Skip to content

deps: bump fast-uri from 3.1.3 to 3.1.5 in /apps/dashboard - #89

Closed
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/apps/dashboard/fast-uri-3.1.5
Closed

deps: bump fast-uri from 3.1.3 to 3.1.5 in /apps/dashboard#89
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/apps/dashboard/fast-uri-3.1.5

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 22, 2026

Copy link
Copy Markdown
Contributor

Bumps fast-uri from 3.1.3 to 3.1.5.

Release notes

Sourced from fast-uri's releases.

v3.1.5

⚠️ Security Warning

Fix for GHSA-7p8r-x3mc-p8w7

Full Changelog: fastify/fast-uri@v3.1.4...v3.1.5

v3.1.4

⚠️ Security Release

Fix for GHSA-v2hh-gcrm-f6hx

Full Changelog: fastify/fast-uri@v3.1.3...v3.1.4

Commits

@dependabot @github

dependabot Bot commented on behalf of github Aug 22, 2026

Copy link
Copy Markdown
Contributor Author

Labels

The following labels could not be found: dependencies. Please create it before Dependabot can add it to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@blitzcrieg1

Copy link
Copy Markdown
Owner

@dependabot rebase

Bumps [fast-uri](https://github.com/fastify/fast-uri) from 3.1.3 to 3.1.5.
- [Release notes](https://github.com/fastify/fast-uri/releases)
- [Commits](fastify/fast-uri@v3.1.3...v3.1.5)

---
updated-dependencies:
- dependency-name: fast-uri
  dependency-version: 3.1.5
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/apps/dashboard/fast-uri-3.1.5 branch from 0e335f8 to 415a607 Compare August 22, 2026 20:43
@blitzcrieg1

Copy link
Copy Markdown
Owner

Closing: superseded by a single PR that does all four transitive advisories at once.

Four packages sharing one lockfile meant every merge invalidated the others. These three went BLOCKED, rebased to CLEAN, then went BLOCKED again as soon as one landed. More rebases would have raced the same way.

Resolved and verified there: @hono/node-server 1.19.17, brace-expansion 5.0.9, fast-uri 3.1.5.

@dependabot @github

dependabot Bot commented on behalf of github Aug 22, 2026

Copy link
Copy Markdown
Contributor Author

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/apps/dashboard/fast-uri-3.1.5 branch August 22, 2026 20:50
@github-actions github-actions Bot locked and limited conversation to collaborators Aug 22, 2026
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant