Skip to content

[vuln] Bump vite versions #255

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 2 commits into from
May 5, 2025
Merged

Conversation

rohitvinnakota-codecov
Copy link
Contributor

Description

This fixes https://github.com/codecov/codecov-javascript-bundler-plugins/security/dependabot/108

Legal Boilerplate

Look, I get it. The entity doing business as "Sentry" was incorporated in the State of Delaware in 2015 as Functional Software, Inc. In 2022 this entity acquired Codecov and as result Sentry is going to need some rights from me in order to utilize my contributions in this PR. So here's the deal: I retain all rights, title and interest in and to my contributions, and by keeping this boilerplate intact I confirm that Sentry can use, modify, copy, and redistribute my contributions, under Sentry's choice of terms.

Copy link

codecov bot commented Apr 25, 2025

Codecov Report

All modified and coverable lines are covered by tests ✅

Project coverage is 80.72%. Comparing base (0ac5be0) to head (eb3967c).
Report is 1 commits behind head on main.

✅ All tests successful. No failed tests found.

Additional details and impacted files
Components Coverage Δ
Plugin core 98.05% <ø> (ø)
Rollup plugin 8.42% <ø> (ø)
Vite plugin 8.42% <ø> (ø)
Webpack plugin 56.84% <ø> (ø)

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

@codecov-notifications
Copy link

codecov-notifications bot commented Apr 25, 2025

Codecov Report

All modified and coverable lines are covered by tests ✅

✅ All tests successful. No failed tests found.

Components Coverage Δ
Plugin core 98.05% <ø> (ø)
Rollup plugin 8.42% <ø> (ø)
Vite plugin 8.42% <ø> (ø)
Webpack plugin 56.84% <ø> (ø)

📢 Thoughts on this report? Let us know!

@rohitvinnakota-codecov rohitvinnakota-codecov changed the title [vuln] Bump vite version to ^6.0.14 [vuln] Bump vite versions May 5, 2025
@codecov-staging
Copy link

codecov-staging bot commented May 5, 2025

Bundle Report

Changes will increase total bundle size by 2.45kB (0.03%) ⬆️. This is within the configured threshold ✅

Detailed changes
Bundle name Size Change
@codecov/nuxt-plugin-esm 855 bytes -2.36kB (-73.37%) ⬇️
@codecov/webpack-plugin-esm 8.89kB 5.43kB (157.49%) ⬆️
@codecov/example-vite-app-esm 151.97kB 583 bytes (0.39%) ⬆️
@codecov/example-remix-app-client-esm 252.67kB 1.33kB (0.53%) ⬆️
@codecov/example-tokenless-app-esm 151.95kB 583 bytes (0.39%) ⬆️
@codecov/example-sveltekit-app-client-esm 727.67kB 184 bytes (0.03%) ⬆️
@codecov/example-sveltekit-app-server-esm 984.06kB -385 bytes (-0.04%) ⬇️
@codecov/example-astro-5-app-client-esm 186.25kB 380 bytes (0.2%) ⬆️
@codecov/example-astro-5-app-server-esm 597.08kB -3.31kB (-0.55%) ⬇️

Affected Assets, Files, and Routes:

view changes for bundle: @codecov/nextjs-webpack-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.ts (New) 1.11kB 1.11kB 100.0% 🚀
index.d.mts (Deleted) -1.11kB 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/example-astro-5-app-client-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
_astro/client.*.js 380 bytes 186.25kB 0.2%
view changes for bundle: @codecov/example-vite-app-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
assets/index-*.js 583 bytes 145.95kB 0.4%
view changes for bundle: @codecov/bundler-plugin-core-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.mts (New) 14.67kB 14.67kB 100.0% 🚀
index.d.ts (Deleted) -14.67kB 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/vite-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.cts (New) 1.24kB 1.24kB 100.0% 🚀
index.d.ts (Deleted) -1.24kB 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/example-astro-app-server-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
manifest_BZgB_QNN.mjs (New) 3.34kB 3.34kB 100.0% 🚀
manifest_Ro4Rw0X4.mjs (Deleted) -3.34kB 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/example-next-app-client-array-push

Assets Changed:

Asset Name Size Change Total Size Change (%)
server/middleware-*.js 852 bytes 888 bytes 2366.67% ⚠️
server/middleware-*.js -852 bytes 36 bytes -95.95%
static/maOSwp8djgd4-*.js (New) 224 bytes 224 bytes 100.0% 🚀
static/maOSwp8djgd4-*.js (New) 77 bytes 77 bytes 100.0% 🚀
static/dO4YKACK85BCUR8_aQWQ0/_buildManifest.js (Deleted) -224 bytes 0 bytes -100.0% 🗑️
static/dO4YKACK85BCUR8_aQWQ0/_ssgManifest.js (Deleted) -77 bytes 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/remix-vite-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.mts (New) 957 bytes 957 bytes 100.0% 🚀
index.d.cts (Deleted) -957 bytes 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/example-astro-5-app-server-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
chunks/_@astrojs-ssr-adapter_DdZfoyRZ.mjs (New) 361.79kB 361.79kB 100.0% 🚀
chunks/astro/server_C_Bgt7Mb.mjs (New) 106.84kB 106.84kB 100.0% 🚀
chunks/generic_BoNJeDvz.mjs (New) 62.71kB 62.71kB 100.0% 🚀
chunks/astro-designed-error-pages_FfiYfOuZ.mjs (New) 36.04kB 36.04kB 100.0% 🚀
renderers.mjs -300 bytes 7.36kB -3.92%
manifest_B_5zpEjr.mjs (New) 3.37kB 3.37kB 100.0% 🚀
chunks/sharp_Dc5Cq7tq.mjs (New) 2.56kB 2.56kB 100.0% 🚀
chunks/astro_DK1EDBgK.mjs (New) 38 bytes 38 bytes 100.0% 🚀
chunks/_@astrojs-ssr-adapter_CcMlLZt5.mjs (Deleted) -361.81kB 0 bytes -100.0% 🗑️
chunks/astro/server_BTd0Dxbf.mjs (Deleted) -106.84kB 0 bytes -100.0% 🗑️
chunks/generic_BpYC0TnH.mjs (Deleted) -62.75kB 0 bytes -100.0% 🗑️
chunks/astro-designed-error-pages_ULppvQ9v.mjs (Deleted) -36.08kB 0 bytes -100.0% 🗑️
manifest_C3sQqzvZ.mjs (Deleted) -3.37kB 0 bytes -100.0% 🗑️
chunks/vnode-children_C1YIWAGb.mjs (Deleted) -2.91kB 0 bytes -100.0% 🗑️
chunks/sharp_BlTB-H3A.mjs (Deleted) -2.56kB 0 bytes -100.0% 🗑️
chunks/astro_Ch_AEJaJ.mjs (Deleted) -38 bytes 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/example-remix-app-client-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
assets/components-*.js 1.58kB 225.43kB 0.71%
assets/entry.client-*.js 95 bytes 11.73kB 0.82%
assets/jsx-*.js -346 bytes 7.76kB -4.27%
view changes for bundle: @codecov/example-sveltekit-app-server-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
chunks/index3.js -68 bytes 29.66kB -0.23%
chunks/internal.js 1 bytes 18.48kB 0.01%
entries/fallbacks/error.svelte.js -318 bytes 521 bytes -37.9%
view changes for bundle: @codecov/nuxt-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.cts (New) 855 bytes 855 bytes 100.0% 🚀
index.mjs (Deleted) -3.21kB 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/example-tokenless-app-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
assets/index-*.js 583 bytes 145.94kB 0.4%
view changes for bundle: @codecov/astro-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.ts (New) 862 bytes 862 bytes 100.0% 🚀
index.d.mts (Deleted) -862 bytes 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/webpack-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.mjs (New) 8.89kB 8.89kB 100.0% 🚀
index.d.ts (Deleted) -3.45kB 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/rollup-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.cts (New) 1.3kB 1.3kB 100.0% 🚀
index.d.mts (Deleted) -1.3kB 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/example-sveltekit-app-client-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
_app/immutable/chunks/entry.*.js -6 bytes 31.45kB -0.02%
_app/immutable/nodes/4.*.js 36 bytes 15.42kB 0.23%
_app/immutable/chunks/runtime.*.js 202 bytes 13.56kB 1.51%
_app/immutable/entry/app.*.js 120 bytes 6.01kB 2.04%
_app/immutable/chunks/props.*.js 6 bytes 3.73kB 0.16%
_app/immutable/nodes/1.*.js -174 bytes 655 bytes -20.99%

App Routes Affected:

App Route Size Change Total Size Change (%)
/sverdle 36 bytes 15.42kB 0.23%
view changes for bundle: @codecov/example-next-15-app-client-array-push

Assets Changed:

Asset Name Size Change Total Size Change (%)
server/middleware-*.js 873 bytes 909 bytes 2425.0% ⚠️
server/middleware-*.js -873 bytes 36 bytes -96.04%
static/ydIoLSuI1ARVb08l3hHxt/_buildManifest.js (New) 540 bytes 540 bytes 100.0% 🚀
static/ydIoLSuI1ARVb08l3hHxt/_ssgManifest.js (New) 77 bytes 77 bytes 100.0% 🚀
static/B2XQGo-*.js (Deleted) -77 bytes 0 bytes -100.0% 🗑️
static/B2XQGo-*.js (Deleted) -540 bytes 0 bytes -100.0% 🗑️

Copy link

codecov bot commented May 5, 2025

Bundle Report

Changes will decrease total bundle size by 728 bytes (-0.01%) ⬇️. This is within the configured threshold ✅

Detailed changes
Bundle name Size Change
@codecov/remix-vite-plugin-esm 957 bytes -2.06kB (-68.26%) ⬇️
@codecov/example-vite-app-esm 151.97kB 583 bytes (0.39%) ⬆️
@codecov/example-remix-app-client-esm 252.67kB 1.33kB (0.53%) ⬆️
@codecov/example-sveltekit-app-client-esm 727.67kB 180 bytes (0.02%) ⬆️
@codecov/example-sveltekit-app-server-esm 984.06kB -387 bytes (-0.04%) ⬇️
@codecov/example-tokenless-app-esm 151.95kB 583 bytes (0.39%) ⬆️
@codecov/example-oidc-app-esm 151.95kB 583 bytes (0.39%) ⬆️
@codecov/bundle-analyzer-esm 6.9kB 3.79kB (122.05%) ⬆️
@codecov/astro-plugin-esm 862 bytes -2.41kB (-73.62%) ⬇️
@codecov/example-astro-5-app-client-esm 186.25kB 380 bytes (0.2%) ⬆️
@codecov/example-astro-5-app-server-esm 597.08kB -3.31kB (-0.55%) ⬇️

Affected Assets, Files, and Routes:

view changes for bundle: @codecov/example-next-app-client-array-push

Assets Changed:

Asset Name Size Change Total Size Change (%)
server/middleware-*.js -852 bytes 36 bytes -95.95%
server/middleware-*.js 852 bytes 888 bytes 2366.67% ⚠️
static/_pikJPZ-*.js (New) 224 bytes 224 bytes 100.0% 🚀
static/_pikJPZ-*.js (New) 77 bytes 77 bytes 100.0% 🚀
static/A6JXdoDCGThhvkcSqkxZ7/_buildManifest.js (Deleted) -224 bytes 0 bytes -100.0% 🗑️
static/A6JXdoDCGThhvkcSqkxZ7/_ssgManifest.js (Deleted) -77 bytes 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/remix-vite-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.cts (New) 957 bytes 957 bytes 100.0% 🚀
index.mjs (Deleted) -3.02kB 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/nuxt-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.ts (New) 855 bytes 855 bytes 100.0% 🚀
index.d.cts (Deleted) -855 bytes 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/example-astro-5-app-client-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
_astro/client.*.js 380 bytes 186.25kB 0.2%
view changes for bundle: @codecov/bundler-plugin-core-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.ts (New) 14.67kB 14.67kB 100.0% 🚀
index.d.mts (Deleted) -14.67kB 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/example-next-15-app-client-array-push

Assets Changed:

Asset Name Size Change Total Size Change (%)
static/ribZ6oSsJkX43v3UAxTY4/_buildManifest.js (New) 540 bytes 540 bytes 100.0% 🚀
static/ribZ6oSsJkX43v3UAxTY4/_ssgManifest.js (New) 77 bytes 77 bytes 100.0% 🚀
static/n3fJ33Vh1egSi91Qg-*.js (Deleted) -77 bytes 0 bytes -100.0% 🗑️
static/n3fJ33Vh1egSi91Qg-*.js (Deleted) -540 bytes 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/example-tokenless-app-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
assets/index-*.js 583 bytes 145.94kB 0.4%
view changes for bundle: @codecov/vite-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.mts (New) 1.24kB 1.24kB 100.0% 🚀
index.d.ts (Deleted) -1.24kB 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/sveltekit-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.ts (New) 891 bytes 891 bytes 100.0% 🚀
index.d.mts (Deleted) -891 bytes 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/rollup-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.ts (New) 1.3kB 1.3kB 100.0% 🚀
index.d.mts (Deleted) -1.3kB 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/example-oidc-app-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
assets/index-*.js 583 bytes 145.94kB 0.4%
view changes for bundle: @codecov/example-astro-5-app-server-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
chunks/_@astrojs-ssr-adapter_DdZfoyRZ.mjs (New) 361.79kB 361.79kB 100.0% 🚀
chunks/astro/server_C_Bgt7Mb.mjs (New) 106.84kB 106.84kB 100.0% 🚀
chunks/generic_BoNJeDvz.mjs (New) 62.71kB 62.71kB 100.0% 🚀
chunks/astro-designed-error-pages_FfiYfOuZ.mjs (New) 36.04kB 36.04kB 100.0% 🚀
renderers.mjs -300 bytes 7.36kB -3.92%
manifest_B_qqD5AB.mjs (New) 3.37kB 3.37kB 100.0% 🚀
chunks/sharp_Dc5Cq7tq.mjs (New) 2.56kB 2.56kB 100.0% 🚀
chunks/astro_DK1EDBgK.mjs (New) 38 bytes 38 bytes 100.0% 🚀
chunks/_@astrojs-ssr-adapter_CcMlLZt5.mjs (Deleted) -361.81kB 0 bytes -100.0% 🗑️
chunks/astro/server_BTd0Dxbf.mjs (Deleted) -106.84kB 0 bytes -100.0% 🗑️
chunks/generic_BpYC0TnH.mjs (Deleted) -62.75kB 0 bytes -100.0% 🗑️
chunks/astro-designed-error-pages_ULppvQ9v.mjs (Deleted) -36.08kB 0 bytes -100.0% 🗑️
manifest_Dj4-e_F9.mjs (Deleted) -3.37kB 0 bytes -100.0% 🗑️
chunks/vnode-children_C1YIWAGb.mjs (Deleted) -2.91kB 0 bytes -100.0% 🗑️
chunks/sharp_BlTB-H3A.mjs (Deleted) -2.56kB 0 bytes -100.0% 🗑️
chunks/astro_Ch_AEJaJ.mjs (Deleted) -38 bytes 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/example-sveltekit-app-client-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
_app/immutable/chunks/entry.*.js -10 bytes 31.45kB -0.03%
_app/immutable/nodes/4.*.js 36 bytes 15.42kB 0.23%
_app/immutable/chunks/runtime.*.js 202 bytes 13.56kB 1.51%
_app/immutable/entry/app.*.js 120 bytes 6.01kB 2.04%
_app/immutable/chunks/props.*.js 6 bytes 3.73kB 0.16%
_app/immutable/nodes/1.*.js -174 bytes 655 bytes -20.99%

App Routes Affected:

App Route Size Change Total Size Change (%)
/sverdle 36 bytes 15.42kB 0.23%
view changes for bundle: @codecov/example-vite-app-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
assets/index-*.js 583 bytes 145.95kB 0.4%
view changes for bundle: @codecov/example-remix-app-client-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
assets/components-*.js 1.58kB 225.43kB 0.71%
assets/entry.client-*.js 95 bytes 11.73kB 0.82%
assets/jsx-*.js -346 bytes 7.76kB -4.27%
view changes for bundle: @codecov/astro-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.cts (New) 862 bytes 862 bytes 100.0% 🚀
index.mjs (Deleted) -3.27kB 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/example-astro-app-server-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
manifest_Bwqh7oOu.mjs (New) 3.34kB 3.34kB 100.0% 🚀
manifest_CB7srTtX.mjs (Deleted) -3.34kB 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/bundle-analyzer-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.mjs (New) 3.92kB 3.92kB 100.0% 🚀
cli.mjs (New) 2.98kB 2.98kB 100.0% 🚀
index.d.cts (Deleted) -2.77kB 0 bytes -100.0% 🗑️
cli.d.cts (Deleted) -342 bytes 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/example-sveltekit-app-server-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
chunks/index3.js -68 bytes 29.66kB -0.23%
chunks/internal.js -1 bytes 18.48kB -0.01%
entries/fallbacks/error.svelte.js -318 bytes 521 bytes -37.9%
view changes for bundle: @codecov/webpack-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.cts (New) 3.45kB 3.45kB 100.0% 🚀
index.d.mts (Deleted) -3.45kB 0 bytes -100.0% 🗑️
view changes for bundle: @codecov/nextjs-webpack-plugin-esm

Assets Changed:

Asset Name Size Change Total Size Change (%)
index.d.cts (New) 1.11kB 1.11kB 100.0% 🚀
index.d.ts (Deleted) -1.11kB 0 bytes -100.0% 🗑️

@rohitvinnakota-codecov rohitvinnakota-codecov marked this pull request as ready for review May 5, 2025 15:57
@rohitvinnakota-codecov rohitvinnakota-codecov merged commit 1db06c3 into main May 5, 2025
69 checks passed
@rohitvinnakota-codecov rohitvinnakota-codecov deleted the rvinnakota/bump-vite branch May 5, 2025 16:34
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants