Skip to content

Commit 7a7c895

Browse files
committed
fix(npm-audit): ensure message is a string before trimming for deprecation title (#6554)
Signed-off-by: Johannes Will <[email protected]>
1 parent 082357f commit 7a7c895

File tree

2 files changed

+24
-1
lines changed

2 files changed

+24
-1
lines changed

.yarn/versions/e8aaefb7.yml

Lines changed: 23 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,23 @@
1+
releases:
2+
"@yarnpkg/cli": patch
3+
"@yarnpkg/plugin-npm-cli": patch
4+
5+
declined:
6+
- "@yarnpkg/plugin-compat"
7+
- "@yarnpkg/plugin-constraints"
8+
- "@yarnpkg/plugin-dlx"
9+
- "@yarnpkg/plugin-essentials"
10+
- "@yarnpkg/plugin-init"
11+
- "@yarnpkg/plugin-interactive-tools"
12+
- "@yarnpkg/plugin-nm"
13+
- "@yarnpkg/plugin-pack"
14+
- "@yarnpkg/plugin-patch"
15+
- "@yarnpkg/plugin-pnp"
16+
- "@yarnpkg/plugin-pnpm"
17+
- "@yarnpkg/plugin-stage"
18+
- "@yarnpkg/plugin-typescript"
19+
- "@yarnpkg/plugin-version"
20+
- "@yarnpkg/plugin-workspace-tools"
21+
- "@yarnpkg/builder"
22+
- "@yarnpkg/core"
23+
- "@yarnpkg/doctor"

packages/plugin-npm-cli/sources/commands/npm/audit.ts

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -161,7 +161,7 @@ export default class NpmAuditCommand extends BaseCommand {
161161
auditResult[packageName] ??= [];
162162
auditResult[packageName].push({
163163
id: `${packageName} (deprecation)`,
164-
title: message.trim() || `This package has been deprecated.`,
164+
title: (typeof message === `string` ? message : ``).trim() || `This package has been deprecated.`,
165165
severity: npmAuditTypes.Severity.Moderate,
166166
vulnerable_versions: version,
167167
});

0 commit comments

Comments
 (0)