chore (deps): bump the patch-updates group across 1 directory with 11 updates#16
Closed
dependabot[bot] wants to merge 1 commit intomasterfrom
Closed
chore (deps): bump the patch-updates group across 1 directory with 11 updates#16dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot[bot] wants to merge 1 commit intomasterfrom
Conversation
… updates Bumps the patch-updates group with 11 updates in the / directory: | Package | From | To | | --- | --- | --- | | [@xmldom/xmldom](https://github.com/xmldom/xmldom) | `0.8.12` | `0.8.13` | | [dompurify](https://github.com/cure53/DOMPurify) | `3.4.0` | `3.4.1` | | [jimp](https://github.com/jimp-dev/jimp) | `1.6.0` | `1.6.1` | | [jsrsasign](https://github.com/kjur/jsrsasign) | `11.1.1` | `11.1.3` | | [protobufjs](https://github.com/protobufjs/protobuf.js) | `7.5.4` | `7.5.5` | | [@codemirror/view](https://github.com/codemirror/view) | `6.41.0` | `6.41.1` | | [grunt](https://github.com/gruntjs/grunt) | `1.6.1` | `1.6.2` | | [html-webpack-plugin](https://github.com/jantimon/html-webpack-plugin) | `5.6.6` | `5.6.7` | | [postcss](https://github.com/postcss/postcss) | `8.5.8` | `8.5.10` | | [terser](https://github.com/terser/terser) | `5.46.1` | `5.46.2` | | [webpack](https://github.com/webpack/webpack) | `5.106.0` | `5.106.2` | Updates `@xmldom/xmldom` from 0.8.12 to 0.8.13 - [Release notes](https://github.com/xmldom/xmldom/releases) - [Changelog](https://github.com/xmldom/xmldom/blob/master/CHANGELOG.md) - [Commits](xmldom/xmldom@0.8.12...0.8.13) Updates `dompurify` from 3.4.0 to 3.4.1 - [Release notes](https://github.com/cure53/DOMPurify/releases) - [Commits](cure53/DOMPurify@3.4.0...3.4.1) Updates `jimp` from 1.6.0 to 1.6.1 - [Release notes](https://github.com/jimp-dev/jimp/releases) - [Changelog](https://github.com/jimp-dev/jimp/blob/v1.6.1/CHANGELOG.md) - [Commits](jimp-dev/jimp@v1.6.0...v1.6.1) Updates `jsrsasign` from 11.1.1 to 11.1.3 - [Release notes](https://github.com/kjur/jsrsasign/releases) - [Changelog](https://github.com/kjur/jsrsasign/blob/master/ChangeLog.txt) - [Commits](kjur/jsrsasign@11.1.1...11.1.3) Updates `protobufjs` from 7.5.4 to 7.5.5 - [Release notes](https://github.com/protobufjs/protobuf.js/releases) - [Changelog](https://github.com/protobufjs/protobuf.js/blob/master/CHANGELOG.md) - [Commits](protobufjs/protobuf.js@protobufjs-v7.5.4...protobufjs-v7.5.5) Updates `@codemirror/view` from 6.41.0 to 6.41.1 - [Changelog](https://github.com/codemirror/view/blob/main/CHANGELOG.md) - [Commits](https://github.com/codemirror/view/commits) Updates `grunt` from 1.6.1 to 1.6.2 - [Release notes](https://github.com/gruntjs/grunt/releases) - [Changelog](https://github.com/gruntjs/grunt/blob/main/CHANGELOG) - [Commits](gruntjs/grunt@v1.6.1...v1.6.2) Updates `html-webpack-plugin` from 5.6.6 to 5.6.7 - [Release notes](https://github.com/jantimon/html-webpack-plugin/releases) - [Changelog](https://github.com/jantimon/html-webpack-plugin/blob/main/CHANGELOG.md) - [Commits](jantimon/html-webpack-plugin@v5.6.6...v5.6.7) Updates `postcss` from 8.5.8 to 8.5.10 - [Release notes](https://github.com/postcss/postcss/releases) - [Changelog](https://github.com/postcss/postcss/blob/main/CHANGELOG.md) - [Commits](postcss/postcss@8.5.8...8.5.10) Updates `terser` from 5.46.1 to 5.46.2 - [Changelog](https://github.com/terser/terser/blob/master/CHANGELOG.md) - [Commits](terser/terser@v5.46.1...v5.46.2) Updates `webpack` from 5.106.0 to 5.106.2 - [Release notes](https://github.com/webpack/webpack/releases) - [Changelog](https://github.com/webpack/webpack/blob/main/CHANGELOG.md) - [Commits](webpack/webpack@v5.106.0...v5.106.2) --- updated-dependencies: - dependency-name: "@xmldom/xmldom" dependency-version: 0.8.13 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: patch-updates - dependency-name: dompurify dependency-version: 3.4.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: patch-updates - dependency-name: jimp dependency-version: 1.6.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: patch-updates - dependency-name: jsrsasign dependency-version: 11.1.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: patch-updates - dependency-name: protobufjs dependency-version: 7.5.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: patch-updates - dependency-name: "@codemirror/view" dependency-version: 6.41.1 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: patch-updates - dependency-name: grunt dependency-version: 1.6.2 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: patch-updates - dependency-name: html-webpack-plugin dependency-version: 5.6.7 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: patch-updates - dependency-name: postcss dependency-version: 8.5.10 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: patch-updates - dependency-name: terser dependency-version: 5.46.2 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: patch-updates - dependency-name: webpack dependency-version: 5.106.2 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: patch-updates ... Signed-off-by: dependabot[bot] <support@github.com>
Author
|
Looks like these dependencies are no longer being updated by Dependabot, so this is no longer needed. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Rebasing might not happen immediately, so don't worry if this takes some time.
Note: if you make any changes to this PR yourself, they will take precedence over the rebase.
Bumps the patch-updates group with 11 updates in the / directory:
0.8.120.8.133.4.03.4.11.6.01.6.111.1.111.1.37.5.47.5.56.41.06.41.11.6.11.6.25.6.65.6.78.5.88.5.105.46.15.46.25.106.05.106.2Updates
@xmldom/xmldomfrom 0.8.12 to 0.8.13Release notes
Sourced from
@xmldom/xmldom's releases.Changelog
Sourced from
@xmldom/xmldom's changelog.Commits
e5c14800.8.139611e20style: drop unused import in test filedc4dff3docs: add 0.8.13 changelog entry842fa38fix: prevent stack overflow in normalize (GHSA-2v35-w6hq-6mfw)aeff69ftest: add normalize behavioral coverage to node.test.jscbdb0d7fix: make walkDOM iterative to prevent stack overflow (GHSA-2v35-w6hq-6mfw)0b543d3test: assert namespace declarations are isolated between siblings in serializ...c007c51refactor: migrate serializeToString to walkDOM2bb3899test: add serializeToString coverage for uncovered branchese69f38drefactor: migrate importNode to walkDOMMaintainer changes
This version was pushed to npm by karfau, a new releaser for
@xmldom/xmldomsince your current version.Updates
dompurifyfrom 3.4.0 to 3.4.1Release notes
Sourced from dompurify's releases.
Commits
5b0cdbbchore: merge main into 3.x for 3.4.1 release (#1301)09f5911test: added three more browsers to test setup (OSX, mobile)Install script changes
This version adds
preparescript that runs during installation. Review the package contents before updating.Updates
jimpfrom 1.6.0 to 1.6.1Release notes
Sourced from jimp's releases.
Changelog
Sourced from jimp's changelog.
... (truncated)
Commits
7e6a956Bump version to: v1.6.1 [skip ci]cf9ed93Update contributors [skip ci]7851672Update CHANGELOG.md [skip ci]e1bfa93Update file-type from ^16 to ^21.3.3 in@jimp/core(#1400)b6b0e41fix docs importsc943994docs: correct GitHub repo link (#1340)f3e6b9eDoc updates (closes #1342)Updates
jsrsasignfrom 11.1.1 to 11.1.3Release notes
Sourced from jsrsasign's releases.
Changelog
Sourced from jsrsasign's changelog.
... (truncated)
Commits
5d6771911.1.3 release53c0afdREADME update7933fcbREADME updatedfbc4baREADME updated568de311.1.2 release08f659ddelete sponsorship66ff9batext updated3370bftext updateUpdates
protobufjsfrom 7.5.4 to 7.5.5Release notes
Sourced from protobufjs's releases.
Changelog
Sourced from protobufjs's changelog.
Commits
b7bdfafchore: release 7.5.5ff7b2affix: filter invalid characters from the type name (#2127)086b19dfix: do not allow setting proto in Message constructor (#2126)Maintainer changes
This version was pushed to npm by fenster, a new releaser for protobufjs since your current version.
Updates
@codemirror/viewfrom 6.41.0 to 6.41.1Commits
Updates
gruntfrom 1.6.1 to 1.6.2Changelog
Sourced from grunt's changelog.
Commits
f49016e1.6.2662e097Update minimatch to 3.1.5 to fix CVEsa29fd18CI: add Node.js 24 to version matrixf757c4fUpdate linksb5aa834Merge pull request #1792 from UlisesGascon/security-md8d2dea2docs: refresh security policyaa15bdcMerge pull request #1786 from stscoundrel/ci-node-22ee5b2a3Merge pull request #1787 from gruntjs/add-commercial-supportc0e2b42Readme updates re: supportc4f037dCI: update GH actions V3 -> V4Maintainer changes
This version was pushed to npm by krinkle, a new releaser for grunt since your current version.
Updates
html-webpack-pluginfrom 5.6.6 to 5.6.7Changelog
Sourced from html-webpack-plugin's changelog.
Commits
fdef1b4chore(release): 5.6.7c862830fix: provide module/exports in VM sandbox for Node.js 25+ compatibility (#1889)0d1ff98refactor: remove lodash usage where possible (#1888)Updates
postcssfrom 8.5.8 to 8.5.10Release notes
Sourced from postcss's releases.
Changelog
Sourced from postcss's changelog.
Commits
33b9790Release 8.5.10 version536c79eEscape </style> in CSS output (#2074)afa96b2Update dependencies (#2073)effe88bTypo (#2072)3ee79a2Thread model (#2071)2e0683dCreate incident response docs (#2070)fe88ac2Release 8.5.9 versionc551632Avoid RegExp when we can use simple JS89a6b74Move SECURITY.txt for docs folder to keep GitHub page cleaner6ceb8a4Create SECURITY.mdUpdates
terserfrom 5.46.1 to 5.46.2Changelog
Sourced from terser's changelog.
Commits
b9290805.46.25a3dc6aupdate changelog8a5b478drop_unused: delete computed keys of concise methods and getters/setters. Clo...45c49c0add Error.cause to domprops. Closes #1673b5bb95edo not consider foo.bar and foo["bar"] to be equivalent. Closes #1674Updates
webpackfrom 5.106.0 to 5.106.2Release notes
Sourced from webpack's releases.
Changelog
Sourced from webpack's changelog.
Commits
0d7e3e0chore(release): new release (#20815)d5df118chore(deps): bump actions/cache in the dependencies group (#20839)5f0874bfix: make asset modules available in JS when referenced from CSS and lazy JS ...b63ab37chore(deps): bump test/test262-cases in the dependencies group (#20792)313dfc5ci: improve time for windows (#20840)a553f61test: update test262 (#20841)1ef747cfix: CSS@importshould inherit parent's exportType over parser config (#20838)485d4cechore(deps): updateopen-cli(#20834)46042b9chore(deps): no outdated strip-ansi (#20835)8c7700bfix: handle@charsetat-rules in CSS modulesDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions