Skip to content

fix(deps): [release-1.9] update tar#4902

Open
albarbaro wants to merge 3 commits into
redhat-developer:release-1.9from
albarbaro:tar-bump-fix-1-9
Open

fix(deps): [release-1.9] update tar#4902
albarbaro wants to merge 3 commits into
redhat-developer:release-1.9from
albarbaro:tar-bump-fix-1-9

Conversation

@albarbaro
Copy link
Copy Markdown
Member

Description

Bumps to @backstage/plugin-scaffolder-node@0.12.5, @backstage/backend-defaults@0.13.3 to bring tar to tar@7.5.15 to fix CVE-2026-24842 and CVE-2026-26960

Which issue(s) does this PR fix

  • Fixes #?

PR acceptance criteria

Please make sure that the following steps are complete:

  • GitHub Actions are completed and successful
  • Unit Tests are updated and passing
  • E2E Tests are updated and passing
  • Documentation is updated if necessary (requirement for new features)
  • Add a screenshot if the change is UX/UI related

How to test changes / Special notes to the reviewer

@sonarqubecloud
Copy link
Copy Markdown

Copy link
Copy Markdown
Member

@alizard0 alizard0 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

lgtm

@github-actions
Copy link
Copy Markdown
Contributor

Image was built and published successfully. It is available at:

@albarbaro
Copy link
Copy Markdown
Member Author

/retest

@albarbaro
Copy link
Copy Markdown
Member Author

/hold

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants