Skip to content

dependency: upgrade tar-fs to 2.1.3 and 3.1.0#32160

Merged
jennifer-shehane merged 3 commits into
developfrom
ryanm/chore/tar-fs
Aug 6, 2025
Merged

dependency: upgrade tar-fs to 2.1.3 and 3.1.0#32160
jennifer-shehane merged 3 commits into
developfrom
ryanm/chore/tar-fs

Conversation

@ryanthemanuel
Copy link
Copy Markdown
Collaborator

@ryanthemanuel ryanthemanuel commented Aug 5, 2025

Additional details

Upgrade tar-fs to 2.1.3 and 3.1.0 in places we can control, to resolve CVE-2024-12905. @puppeteer/browsers still references 3.0.4, but it is only used to download browsers which is not a feature of puppeteer that we utilize.

Steps to test

How has the user experience changed?

PR Tasks

@cypress
Copy link
Copy Markdown

cypress Bot commented Aug 5, 2025

cypress    Run #64363

Run Properties:  status check failed Failed #64363  •  git commit 7e10ceedb5: Update cli/CHANGELOG.md
Project cypress
Branch Review ryanm/chore/tar-fs
Run status status check failed Failed #64363
Run duration 20m 19s
Commit git commit 7e10ceedb5: Update cli/CHANGELOG.md
Committer Ryan Manuel
View all properties for this run ↗︎

Test results
Tests that failed  Failures 1
Tests that were flaky  Flaky 14
Tests that did not run due to a developer annotating a test with .skip  Pending 1230
Tests that did not run due to a failure in a mocha hook  Skipped 0
Tests that passed  Passing 32178
View all changes introduced in this branch ↗︎
UI Coverage  45.83%
  Untested elements 190  
  Tested elements 165  
Accessibility  97.95%
  Failed rules  3 critical   8 serious   2 moderate   2 minor
  Failed elements 107  

Tests for review

Failed  cypress/e2e/studio/studio.cy.ts • 1 failed test • app-e2e

View Output

Test Artifacts
Cypress Studio > does not remove the studio url parameters if saving fails Test Replay Screenshots
Flakiness  e2e/e2e_cookies.cy.js • 1 flaky test • 5x-driver-electron

View Output

Test Artifacts
e2e cookies spec > __Host- prefix > can set __Host- cookie Test Replay
Flakiness  commands/waiting.cy.js • 1 flaky test • 5x-driver-electron

View Output

Test Artifacts
... > errors > throws when waiting for 1st response to bar Test Replay
Flakiness  issues/28527.cy.ts • 1 flaky test • 5x-driver-electron

View Output

Test Artifacts
issue 28527 > fails and then retries and verifies about:blank is not displayed Test Replay Screenshots
Flakiness  e2e/e2e_cookies.cy.js • 1 flaky test • 5x-driver-chrome

View Output

Test Artifacts
e2e cookies spec > __Host- prefix > can set __Host- cookie Test Replay
Flakiness  commands/waiting.cy.js • 1 flaky test • 5x-driver-chrome

View Output

Test Artifacts
... > errors > throws when route is never resolved Test Replay

The first 5 flaky specs are shown, see all 14 specs in Cypress Cloud.

Comment thread cli/CHANGELOG.md Outdated
Co-authored-by: Mike McCready <66998419+MikeMcC399@users.noreply.github.com>
@ryanthemanuel ryanthemanuel changed the title chore (dep): upgrade tar-fs to 2.1.3 and 3.1.0 dependency: upgrade tar-fs to 2.1.3 and 3.1.0 Aug 6, 2025
@jennifer-shehane jennifer-shehane merged commit 7d9d3e2 into develop Aug 6, 2025
84 of 90 checks passed
@jennifer-shehane jennifer-shehane deleted the ryanm/chore/tar-fs branch August 6, 2025 15:13
@cypress-bot
Copy link
Copy Markdown
Contributor

cypress-bot Bot commented Aug 7, 2025

Released in 14.5.4.

This comment thread has been locked. If you are still experiencing this issue after upgrading to
Cypress v14.5.4, please open a new issue.

@cypress-bot cypress-bot Bot locked as resolved and limited conversation to collaborators Aug 7, 2025
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants