fix(deps): update non-major-updates (feature/beta-release)#890
Merged
Wikid82 merged 2 commits intofeature/beta-releasefrom Mar 31, 2026
Merged
Conversation
Contributor
✅ Supply Chain Verification Results✅ PASSED 📦 SBOM Summary
🔍 Vulnerability Scan
📎 Artifacts
Generated by Supply Chain Verification workflow • View Details |
Codecov Report✅ All modified and coverable lines are covered by tests. 📢 Thoughts on this report? Let us know! |
Contributor
|
You are seeing this message because GitHub Code Scanning has recently been set up for this repository, or this pull request contains the workflow file for the Code Scanning tool. What Enabling Code Scanning Means:
For more information about GitHub Code Scanning, check out the documentation. |
60f2079 to
ed02fed
Compare
ed02fed to
543388b
Compare
…e-non-major-updates
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
^1.0.0→^1.1.0^8.57.2→^8.58.0^8.57.2→^8.58.0^8.57.2→^8.58.0^4.1.1→^4.1.2^4.1.1→^4.1.2^4.1.1→^4.1.24b73464→4a36011v6.3.0→v6.4.0^1.13.6→^1.14.1v1.2.5→v1.2.61.1.57→1.1.58v1.14.37→v1.14.383869755→c10b806v4.34.1→v4.35.1eedab83→a899987^25.10.9→^25.10.10^6.0.5→^6.1.0^1.6.0→^1.7.024.14.0-alpine→24.14.1-alpinev46.1.6→v46.1.7v4.1.0→v4.1.1^8.57.2→^8.58.0^8.0.2→^8.0.38.0.2→8.0.3^4.1.1→^4.1.2Release Notes
eslint/css (@eslint/css)
v1.1.0Compare Source
Features
Bug Fixes
typescript-eslint/typescript-eslint (@typescript-eslint/eslint-plugin)
v8.58.0Compare Source
🚀 Features
🩹 Fixes
no-unnecessary-type-arguments(#12163)❤️ Thank You
See GitHub Releases for more information.
You can read about our versioning strategy and releases on our website.
typescript-eslint/typescript-eslint (@typescript-eslint/parser)
v8.58.0Compare Source
🚀 Features
❤️ Thank You
See GitHub Releases for more information.
You can read about our versioning strategy and releases on our website.
typescript-eslint/typescript-eslint (@typescript-eslint/utils)
v8.58.0Compare Source
🚀 Features
❤️ Thank You
See GitHub Releases for more information.
You can read about our versioning strategy and releases on our website.
vitest-dev/vitest (@vitest/coverage-istanbul)
v4.1.2Compare Source
This release bumps Vitest's
flattedversion and removes version pinning to resolveflatted's CVE related issues (#9975).🐞 Bug Fixes
setupFilesfrom parent directory - by @hi-ogawa in #9960 (7aa93)toMatchScreenshotcan't capture a stable screenshot - by @macarie in #9847 (faace)coverageConfigDefaultsvalues and types - by @Arthie in #9940 (b3c99)View changes on GitHub
actions/setup-go (actions/setup-go)
v6.4.0Compare Source
What's Changed
Enhancement
Dependency update
Documentation update
New Contributors
Full Changelog: actions/setup-go@v6...v6.4.0
axios/axios (axios)
v1.14.0Compare Source
gin-contrib/gzip (github.com/gin-contrib/gzip)
v1.2.6Compare Source
Changelog
Enhancements
873bbb8: chore(deps): upgrade golang.org/x/crypto to v0.45.0 (@appleboy)ade6e24: chore: update indirect dependencies to latest minor versions (@appleboy)fb05b2a: chore: remove bearer.yml workflow (@appleboy)941d83d: chore(deps): bump actions/checkout from 4 to 6 (@appleboy)992c35f: chore(deps): upgrade quic-go to v0.57.1 (@appleboy)728cc31: chore(ci): update golangci-lint to v2.6 (@appleboy)7dab3cb: chore: add WithMinLength option to control when responses are gzipped (#106) (@takanuva15)1984bfc: chore(deps): bump actions/cache from 4 to 5 (@appleboy)4fdf19e: chore(ci): upgrade trivy-action from 0.33.1 to 0.35.0 (@appleboy)c65ba86: chore(deps): upgrade gin to v1.12.0 and update CI Go versions (@appleboy)68f826a: chore(deps): upgrade golang.org/x/text to v0.35.0 (@appleboy)Build process updates
4c6db59: ci: integrate Trivy security scanning workflow and badge (@appleboy)68ed7ff: ci(workflow): bump goreleaser/goreleaser-action from v6 to v7 (@appleboy)Others
db4e3d0: Add Go 1.26 to GitHub Actions test matrix (@appleboy)05b2770: Update golangci-lint version to v2.9 (@appleboy)greenpau/caddy-security (github.com/greenpau/caddy-security)
v1.1.58Compare Source
Changelog
a3338baupgrade to github.com/greenpau/go-authcrunch v1.1.34mattn/go-sqlite3 (github.com/mattn/go-sqlite3)
v1.14.38Compare Source
github/codeql-action (github/codeql-action)
v4.35.1Compare Source
v4.35.0Compare Source
i18next/i18next (i18next)
v25.10.10Compare Source
NODE_ENV=production)webpro-nl/knip (knip)
v6.1.0: Release 6.1.0Compare Source
knip.nodeRuntimePathsetting (resolve #1643) (65e943c)84968bb)d5d20e5) - thanks @johnjenkins!14bc9d7) - thanks @DaniFoldi!e11c962) - thanks @nikolailehbrink!jsPluginssupport (209a9f7)869020f)filePathedge case (e79c302)5630204)v6.0.6: Release 6.0.6Compare Source
7793962)346247a)95f4431)convertPathsToAlias→compilePathMappings(resolve #1641) (ccc62d6)nodejs/node (node)
v24.14.1: 2026-03-24, Version 24.14.1 'Krypton' (LTS), @RafaelGSS prepared by @juanarbolCompare Source
This is a security release.
Notable Changes
Commits
6fae244080] - (CVE-2026-21717) build,test: test array index hash collision (Joyee Cheung) nodejs-private/node-private#828cc0910c62e] - (CVE-2026-21713) crypto: use timing-safe comparison in Web Cryptography HMAC and KMAC (Filip Skokan) nodejs-private/node-private#82280cb042cf3] - deps: update undici to 7.24.4 (Node.js GitHub Bot) #62271f5b8667dc2] - deps: update undici to 7.24.3 (Node.js GitHub Bot) #6223308852637d9] - deps: update undici to 7.22.0 (Node.js GitHub Bot) #6203561097db9fb] - deps: upgrade npm to 11.11.0 (npm team) #619949ac0f9f81e] - deps: upgrade npm to 11.10.1 (npm team) #618923dab3c4698] - deps: V8: overridedepot_toolsversion (Richard Lau) #6234487521e99d1] - deps: V8: backport1361b2a(Joyee Cheung) nodejs-private/node-private#828045013366f] - deps: V8: backport185f0fe(Joyee Cheung) nodejs-private/node-private#828af22629ea8] - deps: V8: backport0a8b1cd(snek) nodejs-private/node-private#828380ea72eef] - (CVE-2026-21710) http: use null prototype for headersDistinct/trailersDistinct (Matteo Collina) nodejs-private/node-private#821d6b6051e08] - (CVE-2026-21716) permission: include permission check on lib/fs/promises (RafaelGSS) nodejs-private/node-private#795bfdecef9da] - (CVE-2026-21715) permission: add permission check to realpath.native (RafaelGSS) nodejs-private/node-private#794c015edf313] - (CVE-2026-21714) src: handle NGHTTP2_ERR_FLOW_CONTROL error code (RafaelGSS) nodejs-private/node-private#832cba66c48a5] - (CVE-2026-21712) src: handle url crash on different url formats (RafaelGSS) nodejs-private/node-private#816df8fbfb93d] - (CVE-2026-21637) tls: wrap SNICallback invocation in try/catch (Matteo Collina) nodejs-private/node-private#819renovatebot/github-action (renovatebot/github-action)
v46.1.7Compare Source
Documentation
Miscellaneous Chores
Build System
Continuous Integration
sigstore/cosign-installer (sigstore/cosign-installer)
v4.1.1Compare Source
What's Changed
Full Changelog: sigstore/cosign-installer@v4.1.0...v4.1.1
typescript-eslint/typescript-eslint (typescript-eslint)
v8.58.0Compare Source
🚀 Features
❤️ Thank You
See GitHub Releases for more information.
You can read about our versioning strategy and releases on our website.
vitejs/vite (vite)
v8.0.3Compare Source
Features
Bug Fixes
metaidentifier insideimport.metawhen a binding namedmetaexists (#22019) (cff5f0c)Miscellaneous Chores
Tests
getCssFilesForChunk(#22016) (43fbbf9)Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.