \u003ccode\u003eIERC1155Receiver.onERC1155Received\u003c/code\u003e. \u003ccode\u003eIERC1155Receiver.onERC1155BatchReceived\u003c/code\u003e is called instead (with arrays of length one). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6170\"\u003e#6170\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC1967Proxy\u003c/code\u003e and \u003ccode\u003eTransparentUpgradeableProxy\u003c/code\u003e: Mandate initialization during construction. Deployment now reverts with \u003ccode\u003eERC1967ProxyUninitialized\u003c/code\u003e if an initialize call is not provided. Developers that rely on the previous behavior and want to disable this check can do so by overriding the internal \u003ccode\u003e_unsafeAllowUninitialized\u003c/code\u003e function to return true. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5906\"\u003e#5906\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC721\u003c/code\u003e and \u003ccode\u003eERC1155\u003c/code\u003e: Prevent setting an operator for \u003ccode\u003eaddress(0)\u003c/code\u003e. In the case of \u003ccode\u003eERC721\u003c/code\u003e this type of operator allowance could lead to obfuscated mint permission. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6171\"\u003e#6171\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eRLP\u003c/code\u003e: The \u003ccode\u003eencode(bytes32)\u003c/code\u003e function now encodes \u003ccode\u003ebytes32\u003c/code\u003e as a fixed size item and not as a scalar in \u003ccode\u003eencode(uint256)\u003c/code\u003e. Users must replace calls to \u003ccode\u003eencode(bytes32)\u003c/code\u003e with \u003ccode\u003eencode(uint256(bytes32))\u003c/code\u003e to preserve the same behavior. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6167\"\u003e#6167\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4337Utils\u003c/code\u003e: The \u003ccode\u003eparseValidationData\u003c/code\u003e now returns a \u003ccode\u003eValidationRange\u003c/code\u003e as the last return tuple value indicating whether the \u003ccode\u003evalidationData\u003c/code\u003e is compared against a timestamp or block number. Developers must update their code to handle this new return value (e.g. \u003ccode\u003e(aggregator, validAfter, validUntil) -\u0026gt; (aggregator, validAfter, validUntil, range)\u003c/code\u003e). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6215\"\u003e#6215\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eSignerWebAuthn\u003c/code\u003e: The \u003ccode\u003e_rawSignatureValidation\u003c/code\u003e function now returns \u003ccode\u003efalse\u003c/code\u003e when the signature is not a valid WebAuthn authentication assertion. P256 fallback is removed. Developers can add it back by overriding the function. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6337\"\u003e#6337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eMemory\u003c/code\u003e: The \u003ccode\u003esetFreeMemoryPointer\u003c/code\u003e function is renamed to \u003ccode\u003eunsafeSetFreeMemoryPointer\u003c/code\u003e. Developers should use \u003ccode\u003eunsafeSetFreeMemoryPointer\u003c/code\u003e instead of \u003ccode\u003esetFreeMemoryPointer\u003c/code\u003e after v5.6.0. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6348\"\u003e#6348\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eMemory\u003c/code\u003e: Remove the \u003ccode\u003easBytes32\u003c/code\u003e and \u003ccode\u003easPointer\u003c/code\u003e function to reduce the risk of mistakes when manipulating memory pointers. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6340\"\u003e#6340\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChanges by category\u003c/h3\u003e\n\u003ch4\u003eAccount\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eAccount\u003c/code\u003e: Update default version of the ERC-4337 entrypoint to v0.9. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6135\"\u003e#6135\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eAccountERC7579\u003c/code\u003e: Do not revert and perform the uninstall if the \u003ccode\u003eonUninstall\u003c/code\u003e hook of a module reverts. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6142\"\u003e#6142\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4337Utils\u003c/code\u003e: Added the \u003ccode\u003epaymasterSignature\u003c/code\u003e function to extract the signature in \u003ccode\u003epaymasterAndData\u003c/code\u003e after Entrypoint v0.9. Similarly, a variant of \u003ccode\u003epaymasterData\u003c/code\u003e that receives a flag to exclude the signature from the returned data. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6215\"\u003e#6215\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4337Utils\u003c/code\u003e: Added variants of \u003ccode\u003epackValidationData(address,uint48,uint48)\u003c/code\u003e and \u003ccode\u003epackValidationData(bool,uint48,uint48)\u003c/code\u003e that receive a \u003ccode\u003eValidationRange\u003c/code\u003e argument, could be timestamp or block number. Similarly, the \u003ccode\u003eparseValidationData\u003c/code\u003e now returns a \u003ccode\u003eValidationRange\u003c/code\u003e too. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6215\"\u003e#6215\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTokens\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eERC1155\u003c/code\u003e: Introduce the \u003ccode\u003e_checkAuthorized\u003c/code\u003e internal virtual function to encapsulate \u003ccode\u003eisApprovedForAll\u003c/code\u003e and \u003ccode\u003emsg.sender == from\u003c/code\u003e checks. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6133\"\u003e#6133\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC1155\u003c/code\u003e: Call \u003ccode\u003eIERC1155Receiver.onERC1155BatchReceived\u003c/code\u003e when performing a batch transfers with exactly one id/value in the batch. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6170\"\u003e#6170\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4626\u003c/code\u003e: Allow overriding underlying assets transfer mechanisms through new internal virtual functions (\u003ccode\u003e_transferIn\u003c/code\u003e and \u003ccode\u003e_transferOut\u003c/code\u003e). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5970\"\u003e#5970\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC721URIStorage\u003c/code\u003e: Add \u003ccode\u003e_suffixURI\u003c/code\u003e, an internal getter for retrieving the custom tokenURI without the base prefix. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6175\"\u003e#6175\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdd ERC-165 detection for the \u003ccode\u003eIERC6909ContentURI\u003c/code\u003e, \u003ccode\u003eIERC6909TokenSupply\u003c/code\u003e and \u003ccode\u003eIERC6909Metadata\u003c/code\u003e interfaces in the \u003ccode\u003eERC6909ContentURI\u003c/code\u003e, \u003ccode\u003eERC6909TokenSupply\u003c/code\u003e and \u003ccode\u003eERC6909Metadata\u003c/code\u003e contracts respectively. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6246\"\u003e#6246\u003c/a\u003e) and (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6247\"\u003e#6247\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCross-chain\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eBridgeFungible\u003c/code\u003e, \u003ccode\u003eBridgeERC20\u003c/code\u003e and \u003ccode\u003eBridgeERC7802\u003c/code\u003e: Added bridge contracts to handle crosschain movements of ERC-20 (and ERC-7802) tokens. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5914\"\u003e#5914\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6328\"\u003e#6328\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eCrosschainLinked\u003c/code\u003e: Added a new helper contract to facilitate communication between a contract on one chain and counterparts on remote chains through ERC-7786 gateways. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5914\"\u003e#5914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC20Crosschain\u003c/code\u003e: Added an ERC-20 extension to embed an ERC-7786 based crosschain bridge directly in the token contract. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5914\"\u003e#5914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eInteroperableAddress\u003c/code\u003e: Reject inputs with both chain reference and addresses empty. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6340\"\u003e#6340\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCryptography\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eMessageHashUtils\u003c/code\u003e: Add helper functions to build EIP-712 domain typehash and separator with fields selectively enabled/disabled. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5908\"\u003e#5908\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eSignatureChecker\u003c/code\u003e: Add \u003ccode\u003eisValidERC1271SignatureNowCalldata\u003c/code\u003e, a variant of \u003ccode\u003eisValidERC1271SignatureNow\u003c/code\u003e that takes the signature from calldata. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6123\"\u003e#6123\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eTrieProof\u003c/code\u003e: Add library for verifying Ethereum Merkle-Patricia trie inclusion proofs. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5826\"\u003e#5826\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eWebAuthn\u003c/code\u003e: Verification now returns \u003ccode\u003efalse\u003c/code\u003e instead of reverting when client data contains an out-of-bounds \u003ccode\u003echallengeIndex\u003c/code\u003e. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6329\"\u003e#6329\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eStructures\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/blob/master/CHANGELOG.md\"\u003e@​openzeppelin/contracts's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.6.1 (2026-02-27)\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eInteroperableAddress\u003c/code\u003e: Fix overflow in the parsing functions that caused silent misparse of large interoperable addresses. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6372\"\u003e#6372\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.6.0 (2026-02-25)\u003c/h2\u003e\n\u003ch3\u003eBreaking changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eStrings\u003c/code\u003e: The \u003ccode\u003eescapeJSON\u003c/code\u003e function now escapes all control characters in the range U+0000 to U+001F per RFC-4627. Previously only backspace, tab, newline, form feed, carriage return, double quote, and backslash were escaped. Input strings containing any other control character (e.g. null \u003ccode\u003e0x00\u003c/code\u003e) or raw bytes in U+0001–U+001F will now produce different, longer output (e.g. \u003ccode\u003e\\u0000\u003c/code\u003e for null). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6344\"\u003e#6344\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC1155\u003c/code\u003e: Performing batch transfers with exactly one id/value in the batch no-longer calls \u003ccode\u003eIERC1155Receiver.onERC1155Received\u003c/code\u003e. \u003ccode\u003eIERC1155Receiver.onERC1155BatchReceived\u003c/code\u003e is called instead (with arrays of length one). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6170\"\u003e#6170\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC1967Proxy\u003c/code\u003e and \u003ccode\u003eTransparentUpgradeableProxy\u003c/code\u003e: Mandate initialization during construction. Deployment now reverts with \u003ccode\u003eERC1967ProxyUninitialized\u003c/code\u003e if an initialize call is not provided. Developers that rely on the previous behavior and want to disable this check can do so by overriding the internal \u003ccode\u003e_unsafeAllowUninitialized\u003c/code\u003e function to return true. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5906\"\u003e#5906\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC721\u003c/code\u003e and \u003ccode\u003eERC1155\u003c/code\u003e: Prevent setting an operator for \u003ccode\u003eaddress(0)\u003c/code\u003e. In the case of \u003ccode\u003eERC721\u003c/code\u003e this type of operator allowance could lead to obfuscated mint permission. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6171\"\u003e#6171\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eRLP\u003c/code\u003e: The \u003ccode\u003eencode(bytes32)\u003c/code\u003e function now encodes \u003ccode\u003ebytes32\u003c/code\u003e as a fixed size item and not as a scalar in \u003ccode\u003eencode(uint256)\u003c/code\u003e. Users must replace calls to \u003ccode\u003eencode(bytes32)\u003c/code\u003e with \u003ccode\u003eencode(uint256(bytes32))\u003c/code\u003e to preserve the same behavior. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6167\"\u003e#6167\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4337Utils\u003c/code\u003e: The \u003ccode\u003eparseValidationData\u003c/code\u003e now returns a \u003ccode\u003eValidationRange\u003c/code\u003e as the last return tuple value indicating whether the \u003ccode\u003evalidationData\u003c/code\u003e is compared against a timestamp or block number. Developers must update their code to handle this new return value (e.g. \u003ccode\u003e(aggregator, validAfter, validUntil) -\u0026gt; (aggregator, validAfter, validUntil, range)\u003c/code\u003e). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6215\"\u003e#6215\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eSignerWebAuthn\u003c/code\u003e: The \u003ccode\u003e_rawSignatureValidation\u003c/code\u003e function now returns \u003ccode\u003efalse\u003c/code\u003e when the signature is not a valid WebAuthn authentication assertion. P256 fallback is removed. Developers can add it back by overriding the function. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6337\"\u003e#6337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eMemory\u003c/code\u003e: The \u003ccode\u003esetFreeMemoryPointer\u003c/code\u003e function is renamed to \u003ccode\u003eunsafeSetFreeMemoryPointer\u003c/code\u003e. Developers should use \u003ccode\u003eunsafeSetFreeMemoryPointer\u003c/code\u003e instead of \u003ccode\u003esetFreeMemoryPointer\u003c/code\u003e after v5.6.0. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6348\"\u003e#6348\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eMemory\u003c/code\u003e: Remove the \u003ccode\u003easBytes32\u003c/code\u003e and \u003ccode\u003easPointer\u003c/code\u003e function to reduce the risk of mistakes when manipulating memory pointers. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6340\"\u003e#6340\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChanges by category\u003c/h3\u003e\n\u003ch4\u003eAccount\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eAccount\u003c/code\u003e: Update default version of the ERC-4337 entrypoint to v0.9. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6135\"\u003e#6135\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eAccountERC7579\u003c/code\u003e: Do not revert and perform the uninstall if the \u003ccode\u003eonUninstall\u003c/code\u003e hook of a module reverts. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6142\"\u003e#6142\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4337Utils\u003c/code\u003e: Added the \u003ccode\u003epaymasterSignature\u003c/code\u003e function to extract the signature in \u003ccode\u003epaymasterAndData\u003c/code\u003e after Entrypoint v0.9. Similarly, a variant of \u003ccode\u003epaymasterData\u003c/code\u003e that receives a flag to exclude the signature from the returned data. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6215\"\u003e#6215\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4337Utils\u003c/code\u003e: Added variants of \u003ccode\u003epackValidationData(address,uint48,uint48)\u003c/code\u003e and \u003ccode\u003epackValidationData(bool,uint48,uint48)\u003c/code\u003e that receive a \u003ccode\u003eValidationRange\u003c/code\u003e argument, could be timestamp or block number. Similarly, the \u003ccode\u003eparseValidationData\u003c/code\u003e now returns a \u003ccode\u003eValidationRange\u003c/code\u003e too. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6215\"\u003e#6215\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTokens\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eERC1155\u003c/code\u003e: Introduce the \u003ccode\u003e_checkAuthorized\u003c/code\u003e internal virtual function to encapsulate \u003ccode\u003eisApprovedForAll\u003c/code\u003e and \u003ccode\u003emsg.sender == from\u003c/code\u003e checks. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6133\"\u003e#6133\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC1155\u003c/code\u003e: Call \u003ccode\u003eIERC1155Receiver.onERC1155BatchReceived\u003c/code\u003e when performing a batch transfers with exactly one id/value in the batch. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6170\"\u003e#6170\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC4626\u003c/code\u003e: Allow overriding underlying assets transfer mechanisms through new internal virtual functions (\u003ccode\u003e_transferIn\u003c/code\u003e and \u003ccode\u003e_transferOut\u003c/code\u003e). (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5970\"\u003e#5970\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC721URIStorage\u003c/code\u003e: Add \u003ccode\u003e_suffixURI\u003c/code\u003e, an internal getter for retrieving the custom tokenURI without the base prefix. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6175\"\u003e#6175\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdd ERC-165 detection for the \u003ccode\u003eIERC6909ContentURI\u003c/code\u003e, \u003ccode\u003eIERC6909TokenSupply\u003c/code\u003e and \u003ccode\u003eIERC6909Metadata\u003c/code\u003e interfaces in the \u003ccode\u003eERC6909ContentURI\u003c/code\u003e, \u003ccode\u003eERC6909TokenSupply\u003c/code\u003e and \u003ccode\u003eERC6909Metadata\u003c/code\u003e contracts respectively. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6246\"\u003e#6246\u003c/a\u003e) and (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6247\"\u003e#6247\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCross-chain\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eBridgeFungible\u003c/code\u003e, \u003ccode\u003eBridgeERC20\u003c/code\u003e and \u003ccode\u003eBridgeERC7802\u003c/code\u003e: Added bridge contracts to handle crosschain movements of ERC-20 (and ERC-7802) tokens. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5914\"\u003e#5914\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6328\"\u003e#6328\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eCrosschainLinked\u003c/code\u003e: Added a new helper contract to facilitate communication between a contract on one chain and counterparts on remote chains through ERC-7786 gateways. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5914\"\u003e#5914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eERC20Crosschain\u003c/code\u003e: Added an ERC-20 extension to embed an ERC-7786 based crosschain bridge directly in the token contract. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5914\"\u003e#5914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eInteroperableAddress\u003c/code\u003e: Reject inputs with both chain reference and addresses empty. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6340\"\u003e#6340\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eCryptography\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eMessageHashUtils\u003c/code\u003e: Add helper functions to build EIP-712 domain typehash and separator with fields selectively enabled/disabled. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5908\"\u003e#5908\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eSignatureChecker\u003c/code\u003e: Add \u003ccode\u003eisValidERC1271SignatureNowCalldata\u003c/code\u003e, a variant of \u003ccode\u003eisValidERC1271SignatureNow\u003c/code\u003e that takes the signature from calldata. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6123\"\u003e#6123\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eTrieProof\u003c/code\u003e: Add library for verifying Ethereum Merkle-Patricia trie inclusion proofs. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/5826\"\u003e#5826\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eWebAuthn\u003c/code\u003e: Verification now returns \u003ccode\u003efalse\u003c/code\u003e instead of reverting when client data contains an out-of-bounds \u003ccode\u003echallengeIndex\u003c/code\u003e. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/pull/6329\"\u003e#6329\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eStructures\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/5fd1781b1454fd1ef8e722282f86f9293cacf256\"\u003e\u003ccode\u003e5fd1781\u003c/code\u003e\u003c/a\u003e Release v5.6.1 (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/issues/6377\"\u003e#6377\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/82cad372db5b5a2a1dc7cb45751df311d86a7117\"\u003e\u003ccode\u003e82cad37\u003c/code\u003e\u003c/a\u003e Fix support for very large inputs in InteroperableAddress (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/issues/6372\"\u003e#6372\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/56a3de2cea907c9a500d32e70c275f68393b7ba6\"\u003e\u003ccode\u003e56a3de2\u003c/code\u003e\u003c/a\u003e Release v5.6.0 (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/issues/6340\"\u003e#6340\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/6ec651d4b3235a74f1f9dcc802f10e75909806f4\"\u003e\u003ccode\u003e6ec651d\u003c/code\u003e\u003c/a\u003e Exit release candidate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/4c10cbe5c114fb454dcf37aa99aedcf434bc34c6\"\u003e\u003ccode\u003e4c10cbe\u003c/code\u003e\u003c/a\u003e Add support for inline extension nodes in TrieProof (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/issues/6351\"\u003e#6351\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/aa110ab23c48dbc1a78fba0bb4366e894568c126\"\u003e\u003ccode\u003eaa110ab\u003c/code\u003e\u003c/a\u003e Fix typos and documentation for the 5.6 audit. (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/issues/6330\"\u003e#6330\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/27dddf8e3087072acdefdc49d942d84ae3051b29\"\u003e\u003ccode\u003e27dddf8\u003c/code\u003e\u003c/a\u003e Escape control characters in Strings.escapeJSON (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/issues/6344\"\u003e#6344\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/f5cd8d897a1c4c1af2345a185269bb61d6174c01\"\u003e\u003ccode\u003ef5cd8d8\u003c/code\u003e\u003c/a\u003e Reject interoperable addresses whith both chain reference and addresses empty...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/44d016c5b59c2c4cd3a7eb97df6de8baf805c303\"\u003e\u003ccode\u003e44d016c\u003c/code\u003e\u003c/a\u003e Check that slice are in the reserved space in Accumulator push and shift (\u003ca href=\"https://redirect.github.com/OpenZeppelin/openzeppelin-contracts/issues/6302\"\u003e#6302\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/commit/cbaf3a4159561dd62ec5652597dbe5cd66a59d56\"\u003e\u003ccode\u003ecbaf3a4\u003c/code\u003e\u003c/a\u003e Remove Memory.asPointer and Memory.asBytes32 + add warning about setting the ...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/OpenZeppelin/openzeppelin-contracts/compare/v5.4.0...v5.6.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​openzeppelin/contracts\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@supabase/supabase-js` from 2.90.0 to 2.116.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/supabase/supabase-js/releases\"\u003e@​supabase/supabase-js's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.116.0\u003c/h2\u003e\n\u003ch2\u003e2.116.0 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eauth:\u003c/strong\u003e add MFA recovery codes API (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2676\"\u003e#2676\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e add bucket lifecycle configuration (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2659\"\u003e#2659\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e topk 10k support (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2667\"\u003e#2667\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e add versionId support to create URL methods (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2678\"\u003e#2678\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eauth:\u003c/strong\u003e silence commit-guard-discarded refresh in initial session (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2668\"\u003e#2668\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e drop legacy prefix from lifecycles (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2674\"\u003e#2674\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003esupabase:\u003c/strong\u003e warn when schema is passed outside db options (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2663\"\u003e#2663\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efadymak\u003c/li\u003e\n\u003cli\u003eFerhat Elmas\u003c/li\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eTyler Hillery\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev2.116.0-canary.3\u003c/h2\u003e\n\u003ch2\u003e2.116.0-canary.3 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eauth:\u003c/strong\u003e add MFA recovery codes API (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2676\"\u003e#2676\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e add versionId support to create URL methods (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2678\"\u003e#2678\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efadymak\u003c/li\u003e\n\u003cli\u003eKaterina Skroumpelou\u003c/li\u003e\n\u003cli\u003eTyler Hillery\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev2.116.0-canary.2\u003c/h2\u003e\n\u003ch2\u003e2.116.0-canary.2 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e topk 10k support (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2667\"\u003e#2667\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e drop legacy prefix from lifecycles (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2674\"\u003e#2674\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/supabase/supabase-js/blob/master/packages/core/supabase-js/CHANGELOG.md\"\u003e@​supabase/supabase-js's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.116.0 (2026-09-07)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eauth:\u003c/strong\u003e add MFA recovery codes API (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2676\"\u003e#2676\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003esupabase:\u003c/strong\u003e warn when schema is passed outside db options (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2663\"\u003e#2663\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efadymak\u003c/li\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.115.0 (2026-09-03)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003epostgrest:\u003c/strong\u003e add getOpenApiSpec() (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2651\"\u003e#2651\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.114.0 (2026-09-02)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for \u003ccode\u003e@​supabase/supabase-js\u003c/code\u003e to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003ch2\u003e2.113.0 (2026-09-02)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for \u003ccode\u003e@​supabase/supabase-js\u003c/code\u003e to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003ch2\u003e2.112.4 (2026-08-24)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for \u003ccode\u003e@​supabase/supabase-js\u003c/code\u003e to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003ch2\u003e2.112.3 (2026-08-11)\u003c/h2\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003esupabase:\u003c/strong\u003e improve trace propagation sampling and diagnostics (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2604\"\u003e#2604\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003esupabase:\u003c/strong\u003e add trace context headers to canonical CORS allow-list (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2603\"\u003e#2603\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.112.2 (2026-08-06)\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/5aedaab92566149dc728ce0480b032841dddd463\"\u003e\u003ccode\u003e5aedaab\u003c/code\u003e\u003c/a\u003e feat(auth): add MFA recovery codes API (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2676\"\u003e#2676\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/e4f675a96addf3e767c38f7e8c8759754f10f490\"\u003e\u003ccode\u003ee4f675a\u003c/code\u003e\u003c/a\u003e fix(supabase): warn when schema is passed outside db options (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2663\"\u003e#2663\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/dbe76791e9eab34d1b91ec0ebdb9f11fc770b4eb\"\u003e\u003ccode\u003edbe7679\u003c/code\u003e\u003c/a\u003e chore(release): version 2.115.0 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2664\"\u003e#2664\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/3eb61931b0d81728eece27b43df962e7336b0ed5\"\u003e\u003ccode\u003e3eb6193\u003c/code\u003e\u003c/a\u003e docs(supabase): clarify db.schema needs the second generic (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2662\"\u003e#2662\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/92fb8ba0cbfc50c3f550b0768210e98d26f2b1d5\"\u003e\u003ccode\u003e92fb8ba\u003c/code\u003e\u003c/a\u003e feat(postgrest): add getOpenApiSpec() (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2651\"\u003e#2651\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/aef432bc806fbbe90dde71ec9b75e3cc6d702a31\"\u003e\u003ccode\u003eaef432b\u003c/code\u003e\u003c/a\u003e chore(release): version 2.114.0 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2653\"\u003e#2653\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/67b07b075220806f8f7355995db646bd6d0a85db\"\u003e\u003ccode\u003e67b07b0\u003c/code\u003e\u003c/a\u003e chore(release): version 2.113.0 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2650\"\u003e#2650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/062ae5e6f5e06c08284d7392316389dc7a935baf\"\u003e\u003ccode\u003e062ae5e\u003c/code\u003e\u003c/a\u003e chore(release): version 2.112.4 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2628\"\u003e#2628\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/c7397c19cb6cb8b1562be27cb0a09ed0e240276a\"\u003e\u003ccode\u003ec7397c1\u003c/code\u003e\u003c/a\u003e chore(supabase): bump supabase cli to 2.113.0 (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2606\"\u003e#2606\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/bbc167cbef7fb841d44c53fb3c45e1d19aa3ece3\"\u003e\u003ccode\u003ebbc167c\u003c/code\u003e\u003c/a\u003e chore(release): version 2.112.3 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2608\"\u003e#2608\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/supabase/supabase-js/commits/v2.116.0/packages/core/supabase-js\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@walletconnect/ethereum-provider` from 2.23.1 to 2.24.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/releases\"\u003e@​walletconnect/ethereum-provider's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​walletconnect/ethereum-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.24.0\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/WalletConnect/walletconnect-monorepo/pull/7304\"\u003e#7304\u003c/a\u003e \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/83ba7d4003911bdfa25b41f17ea13f6120d78754\"\u003e\u003ccode\u003e83ba7d4\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ganchoradkov\"\u003e\u003ccode\u003e@​ganchoradkov\u003c/code\u003e\u003c/a\u003e! - Remove unused declared dependencies (\u003ccode\u003e@walletconnect/safe-json\u003c/code\u003e from utils, \u003ccode\u003e@walletconnect/types\u003c/code\u003e from pay, \u003ccode\u003e@walletconnect/core\u003c/code\u003e and \u003ccode\u003e@walletconnect/jsonrpc-provider\u003c/code\u003e from pos-client, \u003ccode\u003eevents\u003c/code\u003e from react-native-compat, \u003ccode\u003euint8arrays\u003c/code\u003e from signer-connection, \u003ccode\u003e@walletconnect/jsonrpc-provider\u003c/code\u003e, \u003ccode\u003e@walletconnect/jsonrpc-utils\u003c/code\u003e and \u003ccode\u003e@walletconnect/sign-client\u003c/code\u003e from ethereum-provider). No runtime changes.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/83ba7d4003911bdfa25b41f17ea13f6120d78754\"\u003e\u003ccode\u003e83ba7d4\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/a610bfe31482adfc2596ef0a0f6306cf8060cc87\"\u003e\u003ccode\u003ea610bfe\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/fa9227f783944dbdaefe6fc03c4de70c2ff9c194\"\u003e\u003ccode\u003efa9227f\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/f8bfc24580bf7fe2047ba480885c79f76106c055\"\u003e\u003ccode\u003ef8bfc24\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/utils\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.24.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/universal-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.24.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/types\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.24.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​walletconnect/ethereum-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.10\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/cd32ff1ebccc6a186ca5890827ab96a0552f9c58\"\u003e\u003ccode\u003ecd32ff1\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/63ff999cb096f77bb9ea9ae940cbf5dd2d7a0b6d\"\u003e\u003ccode\u003e63ff999\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/3233b479fdd9864c60a4ed21c782a7e9194e581e\"\u003e\u003ccode\u003e3233b47\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/3ea740ed9b8abd0e6724f409b025a0c926a75106\"\u003e\u003ccode\u003e3ea740e\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/4af452446a5e83a465c76a5075d9db0b086e6851\"\u003e\u003ccode\u003e4af4524\u003c/code\u003e\u003c/a\u003e]:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/utils\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.10\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/sign-client\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.10\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/types\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.10\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/universal-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.10\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​walletconnect/ethereum-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.9\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/bb4869f44f493973cef190c4100d28b321284e03\"\u003e\u003ccode\u003ebb4869f\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/6e4a34d37bf28e96aa65737508f63da701b11969\"\u003e\u003ccode\u003e6e4a34d\u003c/code\u003e\u003c/a\u003e]:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/utils\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.9\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/sign-client\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.9\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/universal-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.9\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/types\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.9\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​walletconnect/ethereum-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.8\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/utils\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.8\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/sign-client\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.8\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/types\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.8\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/universal-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.8\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​walletconnect/ethereum-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.7\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/0b699db1d3a0eb760f1599df7c9074f136329088\"\u003e\u003ccode\u003e0b699db\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/a09c7fe4a89d7eb5d6376fb67cc096f72739a4cc\"\u003e\u003ccode\u003ea09c7fe\u003c/code\u003e\u003c/a\u003e]:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/utils\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.7\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/sign-client\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.7\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/universal-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.7\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/types\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.7\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​walletconnect/ethereum-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.23.6\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/blob/v2.0/providers/ethereum-provider/CHANGELOG.md\"\u003e@​walletconnect/ethereum-provider's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.24.0\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/WalletConnect/walletconnect-monorepo/pull/7304\"\u003e#7304\u003c/a\u003e \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/83ba7d4003911bdfa25b41f17ea13f6120d78754\"\u003e\u003ccode\u003e83ba7d4\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ganchoradkov\"\u003e\u003ccode\u003e@​ganchoradkov\u003c/code\u003e\u003c/a\u003e! - Remove unused declared dependencies (\u003ccode\u003e@walletconnect/safe-json\u003c/code\u003e from utils, \u003ccode\u003e@walletconnect/types\u003c/code\u003e from pay, \u003ccode\u003e@walletconnect/core\u003c/code\u003e and \u003ccode\u003e@walletconnect/jsonrpc-provider\u003c/code\u003e from pos-client, \u003ccode\u003eevents\u003c/code\u003e from react-native-compat, \u003ccode\u003euint8arrays\u003c/code\u003e from signer-connection, \u003ccode\u003e@walletconnect/jsonrpc-provider\u003c/code\u003e, \u003ccode\u003e@walletconnect/jsonrpc-utils\u003c/code\u003e and \u003ccode\u003e@walletconnect/sign-client\u003c/code\u003e from ethereum-provider). No runtime changes.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/83ba7d4003911bdfa25b41f17ea13f6120d78754\"\u003e\u003ccode\u003e83ba7d4\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/a610bfe31482adfc2596ef0a0f6306cf8060cc87\"\u003e\u003ccode\u003ea610bfe\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/fa9227f783944dbdaefe6fc03c4de70c2ff9c194\"\u003e\u003ccode\u003efa9227f\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/f8bfc24580bf7fe2047ba480885c79f76106c055\"\u003e\u003ccode\u003ef8bfc24\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/utils\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.24.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/universal-provider\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.24.0\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@​walletconnect/types\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.24.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/50399e3ba5d73c18d83880c2c62cc8dbf32f5145\"\u003e\u003ccode\u003e50399e3\u003c/code\u003e\u003c/a\u003e chore: update versions and lerna.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/83ba7d4003911bdfa25b41f17ea13f6120d78754\"\u003e\u003ccode\u003e83ba7d4\u003c/code\u003e\u003c/a\u003e chore: remove unused dependencies and bump dev tooling security versions\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/3ef9f3e9bdee1abb3daaee08df1a13fe2f97b853\"\u003e\u003ccode\u003e3ef9f3e\u003c/code\u003e\u003c/a\u003e chore: update versions and lerna.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/d6a75081ef41fdc5c6f616a4b70bdb8a06956e5c\"\u003e\u003ccode\u003ed6a7508\u003c/code\u003e\u003c/a\u003e fix: add missing wait-on devDependency to ethereum-provider\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/4aed1dbe9494750553c697c7ccc2263869c6ef11\"\u003e\u003ccode\u003e4aed1db\u003c/code\u003e\u003c/a\u003e chore: fix vulnerabilities, remove unused deps, update packages\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/8ccd9aaf4305c4e56282dcbd7c43b0d917558ace\"\u003e\u003ccode\u003e8ccd9aa\u003c/code\u003e\u003c/a\u003e chore: update versions and lerna.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/899be2eaf4d18d3aba35105b6523773607ee7eca\"\u003e\u003ccode\u003e899be2e\u003c/code\u003e\u003c/a\u003e fix: prevent Node.js crypto from leaking into browser bundles\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/99f6145209070b1a5db7fd5ff417bc4f9d0a1911\"\u003e\u003ccode\u003e99f6145\u003c/code\u003e\u003c/a\u003e chore: update versions and lerna.json\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/44d591d7a13898605707676089794ac487087eba\"\u003e\u003ccode\u003e44d591d\u003c/code\u003e\u003c/a\u003e chore: fix security vulnerabilities and migrate rollup 2 to 4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commit/83174a68c3f6b5eab3c747f991a24209c3fd7340\"\u003e\u003ccode\u003e83174a6\u003c/code\u003e\u003c/a\u003e chore: update versions and lerna.json\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/WalletConnect/walletconnect-monorepo/commits/@walletconnect/ethereum-provider@2.24.0/providers/ethereum-provider\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `axios` from 1.19.0 to 1.20.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/releases\"\u003eaxios's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.20.0 — August 19, 2026\u003c/h2\u003e\n\u003cp\u003eThis release hardens runtime option handling, adds RFC 9110 status-code aliases, fixes Node.js and XHR reliability issues, and refreshes project tooling and documentation.\u003c/p\u003e\n\u003ch2\u003e⚠️ Breaking Changes \u0026amp; Deprecations\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eHTTP Status Naming: Added ContentTooLarge (413) and UnprocessableContent (422), while retaining PayloadTooLarge and UnprocessableEntity as backward-compatible deprecated aliases. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11082\"\u003e#11082\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRuntime Option Handling: Hardened behavioral configuration reads against shared and foreign prototype pollution and normalized unsafe interceptor replacement objects. This also clarifies Fetch redirect and custom implementation behavior, HTTP/2 DNS and proxy handling, CIDR-based NO_PROXY matching, and malformed data URI rejection; see the PR for documented compatibility effects. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11141\"\u003e#11141\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eInterceptor Lifecycle: Prevented unbounded handler-array growth by trimming trailing ejected interceptors without changing iteration semantics, and kept interceptor operations safe when the public handlers field is nullish. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11087\"\u003e#11087\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11118\"\u003e#11118\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRequest Error Preservation: Prevented custom Error.prepareStackTrace implementations that return non-string values from replacing the original request failure with an unrelated TypeError. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11109\"\u003e#11109\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eXHR Reliability: Navigation-canceled requests now reject with ECONNABORTED instead of resolving with status 0, while successful downloads flush their final progress callback during the live loadend dispatch. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11094\"\u003e#11094\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11121\"\u003e#11121\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eNode.js Socket Memory: Removed request-context retention from per-socket error listeners, preventing completed response data from being pinned for the lifetime of pooled keep-alive sockets. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11091\"\u003e#11091\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eCore Methods and HTTP Errors: Prevented structural method-header buckets from leaking into outgoing headers, standardized invalid DNS lookup and httpVersion failures as AxiosError.ERR_BAD_OPTION_VALUE, and corrected the timeoutErrorMessage merge strategy. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11096\"\u003e#11096\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDependencies: Updated fast-uri, postcss, js-yaml, mocha, development-tooling groups, and GitHub Actions dependencies. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11092\"\u003e#11092\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11098\"\u003e#11098\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11099\"\u003e#11099\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11106\"\u003e#11106\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11107\"\u003e#11107\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11122\"\u003e#11122\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11123\"\u003e#11123\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11126\"\u003e#11126\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11127\"\u003e#11127\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11133\"\u003e#11133\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11140\"\u003e#11140\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11143\"\u003e#11143\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11144\"\u003e#11144\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eDocumentation: Applied the v1.19.0 documentation updates, added the missing fs import to the README stream example, introduced localized global search, and repaired the interceptor test link. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11101\"\u003e#11101\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11113\"\u003e#11113\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11097\"\u003e#11097\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11119\"\u003e#11119\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSponsorship: Updated sponsorship links and data and added ScrapingBee as a sponsor. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11124\"\u003e#11124\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11136\"\u003e#11136\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11137\"\u003e#11137\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eCI and Release: Switched ESM smoke tests to locked dependencies and synchronized package and runtime version metadata for v1.20.0. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11128\"\u003e#11128\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11152\"\u003e#11152\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🌟 New Contributors\u003c/h2\u003e\n\u003cp\u003eWe are thrilled to welcome our new contributors. Thank you for helping improve axios:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yens1\"\u003e\u003ccode\u003e@​yens1\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11109\"\u003e#11109\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Sasireddy001\"\u003e\u003ccode\u003e@​Sasireddy001\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11113\"\u003e#11113\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ari-token-security\"\u003e\u003ccode\u003e@​ari-token-security\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11094\"\u003e#11094\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/timothyokooboh\"\u003e\u003ccode\u003e@​timothyokooboh\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11097\"\u003e#11097\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gi9439041-png\"\u003e\u003ccode\u003e@​gi9439041-png\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11119\"\u003e#11119\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hashim1999164\"\u003e\u003ccode\u003e@​Hashim1999164\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11082\"\u003e#11082\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/v-dev-cl\"\u003e\u003ccode\u003e@​v-dev-cl\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11091\"\u003e#11091\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/r0h1tb\"\u003e\u003ccode\u003e@​r0h1tb\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11118\"\u003e#11118\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ostapondo\"\u003e\u003ccode\u003e@​ostapondo\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11121\"\u003e#11121\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eFull Changelog (\u003ca href=\"https://github.com/axios/axios/compare/v1.19.0...v1.20.0\"\u003ehttps://github.com/axios/axios/compare/v1.19.0...v1.20.0\u003c/a\u003e)\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/blob/v1.x/CHANGELOG.md\"\u003eaxios's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/84a9f3b9a4f3244b8c8e818f557d64c7b964fb25\"\u003e\u003ccode\u003e84a9f3b\u003c/code\u003e\u003c/a\u003e chore(release): prepare release 1.20.0 (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11152\"\u003e#11152\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/e6824eec5fcf9da467a9792724396badc490c469\"\u003e\u003ccode\u003ee6824ee\u003c/code\u003e\u003c/a\u003e fix: core methodList, HTTP adapter errors, and add tests (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11096\"\u003e#11096\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/d8a919fd81403d59058c0e9dbefc540407dee83f\"\u003e\u003ccode\u003ed8a919f\u003c/code\u003e\u003c/a\u003e fix(xhr): flush final progress during the live loadend dispatch (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11121\"\u003e#11121\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/2d2a21af8a433089474a2149781799c93acbcf3c\"\u003e\u003ccode\u003e2d2a21a\u003c/code\u003e\u003c/a\u003e fix(interceptors): tolerate nullish handlers in syncHandlerEntries (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11118\"\u003e#11118\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/d19040bda7a8be2f82c3c6e1a5bc03917daee39a\"\u003e\u003ccode\u003ed19040b\u003c/code\u003e\u003c/a\u003e fix: harden runtime option handling (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11141\"\u003e#11141\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/e0a02dd16671deabe2b809334d4c2ebede29a233\"\u003e\u003ccode\u003ee0a02dd\u003c/code\u003e\u003c/a\u003e chore(deps): bump zizmorcore/zizmor-action from 0.6.1 to 0.6.2 in the github-...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/d10cb3aa3cda1d78721ddf96be590478df26cd81\"\u003e\u003ccode\u003ed10cb3a\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump the development_dependencies group with 4 updates (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11143\"\u003e#11143\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/2c94646eb7cb7ab9dcb2aefdb04ab1b040c28e16\"\u003e\u003ccode\u003e2c94646\u003c/code\u003e\u003c/a\u003e chore(deps): bump js-yaml and mocha in /tests/smoke/cjs (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11133\"\u003e#11133\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/76c12bce5a4fe9a45bef9a5bf2baaf599d7d382e\"\u003e\u003ccode\u003e76c12bc\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump js-yaml from 4.3.0 to 4.3.1 (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11140\"\u003e#11140\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/ba98559a7f5a18e531b5762387e5957bd281af3d\"\u003e\u003ccode\u003eba98559\u003c/code\u003e\u003c/a\u003e docs: add ScrapingBee sponsor (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11137\"\u003e#11137\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/axios/axios/compare/v1.19.0...v1.20.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `date-fns` from 4.1.0 to 4.4.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/date-fns/date-fns/releases\"\u003edate-fns's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.4.0\u003c/h2\u003e\n\u003cp\u003eThis release revisits the approach to CDN usage and introduces a new package, \u003ccode\u003e@date-fns/cdn\u003c/code\u003e and deprecates the \u003ccode\u003edate-fns\u003c/code\u003e CDN scripts. It allowed reducing the zipped package size from \u003ccode\u003e5.83 MB\u003c/code\u003e down to \u003ccode\u003e3.96 MB\u003c/code\u003e without introducing any breaking changes.\u003c/p\u003e\n\u003cp\u003eIn \u003ccode\u003ev5.0.0-alpha.0\u003c/code\u003e where CDN scripts are completely removed from \u003ccode\u003edate-fns\u003c/code\u003e the change is more significant and brings the zipped package size down to \u003ccode\u003e2.89 MB\u003c/code\u003e.\u003c/p\u003e\n\u003cp\u003eIt is just the first step in optimizing the package size. Expect further size reduction in the future v4 and v5 versions.\u003c/p\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDEPRECATED\u003c/strong\u003e: The \u003ccode\u003edate-fns\u003c/code\u003e CDN scripts are now deprecated and will be removed in the next major release. Please switch to the new \u003ccode\u003e@date-fns/cdn\u003c/code\u003e package for CDN usage.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eRemoved CDN source maps to reduce the package size. If you rely on them, please switch to the new \u003ccode\u003e@date-fns/cdn\u003c/code\u003e package that still includes them.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.3.0\u003c/h2\u003e\n\u003cp\u003eKudos to \u003ca href=\"https://github.com/ImRodry\"\u003e\u003ccode\u003e@​ImRodry\u003c/code\u003e\u003c/a\u003e and \u003ca href=\"https://github.com/puneetdixit200\"\u003e\u003ccode\u003e@​puneetdixit200\u003c/code\u003e\u003c/a\u003e for their contributions.\u003c/p\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eFixed missing modularized optimization fallback (\u003ca href=\"https://x.com/kossnocorp/status/1731181274579325260\"\u003efor Next.js and others\u003c/a\u003e). See \u003ca href=\"https://x.com/kossnocorp/status/1731181274579325260\"\u003e#4193\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eFixed \u003ccode\u003ept\u003c/code\u003e locale first day of week to be Sunday. See \u003ca href=\"https://redirect.github.com/date-fns/date-fns/pull/4195\"\u003e#4195\u003c/a\u003e by \u003ca href=\"https://github.com/ImRodry\"\u003e\u003ccode\u003e@​ImRodry\u003c/code\u003e\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eFixed \u003ccode\u003ezh-CN\u003c/code\u003e, \u003ccode\u003ezh-HK\u003c/code\u003e, and \u003ccode\u003ezh-TW\u003c/code\u003e locale month parsing for October, November, and December. See \u003ca href=\"https://redirect.github.com/date-fns/date-fns/pull/4194\"\u003e#4194\u003c/a\u003e by \u003ca href=\"https://github.com/puneetdixit200\"\u003e\u003ccode\u003e@​puneetdixit200\u003c/code\u003e\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.2.1\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFixed type definitions missing in v4.2.0 due to TypeScript misconfiguration.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.2.0\u003c/h2\u003e\n\u003cp\u003eThis is a minor release in all senses, it only includes documentation updates (first of many) that points to the new \u003ca href=\"https://date-fns.org/you-dont-need-date-fns\"\u003eYou Don't Need date-fns*\u003c/a\u003e page.\u003c/p\u003e\n\u003cp\u003e* Not really\u003c/p\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdded Temporal API references to the JSDoc annotations of \u003ccode\u003eadd\u003c/code\u003e, \u003ccode\u003eaddBusinessDays\u003c/code\u003e, and \u003ccode\u003eaddDays\u003c/code...\n\n_Description has been truncated_","html_url":"https://github.com/Biggieyes/biggieyes-public/pull/38","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/Biggieyes%2Fbiggieyes-public/issues/38","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/38/packages"}}]}