chore(deps): bump the rust-security group across 1 directory with 11 updates - #22
Open
dependabot[bot] wants to merge 1 commit into
Open
dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
…updates Bumps the rust-security group with 11 updates in the / directory: | Package | From | To | | --- | --- | --- | | [thiserror](https://github.com/dtolnay/thiserror) | `2.0.20` | `2.0.21` | | [clap](https://github.com/clap-rs/clap) | `4.6.6` | `4.6.7` | | [clap_complete](https://github.com/clap-rs/clap) | `4.6.9` | `4.6.11` | | [quick-xml](https://github.com/tafia/quick-xml) | `0.41.0` | `0.42.0` | | dirs | `6.0.0` | `7.0.0` | | [toml](https://github.com/toml-rs/toml) | `1.1.4+spec-1.1.0` | `1.1.6+spec-1.1.0` | | [yrs](https://github.com/y-crdt/y-crdt) | `0.20.0` | `0.28.0` | | [rand](https://github.com/rust-random/rand) | `0.8.7` | `0.10.2` | | [rand_chacha](https://github.com/rust-random/rand) | `0.3.1` | `0.10.0` | | [automerge](https://github.com/automerge/automerge) | `0.5.12` | `0.12.0` | | [axum](https://github.com/tokio-rs/axum) | `0.7.9` | `0.8.9` | Updates `thiserror` from 2.0.20 to 2.0.21 - [Release notes](https://github.com/dtolnay/thiserror/releases) - [Commits](dtolnay/thiserror@2.0.20...2.0.21) Updates `clap` from 4.6.6 to 4.6.7 - [Release notes](https://github.com/clap-rs/clap/releases) - [Changelog](https://github.com/clap-rs/clap/blob/main/CHANGELOG.md) - [Commits](clap-rs/clap@clap_complete-v4.6.6...clap_complete-v4.6.7) Updates `clap_complete` from 4.6.9 to 4.6.11 - [Release notes](https://github.com/clap-rs/clap/releases) - [Changelog](https://github.com/clap-rs/clap/blob/main/CHANGELOG.md) - [Commits](clap-rs/clap@clap_complete-v4.6.9...clap_complete-v4.6.11) Updates `quick-xml` from 0.41.0 to 0.42.0 - [Release notes](https://github.com/tafia/quick-xml/releases) - [Changelog](https://github.com/tafia/quick-xml/blob/master/Changelog.md) - [Commits](tafia/quick-xml@v0.41.0...v0.42.0) Updates `dirs` from 6.0.0 to 7.0.0 Updates `toml` from 1.1.4+spec-1.1.0 to 1.1.6+spec-1.1.0 - [Commits](toml-rs/toml@toml-v1.1.4...toml-v1.1.6) Updates `yrs` from 0.20.0 to 0.28.0 - [Release notes](https://github.com/y-crdt/y-crdt/releases) - [Commits](y-crdt/y-crdt@v0.20.0...v0.28.0) Updates `rand` from 0.8.7 to 0.10.2 - [Release notes](https://github.com/rust-random/rand/releases) - [Changelog](https://github.com/rust-random/rand/blob/master/CHANGELOG.md) - [Commits](rust-random/rand@0.8.7...0.10.2) Updates `rand_chacha` from 0.3.1 to 0.10.0 - [Release notes](https://github.com/rust-random/rand/releases) - [Changelog](https://github.com/rust-random/rand/blob/master/CHANGELOG.md) - [Commits](rust-random/rand@rand_chacha-0.3.1...0.10.0) Updates `automerge` from 0.5.12 to 0.12.0 - [Release notes](https://github.com/automerge/automerge/releases) - [Commits](https://github.com/automerge/automerge/compare/rust/automerge@0.5.12...rust/automerge-0.12.0) Updates `axum` from 0.7.9 to 0.8.9 - [Release notes](https://github.com/tokio-rs/axum/releases) - [Changelog](https://github.com/tokio-rs/axum/blob/main/CHANGELOG.md) - [Commits](tokio-rs/axum@axum-v0.7.9...axum-v0.8.9) --- updated-dependencies: - dependency-name: thiserror dependency-version: 2.0.21 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: rust-security - dependency-name: clap dependency-version: 4.6.7 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: rust-security - dependency-name: clap_complete dependency-version: 4.6.11 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: rust-security - dependency-name: quick-xml dependency-version: 0.42.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: rust-security - dependency-name: dirs dependency-version: 7.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: rust-security - dependency-name: toml dependency-version: 1.1.6+spec-1.1.0 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: rust-security - dependency-name: yrs dependency-version: 0.28.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: rust-security - dependency-name: rand dependency-version: 0.10.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: rust-security - dependency-name: rand_chacha dependency-version: 0.10.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: rust-security - dependency-name: automerge dependency-version: 0.12.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: rust-security - dependency-name: axum dependency-version: 0.8.9 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: rust-security ... Signed-off-by: dependabot[bot] <support@github.com>
|
Important Review skippedBot user detected. To trigger a single review, invoke the ⚙️ Run configurationConfiguration used: defaults Review profile: CHILL Plan: Advanced Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
This branch has not been deployed
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the rust-security group with 11 updates in the / directory:
2.0.202.0.214.6.64.6.74.6.94.6.110.41.00.42.06.0.07.0.01.1.4+spec-1.1.01.1.6+spec-1.1.00.20.00.28.00.8.70.10.20.3.10.10.00.5.120.12.00.7.90.8.9Updates
thiserrorfrom 2.0.20 to 2.0.21Release notes
Sourced from thiserror's releases.
Commits
b1827eeRelease 2.0.2158037b5Merge pull request #459 from dtolnay/turbofishf82a0cfKeep track of nested turbofish depth72ea492Raise required compiler to Rust 1.7772eea0dResolve io_other_error clippy lint in tests07f09a2Raise required compiler to Rust 1.742715388Update ui test suite to nightly-2026-09-225a306c7Update ui test suite to nightly-2026-09-05ef9383bUpdate ui test suite to nightly-2026-08-228336b84Update ui tests for version 2.0.20Updates
clapfrom 4.6.6 to 4.6.7Release notes
Sourced from clap's releases.
Changelog
Sourced from clap's changelog.
Commits
d3e59a9chore: Released997f87docs: Update changelogfb6058cMerge pull request #6409 from heaths/pwsh-support2310870test(complete): Add tests for completer_for_path5967c17refactor(complete): Move shell detection to Shells594602bfix(complete): Detect pwsh for PowerShell3a4f2d0Merge pull request #6427 from clap-rs/renovate/shlex-2.x67ebaedMerge pull request #6426 from clap-rs/renovate/actions-checkout-7.xc968b13chore(deps): Update Rust crate shlex to v28f247cbchore(deps): Update actions/checkout action to v7Updates
clap_completefrom 4.6.9 to 4.6.11Commits
2cb76fdchore: Release0b00b8ddocs: Update changelog3443000Merge pull request #6526 from bonnefoa/fix-completion-escapea1b6be7fix(clap_complete): Fix value escape in zsh completionface9e8test(complete): Add completion test without arg's help88053abtest(complete): Re-enable complete testse6adcc2chore(release): Simplify replacements13f2db5chore: Release3304feadocs: Update changelog7b2ad34Merge pull request #6521 from r-near/feat/derive-deferred-initializationUpdates
quick-xmlfrom 0.41.0 to 0.42.0Release notes
Sourced from quick-xml's releases.
... (truncated)
Changelog
Sourced from quick-xml's changelog.
... (truncated)
Commits
36a2c52Release 0.42.0a4b9fcacargo fmt22c99f5Update Rust Edition to 202483351fbAdd rename = $value to a table in serde example commentsf4db767Clarify documentation about lifetimes of the events and attributes9f4c66aFix formatting for correct assertions in read_nodes_serde6950ef7Add GHA job to execute examplesdbf9e3fShow XML Decl tracking in examplesaab9452Add writing a Decl event to the writer example1573e05Avoid trim_text(true) in the in-depth examplesUpdates
dirsfrom 6.0.0 to 7.0.0Updates
tomlfrom 1.1.4+spec-1.1.0 to 1.1.6+spec-1.1.0Commits
572c005chore: Release66d0c53docs: Update changelog07af4e7perf: Reduce allocations in toml_edit parsing and dumping (#1215)0ff90dbperf(display): Write encoded strings directlyefb2536perf(display): Move generated representation strings075c444refactor(display): Consolidate key-path encodingb48f338perf(display): Borrow table keys during document outputc6c1de3perf(parser): Move completed table header keysec90463perf(parser): Borrow input when creating editable documentsd76a48atest: Benchmark rendering generated keys and valuesUpdates
yrsfrom 0.20.0 to 0.28.0Commits
23b7f56release v0.288c0a825Merge pull request #662 from Horusiath/remove-subscriptionaaa1f50fix dealock in fuzzy tests22890d6Merge pull request #659 from kavinsood/fix/ywasm-utf16-offset-docsba8f2d3Merge pull request #658 from Horusiath/fix/branch-by-val-eqa576b98docs(ywasm): describe text offsets as UTF-16 code units9d2d390Branch::eq should only compare by referencecf11965ai-gen: yffi - make use of new subscription API:85043eemake doc subscribe/unsubscribe from transaction64f3edeuse unsubscribe abased on ArcSwap OptionUpdates
randfrom 0.8.7 to 0.10.2Changelog
Sourced from rand's changelog.
... (truncated)
Commits
1540ea3Prepare rand 0.10.2 (#1800)a29964aBump chacha20 from 0.10.0 to 0.10.1 in the all-deps group (#1801)ced9491Tweak docs for RngExt::random_range and SampleRange (#1798)db14664Check UniformChar validity on deser (#1790)bea8620Bump the all-deps group with 2 updates (#1796)4f44932Bump actions/cache from 5 to 6 (#1795)b999a13Bump actions/checkout from 6 to 7 (#1794)aeab810Avoid unsafe where safety depends on non-local values (#1791)1896d7cAdd typos CI job (#1789)43eddeeBump the all-deps group with 2 updates (#1788)Updates
rand_chachafrom 0.3.1 to 0.10.0Release notes
Sourced from rand_chacha's releases.
... (truncated)
Changelog
Sourced from rand_chacha's changelog.
... (truncated)
Commits
acc5f24Prepare v0.10.0 releases (#1729)95c5165Add fn rand::make_rng (#1734)146da58CHANGELOG: add PR links (#1738)8cacd6dREADME tweaks (#1737)28e3df8Update chacha20: use ChaChaCore directly; remove bytes_until_reseed field (#1...03db311Replace fn reseed_and_generate with try_to_reseedb14483eApply inline attr to fn generatefda8f74Remove bytes_until_reseed field213bb3bBump chacha20 to 0.10.0-rc.1172afe1eMinor tweaks; prepare v0.10.0-rc.9 (#1736)Updates
automergefrom 0.5.12 to 0.12.0Commits
1755d0drust/automerge@0.12.0f45718frust/automerge/change_graph: Fix test flakeefef0e1rust/automerge: Fix InsertQuery::resolve9d5cbd8Apply rich text block patches in JavaScript4e7bccfEmit rich text patches for exposed text objects1ae4d18rust: Exclude fragment head from checkpoints7f96e1bjavascript/implementation: Fix documentation mentionfork62ea6a1javascript/proxies: Guard on__proto__fa20bd8build(deps-dev): bump browserslist9f3cef7build(deps-dev): bump fast-uriUpdates
axumfrom 0.7.9 to 0.8.9Release notes
Sourced from axum's releases.
... (truncated)
Commits
c59208crevert axum-core changelog changes99068f5Revert "FixIntoResponsefor tuples overriding error response codes (#3603)"23d7098Revert "axum-core 0.5.6"e8a39adaxum-macros 0.5.16e9a249axum-extra 0.12.60ec9041axum 0.8.9c3fcebbaxum-core 0.5.6a8790fcupdate release notes26ba7bbdocs: consolidate state management docs in crate root (#3683)9fc59efUpdate to tokio-tungstenite 0.29 (#3689)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions