Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Apr 4, 2024

Bumps axios to 1.6.7 and updates ancestor dependency @digitransit-component/digitransit-component-autosuggest. These dependencies need to be updated together.

Updates axios from 0.26.0 to 1.6.7

Release notes

Sourced from axios's releases.

Release v1.6.7

Release notes:

Bug Fixes

  • capture async stack only for rejections with native error objects; (#6203) (1a08f90)

Contributors to this release

Release v1.6.6

Release notes:

Bug Fixes

  • fixed missed dispatchBeforeRedirect argument (#5778) (a1938ff)
  • wrap errors to improve async stack trace (#5987) (123f354)

Contributors to this release

Release v1.6.5

Release notes:

Bug Fixes

  • ci: refactor notify action as a job of publish action; (#6176) (0736f95)
  • dns: fixed lookup error handling; (#6175) (f4f2b03)

Contributors to this release

Release v1.6.4

Release notes:

Bug Fixes

  • security: fixed formToJSON prototype pollution vulnerability; (#6167) (3c0c11c)
  • security: fixed security vulnerability in follow-redirects (#6163) (75af1cd)

Contributors to this release

Release v1.6.3

Release notes:

... (truncated)

Changelog

Sourced from axios's changelog.

1.6.7 (2024-01-25)

Bug Fixes

  • capture async stack only for rejections with native error objects; (#6203) (1a08f90)

Contributors to this release

1.6.6 (2024-01-24)

Bug Fixes

  • fixed missed dispatchBeforeRedirect argument (#5778) (a1938ff)
  • wrap errors to improve async stack trace (#5987) (123f354)

Contributors to this release

1.6.5 (2024-01-05)

Bug Fixes

  • ci: refactor notify action as a job of publish action; (#6176) (0736f95)
  • dns: fixed lookup error handling; (#6175) (f4f2b03)

Contributors to this release

1.6.4 (2024-01-03)

Bug Fixes

  • security: fixed formToJSON prototype pollution vulnerability; (#6167) (3c0c11c)
  • security: fixed security vulnerability in follow-redirects (#6163) (75af1cd)

Contributors to this release

... (truncated)

Commits

Updates @digitransit-component/digitransit-component-autosuggest from 1.9.16 to 2.0.7

Release notes

Sourced from @​digitransit-component/digitransit-component-autosuggest's releases.

21.3.2024 b

Adding favourite stops works again.

16.1.2024 V3

  • Tampere ticket zones updated
  • Location search in Tampere journey planner is now limited to ticket zones
  • Lahti citybikes to matka.fi configuration
  • Code refactoring

9.1.2024 V3 B

  • Add Raasepori temporarily back to opas-waltti.fi
  • Favourites no longer show up with a city icon in search

9.1.2024 V3

  • Itinerary view now shows carbon emissions. At present, this feature is mainly visible when using HSL traffic.
  • Nearby station search usually finds more than one station
  • Search now shows all GTFS stations, even if their name is identical
  • Search now displays better labels for cities with a dedicated icon
  • Stop search now returns max 25 stops and stations (was 10), so that all stops can be found with it
  • New Raasepori journey planner
  • City bikes configured for Lahti
  • Ticket zone support for Vaasa journey planner
  • Jyväskylä journey planner got a map layer for ticket sales points, with customisable icon size
  • Opas.matka.fi supports speed tram theme
  • Poorly readable font of opas.matka.fi alert views changed to properly accessible style
  • Opas.matka.fi has new GTFS data source containing Härmän liikenne and its vehicle positions
  • Some UI labels and their translations updated
  • Tickets are fetched using up-to-date OTP conventions
  • Time picker limits the time dropdown to the typed value, making selection by arrow keys practical and more accessible
  • Station view's timetable tab no longer crashes when there is no traffic
  • Trip links from the stop page are properly encoded and tolerate special characters

5.12.2023 V3

  • Added occupancy status for matka and HSL in itineraries and near you page
  • Updated HSL stop weekly timetable API endpoint
  • Fixed to HSL's cookie prompt
  • Added handling for Digitraffic vehicle positions
  • Updated Oulu's links
  • Fixes zone icon location in itinerary stop listing

21.11.2023 V3

  • New ticket disclaimers for Tampere
  • Kouvola city bike season ended
  • Itinerary rendering layout improved

15.11.2023 v3

  • Stop popup shows platform of stops when it is defined in data
  • Turku city bike season extended
  • Favicon problems fixed in waltti journey planners
  • Accessibility improvements

... (truncated)

Commits

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

Bumps [axios](https://github.com/axios/axios) to 1.6.7 and updates ancestor dependency [@digitransit-component/digitransit-component-autosuggest](https://github.com/HSLdevcom/digitransit-ui). These dependencies need to be updated together.


Updates `axios` from 0.26.0 to 1.6.7
- [Release notes](https://github.com/axios/axios/releases)
- [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md)
- [Commits](axios/axios@v0.26.0...v1.6.7)

Updates `@digitransit-component/digitransit-component-autosuggest` from 1.9.16 to 2.0.7
- [Release notes](https://github.com/HSLdevcom/digitransit-ui/releases)
- [Commits](https://github.com/HSLdevcom/digitransit-ui/commits)

---
updated-dependencies:
- dependency-name: axios
  dependency-type: indirect
- dependency-name: "@digitransit-component/digitransit-component-autosuggest"
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Apr 4, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant