From d863da8680f24ceb4bb6e13134bc8a2d8835bcf4 Mon Sep 17 00:00:00 2001 From: Ivan Vasilov Date: Fri, 10 Jul 2026 14:01:09 +0200 Subject: [PATCH] chore: Bump vulnerable dependencies (#47686) Bump deps to fix https://github.com/supabase/supabase/security/dependabot/3911. --- pnpm-lock.yaml | 38 +++++++++++++++++++------------------- 1 file changed, 19 insertions(+), 19 deletions(-) diff --git a/pnpm-lock.yaml b/pnpm-lock.yaml index fd1e33ca42a..efce7ed4197 100644 --- a/pnpm-lock.yaml +++ b/pnpm-lock.yaml @@ -443,7 +443,7 @@ importers: version: 5.1.2 js-yaml: specifier: ^3.14.2 - version: 3.14.2 + version: 3.15.0 jsrsasign: specifier: ^11.0.0 version: 11.1.1 @@ -2637,7 +2637,7 @@ importers: version: link:../icons js-yaml: specifier: ^3.14.1 - version: 3.14.2 + version: 3.15.0 lodash: specifier: ^4.18.1 version: 4.18.1 @@ -12689,12 +12689,12 @@ packages: js-yaml-loader@1.2.2: resolution: {integrity: sha512-H+NeuNrG6uOs/WMjna2SjkaCw13rMWiT/D7l9+9x5n8aq88BDsh2sRmdfxckWPIHtViYHWRG6XiCKYvS1dfyLg==} - js-yaml@3.14.2: - resolution: {integrity: sha512-PMSmkqxr106Xa156c2M265Z+FTrPl+oxd/rgOQy2tijQeK5TxQ43psO1ZCwhVOSdnn+RzkzlRz/eY4BgJBYVpg==} + js-yaml@3.15.0: + resolution: {integrity: sha512-ttBQIIQPDeLjpPOohtUdXuXUVoA2uIB6fEH9HyJ7234s5mBJ5wTx20njxplLZQgLaOfpmPQA7X2t5AX6tIPbog==} hasBin: true - js-yaml@4.2.0: - resolution: {integrity: sha512-ePWsvanv0DWuDRsW8dnt+R4jQ31SCRCQ7hhNcPXZPsoBZiemuZNYGf7adZdqX2D86j6rvKp3RpCxVTSb8WQlOw==} + js-yaml@4.3.0: + resolution: {integrity: sha512-1td788aAnnZ5qs7V2QIRl1owjtYpbKt749Y3xauqQgwIIGF/xXWz1wMTEBx5O3LK3lXLVuqXPdPxj2BoFHaW9Q==} hasBin: true jsbi@4.3.0: @@ -19174,7 +19174,7 @@ snapshots: globals: 14.0.0 ignore: 5.3.2 import-fresh: 3.3.0 - js-yaml: 4.2.0 + js-yaml: 4.3.0 minimatch: 3.1.4 strip-json-comments: 3.1.1 transitivePeerDependencies: @@ -19759,7 +19759,7 @@ snapshots: http-proxy-agent: 7.0.2(supports-color@8.1.1) https-proxy-agent: 7.0.6(supports-color@8.1.1) jose: 5.9.6 - js-yaml: 4.2.0 + js-yaml: 4.3.0 lodash: 4.18.1 scuid: 1.1.0 tslib: 2.8.1 @@ -19847,7 +19847,7 @@ snapshots: '@har-sdk/core@1.4.5': dependencies: - js-yaml: 4.2.0 + js-yaml: 4.3.0 openapi-types: 10.0.0 tslib: 2.8.1 @@ -22496,7 +22496,7 @@ snapshots: colorette: 1.4.0 https-proxy-agent: 7.0.6(supports-color@9.4.0) js-levenshtein: 1.1.6 - js-yaml: 4.2.0 + js-yaml: 4.3.0 minimatch: 5.1.8 node-fetch: 2.7.0(encoding@0.1.13) pluralize: 8.0.0 @@ -25578,7 +25578,7 @@ snapshots: ajv: 8.18.0 compute-cosine-similarity: 1.1.0 js-levenshtein: 1.1.6 - js-yaml: 4.2.0 + js-yaml: 4.3.0 linear-sum-assignment: 1.0.9 mustache: 4.2.0 openai: 6.22.0(ws@8.21.0)(zod@3.25.76) @@ -26381,7 +26381,7 @@ snapshots: cosmiconfig@8.3.6(typescript@6.0.2): dependencies: import-fresh: 3.3.0 - js-yaml: 4.2.0 + js-yaml: 4.3.0 parse-json: 5.2.0 path-type: 4.0.0 optionalDependencies: @@ -26391,7 +26391,7 @@ snapshots: dependencies: env-paths: 2.2.1 import-fresh: 3.3.0 - js-yaml: 4.2.0 + js-yaml: 4.3.0 parse-json: 5.2.0 optionalDependencies: typescript: 6.0.2 @@ -28368,12 +28368,12 @@ snapshots: ansi-red: 0.1.1 coffee-script: 1.12.7 extend-shallow: 2.0.1 - js-yaml: 3.14.2 + js-yaml: 3.15.0 toml: 2.3.6 gray-matter@4.0.3: dependencies: - js-yaml: 3.14.2 + js-yaml: 3.15.0 kind-of: 6.0.3 section-matter: 1.0.0 strip-bom-string: 1.0.0 @@ -29243,16 +29243,16 @@ snapshots: js-yaml-loader@1.2.2: dependencies: - js-yaml: 3.14.2 + js-yaml: 3.15.0 loader-utils: 1.4.2 un-eval: 1.2.0 - js-yaml@3.14.2: + js-yaml@3.15.0: dependencies: argparse: 1.0.10 esprima: 4.0.1 - js-yaml@4.2.0: + js-yaml@4.3.0: dependencies: argparse: 2.0.1 @@ -35485,7 +35485,7 @@ snapshots: '@oozcitak/dom': 2.0.2 '@oozcitak/infra': 2.0.2 '@oozcitak/util': 10.0.0 - js-yaml: 4.2.0 + js-yaml: 4.3.0 xmlchars@2.2.0: {}