From 2172cbf7d21ec2aee885848c6d3322265de78f3c Mon Sep 17 00:00:00 2001 From: Ruriko Araki Date: Thu, 25 Sep 2025 15:01:01 -0700 Subject: [PATCH] Bump tar-fs --- package.json | 1 - tester_deps/package.json | 2 -- tester_deps/yarn.lock | 8 ++++---- yarn.lock | 26 ++++++++++++++++++++++---- 4 files changed, 26 insertions(+), 11 deletions(-) diff --git a/package.json b/package.json index 7495c2c407..c207261350 100644 --- a/package.json +++ b/package.json @@ -76,7 +76,6 @@ "on-headers": "^1.1.0", "react-native-macos": "patch:react-native-macos@npm%3A0.74.30#~/.yarn/patches/react-native-macos-npm-0.74.30-e4edf98920.patch", "semver": "^7.5.2", - "tar-fs": "^3.0.9", "ws": "^8.17.1", "yaml": "^2.2.2" }, diff --git a/tester_deps/package.json b/tester_deps/package.json index e0a88284b5..691c70bea3 100644 --- a/tester_deps/package.json +++ b/tester_deps/package.json @@ -31,7 +31,6 @@ "form-data": "^4.0.4", "on-headers": "^1.1.0", "semver": "^7.5.2", - "tar-fs": "^3.0.9", "ws": "^8.17.1", "xml2js": "^0.5.0", "yaml": "^2.2.2" @@ -40,7 +39,6 @@ "axios": "Patching security issue", "form-data": "Patching security issue", "on-headers": "Patching security issue", - "tar-fs": "Patching security issue", "wdio-json-reporter/jest-matchers/jest-message-util/micromatch/parse-glob/glob-base/glob-parent": "There is a security risk associated with this package version (it's a very outdated packaged, 2.0.0). Therefore, we are forcing an upgrade to the patched version.", "wdio-json-reporter/jest-matchers/jest-message-util/micromatch/braces": " There is a security risk associated with this package version (it's a very outdated packaged, 1.8.2). Therefore, we are forcing an upgrade to the patched version.", "ws": "Patching security issue" diff --git a/tester_deps/yarn.lock b/tester_deps/yarn.lock index 00d17aae75..ee47602ea5 100644 --- a/tester_deps/yarn.lock +++ b/tester_deps/yarn.lock @@ -7016,9 +7016,9 @@ __metadata: languageName: node linkType: hard -"tar-fs@npm:^3.0.9": - version: 3.0.9 - resolution: "tar-fs@npm:3.0.9" +"tar-fs@npm:^3.0.6, tar-fs@npm:^3.0.8": + version: 3.1.1 + resolution: "tar-fs@npm:3.1.1" dependencies: bare-fs: "npm:^4.0.1" bare-path: "npm:^3.0.0" @@ -7029,7 +7029,7 @@ __metadata: optional: true bare-path: optional: true - checksum: 10c0/e7c6c8b7d1bf342bab0e94e0a2d96dc73c18d0cc6b59ee7b57f919adb08f5cee7f417cb4baee8322789292dc51ae67028cfd5d73f3559c919723ec7d71aa8959 + checksum: 10c0/0c677d711c4aa41f94e1a712aa647022ba1910ff84430739e5d9e95a615e3ea1b7112dc93164fc8ce30dc715befcf9cfdc64da27d4e7958d73c59bda06aa0d8e languageName: node linkType: hard diff --git a/yarn.lock b/yarn.lock index 2ffa7e32f5..43ac4b43f2 100644 --- a/yarn.lock +++ b/yarn.lock @@ -17078,6 +17078,13 @@ __metadata: languageName: node linkType: hard +"mkdirp-classic@npm:^0.5.2": + version: 0.5.3 + resolution: "mkdirp-classic@npm:0.5.3" + checksum: 10c0/95371d831d196960ddc3833cc6907e6b8f67ac5501a6582f47dfae5eb0f092e9f8ce88e0d83afcae95d6e2b61a01741ba03714eeafb6f7a6e9dcc158ac85b168 + languageName: node + linkType: hard + "mkdirp@npm:>=0.5 0, mkdirp@npm:^0.5.1, mkdirp@npm:~0.5.1": version: 0.5.6 resolution: "mkdirp@npm:0.5.6" @@ -20693,9 +20700,20 @@ __metadata: languageName: node linkType: hard -"tar-fs@npm:^3.0.9": - version: 3.0.9 - resolution: "tar-fs@npm:3.0.9" +"tar-fs@npm:3.0.4": + version: 3.0.4 + resolution: "tar-fs@npm:3.0.4" + dependencies: + mkdirp-classic: "npm:^0.5.2" + pump: "npm:^3.0.0" + tar-stream: "npm:^3.1.5" + checksum: 10c0/120f026d891e5b4f7147a5ae5816e3a9b7f2c5b4ca61714dab3fe1244961607dccca40c11cafc584e625838c57d1308da5bb28b13d70b85ab566bc4c9f1c88b1 + languageName: node + linkType: hard + +"tar-fs@npm:^3.0.4, tar-fs@npm:^3.0.6, tar-fs@npm:^3.0.8": + version: 3.1.1 + resolution: "tar-fs@npm:3.1.1" dependencies: bare-fs: "npm:^4.0.1" bare-path: "npm:^3.0.0" @@ -20706,7 +20724,7 @@ __metadata: optional: true bare-path: optional: true - checksum: 10c0/e7c6c8b7d1bf342bab0e94e0a2d96dc73c18d0cc6b59ee7b57f919adb08f5cee7f417cb4baee8322789292dc51ae67028cfd5d73f3559c919723ec7d71aa8959 + checksum: 10c0/0c677d711c4aa41f94e1a712aa647022ba1910ff84430739e5d9e95a615e3ea1b7112dc93164fc8ce30dc715befcf9cfdc64da27d4e7958d73c59bda06aa0d8e languageName: node linkType: hard