Skip to content

Update packages and add overrides for brace-expansion with fixed CVE-2025-5889#45

Merged
psd-coder merged 1 commit into
mainfrom
update-deps
Jul 6, 2025
Merged

Update packages and add overrides for brace-expansion with fixed CVE-2025-5889#45
psd-coder merged 1 commit into
mainfrom
update-deps

Conversation

@psd-coder

Copy link
Copy Markdown
Member

This pull request updates dependencies across multiple files to ensure compatibility and improve stability. It includes changes to package.json, packages/core/package.json, packages/figma-plugin/package.json, and pnpm-workspace.yaml. The updates primarily focus on bumping versions of existing dependencies and aligning package versions across the workspace.

Dependency Updates:

  • package.json:

    • Added brace-expansion overrides for versions ^1.1.12 and ^2.0.2.
    • Updated pnpm package manager version from 10.10.0 to 10.12.4.
  • packages/core/package.json:

    • Updated versions for culori (^4.0.1^4.0.2), es-toolkit (^1.34.1^1.39.6), and tailwindcss (^4.1.2^4.1.11).
    • Updated @types/culori from ^2.1.1 to ^4.0.0.
  • packages/figma-plugin/package.json:

    • Updated vite-plugin-generate-file from ^0.2.0 to ^0.3.1.
    • Re-added browserslist and browserslist-to-esbuild to devDependencies.
  • pnpm-workspace.yaml:

    • Updated versions for several catalog dependencies, including browserslist (^4.25.0^4.25.1), @tailwindcss/vite (^4.1.8^4.1.11), and vite (^6.3.5^7.0.2).

@psd-coder psd-coder self-assigned this Jul 6, 2025
@github-actions

github-actions Bot commented Jul 6, 2025

Copy link
Copy Markdown

Visit the preview URL for this PR (updated for commit 6b6eaaa):

https://harmonizer-web--pr45-update-deps-00i0gox1.web.app

(expires Sun, 13 Jul 2025 18:27:23 GMT)

🔥 via Firebase Hosting GitHub Action 🌎

Sign: 0b46b8946d697564b3f98633c5cd230a6ede1236

@psd-coder psd-coder merged commit 094b5fd into main Jul 6, 2025
4 checks passed
@psd-coder psd-coder deleted the update-deps branch July 6, 2025 18:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant