Bump semver-regex, gatsby-plugin-sharp and husky
Bumps semver-regex, gatsby-plugin-sharp and husky. These dependencies needed to be updated together.
Updates semver-regex from 2.0.0 to 3.1.4
Release notes
Sourced from semver-regex's releases.
v3.1.4
- Backport of ReDoS fix https://github.com/sindresorhus/semver-regex/commit/7712ba564d40da101cf2b2b33e6a910d9f2f57f4
v3.1.2
- Fix regex catastrophic backtracking 6baf2cc Working around this meant accepting some obscure false-positives. I don't think it will affect any real code, but it's good to be aware of. See the disabled tests in the commit.
https://github.com/sindresorhus/semver-regex/compare/v3.1.1...v3.1.2
v3.1.1
- Allow 0 as numeric identifier (#19) c64c57f
https://github.com/sindresorhus/semver-regex/compare/v3.1.0...v3.1.1
v3.1.0
- Add TypeScript definition (#16) 039944b
https://github.com/sindresorhus/semver-regex/compare/v3.0.0...v3.1.0
v3.0.0
Breaking:
- Require Node.js 8 (#15) 3fe447d
Enhancements:
- Make the regex better adhere to semver syntax (#15) 3fe447d
https://github.com/sindresorhus/semver-regex/compare/v2.0.0...v3.0.0
Commits
906cf403.1.47712ba5Fix ReDoS vulnerability backporta0203dbFix ReDoS vulnerability backportca0ee673.1.2626c0c2Move to GitHub Actions6baf2ccFix regex catastrophic backtrackingbf2f4c2Meta tweakscd7e6ba3.1.1c64c57fAllow 0 as numeric identifier (#19)d724367Create funding.yml- Additional commits viewable in compare view
Updates gatsby-plugin-sharp from 2.6.24 to 4.20.0
Release notes
Sourced from gatsby-plugin-sharp's releases.
v4.20
Welcome to
[email protected]release (August 2022 #1)Key highlights of this release:
- RFC for changes in
sortand aggregation fields in Gatsby GraphQL Schema- Release Candidate for gatsby-plugin-mdx v4 - Support for MDX v2 and more!
Bleeding Edge: Want to try new features as soon as possible? Install
gatsby@nextand let us know if you have any issues.v4.19
Welcome to
[email protected]release (July 2022 #2)Key highlights of this release:
- Gatsby Head API - Better performance & more future-proof than
react-helmet- Release Candidate for gatsby-plugin-mdx v4 - Support for MDX v2 and more!
Bleeding Edge: Want to try new features as soon as possible? Install
gatsby@nextand let us know if you have any issues.v4.18
Welcome to
[email protected]release (July 2022 #1)Key highlights of this release:
typesOutputPathoption for GraphQL Typegen - Configure the location of the generated TypeScript types- Server Side Rendering (SSR) in development - Find bugs & hydration errors more easily during
gatsby develop- Open RFCs - MDX v2 & Metadata management
Bleeding Edge: Want to try new features as soon as possible? Install
gatsby@nextand let us know if you have any issues.v4.17
Welcome to
[email protected]release (June 2022 #2)Key highlights of this release:
... (truncated)
Changelog
Sourced from gatsby-plugin-sharp's changelog.
4.20.0 (2022-08-02)
Bug Fixes
4.19.0 (2022-07-19)
Bug Fixes
4.18.1 (2022-07-12)
Note: Version bump only for package gatsby-plugin-sharp
4.18.0 (2022-07-05)
Bug Fixes
4.17.0 (2022-06-21)
Note: Version bump only for package gatsby-plugin-sharp
4.16.1 (2022-06-08)
Note: Version bump only for package gatsby-plugin-sharp
4.16.0 (2022-06-07)
Features
Performance Improvements
... (truncated)
Commits
3ec74acchore(release): Publish5a5f5b9chore(release): Publish nextabad94ffix(gatsby-plugin-sharp): Ensure min 1px height forBLURREDplaceholder (#3...82172dechore(release): Publish nextfa06f1cchore(release): Publish next2dbfb22chore(changelogs): update changelogs (#36195)277bca6chore(release): Publish next pre-minorbcfa33achore(release): Publish next20c790afix(deps): update dependency async to ^3.2.4 for gatsby-plugin-sharp (#36032)fc1bf10chore(release): Publish next- Additional commits viewable in compare view
Updates husky from 4.2.5 to 4.3.8
Release notes
Sourced from husky's releases.
v4.3.8
- Fix
Cannot read property 'toString' of null- Improve error messages
v4.3.7
- Fix: upgrade find-versions to 4.0.0 typicode/husky#837
v4.3.6
- Fix
prepare-commit-msgon windows #737v4.3.5
- Rollback and do not throw error if husky install fails
v4.3.4
- Throw error if husky install fails
- Add workaround for npm 7 currently missing
INIT_CWDenvironment variablev4.3.0
- Add
.cjsconfig file support #754
Commits
37b69254.3.8674f833fix 'toString' error and improve messages70442adUpdate LICENSE (#736)b9a09174.3.7839d84aupdate pkg-dir dependency and some devDependencies6a1b3daUpgrade find-versions to 4.0.0 (#837)cbb0af74.3.6eb1eeb8fix prepare-commit-msg on windows (#737)65bc6e5Update README.mdcbd0e06add prepare-commit-msg test- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebasewill rebase this PR -
@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it -
@dependabot mergewill merge this PR after your CI passes on it -
@dependabot squash and mergewill squash and merge this PR after your CI passes on it -
@dependabot cancel mergewill cancel a previously requested merge and block automerging -
@dependabot reopenwill reopen this PR if it is closed -
@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) -
@dependabot use these labelswill set the current labels as the default for future PRs for this repo and language -
@dependabot use these reviewerswill set the current reviewers as the default for future PRs for this repo and language -
@dependabot use these assigneeswill set the current assignees as the default for future PRs for this repo and language -
@dependabot use this milestonewill set the current milestone as the default for future PRs for this repo and language
You can disable automated security fix PRs for this repo from the Security Alerts page.