Skip to content

Conversation

taiga-family-bot
Copy link
Member

@taiga-family-bot taiga-family-bot commented Oct 15, 2025

This PR contains the following updates:

Package Type Change
@taiga-ui/auto-changelog-config devDependencies 0.339.0 -> 0.347.0
@taiga-ui/browserslist-config devDependencies 0.339.0 -> 0.347.0
@taiga-ui/commitlint-config devDependencies 0.339.0 -> 0.347.0
@taiga-ui/cspell-config devDependencies 0.339.0 -> 0.347.0
@​taiga-ui/eslint-plugin-experience-next devDependencies 0.339.0 -> 0.347.0
@taiga-ui/jest-config devDependencies 0.339.0 -> 0.347.0
@taiga-ui/prettier-config devDependencies 0.339.0 -> 0.347.0
@taiga-ui/release-it-config devDependencies 0.339.0 -> 0.347.0
@taiga-ui/stylelint-config devDependencies 0.339.0 -> 0.347.0
@taiga-ui/syncer devDependencies 0.339.0 -> 0.347.0
@taiga-ui/tsconfig devDependencies 0.339.0 -> 0.347.0

  • If you want to rebase/retry this PR, check this box

This PR has been generated by Renovate Bot.

Copy link

github-actions bot commented Oct 15, 2025

✅ NPM Audit Good

8 moderate severity vulnerabilities

Show details
# npm audit report

@conventional-changelog/git-client  <lt;2.0.0
Severity: moderate
@conventional-changelog/git-client has Argument Injection vulnerability - https://github.com/advisories/GHSA-vh25-5764-9wcr
fix available via `npm audit fix --force`
Will install @taiga-ui/[email protected], which is a breaking change
node_modules/conventional-changelog-core/node_modules/@conventional-changelog/git-client
node_modules/conventional-recommended-bump/node_modules/@conventional-changelog/git-client
node_modules/git-semver-tags/node_modules/@conventional-changelog/git-client
  conventional-recommended-bump  10.0.0
  Depends on vulnerable versions of @conventional-changelog/git-client
  node_modules/conventional-recommended-bump
    @release-it/conventional-changelog  >gt;=8.0.2-next.0
    Depends on vulnerable versions of conventional-changelog
    Depends on vulnerable versions of conventional-recommended-bump
    Depends on vulnerable versions of git-semver-tags
    node_modules/@release-it/conventional-changelog
      @taiga-ui/release-it-config  >gt;=0.229.0
      Depends on vulnerable versions of @release-it/conventional-changelog
      node_modules/@taiga-ui/release-it-config
  git-raw-commits  >gt;=5.0.0
  Depends on vulnerable versions of @conventional-changelog/git-client
  node_modules/conventional-changelog-core/node_modules/git-raw-commits
    conventional-changelog-core  >gt;=8.0.0
    Depends on vulnerable versions of git-raw-commits
    Depends on vulnerable versions of git-semver-tags
    node_modules/conventional-changelog-core
      conventional-changelog  6.0.0
      Depends on vulnerable versions of conventional-changelog-core
      node_modules/conventional-changelog
  git-semver-tags  >gt;=8.0.0
  Depends on vulnerable versions of @conventional-changelog/git-client
  node_modules/git-semver-tags

8 moderate severity vulnerabilities

To address issues that do not require attention, run:
  npm audit fix

To address all issues (including breaking changes), run:
  npm audit fix --force

@taiga-family-bot taiga-family-bot changed the title chore: update @taiga-ui/* deps chore: update @taiga-ui/* deps to v0.343.0 Oct 15, 2025
@taiga-family-bot taiga-family-bot changed the title chore: update @taiga-ui/* deps to v0.343.0 chore: update @taiga-ui/* deps to v0.344.0 Oct 15, 2025
@taiga-family-bot taiga-family-bot changed the title chore: update @taiga-ui/* deps to v0.344.0 chore: update @taiga-ui/* deps to v0.345.0 Oct 16, 2025
@taiga-family-bot
Copy link
Member Author

taiga-family-bot commented Oct 16, 2025

⚠️ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: package-lock.json
npm warn Unknown env config "store". This will stop working in the next major version of npm.
npm warn Unknown user config "always-auth". This will stop working in the next major version of npm.
npm error code ERESOLVE
npm error ERESOLVE unable to resolve dependency tree
npm error
npm error While resolving: [email protected]
npm error Found: [email protected]
npm error node_modules/jest
npm error   peer jest@"^30.2.0" from @taiga-ui/[email protected]
npm error   node_modules/@taiga-ui/jest-config
npm error     dev @taiga-ui/jest-config@"0.347.0" from the root project
npm error
npm error Could not resolve dependency:
npm error peer jest@"^29.0.0" from [email protected]
npm error node_modules/jest-preset-angular
npm error   dev jest-preset-angular@"14.6.2" from the root project
npm error
npm error Fix the upstream dependency conflict, or retry
npm error this command with --force or --legacy-peer-deps
npm error to accept an incorrect (and potentially broken) dependency resolution.
npm error
npm error
npm error For a full report see:
npm error /home/runner/.npm/_logs/2025-10-17T10_41_31_045Z-eresolve-report.txt
npm error A complete log of this run can be found in: /home/runner/.npm/_logs/2025-10-17T10_41_31_045Z-debug-0.log

@taiga-family-bot taiga-family-bot changed the title chore: update @taiga-ui/* deps to v0.345.0 chore: update @taiga-ui/* deps to v0.346.0 Oct 16, 2025
@taiga-family-bot taiga-family-bot changed the title chore: update @taiga-ui/* deps to v0.346.0 chore: update @taiga-ui/* deps to v0.347.0 Oct 17, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant