Closed dependabot-preview[bot] closed 4 years ago
@dependabot merge
On Sun, 1 Nov 2020 at 16:30, dependabot-preview[bot] < notifications@github.com> wrote:
Bumps webpack https://github.com/webpack/webpack from 4.44.2 to 5.3.2. Release notes
Sourced from webpack's releases https://github.com/webpack/webpack/releases.
v5.3.2 Bugfixes
- runtime-dependent concatenated modules can generate code for runtime-dependent execution order of concatenated modules
v5.3.1 Bugfixes
- fix incorrect concatenation of modules when multiple runtimes are involved
- fixes a "This should not happen" error
- fixes a __webpack_require__(null) problem
- run CLI correctly after installing
- fixes a huge performance issue when processing minimized code with SourceMap
- Use string[] types instead of [string, ...string[]] for arrays that must not be empty
- this is more convinient to use
Performance
- avoid incorrect store of counts in the ProgressPlugin, which causes unneeded serialization of the Persistent Cache
- upgrade terser-webpack-plugin for performance improvements
- upgrade webpack-sources for performance improvements
v5.3.0 Features and Bugfixes
- generate runtime conditional code when modules are forcefully merged from multiple runtimes
- This fixes a Cannot read property 'call' of undefined error in webpack runtime, because modules are used that are not in the graph in one runtime
- disabled source code analysis for side effects in non-production modes
- this causes unnecessary changes to parent modules in development
- add optimization.sideEffects: "flag" as option for this
v5.2.1 Bugfixes
- add watchOptions.followSymlinks option to schema
- fix hard crash when calling resolve with undefined value
- fix emit problem when files have hash in query string
- fix unneeded generation of SourceMaps when no devtool is used
- fixes a huge performance regression with terser-webpack-plugin
v5.2.0 Features
- add sourceFilename and javascriptModule to asset info for plugins
Bugfixes
- fix variable name collision when using module concatenation
- fix arrow functions in ie 11
- fix this externals with module concatenation
Commits
- 3df96f4 https://github.com/webpack/webpack/commit/3df96f4a7843ef07794c31da8c7469dff133a228 5.3.2
- 64f84a2 https://github.com/webpack/webpack/commit/64f84a26f1aeab63a2b10722a582336420996d17 Merge pull request #11873 https://github-redirect.dependabot.com/webpack/webpack/issues/11873 from webpack/bugfix/11863
- 1849515 https://github.com/webpack/webpack/commit/18495151b8990cbed756833fd42dbf90afca49f8 handle the case when execution order in a concatenated module is runtime-depe...
- 9ed55a0 https://github.com/webpack/webpack/commit/9ed55a0d2cc6fd2f4a7c235d33f6c5567f6b6737 Merge pull request #11865 https://github-redirect.dependabot.com/webpack/webpack/issues/11865 from webpack/dependabot/npm_and_yarn/types/node-13....
- 2c26576 https://github.com/webpack/webpack/commit/2c265761da9c72bb8c2098ee190af01ad0d4ba7e chore(deps-dev): bump @types/node from 13.13.29 to 13.13.30
- dfae6f0 https://github.com/webpack/webpack/commit/dfae6f0ac70e1f4ec6d25a853838d4aa58e10e1f 5.3.1
- 0bfb4e9 https://github.com/webpack/webpack/commit/0bfb4e96ab1c75cef4ae32ab95f2fe2677d7c211 Merge pull request #11862 https://github-redirect.dependabot.com/webpack/webpack/issues/11862 from webpack/deps/tooling
- 103a052 https://github.com/webpack/webpack/commit/103a052ce6fcaeb704269a9a956eb9e82b27c4b2 Merge pull request #11861 https://github-redirect.dependabot.com/webpack/webpack/issues/11861 from webpack/bugfix/11856
- 6762521 https://github.com/webpack/webpack/commit/6762521773f909fbba41180c96b0f983a841db10 upgrade tooling for improved array types
- b792749 https://github.com/webpack/webpack/commit/b792749d7cba3752321c10cbce3ed71d7145c4dc Merge pull request #11854 https://github-redirect.dependabot.com/webpack/webpack/issues/11854 from webpack/issue-11836
- Additional commits viewable in compare view https://github.com/webpack/webpack/compare/v4.44.2...v5.3.2
[image: Dependabot compatibility score] https://dependabot.com/compatibility-score/?dependency-name=webpack&package-manager=npm_and_yarn&previous-version=4.44.2&new-version=5.3.2
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- @dependabot rebase will rebase this PR
- @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
- @dependabot merge will merge this PR after your CI passes on it
- @dependabot squash and merge will squash and merge this PR after your CI passes on it
- @dependabot cancel merge will cancel a previously requested merge and block automerging
- @dependabot reopen will reopen this PR if it is closed
- @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
- @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
- @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
- @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- @dependabot use these labels will set the current labels as the default for future PRs for this repo and language
- @dependabot use these reviewers will set the current reviewers as the default for future PRs for this repo and language
- @dependabot use these assignees will set the current assignees as the default for future PRs for this repo and language
- @dependabot use this milestone will set the current milestone as the default for future PRs for this repo and language
- @dependabot badge me will comment on this PR with code to add a "Dependabot enabled" badge to your readme
Additionally, you can set the following in your Dependabot dashboard https://app.dependabot.com:
- Update frequency (including time of day and day of week)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)
You can view, comment on, or merge this pull request online at:
https://github.com/jmannau/serverless-ts-template/pull/281 Commit Summary
- Bump webpack from 4.44.2 to 5.3.2
File Changes
- M package-lock.json https://github.com/jmannau/serverless-ts-template/pull/281/files#diff-053150b640a7ce75eff69d1a22cae7f0f94ad64ce9a855db544dda0929316519 (1469)
- M package.json https://github.com/jmannau/serverless-ts-template/pull/281/files#diff-7ae45ad102eab3b6d7e7896acd08c427a9b25b346470d7bc6507b6481575d519 (2)
Patch Links:
- https://github.com/jmannau/serverless-ts-template/pull/281.patch
- https://github.com/jmannau/serverless-ts-template/pull/281.diff
— You are receiving this because you are subscribed to this thread. Reply to this email directly, view it on GitHub https://github.com/jmannau/serverless-ts-template/pull/281, or unsubscribe https://github.com/notifications/unsubscribe-auth/AABK6JLMCM26YWTI2PBOQ3DSNTW73ANCNFSM4TGJ656A .
Bumps webpack from 4.44.2 to 5.3.2.
Release notes
Sourced from webpack's releases.
Commits
3df96f4
5.3.264f84a2
Merge pull request #11873 from webpack/bugfix/118631849515
handle the case when execution order in a concatenated module is runtime-depe...9ed55a0
Merge pull request #11865 from webpack/dependabot/npm_and_yarn/types/node-13....2c26576
chore(deps-dev): bump @types/node from 13.13.29 to 13.13.30dfae6f0
5.3.10bfb4e9
Merge pull request #11862 from webpack/deps/tooling103a052
Merge pull request #11861 from webpack/bugfix/118566762521
upgrade tooling for improved array typesb792749
Merge pull request #11854 from webpack/issue-11836Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language - `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com): - Update frequency (including time of day and day of week) - Pull request limits (per update run and/or open at any time) - Out-of-range updates (receive only lockfile updates, if desired) - Security updates (receive only security updates, if desired)