SIGN IN SIGN UP

Bump serialize-javascript, @rollup/plugin-terser, copy-webpack-plugin and mocha in /js/web/test/e2e (#33011)

Bumps
[serialize-javascript](https://github.com/yahoo/serialize-javascript) to
7.1.2 and updates ancestor dependencies
[serialize-javascript](https://github.com/yahoo/serialize-javascript),
[@rollup/plugin-terser](https://github.com/rollup/plugins/tree/HEAD/packages/terser),
[copy-webpack-plugin](https://github.com/webpack/copy-webpack-plugin)
and [mocha](https://github.com/mochajs/mocha). These dependencies need
to be updated together.

Updates `serialize-javascript` from 6.0.2 to 7.1.2
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/yahoo/serialize-javascript/releases">serialize-javascript's
releases</a>.</em></p>
<blockquote>
<h2>v7.1.2</h2>
<p>See: <a
href="https://github.com/yahoo/serialize-javascript/security/advisories/GHSA-gfhx-hw2g-v5hg">https://github.com/yahoo/serialize-javascript/security/advisories/GHSA-gfhx-hw2g-v5hg</a></p>
<h2>v7.1.1</h2>
<h2>What's Changed</h2>
<ul>
<li>fix: fix XSS bypass via split <code>&lt;/script</code> payload
across function bodies by <a
href="https://github.com/okuryu"><code>@​okuryu</code></a> in <a
href="https://redirect.github.com/yahoo/serialize-javascript/pull/226">yahoo/serialize-javascript#226</a></li>
<li>release: v7.1.1 by <a
href="https://github.com/okuryu"><code>@​okuryu</code></a> in <a
href="https://redirect.github.com/yahoo/serialize-javascript/pull/227">yahoo/serialize-javascript#227</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/yahoo/serialize-javascript/compare/v7.1.0...v7.1.1">https://github.com/yahoo/serialize-javascript/compare/v7.1.0...v7.1.1</a></p>
<h2>v7.1.0</h2>
<h2>What's Changed</h2>
<ul>
<li>feat: add Node.js 26 to test matrix by <a
href="https://github.com/okuryu"><code>@​okuryu</code></a> in <a
href="https://redirect.github.com/yahoo/serialize-javascript/pull/224">yahoo/serialize-javascript#224</a></li>
<li>release: v7.1.0 by <a
href="https://github.com/okuryu"><code>@​okuryu</code></a> in <a
href="https://redirect.github.com/yahoo/serialize-javascript/pull/225">yahoo/serialize-javascript#225</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/yahoo/serialize-javascript/compare/v7.0.7...v7.1.0">https://github.com/yahoo/serialize-javascript/compare/v7.0.7...v7.1.0</a></p>
<h2>v7.0.7</h2>
<h2>What's Changed</h2>
<ul>
<li>fix: reject spoofed RegExp objects with non-string source property
by <a href="https://github.com/redonkulus"><code>@​redonkulus</code></a>
in <a
href="https://redirect.github.com/yahoo/serialize-javascript/pull/222">yahoo/serialize-javascript#222</a></li>
<li>release: v7.0.7 by <a
href="https://github.com/okuryu"><code>@​okuryu</code></a> in <a
href="https://redirect.github.com/yahoo/serialize-javascript/pull/223">yahoo/serialize-javascript#223</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/yahoo/serialize-javascript/compare/v7.0.6...v7.0.7">https://github.com/yahoo/serialize-javascript/compare/v7.0.6...v7.0.7</a></p>
<h2>v7.0.6</h2>
<h2>What's Changed</h2>
<ul>
<li>build(deps-dev): bump lodash from 4.17.23 to 4.18.1 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot]
in <a
href="https://redirect.github.com/yahoo/serialize-javascript/pull/215">yahoo/serialize-javascript#215</a></li>
<li>fix: reject spoofed URL objects with non-string toString() result by
<a href="https://github.com/redonkulus"><code>@​redonkulus</code></a> in
<a
href="https://redirect.github.com/yahoo/serialize-javascript/pull/217">yahoo/serialize-javascript#217</a></li>
<li>release: v7.0.6 by <a
href="https://github.com/okuryu"><code>@​okuryu</code></a> in <a
href="https://redirect.github.com/yahoo/serialize-javascript/pull/221">yahoo/serialize-javascript#221</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/yahoo/serialize-javascript/compare/v7.0.5...v7.0.6">https://github.com/yahoo/serialize-javascript/compare/v7.0.5...v7.0.6</a></p>
<h2>v7.0.5</h2>
<h3>Fixes</h3>
<ul>
<li>Improve robustness and validation for array-like object
serialization.</li>
<li>Fix an issue where certain object structures could lead to excessive
CPU usage.</li>
</ul>
<p>For more details, please see GHSA-qj8w-gfj5-8c6v.</p>
<h2>v7.0.4</h2>
<h2>What's Changed</h2>
<ul>
<li>release: v7.0.4 by <a
href="https://github.com/okuryu"><code>@​okuryu</code></a> in <a
href="https://redirect.github.com/yahoo/serialize-javascript/pull/211">yahoo/serialize-javascript#211</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/yahoo/serialize-javascript/compare/v7.0.3...v7.0.4">https://github.com/yahoo/serialize-javascript/compare/v7.0.3...v7.0.4</a></p>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/yahoo/serialize-javascript/commit/6a73fa1ddcbe4bbee8bfb12fc1ad8c086cb1334b"><code>6a73fa1</code></a>
release: v7.1.2</li>
<li><a
href="https://github.com/yahoo/serialize-javascript/commit/2bdbaaff9cb8a4639135eb24cfcd383d3fefb534"><code>2bdbaaf</code></a>
Merge commit from fork</li>
<li><a
href="https://github.com/yahoo/serialize-javascript/commit/8c8caa7066a52106fa719c6abb5dc69858c9f799"><code>8c8caa7</code></a>
release: v7.1.1</li>
<li><a
href="https://github.com/yahoo/serialize-javascript/commit/ffda9f11d946f2d161471340f92ac0b7a7208449"><code>ffda9f1</code></a>
fix: fix XSS bypass via split <code>&lt;/script</code> payload across
function bodies</li>
<li><a
href="https://github.com/yahoo/serialize-javascript/commit/739145a671afd4b81a416e15888f8f5e637d08d6"><code>739145a</code></a>
release: v7.1.0</li>
<li><a
href="https://github.com/yahoo/serialize-javascript/commit/57865edc0f3ae4fcc3c649bbb135122303519c11"><code>57865ed</code></a>
feat: add Node.js 26 to test matrix</li>
<li><a
href="https://github.com/yahoo/serialize-javascript/commit/01bec60c108143e69f6b105e443d62a13b61cbbe"><code>01bec60</code></a>
release: v7.0.7</li>
<li><a
href="https://github.com/yahoo/serialize-javascript/commit/500971592a433239011332b7f0217aa0cb011226"><code>5009715</code></a>
fix: reject spoofed RegExp objects with non-string source property</li>
<li><a
href="https://github.com/yahoo/serialize-javascript/commit/153eb437d45310f34f4b8414a4ac1f8658a622dd"><code>153eb43</code></a>
release: v7.0.6</li>
<li><a
href="https://github.com/yahoo/serialize-javascript/commit/a83d2cb9e04a85726827a23c941f03177018774b"><code>a83d2cb</code></a>
fix: reject spoofed URL objects with non-string toString() result</li>
<li>Additional commits viewable in <a
href="https://github.com/yahoo/serialize-javascript/compare/v6.0.2...v7.1.2">compare
view</a></li>
</ul>
</details>
<details>
<summary>Maintainer changes</summary>
<p>This version was pushed to npm by <a
href="https://www.npmjs.com/~GitHub%20Actions">GitHub Actions</a>, a new
releaser for serialize-javascript since your current version.</p>
</details>
<br />

Updates `@rollup/plugin-terser` from 0.4.4 to 1.0.0
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/rollup/plugins/blob/master/packages/terser/CHANGELOG.md">@​rollup/plugin-terser's
changelog</a>.</em></p>
<blockquote>
<h2>v1.0.0</h2>
<p><em>2026-03-05</em></p>
<h3>Breaking Changes</h3>
<ul>
<li>terser!: upgrade serialize-javascript to v7 and node to v20 (<a
href="https://redirect.github.com/rollup/plugins/issues/1968">#1968</a>)</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li>See full diff in <a
href="https://github.com/rollup/plugins/commits/beep-v1.0.0/packages/terser">compare
view</a></li>
</ul>
</details>
<details>
<summary>Maintainer changes</summary>
<p>This version was pushed to npm by <a
href="https://www.npmjs.com/~GitHub%20Actions">GitHub Actions</a>, a new
releaser for <code>@​rollup/plugin-terser</code> since your current
version.</p>
</details>
<br />

Updates `copy-webpack-plugin` from 12.0.2 to 14.0.0
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/webpack/copy-webpack-plugin/releases">copy-webpack-plugin's
releases</a>.</em></p>
<blockquote>
<h2>v14.0.0</h2>
<h2><a
href="https://github.com/webpack/copy-webpack-plugin/compare/v13.0.1...v14.0.0">14.0.0</a>
(2026-03-02)</h2>
<h3>⚠ BREAKING CHANGES</h3>
<ul>
<li>minimum supported <code>Node.js</code> version is
<code>20.9.0</code> (<a
href="https://redirect.github.com/webpack/copy-webpack-plugin/issues/819">#819</a>)
(<a
href="https://github.com/webpack/copy-webpack-plugin/commit/28812036cea4aa3e76e75597b0cd72eec53fe70d">2881203</a>)</li>
</ul>
<h3>Bug Fixes</h3>
<ul>
<li>update <code>serialize-javascript</code> to fix security
problems</li>
</ul>
<h2>v13.0.1</h2>
<h3><a
href="https://github.com/webpack-contrib/copy-webpack-plugin/compare/v13.0.0...v13.0.1">13.0.1</a>
(2025-08-12)</h3>
<h3>Bug Fixes</h3>
<ul>
<li>better handling globs for watching (<a
href="https://redirect.github.com/webpack-contrib/copy-webpack-plugin/issues/808">#808</a>)
(<a
href="https://github.com/webpack-contrib/copy-webpack-plugin/commit/a527c8985ab1fcd32b9a581df26653268e12ce2c">a527c89</a>)</li>
</ul>
<h2>v13.0.0</h2>
<h2><a
href="https://github.com/webpack-contrib/copy-webpack-plugin/compare/v12.0.2...v13.0.0">13.0.0</a>
(2025-02-27)</h2>
<h3>⚠ BREAKING CHANGES</h3>
<ul>
<li>switch from <code>globby</code> and <code>fast-glob</code> to
<code>tinyglobby</code> (<a
href="https://redirect.github.com/webpack-contrib/copy-webpack-plugin/issues/795">#795</a>)
(<a
href="https://github.com/webpack-contrib/copy-webpack-plugin/commit/19fd937705ccb2161619e1e919f0b37b47453368">19fd937</a>)</li>
</ul>
<p>For more information please visit <a
href="https://github.com/SuperchupuDev/tinyglobby"><code>tinyglobby</code></a>.</p>
<p>The breaking change only affects the developer who used these options
- <a
href="https://github.com/sindresorhus/globby#gitignore"><code>gitignore</code></a>
and <a
href="https://github.com/sindresorhus/globby#gitignore"><code>ignoreFiles</code></a>
in the <code>globOptions</code> option.</p>
<p>Please migrate to the <a
href="https://github.com/SuperchupuDev/tinyglobby#options"><code>ignore</code></a>
option.</p>
<h3>Bug Fixes</h3>
<ul>
<li>concurrency option is limited to files now (<a
href="https://redirect.github.com/webpack-contrib/copy-webpack-plugin/issues/796">#796</a>)
(<a
href="https://github.com/webpack-contrib/copy-webpack-plugin/commit/d42469cfdc99a81f0f0ba97f6561f0e0db143994">d42469c</a>)</li>
<li>the order of patterns provided by the developer is respected</li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/webpack/copy-webpack-plugin/blob/main/CHANGELOG.md">copy-webpack-plugin's
changelog</a>.</em></p>
<blockquote>
<h2><a
href="https://github.com/webpack/copy-webpack-plugin/compare/v13.0.1...v14.0.0">14.0.0</a>
(2026-03-02)</h2>
<h3>⚠ BREAKING CHANGES</h3>
<ul>
<li>minimum supported <code>Node.js</code> version is
<code>20.9.0</code> (<a
href="https://redirect.github.com/webpack/copy-webpack-plugin/issues/819">#819</a>)
(<a
href="https://github.com/webpack/copy-webpack-plugin/commit/28812036cea4aa3e76e75597b0cd72eec53fe70d">2881203</a>)</li>
</ul>
<h3>Bug Fixes</h3>
<ul>
<li>update <code>serialize-javascript</code> to fix security
problems</li>
</ul>
<h3><a
href="https://github.com/webpack-contrib/copy-webpack-plugin/compare/v13.0.0...v13.0.1">13.0.1</a>
(2025-08-12)</h3>
<h3>Bug Fixes</h3>
<ul>
<li>better handling globs for watching (<a
href="https://redirect.github.com/webpack-contrib/copy-webpack-plugin/issues/808">#808</a>)
(<a
href="https://github.com/webpack-contrib/copy-webpack-plugin/commit/a527c8985ab1fcd32b9a581df26653268e12ce2c">a527c89</a>)</li>
</ul>
<h2><a
href="https://github.com/webpack-contrib/copy-webpack-plugin/compare/v12.0.2...v13.0.0">13.0.0</a>
(2025-02-27)</h2>
<h3>⚠ BREAKING CHANGES</h3>
<ul>
<li>switch from <code>globby</code> and <code>fast-glob</code> to
<code>tinyglobby</code> (<a
href="https://redirect.github.com/webpack-contrib/copy-webpack-plugin/issues/795">#795</a>)
(<a
href="https://github.com/webpack-contrib/copy-webpack-plugin/commit/19fd937705ccb2161619e1e919f0b37b47453368">19fd937</a>)</li>
</ul>
<p>For more information please visit <a
href="https://github.com/SuperchupuDev/tinyglobby"><code>tinyglobby</code></a>.</p>
<p>The breaking change only affects the developer who used these options
- <a
href="https://github.com/sindresorhus/globby#gitignore"><code>gitignore</code></a>
and <a
href="https://github.com/sindresorhus/globby#gitignore"><code>ignoreFiles</code></a>
in the <code>globOptions</code> option.</p>
<p>Please migrate to the <a
href="https://github.com/SuperchupuDev/tinyglobby#options"><code>ignore</code></a>
option.</p>
<h3>Bug Fixes</h3>
<ul>
<li>concurrency option is limited to files now (<a
href="https://redirect.github.com/webpack-contrib/copy-webpack-plugin/issues/796">#796</a>)
(<a
href="https://github.com/webpack-contrib/copy-webpack-plugin/commit/d42469cfdc99a81f0f0ba97f6561f0e0db143994">d42469c</a>)</li>
<li>the order of patterns provided by the developer is respected</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/webpack/copy-webpack-plugin/commit/18eb9d9fd4d01bfb886ae60ead7df184d75ba265"><code>18eb9d9</code></a>
chore(release): 14.0.0</li>
<li><a
href="https://github.com/webpack/copy-webpack-plugin/commit/28812036cea4aa3e76e75597b0cd72eec53fe70d"><code>2881203</code></a>
refactor!: minimum supported <code>Node.js</code> version is
<code>20.9.0</code> (<a
href="https://redirect.github.com/webpack/copy-webpack-plugin/issues/819">#819</a>)</li>
<li><a
href="https://github.com/webpack/copy-webpack-plugin/commit/9dc3d31182b6b240c14f38134f11960cdafda613"><code>9dc3d31</code></a>
chore(deps-dev): bump ajv from 6.12.6 to 6.14.0 (<a
href="https://redirect.github.com/webpack/copy-webpack-plugin/issues/815">#815</a>)</li>
<li><a
href="https://github.com/webpack/copy-webpack-plugin/commit/5cf5a1dc8f6d2c4c6d36825eb252109f1b763cd7"><code>5cf5a1d</code></a>
chore(deps): update (<a
href="https://redirect.github.com/webpack/copy-webpack-plugin/issues/814">#814</a>)</li>
<li><a
href="https://github.com/webpack/copy-webpack-plugin/commit/3dd5b6ee7be9ebd20c3bf12e7084e15a504ae3d8"><code>3dd5b6e</code></a>
chore(deps): bump js-yaml (<a
href="https://redirect.github.com/webpack/copy-webpack-plugin/issues/813">#813</a>)</li>
<li><a
href="https://github.com/webpack/copy-webpack-plugin/commit/9ac38bb37f6fba3592f383fe880cd448119099a6"><code>9ac38bb</code></a>
chore(deps-dev): bump lodash from 4.17.21 to 4.17.23 (<a
href="https://redirect.github.com/webpack/copy-webpack-plugin/issues/812">#812</a>)</li>
<li><a
href="https://github.com/webpack/copy-webpack-plugin/commit/6a16bac55dafc6eaad71d36d5bf6fcdd214a0f63"><code>6a16bac</code></a>
Update link to contributing guidelines in README</li>
<li><a
href="https://github.com/webpack/copy-webpack-plugin/commit/a1625f9990f876753377cf4b90ea1aabce15f7c1"><code>a1625f9</code></a>
chore: migrate from contrib (<a
href="https://redirect.github.com/webpack/copy-webpack-plugin/issues/810">#810</a>)</li>
<li><a
href="https://github.com/webpack/copy-webpack-plugin/commit/9f6f20444bb25924d3eabcf92feaeadf728b5ab7"><code>9f6f204</code></a>
chore: update github actions/checkout from v4 to v5 (<a
href="https://redirect.github.com/webpack/copy-webpack-plugin/issues/809">#809</a>)</li>
<li><a
href="https://github.com/webpack/copy-webpack-plugin/commit/73a30bcabd31457674d818553aa64ebe54f4c064"><code>73a30bc</code></a>
chore(release): 13.0.1</li>
<li>Additional commits viewable in <a
href="https://github.com/webpack/copy-webpack-plugin/compare/v12.0.2...v14.0.0">compare
view</a></li>
</ul>
</details>
<details>
<summary>Install script changes</summary>
<p>This version modifies <code>prepare</code> script that runs during
installation. Review the package contents before updating.</p>
</details>
<br />

Updates `mocha` from 10.8.2 to 12.0.2
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/mochajs/mocha/releases">mocha's
releases</a>.</em></p>
<blockquote>
<h2>v12.0.2</h2>
<h2><a
href="https://github.com/mochajs/mocha/compare/v12.0.1...v12.0.2">12.0.2</a>
(2026-09-17)</h2>
<h3>🩹 Fixes</h3>
<ul>
<li>fail nested tests on beforeEach failure (<a
href="https://redirect.github.com/mochajs/mocha/issues/6292">#6292</a>)
(<a
href="https://github.com/mochajs/mocha/commit/a75b43b0d69fb0529945bc71aaca9a1a5dc24188">a75b43b</a>)</li>
<li>give CLI reporter-option precedence over config file (<a
href="https://redirect.github.com/mochajs/mocha/issues/6331">#6331</a>)
(<a
href="https://github.com/mochajs/mocha/commit/571110f0e87a3871b7ae6cea3eb4f19101a39f2c">571110f</a>)</li>
<li>propagate spec file path on parallel worker death (<a
href="https://redirect.github.com/mochajs/mocha/issues/6268">#6268</a>)
(<a
href="https://github.com/mochajs/mocha/commit/55a544a409cc1dc8171b715ab4010c705ab53027">55a544a</a>)</li>
<li>use find-up-simple to workaround ERR_PACKAGE_PATH_NOT_EXPORTED (<a
href="https://redirect.github.com/mochajs/mocha/issues/6342">#6342</a>)
(<a
href="https://github.com/mochajs/mocha/commit/a652ff5c1b14e2476a0e81ddabf5992fb7de5c12">a652ff5</a>)</li>
<li>watch existing dirs so first run starts armed (<a
href="https://redirect.github.com/mochajs/mocha/issues/6263">#6263</a>)
(<a
href="https://github.com/mochajs/mocha/commit/f5c8acac5f556e58d6d7327e660070684b8d06bb">f5c8aca</a>)</li>
</ul>
<h3>📚 Documentation</h3>
<ul>
<li>add remaining external services (<a
href="https://redirect.github.com/mochajs/mocha/issues/6316">#6316</a>)
(<a
href="https://github.com/mochajs/mocha/commit/bfe0b5d2f93f9c3f44a0da8936884c64ddf997e0">bfe0b5d</a>)</li>
<li>update copyright year, holder, and URLs (<a
href="https://redirect.github.com/mochajs/mocha/issues/6303">#6303</a>)
(<a
href="https://github.com/mochajs/mocha/commit/288c075644caef5e4cb30223677b2f5a9784de46">288c075</a>)</li>
</ul>
<h3>🧹 Chores</h3>
<ul>
<li>add &quot;stale branch&quot; workflow (<a
href="https://redirect.github.com/mochajs/mocha/issues/6315">#6315</a>)
(<a
href="https://github.com/mochajs/mocha/commit/ad17f9f5f8f5d56e0a6b3e05aaf1290b9adf2375">ad17f9f</a>)</li>
<li>add dependency conflict detection workflow (<a
href="https://redirect.github.com/mochajs/mocha/issues/6246">#6246</a>)
(<a
href="https://github.com/mochajs/mocha/commit/ef0ae32e6ef1d90fd72d08bc3ba7b507c9057911">ef0ae32</a>)</li>
<li>add folder for reproducing issues (<a
href="https://redirect.github.com/mochajs/mocha/issues/6330">#6330</a>)
(<a
href="https://github.com/mochajs/mocha/commit/672803069c1f927103ca9ed3937c4a3e4a341550">6728030</a>)</li>
<li>add stale triage reminder for unreviewed issues (<a
href="https://redirect.github.com/mochajs/mocha/issues/6314">#6314</a>)
(<a
href="https://github.com/mochajs/mocha/commit/ee351334a007970a06ae1810a85d6cd3297fcac4">ee35133</a>)</li>
<li>auto-remove &quot;waiting for author&quot; label on author activity
(<a
href="https://redirect.github.com/mochajs/mocha/issues/6213">#6213</a>)
(<a
href="https://github.com/mochajs/mocha/commit/dbd43220b3ff3a00aed3fb6e04a44178ba04b869">dbd4322</a>)</li>
<li>convert file-unloader to ESM (<a
href="https://redirect.github.com/mochajs/mocha/issues/6294">#6294</a>)
(<a
href="https://github.com/mochajs/mocha/commit/dc73f4c7f5244911d019ace1eda4f746d6b393ce">dc73f4c</a>)</li>
<li><strong>deps:</strong> update dependency
<code>@​playwright/test</code> to v1.63.0 (<a
href="https://redirect.github.com/mochajs/mocha/issues/6299">#6299</a>)
(<a
href="https://github.com/mochajs/mocha/commit/931baa53d43fe23a05ba09a889268215e450babd">931baa5</a>)</li>
<li><strong>deps:</strong> update dependency eslint to v10.10.0 (<a
href="https://redirect.github.com/mochajs/mocha/issues/6296">#6296</a>)
(<a
href="https://github.com/mochajs/mocha/commit/3cb22d1a6e0393d88c4b173b860d9216709bfb61">3cb22d1</a>)</li>
<li><strong>deps:</strong> update dependency knip to v6.35.0 (<a
href="https://redirect.github.com/mochajs/mocha/issues/6324">#6324</a>)
(<a
href="https://github.com/mochajs/mocha/commit/a2416af29d057f1df122f5961ad030f56151ac7b">a2416af</a>)</li>
<li><strong>deps:</strong> update octoguide/bot action to v0.23.0 (<a
href="https://redirect.github.com/mochajs/mocha/issues/6304">#6304</a>)
(<a
href="https://github.com/mochajs/mocha/commit/bbe5a27ea957f1960179646c8f4a0e752a9757cc">bbe5a27</a>)</li>
<li>exclude &quot;v11.x&quot; from &quot;stale branch&quot; workflow (<a
href="https://redirect.github.com/mochajs/mocha/issues/6338">#6338</a>)
(<a
href="https://github.com/mochajs/mocha/commit/e7b7fe12499fd709302a60add0dc6e19a9a901e1">e7b7fe1</a>)</li>
<li>fix owner in auto-add workflow (<a
href="https://redirect.github.com/mochajs/mocha/issues/6309">#6309</a>)
(<a
href="https://github.com/mochajs/mocha/commit/037aa8bc39378fc87bf8d5e9c61d2a0c9a85c49e">037aa8b</a>)</li>
<li>fixup &quot;auto-add&quot; workflow (<a
href="https://redirect.github.com/mochajs/mocha/issues/6308">#6308</a>)
(<a
href="https://github.com/mochajs/mocha/commit/b3f7cbcb9915a9b83220e9bff31eb2d798cc3185">b3f7cbc</a>)</li>
<li>fixup workflow perms in-job (<a
href="https://redirect.github.com/mochajs/mocha/issues/6327">#6327</a>)
(<a
href="https://github.com/mochajs/mocha/commit/633480c976dc49d73693148b43983778e2f44f49">633480c</a>)</li>
<li>provide write perms to workflows (<a
href="https://redirect.github.com/mochajs/mocha/issues/6325">#6325</a>)
(<a
href="https://github.com/mochajs/mocha/commit/d6f6f4cd13d1bfe1a5fc53fbefff56c1825022d8">d6f6f4c</a>)</li>
<li>remove &quot;stale&quot; label on author activity (<a
href="https://redirect.github.com/mochajs/mocha/issues/6312">#6312</a>)
(<a
href="https://github.com/mochajs/mocha/commit/e60fbda5769ea693d0969646b5fcdd742b9cc873">e60fbda</a>)</li>
<li>remove unused .editorconfig file (<a
href="https://redirect.github.com/mochajs/mocha/issues/6306">#6306</a>)
(<a
href="https://github.com/mochajs/mocha/commit/880269ff709414c6015bb0aee45213ed965ca51d">880269f</a>)</li>
<li>replace find-conflicts with improved smoke versions (<a
href="https://redirect.github.com/mochajs/mocha/issues/6344">#6344</a>)
(<a
href="https://github.com/mochajs/mocha/commit/2668e712ee733c93005323ce0218853171f57449">2668e71</a>)</li>
<li>set author to Mark Wiemer (<a
href="https://redirect.github.com/mochajs/mocha/issues/6305">#6305</a>)
(<a
href="https://github.com/mochajs/mocha/commit/cd2a73057f6bce8a29dbfb1b39912ea950d31af4">cd2a730</a>)</li>
<li><strong>site:</strong> update Astro (7.3.2) and fast-uri (3.1.7) (<a
href="https://redirect.github.com/mochajs/mocha/issues/6301">#6301</a>)
(<a
href="https://github.com/mochajs/mocha/commit/a4f221333238e72532019de1bd0dcb91731a4003">a4f2213</a>)</li>
<li>stabilize <code>--parallel</code> integration suite (<a
href="https://redirect.github.com/mochajs/mocha/issues/6313">#6313</a>)
(<a
href="https://github.com/mochajs/mocha/commit/856a1ae6a8626b0ebe265fd151983c2323e9ea31">856a1ae</a>)</li>
<li>stop auto-adding PRs to project (<a
href="https://redirect.github.com/mochajs/mocha/issues/6352">#6352</a>)
(<a
href="https://github.com/mochajs/mocha/commit/a8309fd4a82f573b23a6185525cdfc18517f081d">a8309fd</a>)</li>
<li>track Codecov in issue without failing CI (<a
href="https://redirect.github.com/mochajs/mocha/issues/6323">#6323</a>)
(<a
href="https://github.com/mochajs/mocha/commit/c39f602fcec5ad9dd9f8ce20f62ba18b899e590a">c39f602</a>)</li>
<li>widen --exit detection window (<a
href="https://redirect.github.com/mochajs/mocha/issues/6293">#6293</a>)
(<a
href="https://github.com/mochajs/mocha/commit/ee3a4b1340a41d0f366e2e5628f5e5866f51b958">ee3a4b1</a>)</li>
</ul>
<h2>v12.0.1</h2>
<h2><a
href="https://github.com/mochajs/mocha/compare/v12.0.0...v12.0.1">12.0.1</a>
(2026-09-08)</h2>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/mochajs/mocha/blob/main/CHANGELOG.md">mocha's
changelog</a>.</em></p>
<blockquote>
<h2><a
href="https://github.com/mochajs/mocha/compare/v12.0.1...v12.0.2">12.0.2</a>
(2026-09-17)</h2>
<h3>🩹 Fixes</h3>
<ul>
<li>fail nested tests on beforeEach failure (<a
href="https://redirect.github.com/mochajs/mocha/issues/6292">#6292</a>)
(<a
href="https://github.com/mochajs/mocha/commit/a75b43b0d69fb0529945bc71aaca9a1a5dc24188">a75b43b</a>)</li>
<li>give CLI reporter-option precedence over config file (<a
href="https://redirect.github.com/mochajs/mocha/issues/6331">#6331</a>)
(<a
href="https://github.com/mochajs/mocha/commit/571110f0e87a3871b7ae6cea3eb4f19101a39f2c">571110f</a>)</li>
<li>propagate spec file path on parallel worker death (<a
href="https://redirect.github.com/mochajs/mocha/issues/6268">#6268</a>)
(<a
href="https://github.com/mochajs/mocha/commit/55a544a409cc1dc8171b715ab4010c705ab53027">55a544a</a>)</li>
<li>use find-up-simple to workaround ERR_PACKAGE_PATH_NOT_EXPORTED (<a
href="https://redirect.github.com/mochajs/mocha/issues/6342">#6342</a>)
(<a
href="https://github.com/mochajs/mocha/commit/a652ff5c1b14e2476a0e81ddabf5992fb7de5c12">a652ff5</a>)</li>
<li>watch existing dirs so first run starts armed (<a
href="https://redirect.github.com/mochajs/mocha/issues/6263">#6263</a>)
(<a
href="https://github.com/mochajs/mocha/commit/f5c8acac5f556e58d6d7327e660070684b8d06bb">f5c8aca</a>)</li>
</ul>
<h3>📚 Documentation</h3>
<ul>
<li>add remaining external services (<a
href="https://redirect.github.com/mochajs/mocha/issues/6316">#6316</a>)
(<a
href="https://github.com/mochajs/mocha/commit/bfe0b5d2f93f9c3f44a0da8936884c64ddf997e0">bfe0b5d</a>)</li>
<li>update copyright year, holder, and URLs (<a
href="https://redirect.github.com/mochajs/mocha/issues/6303">#6303</a>)
(<a
href="https://github.com/mochajs/mocha/commit/288c075644caef5e4cb30223677b2f5a9784de46">288c075</a>)</li>
</ul>
<h3>🧹 Chores</h3>
<ul>
<li>add &quot;stale branch&quot; workflow (<a
href="https://redirect.github.com/mochajs/mocha/issues/6315">#6315</a>)
(<a
href="https://github.com/mochajs/mocha/commit/ad17f9f5f8f5d56e0a6b3e05aaf1290b9adf2375">ad17f9f</a>)</li>
<li>add dependency conflict detection workflow (<a
href="https://redirect.github.com/mochajs/mocha/issues/6246">#6246</a>)
(<a
href="https://github.com/mochajs/mocha/commit/ef0ae32e6ef1d90fd72d08bc3ba7b507c9057911">ef0ae32</a>)</li>
<li>add folder for reproducing issues (<a
href="https://redirect.github.com/mochajs/mocha/issues/6330">#6330</a>)
(<a
href="https://github.com/mochajs/mocha/commit/672803069c1f927103ca9ed3937c4a3e4a341550">6728030</a>)</li>
<li>add stale triage reminder for unreviewed issues (<a
href="https://redirect.github.com/mochajs/mocha/issues/6314">#6314</a>)
(<a
href="https://github.com/mochajs/mocha/commit/ee351334a007970a06ae1810a85d6cd3297fcac4">ee35133</a>)</li>
<li>auto-remove &quot;waiting for author&quot; label on author activity
(<a
href="https://redirect.github.com/mochajs/mocha/issues/6213">#6213</a>)
(<a
href="https://github.com/mochajs/mocha/commit/dbd43220b3ff3a00aed3fb6e04a44178ba04b869">dbd4322</a>)</li>
<li>convert file-unloader to ESM (<a
href="https://redirect.github.com/mochajs/mocha/issues/6294">#6294</a>)
(<a
href="https://github.com/mochajs/mocha/commit/dc73f4c7f5244911d019ace1eda4f746d6b393ce">dc73f4c</a>)</li>
<li><strong>deps:</strong> update dependency
<code>@​playwright/test</code> to v1.63.0 (<a
href="https://redirect.github.com/mochajs/mocha/issues/6299">#6299</a>)
(<a
href="https://github.com/mochajs/mocha/commit/931baa53d43fe23a05ba09a889268215e450babd">931baa5</a>)</li>
<li><strong>deps:</strong> update dependency eslint to v10.10.0 (<a
href="https://redirect.github.com/mochajs/mocha/issues/6296">#6296</a>)
(<a
href="https://github.com/mochajs/mocha/commit/3cb22d1a6e0393d88c4b173b860d9216709bfb61">3cb22d1</a>)</li>
<li><strong>deps:</strong> update dependency knip to v6.35.0 (<a
href="https://redirect.github.com/mochajs/mocha/issues/6324">#6324</a>)
(<a
href="https://github.com/mochajs/mocha/commit/a2416af29d057f1df122f5961ad030f56151ac7b">a2416af</a>)</li>
<li><strong>deps:</strong> update octoguide/bot action to v0.23.0 (<a
href="https://redirect.github.com/mochajs/mocha/issues/6304">#6304</a>)
(<a
href="https://github.com/mochajs/mocha/commit/bbe5a27ea957f1960179646c8f4a0e752a9757cc">bbe5a27</a>)</li>
<li>exclude &quot;v11.x&quot; from &quot;stale branch&quot; workflow (<a
href="https://redirect.github.com/mochajs/mocha/issues/6338">#6338</a>)
(<a
href="https://github.com/mochajs/mocha/commit/e7b7fe12499fd709302a60add0dc6e19a9a901e1">e7b7fe1</a>)</li>
<li>fix owner in auto-add workflow (<a
href="https://redirect.github.com/mochajs/mocha/issues/6309">#6309</a>)
(<a
href="https://github.com/mochajs/mocha/commit/037aa8bc39378fc87bf8d5e9c61d2a0c9a85c49e">037aa8b</a>)</li>
<li>fixup &quot;auto-add&quot; workflow (<a
href="https://redirect.github.com/mochajs/mocha/issues/6308">#6308</a>)
(<a
href="https://github.com/mochajs/mocha/commit/b3f7cbcb9915a9b83220e9bff31eb2d798cc3185">b3f7cbc</a>)</li>
<li>fixup workflow perms in-job (<a
href="https://redirect.github.com/mochajs/mocha/issues/6327">#6327</a>)
(<a
href="https://github.com/mochajs/mocha/commit/633480c976dc49d73693148b43983778e2f44f49">633480c</a>)</li>
<li>provide write perms to workflows (<a
href="https://redirect.github.com/mochajs/mocha/issues/6325">#6325</a>)
(<a
href="https://github.com/mochajs/mocha/commit/d6f6f4cd13d1bfe1a5fc53fbefff56c1825022d8">d6f6f4c</a>)</li>
<li>remove &quot;stale&quot; label on author activity (<a
href="https://redirect.github.com/mochajs/mocha/issues/6312">#6312</a>)
(<a
href="https://github.com/mochajs/mocha/commit/e60fbda5769ea693d0969646b5fcdd742b9cc873">e60fbda</a>)</li>
<li>remove unused .editorconfig file (<a
href="https://redirect.github.com/mochajs/mocha/issues/6306">#6306</a>)
(<a
href="https://github.com/mochajs/mocha/commit/880269ff709414c6015bb0aee45213ed965ca51d">880269f</a>)</li>
<li>replace find-conflicts with improved smoke versions (<a
href="https://redirect.github.com/mochajs/mocha/issues/6344">#6344</a>)
(<a
href="https://github.com/mochajs/mocha/commit/2668e712ee733c93005323ce0218853171f57449">2668e71</a>)</li>
<li>set author to Mark Wiemer (<a
href="https://redirect.github.com/mochajs/mocha/issues/6305">#6305</a>)
(<a
href="https://github.com/mochajs/mocha/commit/cd2a73057f6bce8a29dbfb1b39912ea950d31af4">cd2a730</a>)</li>
<li><strong>site:</strong> update Astro (7.3.2) and fast-uri (3.1.7) (<a
href="https://redirect.github.com/mochajs/mocha/issues/6301">#6301</a>)
(<a
href="https://github.com/mochajs/mocha/commit/a4f221333238e72532019de1bd0dcb91731a4003">a4f2213</a>)</li>
<li>stabilize <code>--parallel</code> integration suite (<a
href="https://redirect.github.com/mochajs/mocha/issues/6313">#6313</a>)
(<a
href="https://github.com/mochajs/mocha/commit/856a1ae6a8626b0ebe265fd151983c2323e9ea31">856a1ae</a>)</li>
<li>stop auto-adding PRs to project (<a
href="https://redirect.github.com/mochajs/mocha/issues/6352">#6352</a>)
(<a
href="https://github.com/mochajs/mocha/commit/a8309fd4a82f573b23a6185525cdfc18517f081d">a8309fd</a>)</li>
<li>track Codecov in issue without failing CI (<a
href="https://redirect.github.com/mochajs/mocha/issues/6323">#6323</a>)
(<a
href="https://github.com/mochajs/mocha/commit/c39f602fcec5ad9dd9f8ce20f62ba18b899e590a">c39f602</a>)</li>
<li>widen --exit detection window (<a
href="https://redirect.github.com/mochajs/mocha/issues/6293">#6293</a>)
(<a
href="https://github.com/mochajs/mocha/commit/ee3a4b1340a41d0f366e2e5628f5e5866f51b958">ee3a4b1</a>)</li>
</ul>
<h2><a
href="https://github.com/mochajs/mocha/compare/v12.0.0...v12.0.1">12.0.1</a>
(2026-09-08)</h2>
<h3>🩹 Fixes</h3>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/mochajs/mocha/commit/70db1c70cfe8b6a35d3e1f6c099a614abb9ff137"><code>70db1c7</code></a>
chore(main): release 12.0.2 (<a
href="https://redirect.github.com/mochajs/mocha/issues/6300">#6300</a>)</li>
<li><a
href="https://github.com/mochajs/mocha/commit/571110f0e87a3871b7ae6cea3eb4f19101a39f2c"><code>571110f</code></a>
fix: give CLI reporter-option precedence over config file (<a
href="https://redirect.github.com/mochajs/mocha/issues/6331">#6331</a>)</li>
<li><a
href="https://github.com/mochajs/mocha/commit/a652ff5c1b14e2476a0e81ddabf5992fb7de5c12"><code>a652ff5</code></a>
fix: use find-up-simple to workaround ERR_PACKAGE_PATH_NOT_EXPORTED (<a
href="https://redirect.github.com/mochajs/mocha/issues/6342">#6342</a>)</li>
<li><a
href="https://github.com/mochajs/mocha/commit/a8309fd4a82f573b23a6185525cdfc18517f081d"><code>a8309fd</code></a>
chore: stop auto-adding PRs to project (<a
href="https://redirect.github.com/mochajs/mocha/issues/6352">#6352</a>)</li>
<li><a
href="https://github.com/mochajs/mocha/commit/2668e712ee733c93005323ce0218853171f57449"><code>2668e71</code></a>
chore: replace find-conflicts with improved smoke versions (<a
href="https://redirect.github.com/mochajs/mocha/issues/6344">#6344</a>)</li>
<li><a
href="https://github.com/mochajs/mocha/commit/672803069c1f927103ca9ed3937c4a3e4a341550"><code>6728030</code></a>
chore: add folder for reproducing issues (<a
href="https://redirect.github.com/mochajs/mocha/issues/6330">#6330</a>)</li>
<li><a
href="https://github.com/mochajs/mocha/commit/e7b7fe12499fd709302a60add0dc6e19a9a901e1"><code>e7b7fe1</code></a>
chore: exclude &quot;v11.x&quot; from &quot;stale branch&quot; workflow
(<a
href="https://redirect.github.com/mochajs/mocha/issues/6338">#6338</a>)</li>
<li><a
href="https://github.com/mochajs/mocha/commit/a923e25dca2e2fe08ffc4734a351dc47d5329e0f"><code>a923e25</code></a>
Ping maintainers on stale branch review issues (<a
href="https://redirect.github.com/mochajs/mocha/issues/6326">#6326</a>)</li>
<li><a
href="https://github.com/mochajs/mocha/commit/633480c976dc49d73693148b43983778e2f44f49"><code>633480c</code></a>
chore: fixup workflow perms in-job (<a
href="https://redirect.github.com/mochajs/mocha/issues/6327">#6327</a>)</li>
<li><a
href="https://github.com/mochajs/mocha/commit/cd2a73057f6bce8a29dbfb1b39912ea950d31af4"><code>cd2a730</code></a>
chore: set author to Mark Wiemer (<a
href="https://redirect.github.com/mochajs/mocha/issues/6305">#6305</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/mochajs/mocha/compare/v10.8.2...v12.0.2">compare
view</a></li>
</ul>
</details>
<details>
<summary>Maintainer changes</summary>
<p>This version was pushed to npm by <a
href="https://www.npmjs.com/~GitHub%20Actions">GitHub Actions</a>, a new
releaser for mocha since your current version.</p>
</details>
<br />


Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)
You can disable automated security fix PRs for this repo from the
[Security Alerts
page](https://github.com/microsoft/onnxruntime/network/alerts).

</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
D
dependabot[bot] committed
5b6183077858b54a9dece7b1bb2a39bfd41f415f
Parent: da77954
Committed by GitHub <noreply@github.com> on 10/1/2026, 2:49:34 PM