Skip to content

fix(deps): bump spectral-core dependents#2742

Merged
frankkilcommins merged 2 commits into
stoplightio:developfrom
frankkilcommins:bump-spectral-core-dependents
Nov 19, 2024
Merged

fix(deps): bump spectral-core dependents#2742
frankkilcommins merged 2 commits into
stoplightio:developfrom
frankkilcommins:bump-spectral-core-dependents

Conversation

@frankkilcommins

Copy link
Copy Markdown
Contributor

Fixes #2717

Does this PR introduce a breaking change?

  • Yes
  • No

This PR bumps spectral packages that depend on spectral-core to leverage the latest version which includes jsonpath-plus 10.2.0 thus addressing CVE-2024-21534

@frankkilcommins frankkilcommins requested a review from a team as a code owner November 19, 2024 10:58
@frankkilcommins frankkilcommins added the dependencies Pull requests that update a dependency file label Nov 19, 2024
@frankkilcommins frankkilcommins merged commit 30c0349 into stoplightio:develop Nov 19, 2024
stoplight-bot pushed a commit that referenced this pull request Nov 19, 2024
## @stoplight/spectral-cli [6.14.2](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-cli-6.14.1...@stoplight/spectral-cli-6.14.2) (2024-11-19)

### Bug Fixes

* **deps:** bump spectral-core dependents ([#2742](#2742)) ([30c0349](30c0349))
stoplight-bot pushed a commit that referenced this pull request Nov 19, 2024
## [1.4.3](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-formatters-1.4.2...@stoplight/spectral-formatters-1.4.3) (2024-11-19)

### Bug Fixes

* **deps:** bump spectral-core dependents ([#2742](#2742)) ([30c0349](30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](169db7a))
stoplight-bot pushed a commit that referenced this pull request Nov 19, 2024
## [1.9.3](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-functions-1.9.2...@stoplight/spectral-functions-1.9.3) (2024-11-19)

### Bug Fixes

* **deps:** bump spectral-core dependents ([#2742](#2742)) ([30c0349](30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](169db7a))
stoplight-bot pushed a commit that referenced this pull request Nov 19, 2024
## [1.21.3](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-rulesets-1.21.2...@stoplight/spectral-rulesets-1.21.3) (2024-11-19)

### Bug Fixes

* **deps:** bump spectral-core dependents ([#2742](#2742)) ([30c0349](30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](169db7a))
stoplight-bot pushed a commit that referenced this pull request Mar 7, 2025
## [1.19.5](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-core-1.19.4...@stoplight/spectral-core-1.19.5) (2025-03-07)

### Bug Fixes

* **core:** trigger release ([415dc76](415dc76))
* **deps:** bump spectral-core dependents ([#2742](#2742)) ([30c0349](30c0349))
* **deps:** trigger release ([7b6b74e](7b6b74e))
* **deps:** update dependencies ([#2794](#2794)) ([9e6b885](9e6b885))
stoplight-bot pushed a commit that referenced this pull request Mar 7, 2025
## [1.6.2](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-ruleset-bundler-1.6.1...@stoplight/spectral-ruleset-bundler-1.6.2) (2025-03-07)

### Bug Fixes

* **core:** trigger release ([415dc76](415dc76))
* **deps:** bump spectral-core dependents ([#2742](#2742)) ([30c0349](30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](169db7a))
* **deps:** trigger release ([7b6b74e](7b6b74e))
* **deps:** update dependencies ([#2794](#2794)) ([9e6b885](9e6b885))
stoplight-bot pushed a commit that referenced this pull request Mar 7, 2025
## [1.11.2](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-ruleset-migrator-1.11.1...@stoplight/spectral-ruleset-migrator-1.11.2) (2025-03-07)

### Bug Fixes

* **core:** trigger release ([415dc76](415dc76))
* **deps:** bump spectral-core dependents ([#2742](#2742)) ([30c0349](30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](169db7a))
* **deps:** trigger release ([7b6b74e](7b6b74e))
* **deps:** update dependencies ([#2794](#2794)) ([9e6b885](9e6b885))
frankkilcommins added a commit that referenced this pull request Mar 19, 2025
* fix(deps): bump spectral-core dependents

* chore(repo): update lock file
frankkilcommins pushed a commit that referenced this pull request Mar 19, 2025
## @stoplight/spectral-cli [6.14.2](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-cli-6.14.1...@stoplight/spectral-cli-6.14.2) (2024-11-19)

### Bug Fixes

* **deps:** bump spectral-core dependents ([#2742](#2742)) ([30c0349](30c0349))
frankkilcommins pushed a commit that referenced this pull request Mar 19, 2025
## [1.4.3](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-formatters-1.4.2...@stoplight/spectral-formatters-1.4.3) (2024-11-19)

### Bug Fixes

* **deps:** bump spectral-core dependents ([#2742](#2742)) ([30c0349](30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](169db7a))
frankkilcommins pushed a commit that referenced this pull request Mar 19, 2025
## [1.9.3](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-functions-1.9.2...@stoplight/spectral-functions-1.9.3) (2024-11-19)

### Bug Fixes

* **deps:** bump spectral-core dependents ([#2742](#2742)) ([30c0349](30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](169db7a))
frankkilcommins pushed a commit that referenced this pull request Mar 19, 2025
## [1.21.3](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-rulesets-1.21.2...@stoplight/spectral-rulesets-1.21.3) (2024-11-19)

### Bug Fixes

* **deps:** bump spectral-core dependents ([#2742](#2742)) ([30c0349](30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](169db7a))
frankkilcommins pushed a commit that referenced this pull request Mar 19, 2025
## [1.19.5](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-core-1.19.4...@stoplight/spectral-core-1.19.5) (2025-03-07)

### Bug Fixes

* **core:** trigger release ([415dc76](415dc76))
* **deps:** bump spectral-core dependents ([#2742](#2742)) ([30c0349](30c0349))
* **deps:** trigger release ([7b6b74e](7b6b74e))
* **deps:** update dependencies ([#2794](#2794)) ([9e6b885](9e6b885))
frankkilcommins pushed a commit that referenced this pull request Mar 19, 2025
## [1.6.2](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-ruleset-bundler-1.6.1...@stoplight/spectral-ruleset-bundler-1.6.2) (2025-03-07)

### Bug Fixes

* **core:** trigger release ([415dc76](415dc76))
* **deps:** bump spectral-core dependents ([#2742](#2742)) ([30c0349](30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](169db7a))
* **deps:** trigger release ([7b6b74e](7b6b74e))
* **deps:** update dependencies ([#2794](#2794)) ([9e6b885](9e6b885))
frankkilcommins pushed a commit that referenced this pull request Mar 19, 2025
## [1.11.2](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-ruleset-migrator-1.11.1...@stoplight/spectral-ruleset-migrator-1.11.2) (2025-03-07)

### Bug Fixes

* **core:** trigger release ([415dc76](415dc76))
* **deps:** bump spectral-core dependents ([#2742](#2742)) ([30c0349](30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](169db7a))
* **deps:** trigger release ([7b6b74e](7b6b74e))
* **deps:** update dependencies ([#2794](#2794)) ([9e6b885](9e6b885))
frankkilcommins added a commit to cuttingclyde/spectral that referenced this pull request Mar 20, 2025
* fix(deps): bump spectral-core dependents

* chore(repo): update lock file
frankkilcommins pushed a commit to cuttingclyde/spectral that referenced this pull request Mar 20, 2025
frankkilcommins pushed a commit to cuttingclyde/spectral that referenced this pull request Mar 20, 2025
frankkilcommins pushed a commit to cuttingclyde/spectral that referenced this pull request Mar 20, 2025
frankkilcommins pushed a commit to cuttingclyde/spectral that referenced this pull request Mar 20, 2025
frankkilcommins pushed a commit to cuttingclyde/spectral that referenced this pull request Mar 20, 2025
## [1.19.5](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-core-1.19.4...@stoplight/spectral-core-1.19.5) (2025-03-07)

### Bug Fixes

* **core:** trigger release ([415dc76](stoplightio@415dc76))
* **deps:** bump spectral-core dependents ([stoplightio#2742](stoplightio#2742)) ([30c0349](stoplightio@30c0349))
* **deps:** trigger release ([7b6b74e](stoplightio@7b6b74e))
* **deps:** update dependencies ([stoplightio#2794](stoplightio#2794)) ([9e6b885](stoplightio@9e6b885))
frankkilcommins pushed a commit to cuttingclyde/spectral that referenced this pull request Mar 20, 2025
## [1.6.2](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-ruleset-bundler-1.6.1...@stoplight/spectral-ruleset-bundler-1.6.2) (2025-03-07)

### Bug Fixes

* **core:** trigger release ([415dc76](stoplightio@415dc76))
* **deps:** bump spectral-core dependents ([stoplightio#2742](stoplightio#2742)) ([30c0349](stoplightio@30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](stoplightio@169db7a))
* **deps:** trigger release ([7b6b74e](stoplightio@7b6b74e))
* **deps:** update dependencies ([stoplightio#2794](stoplightio#2794)) ([9e6b885](stoplightio@9e6b885))
frankkilcommins pushed a commit to cuttingclyde/spectral that referenced this pull request Mar 20, 2025
## [1.11.2](https://github.com/stoplightio/spectral/compare/@stoplight/spectral-ruleset-migrator-1.11.1...@stoplight/spectral-ruleset-migrator-1.11.2) (2025-03-07)

### Bug Fixes

* **core:** trigger release ([415dc76](stoplightio@415dc76))
* **deps:** bump spectral-core dependents ([stoplightio#2742](stoplightio#2742)) ([30c0349](stoplightio@30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](stoplightio@169db7a))
* **deps:** trigger release ([7b6b74e](stoplightio@7b6b74e))
* **deps:** update dependencies ([stoplightio#2794](stoplightio#2794)) ([9e6b885](stoplightio@9e6b885))
frankkilcommins pushed a commit to cuttingclyde/spectral that referenced this pull request Mar 20, 2025
* **deps:** bump spectral-core dependents ([stoplightio#2742](stoplightio#2742)) ([30c0349](stoplightio@30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](stoplightio@169db7a))
frankkilcommins pushed a commit to cuttingclyde/spectral that referenced this pull request Mar 20, 2025
* **core:** trigger release ([415dc76](stoplightio@415dc76))
* **deps:** bump spectral-core dependents ([stoplightio#2742](stoplightio#2742)) ([30c0349](stoplightio@30c0349))
* **deps:** trigger release ([7b6b74e](stoplightio@7b6b74e))
* **deps:** update dependencies ([stoplightio#2794](stoplightio#2794)) ([9e6b885](stoplightio@9e6b885))
frankkilcommins pushed a commit to cuttingclyde/spectral that referenced this pull request Mar 20, 2025
* **core:** trigger release ([415dc76](stoplightio@415dc76))
* **deps:** bump spectral-core dependents ([stoplightio#2742](stoplightio#2742)) ([30c0349](stoplightio@30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](stoplightio@169db7a))
* **deps:** trigger release ([7b6b74e](stoplightio@7b6b74e))
* **deps:** update dependencies ([stoplightio#2794](stoplightio#2794)) ([9e6b885](stoplightio@9e6b885))
frankkilcommins pushed a commit to cuttingclyde/spectral that referenced this pull request Mar 20, 2025
* **core:** trigger release ([415dc76](stoplightio@415dc76))
* **deps:** bump spectral-core dependents ([stoplightio#2742](stoplightio#2742)) ([30c0349](stoplightio@30c0349))
* **deps:** fix CVE related to jsonpath-plus ([169db7a](stoplightio@169db7a))
* **deps:** trigger release ([7b6b74e](stoplightio@7b6b74e))
* **deps:** update dependencies ([stoplightio#2794](stoplightio#2794)) ([9e6b885](stoplightio@9e6b885))
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Release a new package to include the patch for CVE-2024-21534 critical vulnerability

2 participants