mediawiki/extensions/NearbyPages: main (log #1256905)

sourcepatches

This run took 188 seconds.

From 1310b3c399e688568f74905848cb4a0091ab5fef Mon Sep 17 00:00:00 2001
From: libraryupgrader <tools.libraryupgrader@tools.wmflabs.org>
Date: Fri, 12 Apr 2024 09:58:39 +0000
Subject: [PATCH] build: Updating @wikimedia/codex to 1.3.6

Change-Id: I5b7ebf8b95bcf7f5d9d7abb381becfb20df6392a
---
 package-lock.json | 52 ++++++++++++++++++++++++-----------------------
 package.json      |  2 +-
 2 files changed, 28 insertions(+), 26 deletions(-)

diff --git a/package-lock.json b/package-lock.json
index ccfc0d4..64b0f4b 100644
--- a/package-lock.json
+++ b/package-lock.json
@@ -11,7 +11,7 @@
 				"@parcel/transformer-vue": "2.3.2",
 				"@vue/test-utils": "2.0.0-rc.17",
 				"@vue/vue3-jest": "27.0.0-alpha.4",
-				"@wikimedia/codex": "1.3.5",
+				"@wikimedia/codex": "1.3.6",
 				"babel-core": "6.26.3",
 				"eslint-config-wikimedia": "0.25.0",
 				"grunt-banana-checker": "0.11.1",
@@ -1877,12 +1877,13 @@
 			"dev": true
 		},
 		"node_modules/@floating-ui/vue": {
-			"version": "1.0.2",
-			"resolved": "https://registry.npmjs.org/@floating-ui/vue/-/vue-1.0.2.tgz",
-			"integrity": "sha512-sImlAl9mAoCKZLNlwWz2P2ZMJIDlOEDXrRD6aD2sIHAka1LPC+nWtB+D3lPe7IE7FGWSbwBPTnlSdlABa3Fr0A==",
+			"version": "1.0.6",
+			"resolved": "https://registry.npmjs.org/@floating-ui/vue/-/vue-1.0.6.tgz",
+			"integrity": "sha512-EdrOljjkpkkqZnrpqUcPoz9NvHxuTjUtSInh6GMv3+Mcy+giY2cE2pHh9rpacRcZ2eMSCxel9jWkWXTjLmY55w==",
 			"dev": true,
 			"dependencies": {
-				"@floating-ui/dom": "^1.4.5",
+				"@floating-ui/dom": "^1.6.1",
+				"@floating-ui/utils": "^0.2.1",
 				"vue-demi": ">=0.13.0"
 			}
 		},
@@ -5446,13 +5447,13 @@
 			}
 		},
 		"node_modules/@wikimedia/codex": {
-			"version": "1.3.5",
-			"resolved": "https://registry.npmjs.org/@wikimedia/codex/-/codex-1.3.5.tgz",
-			"integrity": "sha512-CZ0tNaNujc9+7Eu4l8LgSeW8bwyKAbTuk65G/bS7rXGObXuYgG8kawP058wTj5dxPz7DIEtuVCf+q2ZNlEfDVg==",
+			"version": "1.3.6",
+			"resolved": "https://registry.npmjs.org/@wikimedia/codex/-/codex-1.3.6.tgz",
+			"integrity": "sha512-5CUPL4kwODCZ+R+KOHz4mKRt50q/NVMyrqYjmqqct2Ul3UgNH5rITkhBkOoUTgXuNMCbAsRWeXVDozA3VzXnSQ==",
 			"dev": true,
 			"dependencies": {
-				"@floating-ui/vue": "1.0.2",
-				"@wikimedia/codex-icons": "1.3.5"
+				"@floating-ui/vue": "1.0.6",
+				"@wikimedia/codex-icons": "1.3.6"
 			},
 			"engines": {
 				"node": ">=18",
@@ -5463,9 +5464,9 @@
 			}
 		},
 		"node_modules/@wikimedia/codex-icons": {
-			"version": "1.3.5",
-			"resolved": "https://registry.npmjs.org/@wikimedia/codex-icons/-/codex-icons-1.3.5.tgz",
-			"integrity": "sha512-JD/lMc3p0HEIWGDW6Fja4ETnw8HO8/AAwFpVDsGYjWKlDmWaWztiZr+rxIlodSa6p+P6VD7ND3FdBusmImENTA==",
+			"version": "1.3.6",
+			"resolved": "https://registry.npmjs.org/@wikimedia/codex-icons/-/codex-icons-1.3.6.tgz",
+			"integrity": "sha512-q3TXjAvcgli1K5DCLp2MxcqYx9LpqKnaYLM4rH50kZH9Nj+ktnhVyjE5ApVzyXGsToITYYklPhIuCafFykk0wA==",
 			"dev": true,
 			"engines": {
 				"node": ">=18",
@@ -17086,12 +17087,13 @@
 			"dev": true
 		},
 		"@floating-ui/vue": {
-			"version": "1.0.2",
-			"resolved": "https://registry.npmjs.org/@floating-ui/vue/-/vue-1.0.2.tgz",
-			"integrity": "sha512-sImlAl9mAoCKZLNlwWz2P2ZMJIDlOEDXrRD6aD2sIHAka1LPC+nWtB+D3lPe7IE7FGWSbwBPTnlSdlABa3Fr0A==",
+			"version": "1.0.6",
+			"resolved": "https://registry.npmjs.org/@floating-ui/vue/-/vue-1.0.6.tgz",
+			"integrity": "sha512-EdrOljjkpkkqZnrpqUcPoz9NvHxuTjUtSInh6GMv3+Mcy+giY2cE2pHh9rpacRcZ2eMSCxel9jWkWXTjLmY55w==",
 			"dev": true,
 			"requires": {
-				"@floating-ui/dom": "^1.4.5",
+				"@floating-ui/dom": "^1.6.1",
+				"@floating-ui/utils": "^0.2.1",
 				"vue-demi": ">=0.13.0"
 			},
 			"dependencies": {
@@ -19618,19 +19620,19 @@
 			}
 		},
 		"@wikimedia/codex": {
-			"version": "1.3.5",
-			"resolved": "https://registry.npmjs.org/@wikimedia/codex/-/codex-1.3.5.tgz",
-			"integrity": "sha512-CZ0tNaNujc9+7Eu4l8LgSeW8bwyKAbTuk65G/bS7rXGObXuYgG8kawP058wTj5dxPz7DIEtuVCf+q2ZNlEfDVg==",
+			"version": "1.3.6",
+			"resolved": "https://registry.npmjs.org/@wikimedia/codex/-/codex-1.3.6.tgz",
+			"integrity": "sha512-5CUPL4kwODCZ+R+KOHz4mKRt50q/NVMyrqYjmqqct2Ul3UgNH5rITkhBkOoUTgXuNMCbAsRWeXVDozA3VzXnSQ==",
 			"dev": true,
 			"requires": {
-				"@floating-ui/vue": "1.0.2",
-				"@wikimedia/codex-icons": "1.3.5"
+				"@floating-ui/vue": "1.0.6",
+				"@wikimedia/codex-icons": "1.3.6"
 			}
 		},
 		"@wikimedia/codex-icons": {
-			"version": "1.3.5",
-			"resolved": "https://registry.npmjs.org/@wikimedia/codex-icons/-/codex-icons-1.3.5.tgz",
-			"integrity": "sha512-JD/lMc3p0HEIWGDW6Fja4ETnw8HO8/AAwFpVDsGYjWKlDmWaWztiZr+rxIlodSa6p+P6VD7ND3FdBusmImENTA==",
+			"version": "1.3.6",
+			"resolved": "https://registry.npmjs.org/@wikimedia/codex-icons/-/codex-icons-1.3.6.tgz",
+			"integrity": "sha512-q3TXjAvcgli1K5DCLp2MxcqYx9LpqKnaYLM4rH50kZH9Nj+ktnhVyjE5ApVzyXGsToITYYklPhIuCafFykk0wA==",
 			"dev": true
 		},
 		"abab": {
diff --git a/package.json b/package.json
index 1f4aea9..260c2aa 100644
--- a/package.json
+++ b/package.json
@@ -28,7 +28,7 @@
 		"@parcel/transformer-vue": "2.3.2",
 		"@vue/test-utils": "2.0.0-rc.17",
 		"@vue/vue3-jest": "27.0.0-alpha.4",
-		"@wikimedia/codex": "1.3.5",
+		"@wikimedia/codex": "1.3.6",
 		"babel-core": "6.26.3",
 		"eslint-config-wikimedia": "0.25.0",
 		"grunt-banana-checker": "0.11.1",
-- 
2.39.2

$ date
--- stdout ---
Fri Apr 12 09:55:54 UTC 2024

--- end ---
$ git clone file:///srv/git/mediawiki-extensions-NearbyPages.git repo --depth=1 -b master
--- stderr ---
Cloning into 'repo'...
--- stdout ---

--- end ---
$ git config user.name libraryupgrader
--- stdout ---

--- end ---
$ git config user.email tools.libraryupgrader@tools.wmflabs.org
--- stdout ---

--- end ---
$ git submodule update --init
--- stdout ---

--- end ---
$ grr init
--- stdout ---
Installed commit-msg hook.

--- end ---
$ git show-ref refs/heads/master
--- stdout ---
25015be3b0a4bb610e8c298022ef5e70f2f3b08d refs/heads/master

--- end ---
$ /usr/bin/npm audit --json
--- stdout ---
{
  "auditReportVersion": 2,
  "vulnerabilities": {
    "babel-core": {
      "name": "babel-core",
      "severity": "critical",
      "isDirect": true,
      "via": [
        "babel-helpers",
        "babel-register",
        "babel-template",
        "babel-traverse",
        "json5"
      ],
      "effects": [
        "babel-register"
      ],
      "range": "5.8.20 - 7.0.0-beta.3",
      "nodes": [
        "node_modules/babel-core"
      ],
      "fixAvailable": {
        "name": "babel-core",
        "version": "4.7.16",
        "isSemVerMajor": true
      }
    },
    "babel-helpers": {
      "name": "babel-helpers",
      "severity": "critical",
      "isDirect": false,
      "via": [
        "babel-template"
      ],
      "effects": [],
      "range": "*",
      "nodes": [
        "node_modules/babel-helpers"
      ],
      "fixAvailable": true
    },
    "babel-register": {
      "name": "babel-register",
      "severity": "high",
      "isDirect": false,
      "via": [
        "babel-core"
      ],
      "effects": [
        "babel-core"
      ],
      "range": "*",
      "nodes": [
        "node_modules/babel-register"
      ],
      "fixAvailable": {
        "name": "babel-core",
        "version": "4.7.16",
        "isSemVerMajor": true
      }
    },
    "babel-template": {
      "name": "babel-template",
      "severity": "critical",
      "isDirect": false,
      "via": [
        "babel-traverse"
      ],
      "effects": [
        "babel-helpers"
      ],
      "range": "*",
      "nodes": [
        "node_modules/babel-template"
      ],
      "fixAvailable": true
    },
    "babel-traverse": {
      "name": "babel-traverse",
      "severity": "critical",
      "isDirect": false,
      "via": [
        {
          "source": 1096879,
          "name": "babel-traverse",
          "dependency": "babel-traverse",
          "title": "Babel vulnerable to arbitrary code execution when compiling specifically crafted malicious code",
          "url": "https://github.com/advisories/GHSA-67hx-6x53-jw92",
          "severity": "critical",
          "cwe": [
            "CWE-184",
            "CWE-697"
          ],
          "cvss": {
            "score": 9.4,
            "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"
          },
          "range": "<7.23.2"
        }
      ],
      "effects": [
        "babel-core",
        "babel-template"
      ],
      "range": "*",
      "nodes": [
        "node_modules/babel-traverse"
      ],
      "fixAvailable": {
        "name": "babel-core",
        "version": "4.7.16",
        "isSemVerMajor": true
      }
    },
    "json5": {
      "name": "json5",
      "severity": "high",
      "isDirect": false,
      "via": [
        {
          "source": 1096543,
          "name": "json5",
          "dependency": "json5",
          "title": "Prototype Pollution in JSON5 via Parse Method",
          "url": "https://github.com/advisories/GHSA-9c47-m6qq-7p4h",
          "severity": "high",
          "cwe": [
            "CWE-1321"
          ],
          "cvss": {
            "score": 7.1,
            "vectorString": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:H"
          },
          "range": "<1.0.2"
        }
      ],
      "effects": [
        "babel-core"
      ],
      "range": "<1.0.2",
      "nodes": [
        "node_modules/babel-core/node_modules/json5"
      ],
      "fixAvailable": {
        "name": "babel-core",
        "version": "4.7.16",
        "isSemVerMajor": true
      }
    }
  },
  "metadata": {
    "vulnerabilities": {
      "info": 0,
      "low": 0,
      "moderate": 0,
      "high": 2,
      "critical": 4,
      "total": 6
    },
    "dependencies": {
      "prod": 1,
      "dev": 1250,
      "optional": 53,
      "peer": 32,
      "peerOptional": 0,
      "total": 1250
    }
  }
}

--- end ---
$ /usr/bin/composer install
--- stderr ---
No composer.lock file present. Updating dependencies to latest instead of installing from lock file. See https://getcomposer.org/install for more information.
Loading composer repositories with package information
Updating dependencies
Lock file operations: 39 installs, 0 updates, 0 removals
  - Locking composer/pcre (3.1.3)
  - Locking composer/semver (3.4.0)
  - Locking composer/spdx-licenses (1.5.8)
  - Locking composer/xdebug-handler (3.0.4)
  - Locking dealerdirect/phpcodesniffer-composer-installer (v1.0.0)
  - Locking doctrine/deprecations (1.1.3)
  - Locking felixfbecker/advanced-json-rpc (v3.2.1)
  - Locking mediawiki/mediawiki-codesniffer (v43.0.0)
  - Locking mediawiki/mediawiki-phan-config (0.14.0)
  - Locking mediawiki/minus-x (1.1.1)
  - Locking mediawiki/phan-taint-check-plugin (6.0.0)
  - Locking microsoft/tolerant-php-parser (v0.1.2)
  - Locking netresearch/jsonmapper (v4.4.1)
  - Locking phan/phan (5.4.3)
  - Locking php-parallel-lint/php-console-color (v1.0.1)
  - Locking php-parallel-lint/php-console-highlighter (v1.0.0)
  - Locking php-parallel-lint/php-parallel-lint (v1.3.2)
  - Locking phpcsstandards/phpcsextra (1.1.2)
  - Locking phpcsstandards/phpcsutils (1.0.9)
  - Locking phpdocumentor/reflection-common (2.2.0)
  - Locking phpdocumentor/reflection-docblock (5.4.0)
  - Locking phpdocumentor/type-resolver (1.8.2)
  - Locking phpstan/phpdoc-parser (1.28.0)
  - Locking psr/container (2.0.2)
  - Locking psr/log (2.0.0)
  - Locking sabre/event (5.1.4)
  - Locking squizlabs/php_codesniffer (3.8.1)
  - Locking symfony/console (v5.4.36)
  - Locking symfony/deprecation-contracts (v3.4.0)
  - Locking symfony/polyfill-ctype (v1.29.0)
  - Locking symfony/polyfill-intl-grapheme (v1.29.0)
  - Locking symfony/polyfill-intl-normalizer (v1.29.0)
  - Locking symfony/polyfill-mbstring (v1.29.0)
  - Locking symfony/polyfill-php73 (v1.29.0)
  - Locking symfony/polyfill-php80 (v1.29.0)
  - Locking symfony/service-contracts (v3.4.2)
  - Locking symfony/string (v6.4.4)
  - Locking tysonandre/var_representation_polyfill (0.1.3)
  - Locking webmozart/assert (1.11.0)
Writing lock file
Installing dependencies from lock file (including require-dev)
Package operations: 39 installs, 0 updates, 0 removals
    0 [>---------------------------]    0 [->--------------------------]
  - Installing squizlabs/php_codesniffer (3.8.1): Extracting archive
  - Installing dealerdirect/phpcodesniffer-composer-installer (v1.0.0): Extracting archive
  - Installing composer/pcre (3.1.3): Extracting archive
  - Installing symfony/polyfill-php80 (v1.29.0): Extracting archive
  - Installing phpcsstandards/phpcsutils (1.0.9): Extracting archive
  - Installing phpcsstandards/phpcsextra (1.1.2): Extracting archive
  - Installing symfony/polyfill-mbstring (v1.29.0): Extracting archive
  - Installing composer/spdx-licenses (1.5.8): Extracting archive
  - Installing composer/semver (3.4.0): Extracting archive
  - Installing mediawiki/mediawiki-codesniffer (v43.0.0): Extracting archive
  - Installing tysonandre/var_representation_polyfill (0.1.3): Extracting archive
  - Installing symfony/polyfill-intl-normalizer (v1.29.0): Extracting archive
  - Installing symfony/polyfill-intl-grapheme (v1.29.0): Extracting archive
  - Installing symfony/polyfill-ctype (v1.29.0): Extracting archive
  - Installing symfony/string (v6.4.4): Extracting archive
  - Installing psr/container (2.0.2): Extracting archive
  - Installing symfony/service-contracts (v3.4.2): Extracting archive
  - Installing symfony/polyfill-php73 (v1.29.0): Extracting archive
  - Installing symfony/deprecation-contracts (v3.4.0): Extracting archive
  - Installing symfony/console (v5.4.36): Extracting archive
  - Installing sabre/event (5.1.4): Extracting archive
  - Installing netresearch/jsonmapper (v4.4.1): Extracting archive
  - Installing microsoft/tolerant-php-parser (v0.1.2): Extracting archive
  - Installing webmozart/assert (1.11.0): Extracting archive
  - Installing phpstan/phpdoc-parser (1.28.0): Extracting archive
  - Installing phpdocumentor/reflection-common (2.2.0): Extracting archive
  - Installing doctrine/deprecations (1.1.3): Extracting archive
  - Installing phpdocumentor/type-resolver (1.8.2): Extracting archive
  - Installing phpdocumentor/reflection-docblock (5.4.0): Extracting archive
  - Installing felixfbecker/advanced-json-rpc (v3.2.1): Extracting archive
  - Installing psr/log (2.0.0): Extracting archive
  - Installing composer/xdebug-handler (3.0.4): Extracting archive
  - Installing phan/phan (5.4.3): Extracting archive
  - Installing mediawiki/phan-taint-check-plugin (6.0.0): Extracting archive
  - Installing mediawiki/mediawiki-phan-config (0.14.0): Extracting archive
  - Installing mediawiki/minus-x (1.1.1): Extracting archive
  - Installing php-parallel-lint/php-console-color (v1.0.1): Extracting archive
  - Installing php-parallel-lint/php-console-highlighter (v1.0.0): Extracting archive
  - Installing php-parallel-lint/php-parallel-lint (v1.3.2): Extracting archive
  0/37 [>---------------------------]   0%
 25/37 [==================>---------]  67%
 36/37 [===========================>]  97%
 37/37 [============================] 100%
3 package suggestions were added by new dependencies, use `composer suggest` to see details.
Generating autoload files
16 packages you are using are looking for funding.
Use the `composer fund` command to find out more!
--- stdout ---
PHP CodeSniffer Config installed_paths set to ../../mediawiki/mediawiki-codesniffer,../../phpcsstandards/phpcsextra,../../phpcsstandards/phpcsutils

--- end ---
Upgrading n:@wikimedia/codex from 1.3.5 -> 1.3.6
$ /usr/bin/npm install
--- stderr ---
npm WARN ERESOLVE overriding peer dependency
npm WARN While resolving: htmlnano@2.0.4
npm WARN Found: svgo@2.8.0
npm WARN node_modules/@parcel/optimizer-htmlnano/node_modules/svgo
npm WARN   svgo@"^2.4.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN   node_modules/@parcel/optimizer-htmlnano
npm WARN     @parcel/optimizer-htmlnano@"2.3.2" from @parcel/config-default@2.3.2
npm WARN     node_modules/@parcel/config-default
npm WARN 
npm WARN Could not resolve dependency:
npm WARN peerOptional svgo@"^3.0.2" from htmlnano@2.0.4
npm WARN node_modules/@parcel/optimizer-htmlnano/node_modules/htmlnano
npm WARN   htmlnano@"^2.0.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN   node_modules/@parcel/optimizer-htmlnano
npm WARN 
npm WARN Conflicting peer dependency: svgo@3.2.0
npm WARN node_modules/svgo
npm WARN   peerOptional svgo@"^3.0.2" from htmlnano@2.0.4
npm WARN   node_modules/@parcel/optimizer-htmlnano/node_modules/htmlnano
npm WARN     htmlnano@"^2.0.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN     node_modules/@parcel/optimizer-htmlnano
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: undefined,
npm WARN EBADENGINE   required: { node: '12.21.0' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: '@es-joy/jsdoccomment@0.23.6',
npm WARN EBADENGINE   required: { node: '^12 || ^14 || ^16 || ^17' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: 'eslint-plugin-jsdoc@39.2.2',
npm WARN EBADENGINE   required: { node: '^14 || ^16 || ^17' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
npm WARN deprecated stable@0.1.8: Modern JS already guarantees Array#sort() is a stable sort, so this library is deprecated. See the compatibility table on MDN: https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Global_Objects/Array/sort#browser_compatibility
npm WARN deprecated source-map-url@0.4.1: See https://github.com/lydell/source-map-url#deprecated
npm WARN deprecated urix@0.1.0: Please see https://github.com/lydell/urix#deprecated
npm WARN deprecated resolve-url@0.2.1: https://github.com/lydell/resolve-url#deprecated
npm WARN deprecated source-map-resolve@0.5.3: See https://github.com/lydell/source-map-resolve#deprecated
npm WARN deprecated stylelint-stylistic@0.4.3: This package has been deprecated in favor of @stylistic/stylelint-plugin
npm WARN deprecated core-js@2.6.12: core-js@<3.23.3 is no longer maintained and not recommended for usage due to the number of issues. Because of the V8 engine whims, feature detection in old core-js versions could cause a slowdown up to 100x even if nothing is polyfilled. Some versions have web compatibility issues. Please, upgrade your dependencies to the actual version of core-js.
--- stdout ---

added 1244 packages, and audited 1245 packages in 36s

171 packages are looking for funding
  run `npm fund` for details

6 vulnerabilities (2 high, 4 critical)

To address issues that do not require attention, run:
  npm audit fix

To address all issues (including breaking changes), run:
  npm audit fix --force

Run `npm audit` for details.

--- end ---
$ package-lock-lint package-lock.json
--- stdout ---
Checking package-lock.json

--- end ---
$ /usr/bin/npm ci
--- stderr ---
npm WARN ERESOLVE overriding peer dependency
npm WARN While resolving: htmlnano@2.0.4
npm WARN Found: svgo@2.8.0
npm WARN node_modules/@parcel/optimizer-htmlnano/node_modules/svgo
npm WARN   svgo@"^2.4.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN   node_modules/@parcel/optimizer-htmlnano
npm WARN     @parcel/optimizer-htmlnano@"2.3.2" from @parcel/config-default@2.3.2
npm WARN     node_modules/@parcel/config-default
npm WARN 
npm WARN Could not resolve dependency:
npm WARN peerOptional svgo@"^3.0.2" from htmlnano@2.0.4
npm WARN node_modules/@parcel/optimizer-htmlnano/node_modules/htmlnano
npm WARN   htmlnano@"^2.0.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN   node_modules/@parcel/optimizer-htmlnano
npm WARN 
npm WARN Conflicting peer dependency: svgo@3.2.0
npm WARN node_modules/svgo
npm WARN   peerOptional svgo@"^3.0.2" from htmlnano@2.0.4
npm WARN   node_modules/@parcel/optimizer-htmlnano/node_modules/htmlnano
npm WARN     htmlnano@"^2.0.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN     node_modules/@parcel/optimizer-htmlnano
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: undefined,
npm WARN EBADENGINE   required: { node: '12.21.0' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: '@es-joy/jsdoccomment@0.23.6',
npm WARN EBADENGINE   required: { node: '^12 || ^14 || ^16 || ^17' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: 'eslint-plugin-jsdoc@39.2.2',
npm WARN EBADENGINE   required: { node: '^14 || ^16 || ^17' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
npm WARN deprecated stable@0.1.8: Modern JS already guarantees Array#sort() is a stable sort, so this library is deprecated. See the compatibility table on MDN: https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Global_Objects/Array/sort#browser_compatibility
npm WARN deprecated source-map-url@0.4.1: See https://github.com/lydell/source-map-url#deprecated
npm WARN deprecated urix@0.1.0: Please see https://github.com/lydell/urix#deprecated
npm WARN deprecated resolve-url@0.2.1: https://github.com/lydell/resolve-url#deprecated
npm WARN deprecated source-map-resolve@0.5.3: See https://github.com/lydell/source-map-resolve#deprecated
npm WARN deprecated stylelint-stylistic@0.4.3: This package has been deprecated in favor of @stylistic/stylelint-plugin
npm WARN deprecated core-js@2.6.12: core-js@<3.23.3 is no longer maintained and not recommended for usage due to the number of issues. Because of the V8 engine whims, feature detection in old core-js versions could cause a slowdown up to 100x even if nothing is polyfilled. Some versions have web compatibility issues. Please, upgrade your dependencies to the actual version of core-js.
--- stdout ---

added 1244 packages, and audited 1245 packages in 34s

171 packages are looking for funding
  run `npm fund` for details

6 vulnerabilities (2 high, 4 critical)

To address issues that do not require attention, run:
  npm audit fix

To address all issues (including breaking changes), run:
  npm audit fix --force

Run `npm audit` for details.

--- end ---
$ /usr/bin/npm test
--- stderr ---
PASS tests/jest/api.test.js
PASS tests/jest/locationProvider.test.js
PASS tests/jest/PageList.test.js
PASS tests/jest/App.test.js

Test Suites: 4 passed, 4 total
Tests:       36 passed, 36 total
Snapshots:   0 total
Time:        5.11 s
Ran all test suites.
--- stdout ---

> test
> npm -s run lint && npm run test:unit

Checked 1 message directory.

> test:unit
> jest

---------------------|---------|----------|---------|---------|-------------------
File                 | % Stmts | % Branch | % Funcs | % Lines | Uncovered Line #s 
---------------------|---------|----------|---------|---------|-------------------
All files            |     100 |    98.63 |     100 |     100 |                   
 App.vue             |     100 |     90.9 |     100 |     100 | 105               
 PageList.vue        |     100 |      100 |     100 |     100 |                   
 api.js              |     100 |      100 |     100 |     100 |                   
 locationProvider.js |     100 |      100 |     100 |     100 |                   
 types.js            |       0 |        0 |       0 |       0 |                   
---------------------|---------|----------|---------|---------|-------------------

--- end ---
$ /usr/bin/npm audit --json
--- stdout ---
{
  "auditReportVersion": 2,
  "vulnerabilities": {
    "babel-core": {
      "name": "babel-core",
      "severity": "critical",
      "isDirect": true,
      "via": [
        "babel-helpers",
        "babel-register",
        "babel-template",
        "babel-traverse",
        "json5"
      ],
      "effects": [
        "babel-register"
      ],
      "range": "5.8.20 - 7.0.0-beta.3",
      "nodes": [
        "node_modules/babel-core"
      ],
      "fixAvailable": {
        "name": "babel-core",
        "version": "4.7.16",
        "isSemVerMajor": true
      }
    },
    "babel-helpers": {
      "name": "babel-helpers",
      "severity": "critical",
      "isDirect": false,
      "via": [
        "babel-template"
      ],
      "effects": [],
      "range": "*",
      "nodes": [
        "node_modules/babel-helpers"
      ],
      "fixAvailable": true
    },
    "babel-register": {
      "name": "babel-register",
      "severity": "high",
      "isDirect": false,
      "via": [
        "babel-core"
      ],
      "effects": [
        "babel-core"
      ],
      "range": "*",
      "nodes": [
        "node_modules/babel-register"
      ],
      "fixAvailable": {
        "name": "babel-core",
        "version": "4.7.16",
        "isSemVerMajor": true
      }
    },
    "babel-template": {
      "name": "babel-template",
      "severity": "critical",
      "isDirect": false,
      "via": [
        "babel-traverse"
      ],
      "effects": [
        "babel-helpers"
      ],
      "range": "*",
      "nodes": [
        "node_modules/babel-template"
      ],
      "fixAvailable": true
    },
    "babel-traverse": {
      "name": "babel-traverse",
      "severity": "critical",
      "isDirect": false,
      "via": [
        {
          "source": 1096879,
          "name": "babel-traverse",
          "dependency": "babel-traverse",
          "title": "Babel vulnerable to arbitrary code execution when compiling specifically crafted malicious code",
          "url": "https://github.com/advisories/GHSA-67hx-6x53-jw92",
          "severity": "critical",
          "cwe": [
            "CWE-184",
            "CWE-697"
          ],
          "cvss": {
            "score": 9.4,
            "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"
          },
          "range": "<7.23.2"
        }
      ],
      "effects": [
        "babel-core",
        "babel-template"
      ],
      "range": "*",
      "nodes": [
        "node_modules/babel-traverse"
      ],
      "fixAvailable": {
        "name": "babel-core",
        "version": "4.7.16",
        "isSemVerMajor": true
      }
    },
    "json5": {
      "name": "json5",
      "severity": "high",
      "isDirect": false,
      "via": [
        {
          "source": 1096543,
          "name": "json5",
          "dependency": "json5",
          "title": "Prototype Pollution in JSON5 via Parse Method",
          "url": "https://github.com/advisories/GHSA-9c47-m6qq-7p4h",
          "severity": "high",
          "cwe": [
            "CWE-1321"
          ],
          "cvss": {
            "score": 7.1,
            "vectorString": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:H"
          },
          "range": "<1.0.2"
        }
      ],
      "effects": [
        "babel-core"
      ],
      "range": "<1.0.2",
      "nodes": [
        "node_modules/babel-core/node_modules/json5"
      ],
      "fixAvailable": {
        "name": "babel-core",
        "version": "4.7.16",
        "isSemVerMajor": true
      }
    }
  },
  "metadata": {
    "vulnerabilities": {
      "info": 0,
      "low": 0,
      "moderate": 0,
      "high": 2,
      "critical": 4,
      "total": 6
    },
    "dependencies": {
      "prod": 1,
      "dev": 1250,
      "optional": 53,
      "peer": 32,
      "peerOptional": 0,
      "total": 1250
    }
  }
}

--- end ---
Attempting to npm audit fix
$ /usr/bin/npm audit fix --dry-run --only=dev --json
--- stderr ---
npm WARN invalid config only="dev" set in command line options
npm WARN invalid config Must be one of: null, prod, production
npm WARN ERESOLVE overriding peer dependency
npm WARN While resolving: htmlnano@2.0.4
npm WARN Found: svgo@2.8.0
npm WARN node_modules/@parcel/optimizer-htmlnano/node_modules/svgo
npm WARN   svgo@"^2.4.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN   node_modules/@parcel/optimizer-htmlnano
npm WARN     @parcel/optimizer-htmlnano@"2.3.2" from @parcel/config-default@2.3.2
npm WARN     node_modules/@parcel/config-default
npm WARN 
npm WARN Could not resolve dependency:
npm WARN peerOptional svgo@"^3.0.2" from htmlnano@2.0.4
npm WARN node_modules/@parcel/optimizer-htmlnano/node_modules/htmlnano
npm WARN   htmlnano@"^2.0.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN   node_modules/@parcel/optimizer-htmlnano
npm WARN 
npm WARN Conflicting peer dependency: svgo@3.2.0
npm WARN node_modules/svgo
npm WARN   peerOptional svgo@"^3.0.2" from htmlnano@2.0.4
npm WARN   node_modules/@parcel/optimizer-htmlnano/node_modules/htmlnano
npm WARN     htmlnano@"^2.0.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN     node_modules/@parcel/optimizer-htmlnano
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: undefined,
npm WARN EBADENGINE   required: { node: '12.21.0' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: '@es-joy/jsdoccomment@0.23.6',
npm WARN EBADENGINE   required: { node: '^12 || ^14 || ^16 || ^17' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: 'eslint-plugin-jsdoc@39.2.2',
npm WARN EBADENGINE   required: { node: '^14 || ^16 || ^17' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
--- stdout ---
{
  "added": 6,
  "removed": 0,
  "changed": 0,
  "audited": 1251,
  "funding": 171,
  "audit": {
    "auditReportVersion": 2,
    "vulnerabilities": {
      "babel-core": {
        "name": "babel-core",
        "severity": "critical",
        "isDirect": true,
        "via": [
          "babel-helpers",
          "babel-register",
          "babel-template",
          "babel-traverse",
          "json5"
        ],
        "effects": [
          "babel-register"
        ],
        "range": "5.8.20 - 7.0.0-beta.3",
        "nodes": [
          "node_modules/babel-core"
        ],
        "fixAvailable": {
          "name": "babel-core",
          "version": "4.7.16",
          "isSemVerMajor": true
        }
      },
      "babel-helpers": {
        "name": "babel-helpers",
        "severity": "critical",
        "isDirect": false,
        "via": [
          "babel-template"
        ],
        "effects": [],
        "range": "*",
        "nodes": [
          "node_modules/babel-helpers"
        ],
        "fixAvailable": true
      },
      "babel-register": {
        "name": "babel-register",
        "severity": "high",
        "isDirect": false,
        "via": [
          "babel-core"
        ],
        "effects": [
          "babel-core"
        ],
        "range": "*",
        "nodes": [
          "node_modules/babel-register"
        ],
        "fixAvailable": {
          "name": "babel-core",
          "version": "4.7.16",
          "isSemVerMajor": true
        }
      },
      "babel-template": {
        "name": "babel-template",
        "severity": "critical",
        "isDirect": false,
        "via": [
          "babel-traverse"
        ],
        "effects": [
          "babel-helpers"
        ],
        "range": "*",
        "nodes": [
          "node_modules/babel-template"
        ],
        "fixAvailable": true
      },
      "babel-traverse": {
        "name": "babel-traverse",
        "severity": "critical",
        "isDirect": false,
        "via": [
          {
            "source": 1096879,
            "name": "babel-traverse",
            "dependency": "babel-traverse",
            "title": "Babel vulnerable to arbitrary code execution when compiling specifically crafted malicious code",
            "url": "https://github.com/advisories/GHSA-67hx-6x53-jw92",
            "severity": "critical",
            "cwe": [
              "CWE-184",
              "CWE-697"
            ],
            "cvss": {
              "score": 9.4,
              "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"
            },
            "range": "<7.23.2"
          }
        ],
        "effects": [
          "babel-core",
          "babel-template"
        ],
        "range": "*",
        "nodes": [
          "node_modules/babel-traverse"
        ],
        "fixAvailable": {
          "name": "babel-core",
          "version": "4.7.16",
          "isSemVerMajor": true
        }
      },
      "json5": {
        "name": "json5",
        "severity": "high",
        "isDirect": false,
        "via": [
          {
            "source": 1096543,
            "name": "json5",
            "dependency": "json5",
            "title": "Prototype Pollution in JSON5 via Parse Method",
            "url": "https://github.com/advisories/GHSA-9c47-m6qq-7p4h",
            "severity": "high",
            "cwe": [
              "CWE-1321"
            ],
            "cvss": {
              "score": 7.1,
              "vectorString": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:H"
            },
            "range": "<1.0.2"
          }
        ],
        "effects": [
          "babel-core"
        ],
        "range": "<1.0.2",
        "nodes": [
          "node_modules/babel-core/node_modules/json5"
        ],
        "fixAvailable": {
          "name": "babel-core",
          "version": "4.7.16",
          "isSemVerMajor": true
        }
      }
    },
    "metadata": {
      "vulnerabilities": {
        "info": 0,
        "low": 0,
        "moderate": 0,
        "high": 2,
        "critical": 4,
        "total": 6
      },
      "dependencies": {
        "prod": 1,
        "dev": 1250,
        "optional": 53,
        "peer": 32,
        "peerOptional": 0,
        "total": 1250
      }
    }
  }
}

--- end ---
{"added": 6, "removed": 0, "changed": 0, "audited": 1251, "funding": 171, "audit": {"auditReportVersion": 2, "vulnerabilities": {"babel-core": {"name": "babel-core", "severity": "critical", "isDirect": true, "via": ["babel-helpers", "babel-register", "babel-template", "babel-traverse", "json5"], "effects": ["babel-register"], "range": "5.8.20 - 7.0.0-beta.3", "nodes": ["node_modules/babel-core"], "fixAvailable": {"name": "babel-core", "version": "4.7.16", "isSemVerMajor": true}}, "babel-helpers": {"name": "babel-helpers", "severity": "critical", "isDirect": false, "via": ["babel-template"], "effects": [], "range": "*", "nodes": ["node_modules/babel-helpers"], "fixAvailable": true}, "babel-register": {"name": "babel-register", "severity": "high", "isDirect": false, "via": ["babel-core"], "effects": ["babel-core"], "range": "*", "nodes": ["node_modules/babel-register"], "fixAvailable": {"name": "babel-core", "version": "4.7.16", "isSemVerMajor": true}}, "babel-template": {"name": "babel-template", "severity": "critical", "isDirect": false, "via": ["babel-traverse"], "effects": ["babel-helpers"], "range": "*", "nodes": ["node_modules/babel-template"], "fixAvailable": true}, "babel-traverse": {"name": "babel-traverse", "severity": "critical", "isDirect": false, "via": [{"source": 1096879, "name": "babel-traverse", "dependency": "babel-traverse", "title": "Babel vulnerable to arbitrary code execution when compiling specifically crafted malicious code", "url": "https://github.com/advisories/GHSA-67hx-6x53-jw92", "severity": "critical", "cwe": ["CWE-184", "CWE-697"], "cvss": {"score": 9.4, "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"}, "range": "<7.23.2"}], "effects": ["babel-core", "babel-template"], "range": "*", "nodes": ["node_modules/babel-traverse"], "fixAvailable": {"name": "babel-core", "version": "4.7.16", "isSemVerMajor": true}}, "json5": {"name": "json5", "severity": "high", "isDirect": false, "via": [{"source": 1096543, "name": "json5", "dependency": "json5", "title": "Prototype Pollution in JSON5 via Parse Method", "url": "https://github.com/advisories/GHSA-9c47-m6qq-7p4h", "severity": "high", "cwe": ["CWE-1321"], "cvss": {"score": 7.1, "vectorString": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:H"}, "range": "<1.0.2"}], "effects": ["babel-core"], "range": "<1.0.2", "nodes": ["node_modules/babel-core/node_modules/json5"], "fixAvailable": {"name": "babel-core", "version": "4.7.16", "isSemVerMajor": true}}}, "metadata": {"vulnerabilities": {"info": 0, "low": 0, "moderate": 0, "high": 2, "critical": 4, "total": 6}, "dependencies": {"prod": 1, "dev": 1250, "optional": 53, "peer": 32, "peerOptional": 0, "total": 1250}}}}
$ /usr/bin/npm audit fix --only=dev
--- stderr ---
npm WARN invalid config only="dev" set in command line options
npm WARN invalid config Must be one of: null, prod, production
npm WARN ERESOLVE overriding peer dependency
npm WARN While resolving: htmlnano@2.0.4
npm WARN Found: svgo@2.8.0
npm WARN node_modules/@parcel/optimizer-htmlnano/node_modules/svgo
npm WARN   svgo@"^2.4.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN   node_modules/@parcel/optimizer-htmlnano
npm WARN     @parcel/optimizer-htmlnano@"2.3.2" from @parcel/config-default@2.3.2
npm WARN     node_modules/@parcel/config-default
npm WARN 
npm WARN Could not resolve dependency:
npm WARN peerOptional svgo@"^3.0.2" from htmlnano@2.0.4
npm WARN node_modules/@parcel/optimizer-htmlnano/node_modules/htmlnano
npm WARN   htmlnano@"^2.0.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN   node_modules/@parcel/optimizer-htmlnano
npm WARN 
npm WARN Conflicting peer dependency: svgo@3.2.0
npm WARN node_modules/svgo
npm WARN   peerOptional svgo@"^3.0.2" from htmlnano@2.0.4
npm WARN   node_modules/@parcel/optimizer-htmlnano/node_modules/htmlnano
npm WARN     htmlnano@"^2.0.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN     node_modules/@parcel/optimizer-htmlnano
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: undefined,
npm WARN EBADENGINE   required: { node: '12.21.0' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: '@es-joy/jsdoccomment@0.23.6',
npm WARN EBADENGINE   required: { node: '^12 || ^14 || ^16 || ^17' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: 'eslint-plugin-jsdoc@39.2.2',
npm WARN EBADENGINE   required: { node: '^14 || ^16 || ^17' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
--- stdout ---

up to date, audited 1245 packages in 3s

171 packages are looking for funding
  run `npm fund` for details

# npm audit report

babel-traverse  *
Severity: critical
Babel vulnerable to arbitrary code execution when compiling specifically crafted malicious code - https://github.com/advisories/GHSA-67hx-6x53-jw92
fix available via `npm audit fix --force`
Will install babel-core@4.7.16, which is a breaking change
node_modules/babel-traverse
  babel-core  5.8.20 - 7.0.0-beta.3
  Depends on vulnerable versions of babel-helpers
  Depends on vulnerable versions of babel-register
  Depends on vulnerable versions of babel-template
  Depends on vulnerable versions of babel-traverse
  Depends on vulnerable versions of json5
  node_modules/babel-core
    babel-register  *
    Depends on vulnerable versions of babel-core
    node_modules/babel-register
  babel-template  *
  Depends on vulnerable versions of babel-traverse
  node_modules/babel-template
    babel-helpers  *
    Depends on vulnerable versions of babel-template
    node_modules/babel-helpers

json5  <1.0.2
Severity: high
Prototype Pollution in JSON5 via Parse Method - https://github.com/advisories/GHSA-9c47-m6qq-7p4h
fix available via `npm audit fix --force`
Will install babel-core@4.7.16, which is a breaking change
node_modules/babel-core/node_modules/json5

6 vulnerabilities (2 high, 4 critical)

To address issues that do not require attention, run:
  npm audit fix

To address all issues (including breaking changes), run:
  npm audit fix --force

--- end ---
$ package-lock-lint package-lock.json
--- stdout ---
Checking package-lock.json

--- end ---
Verifying that tests still pass
$ /usr/bin/npm ci
--- stderr ---
npm WARN ERESOLVE overriding peer dependency
npm WARN While resolving: htmlnano@2.0.4
npm WARN Found: svgo@2.8.0
npm WARN node_modules/@parcel/optimizer-htmlnano/node_modules/svgo
npm WARN   svgo@"^2.4.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN   node_modules/@parcel/optimizer-htmlnano
npm WARN     @parcel/optimizer-htmlnano@"2.3.2" from @parcel/config-default@2.3.2
npm WARN     node_modules/@parcel/config-default
npm WARN 
npm WARN Could not resolve dependency:
npm WARN peerOptional svgo@"^3.0.2" from htmlnano@2.0.4
npm WARN node_modules/@parcel/optimizer-htmlnano/node_modules/htmlnano
npm WARN   htmlnano@"^2.0.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN   node_modules/@parcel/optimizer-htmlnano
npm WARN 
npm WARN Conflicting peer dependency: svgo@3.2.0
npm WARN node_modules/svgo
npm WARN   peerOptional svgo@"^3.0.2" from htmlnano@2.0.4
npm WARN   node_modules/@parcel/optimizer-htmlnano/node_modules/htmlnano
npm WARN     htmlnano@"^2.0.0" from @parcel/optimizer-htmlnano@2.3.2
npm WARN     node_modules/@parcel/optimizer-htmlnano
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: undefined,
npm WARN EBADENGINE   required: { node: '12.21.0' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: '@es-joy/jsdoccomment@0.23.6',
npm WARN EBADENGINE   required: { node: '^12 || ^14 || ^16 || ^17' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
npm WARN EBADENGINE Unsupported engine {
npm WARN EBADENGINE   package: 'eslint-plugin-jsdoc@39.2.2',
npm WARN EBADENGINE   required: { node: '^14 || ^16 || ^17' },
npm WARN EBADENGINE   current: { node: 'v18.19.0', npm: '9.2.0' }
npm WARN EBADENGINE }
npm WARN deprecated stable@0.1.8: Modern JS already guarantees Array#sort() is a stable sort, so this library is deprecated. See the compatibility table on MDN: https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Global_Objects/Array/sort#browser_compatibility
npm WARN deprecated source-map-url@0.4.1: See https://github.com/lydell/source-map-url#deprecated
npm WARN deprecated urix@0.1.0: Please see https://github.com/lydell/urix#deprecated
npm WARN deprecated resolve-url@0.2.1: https://github.com/lydell/resolve-url#deprecated
npm WARN deprecated source-map-resolve@0.5.3: See https://github.com/lydell/source-map-resolve#deprecated
npm WARN deprecated stylelint-stylistic@0.4.3: This package has been deprecated in favor of @stylistic/stylelint-plugin
npm WARN deprecated core-js@2.6.12: core-js@<3.23.3 is no longer maintained and not recommended for usage due to the number of issues. Because of the V8 engine whims, feature detection in old core-js versions could cause a slowdown up to 100x even if nothing is polyfilled. Some versions have web compatibility issues. Please, upgrade your dependencies to the actual version of core-js.
--- stdout ---

added 1244 packages, and audited 1245 packages in 39s

171 packages are looking for funding
  run `npm fund` for details

6 vulnerabilities (2 high, 4 critical)

To address issues that do not require attention, run:
  npm audit fix

To address all issues (including breaking changes), run:
  npm audit fix --force

Run `npm audit` for details.

--- end ---
$ /usr/bin/npm test
--- stderr ---
PASS tests/jest/api.test.js
PASS tests/jest/locationProvider.test.js
PASS tests/jest/PageList.test.js
PASS tests/jest/App.test.js

Test Suites: 4 passed, 4 total
Tests:       36 passed, 36 total
Snapshots:   0 total
Time:        4.434 s
Ran all test suites.
--- stdout ---

> test
> npm -s run lint && npm run test:unit

Checked 1 message directory.

> test:unit
> jest

---------------------|---------|----------|---------|---------|-------------------
File                 | % Stmts | % Branch | % Funcs | % Lines | Uncovered Line #s 
---------------------|---------|----------|---------|---------|-------------------
All files            |     100 |    98.63 |     100 |     100 |                   
 App.vue             |     100 |     90.9 |     100 |     100 | 105               
 PageList.vue        |     100 |      100 |     100 |     100 |                   
 api.js              |     100 |      100 |     100 |     100 |                   
 locationProvider.js |     100 |      100 |     100 |     100 |                   
 types.js            |       0 |        0 |       0 |       0 |                   
---------------------|---------|----------|---------|---------|-------------------

--- end ---
{}
{}
$ package-lock-lint package-lock.json
--- stdout ---
Checking package-lock.json

--- end ---
build: Updating @wikimedia/codex to 1.3.6

$ git add .
--- stdout ---

--- end ---
$ git commit -F /tmp/tmpjn1fdvas
--- stderr ---
Checked 1 message directory.
PASS tests/jest/api.test.js
PASS tests/jest/locationProvider.test.js
PASS tests/jest/PageList.test.js
PASS tests/jest/App.test.js
---------------------|---------|----------|---------|---------|-------------------
File                 | % Stmts | % Branch | % Funcs | % Lines | Uncovered Line #s 
---------------------|---------|----------|---------|---------|-------------------
All files            |     100 |    98.63 |     100 |     100 |                   
 App.vue             |     100 |     90.9 |     100 |     100 | 105               
 PageList.vue        |     100 |      100 |     100 |     100 |                   
 api.js              |     100 |      100 |     100 |     100 |                   
 locationProvider.js |     100 |      100 |     100 |     100 |                   
 types.js            |       0 |        0 |       0 |       0 |                   
---------------------|---------|----------|---------|---------|-------------------

Test Suites: 4 passed, 4 total
Tests:       36 passed, 36 total
Snapshots:   0 total
Time:        4.787 s
Ran all test suites.
--- stdout ---
[master 1310b3c] build: Updating @wikimedia/codex to 1.3.6
 2 files changed, 28 insertions(+), 26 deletions(-)

--- end ---
$ git format-patch HEAD~1 --stdout
--- stdout ---
From 1310b3c399e688568f74905848cb4a0091ab5fef Mon Sep 17 00:00:00 2001
From: libraryupgrader <tools.libraryupgrader@tools.wmflabs.org>
Date: Fri, 12 Apr 2024 09:58:39 +0000
Subject: [PATCH] build: Updating @wikimedia/codex to 1.3.6

Change-Id: I5b7ebf8b95bcf7f5d9d7abb381becfb20df6392a
---
 package-lock.json | 52 ++++++++++++++++++++++++-----------------------
 package.json      |  2 +-
 2 files changed, 28 insertions(+), 26 deletions(-)

diff --git a/package-lock.json b/package-lock.json
index ccfc0d4..64b0f4b 100644
--- a/package-lock.json
+++ b/package-lock.json
@@ -11,7 +11,7 @@
 				"@parcel/transformer-vue": "2.3.2",
 				"@vue/test-utils": "2.0.0-rc.17",
 				"@vue/vue3-jest": "27.0.0-alpha.4",
-				"@wikimedia/codex": "1.3.5",
+				"@wikimedia/codex": "1.3.6",
 				"babel-core": "6.26.3",
 				"eslint-config-wikimedia": "0.25.0",
 				"grunt-banana-checker": "0.11.1",
@@ -1877,12 +1877,13 @@
 			"dev": true
 		},
 		"node_modules/@floating-ui/vue": {
-			"version": "1.0.2",
-			"resolved": "https://registry.npmjs.org/@floating-ui/vue/-/vue-1.0.2.tgz",
-			"integrity": "sha512-sImlAl9mAoCKZLNlwWz2P2ZMJIDlOEDXrRD6aD2sIHAka1LPC+nWtB+D3lPe7IE7FGWSbwBPTnlSdlABa3Fr0A==",
+			"version": "1.0.6",
+			"resolved": "https://registry.npmjs.org/@floating-ui/vue/-/vue-1.0.6.tgz",
+			"integrity": "sha512-EdrOljjkpkkqZnrpqUcPoz9NvHxuTjUtSInh6GMv3+Mcy+giY2cE2pHh9rpacRcZ2eMSCxel9jWkWXTjLmY55w==",
 			"dev": true,
 			"dependencies": {
-				"@floating-ui/dom": "^1.4.5",
+				"@floating-ui/dom": "^1.6.1",
+				"@floating-ui/utils": "^0.2.1",
 				"vue-demi": ">=0.13.0"
 			}
 		},
@@ -5446,13 +5447,13 @@
 			}
 		},
 		"node_modules/@wikimedia/codex": {
-			"version": "1.3.5",
-			"resolved": "https://registry.npmjs.org/@wikimedia/codex/-/codex-1.3.5.tgz",
-			"integrity": "sha512-CZ0tNaNujc9+7Eu4l8LgSeW8bwyKAbTuk65G/bS7rXGObXuYgG8kawP058wTj5dxPz7DIEtuVCf+q2ZNlEfDVg==",
+			"version": "1.3.6",
+			"resolved": "https://registry.npmjs.org/@wikimedia/codex/-/codex-1.3.6.tgz",
+			"integrity": "sha512-5CUPL4kwODCZ+R+KOHz4mKRt50q/NVMyrqYjmqqct2Ul3UgNH5rITkhBkOoUTgXuNMCbAsRWeXVDozA3VzXnSQ==",
 			"dev": true,
 			"dependencies": {
-				"@floating-ui/vue": "1.0.2",
-				"@wikimedia/codex-icons": "1.3.5"
+				"@floating-ui/vue": "1.0.6",
+				"@wikimedia/codex-icons": "1.3.6"
 			},
 			"engines": {
 				"node": ">=18",
@@ -5463,9 +5464,9 @@
 			}
 		},
 		"node_modules/@wikimedia/codex-icons": {
-			"version": "1.3.5",
-			"resolved": "https://registry.npmjs.org/@wikimedia/codex-icons/-/codex-icons-1.3.5.tgz",
-			"integrity": "sha512-JD/lMc3p0HEIWGDW6Fja4ETnw8HO8/AAwFpVDsGYjWKlDmWaWztiZr+rxIlodSa6p+P6VD7ND3FdBusmImENTA==",
+			"version": "1.3.6",
+			"resolved": "https://registry.npmjs.org/@wikimedia/codex-icons/-/codex-icons-1.3.6.tgz",
+			"integrity": "sha512-q3TXjAvcgli1K5DCLp2MxcqYx9LpqKnaYLM4rH50kZH9Nj+ktnhVyjE5ApVzyXGsToITYYklPhIuCafFykk0wA==",
 			"dev": true,
 			"engines": {
 				"node": ">=18",
@@ -17086,12 +17087,13 @@
 			"dev": true
 		},
 		"@floating-ui/vue": {
-			"version": "1.0.2",
-			"resolved": "https://registry.npmjs.org/@floating-ui/vue/-/vue-1.0.2.tgz",
-			"integrity": "sha512-sImlAl9mAoCKZLNlwWz2P2ZMJIDlOEDXrRD6aD2sIHAka1LPC+nWtB+D3lPe7IE7FGWSbwBPTnlSdlABa3Fr0A==",
+			"version": "1.0.6",
+			"resolved": "https://registry.npmjs.org/@floating-ui/vue/-/vue-1.0.6.tgz",
+			"integrity": "sha512-EdrOljjkpkkqZnrpqUcPoz9NvHxuTjUtSInh6GMv3+Mcy+giY2cE2pHh9rpacRcZ2eMSCxel9jWkWXTjLmY55w==",
 			"dev": true,
 			"requires": {
-				"@floating-ui/dom": "^1.4.5",
+				"@floating-ui/dom": "^1.6.1",
+				"@floating-ui/utils": "^0.2.1",
 				"vue-demi": ">=0.13.0"
 			},
 			"dependencies": {
@@ -19618,19 +19620,19 @@
 			}
 		},
 		"@wikimedia/codex": {
-			"version": "1.3.5",
-			"resolved": "https://registry.npmjs.org/@wikimedia/codex/-/codex-1.3.5.tgz",
-			"integrity": "sha512-CZ0tNaNujc9+7Eu4l8LgSeW8bwyKAbTuk65G/bS7rXGObXuYgG8kawP058wTj5dxPz7DIEtuVCf+q2ZNlEfDVg==",
+			"version": "1.3.6",
+			"resolved": "https://registry.npmjs.org/@wikimedia/codex/-/codex-1.3.6.tgz",
+			"integrity": "sha512-5CUPL4kwODCZ+R+KOHz4mKRt50q/NVMyrqYjmqqct2Ul3UgNH5rITkhBkOoUTgXuNMCbAsRWeXVDozA3VzXnSQ==",
 			"dev": true,
 			"requires": {
-				"@floating-ui/vue": "1.0.2",
-				"@wikimedia/codex-icons": "1.3.5"
+				"@floating-ui/vue": "1.0.6",
+				"@wikimedia/codex-icons": "1.3.6"
 			}
 		},
 		"@wikimedia/codex-icons": {
-			"version": "1.3.5",
-			"resolved": "https://registry.npmjs.org/@wikimedia/codex-icons/-/codex-icons-1.3.5.tgz",
-			"integrity": "sha512-JD/lMc3p0HEIWGDW6Fja4ETnw8HO8/AAwFpVDsGYjWKlDmWaWztiZr+rxIlodSa6p+P6VD7ND3FdBusmImENTA==",
+			"version": "1.3.6",
+			"resolved": "https://registry.npmjs.org/@wikimedia/codex-icons/-/codex-icons-1.3.6.tgz",
+			"integrity": "sha512-q3TXjAvcgli1K5DCLp2MxcqYx9LpqKnaYLM4rH50kZH9Nj+ktnhVyjE5ApVzyXGsToITYYklPhIuCafFykk0wA==",
 			"dev": true
 		},
 		"abab": {
diff --git a/package.json b/package.json
index 1f4aea9..260c2aa 100644
--- a/package.json
+++ b/package.json
@@ -28,7 +28,7 @@
 		"@parcel/transformer-vue": "2.3.2",
 		"@vue/test-utils": "2.0.0-rc.17",
 		"@vue/vue3-jest": "27.0.0-alpha.4",
-		"@wikimedia/codex": "1.3.5",
+		"@wikimedia/codex": "1.3.6",
 		"babel-core": "6.26.3",
 		"eslint-config-wikimedia": "0.25.0",
 		"grunt-banana-checker": "0.11.1",
-- 
2.39.2


--- end ---
Source code is licensed under the AGPL.