Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump the non-breaking-changes group across 1 directory with 13 updates #84

Open
wants to merge 1 commit into
base: v2
Choose a base branch
from

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Mar 1, 2025

Bumps the non-breaking-changes group with 11 updates in the / directory:

Package From To
credo 1.7.10 1.7.11
erlexec 2.0.7 2.0.8
esbuild 0.8.2 0.9.0
floki 0.36.3 0.37.0
hackney 1.20.1 1.23.0
owl 0.12.0 0.12.2
phoenix 1.7.17 1.7.20
phoenix_live_view 1.0.0 1.0.5
scholar 0.3.1 0.4.0
sweet_xml 0.7.4 0.7.5
tesla 1.13.2 1.14.1

Updates credo from 1.7.10 to 1.7.11

Release notes

Sourced from credo's releases.

v1.7.11

Check it out on Hex: https://hex.pm/packages/credo/1.7.11

  • Fix compatibility & compiler warnings with Elixir 1.18
  • Fix crashing for invalid strings in issue messages
  • Show required Elixir version for skipped checks
  • Add options :exit_status and :category to format_issue/2 when using Credo.Check
  • Credo.Check.Readability.ModuleDoc fixed false positive
  • Credo.Check.Warning.UnusedEnumOperation fixed false positive
  • Credo.Check.Refactor.ABCSize fixed false positive for tuples and underscored matches (_foo)
Changelog

Sourced from credo's changelog.

1.7.11

  • Fix compatibility & compiler warnings with Elixir 1.18
  • Fix crashing for invalid strings in issue messages
  • Show required Elixir version for skipped checks
  • Add options :exit_status and :category to format_issue/2 when using Credo.Check
  • Credo.Check.Readability.ModuleDoc fixed false positive
  • Credo.Check.Warning.UnusedEnumOperation fixed false positive
  • Credo.Check.Refactor.ABCSize fixed false positive for tuples and underscored matches (_foo)
Commits
  • 965a59c Bump version to 1.7.11
  • 92a6814 Update CHANGELOG
  • 7482d13 Update GitHub actions
  • b02c292 Update to Elixir 1.18.1
  • e69dc29 Merge pull request #1166 from Wigny/wigny/add-unusedvariablenames-checks
  • dd666fa Update GitHub actions
  • b8cdedc Upgrade Elixir to 1.18 on CI etc.
  • 1f5ae9e Merge pull request #1165 from rNoz/rnoz/check-format-issue-category
  • 91350ad Update deps for Elixir 1.18
  • 3274132 Check for invalid bytes in issue message
  • Additional commits viewable in compare view

Updates erlexec from 2.0.7 to 2.0.8

Commits

Updates esbuild from 0.8.2 to 0.9.0

Changelog

Sourced from esbuild's changelog.

v0.9.0 (2025-02-10)

This release requires Elixir v1.14+ and Erlang/OTP 25+.

  • Update PGP keys to support latest esbuild versions
  • Update esbuild to version 0.25.0
  • Remove dependency on CAStore in favor of using Erlang certificates
Commits

Updates file_system from 1.0.1 to 1.1.0

Commits

Updates floki from 0.36.3 to 0.37.0

Release notes

Sourced from floki's releases.

v0.37.0

Added

Fixed

  • Fix bug propagating identity encoder in raw_html/2 - thanks @​andyleclair.

Removed

  • Remove support for Elixir 1.13 and OTP 22.

Pull requests

New Contributors

Full Changelog: philss/floki@v0.36.3...v0.37.0

Changelog

Sourced from floki's changelog.

[0.37.0] - 2024-12-06

Added

Fixed

  • Fix bug propagating identity encoder in raw_html/2 - thanks @​andyleclair.

Removed

  • Remove support for Elixir 1.13 and OTP 22.
Commits

Updates hackney from 1.20.1 to 1.23.0

Release notes

Sourced from hackney's releases.

1.23.0 - 2025-02-25

Changes:

fix: happy eyeball use correct timeout during connectino fix: don't wrap conection error improvement: eyeballonly spawn ipv6 worker when needed

Available on hex.pm https://hexdocs.pm/hackney/1.23.0/

1.22.0 - 2025-02-20

Changes

  • feature: prefer to connect using IPv6. happy eyeball strategy
  • improvement: fully support no_proxy environment variable
  • doc: migrated to ex_doc

1.21.0 - 2025-02-20

fix: remove SSL options incompatible with tls 1.3 fix: url parsing handle "/" path correctly fix: simplify integration test suite fix: handle chunked response in redirect responses fix: handle http & https proxies separately fix: skip junk lines in 1.xx response

** security fixes ***

fix URL parsing to prevent SSRF . (related to CVE-2025-1211) use latest SSL certificate bundle

Available on hex.pm : https://hex.pm/packages/hackney

Changelog

Sourced from hackney's changelog.

1.23.0 - 2025-02-25

  • fix: happy eyeball use correct timeout during connectino
  • fix: don't wrap conection error
  • improvement: eyeballonly spawn ipv6 worker when needed

1.22.0 - 2025-02-20

  • feature: prefer to connect using IPv6. happy eyeball strategy
  • improvement: fully support no_proxy environment variable
  • doc: migrated to ex_doc

1.21.0 - 2025-02-20

  • fix: remove SSL options incompatible with tls 1.3
  • fix: url parsing handle "/" path correctly
  • fix: simplify integration test suite
  • fix: handle chunked response in redirect responses
  • fix: handle http & https proxies separately
  • fix: skip junk lines in 1.xx response

** security fixes ***

  • fix URL parsing to prevent SSRF . (related to CVE-2025-1211)
  • use latest SSL certificate bundle
Commits

Updates owl from 0.12.0 to 0.12.2

Release notes

Sourced from owl's releases.

v0.12.2

What's changed

  • Fix rendering issues when the height of terminal < height of live blocks

Full Changelog: fuelen/owl@v0.12.1...v0.12.2

v0.12.1

What's Changed

New Contributors

Full Changelog: fuelen/owl@v0.12.0...v0.12.1

Commits
  • cb00897 Bump version to 0.12.2, require Elixir 1.14
  • 4b853eb Add downloads badge to README
  • 486e6fa Use Enum.map + Enum.sum instead of Enum.sum_by to support older versions
  • 573a95f Update deps
  • 5f35983 Fix rendering issues when the height of terminal < height of live blocks, clo...
  • 2f9ed3a Bump version to 0.12.1
  • da0e5f3 Update deps
  • 6087d71 Avoid deprecation warning: List.zip -> Enum.zip (#29)
  • See full diff in compare view

Updates phoenix from 1.7.17 to 1.7.20

Changelog

Sourced from phoenix's changelog.

1.7.20 (2025-02-20)

Enhancements

  • Add [:phoenix, :socket_drain] telemetry event to track socket draining and use it for logging
  • Address Elixir 1.18 warnings in phx.new
  • Add PHX_NEW_CACHE_DIR env var for cached phx.new builds

Bug fixes

  • Fix code reloader error when mix.lock is touched without its content changing

1.7.19 (2025-01-31)

Enhancements

  • [phx.new] - bind to 0.0.0.0 in dev.exs if phx.new is being run inside a docker container. This exposes the container's phoenix server to the host so that it is accessible over port forwarding.

1.7.18 (2024-12-10)

Enhancements

  • Use new interpolation syntax in generators
  • Update gettext in generators to 0.26
Commits
  • 072fcef Release 1.7.20
  • 24ed7c8 Backport PHX_NEW_CACHE_DIR
  • 3ca973b use makeup_syntect instead of makeup_lexers
  • 477d2e9 set PHX_CI for integration tests
  • 2400164 update changelog
  • a31aa15 phx.new - Fix deprecation warning when using Elixir ~> 1.18 (#5940)
  • 668a973 fix unused clause warning in installer on Elixir 1.18 (#6088)
  • 315eeff revert code reloader changed file detection (#6085)
  • d9ef909 update changelog
  • 83f2f03 add [:phoenix, :socket_drain] telemetry event (#6070)
  • Additional commits viewable in compare view

Updates phoenix_live_view from 1.0.0 to 1.0.5

Changelog

Sourced from phoenix_live_view's changelog.

1.0.5 (2025-02-27)

Bug fixes

  • Fix JS.exec failing when a selector is passed (#3678)
  • Fix race conditions when testing a live upload that redirects in the progress callback (#3676)
  • Fix streams in sticky LiveView being reset under some circumstances when another LiveView also contains a stream (#3681)
  • Fix recursively locked elements not being correctly patched on unlock (#3684)
  • Fix JS.show/hide/toggle behavior while also fixing JS.focus() on Mobile Safari (#3692)

Enhancements

  • Detect infinite patch redirect loops and raise an error (#3670)

1.0.4 (2025-02-04)

Bug fixes

  • Fix elements with phx-remove inside sticky LiveViews being unintentionally removed on navigation (#3658)
  • Fix phx-click-loading not being removed from links in sticky LiveViews (#3656)
  • Fix Phoenix.LiveView.JS.focus/2 and Phoenix.LiveView.JS.focus_first/2 not properly focusing elements on Mobile Safari (#3563)

1.0.3 (2025-01-28)

Bug fixes

  • Fix regression where browser back/forward buttons used patch instead of navigate, failing to update the page (#3529)
  • Fix client hooks inside streams that contain nested LiveViews (#3530)
  • Fix LiveComponents in nested LiveViews not updating under certain conditions (#3626)
  • Fix client-side hooks not being cleared properly (#3628)
  • Fix LiveUpload from client hook not auto uploading when immediately followed by form event (#3647)
  • Fix inputs being cleared in some cases when patching locked trees (#3647)
  • Fix client hooks with dynamic IDs not being destroyed properly when parts of the DOM are locked (#3651)

Enhancements

  • Allow to configure if duplicate IDs / other detected errors should warn or raise by passing on_error to Phoenix.LiveViewTest.live/3 / Phoenix.LiveViewTest.live_isolated/3 (#3653)
  • Also detect duplicate LiveComponents that are added dynamically to the page in LiveViewTest (#3653)
  • Log an error in the JavaScript console when detecting a stream container with missing phx-update="stream" attribute (#3645)
  • Update documentation to mention :fun and {:fun, arity} as valid attribute types for Phoenix.Component.attr/3 (#3635)
  • Update documentation to mention ways for dynamically rendering function components (#3632)
  • Update documentation to mention {:inner, selector} and {:closest, selector} as valid options for to in JS commands (#3638)

1.0.2 (2025-01-09)

Bug fixes

  • Fix inconsistency between mix format and mix format --check-formatted with new curly interpolation syntax (#3590)
  • Fix unnecessary compile time dependencies when using attr / on_mount / live (#3592)
  • Fix crash when testing LiveViews with embedded XML (e.g. SVGs) (#3594)
  • Fix type warning when using follow_redirect (#3581)
  • Prevent phx-trigger-action from clashing with locked forms (#3591)
  • Fix form recovery sending wrong event name when using JS commands in phx-change (#3607)

Enhancements

  • Deduplicate items on stream/4 / steam_insert/4 (#3599)

... (truncated)

Commits

Updates plug_cowboy from 2.7.2 to 2.7.3

Changelog

Sourced from plug_cowboy's changelog.

v2.7.3

Enhancements

  • Ensure errors from Cowboy 2.13 are correctly translated
Commits

Updates scholar from 0.3.1 to 0.4.0

Changelog

Sourced from scholar's changelog.

v0.4.0 (2025-01-15)

  • Require Nx ~> 0.9
  • Add batching to regression metrics
  • Add Scholar.Cluster.OPTICS
  • Add Scholar.Covariance.LedoitWolf
  • Add Scholar.Covariance.ShrunkCovariance
  • Add Scholar.CrossDecomposition.PLSSVD
  • Add Scholar.Decomposition.TruncatedSVD
  • Add Scholar.Impute.KNNImputter
  • Add Scholar.NaiveBayes.Bernoulli
  • Add Scholar.Preprocessing.Binarizer
  • Add Scholar.Preprocessing.RobustScaler
  • Add partial_fit/2 and incremental_fit/2 to PCA
  • Split RNN into Scholar.Neighbors.RadiusNNClassifier and Scholar.Neighbors.RadiusNNRegressor
  • Unify shape checks across all APIs
Commits

Updates sweet_xml from 0.7.4 to 0.7.5

Changelog

Sourced from sweet_xml's changelog.

[0.7.5] (2025-01-07)

A maintenance patch, with improvements made the the README, with up to date installation instructions from @​arcanemachine (#95) and typos fixed by @​kianmeng (#89).

Changed

Commits
  • 24bfac8 chore: bump version
  • c710956 chore: update ex_doc
  • 5b15415 Merge pull request #102 from elfenlaid/fix-charlist-warnings
  • 1a011b2 Fix charlist warnings for Elixir 1.17
  • 480441f Merge pull request #89 from kianmeng/fix-typos-and-prettify-md-yml-files
  • 7920a40 Fix typos
  • 27a193f Clean warnings (#96)
  • 4f73da7 Merge pull request #95 from arcanemachine/master
  • 250196d Update installation instructions to use newest version
  • See full diff in compare view

Updates tesla from 1.13.2 to 1.14.1

Release notes

Sourced from tesla's releases.

v1.14.1

1.14.1 (2025-02-22)

Bug Fixes

  • add basic Hackney 1.22 support: {:connect_error, _} (#754) (127db9f), closes #753

v1.14.0

1.14.0 (2025-02-03)

Features

  • release-please and conventional commit (#719) (c9f6a1c)
  • support retry-after header in retry middleware (#639) (86ad37d)
  • Tesla.Middleware.JSON: Add support for Elixir 1.18's JSON module (#747) (1413167)

Bug Fixes

Changelog

Sourced from tesla's changelog.

1.14.1 (2025-02-22)

Bug Fixes

  • add basic Hackney 1.22 support: {:connect_error, _} (#754) (127db9f), closes #753

1.14.0 (2025-02-03)

Features

  • release-please and conventional commit (#719) (c9f6a1c)
  • support retry-after header in retry middleware (#639) (86ad37d)
  • Tesla.Middleware.JSON: Add support for Elixir 1.18's JSON module (#747) (1413167)

Bug Fixes

Commits
  • 426e91b chore(master): release 1.14.1 (#755)
  • 127db9f fix: add basic Hackney 1.22 support: {:connect_error, _} (#754)
  • d26f272 chore: upgrade hackney (#752)
  • 67ec16e chore(master): release 1.14.0 (#728)
  • 1413167 feat: Tesla.Middleware.JSON: Add support for Elixir 1.18's JSON module (#747)
  • 2f6b2a6 fix: mocks for supervised tasks (#750)
  • 15f69d7 chore(deps-dev): bump excoveralls from 0.18.3 to 0.18.5 in the dev group (#749)
  • 026476d Fix. Mock not working for grandchildren and beyond (#746)
  • d9552dd chore(deps): bump castore from 1.0.10 to 1.0.11 in the prod group (#741)
  • 0a73e06 chore(deps-dev): bump ex_doc from 0.35.1 to 0.36.1 in the dev group (#742)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the non-breaking-changes group with 11 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [credo](https://github.com/rrrene/credo) | `1.7.10` | `1.7.11` |
| [erlexec](https://github.com/saleyn/erlexec) | `2.0.7` | `2.0.8` |
| [esbuild](https://github.com/phoenixframework/esbuild) | `0.8.2` | `0.9.0` |
| [floki](https://github.com/philss/floki) | `0.36.3` | `0.37.0` |
| [hackney](https://github.com/benoitc/hackney) | `1.20.1` | `1.23.0` |
| [owl](https://github.com/fuelen/owl) | `0.12.0` | `0.12.2` |
| [phoenix](https://github.com/phoenixframework/phoenix) | `1.7.17` | `1.7.20` |
| [phoenix_live_view](https://github.com/phoenixframework/phoenix_live_view) | `1.0.0` | `1.0.5` |
| [scholar](https://github.com/elixir-nx/scholar) | `0.3.1` | `0.4.0` |
| [sweet_xml](https://github.com/kbrw/sweet_xml) | `0.7.4` | `0.7.5` |
| [tesla](https://github.com/elixir-tesla/tesla) | `1.13.2` | `1.14.1` |



Updates `credo` from 1.7.10 to 1.7.11
- [Release notes](https://github.com/rrrene/credo/releases)
- [Changelog](https://github.com/rrrene/credo/blob/master/CHANGELOG.md)
- [Commits](rrrene/credo@v1.7.10...v1.7.11)

Updates `erlexec` from 2.0.7 to 2.0.8
- [Changelog](https://github.com/saleyn/erlexec/blob/master/CHANGELOG.txt)
- [Commits](https://github.com/saleyn/erlexec/commits/2.0.8)

Updates `esbuild` from 0.8.2 to 0.9.0
- [Changelog](https://github.com/phoenixframework/esbuild/blob/main/CHANGELOG.md)
- [Commits](phoenixframework/esbuild@v0.8.2...v0.9.0)

Updates `file_system` from 1.0.1 to 1.1.0
- [Commits](falood/file_system@v1.0.1...v1.1.0)

Updates `floki` from 0.36.3 to 0.37.0
- [Release notes](https://github.com/philss/floki/releases)
- [Changelog](https://github.com/philss/floki/blob/main/CHANGELOG.md)
- [Commits](philss/floki@v0.36.3...v0.37.0)

Updates `hackney` from 1.20.1 to 1.23.0
- [Release notes](https://github.com/benoitc/hackney/releases)
- [Changelog](https://github.com/benoitc/hackney/blob/master/NEWS.md)
- [Commits](benoitc/hackney@1.20.1...1.23.0)

Updates `owl` from 0.12.0 to 0.12.2
- [Release notes](https://github.com/fuelen/owl/releases)
- [Commits](fuelen/owl@v0.12.0...v0.12.2)

Updates `phoenix` from 1.7.17 to 1.7.20
- [Release notes](https://github.com/phoenixframework/phoenix/releases)
- [Changelog](https://github.com/phoenixframework/phoenix/blob/v1.7.20/CHANGELOG.md)
- [Commits](phoenixframework/phoenix@v1.7.17...v1.7.20)

Updates `phoenix_live_view` from 1.0.0 to 1.0.5
- [Changelog](https://github.com/phoenixframework/phoenix_live_view/blob/v1.0.5/CHANGELOG.md)
- [Commits](phoenixframework/phoenix_live_view@v1.0.0...v1.0.5)

Updates `plug_cowboy` from 2.7.2 to 2.7.3
- [Changelog](https://github.com/elixir-plug/plug_cowboy/blob/master/CHANGELOG.md)
- [Commits](elixir-plug/plug_cowboy@v2.7.2...v2.7.3)

Updates `scholar` from 0.3.1 to 0.4.0
- [Release notes](https://github.com/elixir-nx/scholar/releases)
- [Changelog](https://github.com/elixir-nx/scholar/blob/main/CHANGELOG.md)
- [Commits](elixir-nx/scholar@v0.3.1...v0.4.0)

Updates `sweet_xml` from 0.7.4 to 0.7.5
- [Changelog](https://github.com/kbrw/sweet_xml/blob/master/CHANGELOG.md)
- [Commits](kbrw/sweet_xml@v0.7.4...v0.7.5)

Updates `tesla` from 1.13.2 to 1.14.1
- [Release notes](https://github.com/elixir-tesla/tesla/releases)
- [Changelog](https://github.com/elixir-tesla/tesla/blob/master/CHANGELOG.md)
- [Commits](elixir-tesla/tesla@v1.13.2...v1.14.1)

---
updated-dependencies:
- dependency-name: credo
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: non-breaking-changes
- dependency-name: erlexec
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: non-breaking-changes
- dependency-name: esbuild
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: non-breaking-changes
- dependency-name: file_system
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: non-breaking-changes
- dependency-name: floki
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: non-breaking-changes
- dependency-name: hackney
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: non-breaking-changes
- dependency-name: owl
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: non-breaking-changes
- dependency-name: phoenix
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: non-breaking-changes
- dependency-name: phoenix_live_view
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: non-breaking-changes
- dependency-name: plug_cowboy
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: non-breaking-changes
- dependency-name: scholar
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: non-breaking-changes
- dependency-name: sweet_xml
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: non-breaking-changes
- dependency-name: tesla
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: non-breaking-changes
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file elixir Pull requests that update Elixir code labels Mar 1, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file elixir Pull requests that update Elixir code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants