Skip to content

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jul 22, 2025

Bumps jest from 30.0.4 to 30.0.5.

Changelog

Sourced from jest's changelog.

30.0.5

Features

  • [jest-config] Allow testMatch to take a string value
  • [jest-worker] Let workerIdleMemoryLimit accept 0 to always restart worker child processes

Fixes

  • [expect] Fix bigint error (#15702)
Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [jest](https://github.com/jestjs/jest/tree/HEAD/packages/jest) from 30.0.4 to 30.0.5.
- [Release notes](https://github.com/jestjs/jest/releases)
- [Changelog](https://github.com/jestjs/jest/blob/main/CHANGELOG.md)
- [Commits](https://github.com/jestjs/jest/commits/v30.0.5/packages/jest)

---
updated-dependencies:
- dependency-name: jest
  dependency-version: 30.0.5
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies pull requests that update a dependency file javascript Pull requests that update javascript code patch adding the tag, aims to create a new patch version release labels Jul 22, 2025
@dependabot dependabot bot requested a review from a team as a code owner July 22, 2025 12:08
@dependabot dependabot bot added dependencies pull requests that update a dependency file javascript Pull requests that update javascript code patch adding the tag, aims to create a new patch version release labels Jul 22, 2025
Copy link

github-actions bot commented Jul 22, 2025

Dependency Review

✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.

OpenSSF Scorecard

Scorecard details
PackageVersionScoreDetails
npm/@emnapi/core 1.4.5 🟢 4.3
Details
CheckScoreReason
CII-Best-Practices⚠️ 0no effort to earn an OpenSSF best practices badge detected
Token-Permissions⚠️ 0detected GitHub workflow tokens with excessive permissions
Code-Review⚠️ 0Found 1/21 approved changesets -- score normalized to 0
Dangerous-Workflow🟢 10no dangerous workflow patterns detected
Maintained🟢 1012 commit(s) and 2 issue activity found in the last 90 days -- score normalized to 10
Security-Policy⚠️ 0security policy file not detected
License🟢 10license file detected
Binary-Artifacts🟢 10no binaries found in the repo
Pinned-Dependencies⚠️ 0dependency not pinned by hash detected -- score normalized to 0
Branch-Protection⚠️ 0branch protection not enabled on development/release branches
Fuzzing⚠️ 0project is not fuzzed
Signed-Releases⚠️ 0Project has not signed or included provenance with any releases.
Vulnerabilities🟢 100 existing vulnerabilities detected
Packaging🟢 10packaging workflow detected
SAST⚠️ 0SAST tool is not run on all commits -- score normalized to 0
npm/@emnapi/runtime 1.4.5 🟢 4.3
Details
CheckScoreReason
CII-Best-Practices⚠️ 0no effort to earn an OpenSSF best practices badge detected
Token-Permissions⚠️ 0detected GitHub workflow tokens with excessive permissions
Code-Review⚠️ 0Found 1/21 approved changesets -- score normalized to 0
Dangerous-Workflow🟢 10no dangerous workflow patterns detected
Maintained🟢 1012 commit(s) and 2 issue activity found in the last 90 days -- score normalized to 10
Security-Policy⚠️ 0security policy file not detected
License🟢 10license file detected
Binary-Artifacts🟢 10no binaries found in the repo
Pinned-Dependencies⚠️ 0dependency not pinned by hash detected -- score normalized to 0
Branch-Protection⚠️ 0branch protection not enabled on development/release branches
Fuzzing⚠️ 0project is not fuzzed
Signed-Releases⚠️ 0Project has not signed or included provenance with any releases.
Vulnerabilities🟢 100 existing vulnerabilities detected
Packaging🟢 10packaging workflow detected
SAST⚠️ 0SAST tool is not run on all commits -- score normalized to 0
npm/@emnapi/wasi-threads 1.0.4 🟢 4.3
Details
CheckScoreReason
CII-Best-Practices⚠️ 0no effort to earn an OpenSSF best practices badge detected
Token-Permissions⚠️ 0detected GitHub workflow tokens with excessive permissions
Code-Review⚠️ 0Found 1/21 approved changesets -- score normalized to 0
Dangerous-Workflow🟢 10no dangerous workflow patterns detected
Maintained🟢 1012 commit(s) and 2 issue activity found in the last 90 days -- score normalized to 10
Security-Policy⚠️ 0security policy file not detected
License🟢 10license file detected
Binary-Artifacts🟢 10no binaries found in the repo
Pinned-Dependencies⚠️ 0dependency not pinned by hash detected -- score normalized to 0
Branch-Protection⚠️ 0branch protection not enabled on development/release branches
Fuzzing⚠️ 0project is not fuzzed
Signed-Releases⚠️ 0Project has not signed or included provenance with any releases.
Vulnerabilities🟢 100 existing vulnerabilities detected
Packaging🟢 10packaging workflow detected
SAST⚠️ 0SAST tool is not run on all commits -- score normalized to 0
npm/@jest/console 30.0.5 UnknownUnknown
npm/@jest/core 30.0.5 UnknownUnknown
npm/@jest/environment 30.0.5 UnknownUnknown
npm/@jest/expect 30.0.5 UnknownUnknown
npm/@jest/expect-utils 30.0.5 UnknownUnknown
npm/@jest/fake-timers 30.0.5 UnknownUnknown
npm/@jest/globals 30.0.5 UnknownUnknown
npm/@jest/reporters 30.0.5 UnknownUnknown
npm/@jest/schemas 30.0.5 UnknownUnknown
npm/@jest/snapshot-utils 30.0.5 UnknownUnknown
npm/@jest/test-result 30.0.5 UnknownUnknown
npm/@jest/test-sequencer 30.0.5 UnknownUnknown
npm/@jest/transform 30.0.5 UnknownUnknown
npm/@jest/types 30.0.5 UnknownUnknown
npm/@napi-rs/wasm-runtime 0.2.12 🟢 5.2
Details
CheckScoreReason
Maintained🟢 1030 commit(s) and 17 issue activity found in the last 90 days -- score normalized to 10
Dangerous-Workflow🟢 10no dangerous workflow patterns detected
Code-Review⚠️ 1Found 5/30 approved changesets -- score normalized to 1
CII-Best-Practices⚠️ 0no effort to earn an OpenSSF best practices badge detected
Token-Permissions⚠️ 0detected GitHub workflow tokens with excessive permissions
Binary-Artifacts🟢 10no binaries found in the repo
Security-Policy⚠️ 0security policy file not detected
License🟢 9license file detected
Fuzzing⚠️ 0project is not fuzzed
Branch-Protection⚠️ -1internal error: error during branchesHandler.setup: internal error: githubv4.Query: Resource not accessible by integration
Signed-Releases⚠️ -1no releases found
Packaging🟢 10packaging workflow detected
Pinned-Dependencies⚠️ 0dependency not pinned by hash detected -- score normalized to 0
SAST⚠️ 0SAST tool is not run on all commits -- score normalized to 0
Vulnerabilities🟢 100 existing vulnerabilities detected
npm/@pkgr/core 0.2.9 UnknownUnknown
npm/@sinclair/typebox 0.34.38 🟢 4.3
Details
CheckScoreReason
Maintained🟢 109 commit(s) and 21 issue activity found in the last 90 days -- score normalized to 10
Packaging⚠️ -1packaging workflow not detected
Code-Review⚠️ 2Found 6/29 approved changesets -- score normalized to 2
Dangerous-Workflow🟢 10no dangerous workflow patterns detected
CII-Best-Practices⚠️ 0no effort to earn an OpenSSF best practices badge detected
Token-Permissions⚠️ 0detected GitHub workflow tokens with excessive permissions
Security-Policy⚠️ 0security policy file not detected
License🟢 9license file detected
Signed-Releases⚠️ -1no releases found
Binary-Artifacts🟢 10no binaries found in the repo
Pinned-Dependencies⚠️ 0dependency not pinned by hash detected -- score normalized to 0
Branch-Protection⚠️ 0branch protection not enabled on development/release branches
Fuzzing⚠️ 0project is not fuzzed
SAST⚠️ 0SAST tool is not run on all commits -- score normalized to 0
Vulnerabilities🟢 82 existing vulnerabilities detected
npm/@tybys/wasm-util 0.10.0 UnknownUnknown
npm/@unrs/resolver-binding-android-arm-eabi 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-android-arm64 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-darwin-arm64 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-darwin-x64 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-freebsd-x64 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-linux-arm-gnueabihf 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-linux-arm-musleabihf 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-linux-arm64-gnu 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-linux-arm64-musl 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-linux-ppc64-gnu 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-linux-riscv64-gnu 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-linux-riscv64-musl 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-linux-s390x-gnu 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-linux-x64-gnu 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-linux-x64-musl 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-wasm32-wasi 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-win32-arm64-msvc 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-win32-ia32-msvc 1.11.1 UnknownUnknown
npm/@unrs/resolver-binding-win32-x64-msvc 1.11.1 UnknownUnknown
npm/babel-jest 30.0.5 UnknownUnknown
npm/expect 30.0.5 UnknownUnknown
npm/jest 30.0.5 UnknownUnknown
npm/jest-changed-files 30.0.5 UnknownUnknown
npm/jest-circus 30.0.5 UnknownUnknown
npm/jest-cli 30.0.5 UnknownUnknown
npm/jest-config 30.0.5 UnknownUnknown
npm/jest-diff 30.0.5 UnknownUnknown
npm/jest-each 30.0.5 UnknownUnknown
npm/jest-environment-node 30.0.5 UnknownUnknown
npm/jest-haste-map 30.0.5 UnknownUnknown
npm/jest-leak-detector 30.0.5 UnknownUnknown
npm/jest-matcher-utils 30.0.5 UnknownUnknown
npm/jest-message-util 30.0.5 UnknownUnknown
npm/jest-mock 30.0.5 UnknownUnknown
npm/jest-resolve 30.0.5 UnknownUnknown
npm/jest-resolve-dependencies 30.0.5 UnknownUnknown
npm/jest-runner 30.0.5 UnknownUnknown
npm/jest-runtime 30.0.5 UnknownUnknown
npm/jest-snapshot 30.0.5 UnknownUnknown
npm/jest-util 30.0.5 UnknownUnknown
npm/jest-validate 30.0.5 UnknownUnknown
npm/jest-watcher 30.0.5 UnknownUnknown
npm/jest-worker 30.0.5 UnknownUnknown
npm/napi-postinstall 0.3.2 UnknownUnknown
npm/pretty-format 30.0.5 UnknownUnknown
npm/synckit 0.11.11 UnknownUnknown
npm/unrs-resolver 1.11.1 UnknownUnknown

Scanned Files

  • package-lock.json

@danhellem danhellem merged commit a9bf4d1 into main Jul 22, 2025
7 checks passed
@danhellem danhellem deleted the dependabot/npm_and_yarn/jest-30.0.5 branch July 22, 2025 18:18
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies pull requests that update a dependency file javascript Pull requests that update javascript code patch adding the tag, aims to create a new patch version release

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant