component-integration icon indicating copy to clipboard operation
component-integration copied to clipboard

Bump lodash, @pattern-lab/cli and @pattern-lab/core in /web/themes/custom/nes/nes-components

Open dependabot[bot] opened this issue 2 years ago • 0 comments

Bumps lodash to 4.17.21 and updates ancestor dependencies lodash, @pattern-lab/cli and @pattern-lab/core. These dependencies need to be updated together.

Updates lodash from 4.17.19 to 4.17.21

Commits
  • f299b52 Bump to v4.17.21
  • c4847eb Improve performance of toNumber, trim and trimEnd on large input strings
  • 3469357 Prevent command injection through _.template's variable option
  • ded9bc6 Bump to v4.17.20.
  • 63150ef Documentation fixes.
  • 00f0f62 test.js: Remove trailing comma.
  • 846e434 Temporarily use a custom fork of lodash-cli.
  • 5d046f3 Re-enable Travis tests on 4.17 branch.
  • aa816b3 Remove /npm-package.
  • See full diff in compare view
Maintainer changes

This version was pushed to npm by bnjmnt4n, a new releaser for lodash since your current version.


Updates @pattern-lab/cli from 5.11.1 to 5.17.0

Changelog

Sourced from @​pattern-lab/cli's changelog.

5.17.0 (2022-09-25)

Features

5.16.4 (2022-09-23)

Bug Fixes

5.16.2 (2022-02-07)

Bug Fixes

Features

5.16.1 (2022-01-29)

Note: Version bump only for package patternlab-node-main

5.16.0 (2022-01-29)

... (truncated)

Commits
  • 96563d2 [skip travis] chore(release): publish v5.17.0
  • 414e038 feat: integrate @​hadl/patternlab-plugin-pattern-wrap into core (#1433)
  • c32a45c feat(engine-twig): add custom twing extensions (#1435)
  • 36a9dff [skip travis] chore(release): publish v5.16.4
  • 7951a41 refactor: make removing index.html from URL configurable (#1428)
  • 749a3e7 fix: code scanning alert (#1442)
  • 392521d docs: added a section for precompiled filetypes (#1440)
  • 4bf845e Refactor optimized html (#1439)
  • e5c6950 fix: div isn't allowed in button elements (#1438)
  • ab6b133 fix: twig logo is rendered as "NaN" (#1434)
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by slimegames, a new releaser for @​pattern-lab/cli since your current version.


Updates @pattern-lab/core from 5.11.1 to 5.17.0

Release notes

Sourced from @​pattern-lab/core's releases.

v5.17.0

🆙 New Features

Authors: 1

v5.16.4

🐛 Bug Fix

🛠️ Refactorings

📖 Documentation

Authors: 2

v5.16.2

🐛 Bug Fix

🔩 Dependency Updates

Authors: 2

... (truncated)

Changelog

Sourced from @​pattern-lab/core's changelog.

5.17.0 (2022-09-25)

Features

5.16.4 (2022-09-23)

Bug Fixes

5.16.2 (2022-02-07)

Bug Fixes

Features

5.16.1 (2022-01-29)

Note: Version bump only for package patternlab-node-main

5.16.0 (2022-01-29)

... (truncated)

Commits
  • 96563d2 [skip travis] chore(release): publish v5.17.0
  • 414e038 feat: integrate @​hadl/patternlab-plugin-pattern-wrap into core (#1433)
  • c32a45c feat(engine-twig): add custom twing extensions (#1435)
  • 36a9dff [skip travis] chore(release): publish v5.16.4
  • 7951a41 refactor: make removing index.html from URL configurable (#1428)
  • 749a3e7 fix: code scanning alert (#1442)
  • 392521d docs: added a section for precompiled filetypes (#1440)
  • 4bf845e Refactor optimized html (#1439)
  • e5c6950 fix: div isn't allowed in button elements (#1438)
  • ab6b133 fix: twig logo is rendered as "NaN" (#1434)
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by slimegames, a new releaser for @​pattern-lab/core since your current version.


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the Security Alerts page.

dependabot[bot] avatar Jul 24 '23 14:07 dependabot[bot]