Script 'mail_helper' called by obssrc
Hello community,

here is the log from the commit of package python-nbdime for openSUSE:Factory 
checked in at 2025-08-29 18:37:21
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:Factory/python-nbdime (Old)
 and      /work/SRC/openSUSE:Factory/.python-nbdime.new.1977 (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Package is "python-nbdime"

Fri Aug 29 18:37:21 2025 rev:23 rq:1301908 version:unknown

Changes:
--------
--- /work/SRC/openSUSE:Factory/python-nbdime/python-nbdime.changes      
2025-08-04 15:24:06.120176533 +0200
+++ /work/SRC/openSUSE:Factory/.python-nbdime.new.1977/python-nbdime.changes    
2025-08-29 18:39:21.044666679 +0200
@@ -1,0 +2,6 @@
+Fri Aug 29 10:32:13 UTC 2025 - Daniel Garcia <[email protected]>
+
+- Refresh javascript dependencies to update tmp
+  (CVE-2025-54798, bsc#1247788)
+
+-------------------------------------------------------------------

New:
----
  package.json

++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Other differences:
------------------
++++++ python-nbdime.spec ++++++
--- /var/tmp/diff_new_pack.vgTtcT/_old  2025-08-29 18:39:22.148713564 +0200
+++ /var/tmp/diff_new_pack.vgTtcT/_new  2025-08-29 18:39:22.152713735 +0200
@@ -1,7 +1,7 @@
 #
 # spec file for package python-nbdime
 #
-# Copyright (c) 2025 SUSE LLC
+# Copyright (c) 2025 SUSE LLC and contributors
 #
 # All modifications and additions to the file contributed by third parties
 # remain the property of their copyright owners, unless otherwise agreed
@@ -40,8 +40,10 @@
 # package-lock.json file generated with command:
 # npm install --package-lock-only --legacy-peer-deps --ignore-scripts
 Source1:        package-lock.json
+# From nbdime.tar.gz with custom overrides
+Source2:        package.json
 # node_modules generated using "osc service mr" with the 
https://github.com/openSUSE/obs-service-node_modules
-Source2:        node_modules.spec.inc
+Source3:        node_modules.spec.inc
 %include        %{_sourcedir}/node_modules.spec.inc
 BuildRequires:  %{python_module GitPython >= 2.1.6}
 BuildRequires:  %{python_module Jinja2 >= 2.9}
@@ -186,6 +188,7 @@
 
 %prep
 %autosetup -p1 -n nbdime-%{pyver}
+cp %{SOURCE2} .
 local-npm-registry %{_sourcedir} install --include=dev --include=peer
 find . -type f -name "*.py" -exec sed -i 's/\r$//' {} +
 find . -type f -name "*.ipynb" -exec sed -i 's/\r$//' {} +

++++++ node_modules.obscpio ++++++
Binary files old/@inquirer-external-editor-1.0.1.tgz and 
new/@inquirer-external-editor-1.0.1.tgz differ
Binary files old/@jupyterlab-buildutils-4.4.5.tgz and 
new/@jupyterlab-buildutils-4.4.5.tgz differ
Binary files old/@jupyterlab-buildutils-4.4.6.tgz and 
new/@jupyterlab-buildutils-4.4.6.tgz differ
Binary files old/@types-node-24.1.0.tgz and new/@types-node-24.1.0.tgz differ
Binary files old/@types-node-24.3.0.tgz and new/@types-node-24.3.0.tgz differ
Binary files old/@yarnpkg-core-4.4.2.tgz and new/@yarnpkg-core-4.4.2.tgz differ
Binary files old/@yarnpkg-core-4.4.3.tgz and new/@yarnpkg-core-4.4.3.tgz differ
Binary files old/ansi-regex-6.1.0.tgz and new/ansi-regex-6.1.0.tgz differ
Binary files old/ansi-regex-6.2.0.tgz and new/ansi-regex-6.2.0.tgz differ
Binary files old/bare-events-2.6.0.tgz and new/bare-events-2.6.0.tgz differ
Binary files old/bare-events-2.6.1.tgz and new/bare-events-2.6.1.tgz differ
Binary files old/chardet-2.1.0.tgz and new/chardet-2.1.0.tgz differ
Binary files old/es-toolkit-1.39.10.tgz and new/es-toolkit-1.39.10.tgz differ
Binary files old/fast-uri-3.0.6.tgz and new/fast-uri-3.0.6.tgz differ
Binary files old/fast-uri-3.1.0.tgz and new/fast-uri-3.1.0.tgz differ
Binary files old/follow-redirects-1.15.11.tgz and 
new/follow-redirects-1.15.11.tgz differ
Binary files old/follow-redirects-1.15.9.tgz and 
new/follow-redirects-1.15.9.tgz differ
Binary files old/fs-extra-11.3.0.tgz and new/fs-extra-11.3.0.tgz differ
Binary files old/fs-extra-11.3.1.tgz and new/fs-extra-11.3.1.tgz differ
Binary files old/glob-7.2.3.tgz and new/glob-7.2.3.tgz differ
Binary files old/inquirer-8.2.6.tgz and new/inquirer-8.2.6.tgz differ
Binary files old/inquirer-8.2.7.tgz and new/inquirer-8.2.7.tgz differ
Binary files old/ip-address-10.0.1.tgz and new/ip-address-10.0.1.tgz differ
Binary files old/ip-address-9.0.5.tgz and new/ip-address-9.0.5.tgz differ
Binary files old/jake-10.9.2.tgz and new/jake-10.9.2.tgz differ
Binary files old/jake-10.9.4.tgz and new/jake-10.9.4.tgz differ
Binary files old/jsbn-1.1.0.tgz and new/jsbn-1.1.0.tgz differ
Binary files old/jsonfile-6.1.0.tgz and new/jsonfile-6.1.0.tgz differ
Binary files old/jsonfile-6.2.0.tgz and new/jsonfile-6.2.0.tgz differ
Binary files old/os-tmpdir-1.0.2.tgz and new/os-tmpdir-1.0.2.tgz differ
Binary files old/socks-2.8.6.tgz and new/socks-2.8.6.tgz differ
Binary files old/socks-2.8.7.tgz and new/socks-2.8.7.tgz differ
Binary files old/spdx-license-ids-3.0.21.tgz and 
new/spdx-license-ids-3.0.21.tgz differ
Binary files old/spdx-license-ids-3.0.22.tgz and 
new/spdx-license-ids-3.0.22.tgz differ
Binary files old/sprintf-js-1.1.3.tgz and new/sprintf-js-1.1.3.tgz differ
Binary files old/tmp-0.0.33.tgz and new/tmp-0.0.33.tgz differ
Binary files old/tmp-0.2.3.tgz and new/tmp-0.2.3.tgz differ
Binary files old/tmp-0.2.5.tgz and new/tmp-0.2.5.tgz differ
Binary files old/undici-types-7.10.0.tgz and new/undici-types-7.10.0.tgz differ
Binary files old/undici-types-7.8.0.tgz and new/undici-types-7.8.0.tgz differ
Binary files old/yoctocolors-cjs-2.1.2.tgz and new/yoctocolors-cjs-2.1.2.tgz 
differ
Binary files old/yoctocolors-cjs-2.1.3.tgz and new/yoctocolors-cjs-2.1.3.tgz 
differ

++++++ node_modules.spec.inc ++++++
++++ 1677 lines (skipped)
++++ between /work/SRC/openSUSE:Factory/python-nbdime/node_modules.spec.inc
++++ and 
/work/SRC/openSUSE:Factory/.python-nbdime.new.1977/node_modules.spec.inc

++++++ package-lock.json ++++++
++++ 3332 lines (skipped)
++++ between /work/SRC/openSUSE:Factory/python-nbdime/package-lock.json
++++ and /work/SRC/openSUSE:Factory/.python-nbdime.new.1977/package-lock.json

++++++ package.json ++++++
{
  "name": "nbdime-top-repo",
  "version": "4.0.0-rc.0",
  "private": true,
  "workspaces": [
    "packages/*"
  ],
  "scripts": {
    "build": "lerna run build",
    "build:tsc": "tsc --build",
    "build:dev": "lerna run build:dev",
    "clean": "lerna run clean",
    "prettier": "prettier --list-different --write 
\"**/*{.ts,.tsx,.js,.jsx,.css,.json,.md}\"",
    "prettier:check": "prettier --check 
\"**/*{.ts,.tsx,.js,.jsx,.css,.json,.md}\"",
    "publish": "npm run clean && npm run build && lerna publish --no-private -m 
\"Publish npm packages\"",
    "test": "lerna run test",
    "update:all": "update-dependency --lerna --minimal --regex .*",
    "update:lab": "update-dependency --lerna --minimal --regex ^@jupyterlab/",
    "update:lab:next": "update-dependency --lerna --minimal --regex 
^@jupyterlab/ ^next",
    "updated": "lerna updated",
    "watch:webapp": "run-p watch:lib watch:app",
    "watch:app": "lerna exec --stream --scope \"nbdime-webapp\" npm run watch",
    "watch:lib": "lerna exec --stream --parallel --scope \"nbdime\" --scope 
\"nbdime-jupyterlab\" npm run watch"
  },
  "devDependencies": {
    "@jupyterlab/buildutils": "^4.0.0",
    "lerna": "^7.3.1",
    "npm-run-all": "^4.1.5",
    "npm-which": "^3.0.1",
    "prettier": "^3.0.0"
  },
  "overrides": {
    "tmp": "^0.2.5"
  }
}

Reply via email to