mediawiki/extensions/SemanticGenealogy (main)

sourcepatches
$ date
--- stdout ---
Mon Mar 31 05:49:10 UTC 2025

--- end ---
$ git clone file:///srv/git/mediawiki-extensions-SemanticGenealogy.git repo --depth=1 -b master
--- stderr ---
Cloning into 'repo'...
--- stdout ---

--- end ---
$ git config user.name libraryupgrader
--- stdout ---

--- end ---
$ git config user.email tools.libraryupgrader@tools.wmflabs.org
--- stdout ---

--- end ---
$ git submodule update --init
--- stdout ---

--- end ---
$ grr init
--- stdout ---
Installed commit-msg hook.

--- end ---
$ git show-ref refs/heads/master
--- stdout ---
9cc449e4cb2cbb8588284ab25a204f935f9e447a refs/heads/master

--- end ---
$ /usr/bin/npm audit --json
--- stdout ---
{
  "auditReportVersion": 2,
  "vulnerabilities": {
    "cross-spawn": {
      "name": "cross-spawn",
      "severity": "high",
      "isDirect": false,
      "via": [
        {
          "source": 1100562,
          "name": "cross-spawn",
          "dependency": "cross-spawn",
          "title": "Regular Expression Denial of Service (ReDoS) in cross-spawn",
          "url": "https://github.com/advisories/GHSA-3xgq-45jj-v275",
          "severity": "high",
          "cwe": [
            "CWE-1333"
          ],
          "cvss": {
            "score": 7.5,
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
          },
          "range": "<6.0.6"
        }
      ],
      "effects": [
        "grunt-contrib-sass"
      ],
      "range": "<6.0.6",
      "nodes": [
        "node_modules/cross-spawn"
      ],
      "fixAvailable": {
        "name": "grunt-contrib-sass",
        "version": "2.0.0",
        "isSemVerMajor": true
      }
    },
    "grunt-contrib-sass": {
      "name": "grunt-contrib-sass",
      "severity": "high",
      "isDirect": true,
      "via": [
        "cross-spawn"
      ],
      "effects": [],
      "range": "0.9.0 - 1.0.0",
      "nodes": [
        "node_modules/grunt-contrib-sass"
      ],
      "fixAvailable": {
        "name": "grunt-contrib-sass",
        "version": "2.0.0",
        "isSemVerMajor": true
      }
    }
  },
  "metadata": {
    "vulnerabilities": {
      "info": 0,
      "low": 0,
      "moderate": 0,
      "high": 2,
      "critical": 0,
      "total": 2
    },
    "dependencies": {
      "prod": 1,
      "dev": 379,
      "optional": 0,
      "peer": 1,
      "peerOptional": 0,
      "total": 379
    }
  }
}

--- end ---
$ /usr/bin/composer install
--- stderr ---
No composer.lock file present. Updating dependencies to latest instead of installing from lock file. See https://getcomposer.org/install for more information.
Loading composer repositories with package information
Updating dependencies
Lock file operations: 43 installs, 0 updates, 0 removals
  - Locking composer/installers (dev-main 5b39088)
  - Locking composer/semver (3.4.3)
  - Locking composer/spdx-licenses (1.5.8)
  - Locking data-values/common (1.2.0)
  - Locking data-values/data-values (dev-master 0b6cdf1)
  - Locking data-values/interfaces (1.2.0)
  - Locking data-values/validators (1.0.0)
  - Locking dealerdirect/phpcodesniffer-composer-installer (v1.0.0)
  - Locking jeroen/file-fetcher (6.1.1)
  - Locking justinrainbow/json-schema (5.x-dev feb2ca6)
  - Locking mediawiki/http-request (dev-master 6293bdf)
  - Locking mediawiki/mediawiki-codesniffer (v46.0.0)
  - Locking mediawiki/minus-x (1.1.3)
  - Locking mediawiki/parser-hooks (dev-master 35e4513)
  - Locking mediawiki/semantic-media-wiki (dev-master 470bc48)
  - Locking onoi/blob-store (dev-master 7753172)
  - Locking onoi/cache (dev-master 9a8e3ea)
  - Locking onoi/callback-container (dev-master 70d2266)
  - Locking onoi/event-dispatcher (dev-master 2af64e3)
  - Locking onoi/message-reporter (dev-master 5381702)
  - Locking param-processor/param-processor (dev-master 0850dc2)
  - Locking php-parallel-lint/php-console-color (v1.0.1)
  - Locking php-parallel-lint/php-console-highlighter (v1.0.0)
  - Locking php-parallel-lint/php-parallel-lint (v1.4.0)
  - Locking phpcsstandards/phpcsextra (1.2.1)
  - Locking phpcsstandards/phpcsutils (dev-develop d4f086b)
  - Locking psr/container (dev-master 7079847)
  - Locking psr/log (1.1.4)
  - Locking seld/jsonlint (1.11.0)
  - Locking serialization/serialization (4.1.0)
  - Locking squizlabs/php_codesniffer (3.11.3)
  - Locking symfony/console (7.3.x-dev 163ef97)
  - Locking symfony/css-selector (5.4.x-dev 4f7f3c3)
  - Locking symfony/deprecation-contracts (dev-main 63afe74)
  - Locking symfony/polyfill-ctype (1.x-dev a3cc8b0)
  - Locking symfony/polyfill-intl-grapheme (1.x-dev b912392)
  - Locking symfony/polyfill-intl-normalizer (1.x-dev 3833d72)
  - Locking symfony/polyfill-mbstring (1.x-dev 6d857f4)
  - Locking symfony/polyfill-php80 (1.x-dev 0cc9dd0)
  - Locking symfony/service-contracts (dev-main 5ad3869)
  - Locking symfony/string (7.3.x-dev 3093e03)
  - Locking wikimedia/cdb (3.0.0)
  - Locking wikimedia/textcat (2.0.0)
Writing lock file
Installing dependencies from lock file (including require-dev)
Package operations: 43 installs, 0 updates, 0 removals
  - Downloading composer/installers (dev-main 5b39088)
  - Downloading serialization/serialization (4.1.0)
  - Downloading data-values/interfaces (1.2.0)
  - Downloading data-values/data-values (dev-master 0b6cdf1)
  - Downloading data-values/validators (1.0.0)
  - Downloading data-values/common (1.2.0)
  - Downloading param-processor/param-processor (dev-master 0850dc2)
  - Downloading onoi/message-reporter (dev-master 5381702)
  - Downloading onoi/event-dispatcher (dev-master 2af64e3)
  - Downloading onoi/callback-container (dev-master 70d2266)
  - Downloading onoi/cache (dev-master 9a8e3ea)
  - Downloading onoi/blob-store (dev-master 7753172)
  - Downloading mediawiki/parser-hooks (dev-master 35e4513)
  - Downloading mediawiki/http-request (dev-master 6293bdf)
  - Downloading jeroen/file-fetcher (6.1.1)
  - Downloading mediawiki/semantic-media-wiki (dev-master 470bc48)
  0/16 [>---------------------------]   0%
  2/16 [===>------------------------]  12%
 12/16 [=====================>------]  75%
 14/16 [========================>---]  87%
 15/16 [==========================>-]  93%
 16/16 [============================] 100%
  - Installing composer/installers (dev-main 5b39088): Extracting archive
  - Installing squizlabs/php_codesniffer (3.11.3): Extracting archive
  - Installing dealerdirect/phpcodesniffer-composer-installer (v1.0.0): Extracting archive
  - Installing symfony/polyfill-php80 (1.x-dev 0cc9dd0): Extracting archive
  - Installing phpcsstandards/phpcsutils (dev-develop d4f086b): Extracting archive
  - Installing phpcsstandards/phpcsextra (1.2.1): Extracting archive
  - Installing symfony/polyfill-mbstring (1.x-dev 6d857f4): Extracting archive
  - Installing composer/spdx-licenses (1.5.8): Extracting archive
  - Installing composer/semver (3.4.3): Extracting archive
  - Installing mediawiki/mediawiki-codesniffer (v46.0.0): Extracting archive
  - Installing symfony/polyfill-intl-normalizer (1.x-dev 3833d72): Extracting archive
  - Installing symfony/polyfill-intl-grapheme (1.x-dev b912392): Extracting archive
  - Installing symfony/polyfill-ctype (1.x-dev a3cc8b0): Extracting archive
  - Installing symfony/string (7.3.x-dev 3093e03): Extracting archive
  - Installing symfony/deprecation-contracts (dev-main 63afe74): Extracting archive
  - Installing psr/container (dev-master 7079847): Extracting archive
  - Installing symfony/service-contracts (dev-main 5ad3869): Extracting archive
  - Installing symfony/console (7.3.x-dev 163ef97): Extracting archive
  - Installing mediawiki/minus-x (1.1.3): Extracting archive
  - Installing wikimedia/textcat (2.0.0): Extracting archive
  - Installing wikimedia/cdb (3.0.0): Extracting archive
  - Installing symfony/css-selector (5.4.x-dev 4f7f3c3): Extracting archive
  - Installing serialization/serialization (4.1.0): Extracting archive
  - Installing seld/jsonlint (1.11.0): Extracting archive
  - Installing psr/log (1.1.4): Extracting archive
  - Installing data-values/interfaces (1.2.0): Extracting archive
  - Installing data-values/data-values (dev-master 0b6cdf1): Extracting archive
  - Installing data-values/validators (1.0.0): Extracting archive
  - Installing data-values/common (1.2.0): Extracting archive
  - Installing param-processor/param-processor (dev-master 0850dc2): Extracting archive
  - Installing onoi/message-reporter (dev-master 5381702): Extracting archive
  - Installing onoi/event-dispatcher (dev-master 2af64e3): Extracting archive
  - Installing onoi/callback-container (dev-master 70d2266): Extracting archive
  - Installing onoi/cache (dev-master 9a8e3ea): Extracting archive
  - Installing onoi/blob-store (dev-master 7753172): Extracting archive
  - Installing mediawiki/parser-hooks (dev-master 35e4513): Extracting archive
  - Installing mediawiki/http-request (dev-master 6293bdf): Extracting archive
  - Installing justinrainbow/json-schema (5.x-dev feb2ca6): Extracting archive
  - Installing jeroen/file-fetcher (6.1.1): Extracting archive
  - Installing mediawiki/semantic-media-wiki (dev-master 470bc48): Extracting archive
  - Installing php-parallel-lint/php-console-color (v1.0.1): Extracting archive
  - Installing php-parallel-lint/php-console-highlighter (v1.0.0): Extracting archive
  - Installing php-parallel-lint/php-parallel-lint (v1.4.0): Extracting archive
  0/40 [>---------------------------]   0%
 19/40 [=============>--------------]  47%
 28/40 [===================>--------]  70%
 38/40 [==========================>-]  95%
 40/40 [============================] 100%
4 package suggestions were added by new dependencies, use `composer suggest` to see details.
Generating autoload files
24 packages you are using are looking for funding.
Use the `composer fund` command to find out more!
--- stdout ---
PHP CodeSniffer Config installed_paths set to ../../mediawiki/mediawiki-codesniffer,../../phpcsstandards/phpcsextra,../../phpcsstandards/phpcsutils

--- end ---
Upgrading n:eslint-config-wikimedia from 0.28.2 -> 0.29.1
$ /usr/bin/npm install
--- stdout ---

added 379 packages, and audited 380 packages in 4s

64 packages are looking for funding
  run `npm fund` for details

2 high severity vulnerabilities

To address all issues (including breaking changes), run:
  npm audit fix --force

Run `npm audit` for details.

--- end ---
$ package-lock-lint package-lock.json
--- stdout ---
Checking package-lock.json

--- end ---
$ /usr/bin/npm install grunt-eslint@24.3.0 --save-exact
--- stdout ---

up to date, audited 380 packages in 831ms

64 packages are looking for funding
  run `npm fund` for details

2 high severity vulnerabilities

To address all issues (including breaking changes), run:
  npm audit fix --force

Run `npm audit` for details.

--- end ---
$ package-lock-lint package-lock.json
--- stdout ---
Checking package-lock.json

--- end ---
$ ./node_modules/.bin/eslint i18n/rmc.json i18n/qqq.json i18n/uk.json i18n/ka.json i18n/fi.json i18n/he.json i18n/lb.json i18n/szy.json i18n/ar.json i18n/my.json i18n/el.json i18n/br.json i18n/nds.json i18n/eo.json i18n/sd.json i18n/eu.json i18n/en.json i18n/ia.json package.json i18n/ps.json i18n/smj.json i18n/ast.json i18n/nl.json i18n/yi.json i18n/pt-br.json i18n/ga.json i18n/sms.json i18n/fy.json i18n/fr.json package-lock.json i18n/ru.json i18n/inh.json i18n/frp.json i18n/zh-hant.json i18n/skr-arab.json i18n/gl.json i18n/ne.json i18n/fa.json i18n/ig.json i18n/ko.json i18n/sv.json i18n/tcy.json i18n/tr.json i18n/pt.json i18n/pms.json i18n/et.json i18n/de-formal.json i18n/ur.json i18n/kab.json i18n/ky.json i18n/it.json i18n/sma.json i18n/bn.json i18n/io.json i18n/zh-hans.json i18n/scn.json i18n/nb.json i18n/vi.json i18n/ku-latn.json i18n/roa-tara.json i18n/sr-el.json Gruntfile.js i18n/sl.json i18n/es.json i18n/ug-arab.json i18n/si.json i18n/mnw.json i18n/sr-ec.json i18n/id.json i18n/mr.json i18n/tl.json i18n/smn.json composer.json i18n/ro.json i18n/pa.json i18n/ca.json i18n/dsb.json modules/specialFamilyTree.js i18n/pl.json i18n/ce.json i18n/de.json i18n/mk.json i18n/se.json i18n/diq.json i18n/ta.json i18n/ja.json i18n/hsb.json i18n/lfn.json --fix
--- stderr ---
Oops! Something went wrong! :(

ESLint: 8.57.0

ESLint couldn't find the config "wikimedia/client-es5" to extend from. Please check that the name of the config is correct.

The config "wikimedia/client-es5" was referenced from the config file in "/src/repo/.eslintrc.json".

If you still have problems, please stop by https://eslint.org/chat/help to chat with the team.
--- stdout ---

--- end ---
$ ./node_modules/.bin/eslint i18n/rmc.json i18n/qqq.json i18n/uk.json i18n/ka.json i18n/fi.json i18n/he.json i18n/lb.json i18n/szy.json i18n/ar.json i18n/my.json i18n/el.json i18n/br.json i18n/nds.json i18n/eo.json i18n/sd.json i18n/eu.json i18n/en.json i18n/ia.json package.json i18n/ps.json i18n/smj.json i18n/ast.json i18n/nl.json i18n/yi.json i18n/pt-br.json i18n/ga.json i18n/sms.json i18n/fy.json i18n/fr.json package-lock.json i18n/ru.json i18n/inh.json i18n/frp.json i18n/zh-hant.json i18n/skr-arab.json i18n/gl.json i18n/ne.json i18n/fa.json i18n/ig.json i18n/ko.json i18n/sv.json i18n/tcy.json i18n/tr.json i18n/pt.json i18n/pms.json i18n/et.json i18n/de-formal.json i18n/ur.json i18n/kab.json i18n/ky.json i18n/it.json i18n/sma.json i18n/bn.json i18n/io.json i18n/zh-hans.json i18n/scn.json i18n/nb.json i18n/vi.json i18n/ku-latn.json i18n/roa-tara.json i18n/sr-el.json Gruntfile.js i18n/sl.json i18n/es.json i18n/ug-arab.json i18n/si.json i18n/mnw.json i18n/sr-ec.json i18n/id.json i18n/mr.json i18n/tl.json i18n/smn.json composer.json i18n/ro.json i18n/pa.json i18n/ca.json i18n/dsb.json modules/specialFamilyTree.js i18n/pl.json i18n/ce.json i18n/de.json i18n/mk.json i18n/se.json i18n/diq.json i18n/ta.json i18n/ja.json i18n/hsb.json i18n/lfn.json -f json
--- stderr ---
Oops! Something went wrong! :(

ESLint: 8.57.0

ESLint couldn't find the config "wikimedia/client-es5" to extend from. Please check that the name of the config is correct.

The config "wikimedia/client-es5" was referenced from the config file in "/src/repo/.eslintrc.json".

If you still have problems, please stop by https://eslint.org/chat/help to chat with the team.
--- stdout ---

--- end ---
Traceback (most recent call last):
  File "/venv/lib/python3.11/site-packages/runner-0.1.0-py3.11.egg/runner/__init__.py", line 1964, in main
    libup.run(args.repo, args.output, args.branch)
  File "/venv/lib/python3.11/site-packages/runner-0.1.0-py3.11.egg/runner/__init__.py", line 1902, in run
    self.npm_upgrade(plan)
  File "/venv/lib/python3.11/site-packages/runner-0.1.0-py3.11.egg/runner/__init__.py", line 1249, in npm_upgrade
    hook(update)
  File "/venv/lib/python3.11/site-packages/runner-0.1.0-py3.11.egg/runner/__init__.py", line 1599, in _handle_eslint
    errors = json.loads(
             ^^^^^^^^^^^
  File "/usr/lib/python3.11/json/__init__.py", line 346, in loads
    return _default_decoder.decode(s)
           ^^^^^^^^^^^^^^^^^^^^^^^^^^
  File "/usr/lib/python3.11/json/decoder.py", line 337, in decode
    obj, end = self.raw_decode(s, idx=_w(s, 0).end())
               ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
  File "/usr/lib/python3.11/json/decoder.py", line 355, in raw_decode
    raise JSONDecodeError("Expecting value", s, err.value) from None
json.decoder.JSONDecodeError: Expecting value: line 1 column 1 (char 0)

composer dependencies

Dependencies
Development dependencies

npm dependencies

Development dependencies

Logs

Source code is licensed under the AGPL.