3
0
Fork 0
mirror of https://github.com/Z3Prover/z3 synced 2026-08-08 06:52:26 +00:00
z3/src/api/js
Copilot a9115d9de1
Fix npm dependency security vulnerabilities in src/api/js (#10369)
Resolves 5 open Dependabot alerts in `src/api/js` by running `npm audit
fix` to update transitive dependencies in `package-lock.json`.

| Package | Severity | Issue |
|---|---|---|
| `brace-expansion` | High | DoS via exponential/unbounded expansion
([GHSA-3jxr-9vmj-r5cp](https://github.com/advisories/GHSA-3jxr-9vmj-r5cp),
[GHSA-mh99-v99m-4gvg](https://github.com/advisories/GHSA-mh99-v99m-4gvg))
|
| `js-yaml` | High | Quadratic CPU via merge-key chains
([GHSA-52cp-r559-cp3m](https://github.com/advisories/GHSA-52cp-r559-cp3m))
|
| `yaml` | Moderate | Stack overflow via deeply nested collections
([GHSA-48c2-rrv3-qjmp](https://github.com/advisories/GHSA-48c2-rrv3-qjmp))
|
| `@babel/core` | Low | Arbitrary file read via sourceMappingURL
([GHSA-4x5r-pxfx-6jf8](https://github.com/advisories/GHSA-4x5r-pxfx-6jf8))
|
| `diff` | Low | DoS in `parsePatch`/`applyPatch`
([GHSA-73rr-hh4g-fpgx](https://github.com/advisories/GHSA-73rr-hh4g-fpgx))
|

Only `package-lock.json` is modified; no direct dependencies or source
code changed.

Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com>
2026-08-03 10:56:27 -07:00
..
examples Document Loop function semantics and fix review comments 2026-02-04 22:02:58 +00:00
scripts fix(make-ts-wrapper): correct out buffer size for WASM (#9644) 2026-05-27 10:03:39 -07:00
src Export killThreads from z3-solver to allow Node.js thread cleanup (#10320) 2026-07-31 12:00:04 -07:00
.nvmrc
.prettierrc.json
jest.config.js
package-lock.json Fix npm dependency security vulnerabilities in src/api/js (#10369) 2026-08-03 10:56:27 -07:00
package.json
PUBLISHED_README.md Export killThreads from z3-solver to allow Node.js thread cleanup (#10320) 2026-07-31 12:00:04 -07:00
README.md
tsconfig.build.json
tsconfig.json
typedoc.json
TYPESCRIPT_API_ENHANCEMENTS.md Add Simplifier, Params, and ParamDescrs APIs to TypeScript bindings (#8146) 2026-01-10 19:44:24 -08:00

TypeScript Bindings

This directory contains JavaScript code to automatically derive TypeScript bindings for the C API, which are published on npm as z3-solver.

The readme for the bindings themselves is located in PUBLISHED_README.md.

Building

You'll need to have emscripten set up, along with all of its dependencies. The easiest way to do that is with emsdk. Newer versions of emscripten may break the build; you can find the version used in CI in this file.

Then run npm i to install dependencies, npm run build:ts to build the TypeScript wrapper, and npm run build:wasm to build the wasm artifact.

Build on your own

Consult the file build-wasm.ts for configurations used for building wasm.

Tests

Run npm test after building to run tests.