Skip to content

Update dependency @lhci/cli to v0.10.0#34

Open
dev-mend-for-github-com[bot] wants to merge 1 commit intotrunkfrom
whitesource-remediate/lhci-cli-0.x
Open

Update dependency @lhci/cli to v0.10.0#34
dev-mend-for-github-com[bot] wants to merge 1 commit intotrunkfrom
whitesource-remediate/lhci-cli-0.x

Conversation

@dev-mend-for-github-com
Copy link
Copy Markdown

@dev-mend-for-github-com dev-mend-for-github-com bot commented Jan 12, 2025

This PR contains the following updates:

Package Type Update Change
@lhci/cli dependencies minor 0.9.00.10.0

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score Vulnerability Reachability
Critical Critical 9.8 CVE-2021-44906
High High 7.5 CVE-2021-3807
High High 7.5 CVE-2024-45296
Medium Medium 5.3 CVE-2022-25881
Medium Medium 5.3 CVE-2022-33987
Medium Medium 5.3 CVE-2024-47764
Medium Medium 5.0 CVE-2024-43800
Low Low 3.7 CVE-2026-2391

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score Vulnerability Reachability
High High 7.5 CVE-2024-45590

Release Notes

GoogleChrome/lighthouse-ci (@​lhci/cli)

v0.10.0

Compare Source

BREAKING CHANGE

  • minimum node version is now 16

  • If you want to rebase/retry this PR, check this box

@dev-mend-for-github-com dev-mend-for-github-com bot added the security fix Security fix generated by Mend label Jan 12, 2025
@dev-mend-for-github-com
Copy link
Copy Markdown
Author

⚠️ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: src/Administration/Resources/app/administration/package-lock.json
npm WARN ERESOLVE overriding peer dependency
npm WARN While resolving: @vue/server-renderer@3.3.4
npm WARN Found: vue@3.3.4
npm WARN node_modules/vue3/node_modules/vue
npm WARN 
npm WARN Could not resolve dependency:
npm WARN peer overridden vue@"2.7.14" (was "3.3.4") from @vue/server-renderer@3.3.4
npm WARN node_modules/vue3/node_modules/@vue/server-renderer
npm WARN   @vue/server-renderer@"3.3.4" from vue3@3.3.4
npm WARN   node_modules/vue3
npm WARN   1 more (vue)
npm ERR! code EBADENGINE
npm ERR! engine Unsupported engine
npm ERR! engine Not compatible with your version of node/npm: administration@1.0.0
npm ERR! notsup Not compatible with your version of node/npm: administration@1.0.0
npm ERR! notsup Required: {"node":"^18.0.0 || ^19.0.0 || ^20.0.0","npm":"^8.0.0 || ^9.0.0 || ^10.0.0"}
npm ERR! notsup Actual:   {"npm":"9.9.4","node":"v22.12.0"}

npm ERR! A complete log of this run can be found in: /tmp/renovate/cache/others/npm/_logs/2025-01-12T15_03_31_713Z-debug-0.log

@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency @lhci/cli Update dependency @lhci/cli to v0.10.0 Jan 14, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by Mend

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants