Bump the production-dependencies group with 12 updates#98
Merged
danielbergholz merged 1 commit intomainfrom Apr 7, 2025
Merged
Conversation
Bumps the production-dependencies group with 12 updates: | Package | From | To | | --- | --- | --- | | [bandit](https://github.com/mtrudel/bandit) | `1.6.7` | `1.6.11` | | [cachex](https://github.com/whitfin/cachex) | `4.0.3` | `4.0.4` | | [dns_cluster](https://github.com/phoenixframework/dns_cluster) | `0.1.3` | `0.2.0` | | [ecto_sqlite3](https://github.com/elixir-sqlite/ecto_sqlite3) | `0.18.1` | `0.19.0` | | [esbuild](https://github.com/phoenixframework/esbuild) | `0.8.2` | `0.9.0` | | [phoenix](https://github.com/phoenixframework/phoenix) | `1.7.19` | `1.7.21` | | [phoenix_html](https://github.com/phoenixframework/phoenix_html) | `4.2.0` | `4.2.1` | | [phoenix_live_view](https://github.com/phoenixframework/phoenix_live_view) | `1.0.3` | `1.0.9` | | [req](https://github.com/wojtekmach/req) | `0.5.8` | `0.5.10` | | [swoosh](https://github.com/swoosh/swoosh) | `1.17.8` | `1.18.4` | | [tailwind](https://github.com/phoenixframework/tailwind) | `0.2.4` | `0.3.1` | | [telemetry_poller](https://github.com/beam-telemetry/telemetry_poller) | `1.1.0` | `1.2.0` | Updates `bandit` from 1.6.7 to 1.6.11 - [Changelog](https://github.com/mtrudel/bandit/blob/main/CHANGELOG.md) - [Commits](mtrudel/bandit@1.6.7...1.6.11) Updates `cachex` from 4.0.3 to 4.0.4 - [Release notes](https://github.com/whitfin/cachex/releases) - [Commits](whitfin/cachex@v4.0.3...v4.0.4) Updates `dns_cluster` from 0.1.3 to 0.2.0 - [Changelog](https://github.com/phoenixframework/dns_cluster/blob/main/CHANGELOG.md) - [Commits](phoenixframework/dns_cluster@v0.1.3...v0.2.0) Updates `ecto_sqlite3` from 0.18.1 to 0.19.0 - [Release notes](https://github.com/elixir-sqlite/ecto_sqlite3/releases) - [Changelog](https://github.com/elixir-sqlite/ecto_sqlite3/blob/main/CHANGELOG.md) - [Commits](elixir-sqlite/ecto_sqlite3@v0.18.1...v0.19.0) Updates `esbuild` from 0.8.2 to 0.9.0 - [Changelog](https://github.com/phoenixframework/esbuild/blob/main/CHANGELOG.md) - [Commits](phoenixframework/esbuild@v0.8.2...v0.9.0) Updates `phoenix` from 1.7.19 to 1.7.21 - [Release notes](https://github.com/phoenixframework/phoenix/releases) - [Changelog](https://github.com/phoenixframework/phoenix/blob/main/CHANGELOG.md) - [Commits](https://github.com/phoenixframework/phoenix/commits) Updates `phoenix_html` from 4.2.0 to 4.2.1 - [Changelog](https://github.com/phoenixframework/phoenix_html/blob/main/CHANGELOG.md) - [Commits](phoenixframework/phoenix_html@v4.2.0...v4.2.1) Updates `phoenix_live_view` from 1.0.3 to 1.0.9 - [Changelog](https://github.com/phoenixframework/phoenix_live_view/blob/v1.0.9/CHANGELOG.md) - [Commits](phoenixframework/phoenix_live_view@v1.0.3...v1.0.9) Updates `req` from 0.5.8 to 0.5.10 - [Release notes](https://github.com/wojtekmach/req/releases) - [Changelog](https://github.com/wojtekmach/req/blob/main/CHANGELOG.md) - [Commits](wojtekmach/req@v0.5.8...v0.5.10) Updates `swoosh` from 1.17.8 to 1.18.4 - [Release notes](https://github.com/swoosh/swoosh/releases) - [Changelog](https://github.com/swoosh/swoosh/blob/main/CHANGELOG.md) - [Commits](swoosh/swoosh@v1.17.8...v1.18.4) Updates `tailwind` from 0.2.4 to 0.3.1 - [Changelog](https://github.com/phoenixframework/tailwind/blob/main/CHANGELOG.md) - [Commits](phoenixframework/tailwind@v0.2.4...v0.3.1) Updates `telemetry_poller` from 1.1.0 to 1.2.0 - [Changelog](https://github.com/beam-telemetry/telemetry_poller/blob/main/CHANGELOG.md) - [Commits](https://github.com/beam-telemetry/telemetry_poller/commits) --- updated-dependencies: - dependency-name: bandit dependency-version: 1.6.11 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: cachex dependency-version: 4.0.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: dns_cluster dependency-version: 0.2.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: ecto_sqlite3 dependency-version: 0.19.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: esbuild dependency-version: 0.9.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: phoenix dependency-version: 1.7.21 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: phoenix_html dependency-version: 4.2.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: phoenix_live_view dependency-version: 1.0.9 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: req dependency-version: 0.5.10 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: swoosh dependency-version: 1.18.4 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: tailwind dependency-version: 0.3.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: telemetry_poller dependency-version: 1.2.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
0475425 to
d76bbb6
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the production-dependencies group with 12 updates:
1.6.71.6.114.0.34.0.40.1.30.2.00.18.10.19.00.8.20.9.01.7.191.7.214.2.04.2.11.0.31.0.90.5.80.5.101.17.81.18.40.2.40.3.11.1.01.2.0Updates
banditfrom 1.6.7 to 1.6.11Changelog
Sourced from bandit's changelog.
Commits
3b8b1a4Version bump to 1.6.115b58392Order headers (#483)8b612e1Version bump to 1.6.10db4d9dbNamespace plug process messages to look like{:bandit, msg}(#481)52ebc2fProperly track connection state during ConnectionClose frame handling4eee15bNil out compression context so we don't double close itf636dd8Bump req from 0.5.8 to 0.5.10 (#479)5167d6dVersion bump to 1.6.98e60b3dBump Thousand Island dep1b7fb61Close the deflation context after the socket close callback (#477)Updates
cachexfrom 4.0.3 to 4.0.4Release notes
Sourced from cachex's releases.
Commits
9c52af4Bump to v4.0.4688837fFix cache warmer for long running tasks (#403)5e26934Allow matching against missing cache items (#402)4391698Support Elixir 1.18 in GitHub CI (#399)dae0e1aUpdate redundant typespec (#398)361d1aaUpdate Cachex.fetch documentation (#396)0e3b982Fix incorrect specification for fetch/3f750574Update overview based on README changesefcac15Update README with minor grammar edits (#394)Updates
dns_clusterfrom 0.1.3 to 0.2.0Changelog
Sourced from dns_cluster's changelog.
Commits
188df65Release 0.2.02161d1fMerge pull request #7 from davydog187/support-multiple-queries11bd821Bump1dac479don't allow nested lists for queries982dd43revert first sentence759e5a3edit docs for clarity7c3b5ddSupport differing basenames2d3aa14expand the tests842edabfix exampled0c6808Support multiple DNS queriesUpdates
ecto_sqlite3from 0.18.1 to 0.19.0Release notes
Sourced from ecto_sqlite3's releases.
Changelog
Sourced from ecto_sqlite3's changelog.
Commits
d108903Bump to v0.19.040beb89Update locked dependencies952f38bMake map/array encoding configurable (#163)Updates
esbuildfrom 0.8.2 to 0.9.0Changelog
Sourced from esbuild's changelog.
Commits
4f85348Release v0.9.09892dddUpdate public key (#77)b01d15fRemove CAStore from lock45d1853Update Elixir requirementc83c200Remove dependency on CAStore83b786bRely on Erlang/OTP 25+ and no more on CAStore (#76)Updates
phoenixfrom 1.7.19 to 1.7.21Commits
Updates
phoenix_htmlfrom 4.2.0 to 4.2.1Changelog
Sourced from phoenix_html's changelog.
Commits
71430c1Release v4.2.11a9341eExpand documentation of options_for_select (#460)0d15b13Update ci.yml (#459)1bea177Add type to Phoenix.HTML.FormField (#458)0a11e96Merge pull request #457 from phoenixframework/sd-makeup-syntect7ccce86use makeup_syntect for highlighting JS (and diff)9007635Allow keyword list options to use nil as key and/or value (#456)df2a3f6Update ExDocUpdates
phoenix_live_viewfrom 1.0.3 to 1.0.9Changelog
Sourced from phoenix_live_view's changelog.
... (truncated)
Commits
7875688release v1.0.904e535dupdate changelog0eefc92add test for LiveViewTest uploads in nested LV026c737fix ClientProxy sync_with_root8d54070Update assetscaa6230release v1.0.882fb99cUpdate assetsca0d782update changelog0d99adcfix: allow refute_redirect to refute any redirections (#3729)8ac8e78Force remove stream elements on join patch (#3730)Updates
reqfrom 0.5.8 to 0.5.10Release notes
Sourced from req's releases.
Changelog
Sourced from req's changelog.
Commits
71e31f1Release v0.5.108db1395Fix doc since44f3384Add Req.get_headers_list/187eba81Add internal Req.Fieldsfff2a22Move code around95f07bfHide warnings105989fRelease v0.5.997e0533Req: Do not carry halt between retries (#450)2046dc5Support custom query params in Req.Utils.aws_sigv4_url/1 (#445)1cbf092Minor improvements to the documentation (#468)Updates
swooshfrom 1.17.8 to 1.18.4Release notes
Sourced from swoosh's releases.
... (truncated)
Changelog
Sourced from swoosh's changelog.
Commits
a5ced79v1.18.4b524ff3Support dark/light mode based on system theme (#1027)9db488aBump bandit from 1.6.9 to 1.6.10 (#1026)328e7abBump mail from 0.4.3 to 0.4.4 (#1025)b3f8d0bBump bandit from 1.6.8 to 1.6.9 (#1024)37880a7Update test_assertions.exe878e49v1.18.3629cc55Update Req usage, preparing for v1.0 (#1022)3290fdeupdate adapters tablef1e14bev1.18.2Updates
tailwindfrom 0.2.4 to 0.3.1Changelog
Sourced from tailwind's changelog.
Commits
dec852erelease v0.3.12bc2fdfMerge pull request #115 from phoenixframework/sd-musl-target-v3v4c0006e2Support Linux MUSL v3 and v408629c8release v0.3.08b3247dMerge branch 'next'7e1f93buse Tailwind 4.0.9 as latest44ac901don't mention 0.3 or Tailwind v4 in README yet8ad425cPass url as a string into fetch_body! as URI.parse would not succeed with a c...6f45caeMerge pull request #97 from arcanemachine/main2278885Merge pull request #110 from phoenixframework/sd-tailwind3to4Updates
telemetry_pollerfrom 1.1.0 to 1.2.0Changelog
Sourced from telemetry_poller's changelog.
Commits
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions