Skip to content

chore(deps): bump the npm-minor-patch group with 7 updates - #1131

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/npm-minor-patch-1e77a7fe83
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/npm-minor-patch-1e77a7fe83

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 30, 2026

Copy link
Copy Markdown
Contributor

Bumps the npm-minor-patch group with 7 updates:

Package From To
openpgp 6.3.1 6.3.2
@eslint-react/eslint-plugin 5.20.6 5.20.8
@vitest/coverage-v8 5.0.1 5.0.2
oxlint-tsgolint 7.0.2002 7.0.2003
vitest 5.0.1 5.0.2
@tanstack/react-query 5.103.2 5.103.3
vite 8.3.0 8.3.1

Updates openpgp from 6.3.1 to 6.3.2

Release notes

Sourced from openpgp's releases.

v6.3.2

What's Changed

  • Fix encrypting more than 4GB of data using AEAD (#2059)
  • config.maxDecompressedMessageSize: improve unbzip2 memory limit enforcement (openpgpjs/openpgpjs#2064)
  • Fix parsing of four-octet packet lengths of 2**31 and above (#2061)
  • UnparseablePacket: fix discarding of packets following an unparseable secret (sub)key (#2060)
  • Fix reading an empty trailing subpacket in v6 signatures (#2055)
  • Fix calling Message.signDetached directly (#2062)

Full Changelog: openpgpjs/openpgpjs@v6.3.1...v6.3.2

Commits
  • 5f33328 6.3.2
  • c8d0d68 Merge pull request #2059 (with Safari 14 fallback)
  • 38c9ec2 CI: enable on v6 branch
  • 16e32bb Fix parsing of four-octet packet lengths of 2**31 and above (#2061)
  • 20f2b1b Fix calling Message.signDetached directly (#2062)
  • 97d5023 UnparseablePacket: fix discarding of packets following an unparseable secre...
  • 95dbe0b config.maxDecompressedMessageSize: improve unbzip2 memory limit enforcement...
  • 545271c Merge pull request #2055
  • See full diff in compare view

Updates @eslint-react/eslint-plugin from 5.20.6 to 5.20.8

Release notes

Sourced from @​eslint-react/eslint-plugin's releases.

v5.20.8 (2026-09-24)

What's Changed

🐞 Fixes

  • @eslint-react/core: isJsxLike now recognizes JSX wrapped in TypeScript expressions (as, satisfies, type assertions, and non-null assertions) and await expressions.
  • @eslint-react/jsx: isFragmentElement now requires the configured jsxFragmentFactory, avoiding an implicit React fragment factory for custom JSX runtimes.

🏗️ Internal

  • @eslint-react/jsx: exported the AttributeValue type from the package entry point.
  • @eslint-react/var: renamed the AssignmentTarget type to EnclosingAssignmentTarget and inlined getRequireExpressionArguments into its sole consumer.

Full Changelog: Rel1cx/eslint-react@v5.20.6...v5.20.8

Attestation

https://github.com/Rel1cx/eslint-react/attestations/49643669

Changelog

Sourced from @​eslint-react/eslint-plugin's changelog.

v5.20.8 (2026-09-24)

🐞 Fixes

  • @eslint-react/core: isJsxLike now recognizes JSX wrapped in TypeScript expressions (as, satisfies, type assertions, and non-null assertions) and await expressions.
  • @eslint-react/jsx: isFragmentElement now requires the configured jsxFragmentFactory, avoiding an implicit React fragment factory for custom JSX runtimes.

🏗️ Internal

  • @eslint-react/jsx: exported the AttributeValue type from the package entry point.
  • @eslint-react/var: renamed the AssignmentTarget type to EnclosingAssignmentTarget and inlined getRequireExpressionArguments into its sole consumer.

Full Changelog: Rel1cx/eslint-react@v5.20.6...v5.20.8

Commits

Updates @vitest/coverage-v8 from 5.0.1 to 5.0.2

Release notes

Sourced from @​vitest/coverage-v8's releases.

v5.0.2

   🐞 Bug Fixes

    View changes on GitHub
Commits

Updates oxlint-tsgolint from 7.0.2002 to 7.0.2003

Release notes

Sourced from oxlint-tsgolint's releases.

v7.0.2003

What's Changed

New Contributors

Full Changelog: oxc-project/tsgolint@v7.0.2002...v7.0.2003

Commits
  • eb93391 perf: add experimental checker scheduling modes (#1240)
  • e3a79a5 refactor: extract checker workload scheduling (#1241)
  • 1fdaa0d perf(no-unnecessary-type-assertion): reject incompatible types first (#1181)
  • 364b239 perf: speed up headless file-to-program assignment (#1239)
  • 52500be perf: avoid singleton union type allocations in hot rules (#1237)
  • 22b148a fix(no-unnecessary-condition): check nested logical expressions in truthiness...
  • 356609f fix(no-deprecated): detect deprecated aliases in object shorthand (#1235)
  • cbf3909 fix(no-useless-default-assignment): handle tuples with rest elements (#1223)
  • 7bd5c11 fix: match package specifiers on whole path components (#1225)
  • 6f25883 fix: preserve expression syntax when removing await (#1233)
  • Additional commits viewable in compare view

Updates vitest from 5.0.1 to 5.0.2

Release notes

Sourced from vitest's releases.

v5.0.2

   🐞 Bug Fixes

    View changes on GitHub
Commits

Updates @tanstack/react-query from 5.103.2 to 5.103.3

Release notes

Sourced from @​tanstack/react-query's releases.

@​tanstack/react-query-devtools@​5.103.3

Patch Changes

@​tanstack/react-query-next-experimental@​5.103.3

Patch Changes

  • Updated dependencies [1c9693e]:
    • @​tanstack/react-query@​5.103.3

@​tanstack/react-query-persist-client@​5.103.3

Patch Changes

  • Updated dependencies [1c9693e]:
    • @​tanstack/react-query@​5.103.3
    • @​tanstack/query-persist-client-core@​5.103.3

@​tanstack/react-query@​5.103.3

Patch Changes

  • #11647 1c9693e - fix(codemods): avoid copying unnecessary files from codemods project
  • Updated dependencies []:
    • @​tanstack/query-core@​5.103.3
Changelog

Sourced from @​tanstack/react-query's changelog.

5.103.3

Patch Changes

  • #11647 1c9693e - fix(codemods): avoid copying unnecessary files from codemods project
  • Updated dependencies []:
    • @​tanstack/query-core@​5.103.3
Commits
  • fe053bf ci: Version Packages (#11612)
  • 1c9693e fix(codemods): update codemods build script (#11647)
  • f00aad6 chore(deps): update dev dependencies (#11640)
  • 2443290 test(*): rename 'console.error' spies to 'consoleErrorMock' (#11646)
  • fcab29f test({query-core,react-query,preact-query}): restore the previous 'isServer' ...
  • e8dacbe docs({react-query,preact-query,solid-query,svelte-query}/README): point the C...
  • 57f40eb chore(deps): update non-major dependencies (#11625)
  • 397ad07 test({query-core,react-query,preact-query,solid-query}): pass 'unhandledRejec...
  • 5c018ed test({react,preact}-query/queryOptions): use a non-literal condition instead ...
  • 848b421 docs({react,preact,solid,vue}-query/useQuery): add 'initialDataUpdatedAt' to ...
  • Additional commits viewable in compare view

Updates vite from 8.3.0 to 8.3.1

Release notes

Sourced from vite's releases.

v8.3.1

Bug Fixes

  • deps: update all non-major dependencies (#23482) (3c752c8)
  • deps: update all non-major dependencies (#23537) (e8990c4)
  • deps: update rolldown-related dependencies (#23483) (9aecbbf)
  • handle server.ws: false in mergeConfig (#23511) (f68c0d5)
  • merge build.rolldownOptions.output.comments correctly (#23514) (4aba8d8)
  • optimizer: don't skip imports whose binding starts with type (#23540) (39330f4)
  • optimizer: resolve pending discovered dep processing on close before init (#23567) (5f89433)
  • server: avoid reinitializing watcher when adding file after server close (#23572) (6f831f9)
  • sourcemap: skip URL source roots when injecting sources content (#23519) (04fc30a)

Miscellaneous Chores

Code Refactoring

Changelog

Sourced from vite's changelog.

8.3.1 (2026-09-24)

Bug Fixes

  • deps: update all non-major dependencies (#23482) (3c752c8)
  • deps: update all non-major dependencies (#23537) (e8990c4)
  • deps: update rolldown-related dependencies (#23483) (9aecbbf)
  • handle server.ws: false in mergeConfig (#23511) (f68c0d5)
  • merge build.rolldownOptions.output.comments correctly (#23514) (4aba8d8)
  • optimizer: don't skip imports whose binding starts with type (#23540) (39330f4)
  • optimizer: resolve pending discovered dep processing on close before init (#23567) (5f89433)
  • server: avoid reinitializing watcher when adding file after server close (#23572) (6f831f9)
  • sourcemap: skip URL source roots when injecting sources content (#23519) (04fc30a)

Miscellaneous Chores

Code Refactoring

Commits
  • 39ddf7c release: v8.3.1 (#23573)
  • f68c0d5 fix: handle server.ws: false in mergeConfig (#23511)
  • 6f831f9 fix(server): avoid reinitializing watcher when adding file after server close...
  • 04fc30a fix(sourcemap): skip URL source roots when injecting sources content (#23519)
  • 5f89433 fix(optimizer): resolve pending discovered dep processing on close before ini...
  • 63567c7 chore(optimizer): add debug log when waiting for dep before init (#23566)
  • e8990c4 fix(deps): update all non-major dependencies (#23537)
  • af7cdf6 refactor: replace find with some (#23554)
  • 39330f4 fix(optimizer): don't skip imports whose binding starts with type (#23540)
  • 9abd99b refactor: remove duplicate configurations (#23532)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the npm-minor-patch group with 7 updates:

| Package | From | To |
| --- | --- | --- |
| [openpgp](https://github.com/openpgpjs/openpgpjs) | `6.3.1` | `6.3.2` |
| [@eslint-react/eslint-plugin](https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin) | `5.20.6` | `5.20.8` |
| [@vitest/coverage-v8](https://github.com/vitest-dev/vitest/tree/HEAD/packages/coverage-v8) | `5.0.1` | `5.0.2` |
| [oxlint-tsgolint](https://github.com/oxc-project/tsgolint) | `7.0.2002` | `7.0.2003` |
| [vitest](https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest) | `5.0.1` | `5.0.2` |
| [@tanstack/react-query](https://github.com/TanStack/query/tree/HEAD/packages/react-query) | `5.103.2` | `5.103.3` |
| [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) | `8.3.0` | `8.3.1` |


Updates `openpgp` from 6.3.1 to 6.3.2
- [Release notes](https://github.com/openpgpjs/openpgpjs/releases)
- [Commits](openpgpjs/openpgpjs@v6.3.1...v6.3.2)

Updates `@eslint-react/eslint-plugin` from 5.20.6 to 5.20.8
- [Release notes](https://github.com/Rel1cx/eslint-react/releases)
- [Changelog](https://github.com/Rel1cx/eslint-react/blob/main/CHANGELOG.md)
- [Commits](https://github.com/Rel1cx/eslint-react/commits/v5.20.8/plugins/eslint-plugin)

Updates `@vitest/coverage-v8` from 5.0.1 to 5.0.2
- [Release notes](https://github.com/vitest-dev/vitest/releases)
- [Changelog](https://github.com/vitest-dev/vitest/blob/main/docs/releases.md)
- [Commits](https://github.com/vitest-dev/vitest/commits/v5.0.2/packages/coverage-v8)

Updates `oxlint-tsgolint` from 7.0.2002 to 7.0.2003
- [Release notes](https://github.com/oxc-project/tsgolint/releases)
- [Commits](oxc-project/tsgolint@v7.0.2002...v7.0.2003)

Updates `vitest` from 5.0.1 to 5.0.2
- [Release notes](https://github.com/vitest-dev/vitest/releases)
- [Changelog](https://github.com/vitest-dev/vitest/blob/main/docs/releases.md)
- [Commits](https://github.com/vitest-dev/vitest/commits/v5.0.2/packages/vitest)

Updates `@tanstack/react-query` from 5.103.2 to 5.103.3
- [Release notes](https://github.com/TanStack/query/releases)
- [Changelog](https://github.com/TanStack/query/blob/main/packages/react-query/CHANGELOG.md)
- [Commits](https://github.com/TanStack/query/commits/@tanstack/react-query@5.103.3/packages/react-query)

Updates `vite` from 8.3.0 to 8.3.1
- [Release notes](https://github.com/vitejs/vite/releases)
- [Changelog](https://github.com/vitejs/vite/blob/main/packages/vite/CHANGELOG.md)
- [Commits](https://github.com/vitejs/vite/commits/v8.3.1/packages/vite)

---
updated-dependencies:
- dependency-name: openpgp
  dependency-version: 6.3.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: "@eslint-react/eslint-plugin"
  dependency-version: 5.20.8
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: "@vitest/coverage-v8"
  dependency-version: 5.0.2
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: oxlint-tsgolint
  dependency-version: 7.0.2003
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: vitest
  dependency-version: 5.0.2
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: "@tanstack/react-query"
  dependency-version: 5.103.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: vite
  dependency-version: 8.3.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Sep 30, 2026

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants