Closed dependabot[bot] closed 7 months ago
Reviewpad Report
:bangbang: Errors
Bumps undici from 5.21.2 to 5.28.2.
updated-dependencies:
Signed-off-by: dependabot[bot] support@github.com' (655e3e25f845643a144ae8a21f0f09c47c2981df)
:warning: Warnings
AI-Generated Summary: This pull request updates the 'undici' package from version 5.21.2 to 5.28.2. The 'busboy' package that was a dependency of 'undici' has been removed and replaced with '@fastify/busboy'. The integrity hash for 'undici' was also updated as part of this patch. These changes have only affected the 'package-lock.json' file which is reflected in the patch data with 13 additions and 24 deletions. The minimum required node version for 'undici' is now version 14.0.
Bumps undici from 5.21.2 to 5.28.2.
Release notes
Sourced from undici's releases.
... (truncated)
Commits
9a14e5f
Bumped v5.28.2fcdfe87
build(deps): bump actions/upload-artifact from 3.1.2 to 3.1.3 (#2302)169c157
build(deps-dev): bump formdata-node from 4.4.1 to 6.0.3 (#2389)9788177
build(deps): bump step-security/harden-runner from 2.5.0 to 2.6.0 (#2392)1f6d159
build(deps): bump actions/setup-node from 3.8.1 to 4.0.0 (#2395)a393a86
build(deps): bump ossf/scorecard-action from 2.2.0 to 2.3.1 (#2396)ea2f606
build(deps-dev): bump sinon from 16.1.3 to 17.0.1 (#2405)80979ed
build(deps-dev): bump jsdom from 22.1.0 to 23.0.0 (#2472)08183ea
fix: Added support for inline URL username:password proxy auth (#2473)28759f4
refactor: better integrity check (#2462)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show