Skip to content

Bump dependabot-omnibus from 0.115.0 to 0.133.2

NipaNipa requested to merge dependabot/bundler/dependabot-omnibus-0.133.2 into master

Bumps dependabot-omnibus from 0.115.0 to 0.133.2.

Changelog

Sourced from dependabot-omnibus's changelog.

v0.133.2, 11 February 2021

  • Docker: Fix media types in Accept header for Docker Registry
  • Convert LockfileParserSpec to use project based fixtures

v0.133.1, 10 February 2021

  • npm: fix npm 7 workspace bug when updating nested packages
  • npm: correctly parse npm 7 version from package dependencies
  • npm: Refactor NpmLockfileUpdater
  • Update npm from 7.5.2 to 7.5.3
  • Bump @npmcli/arborist from 2.2.0 to 2.2.1 in /npm_and_yarn/helpers
  • Bump phpstan/phpstan from 0.12.71 to 0.12.74 in /composer/helpers/v2
  • Bump phpstan/phpstan from 0.12.71 to 0.12.74 in /composer/helpers/v1

v0.133.0, 9 February 2021

  • Bundler: Raise UnexpectedExternalCode if reject_external_code: true and the update involves external code

v0.132.0, 8 February 2021

  • npm: Add support for updating npm 7 lockfiles

v0.131.3, 8 February 2021

  • Nuget: handle version ranges in VersionFinder

v0.131.2, 5 February 2021

  • Maven: handle invalid pom references
  • Maven: Raise DependencyFileNotResolvable when invalid repo is specified
  • Bump @npmcli/arborist from 2.1.1 to 2.2.0 in /npm_and_yarn/helpers

v0.131.1, 4 February 2021

  • Composer: handle invalid version string
  • Composer: Don't raise when adding temp platform extensions
  • Composer: Handle version constraints with both caret and dev postfix
  • Docker: Use the correct Docker digest when checking for updates

v0.131.0, 4 February 2021

  • Composer: handle unreachable path vcs source
  • Nuget: Parse floating notation when used in range
  • Nuget: Ignore Remove ProjectReferences
  • Gradle Kotlin DSL: Add Support for Named URL Parameter in Maven Repository (@​hfhbd)
  • Python: Add python 3.8.7 (@​Parnassius)
  • npm: Refactor specs to use project based fixtures
  • Bump composer/composer from 1.10.19 to 1.10.20 in /composer/helpers/v1
  • Bump composer/composer from 2.0.8 to 2.0.9 in /composer/helpers/v2
... (truncated)
Commits
  • 8fd22fa Merge pull request #3122 from dependabot/v0.133.2-release-notes
  • 4f00136 v0.133.2
  • a7cf36d Merge pull request #3119 from dependabot/fix-docker-digests
  • 9d16037 👕 Fix linter violation
  • fa398d0 Fix media types in Accept header for Docker Registry
  • bc5493c Merge pull request #3117 from dependabot/jurre/lockfile-parser-spec-projects
  • b1b1869 Convert LockfileParserSpec to use project based fixtures
  • 65f1ece Merge pull request #3116 from dependabot/v0.133.1-release-notes
  • 6e3947a v0.133.1
  • e000b0f Merge pull request #3106 from dependabot/feelepxyz/fix-npm-workspace-bug
  • Additional commits viewable in compare view

Merge request reports