ddzy / blog

Do more thinking
https://yyge.top/blog
4 stars 1 forks source link

⬆️ Bump marked and hexo-renderer-marked #111

Open dependabot[bot] opened 2 years ago

dependabot[bot] commented 2 years ago

Bumps marked to 4.1.0 and updates ancestor dependency hexo-renderer-marked. These dependencies need to be updated together.

Updates marked from 0.6.3 to 4.1.0

Release notes

Sourced from marked's releases.

v4.1.0

4.1.0 (2022-08-30)

Features

v4.0.19

4.0.19 (2022-08-21)

Bug Fixes

  • make second parameter optional on lexer.inline (#2552) (f1a9608)

v4.0.18

4.0.18 (2022-07-11)

Bug Fixes

v4.0.17

4.0.17 (2022-06-13)

Bug Fixes

  • Code and heading after list without blank line (#2483) (15f3f15)

v4.0.16

4.0.16 (2022-05-17)

Bug Fixes

v4.0.15

4.0.15 (2022-05-02)

Bug Fixes

v4.0.14

4.0.14 (2022-04-11)

... (truncated)

Commits
  • 64b22d0 chore(release): 4.1.0 [skip ci]
  • 7e2ef30 🗜️ build [skip ci]
  • 994b2e6 feat: add async option (#2474)
  • 33724a3 chore(deps-dev): Bump @​semantic-release/github from 8.0.5 to 8.0.6 (#2565)
  • 587842c chore(deps-dev): Bump eslint from 8.22.0 to 8.23.0 (#2566)
  • 4f265ab chore(deps-dev): Bump eslint-plugin-promise from 6.0.0 to 6.0.1 (#2567)
  • 17ffd61 chore(deps-dev): Bump semantic-release from 19.0.4 to 19.0.5 (#2568)
  • e422d22 chore(deps-dev): Bump @​babel/core from 7.18.10 to 7.18.13 (#2569)
  • d9c0078 chore(deps-dev): Bump uglify-js from 3.16.3 to 3.17.0 (#2562)
  • d8bcf9c chore(deps-dev): Bump rollup from 2.78.0 to 2.78.1 (#2560)
  • Additional commits viewable in compare view


Updates hexo-renderer-marked from 1.0.0 to 5.0.0

Release notes

Sourced from hexo-renderer-marked's releases.

5.0.0

Breaking Changes

Refactor

Dependencies

Docs

Full Changelog: https://github.com/hexojs/hexo-renderer-marked/compare/v4.1.0...5.0.0

v4.1.0

New features

CI/CD

Dependencies

  • chore(deps-dev): bump mocha from 8.4.0 to 9.0.3 (#195)

Misc

  • Upgrade to GitHub-native Dependabot (#188)

v4.0.0

Breaking Changes

... (truncated)

Commits
  • 4304601 chore: bump version from 4.1.0 to 5.0.0 (#220)
  • 9c48448 chore(deps): bump marked from 3.0.8 to 4.0.1 (#214)
  • 20e9d00 chore(deps-dev): bump eslint-config-hexo from 4.2.0 to 5.0.0 (#219)
  • 568e5e9 refactor: call parent class url tokenizer method (#218)
  • 76ee3bc chore(deps-dev): bump hexo from 5.4.0 to 6.0.0 (#217)
  • 4bc71b4 chore(deps): bump jsdom from 18.1.1 to 19.0.0 (#215)
  • ae51afc chore(deps-dev): bump eslint from 7.32.0 to 8.0.0 (#211)
  • 3bcb483 chore(deps): bump jsdom from 17.0.0 to 18.0.0 (#212)
  • 36b1c14 Explain security risk of using this plugin (#210)
  • 8767792 chore(deps): bump marked from 2.1.3 to 3.0.4 (#208)
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by yoshinorin, a new releaser for hexo-renderer-marked since your current version.


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/ddzy/blog/network/alerts).