mirror of
https://github.com/fosrl/pangolin.git
synced 2026-05-08 21:59:09 -05:00
[PR #1953] [CLOSED] Bump the prod-patch-updates group across 1 directory with 5 updates #7582
Reference in New Issue
Block a user
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
📋 Pull Request Information
Original PR: https://github.com/fosrl/pangolin/pull/1953
Author: @dependabot[bot]
Created: 12/1/2025
Status: ❌ Closed
Base:
main← Head:dependabot/npm_and_yarn/prod-patch-updates-ade788a5c4📝 Commits (1)
873a611Bump the prod-patch-updates group across 1 directory with 5 updates📊 Changes
2 files changed (+71 additions, -48 deletions)
View changed files
📝
package-lock.json(+65 -42)📝
package.json(+6 -6)📄 Description
Bumps the prod-patch-updates group with 5 updates in the / directory:
16.0.316.0.62.0.02.0.17.0.107.0.119.11.19.11.32.8.12.8.2Updates
eslint-config-nextfrom 16.0.3 to 16.0.6Release notes
Sourced from eslint-config-next's releases.
Commits
aab1edcv16.0.689ccb9fv16.0.5d440c75v16.0.4Updates
http-errorsfrom 2.0.0 to 2.0.1Release notes
Sourced from http-errors's releases.
Changelog
Sourced from http-errors's changelog.
Commits
61aee572.0.1 (#140)6acba1fbuild(deps): bump ossf/scorecard-action from 2.4.2 to 2.4.3 (#134)d2dcbbfbuild(deps): bump github/codeql-action from 3.29.11 to 4.31.2 (#137)fa47a60build(deps): bump actions/upload-artifact from 4.6.2 to 5.0.0 (#138)09b3881build(deps): bump actions/checkout from 4.2.2 to 5.0.0 (#132)f1ad322build(deps): bump github/codeql-action from 3.29.7 to 3.29.11 (#133)109fe03build(deps-dev): bump eslint-plugin-import from 2.25.3 to 2.32.0 (#129)7a05446ci: add nodejs v18 - v24 to test matrix (#127)6dfaf49build(deps): bump github/codeql-action from 3.28.18 to 3.29.5 (#131)535aebfchore: add funding to package.json (#130)Maintainer changes
This version was pushed to npm by ulisesgascon, a new releaser for http-errors since your current version.
Updates
nodemailerfrom 7.0.10 to 7.0.11Release notes
Sourced from nodemailer's releases.
Changelog
Sourced from nodemailer's changelog.
Commits
3d17dbechore(master): release 7.0.11 (#1783)15879f8Bumped dev dependenciesb61b9c0fix: prevent stack overflow DoS in addressparser with deeply nested groupsUpdates
react-day-pickerfrom 9.11.1 to 9.11.3Release notes
Sourced from react-day-picker's releases.
Commits
567cc8aMerge branch 'main' of https://github.com/gpbl/react-day-picker26fdd03build: bump v9.11.316191b2fix: prevent selecting disabled focused days (#2860)e166841fix: ensure final week renders whenendMonthclips the calendar (#2856)98bc3eewebsite: update style and README (#2859)ce8c3bbbuild: update dev dependencies (#2857)f6d34e0website: fix playground month props sync and display (#2854)9ee9bbfbuild: bump 9.11.2f5c0425test: add setTestTime helper and safe user timers (#2852)3308e05chore(performance): memoize calendar and reuse ISO date ids in day rendering ...Updates
yamlfrom 2.8.1 to 2.8.2Release notes
Sourced from yaml's releases.
Commits
086fa6b2.8.295f01e9chore: Add funding to package.json152e204style: Apply updated Prettier rules & satisfy updated ESLint3f3378cchore: Drop unused dependency cross-envf0b9af7chore: Update to@rollup/plugin-replacev6e3cafc7chore: Update to eslint-config-prettier v10553c1b5chore: Refresh lockfile70a8db3fix: Do not double newlines for empty map values (#642)92821f2ci: Limit action permissions to minimum required95285f8fix: Serialize -0 as -0 (fixes #638)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.