Closed dependabot[bot] closed 4 weeks ago
New and removed dependencies detected. Learn more about Socket for GitHub ↗︎
Package | New capabilities | Transitives | Size | Publisher |
---|---|---|---|---|
npm/supports-color@7.2.0 | None | +1 |
11.5 kB | sindresorhus |
🚮 Removed packages: npm/@fatso83/mini-mocha@2.2.1, npm/jquery@3.7.1, npm/jsdom@25.0.1, npm/pubsub-js@1.9.4
Bumps rexml from 3.3.7 to 3.3.9.
Release notes
Sourced from rexml's releases.
Changelog
Sourced from rexml's changelog.
Commits
38eaa86
Add 3.3.9 entryce59f2e
parser: fix a bug that �x...; is accepted as a character referencea09646d
test: fix indentcf0fb9c
FixIOSource#readline
for@pending_buffer
(#215)1d0c362
OptimizeIOSource#read_until
method (#210)622011f
Bump version036d508
test: avoid using needless non ASCII characters4197054
Add 3.3.8 entry78f8712
Fix handling with "xml:" prefixed namespace (#208)2e1cd64
Optimize SAX2Parser#get_namespace (#207)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show