Bump the npm-dependencies group across 1 directory with 16 updates#914
Bump the npm-dependencies group across 1 directory with 16 updates#914dependabot[bot] wants to merge 1 commit intomainfrom
Conversation
Bumps the npm-dependencies group with 14 updates in the / directory: | Package | From | To | | --- | --- | --- | | [@tailwindcss/cli](https://github.com/tailwindlabs/tailwindcss/tree/HEAD/packages/@tailwindcss-cli) | `4.1.17` | `4.1.18` | | [esbuild](https://github.com/evanw/esbuild) | `0.25.12` | `0.27.2` | | [glob](https://github.com/isaacs/node-glob) | `11.0.3` | `13.0.0` | | [rollup](https://github.com/rollup/rollup) | `4.53.2` | `4.54.0` | | [@cloudflare/vitest-pool-workers](https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/vitest-pool-workers) | `0.9.14` | `0.11.1` | | [@eslint/js](https://github.com/eslint/eslint/tree/HEAD/packages/js) | `9.39.1` | `9.39.2` | | [@npmcli/arborist](https://github.com/npm/cli/tree/HEAD/workspaces/arborist) | `9.1.6` | `9.1.9` | | [@vitest/coverage-istanbul](https://github.com/vitest-dev/vitest/tree/HEAD/packages/coverage-istanbul) | `3.2.4` | `4.0.16` | | [@vitest/coverage-v8](https://github.com/vitest-dev/vitest/tree/HEAD/packages/coverage-v8) | `3.2.4` | `4.0.16` | | [eslint](https://github.com/eslint/eslint) | `9.39.1` | `9.39.2` | | [globals](https://github.com/sindresorhus/globals) | `16.5.0` | `17.0.0` | | [lerna](https://github.com/lerna/lerna/tree/HEAD/packages/lerna) | `9.0.0` | `9.0.3` | | [prettier](https://github.com/prettier/prettier) | `3.6.2` | `3.7.4` | | [vitest](https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest) | `3.2.4` | `4.0.16` | Updates `@tailwindcss/cli` from 4.1.17 to 4.1.18 - [Release notes](https://github.com/tailwindlabs/tailwindcss/releases) - [Changelog](https://github.com/tailwindlabs/tailwindcss/blob/main/CHANGELOG.md) - [Commits](https://github.com/tailwindlabs/tailwindcss/commits/v4.1.18/packages/@tailwindcss-cli) Updates `esbuild` from 0.25.12 to 0.27.2 - [Release notes](https://github.com/evanw/esbuild/releases) - [Changelog](https://github.com/evanw/esbuild/blob/main/CHANGELOG.md) - [Commits](evanw/esbuild@v0.25.12...v0.27.2) Updates `glob` from 11.0.3 to 13.0.0 - [Changelog](https://github.com/isaacs/node-glob/blob/main/changelog.md) - [Commits](isaacs/node-glob@v11.0.3...v13.0.0) Updates `rollup` from 4.53.2 to 4.54.0 - [Release notes](https://github.com/rollup/rollup/releases) - [Changelog](https://github.com/rollup/rollup/blob/master/CHANGELOG.md) - [Commits](rollup/rollup@v4.53.2...v4.54.0) Updates `tailwindcss` from 4.1.17 to 4.1.18 - [Release notes](https://github.com/tailwindlabs/tailwindcss/releases) - [Changelog](https://github.com/tailwindlabs/tailwindcss/blob/main/CHANGELOG.md) - [Commits](https://github.com/tailwindlabs/tailwindcss/commits/v4.1.18/packages/tailwindcss) Updates `@cloudflare/vitest-pool-workers` from 0.9.14 to 0.11.1 - [Release notes](https://github.com/cloudflare/workers-sdk/releases) - [Changelog](https://github.com/cloudflare/workers-sdk/blob/main/packages/vitest-pool-workers/CHANGELOG.md) - [Commits](https://github.com/cloudflare/workers-sdk/commits/@cloudflare/vitest-pool-workers@0.11.1/packages/vitest-pool-workers) Updates `@eslint/js` from 9.39.1 to 9.39.2 - [Release notes](https://github.com/eslint/eslint/releases) - [Commits](https://github.com/eslint/eslint/commits/v9.39.2/packages/js) Updates `@npmcli/arborist` from 9.1.6 to 9.1.9 - [Release notes](https://github.com/npm/cli/releases) - [Changelog](https://github.com/npm/cli/blob/latest/workspaces/arborist/CHANGELOG.md) - [Commits](https://github.com/npm/cli/commits/arborist-v9.1.9/workspaces/arborist) Updates `@vitest/coverage-istanbul` from 3.2.4 to 4.0.16 - [Release notes](https://github.com/vitest-dev/vitest/releases) - [Commits](https://github.com/vitest-dev/vitest/commits/v4.0.16/packages/coverage-istanbul) Updates `@vitest/coverage-v8` from 3.2.4 to 4.0.16 - [Release notes](https://github.com/vitest-dev/vitest/releases) - [Commits](https://github.com/vitest-dev/vitest/commits/v4.0.16/packages/coverage-v8) Updates `eslint` from 9.39.1 to 9.39.2 - [Release notes](https://github.com/eslint/eslint/releases) - [Commits](eslint/eslint@v9.39.1...v9.39.2) Updates `globals` from 16.5.0 to 17.0.0 - [Release notes](https://github.com/sindresorhus/globals/releases) - [Commits](sindresorhus/globals@v16.5.0...v17.0.0) Updates `lerna` from 9.0.0 to 9.0.3 - [Release notes](https://github.com/lerna/lerna/releases) - [Changelog](https://github.com/lerna/lerna/blob/main/packages/lerna/CHANGELOG.md) - [Commits](https://github.com/lerna/lerna/commits/v9.0.3/packages/lerna) Updates `prettier` from 3.6.2 to 3.7.4 - [Release notes](https://github.com/prettier/prettier/releases) - [Changelog](https://github.com/prettier/prettier/blob/main/CHANGELOG.md) - [Commits](prettier/prettier@3.6.2...3.7.4) Updates `vitest` from 3.2.4 to 4.0.16 - [Release notes](https://github.com/vitest-dev/vitest/releases) - [Commits](https://github.com/vitest-dev/vitest/commits/v4.0.16/packages/vitest) Updates `wrangler` from 4.44.0 to 4.56.0 - [Release notes](https://github.com/cloudflare/workers-sdk/releases) - [Commits](https://github.com/cloudflare/workers-sdk/commits/wrangler@4.56.0/packages/wrangler) --- updated-dependencies: - dependency-name: "@tailwindcss/cli" dependency-version: 4.1.18 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: npm-dependencies - dependency-name: esbuild dependency-version: 0.27.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: npm-dependencies - dependency-name: glob dependency-version: 13.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: npm-dependencies - dependency-name: rollup dependency-version: 4.54.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: npm-dependencies - dependency-name: tailwindcss dependency-version: 4.1.18 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: npm-dependencies - dependency-name: "@cloudflare/vitest-pool-workers" dependency-version: 0.11.1 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: npm-dependencies - dependency-name: "@eslint/js" dependency-version: 9.39.2 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: npm-dependencies - dependency-name: "@npmcli/arborist" dependency-version: 9.1.9 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: npm-dependencies - dependency-name: "@vitest/coverage-istanbul" dependency-version: 4.0.16 dependency-type: direct:development update-type: version-update:semver-major dependency-group: npm-dependencies - dependency-name: "@vitest/coverage-v8" dependency-version: 4.0.16 dependency-type: direct:development update-type: version-update:semver-major dependency-group: npm-dependencies - dependency-name: eslint dependency-version: 9.39.2 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: npm-dependencies - dependency-name: globals dependency-version: 17.0.0 dependency-type: direct:development update-type: version-update:semver-major dependency-group: npm-dependencies - dependency-name: lerna dependency-version: 9.0.3 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: npm-dependencies - dependency-name: prettier dependency-version: 3.7.4 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: npm-dependencies - dependency-name: vitest dependency-version: 4.0.16 dependency-type: direct:development update-type: version-update:semver-major dependency-group: npm-dependencies - dependency-name: wrangler dependency-version: 4.56.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: npm-dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
|
Thanks for your first pull request! We appreciate your contribution. |
|
Here's the code health analysis summary for commits Analysis Summary
|
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
|
|
Warning Review the following alerts detected in dependencies. According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.
|
| "@cloudflare/vitest-pool-workers": "^0.11.1", | ||
| "vitest": "~4.0.16", | ||
| "wrangler": "^4.24.0" | ||
| } |
There was a problem hiding this comment.
Bug: The vitest upgrade to v4.x is incompatible with the existing configuration, which uses the removed coverage.all option. This will cause test and coverage commands to fail.
Severity: CRITICAL | Confidence: High
🔍 Detailed Analysis
The pull request upgrades vitest to version 4.x, which introduces a breaking change by removing the coverage.all configuration option. The project's Vitest configuration files, such as packages/cfsite/vitest.config.js and vite.config.js, still use all: true within the coverage block. When test or coverage commands like npm run coverage are executed, Vitest v4 will encounter this unrecognized option, leading to a validation error and causing the command to fail. This will break the test suite and prevent coverage reports from being generated.
💡 Suggested Fix
Remove the coverage.all: true option from all Vitest configuration files. To replicate the previous behavior of including all source files in the report, add a coverage.include property with glob patterns that explicitly target all relevant source files.
🤖 Prompt for AI Agent
Review the code at the location below. A potential bug has been identified by an AI
agent.
Verify if this is a real issue. If it is, propose a fix; if not, explain why it's not
valid.
Location: packages/cfsite/package.json#L16
Potential issue: The pull request upgrades `vitest` to version 4.x, which introduces a
breaking change by removing the `coverage.all` configuration option. The project's
Vitest configuration files, such as `packages/cfsite/vitest.config.js` and
`vite.config.js`, still use `all: true` within the `coverage` block. When test or
coverage commands like `npm run coverage` are executed, Vitest v4 will encounter this
unrecognized option, leading to a validation error and causing the command to fail. This
will break the test suite and prevent coverage reports from being generated.
Did we get this right? 👍 / 👎 to inform future reviews.
Reference ID: 8095428
|
Looks like these dependencies are updatable in another way, so this is no longer needed. |
Bumps the npm-dependencies group with 14 updates in the / directory:
4.1.174.1.180.25.120.27.211.0.313.0.04.53.24.54.00.9.140.11.19.39.19.39.29.1.69.1.93.2.44.0.163.2.44.0.169.39.19.39.216.5.017.0.09.0.09.0.33.6.23.7.43.2.44.0.16Updates
@tailwindcss/clifrom 4.1.17 to 4.1.18Release notes
Sourced from
@tailwindcss/cli's releases.Changelog
Sourced from
@tailwindcss/cli's changelog.Commits
9b32f7cRelease v4.1.18 (#19431)164194dDon’t try reading from pipes or special file descriptors (#19421)563a016Only use the last value when parsing duplicate cli arguments (#19416)0e8f075Fix source map generation during when watching files on the CLI (#19373)Maintainer changes
This version was pushed to npm by malfaitrobin, a new releaser for
@tailwindcss/clisince your current version.Updates
esbuildfrom 0.25.12 to 0.27.2Release notes
Sourced from esbuild's releases.
... (truncated)
Changelog
Sourced from esbuild's changelog.
... (truncated)
Commits
cd83297publish 0.27.2 to npm2759721additional tests forswitchwithbreakfd2b4b3update release notesc8d93a7fix #4357: -webkit- prefix for mask shorthand (#4358)92ff12ccompat table: update@types/nodea35ecebcompat table: fix a type error with the new typesf598984fixmake compat-tableto install dependenciesf7f6df0release notes for #43616f8ec15fix: allow subpath imports that start with#/(#4361)f7ae61fminify some switch statements to if-else statementMaintainer changes
This version was pushed to npm by [GitHub Actions](https://www.npmjs.com/~GitHub Actions), a new releaser for esbuild since your current version.
Updates
globfrom 11.0.3 to 13.0.0Changelog
Sourced from glob's changelog.
... (truncated)
Commits
3bfb96013.0.0db31a63Split the CLI out from the main project5493458ci: remove node 203f7526ctest: fix bin tests on windows (slashes)2b03cca12.0.0d56203dprettier configbb521e5Remove --shell option where unsafe to use2551fb511.1.047473c0bin: Do not expose filenames to shell expansionbc33fe1skip tilde test on systems that lack tilde expansionUpdates
rollupfrom 4.53.2 to 4.54.0Release notes
Sourced from rollup's releases.
... (truncated)
Changelog
Sourced from rollup's changelog.
... (truncated)
Commits
88f14304.54.0e5e01c1fix: include namespace variable paths during try-catch deoptimization (#6216)107959cfix: correctly handle wellknown protocols (#6046)160514dchore(deps): lock file maintenance (#6215)59bda58chore(deps): update msys2/setup-msys2 digest to 4f806de (#6211)9b7ca4dchore(deps): update actions/cache action to v5 (#6212)abf1fb5chore(deps): update github artifact actions (major) (#6213)0dec3cafix(deps): lock file maintenance minor/patch updates (#6214)c3fa50cchore(deps): update dependency lru-cache to v11 (#6201)31bb66e4.53.5Updates
tailwindcssfrom 4.1.17 to 4.1.18Release notes
Sourced from tailwindcss's releases.
Changelog
Sourced from tailwindcss's changelog.
Commits
9b32f7cRelease v4.1.18 (#19431)820d907ExposecandidatesToAstto the language server (#19405)478e959Don’t emit color-mix fallback rules inside@keyframes(#19419)a5f4644Validate named values in candidate parser (#19397)229121dCanonicalization: combinetext-*andleading-*classes (#19396)243615eHandle backwards compatibility forcontenttheme from JS configs (#19381)7642751Improve compatibility with special default values in JS configs (#19348)af48117remove unnecessary intermediate check9e436f7Try to canonicalize any arbitrary utility to a bare value (#19379)479b725Bump Vitest to v4 (#19216)Updates
@cloudflare/vitest-pool-workersfrom 0.9.14 to 0.11.1Release notes
Sourced from
@cloudflare/vitest-pool-workers's releases.... (truncated)
Changelog
Sourced from
@cloudflare/vitest-pool-workers's changelog.... (truncated)
Commits
6be9321Version Packages (#11666)8ba87a0Version Packages (#11602)8d9003esupportctx.exportsin vitest-pool-workers (#11533)d9eae49Version Packages (#11538)8672321Version Packages (#11511)0c71b87Version Packages (#11503)1b3e10dVersion Packages (#11427)ed5186eadd tests for vitest-pool-workers context exports (#11441)f87b057Version Packages (#11374)86eab8eVersion Packages (#11356)Updates
@eslint/jsfrom 9.39.1 to 9.39.2Release notes
Sourced from
@eslint/js's releases.Commits
c43ce24chore: package.json update for@eslint/jsreleaseUpdates
@npmcli/arboristfrom 9.1.6 to 9.1.9Release notes
Sourced from
@npmcli/arborist's releases.