Skip to content

chore(deps): bump glob and @openapitools/openapi-generator-cli#7

Open
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/npm_and_yarn/multi-49311e9a22
Open

chore(deps): bump glob and @openapitools/openapi-generator-cli#7
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/npm_and_yarn/multi-49311e9a22

Conversation

@dependabot
Copy link
Copy Markdown

@dependabot dependabot bot commented on behalf of github Apr 10, 2026

Bumps glob to 11.1.0 and updates ancestor dependency @openapitools/openapi-generator-cli. These dependencies need to be updated together.

Updates glob from 11.0.3 to 11.1.0

Changelog

Sourced from glob's changelog.

changeglob

13

  • Move the CLI program out to a separate package, glob-bin. Install that if you'd like to continue using glob from the command line.

12

  • Remove the unsafe --shell option. The --shell option is now ONLY supported on known shells where the behavior can be implemented safely.

11.1

GHSA-5j98-mcp5-4vw2

  • Add the --shell option for the command line, with a warning that this is unsafe. (It will be removed in v12.)
  • Add the --cmd-arg/-g as a way to safely add positional arguments to the command provided to the CLI tool.
  • Detect commands with space or quote characters on known shells, and pass positional arguments to them safely, avoiding shell:true execution.

11.0

  • Drop support for node before v20

10.4

  • Add includeChildMatches: false option
  • Export the Ignore class

10.3

  • Add --default -p flag to provide a default pattern
  • exclude symbolic links to directories when follow and nodir are both set

10.2

  • Add glob cli

10.1

  • Return '.' instead of the empty string '' when the current working directory is returned as a match.
  • Add posix: true option to return / delimited paths, even on

... (truncated)

Commits
  • 2551fb5 11.1.0
  • 47473c0 bin: Do not expose filenames to shell expansion
  • bc33fe1 skip tilde test on systems that lack tilde expansion
  • 59bf9ca fix notes
  • dde4fa6 docs(README): add #anchor and improve notes
  • 0559b0e docs: add better links to path-scurry docs
  • c9773c2 fix: correct typos in README.md
  • 13e68ea Fix punctuation in traversal function documentation
  • 1527e2b fix repo url
  • 7e190e8 fix typo mathspaths
  • Additional commits viewable in compare view

Updates @openapitools/openapi-generator-cli from 2.25.0 to 2.31.1

Release notes

Sourced from @​openapitools/openapi-generator-cli's releases.

v2.31.1

2.31.1 (2026-04-07)

Bug Fixes

  • custom generators: prioritize custom generator JAR when provided (#1189) (4c6ff56)

v2.31.0

2.31.0 (2026-03-24)

Features

v2.30.2

2.30.2 (2026-03-06)

Bug Fixes

  • deps: update dependency jsonpath to v1.3.0 (#1164) (2c4802d)

v2.30.1

2.30.1 (2026-03-03)

Bug Fixes

  • deps: update dependency fs-extra to v11.3.4 (#1157) (74d5871)

v2.30.0

2.30.0 (2026-02-25)

Features

v2.29.0

2.29.0 (2026-02-16)

Features

v2.28.3

2.28.3 (2026-02-10)

... (truncated)

Commits
  • 4c6ff56 fix(custom generators): prioritize custom generator JAR when provided (#1189)
  • 7991687 chore(deps): update dependency @​nestjs/core to v11.1.18 [security] (#1187)
  • 2d681f8 chore(deps): update dependency ts-jest to v29.4.9 (#1185)
  • 974af52 chore(deps): update dependency axios to v1.14.0 (#1184)
  • 13d1cfb chore(deps): update dependency @​nestjs/schematics to v11.0.10 (#1183)
  • e959f06 feat(release): v7.21.0 release (#1180)
  • 3d196e0 chore(deps): update dependency type-fest to v5.5.0 (#1176)
  • 36b1672 chore(deps): update nx monorepo to v22.6.0 (#1175)
  • f8de577 chore(deps): update nest monorepo to v11.1.17 (#1174)
  • 252a72e chore(deps): update commitlint monorepo to v20.5.0 (#1173)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [glob](https://github.com/isaacs/node-glob) to 11.1.0 and updates ancestor dependency [@openapitools/openapi-generator-cli](https://github.com/OpenAPITools/openapi-generator-cli). These dependencies need to be updated together.


Updates `glob` from 11.0.3 to 11.1.0
- [Changelog](https://github.com/isaacs/node-glob/blob/main/changelog.md)
- [Commits](isaacs/node-glob@v11.0.3...v11.1.0)

Updates `@openapitools/openapi-generator-cli` from 2.25.0 to 2.31.1
- [Release notes](https://github.com/OpenAPITools/openapi-generator-cli/releases)
- [Commits](OpenAPITools/openapi-generator-cli@v2.25.0...v2.31.1)

---
updated-dependencies:
- dependency-name: glob
  dependency-version: 11.1.0
  dependency-type: indirect
- dependency-name: "@openapitools/openapi-generator-cli"
  dependency-version: 2.31.1
  dependency-type: direct:development
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Apr 10, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants