microsoft / microsoft/vscode-python-debugger

Update dependencies with actionable security alerts

オープン 初心者向け
#1,110 コメント 0 件 リアクション 0 件 担当者 0 名 GitHub で見る

まだ誰も着手していません。

triage-needed
主要言語
TypeScript
スター
181
フォーク
126
平均マージ
2日 3時間
マージ済み PR(30日)
3

説明

Dependency updates

Dependency Current version Required version
brace-expansion 2.0.3 2.1.3

Please update the dependencies listed above to at least the required versions.

Requirements
  • Do not use force flags, dependency-resolution overrides, or equivalent mechanisms to bypass
    compatibility or security checks.
  • For package-lock.json files, use npm 11.10.0 or newer, and run every npm install and npm update command with --min-release-age 7.
  • Do not create or update .npmrc files.
  • Keep the changes focused on these dependency updates and any directly required lockfile changes.
  • Run the repository's relevant tests and validation after making the updates.

コントリビューションガイド

コントリビューションガイドを開く

はじめの一歩

  1. issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
  2. 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
  3. リポジトリをフォークし、ブランチを切って変更します。
  4. issue 番号を参照したプルリクエストを送ります。

調査の方向性

リポジトリで言及されている依存関係マニフェストと package-lock.json ファイルから始め、現在の brace-expansion エントリとその依存関係のコンテキストを確認します。必要な 7 日間のリリース経過期間設定を使用し、npm 11.10.0 以降で brace-expansion を少なくとも 2.1.3 に更新した後、リポジトリに関連するテストと検証を実行します。

索引モデルが issue の本文から書いたものです。

評価

技術スタック
javascript, typescript
領域
build-system
issue の種類
リファクタリング
難易度
2/5
見積もり時間
1〜3時間
活発さ
活発
明瞭さ
明確に書かれている
初心者へのやさしさ
78/100

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。