From d8d8242c3f8a4e07735cb2c66a8a1bc126b55073 Mon Sep 17 00:00:00 2001 From: "renovate[bot]" <29139614+renovate[bot]@users.noreply.github.com> Date: Thu, 19 Feb 2026 21:14:59 +0000 Subject: [PATCH] fix(deps): update dependency tar to v7.5.8 [security] --- package-lock.json | 26 ++++++++++++++++++++++---- package.json | 2 +- 2 files changed, 23 insertions(+), 5 deletions(-) diff --git a/package-lock.json b/package-lock.json index 9790a7aa..d7d2255e 100644 --- a/package-lock.json +++ b/package-lock.json @@ -18,7 +18,7 @@ "ora": "9.2.0", "rimraf": "6.1.3", "semver": "7.7.4", - "tar": "7.5.7", + "tar": "7.5.8", "tinyrainbow": "3.0.3", "yargs": "18.0.0", "yargs-parser": "22.0.0" @@ -373,6 +373,24 @@ "node": ">=10" } }, + "node_modules/@eik/core/node_modules/tar": { + "version": "7.5.7", + "resolved": "https://registry.npmjs.org/tar/-/tar-7.5.7.tgz", + "integrity": "sha512-fov56fJiRuThVFXD6o6/Q354S7pnWMJIVlDBYijsTNx6jKSE4pvrDTs6lUnmGvNyfJwFQQwWy3owKz1ucIhveQ==", + "deprecated": "Old versions of tar are not supported, and contain widely publicized security vulnerabilities, which have been fixed in the current version. Please update. Support for old versions may be purchased (at exorbitant rates) by contacting i@izs.me", + "dev": true, + "license": "BlueOak-1.0.0", + "dependencies": { + "@isaacs/fs-minipass": "^4.0.0", + "chownr": "^3.0.0", + "minipass": "^7.1.2", + "minizlib": "^3.1.0", + "yallist": "^5.0.0" + }, + "engines": { + "node": ">=18" + } + }, "node_modules/@eik/eslint-config": { "version": "1.0.25", "resolved": "https://registry.npmjs.org/@eik/eslint-config/-/eslint-config-1.0.25.tgz", @@ -13223,9 +13241,9 @@ } }, "node_modules/tar": { - "version": "7.5.7", - "resolved": "https://registry.npmjs.org/tar/-/tar-7.5.7.tgz", - "integrity": "sha512-fov56fJiRuThVFXD6o6/Q354S7pnWMJIVlDBYijsTNx6jKSE4pvrDTs6lUnmGvNyfJwFQQwWy3owKz1ucIhveQ==", + "version": "7.5.8", + "resolved": "https://registry.npmjs.org/tar/-/tar-7.5.8.tgz", + "integrity": "sha512-SYkBtK99u0yXa+IWL0JRzzcl7RxNpvX/U08Z+8DKnysfno7M+uExnTZH8K+VGgShf2qFPKtbNr9QBl8n7WBP6Q==", "license": "BlueOak-1.0.0", "dependencies": { "@isaacs/fs-minipass": "^4.0.0", diff --git a/package.json b/package.json index 7b759b94..49c5ead6 100644 --- a/package.json +++ b/package.json @@ -51,7 +51,7 @@ "ora": "9.2.0", "rimraf": "6.1.3", "semver": "7.7.4", - "tar": "7.5.7", + "tar": "7.5.8", "tinyrainbow": "3.0.3", "yargs": "18.0.0", "yargs-parser": "22.0.0"