-
Notifications
You must be signed in to change notification settings - Fork 93
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
chore(deps): bump the security group in /web with 9 updates #5048
Merged
replicated-ci
merged 1 commit into
main
from
dependabot/npm_and_yarn/web/security-6c2b0cf16f
Dec 14, 2024
Merged
chore(deps): bump the security group in /web with 9 updates #5048
replicated-ci
merged 1 commit into
main
from
dependabot/npm_and_yarn/web/security-6c2b0cf16f
Dec 14, 2024
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the security group in /web with 9 updates: | Package | From | To | | --- | --- | --- | | [@emotion/react](https://github.com/emotion-js/emotion) | `11.13.5` | `11.14.0` | | [@emotion/styled](https://github.com/emotion-js/emotion) | `11.13.5` | `11.14.0` | | [monaco-editor](https://github.com/microsoft/monaco-editor) | `0.52.0` | `0.52.2` | | [react-select](https://github.com/JedWatson/react-select) | `5.8.3` | `5.9.0` | | [@aws-sdk/types](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/packages/types) | `3.696.0` | `3.709.0` | | [msw](https://github.com/mswjs/msw) | `2.6.7` | `2.6.8` | | [sass](https://github.com/sass/dart-sass) | `1.82.0` | `1.83.0` | | [terser-webpack-plugin](https://github.com/webpack-contrib/terser-webpack-plugin) | `5.3.10` | `5.3.11` | | [webpack-dev-server](https://github.com/webpack/webpack-dev-server) | `5.1.0` | `5.2.0` | Updates `@emotion/react` from 11.13.5 to 11.14.0 - [Release notes](https://github.com/emotion-js/emotion/releases) - [Changelog](https://github.com/emotion-js/emotion/blob/main/CHANGELOG.md) - [Commits](https://github.com/emotion-js/emotion/compare/@emotion/[email protected]...@emotion/[email protected]) Updates `@emotion/styled` from 11.13.5 to 11.14.0 - [Release notes](https://github.com/emotion-js/emotion/releases) - [Changelog](https://github.com/emotion-js/emotion/blob/main/CHANGELOG.md) - [Commits](https://github.com/emotion-js/emotion/compare/@emotion/[email protected]...@emotion/[email protected]) Updates `monaco-editor` from 0.52.0 to 0.52.2 - [Release notes](https://github.com/microsoft/monaco-editor/releases) - [Changelog](https://github.com/microsoft/monaco-editor/blob/main/CHANGELOG.md) - [Commits](microsoft/monaco-editor@v0.52.0...v0.52.2) Updates `react-select` from 5.8.3 to 5.9.0 - [Release notes](https://github.com/JedWatson/react-select/releases) - [Changelog](https://github.com/JedWatson/react-select/blob/master/docs/CHANGELOG.md) - [Commits](https://github.com/JedWatson/react-select/compare/[email protected]@5.9.0) Updates `@aws-sdk/types` from 3.696.0 to 3.709.0 - [Release notes](https://github.com/aws/aws-sdk-js-v3/releases) - [Changelog](https://github.com/aws/aws-sdk-js-v3/blob/main/packages/types/CHANGELOG.md) - [Commits](https://github.com/aws/aws-sdk-js-v3/commits/v3.709.0/packages/types) Updates `msw` from 2.6.7 to 2.6.8 - [Release notes](https://github.com/mswjs/msw/releases) - [Changelog](https://github.com/mswjs/msw/blob/main/CHANGELOG.md) - [Commits](mswjs/msw@v2.6.7...v2.6.8) Updates `sass` from 1.82.0 to 1.83.0 - [Release notes](https://github.com/sass/dart-sass/releases) - [Changelog](https://github.com/sass/dart-sass/blob/main/CHANGELOG.md) - [Commits](sass/dart-sass@1.82.0...1.83.0) Updates `terser-webpack-plugin` from 5.3.10 to 5.3.11 - [Release notes](https://github.com/webpack-contrib/terser-webpack-plugin/releases) - [Changelog](https://github.com/webpack-contrib/terser-webpack-plugin/blob/master/CHANGELOG.md) - [Commits](webpack-contrib/terser-webpack-plugin@v5.3.10...v5.3.11) Updates `webpack-dev-server` from 5.1.0 to 5.2.0 - [Release notes](https://github.com/webpack/webpack-dev-server/releases) - [Changelog](https://github.com/webpack/webpack-dev-server/blob/master/CHANGELOG.md) - [Commits](webpack/webpack-dev-server@v5.1.0...v5.2.0) --- updated-dependencies: - dependency-name: "@emotion/react" dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: "@emotion/styled" dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: monaco-editor dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: react-select dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: "@aws-sdk/types" dependency-type: direct:development update-type: version-update:semver-minor dependency-group: security - dependency-name: msw dependency-type: direct:development update-type: version-update:semver-patch dependency-group: security - dependency-name: sass dependency-type: direct:development update-type: version-update:semver-minor dependency-group: security - dependency-name: terser-webpack-plugin dependency-type: direct:development update-type: version-update:semver-patch dependency-group: security - dependency-name: webpack-dev-server dependency-type: direct:development update-type: version-update:semver-minor dependency-group: security ... Signed-off-by: dependabot[bot] <[email protected]>
dependabot
bot
added
dependabot
javascript
Pull requests that update Javascript code
type::security
labels
Dec 14, 2024
replicated-ci
approved these changes
Dec 14, 2024
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM 👍
This PR was automatically approved and merged by the automated-prs-manager GitHub action
replicated-ci
deleted the
dependabot/npm_and_yarn/web/security-6c2b0cf16f
branch
December 14, 2024 12:10
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the security group in /web with 9 updates:
11.13.5
11.14.0
11.13.5
11.14.0
0.52.0
0.52.2
5.8.3
5.9.0
3.696.0
3.709.0
2.6.7
2.6.8
1.82.0
1.83.0
5.3.10
5.3.11
5.1.0
5.2.0
Updates
@emotion/react
from 11.13.5 to 11.14.0Release notes
Sourced from
@emotion/react
's releases.Commits
3c19ce5
Version Packages (#3280)a19d019
Convert@emotion/styled
's source code to TypeScript (#3284)5974e33
Fix JSX namespace@ts-ignores
(#3282)fc4d7bd
Convert@emotion/react
's source code to TypeScript (#3281)8dc1a6d
Convert@emotion/cache
's source code to TypeScript (#3277)282b61d
Convert@emotion/css-prettifier
's source code to TypeScript (#3278)e1bf17e
Convert@emotion/use-insertion-effect-with-fallbacks
's source code to TypeS...Updates
@emotion/styled
from 11.13.5 to 11.14.0Release notes
Sourced from
@emotion/styled
's releases.Commits
3c19ce5
Version Packages (#3280)a19d019
Convert@emotion/styled
's source code to TypeScript (#3284)5974e33
Fix JSX namespace@ts-ignores
(#3282)fc4d7bd
Convert@emotion/react
's source code to TypeScript (#3281)8dc1a6d
Convert@emotion/cache
's source code to TypeScript (#3277)282b61d
Convert@emotion/css-prettifier
's source code to TypeScript (#3278)e1bf17e
Convert@emotion/use-insertion-effect-with-fallbacks
's source code to TypeS...Updates
monaco-editor
from 0.52.0 to 0.52.2Release notes
Sourced from monaco-editor's releases.
Changelog
Sourced from monaco-editor's changelog.
Commits
404545b
Merge pull request #4777 from microsoft/hediet/b/embarrassing-rooster478c9fd
0.52.295530e5
Merge pull request #4774 from microsoft/hediet/b/subjective-galliformcdcb548
Updates changelogf2c9a45
Security releaseMaintainer changes
This version was pushed to npm by microsoft1es, a new releaser for monaco-editor since your current version.
Updates
react-select
from 5.8.3 to 5.9.0Release notes
Sourced from react-select's releases.
Commits
179b816
Version Packages (#5985)01206c3
Add peer version to include 19 (#5984)Updates
@aws-sdk/types
from 3.696.0 to 3.709.0Release notes
Sourced from
@aws-sdk/types
's releases.... (truncated)
Changelog
Sourced from
@aws-sdk/types
's changelog.Commits
fec23be
Publish v3.709.0c685950
chore(codegen): update clients for String dispatch fix (#6721)Updates
msw
from 2.6.7 to 2.6.8Release notes
Sourced from msw's releases.
Commits
de3bedf
chore(release): v2.6.800da9ca
fix(setupServer): reapply interception after callingserver.listen()
after ...e8d748e
chore(ci): fix broken restore cache keyUpdates
sass
from 1.82.0 to 1.83.0Release notes
Sourced from sass's releases.
Changelog
Sourced from sass's changelog.
Commits
f38dbb0
Merge pull request #2464 from sass/rest-param-comma0230ccf
Update pkg/sass_api/CHANGELOG.mddd9b106
Rename ArgumentInvocation and ArgumentDeclarationc45bc70
Allow a trailing comma after rest parameters and arguments219fe67
Fix static analysis issues for dart 3.6 (#2462)f9eef81
Fix links to importers in the internal documentation (#2458)1b3c7de
Represent rest parameters as properties on Parameter (#2454)7a6722c
Fix the declaration of ReturnRule._returnExpression (#2455)1536dc0
Merge pull request #2453 from sass/returna74f9c3
Enable useDefineForClassFields and fix affected TS files. (#2447)Updates
terser-webpack-plugin
from 5.3.10 to 5.3.11Release notes
Sourced from terser-webpack-plugin's releases.
Changelog
Sourced from terser-webpack-plugin's changelog.
Commits
be98c73
chore(release): 5.3.110341ad1
fix: avoid the deprecation messageff63f1a
ci: add Node.js v23 (#613)25948b4
chore: update dependencies to latest version (#607)d09ed4f
chore(deps-dev): bump ws from 7.5.9 to 7.5.10 (#606)d138e54
chore(deps-dev): bump braces from 3.0.2 to 3.0.3 (#605)56d4e21
chore: upgrade dependencies to latest version (#604)41596b7
ci: use node v22 (#602)148db9e
ci: fix (#601)24b6e64
chore: update codecov-action to v4 (#597)Updates
webpack-dev-server
from 5.1.0 to 5.2.0Release notes
Sourced from webpack-dev-server's releases.
Changelog
Sourced from webpack-dev-server's changelog.
Commits
bcb3725
chore(release): 5.2.02a1cbc6
chore: fix security (#5379)b74fc4c
chore(deps): bump the dependencies group across 1 directory with 7 updates (#...145b5d0
fix: speed up initial client bundlingb1e549f
chore(deps-dev): bump the dependencies group across 1 directory with 8 update...844eaf8
chore(deps): types (#5370)12913bb
chore(deps-dev): bump the dependencies group with 4 updates (#5359)f942a5d
chore(deps): bump the dependencies group across 1 directory with 7 updates (#...94a2443
chore(deps): bump the dependencies group across 1 directory with 9 updates (#...a11d81f
chore(deps): update (#5347)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions