actions / attest-sbom

Action for generating SBOM attestations for workflow artifacts
MIT License
14 stars 4 forks source link

Bump the npm-development group with 5 updates #65

Closed dependabot[bot] closed 3 months ago

dependabot[bot] commented 3 months ago

Bumps the npm-development group with 5 updates:

Package From To
@typescript-eslint/eslint-plugin 7.9.0 7.10.0
@typescript-eslint/parser 7.9.0 7.10.0
eslint-plugin-jsonc 2.15.1 2.16.0
markdownlint-cli 0.40.0 0.41.0
ts-jest 29.1.2 29.1.3

Updates @typescript-eslint/eslint-plugin from 7.9.0 to 7.10.0

Release notes

Sourced from @​typescript-eslint/eslint-plugin's releases.

v7.10.0

7.10.0 (2024-05-20)

🚀 Features

  • eslint-plugin: [sort-type-constituents] support case sensitive sorting (#8760)

🩹 Fixes

  • eslint-plugin: [prefer-regexp-exec] fix heuristic to check whether regex may contain global flag (#8764)
  • typescript-estree: don't add in-project files to defaultProjectMatchedFiles (#9097)
  • utils: remove function form type from flat config files and ignores (#9111)

❤️ Thank You

You can read about our versioning strategy and releases on our website.

Changelog

Sourced from @​typescript-eslint/eslint-plugin's changelog.

7.10.0 (2024-05-20)

🚀 Features

  • eslint-plugin: [sort-type-constituents] support case sensitive sorting

🩹 Fixes

  • eslint-plugin: [prefer-regexp-exec] fix heuristic to check whether regex may contain global flag

❤️ Thank You

  • auvred
  • Emanuel Hoogeveen
  • jsfm01
  • Kirk Waiblinger

You can read about our versioning strategy and releases on our website.

Commits
  • c18226e chore(release): publish 7.10.0
  • 8d92ba8 docs: [no-floating-promises] fix capitalization typo (#9118)
  • d951d83 fix(eslint-plugin): [prefer-regexp-exec] fix heuristic to check whether regex...
  • 987a96e feat(eslint-plugin): [sort-type-constituents] support case sensitive sorting ...
  • See full diff in compare view


Updates @typescript-eslint/parser from 7.9.0 to 7.10.0

Release notes

Sourced from @​typescript-eslint/parser's releases.

v7.10.0

7.10.0 (2024-05-20)

🚀 Features

  • eslint-plugin: [sort-type-constituents] support case sensitive sorting (#8760)

🩹 Fixes

  • eslint-plugin: [prefer-regexp-exec] fix heuristic to check whether regex may contain global flag (#8764)
  • typescript-estree: don't add in-project files to defaultProjectMatchedFiles (#9097)
  • utils: remove function form type from flat config files and ignores (#9111)

❤️ Thank You

You can read about our versioning strategy and releases on our website.

Changelog

Sourced from @​typescript-eslint/parser's changelog.

7.10.0 (2024-05-20)

This was a version bump only for parser to align it with other projects, there were no code changes.

You can read about our versioning strategy and releases on our website.

Commits


Updates eslint-plugin-jsonc from 2.15.1 to 2.16.0

Release notes

Sourced from eslint-plugin-jsonc's releases.

v2.16.0

Minor Changes

Changelog

Sourced from eslint-plugin-jsonc's changelog.

2.16.0

Minor Changes

Commits
  • bb95f04 chore: release eslint-plugin-jsonc (#344)
  • 8cc5b7f Resolve other plugins as siblings to this plugin (#342)
  • f61a6d4 chore(deps): update coverallsapp/github-action action to v2.3.0
  • b8bf7d7 chore(deps): update dependency esbuild to ^0.21.0
  • ef232e1 chore: fix lint config (#339)
  • ff33b97 chore(deps): update dependency @​ota-meshi/site-kit-eslint-editor-vue to ^0.2....
  • 3cff2b6 chore(deps): update dependency vite-plugin-eslint4b to ^0.4.0
  • See full diff in compare view


Updates markdownlint-cli from 0.40.0 to 0.41.0

Release notes

Sourced from markdownlint-cli's releases.

0.41.0

  • Change TOML parser to smol-toml which supports v1.0.0 of the specification
  • Update all dependencies via Dependabot
Commits
  • f295829 Bump version 0.41.0
  • c49b9e4 Bump glob from 10.3.15 to 10.4.1
  • b71770f Bump commander from 12.0.0 to 12.1.0
  • 907a7c1 Change TOML parser to smol-toml which supports v1.0.0 of the TOML specificati...
  • b948ed9 Bump glob from 10.3.12 to 10.3.15
  • 3a711b0 Bump execa from 8.0.1 to 9.1.0
  • 23295e9 Bump ava from 6.1.2 to 6.1.3
  • 1c160d2 Add newly-released Node 22 to test matrix.
  • See full diff in compare view


Updates ts-jest from 29.1.2 to 29.1.3

Release notes

Sourced from ts-jest's releases.

v29.1.3

Please refer to CHANGELOG.md for details.

Changelog

Sourced from ts-jest's changelog.

29.1.3 (2024-05-21)

Bug Fixes

  • add @jest/transform as an optional peer dependency (0ba7f86)
  • bring back Node 14 support (eda56a7)

Performance Improvements

  • remove ts resolved module cache file (4c88da5)
Commits
  • f23d9ff chore(release): 29.1.3
  • eda56a7 fix: bring back Node 14 support
  • 287a5a7 build(deps): Update babel monorepo to ^7.24.5
  • 7b4c9ca build(deps): Update React e2e packages
  • fc9e825 build(deps): Update actions/setup-node action to v3.8.2
  • f371881 build(deps): Update Jest packages
  • 1de11e2 build(deps): Update JamesIves/github-pages-deploy-action action to v4.6.1
  • f04fbfe build(deps): Update @​types packages
  • d4edc09 build(deps): Update docusaurus monorepo to ^2.4.3
  • 1a6c276 build(deps): Update dependency semver to v7.6.2
  • Additional commits viewable in compare view


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) - `@dependabot ignore minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) - `@dependabot ignore ` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) - `@dependabot unignore ` will remove all of the ignore conditions of the specified dependency - `@dependabot unignore ` will remove the ignore condition of the specified dependency and ignore conditions