Skip to content

Bump marked and hexo-renderer-marked#27

Open
dependabot[bot] wants to merge 1 commit intosourcefrom
dependabot/npm_and_yarn/marked-and-hexo-renderer-marked-4.1.0
Open

Bump marked and hexo-renderer-marked#27
dependabot[bot] wants to merge 1 commit intosourcefrom
dependabot/npm_and_yarn/marked-and-hexo-renderer-marked-4.1.0

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Sep 7, 2022

Bumps marked and hexo-renderer-marked. These dependencies needed to be updated together.
Updates marked from 0.7.0 to 4.1.0

Release notes

Sourced from marked's releases.

v4.1.0

4.1.0 (2022-08-30)

Features

v4.0.19

4.0.19 (2022-08-21)

Bug Fixes

  • make second parameter optional on lexer.inline (#2552) (f1a9608)

v4.0.18

4.0.18 (2022-07-11)

Bug Fixes

v4.0.17

4.0.17 (2022-06-13)

Bug Fixes

  • Code and heading after list without blank line (#2483) (15f3f15)

v4.0.16

4.0.16 (2022-05-17)

Bug Fixes

v4.0.15

4.0.15 (2022-05-02)

Bug Fixes

v4.0.14

4.0.14 (2022-04-11)

... (truncated)

Commits
  • 64b22d0 chore(release): 4.1.0 [skip ci]
  • 7e2ef30 🗜️ build [skip ci]
  • 994b2e6 feat: add async option (#2474)
  • 33724a3 chore(deps-dev): Bump @​semantic-release/github from 8.0.5 to 8.0.6 (#2565)
  • 587842c chore(deps-dev): Bump eslint from 8.22.0 to 8.23.0 (#2566)
  • 4f265ab chore(deps-dev): Bump eslint-plugin-promise from 6.0.0 to 6.0.1 (#2567)
  • 17ffd61 chore(deps-dev): Bump semantic-release from 19.0.4 to 19.0.5 (#2568)
  • e422d22 chore(deps-dev): Bump @​babel/core from 7.18.10 to 7.18.13 (#2569)
  • d9c0078 chore(deps-dev): Bump uglify-js from 3.16.3 to 3.17.0 (#2562)
  • d8bcf9c chore(deps-dev): Bump rollup from 2.78.0 to 2.78.1 (#2560)
  • Additional commits viewable in compare view

Updates hexo-renderer-marked from 2.0.0 to 5.0.0

Release notes

Sourced from hexo-renderer-marked's releases.

5.0.0

Breaking Changes

Refactor

Dependencies

Docs

Full Changelog: hexojs/hexo-renderer-marked@v4.1.0...5.0.0

v4.1.0

New features

CI/CD

Dependencies

  • chore(deps-dev): bump mocha from 8.4.0 to 9.0.3 (#195)

Misc

  • Upgrade to GitHub-native Dependabot (#188)

v4.0.0

Breaking Changes

... (truncated)

Commits
  • 4304601 chore: bump version from 4.1.0 to 5.0.0 (#220)
  • 9c48448 chore(deps): bump marked from 3.0.8 to 4.0.1 (#214)
  • 20e9d00 chore(deps-dev): bump eslint-config-hexo from 4.2.0 to 5.0.0 (#219)
  • 568e5e9 refactor: call parent class url tokenizer method (#218)
  • 76ee3bc chore(deps-dev): bump hexo from 5.4.0 to 6.0.0 (#217)
  • 4bc71b4 chore(deps): bump jsdom from 18.1.1 to 19.0.0 (#215)
  • ae51afc chore(deps-dev): bump eslint from 7.32.0 to 8.0.0 (#211)
  • 3bcb483 chore(deps): bump jsdom from 17.0.0 to 18.0.0 (#212)
  • 36b1c14 Explain security risk of using this plugin (#210)
  • 8767792 chore(deps): bump marked from 2.1.3 to 3.0.4 (#208)
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by yoshinorin, a new releaser for hexo-renderer-marked since your current version.


You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
  • @dependabot use these labels will set the current labels as the default for future PRs for this repo and language
  • @dependabot use these reviewers will set the current reviewers as the default for future PRs for this repo and language
  • @dependabot use these assignees will set the current assignees as the default for future PRs for this repo and language
  • @dependabot use this milestone will set the current milestone as the default for future PRs for this repo and language

You can disable automated security fix PRs for this repo from the Security Alerts page.

> **Note** > Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Sep 7, 2022
Bumps [marked](https://github.com/markedjs/marked) and [hexo-renderer-marked](https://github.com/hexojs/hexo-renderer-marked). These dependencies needed to be updated together.

Updates `marked` from 0.7.0 to 4.1.0
- [Release notes](https://github.com/markedjs/marked/releases)
- [Changelog](https://github.com/markedjs/marked/blob/master/.releaserc.json)
- [Commits](markedjs/marked@v0.7.0...v4.1.0)

Updates `hexo-renderer-marked` from 2.0.0 to 5.0.0
- [Release notes](https://github.com/hexojs/hexo-renderer-marked/releases)
- [Commits](hexojs/hexo-renderer-marked@2.0.0...5.0.0)

---
updated-dependencies:
- dependency-name: marked
  dependency-type: indirect
- dependency-name: hexo-renderer-marked
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-and-hexo-renderer-marked-4.1.0 branch from 67df973 to 08b281d Compare September 16, 2022 04:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants