Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
- `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/ucsdds3/ds3-site/network/alerts).
Bumps undici to 5.26.3 and updates ancestor dependency @sveltejs/kit. These dependencies need to be updated together.
Updates
undici
from 5.25.2 to 5.26.3Release notes
Sourced from undici's releases.
... (truncated)
Commits
227b9be
5.26.35351f1f
include esbuild script in files12a6218
Bumped v5.26.2e041de3
Merge pull request from GHSA-wqq4-5wpv-mx2gc8c80b1
5.26.17bcb80c
Fix node detection omfg (#2341)69ea7b9
hopefully this fixes it for good (#2338)4006aaf
Bumped v5.26.0df97958
fix: 🐛 fix process http2 header (#2332)b9d8368
fix: 🏷️ add allowH2 to BuildOptions (#2334)Updates
@sveltejs/kit
from 1.25.1 to 1.26.0Release notes
Sourced from
@sveltejs/kit
's releases.Changelog
Sourced from
@sveltejs/kit
's changelog.Commits
8ac89e8
Version Packages (#10852)ee4db0d
chore: bump undici to address security issue (#10885)0381fee
fix: basic mime type handling for prerendered pages in preview (#10851)5a4dbe3
Infer route parameter type from matcher's guard check if applicable (#10755)6dd025c
chore(deps): update dependency undici to ~5.26.0 (#10860)be2c8a8
fix: follow whatwg fetch spec for handling redirect loops (#10857)67812ed
fix: usewindow.fetch
inload
functions to allow libraries to patch it (#...c4a5f6c
Version Packages (#10784)9bc6e62
fix:popstate
navigation wasn't cancelling ongoingnavigation()
calls whe...f8aacaf
fix: correctly update$page.url.hash
when navigating history (#10843)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show