chore(deps): bump the npm_and_yarn group across 3 directories with 2 updates#36738
Conversation
…updates Bumps the npm_and_yarn group with 1 update in the / directory: [diff](https://github.com/kpdecker/jsdiff). Bumps the npm_and_yarn group with 1 update in the /packages/@aws-cdk-testing/framework-integ/test/aws-eks/test/integ.eks-service-account-sdk-call.js.snapshot/asset.027f028f56ccd09ca70c404bb25cae814956ca2956efb3bfd3d516f96b8b1e48 directory: [@smithy/config-resolver](https://github.com/smithy-lang/smithy-typescript/tree/HEAD/packages/config-resolver). Bumps the npm_and_yarn group with 1 update in the /packages/@aws-cdk-testing/framework-integ/test/aws-eks/test/sdk-call-integ-test-docker-app/app directory: [@smithy/config-resolver](https://github.com/smithy-lang/smithy-typescript/tree/HEAD/packages/config-resolver). Updates `diff` from 8.0.2 to 8.0.3 - [Changelog](https://github.com/kpdecker/jsdiff/blob/master/release-notes.md) - [Commits](kpdecker/jsdiff@v8.0.2...v8.0.3) Updates `@smithy/config-resolver` from 3.0.13 to 4.4.6 - [Release notes](https://github.com/smithy-lang/smithy-typescript/releases) - [Changelog](https://github.com/smithy-lang/smithy-typescript/blob/main/packages/config-resolver/CHANGELOG.md) - [Commits](https://github.com/smithy-lang/smithy-typescript/commits/@smithy/config-resolver@4.4.6/packages/config-resolver) Updates `@smithy/config-resolver` from 3.0.13 to 4.4.6 - [Release notes](https://github.com/smithy-lang/smithy-typescript/releases) - [Changelog](https://github.com/smithy-lang/smithy-typescript/blob/main/packages/config-resolver/CHANGELOG.md) - [Commits](https://github.com/smithy-lang/smithy-typescript/commits/@smithy/config-resolver@4.4.6/packages/config-resolver) --- updated-dependencies: - dependency-name: diff dependency-version: 8.0.3 dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: "@smithy/config-resolver" dependency-version: 4.4.6 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@smithy/config-resolver" dependency-version: 4.4.6 dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <support@github.com>
|
|
||||||||||||||
|
|
||||||||||||||
|
Thanks Dependabot! |
|
Thanks Dependabot! |
Merge Queue Status✅ The pull request has been merged at b253e12 This pull request spent 29 minutes 20 seconds in the queue, including 28 minutes 43 seconds running CI. Required conditions to merge
|
|
Thanks Dependabot! |
|
Comments on closed issues and PRs are hard for our team to see. |
Bumps the npm_and_yarn group with 1 update in the / directory: diff.
Bumps the npm_and_yarn group with 1 update in the /packages/@aws-cdk-testing/framework-integ/test/aws-eks/test/integ.eks-service-account-sdk-call.js.snapshot/asset.027f028f56ccd09ca70c404bb25cae814956ca2956efb3bfd3d516f96b8b1e48 directory: @smithy/config-resolver.
Bumps the npm_and_yarn group with 1 update in the /packages/@aws-cdk-testing/framework-integ/test/aws-eks/test/sdk-call-integ-test-docker-app/app directory: @smithy/config-resolver.
Updates
difffrom 8.0.2 to 8.0.3Changelog
Sourced from diff's changelog.
Commits
13576bf8.0.3 release (#652)1179ccbIgnore .zed (#651)949d6e2Add test for the vuln I just fixed (#650)15a1585Fix the second denial-of-service vulnerability in parsePatch (#649)de95ccaFix potentially cubic-time regex in parsePatch (#647)b9aeedeAllow more customisation of file headers in patches (#641)43c716cMerge pull request #636 from kpdecker/dependabot/npm_and_yarn/node-forge-1.3.2b8162c7Bump node-forge from 1.3.1 to 1.3.2ad6dc17Fix some bugs in the diffWords regex (and errors & ambiguities in the comment...3e1774aFix a comment typo (#633)Updates
@smithy/config-resolverfrom 3.0.13 to 4.4.6Release notes
Sourced from
@smithy/config-resolver's releases.Changelog
Sourced from
@smithy/config-resolver's changelog.... (truncated)
Commits
0e8cc49Version NPM packages7e4bbf6chore: upgrade rimraf to v5.0.10 (#1829)521d67cVersion NPM packages8b90f36Version NPM packagescc0124eVersion NPM packages07f95d9Version NPM packages372b46ffix(config-resolver): allow asterisk region with warning (#1760)472a5eaVersion NPM packages8af2d33Version NPM packages13c5cd9chore(config-resolver): add region validation cache (#1750)Updates
@smithy/config-resolverfrom 3.0.13 to 4.4.6Release notes
Sourced from
@smithy/config-resolver's releases.Changelog
Sourced from
@smithy/config-resolver's changelog.... (truncated)
Commits
0e8cc49Version NPM packages7e4bbf6chore: upgrade rimraf to v5.0.10 (#1829)521d67cVersion NPM packages8b90f36Version NPM packagescc0124eVersion NPM packages07f95d9Version NPM packages372b46ffix(config-resolver): allow asterisk region with warning (#1760)472a5eaVersion NPM packages8af2d33Version NPM packages13c5cd9chore(config-resolver): add region validation cache (#1750)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.