Closed dependabot[bot] closed 2 months ago
The latest updates on your projects. Learn more about Vercel for Git ↗︎
Name | Status | Preview | Comments | Updated (UTC) |
---|---|---|---|---|
ntanduy-cloud | ✅ Ready (Inspect) | Visit Preview | 💬 Add feedback | Sep 24, 2024 2:35am |
Latest commit: |
5dcbaf5
|
Status: | ✅ Deploy successful! |
Preview URL: | https://fa5ee742.ntanduy-cloud.pages.dev |
Branch Preview URL: | https://dependabot-npm-and-yarn-npm.ntanduy-cloud.pages.dev |
Visit the preview URL for this PR (updated for commit 5dcbaf5):
https://ntanduy-2eb98--pr149-dependabot-npm-and-y-gozi5n8z.web.app
(expires Tue, 01 Oct 2024 02:35:36 GMT)
🔥 via Firebase Hosting GitHub Action 🌎
Sign: 9fc05ff234da566d7d69cff3af400c879170df64
:tada: This PR is included in version 1.15.7 :tada:
The release is available on GitHub release
Your semantic-release bot :package::rocket:
Bumps the npm_and_yarn group with 1 update: rollup.
Updates
rollup
from 4.21.2 to 4.22.4Release notes
Sourced from rollup's releases.
... (truncated)
Changelog
Sourced from rollup's changelog.
... (truncated)
Commits
79c0aba
4.22.4e2552c9
Fix DOM Clobbering CVE (#5671)10ab90e
refactor: Use object.prototype to check for reserved properties (#5670)e1cba8e
4.22.359cec3e
Ensure impure dependencies of pure modules are added (#5669)b86ffd7
4.22.2d5ff63d
Partially revert #5658 and re-apply #5644 (#5667)0a821d9
Create SECURITY.md76e962d
4.22.168c23da
Partially revert #5644Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show