segiddins / segiddins.me

http://segiddins.me/
0 stars 0 forks source link

Bump middleman from 3.3.7 to 4.5.0 #60

Open dependabot[bot] opened 1 year ago

dependabot[bot] commented 1 year ago

Bumps middleman from 3.3.7 to 4.5.0.

Changelog

Sourced from middleman's changelog.

4.5.0

  • Support Haml 6 (#2590)
  • Add support for Ruby 3.1 (#2635)
  • Switch from Webrick to Addressable for uri encode/decode (#2622)
  • Fix 18n fallback when "mount_at_root" is false (4.x) (#2605)
  • external pipeline: add option to ignore process exit code (#2623)
  • Backport of i18n lookup table changes to 4.x (#2604)

4.4.3

  • Lock haml to < 6.0 (#2570)
  • Allow url_for to override current_resource (#2567)
  • Allow users to use Active Support 7.0 (#2552)

4.4.2

  • Use compiled regex for performance improvement (#2502)

4.4.1

  • Yanked

4.4.0

  • Ruby 3.0 support.
  • ActiveSupport 6.1 (drop support for Ruby 2.4)
  • Remove Stylus support
  • Support TOML as frontmatter and data.

4.3.11

  • Fix URI.unescape deprecation warning (#2312)

4.3.10

  • Fix liquid page compilation (#2083)

4.3.9

  • Bad build, yanked.

4.3.8

  • Update kramdown to avoid CVE-2020-14001 in v4 (#2348)

4.3.7

  • Allow ActiveSupport a wider range to avoid security warnings. #2327

... (truncated)

Commits


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)