Skip to content

fix: imported fixes 06-11-26 - #40895

Merged
julio-rocketchat merged 1 commit into
release-8.2.6from
backport-8.2.6-40889
Jun 11, 2026
Merged

fix: imported fixes 06-11-26#40895
julio-rocketchat merged 1 commit into
release-8.2.6from
backport-8.2.6-40889

Conversation

@dionisio-bot

@dionisio-bot dionisio-bot Bot commented Jun 11, 2026

Copy link
Copy Markdown
Contributor

Backport of #40889

Co-authored-by: Matheus Cardoso <matheus@cardo.so>
@dionisio-bot
dionisio-bot Bot requested a review from a team as a code owner June 11, 2026 14:34
@dionisio-bot
dionisio-bot Bot requested a review from julio-rocketchat June 11, 2026 14:34
@dionisio-bot dionisio-bot Bot added the backport Used to inform backported PR label Jun 11, 2026
@changeset-bot

changeset-bot Bot commented Jun 11, 2026

Copy link
Copy Markdown

🦋 Changeset detected

Latest commit: 24adf6c

The changes in this PR will be included in the next version bump.

This PR includes changesets to release 3 packages
Name Type
@rocket.chat/meteor Patch
@rocket.chat/core-typings Patch
@rocket.chat/rest-typings Patch

Not sure what this means? Click here to learn what changesets are.

Click here if you're a maintainer who wants to add another changeset to this PR

@codecov

codecov Bot commented Jun 11, 2026

Copy link
Copy Markdown

Codecov Report

❌ Patch coverage is 87.68116% with 34 lines in your changes missing coverage. Please review.
✅ Project coverage is 70.54%. Comparing base (1b86082) to head (24adf6c).

Additional details and impacted files

Impacted file tree graph

@@                Coverage Diff                @@
##           release-8.2.6   #40895      +/-   ##
=================================================
+ Coverage          70.52%   70.54%   +0.01%     
=================================================
  Files               3194     3196       +2     
  Lines             112883   113219     +336     
  Branches           20472    20483      +11     
=================================================
+ Hits               79609    79868     +259     
- Misses             31215    31284      +69     
- Partials            2059     2067       +8     
Flag Coverage Δ
e2e 60.37% <ø> (-0.03%) ⬇️
e2e-api 47.92% <5.55%> (-1.07%) ⬇️
unit 71.44% <89.25%> (+0.06%) ⬆️

Flags with carried forward coverage won't be shown. Click here to find out more.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@rc-layne

rc-layne Bot commented Jun 11, 2026

Copy link
Copy Markdown

Warning

These are security findings reported by the security scanners configured in Layne. Findings may contain false positives - review them and fix what makes sense.

Layne found 1 high issue in this PR.

View 1 finding(s)
Severity Scanner File Rule Description
🟠 High semgrep apps/meteor/app/apple/lib/handleIdentityToken.ts:42 app.config.semgrep.rules.rocketchat.ssrf-validation-bypass-without-justification SSRF validation is disabled. Ensure the URL is not user-controlled or is restricted to a known-safe allowlist.

@dionisio-bot

dionisio-bot Bot commented Jun 11, 2026

Copy link
Copy Markdown
Contributor Author

Looks like this PR is not ready to merge, because of the following issues:

  • This PR is missing the 'stat: QA assured' label
  • This PR is missing the required milestone or project

Please fix the issues and try again

If you have any trouble, please check the PR guidelines

@julio-rocketchat

Copy link
Copy Markdown
Member

/layne exception-approve LAYNE-2ddd92cdd5a7448f reason: hardcoded URL

@rc-layne

rc-layne Bot commented Jun 11, 2026

Copy link
Copy Markdown

✅ Exception recorded for LAYNE-2ddd92cdd5a7448f by @julio-rocketchat: "hardcoded URL". Re-running scan...

@julio-rocketchat
julio-rocketchat merged commit 97335af into release-8.2.6 Jun 11, 2026
42 checks passed
@julio-rocketchat
julio-rocketchat deleted the backport-8.2.6-40889 branch June 11, 2026 15:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant