chore(deps): Bump the minor-and-patch group across 1 directory with 7 updates - #532
Closed
dependabot[bot] wants to merge 1 commit into
Closed
Conversation
… updates Bumps the minor-and-patch group with 7 updates in the /astro-site directory: | Package | From | To | | --- | --- | --- | | [astro](https://github.com/withastro/astro/tree/HEAD/packages/astro) | `7.2.4` | `7.2.9` | | [markdown-it](https://github.com/markdown-it/markdown-it) | `15.0.0` | `15.0.1` | | [satori](https://github.com/vercel/satori) | `0.31.0` | `0.33.4` | | [svelte](https://github.com/sveltejs/svelte/tree/HEAD/packages/svelte) | `5.56.9` | `5.57.0` | | [@types/markdown-it](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/markdown-it) | `14.1.2` | `14.2.0` | | [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) | `8.67.0` | `8.68.0` | | [eslint](https://github.com/eslint/eslint) | `10.8.1` | `10.9.1` | Updates `astro` from 7.2.4 to 7.2.9 - [Release notes](https://github.com/withastro/astro/releases) - [Changelog](https://github.com/withastro/astro/blob/main/packages/astro/CHANGELOG.md) - [Commits](https://github.com/withastro/astro/commits/astro@7.2.9/packages/astro) Updates `markdown-it` from 15.0.0 to 15.0.1 - [Changelog](https://github.com/markdown-it/markdown-it/blob/master/CHANGELOG.md) - [Commits](markdown-it/markdown-it@15.0.0...15.0.1) Updates `satori` from 0.31.0 to 0.33.4 - [Release notes](https://github.com/vercel/satori/releases) - [Commits](vercel/satori@0.31.0...0.33.4) Updates `svelte` from 5.56.9 to 5.57.0 - [Release notes](https://github.com/sveltejs/svelte/releases) - [Changelog](https://github.com/sveltejs/svelte/blob/main/packages/svelte/CHANGELOG.md) - [Commits](https://github.com/sveltejs/svelte/commits/svelte@5.57.0/packages/svelte) Updates `@types/markdown-it` from 14.1.2 to 14.2.0 - [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases) - [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/markdown-it) Updates `@typescript-eslint/parser` from 8.67.0 to 8.68.0 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.68.0/packages/parser) Updates `eslint` from 10.8.1 to 10.9.1 - [Release notes](https://github.com/eslint/eslint/releases) - [Commits](eslint/eslint@v10.8.1...v10.9.1) --- updated-dependencies: - dependency-name: astro dependency-version: 7.2.9 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: markdown-it dependency-version: 15.0.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: satori dependency-version: 0.33.4 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: svelte dependency-version: 5.57.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@types/markdown-it" dependency-version: 14.2.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@typescript-eslint/parser" dependency-version: 8.68.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: eslint dependency-version: 10.9.1 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch ... Signed-off-by: dependabot[bot] <support@github.com>
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
|
williamzujkowski
added a commit
that referenced
this pull request
Sep 4, 2026
…ides (#532) (#533) * chore(deps): Bump the minor-and-patch group across 1 directory with 7 updates Bumps the minor-and-patch group with 7 updates in the /astro-site directory: | Package | From | To | | --- | --- | --- | | [astro](https://github.com/withastro/astro/tree/HEAD/packages/astro) | `7.2.4` | `7.2.9` | | [markdown-it](https://github.com/markdown-it/markdown-it) | `15.0.0` | `15.0.1` | | [satori](https://github.com/vercel/satori) | `0.31.0` | `0.33.4` | | [svelte](https://github.com/sveltejs/svelte/tree/HEAD/packages/svelte) | `5.56.9` | `5.57.0` | | [@types/markdown-it](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/markdown-it) | `14.1.2` | `14.2.0` | | [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) | `8.67.0` | `8.68.0` | | [eslint](https://github.com/eslint/eslint) | `10.8.1` | `10.9.1` | Updates `astro` from 7.2.4 to 7.2.9 - [Release notes](https://github.com/withastro/astro/releases) - [Changelog](https://github.com/withastro/astro/blob/main/packages/astro/CHANGELOG.md) - [Commits](https://github.com/withastro/astro/commits/astro@7.2.9/packages/astro) Updates `markdown-it` from 15.0.0 to 15.0.1 - [Changelog](https://github.com/markdown-it/markdown-it/blob/master/CHANGELOG.md) - [Commits](markdown-it/markdown-it@15.0.0...15.0.1) Updates `satori` from 0.31.0 to 0.33.4 - [Release notes](https://github.com/vercel/satori/releases) - [Commits](vercel/satori@0.31.0...0.33.4) Updates `svelte` from 5.56.9 to 5.57.0 - [Release notes](https://github.com/sveltejs/svelte/releases) - [Changelog](https://github.com/sveltejs/svelte/blob/main/packages/svelte/CHANGELOG.md) - [Commits](https://github.com/sveltejs/svelte/commits/svelte@5.57.0/packages/svelte) Updates `@types/markdown-it` from 14.1.2 to 14.2.0 - [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases) - [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/markdown-it) Updates `@typescript-eslint/parser` from 8.67.0 to 8.68.0 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.68.0/packages/parser) Updates `eslint` from 10.8.1 to 10.9.1 - [Release notes](https://github.com/eslint/eslint/releases) - [Commits](eslint/eslint@v10.8.1...v10.9.1) --- updated-dependencies: - dependency-name: astro dependency-version: 7.2.9 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: markdown-it dependency-version: 15.0.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: satori dependency-version: 0.33.4 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: svelte dependency-version: 5.57.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@types/markdown-it" dependency-version: 14.2.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@typescript-eslint/parser" dependency-version: 8.68.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: eslint dependency-version: 10.9.1 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch ... Signed-off-by: dependabot[bot] <support@github.com> * fix(deps): regenerate the lockfile Dependabot wrote without the overrides Dependabot's regenerated pnpm-lock.yaml for the 7-package minor-and-patch group dropped the `overrides:` block entirely, so every job failed at ERR_PNPM_LOCKFILE_CONFIG_MISMATCH the current "overrides" configuration doesn't match the value in the lockfile in 8-17 seconds -- before running a single audit. Five checks red, none of them about the actual dependency bumps. Root cause is a duplicate that had drifted. package.json declared overrides in TWO places: "overrides": { 6 entries } <- inert under pnpm "pnpm": {"overrides": 8 entries } <- the one pnpm actually reads The top-level block is npm/yarn syntax. pnpm reads `pnpm.overrides`, and the lockfile's 8 entries match that block exactly. The two had already diverged: `yaml@<2.8.3` and `brace-expansion@5` existed only in the pnpm block, so anyone reading the top-level list to answer "is yaml pinned?" got the wrong answer. Removing it is proven inert -- `pnpm install --lockfile-only` after deletion produces a BYTE-IDENTICAL lockfile with all 8 overrides intact. No package is downgraded by this: every override is already satisfied by natural resolution today (vite 8.2.2, esbuild 0.28.2, yaml 2.9.0, brace-expansion 5.0.9, fast-xml-parser 5.10.1 are unchanged between main and the PR branch). The exposure was future drift -- with the pins absent from the lockfile, a later transitive bump could fall below one silently. Verified on this branch: `pnpm install --frozen-lockfile` exit 0 (the exact command that failed), build exit 0, astro check 0 errors, eslint 0 errors, all 5 design audits pass, 13/13 unit tests. Bumps astro 7.2.4->7.2.9, markdown-it 15.0.0->15.0.1, satori 0.31.0->0.33.4, svelte 5.56.9->5.57.0, @types/markdown-it 14.1.2->14.2.0, @typescript-eslint/parser 8.67.0->8.68.0, eslint 10.8.1->10.9.1. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_015AvTumDxQ2ntLDwsSefHtf * fix(deps): pin fast-uri >=3.1.6, closing 4 open high alerts Four open high-severity Dependabot alerts, all fast-uri@3.1.5, all fixed in 3.1.6: GHSA-f65p-4m7j-42xc SSRF via malformed IPv6 normalization GHSA-fph4-wmhf-6fwf SSRF via repeated hostname percent-decoding GHSA-jqff-g426-hqxp host confusion via percent-encoded scheme normalization GHSA-5jgf-p345-68v8 host confusion via skipped IDN canonicalization Dependabot ran on fast-uri four times on 2026-09-03 and opened no PR, because there is nothing for it to bump. The package is a dev-only transitive five levels down, and no parent has published a release that moves it: fast-uri < ajv < ajv-draft-04 < yaml-language-server < volar-service-yaml < @astrojs/language-server < @astrojs/check (devDependency) An override is the only lever, which is what the `pnpm.overrides` block is for -- the same block the previous commit stopped Dependabot from deleting. Pinned `^3.1.6`, not `>=3.1.6`. The looser range resolves to 4.1.4, a major bump of a transitive nobody here calls directly, while ajv@8.20.0 declares `fast-uri: ^3.0.1`. `^3.1.6` resolves to 3.1.7: inside ajv's declared contract, above every advisory's patched version. Scope, stated plainly: @astrojs/check is a devDependency, so this code runs in `pnpm check` and never ships to the site. Worth fixing, not urgent. Verified: frozen-lockfile install ok, build 0, astro check 0 errors, eslint 0 errors, 5/5 design audits, 13/13 unit tests, internal-link-check 210 pages / 5648 links / 2525 anchors all resolving. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_015AvTumDxQ2ntLDwsSefHtf --------- Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Claude Opus 5 <noreply@anthropic.com>
Contributor
Author
|
Looks like these dependencies are updatable in another way, so this is no longer needed. |
dependabot
Bot
deleted the
dependabot/npm_and_yarn/astro-site/minor-and-patch-0f6ae2f6c4
branch
September 4, 2026 05:22
This was referenced Sep 4, 2026
williamzujkowski
added a commit
that referenced
this pull request
Sep 4, 2026
…ides Same failure as #532, and NOT the same cause I gave there. #537 was opened 3m43s after #533 merged. It has no top-level `overrides` -- that cleanup applied -- and its lockfile still has no `overrides:` section, failing all five site checks in seconds with ERR_PNPM_LOCKFILE_CONFIG_MISMATCH. The real cause, now confirmed: Dependabot APPLIES pnpm.overrides during resolution but OMITS the `overrides:` header when it serialises the lockfile. Its resolution is correct -- fast-uri 3.1.7 is present, which can only happen via the `^3.1.6` override -- but --frozen-lockfile compares the header against package.json, finds nothing, and refuses. A serialisation bug, not a misconfiguration here. Tracked in #540. Fixed the same way: `pnpm install --lockfile-only` restores all 9 overrides. Verified: frozen-lockfile install 0 (the command CI failed on), build 0, astro check 0 errors, eslint 0 errors, 5/5 design audits, 15/15 unit tests, internal-link-check 210 pages clean. Bumps @astrojs/markdown-remark 7.2.4->7.3.0, @astrojs/sitemap 3.7.3->3.7.4, astro 7.2.9->7.2.10, @typescript-eslint/parser 8.68.0->8.69.0. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_015AvTumDxQ2ntLDwsSefHtf
williamzujkowski
added a commit
that referenced
this pull request
Sep 4, 2026
…ides Same failure as #532, and NOT the same cause I gave there. #537 was opened 3m43s after #533 merged. It has no top-level `overrides` -- that cleanup applied -- and its lockfile still has no `overrides:` section, failing all five site checks in seconds with ERR_PNPM_LOCKFILE_CONFIG_MISMATCH. The real cause, now confirmed: Dependabot APPLIES pnpm.overrides during resolution but OMITS the `overrides:` header when it serialises the lockfile. Its resolution is correct -- fast-uri 3.1.7 is present, which can only happen via the `^3.1.6` override -- but --frozen-lockfile compares the header against package.json, finds nothing, and refuses. A serialisation bug, not a misconfiguration here. Tracked in #540. Fixed the same way: `pnpm install --lockfile-only` restores all 9 overrides. Verified: frozen-lockfile install 0 (the command CI failed on), build 0, astro check 0 errors, eslint 0 errors, 5/5 design audits, 15/15 unit tests, internal-link-check 210 pages clean. Bumps @astrojs/markdown-remark 7.2.4->7.3.0, @astrojs/sitemap 3.7.3->3.7.4, astro 7.2.9->7.2.10, @typescript-eslint/parser 8.68.0->8.69.0. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_015AvTumDxQ2ntLDwsSefHtf
williamzujkowski
added a commit
that referenced
this pull request
Sep 4, 2026
…ides (#537) (#541) * chore(deps): Bump the minor-and-patch group across 1 directory with 4 updates Bumps the minor-and-patch group with 4 updates in the /astro-site directory: [@astrojs/markdown-remark](https://github.com/withastro/astro/tree/HEAD/packages/markdown/remark), [@astrojs/sitemap](https://github.com/withastro/astro/tree/HEAD/packages/integrations/sitemap), [astro](https://github.com/withastro/astro/tree/HEAD/packages/astro) and [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser). Updates `@astrojs/markdown-remark` from 7.2.4 to 7.3.0 - [Release notes](https://github.com/withastro/astro/releases) - [Changelog](https://github.com/withastro/astro/blob/main/packages/markdown/remark/CHANGELOG.md) - [Commits](https://github.com/withastro/astro/commits/@astrojs/markdown-remark@7.3.0/packages/markdown/remark) Updates `@astrojs/sitemap` from 3.7.3 to 3.7.4 - [Release notes](https://github.com/withastro/astro/releases) - [Changelog](https://github.com/withastro/astro/blob/main/packages/integrations/sitemap/CHANGELOG.md) - [Commits](https://github.com/withastro/astro/commits/@astrojs/sitemap@3.7.4/packages/integrations/sitemap) Updates `astro` from 7.2.9 to 7.2.10 - [Release notes](https://github.com/withastro/astro/releases) - [Changelog](https://github.com/withastro/astro/blob/main/packages/astro/CHANGELOG.md) - [Commits](https://github.com/withastro/astro/commits/astro@7.2.10/packages/astro) Updates `@typescript-eslint/parser` from 8.68.0 to 8.69.0 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.69.0/packages/parser) --- updated-dependencies: - dependency-name: "@astrojs/markdown-remark" dependency-version: 7.3.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@astrojs/sitemap" dependency-version: 3.7.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: astro dependency-version: 7.2.10 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: "@typescript-eslint/parser" dependency-version: 8.69.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch ... Signed-off-by: dependabot[bot] <support@github.com> * fix(deps): regenerate the lockfile Dependabot wrote without the overrides Same failure as #532, and NOT the same cause I gave there. #537 was opened 3m43s after #533 merged. It has no top-level `overrides` -- that cleanup applied -- and its lockfile still has no `overrides:` section, failing all five site checks in seconds with ERR_PNPM_LOCKFILE_CONFIG_MISMATCH. The real cause, now confirmed: Dependabot APPLIES pnpm.overrides during resolution but OMITS the `overrides:` header when it serialises the lockfile. Its resolution is correct -- fast-uri 3.1.7 is present, which can only happen via the `^3.1.6` override -- but --frozen-lockfile compares the header against package.json, finds nothing, and refuses. A serialisation bug, not a misconfiguration here. Tracked in #540. Fixed the same way: `pnpm install --lockfile-only` restores all 9 overrides. Verified: frozen-lockfile install 0 (the command CI failed on), build 0, astro check 0 errors, eslint 0 errors, 5/5 design audits, 15/15 unit tests, internal-link-check 210 pages clean. Bumps @astrojs/markdown-remark 7.2.4->7.3.0, @astrojs/sitemap 3.7.3->3.7.4, astro 7.2.9->7.2.10, @typescript-eslint/parser 8.68.0->8.69.0. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_015AvTumDxQ2ntLDwsSefHtf --------- Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Claude Opus 5 <noreply@anthropic.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the minor-and-patch group with 7 updates in the /astro-site directory:
7.2.47.2.915.0.015.0.10.31.00.33.45.56.95.57.014.1.214.2.08.67.08.68.010.8.110.9.1Updates
astrofrom 7.2.4 to 7.2.9Release notes
Sourced from astro's releases.
... (truncated)
Changelog
Sourced from astro's changelog.
... (truncated)
Commits
ad7a332[ci] release (#17845)eb87a23Escape set:text values in Astro JSX (#17847)b441180fix(astro): type .html imports outside of .astro files (#17846)32e8b44Guard against stripping /index.html when stripped pathname no longer matches ...c35448efix(build): strip prerender-only entry specifiers from SSR manifest (#17841)7cadf10[ci] release (#17826)ecb4082Update Sharp to 0.35.4 (#17837)8bf6f1achore: split v5/v6 changelogs (#17825)db7c53bchore(deps): replace "find-process" with a smaller, lighter alternative (#17786)eface15[ci] release (#17815)Updates
markdown-itfrom 15.0.0 to 15.0.1Changelog
Sourced from markdown-it's changelog.
Commits
924b20315.0.1 released25c3895Changelog updateaaadcfaFix quadratic complexity in scheme backscan (inline linkify rule)09fa071Fix quadratic complexity when replacing fuzzy links988c82bfix: don't strip spaces from all-space code spans26b9a7bPolish previous commite8c6688fix: preserve IPv6 brackets in normalizeLink (#1204)5e9b1ccRework backticks cache to remove side effects, close #12017b9a6a3doc: fix source link style for methods1e8ab89doc: add changelog to menuUpdates
satorifrom 0.31.0 to 0.33.4Release notes
Sourced from satori's releases.
Commits
9668d20fix: Use Geist for playground cards (#790)6c400d5fix: Optimize opacity processing (#789)b22c04cfix: Better font caching (#788)ed7d78efix: Improve cache and update benchmark (~12% faster) (#787)b2127fefeat: Add HarfBuzz text shaping (#735)de6db71feat:backdrop-filter(#786)Updates
sveltefrom 5.56.9 to 5.57.0Release notes
Sourced from svelte's releases.
... (truncated)
Changelog
Sourced from svelte's changelog.
... (truncated)
Commits
7bc0a70Version Packages (#18682)6374a2achore: move@types/trusted-typesto devDependencies (#18730)4ae5eb3feat: add has function to createContext (#18472)5034b59chore: bump playwright (#18729)74197ccfeat: add getOrInsert/getOrInsertComputed to SvelteMap (#18728)edbe11efix: properly apply static textarea value attribute during CSR (#18727)05b6916fix: omit bind:focused from SSR output (#18724)7c6f36afix: keep boolean attributes with an empty string value when rendering attrib...2e8b57bfix: renderselectedoptions for\<select multiple>with an arrayvalue...864de81fix: keep the current selection of a\<select>when itsdefaultValueis ap...Updates
@types/markdown-itfrom 14.1.2 to 14.2.0Commits
Updates
@typescript-eslint/parserfrom 8.67.0 to 8.68.0Release notes
Sourced from @typescript-eslint/parser's releases.
Changelog
Sourced from @typescript-eslint/parser's changelog.
Commits
8f4e00achore(release): publish 8.68.055f6d5dchore: enable source maps (#12677)Updates
eslintfrom 10.8.1 to 10.9.1Release notes
Sourced from eslint's releases.
Commits
5c8c24110.9.1a7f3b7dBuild: changelog update for 10.9.11e641c9fix: no-loss-of-precision false positive with trailing decimal point (#21251)ad74a8ddocs: add deprecation steps for EOL package versions (#21248)3c3ae53chore: update ecosystem plugins (#21249)c27bc9210.9.0fa831d9Build: changelog update for 10.9.0899dbf1chore: update github/codeql-action action to v4.37.7 (#21243)08de88efeat: handle underflow in no-loss-of-precision (#21218)9ef407adocs: use eslint.config.* wherever config file names are listed (#21216)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions