From fb6dba2058434e64d9e3bfa84ac27ec91b04925e Mon Sep 17 00:00:00 2001 From: Peter Steinberger Date: Mon, 16 Feb 2026 05:29:55 +0100 Subject: [PATCH] fix(ci): align tar override and lockfile to 7.5.9 --- package.json | 2 +- pnpm-lock.yaml | 15 +++++++-------- 2 files changed, 8 insertions(+), 9 deletions(-) diff --git a/package.json b/package.json index 09941f4f788..53c74eacb4e 100644 --- a/package.json +++ b/package.json @@ -205,7 +205,7 @@ "form-data": "2.5.4", "qs": "6.14.2", "@sinclair/typebox": "0.34.48", - "tar": "7.5.7", + "tar": "7.5.9", "tough-cookie": "4.1.3" }, "onlyBuiltDependencies": [ diff --git a/pnpm-lock.yaml b/pnpm-lock.yaml index 4d9791f8e1d..4b5b37f7e4d 100644 --- a/pnpm-lock.yaml +++ b/pnpm-lock.yaml @@ -9,7 +9,7 @@ overrides: form-data: 2.5.4 qs: 6.14.2 '@sinclair/typebox': 0.34.48 - tar: 7.5.7 + tar: 7.5.9 tough-cookie: 4.1.3 importers: @@ -161,8 +161,8 @@ importers: specifier: 0.1.7-alpha.2 version: 0.1.7-alpha.2 tar: - specifier: 7.5.7 - version: 7.5.7 + specifier: 7.5.9 + version: 7.5.9 tslog: specifier: ^4.10.2 version: 4.10.2 @@ -5364,10 +5364,9 @@ packages: resolution: {integrity: sha512-iK5/YhZxq5GO5z8wb0bY1317uDF3Zjpha0QFFLA8/trAoiLbQD0HUbMesEaxyzUgDxi2QlcbM8IvqOlEjgoXBA==} engines: {node: '>=12.17'} - tar@7.5.7: - resolution: {integrity: sha512-fov56fJiRuThVFXD6o6/Q354S7pnWMJIVlDBYijsTNx6jKSE4pvrDTs6lUnmGvNyfJwFQQwWy3owKz1ucIhveQ==} + tar@7.5.9: + resolution: {integrity: sha512-BTLcK0xsDh2+PUe9F6c2TlRp4zOOBMTkoQHQIWSIzI0R7KG46uEwq4OPk2W7bZcprBMsuaeFsqwYr7pjh6CuHg==} engines: {node: '>=18'} - deprecated: Old versions of tar are not supported, and contain widely publicized security vulnerabilities, which have been fixed in the current version. Please update. Support for old versions may be purchased (at exorbitant rates) by contacting i@izs.me thenify-all@1.6.0: resolution: {integrity: sha512-RNxQH/qI8/t3thXJDwcstUO4zeqo64+Uy/+sNVRBx4Xn2OX+OZ9oP+iJnNFqplFra2ZUVeKCSa2oVWi3T4uVmA==} @@ -8991,7 +8990,7 @@ snapshots: npmlog: 6.0.2 rc: 1.2.8 semver: 7.7.4 - tar: 7.5.7 + tar: 7.5.9 url-join: 4.0.1 which: 2.0.2 yargs: 17.7.2 @@ -11212,7 +11211,7 @@ snapshots: array-back: 6.2.2 wordwrapjs: 5.1.1 - tar@7.5.7: + tar@7.5.9: dependencies: '@isaacs/fs-minipass': 4.0.1 chownr: 3.0.0