ui
                                
                                 ui copied to clipboard
                                
                                    ui copied to clipboard
                            
                            
                            
                        chore(deps): bump semver-regex and semantic-release
Bumps semver-regex and semantic-release. These dependencies needed to be updated together.
Updates semver-regex from 2.0.0 to 3.1.4
Release notes
Sourced from semver-regex's releases.
v3.1.4
- Backport of ReDoS fix https://github.com/sindresorhus/semver-regex/commit/7712ba564d40da101cf2b2b33e6a910d9f2f57f4
v3.1.2
- Fix regex catastrophic backtracking 6baf2cc Working around this meant accepting some obscure false-positives. I don't think it will affect any real code, but it's good to be aware of. See the disabled tests in the commit.
https://github.com/sindresorhus/semver-regex/compare/v3.1.1...v3.1.2
v3.1.1
- Allow 0 as numeric identifier (#19) c64c57f
https://github.com/sindresorhus/semver-regex/compare/v3.1.0...v3.1.1
v3.1.0
- Add TypeScript definition (#16) 039944b
https://github.com/sindresorhus/semver-regex/compare/v3.0.0...v3.1.0
v3.0.0
Breaking:
- Require Node.js 8 (#15) 3fe447d
Enhancements:
- Make the regex better adhere to semver syntax (#15) 3fe447d
https://github.com/sindresorhus/semver-regex/compare/v2.0.0...v3.0.0
Commits
- 906cf403.1.4
- 7712ba5Fix ReDoS vulnerability backport
- a0203dbFix ReDoS vulnerability backport
- ca0ee673.1.2
- 626c0c2Move to GitHub Actions
- 6baf2ccFix regex catastrophic backtracking
- bf2f4c2Meta tweaks
- cd7e6ba3.1.1
- c64c57fAllow 0 as numeric identifier (#19)
- d724367Create funding.yml
- Additional commits viewable in compare view
Updates semantic-release from 15.13.24 to 19.0.5
Release notes
Sourced from semantic-release's releases.
v19.0.5
19.0.5 (2022-08-23)
Reverts
v19.0.4
19.0.4 (2022-08-22)
Bug Fixes
v19.0.3
19.0.3 (2022-06-09)
Bug Fixes
- log-repo: use the original form of the repo url to remove the need to mask credentials (#2459) (58a226f), closes #2449
v19.0.2
19.0.2 (2022-01-18)
Bug Fixes
- npm-plugin: upgraded to the stable version (0eca144)
v19.0.1
19.0.1 (2022-01-18)
Bug Fixes
- npm-plugin: upgraded to the latest beta version (8097afb)
v19.0.0
19.0.0 (2022-01-18)
Bug Fixes
- npm-plugin: upgraded to the beta, which upgrades npm to v8 (f634b8c)
... (truncated)
Commits
- 8f07522Revert "fix(deps): update dependency yargs to v17" (#2534)
- 2f4bcefdocs: add semantic-release-react-native to plugin list (#2523)
- f419080fix(deps): update dependency yargs to v17 (#1912)
- 3bbf08ctest(integration): upgrade the gitbox image to support arm architecture in ad...
- 846f4c2build(deps): bump terser from 5.14.0 to 5.14.2 (#2513)
- bd294ebdocs(plugin-list): add semantic-release-space plugin (#2502)
- c69445edocs: remove deprecated keyword in gitlab-ci.md (#2498)
- d80e2eabuild(deps-dev): bump got from 11.8.3 to 11.8.5 (#2485)
- 9589a96docs: fix typos (#2476)
- ec89babdocs: replace issue templates with forms (#2474)
- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- @dependabot rebasewill rebase this PR
- @dependabot recreatewill recreate this PR, overwriting any edits that have been made to it
- @dependabot mergewill merge this PR after your CI passes on it
- @dependabot squash and mergewill squash and merge this PR after your CI passes on it
- @dependabot cancel mergewill cancel a previously requested merge and block automerging
- @dependabot reopenwill reopen this PR if it is closed
- @dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
- @dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
- @dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
- @dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- @dependabot use these labelswill set the current labels as the default for future PRs for this repo and language
- @dependabot use these reviewerswill set the current reviewers as the default for future PRs for this repo and language
- @dependabot use these assigneeswill set the current assignees as the default for future PRs for this repo and language
- @dependabot use this milestonewill set the current milestone as the default for future PRs for this repo and language
You can disable automated security fix PRs for this repo from the Security Alerts page.