chore(deps): bump the npm-minor-patch group with 6 updates#252
chore(deps): bump the npm-minor-patch group with 6 updates#252dependabot[bot] wants to merge 1 commit into
Conversation
Bumps the npm-minor-patch group with 6 updates: | Package | From | To | | --- | --- | --- | | [@internationalized/date](https://github.com/adobe/react-spectrum) | `3.12.1` | `3.12.2` | | [@biomejs/biome](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome) | `2.4.15` | `2.4.16` | | [@commitlint/cli](https://github.com/conventional-changelog/commitlint/tree/HEAD/@commitlint/cli) | `21.0.1` | `21.0.2` | | [@commitlint/config-conventional](https://github.com/conventional-changelog/commitlint/tree/HEAD/@commitlint/config-conventional) | `21.0.1` | `21.0.2` | | [lefthook](https://github.com/evilmartians/lefthook) | `2.1.8` | `2.1.9` | | [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react) | `1.16.0` | `1.17.0` | Updates `@internationalized/date` from 3.12.1 to 3.12.2 - [Release notes](https://github.com/adobe/react-spectrum/releases) - [Commits](https://github.com/adobe/react-spectrum/compare/@internationalized/date@3.12.1...@internationalized/date@3.12.2) Updates `@biomejs/biome` from 2.4.15 to 2.4.16 - [Release notes](https://github.com/biomejs/biome/releases) - [Changelog](https://github.com/biomejs/biome/blob/main/packages/@biomejs/biome/CHANGELOG.md) - [Commits](https://github.com/biomejs/biome/commits/@biomejs/biome@2.4.16/packages/@biomejs/biome) Updates `@commitlint/cli` from 21.0.1 to 21.0.2 - [Release notes](https://github.com/conventional-changelog/commitlint/releases) - [Changelog](https://github.com/conventional-changelog/commitlint/blob/master/@commitlint/cli/CHANGELOG.md) - [Commits](https://github.com/conventional-changelog/commitlint/commits/v21.0.2/@commitlint/cli) Updates `@commitlint/config-conventional` from 21.0.1 to 21.0.2 - [Release notes](https://github.com/conventional-changelog/commitlint/releases) - [Changelog](https://github.com/conventional-changelog/commitlint/blob/master/@commitlint/config-conventional/CHANGELOG.md) - [Commits](https://github.com/conventional-changelog/commitlint/commits/v21.0.2/@commitlint/config-conventional) Updates `lefthook` from 2.1.8 to 2.1.9 - [Release notes](https://github.com/evilmartians/lefthook/releases) - [Changelog](https://github.com/evilmartians/lefthook/blob/master/CHANGELOG.md) - [Commits](evilmartians/lefthook@v2.1.8...v2.1.9) Updates `lucide-react` from 1.16.0 to 1.17.0 - [Release notes](https://github.com/lucide-icons/lucide/releases) - [Commits](https://github.com/lucide-icons/lucide/commits/1.17.0/packages/lucide-react) --- updated-dependencies: - dependency-name: "@internationalized/date" dependency-version: 3.12.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: npm-minor-patch - dependency-name: "@biomejs/biome" dependency-version: 2.4.16 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: npm-minor-patch - dependency-name: "@commitlint/cli" dependency-version: 21.0.2 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: npm-minor-patch - dependency-name: "@commitlint/config-conventional" dependency-version: 21.0.2 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: npm-minor-patch - dependency-name: lefthook dependency-version: 2.1.9 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: npm-minor-patch - dependency-name: lucide-react dependency-version: 1.17.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: npm-minor-patch ... Signed-off-by: dependabot[bot] <support@github.com>
egdev6
left a comment
There was a problem hiding this comment.
Gracias por el update. El scope del PR está limpio y las validaciones principales pasan, pero no lo podemos mergear todavía.
El bloqueo es Security / Dependency audit: pnpm audit --audit-level high falla por una vulnerabilidad crítica en vitest (GHSA-5xrq-8626-4rwp). El audit marca vulnerable <4.1.0, y este PR deja vitest en 3.2.4, así que el check va a seguir fallando aunque reintentemos CI.
Pedido de cambio: resolver primero el upgrade de vitest a >=4.1.0, probablemente en un PR separado por ser major, y después regenerar o rebasear este grupo de updates con el audit limpio.
|
This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests. To ignore these dependencies, configure ignore rules in dependabot.yml |
Bumps the npm-minor-patch group with 6 updates:
3.12.13.12.22.4.152.4.1621.0.121.0.221.0.121.0.22.1.82.1.91.16.01.17.0Updates
@internationalized/datefrom 3.12.1 to 3.12.2Release notes
Sourced from @internationalized/date's releases.
Commits
791377fPublish7840603chore: update test util page badges (#10123)2cea5b5chore: update circleci resource classes (#10119)83e5b53chore: Omit calendar features from v3 (#10122)2c18eb6fix: Custom 454 Calendar month (#10115)ed9170ffix: ensure Tableview and ListView render their dividers and borders with the...6206fc3chore: Only export DragPreview from useDragAndDrop subpath (#10114)8e4498fdocs: add api section with slots to DragPreview (#10113)719ebb2fix: optimize locales not tree-shaking react-stately intl messages (#10111)3547c08fix: stabilise our flaky CI jobs (#10106)Updates
@biomejs/biomefrom 2.4.15 to 2.4.16Release notes
Sourced from @biomejs/biome's releases.
... (truncated)
Changelog
Sourced from @biomejs/biome's changelog.
... (truncated)
Commits
5f4ea56ci: release (#10326)de2a33cfix(core): regression in emitted types (#10478)d835303docs: remove redundant default phrase inuseConsistentObjectDefinitionsrul...4f1aaf2fix: incorrect build when using build or test (#10426)dc73b6brefactor: make plugins opt-in via feature gate (#10418)e71f584feat(useDestructuring): add options for assignment/declaration and improve di...9b1577ffix(config): support trailingCommas in overrides (#10318)Updates
@commitlint/clifrom 21.0.1 to 21.0.2Release notes
Sourced from @commitlint/cli's releases.
Changelog
Sourced from @commitlint/cli's changelog.
Commits
8069048v21.0.2121005efix: disallow same commit hash for --from and --to (#4773)Updates
@commitlint/config-conventionalfrom 21.0.1 to 21.0.2Release notes
Sourced from @commitlint/config-conventional's releases.
Changelog
Sourced from @commitlint/config-conventional's changelog.
Commits
8069048v21.0.2Updates
lefthookfrom 2.1.8 to 2.1.9Release notes
Sourced from lefthook's releases.
Changelog
Sourced from lefthook's changelog.
Commits
75f99ff2.1.9: fix install with --reset-hooks-path1d35cbachore: add pretty gradient (#1432)1bae568fix: update hooks path after resetting (#1431)22be6c5deps: May 2026 (#1415)Updates
lucide-reactfrom 1.16.0 to 1.17.0Release notes
Sourced from lucide-react's releases.
Commits
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions