Closed dependabot[bot] closed 3 weeks ago
New and removed dependencies detected. Learn more about Socket for GitHub ↗︎
Package | New capabilities | Transitives | Size | Publisher |
---|---|---|---|---|
npm/astro@4.16.1 | Transitive: environment, eval, filesystem, network, shell | +312 |
58.8 MB | fredkschott, matthewp, natemoo-re |
🚮 Removed packages: npm/astro@4.15.11
Looks like these dependencies are no longer updatable, so this is no longer needed.
Bumps the prod-deps-security group with 2 updates: astro and cookie.
Updates
astro
from 4.15.11 to 4.16.1Release notes
Sourced from astro's releases.
... (truncated)
Commits
c73d65d
[ci] release (#12178)650dd22
Fix VT video test fail in firefox (#12188)58e22bd
[ci] format2d10de5
fix(routing): actions should redirect the original pathname (#12173)a4ffbfa
Ensure router only targets scripts for execution (#12177)2f5b28e
Use p-queue instead of fastq (#12189)1f93fca
Fix biome lint warning (#12187)582f12e
[ci] release (#12148)b9e8e96
add info about content intellisense (#12164)c6fd1df
Fix mts reloads (#12160)Updates
cookie
from 0.6.0 to 0.7.2Release notes
Sourced from cookie's releases.
Commits
d19eaa1
0.7.2bc38ffd
Fix object assignment ofhasOwnProperty
(#177)cf4658f
0.7.16a8b8f5
Allow leading dot for domain (#174)58015c0
Remove more code and perf wins (#172)ab057d6
0.7.05f02ca8
Migrate history to GitHub releasesa5d591c
Migrate history to GitHub releases51968f9
Skip isNaN9e7ca51
perf(parse): cache length, return early (#144)Maintainer changes
This version was pushed to npm by blakeembrey, a new releaser for cookie since your current version.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show