github RetireJS/retire.js 6.1.0

4 hours ago

[6.1.0]

Improvements

  • Repository validation errors (for an invalid --jsrepo, and from repository/validate) are now listed one per line with the location of each problem, instead of as a nested JSON tree:
    ✖ Invalid option: expected one of "none"|"low"|"medium"|"high"|"critical"
      → at jquery.vulnerabilities[0].severity
    
  • Positional arguments (e.g. retire . or retire src/) are still ignored, but now print a warning. Use --path <path> to choose what to scan.
  • Upgraded commander to 14 and zod to 4.

Bugfixes

  • Repository validation crashed with a TypeError on extractor regexes that contain §§version§§ without a capture group (e.g. jquery-§§version§§\.js), instead of reporting the invalid regex. It now reports Regex must contain (§§version§§) as first capture group.

Don't miss a new retire.js release

NewReleases is sending notifications on new releases.