vscode-dynamic-macro icon indicating copy to clipboard operation
vscode-dynamic-macro copied to clipboard

Bump @vscode/test-electron from 2.3.9 to 2.3.10

Open dependabot[bot] opened this issue 9 months ago • 1 comments

Bumps @vscode/test-electron from 2.3.9 to 2.3.10.

Changelog

Sourced from @​vscode/test-electron's changelog.

2.3.10 | 2024-01-19

  • Add runVSCodeCommand method and workaround for Node CVE-2024-27980
Commits
  • 68fb5fb 2.3.10
  • 3f7a3cc feat: runVSCodeCommand as workaround for CVE-2024-27980
  • 40ecedf Merge pull request #263 from microsoft/dependabot/npm_and_yarn/vite-2.9.18
  • e7b5d61 chore(deps): bump vite from 2.9.17 to 2.9.18
  • 1305af5 chore(deps): update glob and remove @types/glob (#262)
  • bc400a2 Merge pull request #256 from microsoft/connor4312/fix-windows-first-run
  • 92c0591 Merge pull request #257 from microsoft/dependabot/npm_and_yarn/vite-2.9.17
  • 1caf111 chore(deps): bump vite from 2.9.16 to 2.9.17
  • See full diff in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

dependabot[bot] avatar May 15 '24 12:05 dependabot[bot]

New and removed dependencies detected. Learn more about Socket for GitHub ↗︎

Package New capabilities Transitives Size Publisher
npm/@vscode/[email protected] Transitive: environment, network +22 2.04 MB

🚮 Removed packages: npm/@vscode/[email protected]

View full report↗︎

socket-security[bot] avatar May 15 '24 12:05 socket-security[bot]