Skip to content

deps(npm): bump glob from 7.2.3 to 13.0.6 - #76

Merged
Indhumathy-Loganathan merged 7 commits into
mainfrom
dependabot/npm_and_yarn/glob-13.0.6
Sep 22, 2026
Merged

Indhumathy-Loganathan merged 7 commits into
mainfrom
dependabot/npm_and_yarn/glob-13.0.6

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 21, 2026 •

Copy link
Copy Markdown
Contributor

Bumps glob from 7.2.3 to 13.0.6.

Changelog

Sourced from glob's changelog.

changeglob

13

  • Move the CLI program out to a separate package, glob-bin. Install that if you'd like to continue using glob from the command line.

12

  • Remove the unsafe --shell option. The --shell option is now ONLY supported on known shells where the behavior can be implemented safely.

11.1

GHSA-5j98-mcp5-4vw2

  • Add the --shell option for the command line, with a warning that this is unsafe. (It will be removed in v12.)
  • Add the --cmd-arg/-g as a way to safely add positional arguments to the command provided to the CLI tool.
  • Detect commands with space or quote characters on known shells, and pass positional arguments to them safely, avoiding shell:true execution.

11.0

  • Drop support for node before v20

10.4

  • Add includeChildMatches: false option
  • Export the Ignore class

10.3

  • Add --default -p flag to provide a default pattern
  • exclude symbolic links to directories when follow and nodir are both set

10.2

  • Add glob cli

10.1

  • Return '.' instead of the empty string '' when the current working directory is returned as a match.
  • Add posix: true option to return / delimited paths, even on

... (truncated)

Commits
Maintainer changes

This version was pushed to npm by isaacs, a new releaser for glob since your current version.

Install script changes

This version adds prepare script that runs during installation. Review the package contents before updating.


@dependabot @github

dependabot Bot commented on behalf of github Sep 21, 2026

Copy link
Copy Markdown
Contributor Author

Labels

The following labels could not be found: dependencies, npm. Please create them before Dependabot can add them to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@PrinceOliver

Copy link
Copy Markdown
Collaborator

@dependabot rebase

Bumps [glob](https://github.com/isaacs/node-glob) from 7.2.3 to 13.0.6.
- [Changelog](https://github.com/isaacs/node-glob/blob/main/changelog.md)
- [Commits](isaacs/node-glob@v7.2.3...v13.0.6)

---
updated-dependencies:
- dependency-name: glob
  dependency-version: 13.0.6
  dependency-type: direct:development
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/glob-13.0.6 branch from e57454f to 72a2cae Compare September 22, 2026 06:29
PrinceOliver and others added 4 commits September 22, 2026 12:45
Updated the RunGulpOnceBeforeBuild target to use 'npx' for gulp execution and modified the message text.
@github-actions

Copy link
Copy Markdown

CI Summary

Job Status
bUnit (.NET 8 / 9 / 10) ✅ Passed
Playwright ✅ Passed
NuGet vulnerability scan ✅ Passed
ESLint security ✅ Passed
XSS / unsafe markup scan ✅ Passed

Overall: ✅ All checks passed

PrinceOliver
PrinceOliver previously approved these changes Sep 22, 2026
@github-actions

Copy link
Copy Markdown

CI Summary

Job Status
bUnit (.NET 8 / 9 / 10) ✅ Passed
Playwright ✅ Passed
NuGet vulnerability scan ✅ Passed
ESLint security ✅ Passed
XSS / unsafe markup scan ✅ Passed

Overall: ✅ All checks passed

@Indhumathy-Loganathan
Indhumathy-Loganathan merged commit 025c2b3 into main Sep 22, 2026
18 of 20 checks passed
@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/glob-13.0.6 branch September 22, 2026 09:39
Indhumathy-Loganathan added a commit that referenced this pull request Sep 24, 2026
#85)

* 1047327: Temp commit for highcontrast theme

* deps(npm): bump braces and gulp (#52)

* deps(npm): bump braces and gulp

Bumps [braces](https://github.com/micromatch/braces) to 3.0.3 and updates ancestor dependency [gulp](https://github.com/gulpjs/gulp). These dependencies need to be updated together.


Updates `braces` from 2.3.2 to 3.0.3
- [Changelog](https://github.com/micromatch/braces/blob/master/CHANGELOG.md)
- [Commits](https://github.com/micromatch/braces/commits/3.0.3)

Updates `gulp` from 4.0.2 to 5.0.1
- [Release notes](https://github.com/gulpjs/gulp/releases)
- [Changelog](https://github.com/gulpjs/gulp/blob/master/CHANGELOG.md)
- [Commits](gulpjs/gulp@v4.0.2...v5.0.1)

---
updated-dependencies:
- dependency-name: braces
  dependency-version: 3.0.3
  dependency-type: indirect
- dependency-name: gulp
  dependency-version: 5.0.1
  dependency-type: direct:development
...

Signed-off-by: dependabot[bot] <support@github.com>

* Resolved the issues in the ESLint security job.

* fix(npm): regenerate package-lock.json for gulp 5.0.1

* fix(npm): add glob as direct dep for gulpfile (gulp 5)

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Indhumathy-Loganathan <indhumathy.loganathan@syncfusion.com>
Co-authored-by: Indhumathy-Loganathan <58062424+Indhumathy-Loganathan@users.noreply.github.com>
Co-authored-by: Prince Oliver <31838171+PrinceOliver@users.noreply.github.com>

* deps(npm): bump sass from 1.104.0 to 1.104.1 (#75)

Bumps [sass](https://github.com/sass/dart-sass) from 1.104.0 to 1.104.1.
- [Release notes](https://github.com/sass/dart-sass/releases)
- [Changelog](https://github.com/sass/dart-sass/blob/main/CHANGELOG.md)
- [Commits](sass/dart-sass@1.104.0...1.104.1)

---
updated-dependencies:
- dependency-name: sass
  dependency-version: 1.104.1
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

* deps(npm): bump glob from 7.2.3 to 13.0.6 (#76)

* deps(npm): bump glob from 7.2.3 to 13.0.6

Bumps [glob](https://github.com/isaacs/node-glob) from 7.2.3 to 13.0.6.
- [Changelog](https://github.com/isaacs/node-glob/blob/main/changelog.md)
- [Commits](isaacs/node-glob@v7.2.3...v13.0.6)

---
updated-dependencies:
- dependency-name: glob
  dependency-version: 13.0.6
  dependency-type: direct:development
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>

* Refactor SCSS processing in gulpfile.js

* Refactor gulp task execution in project file

Updated the RunGulpOnceBeforeBuild target to use 'npx' for gulp execution and modified the message text.

* Updated package-lock.json

* updated gulpfile.js

* updated codeql.yml

* updated working directory in codeql.yml

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Prince Oliver <31838171+PrinceOliver@users.noreply.github.com>
Co-authored-by: PrinceOliver <prince.rajarathinam@syncfusion.com>

* 1047327: Reverted temp commit for highcontrast theme.

* 1055862: Migrating samples folder and gulpfile changes from master to forked main branch.

* 1055862: Migrating source and styles folder changes from master to forked main branch.

* 1055862: Migrating the fixes resolved in master branch to github main branch.

* 1055862: Migrating the missed fixes in previous commit from master branch to github main branch.

* 1055862: Migrated dialog component related fixes and button component changes from master to github main branch.

* 1055862: Migrated numerictextbox and removed release notes changes from master to github main branch.

* 1055862: Migrated removing the release notes file from master to github main branch.

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Indhumathy-Loganathan <indhumathy.loganathan@syncfusion.com>
Co-authored-by: Indhumathy-Loganathan <58062424+Indhumathy-Loganathan@users.noreply.github.com>
Co-authored-by: Prince Oliver <31838171+PrinceOliver@users.noreply.github.com>
Co-authored-by: PrinceOliver <prince.rajarathinam@syncfusion.com>
PrinceOliver added a commit that referenced this pull request Sep 30, 2026
… browser UI (#86)

* Readiness validation related corrections included.

* Readiness validation related corrections added.

* Documents added.

* Fixed the defects identified in the audit.

* Fixed the defects identified in the audit.

* CSS isolation related corrections included.

* CycloneDX arguments corrected.

* Evidence documents for performance category included.

* Add VPAT 2.5 INT (EN 301 549) accessibility conformance report (#80)

* Add VPAT 2.5 INT (EN 301 549) accessibility conformance report

Documents the degree of conformance of the Syncfusion Toolkit for Blazor
component library to EN 301 549 v3.2.1 / WCAG 2.1 Levels A and AA.

Grounded in a static code review of all 17 public components across
six categories (Buttons, Calendars, Charts, Inputs, Popups, Notifications),
covering ARIA semantics, keyboard models, focus management, live regions,
forced-colors, and reduced-motion support. Records per-criterion
conformance levels, consumer-vs-library responsibilities, known gaps,
and an evidence index with source file paths.

* VPAT 2.5 INT v2: address evaluation-method, metadata, and standard-coverage gaps

- Add Contact Information, specific Report Date (2026-09-21), commit pin
  (3ba5024), and Applicable Standards/Guidelines table to the header
- Add Evaluation Methods section (§7) with four methods: static code review,
  Accessibility Insights FastPass+Assessment (axe-core, Edge 130, 2026-09-06),
  Playwright manual keyboard testing (23 spec files), and AT testing
  (NVDA 2024.x, JAWS 2025, Narrator on Windows 11/Edge 130)
- Add Method Limitations & Caveats and Evaluation Team Qualifications
  subsections; explicitly state no independent third-party audit was conducted
- Add WCAG 2.2 additional criteria (§8.3): 2.4.13 Focus Appearance,
  2.5.7 Dragging Movements, 2.5.8 Target Size — Minimum, 3.2.6 Consistent Help,
  3.3.7 Redundant Entry, 3.3.8 Accessible Authentication
- Add Revised Section 508 cross-reference (§8.5) mapping Chapters 3, 5, 6
  to EN 301 549 results
- Update Executive Summary with WCAG 2.2 and Section 508 conformance rows,
  evaluation-methods summary, and third-party-audit caveat
- Corroborate key criterion remarks (1.1.1, 2.1.1, 2.4.7, 4.1.2, 4.1.3) with
  runtime evidence: Playwright spec citations, NVDA/JAWS/Narrator smoke-test
  results, and Accessibility Insights FastPass findings
- Add Appendix C: Document Maintenance & Version Control (version pinning,
  document accessibility/format note, update cadence, change log)
- Add Appendix D: Remaining Manual Work Items (D1-D8) with actionable tasks
  for stale AT data re-runs, target-size measurement, VoiceOver sweep,
  contrast measurement, ITI Word template transfer, third-party audit,
  and keyboard-shortcut reference doc)
- Update TOC to reflect new sections (§7 Evaluation Methods, §8.3 WCAG 2.2,
  §8.5 Section 508, Appendices C and D)
- Fix component count (16 → 17) in About section

Report version 2 addresses all critical gaps identified in review of v1.

---------

Co-authored-by: CodeStudio <agent@codestudio.dev>

* Updated demo samples and highcontrast theme changes for Blazor Toolkit (#85)

* 1047327: Temp commit for highcontrast theme

* deps(npm): bump braces and gulp (#52)

* deps(npm): bump braces and gulp

Bumps [braces](https://github.com/micromatch/braces) to 3.0.3 and updates ancestor dependency [gulp](https://github.com/gulpjs/gulp). These dependencies need to be updated together.


Updates `braces` from 2.3.2 to 3.0.3
- [Changelog](https://github.com/micromatch/braces/blob/master/CHANGELOG.md)
- [Commits](https://github.com/micromatch/braces/commits/3.0.3)

Updates `gulp` from 4.0.2 to 5.0.1
- [Release notes](https://github.com/gulpjs/gulp/releases)
- [Changelog](https://github.com/gulpjs/gulp/blob/master/CHANGELOG.md)
- [Commits](gulpjs/gulp@v4.0.2...v5.0.1)

---
updated-dependencies:
- dependency-name: braces
  dependency-version: 3.0.3
  dependency-type: indirect
- dependency-name: gulp
  dependency-version: 5.0.1
  dependency-type: direct:development
...

Signed-off-by: dependabot[bot] <support@github.com>

* Resolved the issues in the ESLint security job.

* fix(npm): regenerate package-lock.json for gulp 5.0.1

* fix(npm): add glob as direct dep for gulpfile (gulp 5)

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Indhumathy-Loganathan <indhumathy.loganathan@syncfusion.com>
Co-authored-by: Indhumathy-Loganathan <58062424+Indhumathy-Loganathan@users.noreply.github.com>
Co-authored-by: Prince Oliver <31838171+PrinceOliver@users.noreply.github.com>

* deps(npm): bump sass from 1.104.0 to 1.104.1 (#75)

Bumps [sass](https://github.com/sass/dart-sass) from 1.104.0 to 1.104.1.
- [Release notes](https://github.com/sass/dart-sass/releases)
- [Changelog](https://github.com/sass/dart-sass/blob/main/CHANGELOG.md)
- [Commits](sass/dart-sass@1.104.0...1.104.1)

---
updated-dependencies:
- dependency-name: sass
  dependency-version: 1.104.1
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

* deps(npm): bump glob from 7.2.3 to 13.0.6 (#76)

* deps(npm): bump glob from 7.2.3 to 13.0.6

Bumps [glob](https://github.com/isaacs/node-glob) from 7.2.3 to 13.0.6.
- [Changelog](https://github.com/isaacs/node-glob/blob/main/changelog.md)
- [Commits](isaacs/node-glob@v7.2.3...v13.0.6)

---
updated-dependencies:
- dependency-name: glob
  dependency-version: 13.0.6
  dependency-type: direct:development
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>

* Refactor SCSS processing in gulpfile.js

* Refactor gulp task execution in project file

Updated the RunGulpOnceBeforeBuild target to use 'npx' for gulp execution and modified the message text.

* Updated package-lock.json

* updated gulpfile.js

* updated codeql.yml

* updated working directory in codeql.yml

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Prince Oliver <31838171+PrinceOliver@users.noreply.github.com>
Co-authored-by: PrinceOliver <prince.rajarathinam@syncfusion.com>

* 1047327: Reverted temp commit for highcontrast theme.

* 1055862: Migrating samples folder and gulpfile changes from master to forked main branch.

* 1055862: Migrating source and styles folder changes from master to forked main branch.

* 1055862: Migrating the fixes resolved in master branch to github main branch.

* 1055862: Migrating the missed fixes in previous commit from master branch to github main branch.

* 1055862: Migrated dialog component related fixes and button component changes from master to github main branch.

* 1055862: Migrated numerictextbox and removed release notes changes from master to github main branch.

* 1055862: Migrated removing the release notes file from master to github main branch.

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Indhumathy-Loganathan <indhumathy.loganathan@syncfusion.com>
Co-authored-by: Indhumathy-Loganathan <58062424+Indhumathy-Loganathan@users.noreply.github.com>
Co-authored-by: Prince Oliver <31838171+PrinceOliver@users.noreply.github.com>
Co-authored-by: PrinceOliver <prince.rajarathinam@syncfusion.com>

* Report corrections updated.

* Resolved Button issues and CI failure.

* Resolved CI failure.

* CI failure related changes included.

* CI failure resolved.

* BUnit failure resolved.

* BUnit issues resolved.

* BUnit issues resolved.

* BUnit related corrections added.

* BUnit test case failures cleared.

* BUnit and playwright test case failures cleared.

* Playwright test case failures cleared.

* Playwright test case issues cleared.

* Pack test issue resolved.

* Pack failures resolved.

* Documents were updated.

* navigation time delay reduced.

* Resolved warnings in calendar file.

* Resolved the warning in calendar day cell.

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: Prince Oliver <31838171+PrinceOliver@users.noreply.github.com>
Co-authored-by: CodeStudio <agent@codestudio.dev>
Co-authored-by: JafarAli3783 <106724001+JafarAli3783@users.noreply.github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: PrinceOliver <prince.rajarathinam@syncfusion.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants