Skip to content
This repository has been archived by the owner on May 26, 2021. It is now read-only.

Bump @wordpress/scripts from 12.1.1 to 16.1.0 #50

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github May 21, 2021

Bumps @wordpress/scripts from 12.1.1 to 16.1.0.

Changelog

Sourced from @​wordpress/scripts's changelog.

16.1.0 (2021-05-20)

Bug Fix

  • The default Babel configuration has changed to respect a local Browserslist configuration.

16.0.0 (2021-05-14)

Breaking Changes

New Features

  • Include a Jest Reporter that formats test results for GitHub Actions annotations (#31041).
  • Have the format command ignore files listed in a .prettierignore file, add a fallback .prettierignore to the package (30844).
  • The e2e tests are now using jest-circus as the test runner. This enable us to capture screenshots at the time the tests failed. The unit tests are also using the same test runner for consistency (#28449, #31178).

Security Fix

  • Update postcss dependency to the latest patch version. Versions before 8.2.10 are vulnerable to Regular Expression Denial of Service (ReDoS) during source map parsing (#31685).

15.0.1 (2021-04-30)

Bug Fix

  • Add postcss as a dependency to ensure that the correct version gets installed.

15.0.0 (2021-04-29)

Breaking Changes

  • Rename format-js script to format (#30240).
  • Include YAML files when formatting files with format (#30240).
  • The bundled css-loader dependency has been updated from requiring ^3.5.2 to requiring ^5.1.3 (#27821).
  • The bundled mini-css-extract-plugin dependency has been updated from requiring ^0.9.0 to requiring ^1.3.9 (#27821).
  • The bundled postcss-loader dependency has been updated from requiring ^3.0.0 to requiring ^4.2.0 (#27821).
  • The bundled sass-loader dependency has been updated from requiring ^8.0.2 to requiring ^10.1.1 (#27821).
  • The bundled thread-loader dependency has been updated from requiring ^2.1.3 to requiring ^3.0.1 (#27821).
  • The bundled url-loader dependency has been updated from requiring ^3.0.0 to requiring ^4.1.1 (#27821).

New Features

  • build and start command now bundle files ending with .module.css as CSS modules and extracts style.module.css (#29182).

Enhancements

  • The bundled webpack dependency has been updated from requiring 4.42.0 to requiring ^4.46.0 (#27821).

... (truncated)

Commits
  • 24ad588 chore(release): publish
  • dadafaa Update changelog files
  • 955b6d7 Merge changes published in the Gutenberg plugin "release/10.7" branch
  • 0c80fba chore(release): publish
  • 33e8485 Update changelog files
  • 35fd307 Merge changes published in the Gutenberg plugin "release/10.6" branch
  • 0d7c487 Update changelog files
  • 92a622f Merge changes published in the Gutenberg plugin "release/10.6" branch
  • 6f82f63 chore(release): publish
  • d2c9a42 Scripts: Add postcss as a dependency to ensure that the correct version get...
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label May 21, 2021
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants