Skip to content

Conversation

@anderson-suga
Copy link
Contributor

Summary

This PR updates the following dependencies to patch security vulnerabilities:

  • glob: upgraded to ^10.5.0
  • js-yaml: upgraded to ^4.1.1

Motivation

These updates are required to resolve open CVEs found in the previous versions of these packages.

Test plan

@netlify
Copy link

netlify bot commented Nov 18, 2025

Deploy Preview for jestjs ready!

Name Link
🔨 Latest commit 5f86b83
🔍 Latest deploy log https://app.netlify.com/projects/jestjs/deploys/691d7ab9327fd10008799692
😎 Deploy Preview https://deploy-preview-15905--jestjs.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify project configuration.

@linux-foundation-easycla
Copy link

linux-foundation-easycla bot commented Nov 18, 2025

CLA Signed

The committers listed above are authorized under a signed CLA.

  • ✅ login: anderson-suga / name: Anderson Akihiro Suga (3ffc7df, c7707e9)
  • ✅ login: SimenB / name: Simen Bekkhus (5f86b83)

@pkg-pr-new
Copy link

pkg-pr-new bot commented Nov 18, 2025

Open in StackBlitz

babel-jest

npm i https://pkg.pr.new/babel-jest@15905

babel-plugin-jest-hoist

npm i https://pkg.pr.new/babel-plugin-jest-hoist@15905

babel-preset-jest

npm i https://pkg.pr.new/babel-preset-jest@15905

create-jest

npm i https://pkg.pr.new/create-jest@15905

@jest/diff-sequences

npm i https://pkg.pr.new/@jest/diff-sequences@15905

expect

npm i https://pkg.pr.new/expect@15905

@jest/expect-utils

npm i https://pkg.pr.new/@jest/expect-utils@15905

jest

npm i https://pkg.pr.new/jest@15905

jest-changed-files

npm i https://pkg.pr.new/jest-changed-files@15905

jest-circus

npm i https://pkg.pr.new/jest-circus@15905

jest-cli

npm i https://pkg.pr.new/jest-cli@15905

jest-config

npm i https://pkg.pr.new/jest-config@15905

@jest/console

npm i https://pkg.pr.new/@jest/console@15905

@jest/core

npm i https://pkg.pr.new/@jest/core@15905

@jest/create-cache-key-function

npm i https://pkg.pr.new/@jest/create-cache-key-function@15905

jest-diff

npm i https://pkg.pr.new/jest-diff@15905

jest-docblock

npm i https://pkg.pr.new/jest-docblock@15905

jest-each

npm i https://pkg.pr.new/jest-each@15905

@jest/environment

npm i https://pkg.pr.new/@jest/environment@15905

jest-environment-jsdom

npm i https://pkg.pr.new/jest-environment-jsdom@15905

@jest/environment-jsdom-abstract

npm i https://pkg.pr.new/@jest/environment-jsdom-abstract@15905

jest-environment-node

npm i https://pkg.pr.new/jest-environment-node@15905

@jest/expect

npm i https://pkg.pr.new/@jest/expect@15905

@jest/fake-timers

npm i https://pkg.pr.new/@jest/fake-timers@15905

@jest/get-type

npm i https://pkg.pr.new/@jest/get-type@15905

@jest/globals

npm i https://pkg.pr.new/@jest/globals@15905

jest-haste-map

npm i https://pkg.pr.new/jest-haste-map@15905

jest-jasmine2

npm i https://pkg.pr.new/jest-jasmine2@15905

jest-leak-detector

npm i https://pkg.pr.new/jest-leak-detector@15905

jest-matcher-utils

npm i https://pkg.pr.new/jest-matcher-utils@15905

jest-message-util

npm i https://pkg.pr.new/jest-message-util@15905

jest-mock

npm i https://pkg.pr.new/jest-mock@15905

@jest/pattern

npm i https://pkg.pr.new/@jest/pattern@15905

jest-phabricator

npm i https://pkg.pr.new/jest-phabricator@15905

jest-regex-util

npm i https://pkg.pr.new/jest-regex-util@15905

@jest/reporters

npm i https://pkg.pr.new/@jest/reporters@15905

jest-resolve

npm i https://pkg.pr.new/jest-resolve@15905

jest-resolve-dependencies

npm i https://pkg.pr.new/jest-resolve-dependencies@15905

jest-runner

npm i https://pkg.pr.new/jest-runner@15905

jest-runtime

npm i https://pkg.pr.new/jest-runtime@15905

@jest/schemas

npm i https://pkg.pr.new/@jest/schemas@15905

jest-snapshot

npm i https://pkg.pr.new/jest-snapshot@15905

@jest/snapshot-utils

npm i https://pkg.pr.new/@jest/snapshot-utils@15905

@jest/source-map

npm i https://pkg.pr.new/@jest/source-map@15905

@jest/test-result

npm i https://pkg.pr.new/@jest/test-result@15905

@jest/test-sequencer

npm i https://pkg.pr.new/@jest/test-sequencer@15905

@jest/transform

npm i https://pkg.pr.new/@jest/transform@15905

@jest/types

npm i https://pkg.pr.new/@jest/types@15905

jest-util

npm i https://pkg.pr.new/jest-util@15905

jest-validate

npm i https://pkg.pr.new/jest-validate@15905

jest-watcher

npm i https://pkg.pr.new/jest-watcher@15905

jest-worker

npm i https://pkg.pr.new/jest-worker@15905

pretty-format

npm i https://pkg.pr.new/pretty-format@15905

commit: 5f86b83

Copy link
Member

@SimenB SimenB left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sure, happy to nudge dependants along 👍

(this also resolves the dependabot warnings in this repo 😀)

@anderson-suga anderson-suga requested a review from SimenB November 19, 2025 09:14
@anderson-suga
Copy link
Contributor Author

thank you, and I apologize for accidentally clicking the 'request review' button on the PR.

@mt-ks
Copy link

mt-ks commented Nov 19, 2025

@anderson-suga need fix

@SimenB
Copy link
Member

SimenB commented Nov 19, 2025

I'll fix the CI error in #15907

@SimenB SimenB merged commit d9e41ff into jestjs:main Nov 19, 2025
71 of 74 checks passed
@anderson-suga anderson-suga deleted the fix/glob-cve branch November 19, 2025 16:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants