chore(deps): bump braces, micromatch, terser-webpack-plugin and watchpack #1130
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps braces, micromatch, terser-webpack-plugin and watchpack. These dependencies needed to be updated together.
Updates
braces
from 3.0.2 to 3.0.3Commits
74b2db2
3.0.388f1429
update eslint. lint, fix unit tests.415d660
Snyk js braces 6838727 (#40)190510f
fix tests, skip 1 test in test/braces.expand716eb9f
readme bumpa5851e5
Merge pull request #37 from coderaiser/fix/vulnerability2092bd1
feature: braces: add maxSymbols (https://github.com/micromatch/braces/issues/...9f5b4cf
fix: vulnerability (https://security.snyk.io/vuln/SNYK-JS-BRACES-6838727)98414f9
remove funding file665ab5d
update keepEscaping doc (#27)Updates
micromatch
from 3.1.10 to 4.0.4Release notes
Sourced from micromatch's releases.
Commits
5318752
4.0.48becb55
fix: Update picomatch to fix regression #17900577f4
docs: Fix return type and better wordinga103503
chore: Regenerate README and rerun benchmarks648928e
docs(readme): fix relative link062b574
chore: Update mocha to v7 to fix security issues in its dependencies7a63a2a
4.0.388e69c0
chore: Ignore windows tests for nowe4551a7
chore: Add node 12 and 14 to tests211c6ad
chore: Fix unix testsMaintainer changes
This version was pushed to npm by danez, a new releaser for micromatch since your current version.
Updates
terser-webpack-plugin
from 1.4.5 to 5.3.10Release notes
Sourced from terser-webpack-plugin's releases.
... (truncated)
Changelog
Sourced from terser-webpack-plugin's changelog.
... (truncated)
Commits
c87ade2
chore(release): 5.3.10f650fa3
fix: bump terser to the latest stable version (#587)0403c77
chore(deps-dev): bump@babel/traverse
from 7.22.17 to 7.23.6 (#586)174d197
chore: update dependencies to the latest version (#577)1831a49
chore: update github action/setup-node (#584)25d0147
chore: update github actions/checkout (#576)fa86955
chore(deps-dev): bump word-wrap from 1.2.3 to 1.2.5 (#575)0867673
chore: update dependencies to the latest version (#574)b8cfb07
chore: upgrade dependencies to the latest version (#572)ce5a518
refactor: code (#569)Updates
watchpack
from 1.7.5 to 2.4.1Release notes
Sourced from watchpack's releases.
... (truncated)
Commits
585ebf9
chore(release): 2.4.174439b1
fix: do not report directory as initial missing on the second watch3c5eefd
test: more9563a95
fix: logic54427a1
refactor: remove debug codec708c45
fix: do not report directory as initial missing on the second watchf5baba7
chore(deps): regenerate lock file4f2f9d1
refactor: update scripts901f5a3
style: fix0c43b10
chore(deps): regenerate lock fileMaintainer changes
This version was pushed to npm by evilebottnawi, a new releaser for watchpack since your current version.
You can trigger a rebase of this PR by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)You can disable automated security fix PRs for this repo from the Security Alerts page.