Skip to content

chore(deps): upgrade @isaacs/brace-expansion to 5.0.1#33336

Merged
mschile merged 4 commits into
developfrom
mschile/isaacs_brace-expansion
Feb 5, 2026
Merged

chore(deps): upgrade @isaacs/brace-expansion to 5.0.1#33336
mschile merged 4 commits into
developfrom
mschile/isaacs_brace-expansion

Conversation

@mschile
Copy link
Copy Markdown
Collaborator

@mschile mschile commented Feb 5, 2026

Additional details

  • Update rimraf to 6.1.1 to update @isaacs/brace-expansion to 5.0.1 to address GHSA-7h2j-956f-4vf2

Note

Low Risk
Dependency-only upgrade and lockfile regeneration with no functional code changes; main risk is unexpected build/clean behavior changes from the newer rimraf and its updated glob/minimatch dependencies.

Overview
Updates rimraf from 6.0.1 to 6.1.1 across the root and multiple workspace package.json files, updating yarn.lock to the newer transitive dependency chain (including @isaacs/brace-expansion@5.0.1) to address the reported security advisory.

Also bumps .circleci/cache-version.txt to force CI cache refresh and adds a 15.10.1 changelog entry noting the dependency/security update.

Written by Cursor Bugbot for commit 61fe3f2. This will update automatically on new commits. Configure here.

Steps to test

How has the user experience changed?

PR Tasks

@cacieprins cacieprins changed the title dependency: upgrade @isaacs/brace-expansion to 5.0.1 chore(deps): upgrade @isaacs/brace-expansion to 5.0.1 Feb 5, 2026
@cypress
Copy link
Copy Markdown

cypress Bot commented Feb 5, 2026

cypress    Run #68852

Run Properties:  status check passed Passed #68852  •  git commit 61fe3f24ee: bump cache version
Project cypress
Branch Review mschile/isaacs_brace-expansion
Run status status check passed Passed #68852
Run duration 27m 50s
Commit git commit 61fe3f24ee: bump cache version
Committer Matthew Schile
View all properties for this run ↗︎

Test results
Tests that failed  Failures 0
Tests that were flaky  Flaky 15
Tests that did not run due to a developer annotating a test with .skip  Pending 1112
Tests that did not run due to a failure in a mocha hook  Skipped 4
Tests that passed  Passing 27110
View all changes introduced in this branch ↗︎

Warning

Partial Report: The results for the Application Quality reports may be incomplete.

UI Coverage  62.34%
  Untested elements 27  
  Tested elements 48  
Accessibility  99.02%
  Failed rules  0 critical   3 serious   1 moderate   0 minor
  Failed elements 18  

@mschile mschile merged commit acfcd26 into develop Feb 5, 2026
92 of 94 checks passed
@mschile mschile deleted the mschile/isaacs_brace-expansion branch February 5, 2026 19:01
@cypress-bot
Copy link
Copy Markdown
Contributor

cypress-bot Bot commented Feb 25, 2026

Released in 15.11.0.

This comment thread has been locked. If you are still experiencing this issue after upgrading to
Cypress v15.11.0, please open a new issue.

@cypress-bot cypress-bot Bot locked as resolved and limited conversation to collaborators Feb 25, 2026
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Cypress 15.10.0 - HIGH CVE - GHSA-7h2j-956f-4vf2 - @isaacs/brace-expansion 5.0.0

2 participants