Skip to content

fix(deps): update non-major-updates (feature/beta-release)#890

Merged
Wikid82 merged 2 commits intofeature/beta-releasefrom
renovate/feature/beta-release-non-major-updates
Mar 31, 2026
Merged

fix(deps): update non-major-updates (feature/beta-release)#890
Wikid82 merged 2 commits intofeature/beta-releasefrom
renovate/feature/beta-release-non-major-updates

Conversation

@renovate
Copy link
Copy Markdown
Contributor

@renovate renovate bot commented Mar 30, 2026

This PR contains the following updates:

Package Change Age Confidence Type Update
@eslint/css ^1.0.0^1.1.0 age confidence devDependencies minor
@typescript-eslint/eslint-plugin (source) ^8.57.2^8.58.0 age confidence devDependencies minor
@typescript-eslint/parser (source) ^8.57.2^8.58.0 age confidence devDependencies minor
@typescript-eslint/utils (source) ^8.57.2^8.58.0 age confidence devDependencies minor
@vitest/coverage-istanbul (source) ^4.1.1^4.1.2 age confidence devDependencies patch
@vitest/coverage-v8 (source) ^4.1.1^4.1.2 age confidence devDependencies patch
@vitest/ui (source) ^4.1.1^4.1.2 age confidence devDependencies patch
actions/setup-go (changelog) 4b734644a36011 action digest
actions/setup-go v6.3.0v6.4.0 age confidence action minor
axios (source) ^1.13.6^1.14.1 age confidence dependencies minor
github.com/gin-contrib/gzip v1.2.5v1.2.6 age confidence require patch
github.com/greenpau/caddy-security 1.1.571.1.58 age confidence patch
github.com/mattn/go-sqlite3 v1.14.37v1.14.38 age confidence require patch
github/codeql-action (changelog) 3869755c10b806 action digest
github/codeql-action v4.34.1v4.35.1 age confidence action minor
github/codeql-action eedab83a899987 action digest
i18next (source) ^25.10.9^25.10.10 age confidence dependencies patch
knip (source) ^6.0.5^6.1.0 age confidence devDependencies minor
lucide-react (source) ^1.6.0^1.7.0 age confidence dependencies patch
node 24.14.0-alpine24.14.1-alpine age confidence stage patch
renovatebot/github-action v46.1.6v46.1.7 age confidence action patch
sigstore/cosign-installer v4.1.0v4.1.1 age confidence action patch
typescript-eslint (source) ^8.57.2^8.58.0 age confidence devDependencies minor
vite (source) ^8.0.2^8.0.3 age confidence devDependencies patch
vite (source) 8.0.28.0.3 age confidence overrides patch
vitest (source) ^4.1.1^4.1.2 age confidence devDependencies patch

Release Notes

eslint/css (@​eslint/css)

v1.1.0

Compare Source

Features
Bug Fixes
typescript-eslint/typescript-eslint (@​typescript-eslint/eslint-plugin)

v8.58.0

Compare Source

🚀 Features
🩹 Fixes
  • eslint-plugin: [prefer-regexp-exec] avoid fixing unknown RegExp flags (#​12161)
  • eslint-plugin: [no-extraneous-class] handle index signatures (#​12142)
  • eslint-plugin: crash in no-unnecessary-type-arguments (#​12163)
❤️ Thank You

See GitHub Releases for more information.

You can read about our versioning strategy and releases on our website.

typescript-eslint/typescript-eslint (@​typescript-eslint/parser)

v8.58.0

Compare Source

🚀 Features
❤️ Thank You

See GitHub Releases for more information.

You can read about our versioning strategy and releases on our website.

typescript-eslint/typescript-eslint (@​typescript-eslint/utils)

v8.58.0

Compare Source

🚀 Features
❤️ Thank You

See GitHub Releases for more information.

You can read about our versioning strategy and releases on our website.

vitest-dev/vitest (@​vitest/coverage-istanbul)

v4.1.2

Compare Source

This release bumps Vitest's flatted version and removes version pinning to resolve flatted's CVE related issues (#​9975).

   🐞 Bug Fixes
    View changes on GitHub
actions/setup-go (actions/setup-go)

v6.4.0

Compare Source

What's Changed
Enhancement
  • Add go-download-base-url input for custom Go distributions by @​gdams in #​721
Dependency update
Documentation update
New Contributors

Full Changelog: actions/setup-go@v6...v6.4.0

axios/axios (axios)

v1.14.0

Compare Source

gin-contrib/gzip (github.com/gin-contrib/gzip)

v1.2.6

Compare Source

Changelog

Enhancements
Build process updates
Others
greenpau/caddy-security (github.com/greenpau/caddy-security)

v1.1.58

Compare Source

Changelog

  • a3338ba upgrade to github.com/greenpau/go-authcrunch v1.1.34
mattn/go-sqlite3 (github.com/mattn/go-sqlite3)

v1.14.38

Compare Source

github/codeql-action (github/codeql-action)

v4.35.1

Compare Source

v4.35.0

Compare Source

i18next/i18next (i18next)

v25.10.10

Compare Source

  • feat: suppress support notice automatically in production environments (NODE_ENV=production)
webpro-nl/knip (knip)

v6.1.0: Release 6.1.0

Compare Source

v6.0.6: Release 6.0.6

Compare Source

  • Suppress issues initially to not overwhelm agent in mcp server (7793962)
  • Auto-format (346247a)
  • Fix false positive unused deps when run from workspace dir (resolve #​1642) (95f4431)
  • Move from convertPathsToAliascompilePathMappings (resolve #​1641) (ccc62d6)
nodejs/node (node)

v24.14.1: 2026-03-24, Version 24.14.1 'Krypton' (LTS), @​RafaelGSS prepared by @​juanarbol

Compare Source

This is a security release.

Notable Changes
  • (CVE-2026-21710) use null prototype for headersDistinct/trailersDistinct (Matteo Collina) - High
  • (CVE-2026-21637) wrap SNICallback invocation in try/catch (Matteo Collina) - High
  • (CVE-2026-21717) test array index hash collision (Joyee Cheung) - Medium
  • (CVE-2026-21713) use timing-safe comparison in Web Cryptography HMAC and KMAC (Filip Skokan) - Medium
  • (CVE-2026-21714) handle NGHTTP2_ERR_FLOW_CONTROL error code (RafaelGSS) - Medium
  • (CVE-2026-21712) handle url crash on different url formats (RafaelGSS) - Medium
  • (CVE-2026-21716) include permission check on lib/fs/promises (RafaelGSS) - Low
  • (CVE-2026-21715) add permission check to realpath.native (RafaelGSS) - Low
Commits
renovatebot/github-action (renovatebot/github-action)

v46.1.7

Compare Source

Documentation
  • update references to renovatebot/github-action to v46.1.6 (3afa29f)
Miscellaneous Chores
  • deps: update dependency typescript-eslint to v8.57.1 (3a47fac)
  • deps: update node.js to v24.14.1 (28bb013)
Build System
  • deps: lock file maintenance (be2fc08)
Continuous Integration
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.86.1 (8795f0b)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.86.2 (9853f69)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.87.0 (f43553b)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.87.1 (266e52c)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.89.0 (15d8db4)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.89.1 (b711f08)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.89.2 (06c1ac0)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.89.3 (4509fbc)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.89.4 (8dd874b)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.89.5 (908aecf)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.89.6 (1a40ecc)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.89.8 (82662d1)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.91.1 (40328d7)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.91.4 (977b086)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.91.5 (398a399)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.91.6 (a416aeb)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.92.1 (8c59289)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.95.0 (5312d97)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.96.0 (6016202)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.98.0 (d4812c2)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.99.0 (47f20b6)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.99.1 (dadfa2f)
sigstore/cosign-installer (sigstore/cosign-installer)

v4.1.1

Compare Source

What's Changed
  • chore: update default cosign-release to v3.0.5 in #​223

Full Changelog: sigstore/cosign-installer@v4.1.0...v4.1.1

typescript-eslint/typescript-eslint (typescript-eslint)

v8.58.0

Compare Source

🚀 Features
❤️ Thank You

See GitHub Releases for more information.

You can read about our versioning strategy and releases on our website.

vitejs/vite (vite)

v8.0.3

Compare Source

Features
Bug Fixes
  • html: cache unfiltered CSS list to prevent missing styles across entries (#​22017) (5464190)
  • module-runner: handle non-ascii characters in base64 sourcemaps (#​21985) (77c95bf)
  • module-runner: skip re-import if the runner is closed (#​22020) (ee2c2cd)
  • optimizer: scan is not resolving sub path import if used in a glob import (#​22018) (ddfe20d)
  • ssr: ssrTransform incorrectly rewrites meta identifier inside import.meta when a binding named meta exists (#​22019) (cff5f0c)
Miscellaneous Chores
Tests

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Mar 30, 2026

✅ Supply Chain Verification Results

PASSED

📦 SBOM Summary

  • Components: 1487

🔍 Vulnerability Scan

Severity Count
🔴 Critical 0
🟠 High 0
🟡 Medium 4
🟢 Low 0
Total 4

📎 Artifacts

  • SBOM (CycloneDX JSON) and Grype results available in workflow artifacts

Generated by Supply Chain Verification workflow • View Details

@codecov
Copy link
Copy Markdown

codecov bot commented Mar 30, 2026

Codecov Report

✅ All modified and coverable lines are covered by tests.

📢 Thoughts on this report? Let us know!

@github-advanced-security
Copy link
Copy Markdown
Contributor

You are seeing this message because GitHub Code Scanning has recently been set up for this repository, or this pull request contains the workflow file for the Code Scanning tool.

What Enabling Code Scanning Means:

  • The 'Security' tab will display more code scanning analysis results (e.g., for the default branch).
  • Depending on your configuration and choice of analysis tool, future pull requests will be annotated with code scanning analysis results.
  • You will be able to see the analysis results for the pull request's branch on this overview once the scans have completed and the checks have passed.

For more information about GitHub Code Scanning, check out the documentation.

@renovate renovate bot force-pushed the renovate/feature/beta-release-non-major-updates branch from 60f2079 to ed02fed Compare March 30, 2026 22:40
@renovate renovate bot force-pushed the renovate/feature/beta-release-non-major-updates branch from ed02fed to 543388b Compare March 31, 2026 01:09
@Wikid82 Wikid82 merged commit 087ae9c into feature/beta-release Mar 31, 2026
14 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants