Skip to content

fix(deps): update dependency @vitest/coverage-v8 to ^4.0.18 - autoclosed#259

Closed
renovate[bot] wants to merge 1 commit intomainfrom
renovate/patch-vitest-monorepo
Closed

fix(deps): update dependency @vitest/coverage-v8 to ^4.0.18 - autoclosed#259
renovate[bot] wants to merge 1 commit intomainfrom
renovate/patch-vitest-monorepo

Conversation

@renovate
Copy link
Copy Markdown
Contributor

@renovate renovate bot commented Jan 14, 2026

This PR contains the following updates:

Package Change Age Confidence
@vitest/coverage-v8 (source) ^4.0.15^4.0.18 age confidence

Release Notes

vitest-dev/vitest (@​vitest/coverage-v8)

v4.0.18

Compare Source

   🚀 Experimental Features
   🐞 Bug Fixes
    View changes on GitHub

v4.0.17

Compare Source

   🚀 Experimental Features
   🐞 Bug Fixes
    View changes on GitHub

v4.0.16

Compare Source

   🐞 Bug Fixes
    View changes on GitHub

Configuration

📅 Schedule: Branch creation - "after 10:00 before 19:00 every weekday except after 13:00 before 14:00" in timezone Europe/Berlin, Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot requested a review from prisis as a code owner January 14, 2026 13:04
@renovate renovate bot added the c: dependencies Pull requests that adds/updates a dependency label Jan 14, 2026
@renovate renovate bot enabled auto-merge (squash) January 14, 2026 13:04
@coderabbitai
Copy link
Copy Markdown
Contributor

coderabbitai bot commented Jan 14, 2026

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.


Comment @coderabbitai help to get the list of available commands and usage tips.

@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Jan 14, 2026

Thank you for following the naming conventions! 🙏

@socket-security
Copy link
Copy Markdown

socket-security bot commented Jan 14, 2026

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Addedresolve-from@​5.0.01001009075100
Addedget-stream@​9.0.110010010082100
Addedsemver@​7.7.310010010087100

View full report

@renovate renovate bot force-pushed the renovate/patch-vitest-monorepo branch from 95f1c2c to 427361f Compare January 16, 2026 13:05
@renovate renovate bot changed the title fix(deps): update dependency @vitest/coverage-v8 to ^4.0.16 fix(deps): update dependency @vitest/coverage-v8 to ^4.0.17 Jan 16, 2026
@renovate renovate bot force-pushed the renovate/patch-vitest-monorepo branch from 427361f to 40f1f2a Compare January 23, 2026 16:55
Signed-off-by: Renovate Bot <bot@renovateapp.com>
@renovate renovate bot force-pushed the renovate/patch-vitest-monorepo branch from 40f1f2a to 8662501 Compare January 26, 2026 16:27
@renovate renovate bot changed the title fix(deps): update dependency @vitest/coverage-v8 to ^4.0.17 fix(deps): update dependency @vitest/coverage-v8 to ^4.0.18 Jan 26, 2026
@socket-security
Copy link
Copy Markdown

Warning

Review the following alerts detected in dependencies.

According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.

Action Severity Alert  (click "▶" to expand/collapse)
Warn High
Obfuscated code: npm safer-buffer is 94.0% likely obfuscated

Confidence: 0.94

Location: Package overview

From: pnpm-lock.yamlnpm/safer-buffer@2.1.2

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/safer-buffer@2.1.2. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

View full report

@renovate renovate bot changed the title fix(deps): update dependency @vitest/coverage-v8 to ^4.0.18 fix(deps): update dependency @vitest/coverage-v8 to ^4.0.18 - autoclosed Feb 2, 2026
@renovate renovate bot closed this Feb 2, 2026
auto-merge was automatically disabled February 2, 2026 11:00

Pull request was closed

@renovate renovate bot deleted the renovate/patch-vitest-monorepo branch February 2, 2026 11:00
@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Mar 4, 2026

This pull request has been automatically locked since there has not been any recent activity after it was closed. Please open a new issue for related bugs.
Please note this issue tracker is not a help forum. We recommend using our GitHub Discussions tab for questions.

@github-actions github-actions bot locked as resolved and limited conversation to collaborators Mar 4, 2026
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

c: dependencies Pull requests that adds/updates a dependency

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants