forked from jupyterlab/jupyterlab
    
        
        - 
                Notifications
    You must be signed in to change notification settings 
- Fork 2
Bump the npm_and_yarn group across 2 directories with 12 updates #47
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
          
     Open
      
      
            dependabot
  wants to merge
  1
  commit into
  master
  
    
      
        
          
  
    
      Choose a base branch
      
     
    
      
        
      
      
        
          
          
        
        
          
            
              
              
              
  
           
        
        
          
            
              
              
           
        
       
     
  
        
          
            
          
            
          
        
       
    
      
from
dependabot/npm_and_yarn/npm_and_yarn-11b043ccc3
  
      
      
   
  
    
  
  
  
 
  
      
    base: master
Could not load branches
            
              
  
    Branch not found: {{ refName }}
  
            
                
      Loading
              
            Could not load tags
            
            
              Nothing to show
            
              
  
            
                
      Loading
              
            Are you sure you want to change the base?
            Some commits from the old base branch may be removed from the timeline,
            and old review comments may become outdated.
          
          Conversation
  
    
      This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
      Learn more about bidirectional Unicode characters
    
  
  
    
    Bumps the npm_and_yarn group with 11 updates in the / directory: | Package | From | To | | --- | --- | --- | | [sanitize-html](https://github.com/apostrophecms/sanitize-html) | `2.14.0` | `2.16.0` | | [@types/sanitize-html](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/sanitize-html) | `2.13.0` | `2.15.0` | | [marked](https://github.com/markedjs/marked) | `4.0.11` | `4.0.12` | | [semver](https://github.com/npm/node-semver) | `7.5.3` | `7.5.4` | | [node-fetch](https://github.com/node-fetch/node-fetch) | `2.6.8` | `2.6.9` | | [ws](https://github.com/websockets/ws) | `8.17.1` | `8.18.0` | | [vega](https://github.com/vega/vega) | `5.23.0` | `5.32.0` | | [minimatch](https://github.com/isaacs/minimatch) | `3.0.5` | `3.0.6` | | [@babel/helpers](https://github.com/babel/babel/tree/HEAD/packages/babel-helpers) | `7.14.8` | `7.27.1` | | [@babel/runtime](https://github.com/babel/babel/tree/HEAD/packages/babel-runtime) | `7.14.6` | `7.27.1` | | [dompurify](https://github.com/cure53/DOMPurify) | `2.5.7` | `2.5.8` | Bumps the npm_and_yarn group with 2 updates in the /jupyterlab/staging directory: [vega](https://github.com/vega/vega) and [@babel/runtime](https://github.com/babel/babel/tree/HEAD/packages/babel-runtime). Updates `sanitize-html` from 2.14.0 to 2.16.0 - [Changelog](https://github.com/apostrophecms/sanitize-html/blob/main/CHANGELOG.md) - [Commits](apostrophecms/sanitize-html@2.14.0...2.16.0) Updates `@types/sanitize-html` from 2.13.0 to 2.15.0 - [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases) - [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/sanitize-html) Updates `marked` from 4.0.11 to 4.0.12 - [Release notes](https://github.com/markedjs/marked/releases) - [Changelog](https://github.com/markedjs/marked/blob/master/.releaserc.json) - [Commits](markedjs/marked@v4.0.11...v4.0.12) Updates `semver` from 7.5.3 to 7.5.4 - [Release notes](https://github.com/npm/node-semver/releases) - [Changelog](https://github.com/npm/node-semver/blob/main/CHANGELOG.md) - [Commits](npm/node-semver@v7.5.3...v7.5.4) Updates `node-fetch` from 2.6.8 to 2.6.9 - [Release notes](https://github.com/node-fetch/node-fetch/releases) - [Commits](node-fetch/node-fetch@v2.6.8...v2.6.9) Updates `ws` from 8.17.1 to 8.18.0 - [Release notes](https://github.com/websockets/ws/releases) - [Commits](websockets/ws@8.17.1...8.18.0) Updates `vega` from 5.23.0 to 5.32.0 - [Release notes](https://github.com/vega/vega/releases) - [Commits](vega/vega@v5.23.0...v5.32.0) Updates `minimatch` from 3.0.5 to 3.0.6 - [Changelog](https://github.com/isaacs/minimatch/blob/main/changelog.md) - [Commits](isaacs/minimatch@v3.0.5...v3.0.6) Updates `@babel/helpers` from 7.14.8 to 7.27.1 - [Release notes](https://github.com/babel/babel/releases) - [Changelog](https://github.com/babel/babel/blob/main/CHANGELOG.md) - [Commits](https://github.com/babel/babel/commits/v7.27.1/packages/babel-helpers) Updates `@babel/runtime` from 7.14.6 to 7.27.1 - [Release notes](https://github.com/babel/babel/releases) - [Changelog](https://github.com/babel/babel/blob/main/CHANGELOG.md) - [Commits](https://github.com/babel/babel/commits/v7.27.1/packages/babel-runtime) Updates `dompurify` from 2.5.7 to 2.5.8 - [Release notes](https://github.com/cure53/DOMPurify/releases) - [Commits](cure53/DOMPurify@2.5.7...2.5.8) Updates `vega-functions` from 5.13.2 to 5.17.0 - [Release notes](https://github.com/vega/vega/releases) - [Commits](https://github.com/vega/vega/commits/v5.17.0) Updates `vega` from 5.30.0 to 5.33.0 - [Release notes](https://github.com/vega/vega/releases) - [Commits](vega/vega@v5.23.0...v5.32.0) Updates `@babel/runtime` from 7.17.2 to 7.27.1 - [Release notes](https://github.com/babel/babel/releases) - [Changelog](https://github.com/babel/babel/blob/main/CHANGELOG.md) - [Commits](https://github.com/babel/babel/commits/v7.27.1/packages/babel-runtime) Updates `vega-functions` from 5.15.0 to 5.18.0 - [Release notes](https://github.com/vega/vega/releases) - [Commits](https://github.com/vega/vega/commits/v5.17.0) --- updated-dependencies: - dependency-name: sanitize-html dependency-version: 2.16.0 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: "@types/sanitize-html" dependency-version: 2.15.0 dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: marked dependency-version: 4.0.12 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: semver dependency-version: 7.5.4 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: node-fetch dependency-version: 2.6.9 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: ws dependency-version: 8.18.0 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: vega dependency-version: 5.32.0 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: minimatch dependency-version: 3.0.6 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: "@babel/helpers" dependency-version: 7.27.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@babel/runtime" dependency-version: 7.27.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: dompurify dependency-version: 2.5.8 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: vega-functions dependency-version: 5.17.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: vega dependency-version: 5.33.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@babel/runtime" dependency-version: 7.27.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: vega-functions dependency-version: 5.18.0 dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <[email protected]>
  
    Sign up for free
    to join this conversation on GitHub.
    Already have an account?
    Sign in to comment
  
      Labels
      
    dependencies
  Pull requests that update a dependency file 
  
    javascript
  Pull requests that update javascript code 
  Add this suggestion to a batch that can be applied as a single commit.
  This suggestion is invalid because no changes were made to the code.
  Suggestions cannot be applied while the pull request is closed.
  Suggestions cannot be applied while viewing a subset of changes.
  Only one suggestion per line can be applied in a batch.
  Add this suggestion to a batch that can be applied as a single commit.
  Applying suggestions on deleted lines is not supported.
  You must change the existing code in this line in order to create a valid suggestion.
  Outdated suggestions cannot be applied.
  This suggestion has been applied or marked resolved.
  Suggestions cannot be applied from pending reviews.
  Suggestions cannot be applied on multi-line comments.
  Suggestions cannot be applied while the pull request is queued to merge.
  Suggestion cannot be applied right now. Please check back later.
  
    
  
    
Bumps the npm_and_yarn group with 11 updates in the / directory:
2.14.02.16.02.13.02.15.04.0.114.0.127.5.37.5.42.6.82.6.98.17.18.18.05.23.05.32.03.0.53.0.67.14.87.27.17.14.67.27.12.5.72.5.8Bumps the npm_and_yarn group with 2 updates in the /jupyterlab/staging directory: vega and @babel/runtime.
Updates
sanitize-htmlfrom 2.14.0 to 2.16.0Changelog
Sourced from sanitize-html's changelog.
Commits
3b45c7cMerge pull request #702 from apostrophecms/release-2.16.07caf6d2release 2.16.00313050Merge pull request #701 from apostrophecms/thanks-6924248936thanksb3dd0e6Merge pull request #692 from naktinis/add-tag-and-text-events3f609e3chore: add a note about tag open/close event example being illustrativefb7a13bMerge branch 'main' into add-tag-and-text-eventsbe113c6chore: add a CHANGELOG entry0d67ebdchore: update test to demonstrate isImplied argument, demonstrate all argumen...007523afix: example outputUpdates
@types/sanitize-htmlfrom 2.13.0 to 2.15.0Commits
Updates
markedfrom 4.0.11 to 4.0.12Release notes
Sourced from marked's releases.
Commits
4c5b974chore(release): 4.0.12 [skip ci]a200d0a🗜️ build [skip ci]5fba688fix: fix nbsp after tableed66bf8Add check in splitCells to prevent calling trim on undefined (#2372)Updates
semverfrom 7.5.3 to 7.5.4Release notes
Sourced from semver's releases.
Changelog
Sourced from semver's changelog.
Commits
36cd334chore: release 7.5.48456d87chore: postinstall for dependabot template-oss PRdde1f00chore: postinstall for dependabot template-oss PRdffcd1bchore: bump@npmcli/template-ossfrom 4.16.0 to 4.17.0d619f66chore: postinstall for dependabot template-oss PR3bc4247chore: bump@npmcli/template-ossfrom 4.15.1 to 4.16.0cc6fde2fix: trim each range set before parsing99d8287fix: correctly parse long build ids as valid (#583)4f0f6b1chore: fix arguments in whitespace test (#574)6bd1a37chore: remove duplicate test in semver class (#575)Updates
node-fetchfrom 2.6.8 to 2.6.9Release notes
Sourced from node-fetch's releases.
Commits
70f592dfix: "global is not defined" (#1704)0f1ebb0Prevent error when response is null (#1699)Updates
wsfrom 8.17.1 to 8.18.0Release notes
Sourced from ws's releases.
Commits
976c53c[dist] 8.18.059b9629[feature] Add support forBlob(#2229)0d1b5e6[security] Use more descriptive text for 2017 vulnerability link15f11a0[security] Add new DoS vulnerability to SECURITY.mdUpdates
vegafrom 5.23.0 to 5.32.0Release notes
Sourced from vega's releases.
... (truncated)
Commits
c46889dchore: update vega-cli to v5.32.0 (#4015)2fe2e63chore: v5.32.0 (#4014)81ed011chore: remove extra space in test name6026887fix: correct data year citation in dorling-cartogram example (#4006)a3af49efeat: Add base64 string encoder/decoder tovega-expressionand `vega-interp...cd88cc8fix(docs): Update typo in vega.timeFloor description (#4010)694560cMerge commit from fork560aeecdocs: Add Security Advisory Policy forvega(#4008)0b6a114feat(vega-typings): add Typescript Types forvega-loader(#4000)b83b8e5docs: Replace redirect url inexpressions.md(#3996)Maintainer changes
This version was pushed to npm by lhermann, a new releaser for vega since your current version.
Updates
minimatchfrom 3.0.5 to 3.0.6Commits
5b7cd333.0.620b4b56[fix] revert all breaking syntax changes2ff0388document, expose, and test 'partial:true' option5dbd6a7ci: tests and makeworkdbda065full test coverage, adding tests, deleting dead code47e0e45Credit@yetinglifor the regexp improvementUpdates
@babel/helpersfrom 7.14.8 to 7.27.1Release notes
Sourced from
@babel/helpers's releases.... (truncated)
Changelog
Sourced from
@babel/helpers's changelog.... (truncated)
Commits
eebd3a0v7.27.1b1f9184ReduceinteropRequireWildcardsize (#16538)9c351e5Useclassand add type definitions forregenerator(#17220)0f95b74ReduceregeneratorRuntimesize (#17213)317e332Enforce node protocol import (#17207)14ef1e9Babel 8 cleanup (#17211)97105cbRe-convert regeneratorRuntime to helper format (#17205)1b93b0cMove regenerator files to the relevant packages (#17205)b953a8fRemove bundled regeneratorRuntime helper (#17205)6874c25Prepare LICENSE files for incorporating regenerator (#17205)Updates
@babel/runtimefrom 7.14.6 to 7.27.1Release notes
Sourced from
@babel/runtime's releases.... (truncated)
Changelog
Sourced from
@babel/runtime's changelog.... (truncated)
Commits
eebd3a0v7.27.1296cdc5Remove unusedregenerator-runtimedep in@babel/runtime(#17263)fdc0fb5[Babel 8] Bump nodejs requirements to^20.19.0 || >= 22.12.0(#17204)5c350eav7.27.0ca4865aFix: align behaviour to tscrewriteRelativeImportExtensions(#17118)e1ce99dv7.26.10d5952e8Fix processing of replacement pattern with named capture groups (#17173)64bca7bv7.26.92d95140v7.26.763d3038v7.26.0Updates
dompurifyfrom 2.5.7 to 2.5.8Release notes
Sourced from dompurify's releases.
Commits
ee992fctest: Updated a custom element test for IE11 on Windows 108b68e9etest: Trying to work around a false alert in IE11 Win 8.10d770cdchore: Preparing 2.5.8 release9cd4f11fix: Added same attribute clobbering check for 2.x branchf7120a3fix: Fixed two conditional bypasses discovered by@parrot409and@Slonser193eef2Update README.mdf7712e4Update README.md1bb377bUpdate README.mdUpdates
vega-functionsfrom 5.13.2 to 5.17.0Release notes
Sourced from vega-functions's releases.
... (truncated)
Commits
Maintainer changes
This version was pushed to npm by lhermann, a new releaser for vega-functions since your current version.
Updates
vegafrom 5.30.0 to 5.33.0Release notes
Sourced from vega's releases.