Tim Donohue
|
bd43d959ab
|
Merge pull request #3544 from tdonohue/remove_types_sanitize_html
Remove unused `@types/sanitize-html` dependency
|
2024-10-23 13:16:13 -05:00 |
|
Tim Donohue
|
abd0d696dc
|
Merge pull request #3481 from DSpace/alert-autofix-6
Fix code scanning alert no. 6: Incomplete string escaping or encoding
|
2024-10-23 12:24:57 -05:00 |
|
Tim Donohue
|
74e85c79e7
|
Remove unused @types/sanitize-html
|
2024-10-23 11:42:09 -05:00 |
|
Tim Donohue
|
ea8f24d410
|
Fix bug where all security-updates need unique IDs
|
2024-10-23 11:33:28 -05:00 |
|
Tim Donohue
|
92ee89e8e5
|
Fix bug in dependabot.yml "security-updates" settings
"security-updates" configs can only be in sections where there is no "target-branch". This is because they only apply to the primary branch.
|
2024-10-23 11:31:16 -05:00 |
|
Tim Donohue
|
c7497cdf4e
|
Merge pull request #3539 from DSpace/dependabot/npm_and_yarn/main/webpack-5.95.0
Bump webpack from 5.94.0 to 5.95.0
|
2024-10-23 11:01:18 -05:00 |
|
Tim Donohue
|
81fb382b9a
|
Merge pull request #3536 from DSpace/dependabot/npm_and_yarn/main/babel/runtime-7.25.9
Bump @babel/runtime from 7.25.7 to 7.25.9
|
2024-10-23 10:58:40 -05:00 |
|
Tim Donohue
|
ae816815fc
|
Merge pull request #3538 from DSpace/dependabot/npm_and_yarn/main/postcss-8.4.47
Bump postcss from 8.4.39 to 8.4.47
|
2024-10-23 10:43:08 -05:00 |
|
Tim Donohue
|
87dc6be213
|
Remove unnecessary @ts-expect-error, as the bug they are expecting is fixed in webpack 5.95.0.
|
2024-10-23 10:25:49 -05:00 |
|
dependabot[bot]
|
93c6ab2684
|
Bump webpack from 5.94.0 to 5.95.0
Bumps [webpack](https://github.com/webpack/webpack) from 5.94.0 to 5.95.0.
- [Release notes](https://github.com/webpack/webpack/releases)
- [Commits](https://github.com/webpack/webpack/compare/v5.94.0...v5.95.0)
---
updated-dependencies:
- dependency-name: webpack
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-22 21:34:52 +00:00 |
|
dependabot[bot]
|
2ab1472f22
|
Bump postcss from 8.4.39 to 8.4.47
Bumps [postcss](https://github.com/postcss/postcss) from 8.4.39 to 8.4.47.
- [Release notes](https://github.com/postcss/postcss/releases)
- [Changelog](https://github.com/postcss/postcss/blob/main/CHANGELOG.md)
- [Commits](https://github.com/postcss/postcss/compare/8.4.39...8.4.47)
---
updated-dependencies:
- dependency-name: postcss
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-22 21:34:01 +00:00 |
|
dependabot[bot]
|
280d6d92ad
|
Bump @babel/runtime from 7.25.7 to 7.25.9
Bumps [@babel/runtime](https://github.com/babel/babel/tree/HEAD/packages/babel-runtime) from 7.25.7 to 7.25.9.
- [Release notes](https://github.com/babel/babel/releases)
- [Changelog](https://github.com/babel/babel/blob/main/CHANGELOG.md)
- [Commits](https://github.com/babel/babel/commits/v7.25.9/packages/babel-runtime)
---
updated-dependencies:
- dependency-name: "@babel/runtime"
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-22 21:33:30 +00:00 |
|
Tim Donohue
|
b7c4c737c1
|
Update dependabot.yml
|
2024-10-22 16:29:48 -05:00 |
|
Tim Donohue
|
f3eb5b8a86
|
Merge pull request #3480 from DSpace/dependabot/npm_and_yarn/main/typescript-5.4.5
Bump typescript from 5.3.3 to 5.4.5
|
2024-10-22 13:52:32 -05:00 |
|
Tim Donohue
|
49809da1fb
|
Merge pull request #3476 from DSpace/dependabot/npm_and_yarn/main/mirador-share-plugin-0.16.0
Bump mirador-share-plugin from 0.11.0 to 0.16.0
|
2024-10-22 12:12:11 -05:00 |
|
Tim Donohue
|
d98ae341fd
|
Must also update typescript version override.
|
2024-10-22 11:53:20 -05:00 |
|
Tim Donohue
|
f758d6250c
|
Merge pull request #3477 from DSpace/dependabot/npm_and_yarn/main/zone.js-0.14.10
Bump zone.js from 0.14.7 to 0.14.10
|
2024-10-22 11:13:40 -05:00 |
|
dependabot[bot]
|
f0b4a56ed5
|
Bump zone.js from 0.14.7 to 0.14.10
Bumps [zone.js](https://github.com/angular/angular/tree/HEAD/packages/zone.js) from 0.14.7 to 0.14.10.
- [Release notes](https://github.com/angular/angular/releases)
- [Changelog](https://github.com/angular/angular/blob/main/packages/zone.js/CHANGELOG.md)
- [Commits](https://github.com/angular/angular/commits/zone.js-0.14.10/packages/zone.js)
---
updated-dependencies:
- dependency-name: zone.js
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-22 13:56:15 +00:00 |
|
Tim Donohue
|
23bc4b286b
|
Merge pull request #3511 from tdonohue/remove_unused_deps_main
[Port main] Remove unused dependencies (sortablejs, sanitize-html, webfontloader)
|
2024-10-22 08:55:00 -05:00 |
|
Tim Donohue
|
beb05b26ce
|
Remove unused webfontloader
|
2024-10-21 17:09:06 -05:00 |
|
Tim Donohue
|
2e55f4b47f
|
Remove unused sanitize-html
|
2024-10-21 17:08:25 -05:00 |
|
Tim Donohue
|
08fe8beaf9
|
Remove sortablejs which is unused
|
2024-10-21 17:07:44 -05:00 |
|
Tim Donohue
|
88fd0b0094
|
Merge pull request #3504 from DSpace/dependabot/npm_and_yarn/main/karma-6.4.4
Bump karma from 6.4.3 to 6.4.4
|
2024-10-21 15:55:40 -05:00 |
|
Tim Donohue
|
56321e6da8
|
Merge pull request #3502 from DSpace/dependabot/npm_and_yarn/main/sass-25e7b4912b
Bump sass from 1.80.2 to 1.80.3 in the sass group
|
2024-10-21 15:54:36 -05:00 |
|
dependabot[bot]
|
65b8ba34e6
|
Bump typescript from 5.3.3 to 5.4.5
Bumps [typescript](https://github.com/microsoft/TypeScript) from 5.3.3 to 5.4.5.
- [Release notes](https://github.com/microsoft/TypeScript/releases)
- [Changelog](https://github.com/microsoft/TypeScript/blob/main/azure-pipelines.release.yml)
- [Commits](https://github.com/microsoft/TypeScript/compare/v5.3.3...v5.4.5)
---
updated-dependencies:
- dependency-name: typescript
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-21 19:57:39 +00:00 |
|
Tim Donohue
|
57f8660ff1
|
Merge pull request #3503 from DSpace/dependabot/npm_and_yarn/main/types/lodash-4.17.12
Bump @types/lodash from 4.17.6 to 4.17.12
|
2024-10-21 14:56:29 -05:00 |
|
Tim Donohue
|
f646f0a350
|
Merge pull request #3478 from DSpace/dependabot/npm_and_yarn/main/types/deep-freeze-0.1.5
Bump @types/deep-freeze from 0.1.2 to 0.1.5
|
2024-10-21 14:56:01 -05:00 |
|
dependabot[bot]
|
b170333030
|
Bump sass from 1.80.2 to 1.80.3 in the sass group
Bumps the sass group with 1 update: [sass](https://github.com/sass/dart-sass).
Updates `sass` from 1.80.2 to 1.80.3
- [Release notes](https://github.com/sass/dart-sass/releases)
- [Changelog](https://github.com/sass/dart-sass/blob/main/CHANGELOG.md)
- [Commits](https://github.com/sass/dart-sass/compare/1.80.2...1.80.3)
---
updated-dependencies:
- dependency-name: sass
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: sass
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-21 19:03:51 +00:00 |
|
Tim Donohue
|
ce1dc46857
|
Update dependabot.yml
Remove @types grouping because Dependabot already groups types with related dependencies.
|
2024-10-21 14:02:56 -05:00 |
|
Tim Donohue
|
2eaa6b8977
|
Merge pull request #3209 from rsaraivac/patch-3
Update pt-PT.json5
|
2024-10-21 13:48:24 -05:00 |
|
dependabot[bot]
|
95d0767137
|
Bump karma from 6.4.3 to 6.4.4
Bumps [karma](https://github.com/karma-runner/karma) from 6.4.3 to 6.4.4.
- [Release notes](https://github.com/karma-runner/karma/releases)
- [Changelog](https://github.com/karma-runner/karma/blob/master/CHANGELOG.md)
- [Commits](https://github.com/karma-runner/karma/compare/v6.4.3...v6.4.4)
---
updated-dependencies:
- dependency-name: karma
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-21 03:15:12 +00:00 |
|
dependabot[bot]
|
d0daf9cf49
|
Bump @types/lodash from 4.17.6 to 4.17.12
Bumps [@types/lodash](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/lodash) from 4.17.6 to 4.17.12.
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/lodash)
---
updated-dependencies:
- dependency-name: "@types/lodash"
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-21 03:14:33 +00:00 |
|
Tim Donohue
|
a157f9f09f
|
Merge pull request #3469 from DSpace/dependabot/npm_and_yarn/main/sass-1.80.2
Bump sass from 1.62.1 to 1.80.2
|
2024-10-18 16:56:11 -05:00 |
|
Tim Donohue
|
b80aad1baa
|
Merge pull request #3472 from DSpace/dependabot/npm_and_yarn/main/pem-1.14.8
Bump pem from 1.14.7 to 1.14.8
|
2024-10-18 16:05:39 -05:00 |
|
dependabot[bot]
|
16bda200c0
|
Bump @types/deep-freeze from 0.1.2 to 0.1.5
Bumps [@types/deep-freeze](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/deep-freeze) from 0.1.2 to 0.1.5.
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/deep-freeze)
---
updated-dependencies:
- dependency-name: "@types/deep-freeze"
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-18 21:02:22 +00:00 |
|
Tim Donohue
|
2d44c988e4
|
Merge pull request #3475 from DSpace/dependabot/npm_and_yarn/main/ngtools/webpack-16.2.16
Bump @ngtools/webpack from 16.2.14 to 16.2.16
|
2024-10-18 16:01:15 -05:00 |
|
Tim Donohue
|
08e7bdebbc
|
Merge pull request #3473 from DSpace/dependabot/npm_and_yarn/main/core-js-3.38.1
Bump core-js from 3.37.1 to 3.38.1
|
2024-10-18 15:56:19 -05:00 |
|
Tim Donohue
|
1592763f8a
|
Merge pull request #3482 from DSpace/tdonohue-patch-1
Update dependabot.yml with new PR groups for eslint, testing dependencies, postcss, sass, webpack
|
2024-10-18 15:15:13 -05:00 |
|
Tim Donohue
|
f750259c50
|
Update dependabot.yml with new groups for eslint, testing, postcss, sass, webpack
|
2024-10-18 15:09:55 -05:00 |
|
Tim Donohue
|
372444c50a
|
Fix code scanning alert no. 6: Incomplete string escaping or encoding
Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com>
|
2024-10-18 14:26:48 -05:00 |
|
dependabot[bot]
|
9e3c02e1f3
|
Bump mirador-share-plugin from 0.11.0 to 0.16.0
Bumps [mirador-share-plugin]() from 0.11.0 to 0.16.0.
---
updated-dependencies:
- dependency-name: mirador-share-plugin
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-18 19:24:43 +00:00 |
|
dependabot[bot]
|
20e67030a9
|
Bump @ngtools/webpack from 16.2.14 to 16.2.16
Bumps [@ngtools/webpack](https://github.com/angular/angular-cli) from 16.2.14 to 16.2.16.
- [Release notes](https://github.com/angular/angular-cli/releases)
- [Changelog](https://github.com/angular/angular-cli/blob/main/CHANGELOG.md)
- [Commits](https://github.com/angular/angular-cli/compare/16.2.14...16.2.16)
---
updated-dependencies:
- dependency-name: "@ngtools/webpack"
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-18 19:24:26 +00:00 |
|
dependabot[bot]
|
9e79c42a9e
|
Bump core-js from 3.37.1 to 3.38.1
Bumps [core-js](https://github.com/zloirock/core-js/tree/HEAD/packages/core-js) from 3.37.1 to 3.38.1.
- [Release notes](https://github.com/zloirock/core-js/releases)
- [Changelog](https://github.com/zloirock/core-js/blob/master/CHANGELOG.md)
- [Commits](https://github.com/zloirock/core-js/commits/v3.38.1/packages/core-js)
---
updated-dependencies:
- dependency-name: core-js
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-18 19:23:47 +00:00 |
|
dependabot[bot]
|
acd8cbed50
|
Bump pem from 1.14.7 to 1.14.8
Bumps [pem](https://github.com/Dexus/pem) from 1.14.7 to 1.14.8.
- [Release notes](https://github.com/Dexus/pem/releases)
- [Changelog](https://github.com/Dexus/pem/blob/master/HISTORY.md)
- [Commits](https://github.com/Dexus/pem/compare/v1.14.7...v1.14.8)
---
updated-dependencies:
- dependency-name: pem
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-18 19:23:27 +00:00 |
|
dependabot[bot]
|
1ffb0f94a2
|
Bump sass from 1.62.1 to 1.80.2
Bumps [sass](https://github.com/sass/dart-sass) from 1.62.1 to 1.80.2.
- [Release notes](https://github.com/sass/dart-sass/releases)
- [Changelog](https://github.com/sass/dart-sass/blob/main/CHANGELOG.md)
- [Commits](https://github.com/sass/dart-sass/compare/1.62.1...1.80.2)
---
updated-dependencies:
- dependency-name: sass
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-17 21:10:48 +00:00 |
|
Tim Donohue
|
9d6af0a538
|
Merge pull request #3451 from DSpace/dependabot/npm_and_yarn/main/babel/runtime-7.25.7
Bump @babel/runtime from 7.21.0 to 7.25.7
|
2024-10-17 16:09:39 -05:00 |
|
Tim Donohue
|
e713092c85
|
Merge pull request #3450 from DSpace/dependabot/npm_and_yarn/main/eslint-plugin-import-2.31.0
Bump eslint-plugin-import from 2.29.1 to 2.31.0
|
2024-10-17 14:56:57 -05:00 |
|
Tim Donohue
|
299693dfc3
|
Merge pull request #3456 from DSpace/dependabot/npm_and_yarn/main/reflect-metadata-0.2.2
Bump reflect-metadata from 0.1.14 to 0.2.2
|
2024-10-17 14:49:49 -05:00 |
|
Tim Donohue
|
5a02217b45
|
Merge pull request #3459 from DSpace/dependabot/npm_and_yarn/main/fortawesome/fontawesome-free-6.6.0
Bump @fortawesome/fontawesome-free from 6.5.2 to 6.6.0
|
2024-10-17 14:42:56 -05:00 |
|
Tim Donohue
|
34b9124bde
|
Merge pull request #3461 from tdonohue/i18n_e2e_test
Add basic e2e testing for i18n
|
2024-10-17 10:47:02 -05:00 |
|