Skip to content
This repository has been archived by the owner on Mar 10, 2023. It is now read-only.

Bump webpack-cli from 2.1.5 to 3.3.6 in /ui/assets #129

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

dependabot-preview[bot]
Copy link

Bumps webpack-cli from 2.1.5 to 3.3.6.

Release notes

Sourced from webpack-cli's releases.

Webpack CLI v3.3.6 is a security patch that fixes vulnerabilities. Please upgrade if not done so already. A full changelog available here

Stay safe馃檹馃徑

Webpack CLI v3.3.5

Webpack-CLI v3.3.5 has a patch to remove the donation banner that causes some irritation around donations to webpack and for windows users. We've removed this and a full changelog is found here

Webpack CLI v3.3.4

Webpack CLI version 3.3.4 is the last version we are going to support with the old CLI interface before version 4 is released. It comes with a bugfix for errors in a webpack configuration and fixes to infrastructure not related to the core packages. A full changelog is available here

Love, webpack team 鈾ワ笍

Webpack CLI v.3.3.3

Webpack-CLI version 3.3.3 comes with infrastructure fixes, bugfixes against donation banner, bugfix when providing an array configuration, improved error messaging when dependencies are missing and much more.

A full changelog is available here

Love, webpack team馃グ

Webpack CLI v3.3.2

This version fixes permission errors on showing donation banner, security fixes, a way to disable it and has other ones. Full list of changes found here.

Webpack-CLI v.3.3.1

Version 3.3.1 comes with infrastructure fixes and various of improvements to the repository. Full changelog found here

webpack-cli v.3.3.0

Webpack-cli v.3.3.0 comes with fixes to tests, improved documentation and better default setting. It also has webpack v.5.0.0 support along with webpack v.4.0.0 support.

Changelog available here.

if you find any issues, please submit a bug. Happy hacking! 馃挋

V.3.2.3

In this release we reverted the donate script that caused issues on different platforms.

V.3.2.2

Version 3.2.2 comes with fixes to donation banner and stderr instead of stdout for information and json outputting.

Changelog found here

V.3.2.1 replaces opencollective dependency with a lighter version and it fixes configuration lookup using ts, babel and so on.

Full changelog found here.

Webpack-CLI v.3.2.0 comes with improved documentation, defaults settings, revised test infrastructure and other fixes. This version is tagged as a major, because we now support recursive configuration lookups.

... (truncated)
Changelog

Sourced from webpack-cli's changelog.

3.3.6 (2019-07-14)

Full Changelog

Chore

  • serve: refactor code to be more concise (d2e3e80)
  • utils: fixes typo in scaffold (bd5c1ce)
  • fix sec vuln (110fa5e)
  • prevent weird behaviour of pre-commit hook (#973)
  • include comments (941da90)

Docs

  • remove deprecated packages description (#979)

Fix

3.3.5 (2019-06-23)

Full Changelog

Chore

  • remove donation section (76b75ac)
  • update pkg lock (8913928)
  • deps: update major versions (#969)
  • packages: lock dependencies versions (#958)
  • scripts: clean opencollective (cd54ba5)
  • scripts: clean postinstall (0c1f6b6)
  • ts: enables source map in the ts (#961)
  • added await in order to resolve the pending promise (#948)

CLI

Fix

  • deps: move prettier from dependencies to devDependencies (#968)
  • change "usr strict" to "use strict" (670efc7)
  • update deps (69f364e)

... (truncated)
Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot ignore this [patch|minor|major] version will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it). To ignore the version in this PR you can just close it
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
  • @dependabot use these labels will set the current labels as the default for future PRs for this repo and language
  • @dependabot use these reviewers will set the current reviewers as the default for future PRs for this repo and language
  • @dependabot use these assignees will set the current assignees as the default for future PRs for this repo and language
  • @dependabot use this milestone will set the current milestone as the default for future PRs for this repo and language
  • @dependabot badge me will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot dashboard:

  • Update frequency (including time of day and day of week)
  • Automerge options (never/patch/minor, and dev/runtime dependencies)
  • Pull request limits (per update run and/or open at any time)
  • Out-of-range updates (receive only lockfile updates, if desired)
  • Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

@dependabot-preview dependabot-preview bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Jul 15, 2019
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

0 participants