mirror of
https://github.com/open-webui/open-webui.git
synced 2026-05-07 03:18:23 -05:00
[PR #21111] [CLOSED] chore(deps): bump the npm_and_yarn group across 1 directory with 10 updates #41563
Reference in New Issue
Block a user
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
📋 Pull Request Information
Original PR: https://github.com/open-webui/open-webui/pull/21111
Author: @dependabot[bot]
Created: 2/2/2026
Status: ❌ Closed
Base:
main← Head:dependabot/npm_and_yarn/npm_and_yarn-7a499d7aae📝 Commits (1)
841cde7chore(deps): bump the npm_and_yarn group across 1 directory with 10 updates📊 Changes
2 files changed (+207 additions, -971 deletions)
View changed files
📝
package-lock.json(+204 -968)📝
package.json(+3 -3)📄 Description
Bumps the npm_and_yarn group with 9 updates in the / directory:
4.0.04.1.07.11.07.20.06.21.26.23.02.22.42.50.14.1.04.1.14.17.214.17.236.13.06.14.17.4.37.5.76.1.06.1.16.1.06.1.2Updates
jspdffrom 4.0.0 to 4.1.0Release notes
Sourced from jspdf's releases.
Commits
02273814.1.0ae4b93fMerge commit from fork2863e5cMerge commit from forkefe54bfMerge commit from forkda291a5Merge commit from fork685e41eBump@koa/corsand local-web-server (#3951)8cc22a5Bump tmp, inquirer and karma (#3945)008b276Bump sha.js from 2.4.11 to 2.4.12 (#3946)ff66d52Bump vite from 5.4.20 to 5.4.21 in /examples/vite (#3949)bcf79f2Bump cipher-base from 1.0.4 to 1.0.7 (#3942)Updates
undicifrom 7.11.0 to 7.20.0Release notes
Sourced from undici's releases.
... (truncated)
Commits
6cc668dBumped v7.20.0 (#4792)e65fa39fix: onParserTimeout potentially accessing undefined (#4758)f1d50a2fix: MockAgent delayed response with AbortSignal (#4693) (#4772)9948d6fextractBody fixes (#4791)5a5920dtest: reduce retry-after invalid date timing flake (#4788)352c691feat: expose statusText in request() ResponseData (#4784)fecd473docs: Fix error handling in MockPool example (#4781)1edea72fix: preserve fetch stack traces (#4778)4b36fefBumped v7.19.2 (#4777)44e437dbuild(deps): bump peter-evans/create-pull-request from 7.0.8 to 8.0.0 (#4720)Maintainer changes
This version was pushed to npm by [GitHub Actions](https://www.npmjs.com/~GitHub Actions), a new releaser for undici since your current version.
Updates
undicifrom 6.21.2 to 6.23.0Release notes
Sourced from undici's releases.
... (truncated)
Commits
6cc668dBumped v7.20.0 (#4792)e65fa39fix: onParserTimeout potentially accessing undefined (#4758)f1d50a2fix: MockAgent delayed response with AbortSignal (#4693) (#4772)9948d6fextractBody fixes (#4791)5a5920dtest: reduce retry-after invalid date timing flake (#4788)352c691feat: expose statusText in request() ResponseData (#4784)fecd473docs: Fix error handling in MockPool example (#4781)1edea72fix: preserve fetch stack traces (#4778)4b36fefBumped v7.19.2 (#4777)44e437dbuild(deps): bump peter-evans/create-pull-request from 7.0.8 to 8.0.0 (#4720)Maintainer changes
This version was pushed to npm by [GitHub Actions](https://www.npmjs.com/~GitHub Actions), a new releaser for undici since your current version.
Updates
@sveltejs/kitfrom 2.22.4 to 2.50.1Release notes
Sourced from
@sveltejs/kit's releases.... (truncated)
Changelog
Sourced from
@sveltejs/kit's changelog.... (truncated)
Commits
3b2ea1bVersion Packages (#15186)2dd74c8fix: improvefieldstype for generic components (#14974)8871b54fix: preload links if href changes (#15191)e5627effix: Skip failing tests on async (#15189)46c1ebdfix: includehooks.serverandhooks.universalas entrypoints to give them...391c6f7Version Packages (#15177)36cb864Revert "Revert "breaking: removebuttonPropsfrom experimental remote form ...8a82859chore: fix lint errors (#15174)80ffb53Version Packages (#15162)8ed8155Merge commit from forkMaintainer changes
This version was pushed to npm by [GitHub Actions](https://www.npmjs.com/~GitHub Actions), a new releaser for
@sveltejs/kitsince your current version.Updates
devaluefrom 5.1.1 to 5.6.2Release notes
Sourced from devalue's releases.
... (truncated)
Changelog
Sourced from devalue's changelog.
... (truncated)
Commits
fcf4e88fix tests1d8a5eaVersion Packages (#131)1175584Merge commit from forke46afa6Merge commit from fork5e07a67Version Packages (#129)aa09604Bump js-yaml from 3.14.1 to 3.14.2 (#125)2161d44fix: add hasOwn check before calling reviver (#128)83de81dVersion Packages (#127)a3d09d4Addvalueandrootproperties inDevalueErrorinstances (#126)f4b37f3Version Packages (#124)Maintainer changes
This version was pushed to npm by [GitHub Actions](https://www.npmjs.com/~GitHub Actions), a new releaser for devalue since your current version.
Updates
js-yamlfrom 4.1.0 to 4.1.1Changelog
Sourced from js-yaml's changelog.
Commits
cc482e74.1.1 released50968b8dist rebuildd092d86lint fix383665ffix prototype pollution in merge (<<)0d3ca7aREADME.md: HTTP => HTTPS (#678)49baadddoc: 'empty' style option for !!nullba3460eFix demo link (#618)Updates
lodashfrom 4.17.21 to 4.17.23Commits
dec55b7Bump main to v4.17.23 (#6088)19c9251fix: setCacheHas JSDoc return type should be boolean (#6071)b5e6729jsdoc: Add -0 and BigInt zeros to _.compact falsey values list (#6062)edadd45Prevent prototype pollution on baseUnset function4879a7adoc: fix autoLink function, conversion of source links (#6056)9648f69chore: removeyarn.lockfile (#6053)dfa407dci: remove legacy configuration files (#6052)156e196feat: add renovate setup (#6039)933e106ci: add pipeline for Bun (#6023)072a807docs: update links related to Open JS Foundation (#5968)Updates
qsfrom 6.13.0 to 6.14.1Changelog
Sourced from qs's changelog.
Commits
3fa11a5v6.14.1a626704[Dev Deps] updatenpmignore3086902[Fix] ensure arrayLength applies to[]notation as wellfc7930e[Dev Deps] updateeslint,@ljharb/eslint-config0b06aac[Dev Deps] update@ljharb/eslint-config64951f6[Refactor]parse: extract key segment splitting helpere1bd259[Dev Deps] update@ljharb/eslint-configf4b3d39[eslint] add eslint 9 optional peer dep6e94d95[Dev Deps] updateeslint,@ljharb/eslint-config,npmignore973dc3c[actions] add workflow permissionsUpdates
tarfrom 7.4.3 to 7.5.7Changelog
Sourced from tar's changelog.
... (truncated)
Commits
4a37eb97.5.7f4a7aa9fix: properly sanitize hard links containing ..394ece67.5.67d4cc17fix race puting a Link ahead of its target File26ab9047.5.5e9a1ddbfix: do not prevent valid linkpaths within archive911c8867.5.43b1abfanormalize out unicode ligaturesa43478cremove some unused files970c58fupdate depsMaintainer changes
This version was pushed to npm by isaacs, a new releaser for tar since your current version.
Updates
vega-functionsfrom 6.1.0 to 6.1.1Release notes
Sourced from vega-functions's releases.
Commits
d67c1b7chore: bump to 6.1.1e574530chore: bump vega-cliMaintainer changes
This version was pushed to npm by hydrosquall, a new releaser for vega-functions since your current version.
Updates
vega-selectionsfrom 6.1.0 to 6.1.2Release notes
Sourced from vega-selections's releases.
Commits
18a55afchore: fix json of package.json38957ffchore: bump vegabb800e9chore: simplify gitignoreb737e03fix: runnpm pkg fixd67c1b7chore: bump to 6.1.1e574530chore: bump vega-cliMaintainer changes
This version was pushed to npm by hydrosquall, a new releaser for vega-selections since your current version.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.
🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.