Open dependabot[bot] opened 3 months ago
New and removed dependencies detected. Learn more about Socket for GitHub ↗︎
Package | New capabilities | Transitives | Size | Publisher |
---|---|---|---|---|
npm/@types/estree@1.0.5 | None | 0 |
25.7 kB | types |
npm/@webassemblyjs/ast@1.12.1 | None | +5 |
431 kB | xtuc |
npm/@webassemblyjs/wasm-parser@1.12.1 | None | +7 |
391 kB | xtuc |
npm/browserslist@4.23.0 | environment, filesystem Transitive: shell | +6 |
2.41 MB | ai |
npm/enhanced-resolve@5.16.0 | unsafe | 0 |
210 kB | evilebottnawi |
npm/schema-utils@3.3.0 | environment | +2 |
190 kB | evilebottnawi |
npm/webpack@5.91.0 | environment, filesystem, network, unsafe Transitive: eval | +33 |
9.48 MB | evilebottnawi |
🚮 Removed packages: npm/@types/estree@0.0.51, npm/browserslist@4.20.2, npm/enhanced-resolve@5.10.0, npm/schema-utils@3.1.1, npm/webpack@5.76.0
Bumps webpack from 5.76.0 to 5.91.0.
Release notes
Sourced from webpack's releases.
... (truncated)
Commits
60daca5
chore(release): 5.91.08dad9ce
chore(deps-dev): bump@babel/preset-react
from 7.23.3 to 7.24.1a3229f9
chore(deps-dev): bump@babel/core
from 7.24.0 to 7.24.140c2e44
chore(deps-dev): bump@types/node
from 20.11.29 to 20.11.30a04faba
chore(deps-dev): bump memfs from 4.7.7 to 4.8.08f22221
chore(deps): bump es-module-lexer from 1.4.1 to 1.4.28df6912
chore(deps): bump es-module-lexer from 1.4.1 to 1.4.2711c618
chore(deps-dev): bump memfs from 4.7.7 to 4.8.0c462bb3
chore(deps-dev): bump@types/node
from 20.11.29 to 20.11.30f0d3e3e
chore(deps-dev): bump@babel/preset-react
from 7.23.3 to 7.24.1Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show