home-erp.meta

Issues/PRs archive for MTRNord/home-erp
git clone git://archive.git.mtrnord.blog/MTRNord/home-erp.meta.git
Log | Files | Refs

commit 69e740ded4af40ee7ce96f276d14aa0da6d592d2
Author: Phorge Migration <migration@localhost>
Date:   Tue, 21 Jul 2026 17:34:25 +0200

Archive issues/PRs export for MTRNord/home-erp

Diffstat:
Apulls/1.diff | 39+++++++++++++++++++++++++++++++++++++++
Apulls/1.json | 20++++++++++++++++++++
Apulls/1.md | 111+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Apulls/2.diff | 38++++++++++++++++++++++++++++++++++++++
Apulls/2.json | 26++++++++++++++++++++++++++
Apulls/2.md | 70++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Apulls/3.diff | 17+++++++++++++++++
Apulls/3.json | 20++++++++++++++++++++
Apulls/3.md | 57+++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Apulls/4.diff | 38++++++++++++++++++++++++++++++++++++++
Apulls/4.json | 20++++++++++++++++++++
Apulls/4.md | 68++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
12 files changed, 524 insertions(+), 0 deletions(-)

diff --git a/pulls/1.diff b/pulls/1.diff @@ -0,0 +1,39 @@ +diff --git a/package-lock.json b/package-lock.json +index 2f6cc20..4704fb5 100644 +--- a/package-lock.json ++++ b/package-lock.json +@@ -7,7 +7,7 @@ + "devDependencies": { + "@tailwindcss/forms": "^0.5.2", + "autoprefixer": "^10.4.2", +- "axios": "^1.1.2", ++ "axios": "^1.6.0", + "laravel-vite-plugin": "^0.8.0", + "postcss": "^8.4.6", + "tailwindcss": "^3.1.0", +@@ -542,9 +542,9 @@ + } + }, + "node_modules/axios": { +- "version": "1.5.1", +- "resolved": "https://registry.npmjs.org/axios/-/axios-1.5.1.tgz", +- "integrity": "sha512-Q28iYCWzNHjAm+yEAot5QaAMxhMghWLFVf7rRdwhUI+c2jix2DUXjAHXVi+s1ibs3mjPO/cCgbA++3BjD0vP/A==", ++ "version": "1.6.0", ++ "resolved": "https://registry.npmjs.org/axios/-/axios-1.6.0.tgz", ++ "integrity": "sha512-EZ1DYihju9pwVB+jg67ogm+Tmqc6JmhamRN6I4Zt8DfZu5lbcQGw3ozH9lFejSJgs/ibaef3A9PMXPLeefFGJg==", + "dev": true, + "dependencies": { + "follow-redirects": "^1.15.0", +diff --git a/package.json b/package.json +index 2ecd503..53a2eed 100644 +--- a/package.json ++++ b/package.json +@@ -8,7 +8,7 @@ + "devDependencies": { + "@tailwindcss/forms": "^0.5.2", + "autoprefixer": "^10.4.2", +- "axios": "^1.1.2", ++ "axios": "^1.6.0", + "laravel-vite-plugin": "^0.8.0", + "postcss": "^8.4.6", + "tailwindcss": "^3.1.0", diff --git a/pulls/1.json b/pulls/1.json @@ -0,0 +1,20 @@ +{ + "number": 1, + "title": "Bump axios from 1.5.1 to 1.6.0", + "state": "open", + "diff_file": "1.diff", + "author": "dependabot[bot]", + "created_at": "2023-11-11T16:20:12Z", + "closed_at": null, + "merged_at": null, + "base_ref": "main", + "head_ref": "dependabot/npm_and_yarn/axios-1.6.0", + "labels": [ + "dependencies" + ], + "assignees": [], + "requested_reviewers": [], + "body": "Bumps [axios](https://github.com/axios/axios) from 1.5.1 to 1.6.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a href=\"https://github.com/axios/axios/releases\">axios's releases</a>.</em></p>\n<blockquote>\n<h2>Release v1.6.0</h2>\n<h2>Release notes:</h2>\n<h3>Bug Fixes</h3>\n<ul>\n<li><strong>CSRF:</strong> fixed CSRF vulnerability CVE-2023-45857 (<a href=\"https://redirect.github.com/axios/axios/issues/6028\">#6028</a>) (<a href=\"https://github.com/axios/axios/commit/96ee232bd3ee4de2e657333d4d2191cd389e14d0\">96ee232</a>)</li>\n<li><strong>dns:</strong> fixed lookup function decorator to work properly in node v20; (<a href=\"https://redirect.github.com/axios/axios/issues/6011\">#6011</a>) (<a href=\"https://github.com/axios/axios/commit/5aaff532a6b820bb9ab6a8cd0f77131b47e2adb8\">5aaff53</a>)</li>\n<li><strong>types:</strong> fix AxiosHeaders types; (<a href=\"https://redirect.github.com/axios/axios/issues/5931\">#5931</a>) (<a href=\"https://github.com/axios/axios/commit/a1c8ad008b3c13d53e135bbd0862587fb9d3fc09\">a1c8ad0</a>)</li>\n</ul>\n<h3>PRs</h3>\n<ul>\n<li>CVE 2023 45857 ( <a href=\"https://api.github.com/repos/axios/axios/pulls/6028\">#6028</a> )</li>\n</ul>\n<pre><code>\n\u26a0\ufe0f Critical vulnerability fix. See https://security.snyk.io/vuln/SNYK-JS-AXIOS-6032459\n</code></pre>\n<h3>Contributors to this release</h3>\n<ul>\n<li><!-- raw HTML omitted --> <a href=\"https://github.com/DigitalBrainJS\" title=\"+449/-114 ([#6032](https://github.com/axios/axios/issues/6032) [#6021](https://github.com/axios/axios/issues/6021) [#6011](https://github.com/axios/axios/issues/6011) [#5932](https://github.com/axios/axios/issues/5932) [#5931](https://github.com/axios/axios/issues/5931) )\">Dmitriy Mozgovoy</a></li>\n<li><!-- raw HTML omitted --> <a href=\"https://github.com/valentin-panov\" title=\"+4/-4 ([#6028](https://github.com/axios/axios/issues/6028) )\">Valentin Panov</a></li>\n<li><!-- raw HTML omitted --> <a href=\"https://github.com/therealrinku\" title=\"+1/-1 ([#5889](https://github.com/axios/axios/issues/5889) )\">Rinku Chaudhari</a></li>\n</ul>\n</blockquote>\n</details>\n<details>\n<summary>Changelog</summary>\n<p><em>Sourced from <a href=\"https://github.com/axios/axios/blob/v1.x/CHANGELOG.md\">axios's changelog</a>.</em></p>\n<blockquote>\n<h1><a href=\"https://github.com/axios/axios/compare/v1.5.1...v1.6.0\">1.6.0</a> (2023-10-26)</h1>\n<h3>Bug Fixes</h3>\n<ul>\n<li><strong>CSRF:</strong> fixed CSRF vulnerability CVE-2023-45857 (<a href=\"https://redirect.github.com/axios/axios/issues/6028\">#6028</a>) (<a href=\"https://github.com/axios/axios/commit/96ee232bd3ee4de2e657333d4d2191cd389e14d0\">96ee232</a>)</li>\n<li><strong>dns:</strong> fixed lookup function decorator to work properly in node v20; (<a href=\"https://redirect.github.com/axios/axios/issues/6011\">#6011</a>) (<a href=\"https://github.com/axios/axios/commit/5aaff532a6b820bb9ab6a8cd0f77131b47e2adb8\">5aaff53</a>)</li>\n<li><strong>types:</strong> fix AxiosHeaders types; (<a href=\"https://redirect.github.com/axios/axios/issues/5931\">#5931</a>) (<a href=\"https://github.com/axios/axios/commit/a1c8ad008b3c13d53e135bbd0862587fb9d3fc09\">a1c8ad0</a>)</li>\n</ul>\n<h3>PRs</h3>\n<ul>\n<li>CVE 2023 45857 ( <a href=\"https://api.github.com/repos/axios/axios/pulls/6028\">#6028</a> )</li>\n</ul>\n<pre><code>\n\u26a0\ufe0f Critical vulnerability fix. See https://security.snyk.io/vuln/SNYK-JS-AXIOS-6032459\n</code></pre>\n<h3>Contributors to this release</h3>\n<ul>\n<li><!-- raw HTML omitted --> <a href=\"https://github.com/DigitalBrainJS\" title=\"+449/-114 ([#6032](https://github.com/axios/axios/issues/6032) [#6021](https://github.com/axios/axios/issues/6021) [#6011](https://github.com/axios/axios/issues/6011) [#5932](https://github.com/axios/axios/issues/5932) [#5931](https://github.com/axios/axios/issues/5931) )\">Dmitriy Mozgovoy</a></li>\n<li><!-- raw HTML omitted --> <a href=\"https://github.com/valentin-panov\" title=\"+4/-4 ([#6028](https://github.com/axios/axios/issues/6028) )\">Valentin Panov</a></li>\n<li><!-- raw HTML omitted --> <a href=\"https://github.com/therealrinku\" title=\"+1/-1 ([#5889](https://github.com/axios/axios/issues/5889) )\">Rinku Chaudhari</a></li>\n</ul>\n</blockquote>\n</details>\n<details>\n<summary>Commits</summary>\n<ul>\n<li><a href=\"https://github.com/axios/axios/commit/f7adacdbaa569281253c8cfc623ad3f4dc909c60\"><code>f7adacd</code></a> chore(release): v1.6.0 (<a href=\"https://redirect.github.com/axios/axios/issues/6031\">#6031</a>)</li>\n<li><a href=\"https://github.com/axios/axios/commit/9917e67cbb6c157382863bad8c741de58e3f3c2b\"><code>9917e67</code></a> chore(ci): fix release-it arg; (<a href=\"https://redirect.github.com/axios/axios/issues/6032\">#6032</a>)</li>\n<li><a href=\"https://github.com/axios/axios/commit/96ee232bd3ee4de2e657333d4d2191cd389e14d0\"><code>96ee232</code></a> fix(CSRF): fixed CSRF vulnerability CVE-2023-45857 (<a href=\"https://redirect.github.com/axios/axios/issues/6028\">#6028</a>)</li>\n<li><a href=\"https://github.com/axios/axios/commit/7d45ab2e2ad6e59f5475e39afd4b286b1f393fc0\"><code>7d45ab2</code></a> chore(tests): fixed tests to pass in node v19 and v20 with <code>keep-alive</code> enabl...</li>\n<li><a href=\"https://github.com/axios/axios/commit/5aaff532a6b820bb9ab6a8cd0f77131b47e2adb8\"><code>5aaff53</code></a> fix(dns): fixed lookup function decorator to work properly in node v20; (<a href=\"https://redirect.github.com/axios/axios/issues/6011\">#6011</a>)</li>\n<li><a href=\"https://github.com/axios/axios/commit/a48a63ad823fc20e5a6a705f05f09842ca49f48c\"><code>a48a63a</code></a> chore(docs): added AxiosHeaders docs; (<a href=\"https://redirect.github.com/axios/axios/issues/5932\">#5932</a>)</li>\n<li><a href=\"https://github.com/axios/axios/commit/a1c8ad008b3c13d53e135bbd0862587fb9d3fc09\"><code>a1c8ad0</code></a> fix(types): fix AxiosHeaders types; (<a href=\"https://redirect.github.com/axios/axios/issues/5931\">#5931</a>)</li>\n<li><a href=\"https://github.com/axios/axios/commit/2ac731d60545ba5c4202c25fd2e732ddd8297d82\"><code>2ac731d</code></a> chore(docs): update readme.md (<a href=\"https://redirect.github.com/axios/axios/issues/5889\">#5889</a>)</li>\n<li>See full diff in <a href=\"https://github.com/axios/axios/compare/v1.5.1...v1.6.0\">compare view</a></li>\n</ul>\n</details>\n<br />\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=axios&package-manager=npm_and_yarn&previous-version=1.5.1&new-version=1.6.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n<details>\n<summary>Dependabot commands and options</summary>\n<br />\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/MTRNord/home-erp/network/alerts).\n\n</details>", + "comments": [], + "review_comments": [] +} diff --git a/pulls/1.md b/pulls/1.md @@ -0,0 +1,111 @@ +# PR #1 Bump axios from 1.5.1 to 1.6.0 + +- **Status:** open +- **Author:** @dependabot[bot] +- **Created:** 2023-11-11T16:20:12Z +- **Branch:** dependabot/npm_and_yarn/axios-1.6.0 → main +- **Labels:** dependencies +- **Diff:** [1.diff](./1.diff) + +--- + +Bumps [axios](https://github.com/axios/axios) from 1.5.1 to 1.6.0. +<details> +<summary>Release notes</summary> +<p><em>Sourced from <a href="https://github.com/axios/axios/releases">axios's releases</a>.</em></p> +<blockquote> +<h2>Release v1.6.0</h2> +<h2>Release notes:</h2> +<h3>Bug Fixes</h3> +<ul> +<li><strong>CSRF:</strong> fixed CSRF vulnerability CVE-2023-45857 (<a href="https://redirect.github.com/axios/axios/issues/6028">#6028</a>) (<a href="https://github.com/axios/axios/commit/96ee232bd3ee4de2e657333d4d2191cd389e14d0">96ee232</a>)</li> +<li><strong>dns:</strong> fixed lookup function decorator to work properly in node v20; (<a href="https://redirect.github.com/axios/axios/issues/6011">#6011</a>) (<a href="https://github.com/axios/axios/commit/5aaff532a6b820bb9ab6a8cd0f77131b47e2adb8">5aaff53</a>)</li> +<li><strong>types:</strong> fix AxiosHeaders types; (<a href="https://redirect.github.com/axios/axios/issues/5931">#5931</a>) (<a href="https://github.com/axios/axios/commit/a1c8ad008b3c13d53e135bbd0862587fb9d3fc09">a1c8ad0</a>)</li> +</ul> +<h3>PRs</h3> +<ul> +<li>CVE 2023 45857 ( <a href="https://api.github.com/repos/axios/axios/pulls/6028">#6028</a> )</li> +</ul> +<pre><code> +⚠️ Critical vulnerability fix. See https://security.snyk.io/vuln/SNYK-JS-AXIOS-6032459 +</code></pre> +<h3>Contributors to this release</h3> +<ul> +<li><!-- raw HTML omitted --> <a href="https://github.com/DigitalBrainJS" title="+449/-114 ([#6032](https://github.com/axios/axios/issues/6032) [#6021](https://github.com/axios/axios/issues/6021) [#6011](https://github.com/axios/axios/issues/6011) [#5932](https://github.com/axios/axios/issues/5932) [#5931](https://github.com/axios/axios/issues/5931) )">Dmitriy Mozgovoy</a></li> +<li><!-- raw HTML omitted --> <a href="https://github.com/valentin-panov" title="+4/-4 ([#6028](https://github.com/axios/axios/issues/6028) )">Valentin Panov</a></li> +<li><!-- raw HTML omitted --> <a href="https://github.com/therealrinku" title="+1/-1 ([#5889](https://github.com/axios/axios/issues/5889) )">Rinku Chaudhari</a></li> +</ul> +</blockquote> +</details> +<details> +<summary>Changelog</summary> +<p><em>Sourced from <a href="https://github.com/axios/axios/blob/v1.x/CHANGELOG.md">axios's changelog</a>.</em></p> +<blockquote> +<h1><a href="https://github.com/axios/axios/compare/v1.5.1...v1.6.0">1.6.0</a> (2023-10-26)</h1> +<h3>Bug Fixes</h3> +<ul> +<li><strong>CSRF:</strong> fixed CSRF vulnerability CVE-2023-45857 (<a href="https://redirect.github.com/axios/axios/issues/6028">#6028</a>) (<a href="https://github.com/axios/axios/commit/96ee232bd3ee4de2e657333d4d2191cd389e14d0">96ee232</a>)</li> +<li><strong>dns:</strong> fixed lookup function decorator to work properly in node v20; (<a href="https://redirect.github.com/axios/axios/issues/6011">#6011</a>) (<a href="https://github.com/axios/axios/commit/5aaff532a6b820bb9ab6a8cd0f77131b47e2adb8">5aaff53</a>)</li> +<li><strong>types:</strong> fix AxiosHeaders types; (<a href="https://redirect.github.com/axios/axios/issues/5931">#5931</a>) (<a href="https://github.com/axios/axios/commit/a1c8ad008b3c13d53e135bbd0862587fb9d3fc09">a1c8ad0</a>)</li> +</ul> +<h3>PRs</h3> +<ul> +<li>CVE 2023 45857 ( <a href="https://api.github.com/repos/axios/axios/pulls/6028">#6028</a> )</li> +</ul> +<pre><code> +⚠️ Critical vulnerability fix. See https://security.snyk.io/vuln/SNYK-JS-AXIOS-6032459 +</code></pre> +<h3>Contributors to this release</h3> +<ul> +<li><!-- raw HTML omitted --> <a href="https://github.com/DigitalBrainJS" title="+449/-114 ([#6032](https://github.com/axios/axios/issues/6032) [#6021](https://github.com/axios/axios/issues/6021) [#6011](https://github.com/axios/axios/issues/6011) [#5932](https://github.com/axios/axios/issues/5932) [#5931](https://github.com/axios/axios/issues/5931) )">Dmitriy Mozgovoy</a></li> +<li><!-- raw HTML omitted --> <a href="https://github.com/valentin-panov" title="+4/-4 ([#6028](https://github.com/axios/axios/issues/6028) )">Valentin Panov</a></li> +<li><!-- raw HTML omitted --> <a href="https://github.com/therealrinku" title="+1/-1 ([#5889](https://github.com/axios/axios/issues/5889) )">Rinku Chaudhari</a></li> +</ul> +</blockquote> +</details> +<details> +<summary>Commits</summary> +<ul> +<li><a href="https://github.com/axios/axios/commit/f7adacdbaa569281253c8cfc623ad3f4dc909c60"><code>f7adacd</code></a> chore(release): v1.6.0 (<a href="https://redirect.github.com/axios/axios/issues/6031">#6031</a>)</li> +<li><a href="https://github.com/axios/axios/commit/9917e67cbb6c157382863bad8c741de58e3f3c2b"><code>9917e67</code></a> chore(ci): fix release-it arg; (<a href="https://redirect.github.com/axios/axios/issues/6032">#6032</a>)</li> +<li><a href="https://github.com/axios/axios/commit/96ee232bd3ee4de2e657333d4d2191cd389e14d0"><code>96ee232</code></a> fix(CSRF): fixed CSRF vulnerability CVE-2023-45857 (<a href="https://redirect.github.com/axios/axios/issues/6028">#6028</a>)</li> +<li><a href="https://github.com/axios/axios/commit/7d45ab2e2ad6e59f5475e39afd4b286b1f393fc0"><code>7d45ab2</code></a> chore(tests): fixed tests to pass in node v19 and v20 with <code>keep-alive</code> enabl...</li> +<li><a href="https://github.com/axios/axios/commit/5aaff532a6b820bb9ab6a8cd0f77131b47e2adb8"><code>5aaff53</code></a> fix(dns): fixed lookup function decorator to work properly in node v20; (<a href="https://redirect.github.com/axios/axios/issues/6011">#6011</a>)</li> +<li><a href="https://github.com/axios/axios/commit/a48a63ad823fc20e5a6a705f05f09842ca49f48c"><code>a48a63a</code></a> chore(docs): added AxiosHeaders docs; (<a href="https://redirect.github.com/axios/axios/issues/5932">#5932</a>)</li> +<li><a href="https://github.com/axios/axios/commit/a1c8ad008b3c13d53e135bbd0862587fb9d3fc09"><code>a1c8ad0</code></a> fix(types): fix AxiosHeaders types; (<a href="https://redirect.github.com/axios/axios/issues/5931">#5931</a>)</li> +<li><a href="https://github.com/axios/axios/commit/2ac731d60545ba5c4202c25fd2e732ddd8297d82"><code>2ac731d</code></a> chore(docs): update readme.md (<a href="https://redirect.github.com/axios/axios/issues/5889">#5889</a>)</li> +<li>See full diff in <a href="https://github.com/axios/axios/compare/v1.5.1...v1.6.0">compare view</a></li> +</ul> +</details> +<br /> + + +[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=axios&package-manager=npm_and_yarn&previous-version=1.5.1&new-version=1.6.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) + +Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. + +[//]: # (dependabot-automerge-start) +[//]: # (dependabot-automerge-end) + +--- + +<details> +<summary>Dependabot commands and options</summary> +<br /> + +You can trigger Dependabot actions by commenting on this PR: +- `@dependabot rebase` will rebase this PR +- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it +- `@dependabot merge` will merge this PR after your CI passes on it +- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it +- `@dependabot cancel merge` will cancel a previously requested merge and block automerging +- `@dependabot reopen` will reopen this PR if it is closed +- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually +- `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency +- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) +- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) +- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) +You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/MTRNord/home-erp/network/alerts). + +</details> + diff --git a/pulls/2.diff b/pulls/2.diff @@ -0,0 +1,38 @@ +diff --git a/package-lock.json b/package-lock.json +index 2f6cc20..7b8b005 100644 +--- a/package-lock.json ++++ b/package-lock.json +@@ -11,7 +11,7 @@ + "laravel-vite-plugin": "^0.8.0", + "postcss": "^8.4.6", + "tailwindcss": "^3.1.0", +- "vite": "^4.0.0" ++ "vite": "^4.5.1" + } + }, + "node_modules/@alloc/quick-lru": { +@@ -1663,9 +1663,9 @@ + "dev": true + }, + "node_modules/vite": { +- "version": "4.5.0", +- "resolved": "https://registry.npmjs.org/vite/-/vite-4.5.0.tgz", +- "integrity": "sha512-ulr8rNLA6rkyFAlVWw2q5YJ91v098AFQ2R0PRFwPzREXOUJQPtFUG0t+/ZikhaOCDqFoDhN6/v8Sq0o4araFAw==", ++ "version": "4.5.1", ++ "resolved": "https://registry.npmjs.org/vite/-/vite-4.5.1.tgz", ++ "integrity": "sha512-AXXFaAJ8yebyqzoNB9fu2pHoo/nWX+xZlaRwoeYUxEqBO+Zj4msE5G+BhGBll9lYEKv9Hfks52PAF2X7qDYXQA==", + "dev": true, + "dependencies": { + "esbuild": "^0.18.10", +diff --git a/package.json b/package.json +index 2ecd503..29182b1 100644 +--- a/package.json ++++ b/package.json +@@ -12,6 +12,6 @@ + "laravel-vite-plugin": "^0.8.0", + "postcss": "^8.4.6", + "tailwindcss": "^3.1.0", +- "vite": "^4.0.0" ++ "vite": "^4.5.1" + } + } diff --git a/pulls/2.json b/pulls/2.json @@ -0,0 +1,26 @@ +{ + "number": 2, + "title": "Bump vite from 4.5.0 to 4.5.1", + "state": "closed", + "diff_file": "2.diff", + "author": "dependabot[bot]", + "created_at": "2023-12-05T23:33:09Z", + "closed_at": "2024-01-20T04:43:58Z", + "merged_at": null, + "base_ref": "main", + "head_ref": "dependabot/npm_and_yarn/vite-4.5.1", + "labels": [ + "dependencies" + ], + "assignees": [], + "requested_reviewers": [], + "body": "Bumps [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) from 4.5.0 to 4.5.1.\n<details>\n<summary>Changelog</summary>\n<p><em>Sourced from <a href=\"https://github.com/vitejs/vite/blob/v4.5.1/packages/vite/CHANGELOG.md\">vite's changelog</a>.</em></p>\n<blockquote>\n<h2><!-- raw HTML omitted -->4.5.1 (2023-12-04)<!-- raw HTML omitted --></h2>\n<ul>\n<li>fix: backport <a href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15223\">#15223</a>, proxy html path should be encoded (<a href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15226\">#15226</a>) (<a href=\"https://github.com/vitejs/vite/commit/41bb354\">41bb354</a>), closes <a href=\"https://redirect.github.com/vitejs/vite/issues/15223\">#15223</a> <a href=\"https://redirect.github.com/vitejs/vite/issues/15226\">#15226</a></li>\n</ul>\n</blockquote>\n</details>\n<details>\n<summary>Commits</summary>\n<ul>\n<li><a href=\"https://github.com/vitejs/vite/commit/c0751156f0c015f6dbd5c7a58afd8cff2fde1a2f\"><code>c075115</code></a> release: v4.5.1</li>\n<li><a href=\"https://github.com/vitejs/vite/commit/41bb3546a839ed2c822367b3933770c0693a0fb0\"><code>41bb354</code></a> fix: backport <a href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15223\">#15223</a>, proxy html path should be encoded (<a href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15226\">#15226</a>)</li>\n<li>See full diff in <a href=\"https://github.com/vitejs/vite/commits/v4.5.1/packages/vite\">compare view</a></li>\n</ul>\n</details>\n<br />\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=vite&package-manager=npm_and_yarn&previous-version=4.5.0&new-version=4.5.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n<details>\n<summary>Dependabot commands and options</summary>\n<br />\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/MTRNord/home-erp/network/alerts).\n\n</details>", + "comments": [ + { + "author": "dependabot[bot]", + "created_at": "2024-01-20T04:43:58Z", + "body": "Superseded by #4." + } + ], + "review_comments": [] +} diff --git a/pulls/2.md b/pulls/2.md @@ -0,0 +1,70 @@ +# PR #2 Bump vite from 4.5.0 to 4.5.1 + +- **Status:** closed +- **Author:** @dependabot[bot] +- **Created:** 2023-12-05T23:33:09Z +- **Branch:** dependabot/npm_and_yarn/vite-4.5.1 → main +- **Closed:** 2024-01-20T04:43:58Z +- **Labels:** dependencies +- **Diff:** [2.diff](./2.diff) + +--- + +Bumps [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) from 4.5.0 to 4.5.1. +<details> +<summary>Changelog</summary> +<p><em>Sourced from <a href="https://github.com/vitejs/vite/blob/v4.5.1/packages/vite/CHANGELOG.md">vite's changelog</a>.</em></p> +<blockquote> +<h2><!-- raw HTML omitted -->4.5.1 (2023-12-04)<!-- raw HTML omitted --></h2> +<ul> +<li>fix: backport <a href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15223">#15223</a>, proxy html path should be encoded (<a href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15226">#15226</a>) (<a href="https://github.com/vitejs/vite/commit/41bb354">41bb354</a>), closes <a href="https://redirect.github.com/vitejs/vite/issues/15223">#15223</a> <a href="https://redirect.github.com/vitejs/vite/issues/15226">#15226</a></li> +</ul> +</blockquote> +</details> +<details> +<summary>Commits</summary> +<ul> +<li><a href="https://github.com/vitejs/vite/commit/c0751156f0c015f6dbd5c7a58afd8cff2fde1a2f"><code>c075115</code></a> release: v4.5.1</li> +<li><a href="https://github.com/vitejs/vite/commit/41bb3546a839ed2c822367b3933770c0693a0fb0"><code>41bb354</code></a> fix: backport <a href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15223">#15223</a>, proxy html path should be encoded (<a href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15226">#15226</a>)</li> +<li>See full diff in <a href="https://github.com/vitejs/vite/commits/v4.5.1/packages/vite">compare view</a></li> +</ul> +</details> +<br /> + + +[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=vite&package-manager=npm_and_yarn&previous-version=4.5.0&new-version=4.5.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) + +Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. + +[//]: # (dependabot-automerge-start) +[//]: # (dependabot-automerge-end) + +--- + +<details> +<summary>Dependabot commands and options</summary> +<br /> + +You can trigger Dependabot actions by commenting on this PR: +- `@dependabot rebase` will rebase this PR +- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it +- `@dependabot merge` will merge this PR after your CI passes on it +- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it +- `@dependabot cancel merge` will cancel a previously requested merge and block automerging +- `@dependabot reopen` will reopen this PR if it is closed +- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually +- `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency +- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) +- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) +- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) +You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/MTRNord/home-erp/network/alerts). + +</details> + + +## Comments + +### @dependabot[bot] — 2024-01-20T04:43:58Z + +Superseded by #4. + diff --git a/pulls/3.diff b/pulls/3.diff @@ -0,0 +1,17 @@ +diff --git a/package-lock.json b/package-lock.json +index 2f6cc20..315cd62 100644 +--- a/package-lock.json ++++ b/package-lock.json +@@ -851,9 +851,9 @@ + } + }, + "node_modules/follow-redirects": { +- "version": "1.15.3", +- "resolved": "https://registry.npmjs.org/follow-redirects/-/follow-redirects-1.15.3.tgz", +- "integrity": "sha512-1VzOtuEM8pC9SFU1E+8KfTjZyMztRsgEfwQl44z8A25uy13jSzTj6dyK2Df52iV0vgHCfBwLhDWevLn95w5v6Q==", ++ "version": "1.15.4", ++ "resolved": "https://registry.npmjs.org/follow-redirects/-/follow-redirects-1.15.4.tgz", ++ "integrity": "sha512-Cr4D/5wlrb0z9dgERpUL3LrmPKVDsETIJhaCMeDfuFYcqa5bldGV6wBsAN6X/vxlXQtFBMrXdXxdL8CbDTGniw==", + "dev": true, + "funding": [ + { diff --git a/pulls/3.json b/pulls/3.json @@ -0,0 +1,20 @@ +{ + "number": 3, + "title": "Bump follow-redirects from 1.15.3 to 1.15.4", + "state": "open", + "diff_file": "3.diff", + "author": "dependabot[bot]", + "created_at": "2024-01-11T03:02:21Z", + "closed_at": null, + "merged_at": null, + "base_ref": "main", + "head_ref": "dependabot/npm_and_yarn/follow-redirects-1.15.4", + "labels": [ + "dependencies" + ], + "assignees": [], + "requested_reviewers": [], + "body": "Bumps [follow-redirects](https://github.com/follow-redirects/follow-redirects) from 1.15.3 to 1.15.4.\n<details>\n<summary>Commits</summary>\n<ul>\n<li><a href=\"https://github.com/follow-redirects/follow-redirects/commit/65858205e59f1e23c9bf173348a7a7cbb8ac47f5\"><code>6585820</code></a> Release version 1.15.4 of the npm package.</li>\n<li><a href=\"https://github.com/follow-redirects/follow-redirects/commit/7a6567e16dfa9ad18a70bfe91784c28653fbf19d\"><code>7a6567e</code></a> Disallow bracketed hostnames.</li>\n<li><a href=\"https://github.com/follow-redirects/follow-redirects/commit/05629af696588b90d64e738bc2e809a97a5f92fc\"><code>05629af</code></a> Prefer native URL instead of deprecated url.parse.</li>\n<li><a href=\"https://github.com/follow-redirects/follow-redirects/commit/1cba8e85fa73f563a439fe460cf028688e4358df\"><code>1cba8e8</code></a> Prefer native URL instead of legacy url.resolve.</li>\n<li><a href=\"https://github.com/follow-redirects/follow-redirects/commit/72bc2a4229bc18dc9fbd57c60579713e6264cb92\"><code>72bc2a4</code></a> Simplify _processResponse error handling.</li>\n<li><a href=\"https://github.com/follow-redirects/follow-redirects/commit/3d42aecdca39b144a0a2f27ea134b4cf67dd796a\"><code>3d42aec</code></a> Add bracket tests.</li>\n<li><a href=\"https://github.com/follow-redirects/follow-redirects/commit/bcbb096b32686ecad6cd34235358ed6f2217d4f0\"><code>bcbb096</code></a> Do not directly set Error properties.</li>\n<li>See full diff in <a href=\"https://github.com/follow-redirects/follow-redirects/compare/v1.15.3...v1.15.4\">compare view</a></li>\n</ul>\n</details>\n<br />\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=follow-redirects&package-manager=npm_and_yarn&previous-version=1.15.3&new-version=1.15.4)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n<details>\n<summary>Dependabot commands and options</summary>\n<br />\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/MTRNord/home-erp/network/alerts).\n\n</details>", + "comments": [], + "review_comments": [] +} diff --git a/pulls/3.md b/pulls/3.md @@ -0,0 +1,57 @@ +# PR #3 Bump follow-redirects from 1.15.3 to 1.15.4 + +- **Status:** open +- **Author:** @dependabot[bot] +- **Created:** 2024-01-11T03:02:21Z +- **Branch:** dependabot/npm_and_yarn/follow-redirects-1.15.4 → main +- **Labels:** dependencies +- **Diff:** [3.diff](./3.diff) + +--- + +Bumps [follow-redirects](https://github.com/follow-redirects/follow-redirects) from 1.15.3 to 1.15.4. +<details> +<summary>Commits</summary> +<ul> +<li><a href="https://github.com/follow-redirects/follow-redirects/commit/65858205e59f1e23c9bf173348a7a7cbb8ac47f5"><code>6585820</code></a> Release version 1.15.4 of the npm package.</li> +<li><a href="https://github.com/follow-redirects/follow-redirects/commit/7a6567e16dfa9ad18a70bfe91784c28653fbf19d"><code>7a6567e</code></a> Disallow bracketed hostnames.</li> +<li><a href="https://github.com/follow-redirects/follow-redirects/commit/05629af696588b90d64e738bc2e809a97a5f92fc"><code>05629af</code></a> Prefer native URL instead of deprecated url.parse.</li> +<li><a href="https://github.com/follow-redirects/follow-redirects/commit/1cba8e85fa73f563a439fe460cf028688e4358df"><code>1cba8e8</code></a> Prefer native URL instead of legacy url.resolve.</li> +<li><a href="https://github.com/follow-redirects/follow-redirects/commit/72bc2a4229bc18dc9fbd57c60579713e6264cb92"><code>72bc2a4</code></a> Simplify _processResponse error handling.</li> +<li><a href="https://github.com/follow-redirects/follow-redirects/commit/3d42aecdca39b144a0a2f27ea134b4cf67dd796a"><code>3d42aec</code></a> Add bracket tests.</li> +<li><a href="https://github.com/follow-redirects/follow-redirects/commit/bcbb096b32686ecad6cd34235358ed6f2217d4f0"><code>bcbb096</code></a> Do not directly set Error properties.</li> +<li>See full diff in <a href="https://github.com/follow-redirects/follow-redirects/compare/v1.15.3...v1.15.4">compare view</a></li> +</ul> +</details> +<br /> + + +[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=follow-redirects&package-manager=npm_and_yarn&previous-version=1.15.3&new-version=1.15.4)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) + +Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. + +[//]: # (dependabot-automerge-start) +[//]: # (dependabot-automerge-end) + +--- + +<details> +<summary>Dependabot commands and options</summary> +<br /> + +You can trigger Dependabot actions by commenting on this PR: +- `@dependabot rebase` will rebase this PR +- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it +- `@dependabot merge` will merge this PR after your CI passes on it +- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it +- `@dependabot cancel merge` will cancel a previously requested merge and block automerging +- `@dependabot reopen` will reopen this PR if it is closed +- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually +- `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency +- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) +- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) +- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) +You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/MTRNord/home-erp/network/alerts). + +</details> + diff --git a/pulls/4.diff b/pulls/4.diff @@ -0,0 +1,38 @@ +diff --git a/package-lock.json b/package-lock.json +index 2f6cc20..61b0ba3 100644 +--- a/package-lock.json ++++ b/package-lock.json +@@ -11,7 +11,7 @@ + "laravel-vite-plugin": "^0.8.0", + "postcss": "^8.4.6", + "tailwindcss": "^3.1.0", +- "vite": "^4.0.0" ++ "vite": "^4.5.2" + } + }, + "node_modules/@alloc/quick-lru": { +@@ -1663,9 +1663,9 @@ + "dev": true + }, + "node_modules/vite": { +- "version": "4.5.0", +- "resolved": "https://registry.npmjs.org/vite/-/vite-4.5.0.tgz", +- "integrity": "sha512-ulr8rNLA6rkyFAlVWw2q5YJ91v098AFQ2R0PRFwPzREXOUJQPtFUG0t+/ZikhaOCDqFoDhN6/v8Sq0o4araFAw==", ++ "version": "4.5.2", ++ "resolved": "https://registry.npmjs.org/vite/-/vite-4.5.2.tgz", ++ "integrity": "sha512-tBCZBNSBbHQkaGyhGCDUGqeo2ph8Fstyp6FMSvTtsXeZSPpSMGlviAOav2hxVTqFcx8Hj/twtWKsMJXNY0xI8w==", + "dev": true, + "dependencies": { + "esbuild": "^0.18.10", +diff --git a/package.json b/package.json +index 2ecd503..7113fae 100644 +--- a/package.json ++++ b/package.json +@@ -12,6 +12,6 @@ + "laravel-vite-plugin": "^0.8.0", + "postcss": "^8.4.6", + "tailwindcss": "^3.1.0", +- "vite": "^4.0.0" ++ "vite": "^4.5.2" + } + } diff --git a/pulls/4.json b/pulls/4.json @@ -0,0 +1,20 @@ +{ + "number": 4, + "title": "Bump vite from 4.5.0 to 4.5.2", + "state": "open", + "diff_file": "4.diff", + "author": "dependabot[bot]", + "created_at": "2024-01-20T04:43:57Z", + "closed_at": null, + "merged_at": null, + "base_ref": "main", + "head_ref": "dependabot/npm_and_yarn/vite-4.5.2", + "labels": [ + "dependencies" + ], + "assignees": [], + "requested_reviewers": [], + "body": "Bumps [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) from 4.5.0 to 4.5.2.\n<details>\n<summary>Changelog</summary>\n<p><em>Sourced from <a href=\"https://github.com/vitejs/vite/blob/v4.5.2/packages/vite/CHANGELOG.md\">vite's changelog</a>.</em></p>\n<blockquote>\n<h2><!-- raw HTML omitted -->4.5.2 (2024-01-19)<!-- raw HTML omitted --></h2>\n<ul>\n<li>fix: fs deny for case insensitive systems (<a href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15653\">#15653</a>) (<a href=\"https://github.com/vitejs/vite/commit/eeec23b\">eeec23b</a>), closes <a href=\"https://redirect.github.com/vitejs/vite/issues/15653\">#15653</a></li>\n</ul>\n<h2><!-- raw HTML omitted -->4.5.1 (2023-12-04)<!-- raw HTML omitted --></h2>\n<ul>\n<li>fix: backport <a href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15223\">#15223</a>, proxy html path should be encoded (<a href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15226\">#15226</a>) (<a href=\"https://github.com/vitejs/vite/commit/41bb354\">41bb354</a>), closes <a href=\"https://redirect.github.com/vitejs/vite/issues/15223\">#15223</a> <a href=\"https://redirect.github.com/vitejs/vite/issues/15226\">#15226</a></li>\n</ul>\n</blockquote>\n</details>\n<details>\n<summary>Commits</summary>\n<ul>\n<li><a href=\"https://github.com/vitejs/vite/commit/d0360c12476ccc61e9e78c500ed1bd74ed65a2cf\"><code>d0360c1</code></a> release: v4.5.2</li>\n<li><a href=\"https://github.com/vitejs/vite/commit/eeec23bbc9d476c54a3a6d36e78455867185a7cb\"><code>eeec23b</code></a> fix: fs deny for case insensitive systems (<a href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15653\">#15653</a>)</li>\n<li><a href=\"https://github.com/vitejs/vite/commit/c0751156f0c015f6dbd5c7a58afd8cff2fde1a2f\"><code>c075115</code></a> release: v4.5.1</li>\n<li><a href=\"https://github.com/vitejs/vite/commit/41bb3546a839ed2c822367b3933770c0693a0fb0\"><code>41bb354</code></a> fix: backport <a href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15223\">#15223</a>, proxy html path should be encoded (<a href=\"https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15226\">#15226</a>)</li>\n<li>See full diff in <a href=\"https://github.com/vitejs/vite/commits/v4.5.2/packages/vite\">compare view</a></li>\n</ul>\n</details>\n<br />\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=vite&package-manager=npm_and_yarn&previous-version=4.5.0&new-version=4.5.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n<details>\n<summary>Dependabot commands and options</summary>\n<br />\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/MTRNord/home-erp/network/alerts).\n\n</details>", + "comments": [], + "review_comments": [] +} diff --git a/pulls/4.md b/pulls/4.md @@ -0,0 +1,68 @@ +# PR #4 Bump vite from 4.5.0 to 4.5.2 + +- **Status:** open +- **Author:** @dependabot[bot] +- **Created:** 2024-01-20T04:43:57Z +- **Branch:** dependabot/npm_and_yarn/vite-4.5.2 → main +- **Labels:** dependencies +- **Diff:** [4.diff](./4.diff) + +--- + +Bumps [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) from 4.5.0 to 4.5.2. +<details> +<summary>Changelog</summary> +<p><em>Sourced from <a href="https://github.com/vitejs/vite/blob/v4.5.2/packages/vite/CHANGELOG.md">vite's changelog</a>.</em></p> +<blockquote> +<h2><!-- raw HTML omitted -->4.5.2 (2024-01-19)<!-- raw HTML omitted --></h2> +<ul> +<li>fix: fs deny for case insensitive systems (<a href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15653">#15653</a>) (<a href="https://github.com/vitejs/vite/commit/eeec23b">eeec23b</a>), closes <a href="https://redirect.github.com/vitejs/vite/issues/15653">#15653</a></li> +</ul> +<h2><!-- raw HTML omitted -->4.5.1 (2023-12-04)<!-- raw HTML omitted --></h2> +<ul> +<li>fix: backport <a href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15223">#15223</a>, proxy html path should be encoded (<a href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15226">#15226</a>) (<a href="https://github.com/vitejs/vite/commit/41bb354">41bb354</a>), closes <a href="https://redirect.github.com/vitejs/vite/issues/15223">#15223</a> <a href="https://redirect.github.com/vitejs/vite/issues/15226">#15226</a></li> +</ul> +</blockquote> +</details> +<details> +<summary>Commits</summary> +<ul> +<li><a href="https://github.com/vitejs/vite/commit/d0360c12476ccc61e9e78c500ed1bd74ed65a2cf"><code>d0360c1</code></a> release: v4.5.2</li> +<li><a href="https://github.com/vitejs/vite/commit/eeec23bbc9d476c54a3a6d36e78455867185a7cb"><code>eeec23b</code></a> fix: fs deny for case insensitive systems (<a href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15653">#15653</a>)</li> +<li><a href="https://github.com/vitejs/vite/commit/c0751156f0c015f6dbd5c7a58afd8cff2fde1a2f"><code>c075115</code></a> release: v4.5.1</li> +<li><a href="https://github.com/vitejs/vite/commit/41bb3546a839ed2c822367b3933770c0693a0fb0"><code>41bb354</code></a> fix: backport <a href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15223">#15223</a>, proxy html path should be encoded (<a href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/15226">#15226</a>)</li> +<li>See full diff in <a href="https://github.com/vitejs/vite/commits/v4.5.2/packages/vite">compare view</a></li> +</ul> +</details> +<br /> + + +[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=vite&package-manager=npm_and_yarn&previous-version=4.5.0&new-version=4.5.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) + +Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. + +[//]: # (dependabot-automerge-start) +[//]: # (dependabot-automerge-end) + +--- + +<details> +<summary>Dependabot commands and options</summary> +<br /> + +You can trigger Dependabot actions by commenting on this PR: +- `@dependabot rebase` will rebase this PR +- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it +- `@dependabot merge` will merge this PR after your CI passes on it +- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it +- `@dependabot cancel merge` will cancel a previously requested merge and block automerging +- `@dependabot reopen` will reopen this PR if it is closed +- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually +- `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency +- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) +- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) +- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) +You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/MTRNord/home-erp/network/alerts). + +</details> +