Skip to content

[release-4.20] maintenance: Bump the npm group across 1 directory with 24 updates - #572

Merged
openshift-merge-bot[bot] merged 1 commit into
release-4.20from
dependabot/npm_and_yarn/release-4.20/npm-f74edafea1
Oct 1, 2026
Merged

openshift-merge-bot[bot] merged 1 commit into
release-4.20from
dependabot/npm_and_yarn/release-4.20/npm-f74edafea1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 30, 2026

Copy link
Copy Markdown
Contributor

Bumps the npm group with 24 updates in the / directory:

Package From To
prettier 3.9.8 3.9.9
sass 1.104.1 1.105.0
@peculiar/asn1-cms 2.9.4 2.10.0
@peculiar/asn1-csr 2.9.4 2.10.0
@peculiar/asn1-ecc 2.9.4 2.10.0
@peculiar/asn1-pfx 2.9.4 2.10.0
@peculiar/asn1-pkcs8 2.9.4 2.9.5
@peculiar/asn1-pkcs9 2.9.4 2.10.0
@peculiar/asn1-rsa 2.9.4 2.9.5
@peculiar/asn1-schema 2.9.4 2.9.5
@peculiar/asn1-x509 2.9.4 2.9.5
@peculiar/asn1-x509-attr 2.9.4 2.9.5
baseline-browser-mapping 2.11.25 2.11.26
browserslist 4.29.0 4.29.3
bundle-name 4.1.0 4.1.1
caniuse-lite 1.0.30001810 1.0.30001814
dompurify 3.4.15 3.4.16
electron-to-chromium 1.5.433 1.5.439
minimizer-webpack-plugin 5.11.0 5.12.0
node-releases 2.0.56 2.0.57
pkijs 3.4.0 3.4.1
serialize-javascript 7.1.1 7.1.2
undici 7.29.1 7.30.0
webpack-sources 3.5.1 3.6.0

Updates prettier from 3.9.8 to 3.9.9

Release notes

Sourced from prettier's releases.

3.9.9

  • Markdown: Fix text with $ been incorrectly parsed as math syntax (#20140 by @​fisker)

🔗 Changelog

Changelog

Sourced from prettier's changelog.

3.9.9

diff

Markdown: Fix text with $ been incorrectly parsed as math syntax (#20140 by @​fisker)

<!-- Input -->
**Uses $FOO** from `a.sh` and `b.sh`, plus `$BAR` from `c.sh`, before anything else runs here.
<!-- Prettier 3.9.8 -->
Uses $FOO from a.sh and b.sh, plus $BARfromc.sh, before anything else runs here.
<!-- Prettier 3.9.9 -->
Uses $FOO from a.sh and b.sh, plus $BAR from c.sh, before anything else runs here.

Commits

Updates sass from 1.104.1 to 1.105.0

Release notes

Sourced from sass's releases.

Dart Sass 1.105.0

To install Sass 1.105.0, download one of the packages below and add it to your PATH, or see the Sass website for full installation instructions.

Changes

  • Add support for first-class modules. These can be accessed using the new meta.load() and meta.get-module() functions, and may be passed as the $module argument to numerous eisting sass:meta functions.

  • Add the meta.css() mixin, which includes CSS from a first-class module.

JS API

  • Add a SassModule class and a corresponding Value.assertModule() method.

Dart API

  • Add a SassModule class and a corresponding Value.assertModule() method.

See the full changelog for changes in earlier releases.

Changelog

Sourced from sass's changelog.

1.105.0

  • Add support for first-class modules. These can be accessed using the new meta.load() and meta.get-module() functions, and may be passed as the $module argument to numerous eisting sass:meta functions.

  • Add the meta.css() mixin, which includes CSS from a first-class module.

JS API

  • Add a SassModule class and a corresponding Value.assertModule() method.

Dart API

  • Add a SassModule class and a corresponding Value.assertModule() method.
Commits
  • 4bf2b92 Bump zizmorcore/zizmor-action from 0.6.3 to 0.6.4 (#2865)
  • 850d57e [meta.load] Add support for meta.load() and related features (#2861)
  • 6180be0 Bump postcss from 8.5.26 to 8.5.28 in /pkg/sass-parser (#2863)
  • See full diff in compare view

Updates @peculiar/asn1-cms from 2.9.4 to 2.10.0

Release notes

Sourced from @​peculiar/asn1-cms's releases.

v2.10.0

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.5...v2.10.0

v2.9.5

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.4...v2.9.5

Commits
  • 342632c chore(release): v2.10.0
  • bc123f1 fix: remove exports field for 2.x compatibility with 2.6 resolution
  • 28e1a84 chore(release): v2.9.5
  • See full diff in compare view

Updates @peculiar/asn1-csr from 2.9.4 to 2.10.0

Release notes

Sourced from @​peculiar/asn1-csr's releases.

v2.10.0

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.5...v2.10.0

v2.9.5

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.4...v2.9.5

Commits
  • 342632c chore(release): v2.10.0
  • bc123f1 fix: remove exports field for 2.x compatibility with 2.6 resolution
  • 28e1a84 chore(release): v2.9.5
  • See full diff in compare view

Updates @peculiar/asn1-ecc from 2.9.4 to 2.10.0

Release notes

Sourced from @​peculiar/asn1-ecc's releases.

v2.10.0

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.5...v2.10.0

v2.9.5

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.4...v2.9.5

Commits
  • 342632c chore(release): v2.10.0
  • bc123f1 fix: remove exports field for 2.x compatibility with 2.6 resolution
  • 28e1a84 chore(release): v2.9.5
  • See full diff in compare view

Updates @peculiar/asn1-pfx from 2.9.4 to 2.10.0

Release notes

Sourced from @​peculiar/asn1-pfx's releases.

v2.10.0

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.5...v2.10.0

v2.9.5

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.4...v2.9.5

Commits
  • 342632c chore(release): v2.10.0
  • bc123f1 fix: remove exports field for 2.x compatibility with 2.6 resolution
  • 28e1a84 chore(release): v2.9.5
  • See full diff in compare view

Updates @peculiar/asn1-pkcs8 from 2.9.4 to 2.9.5

Release notes

Sourced from @​peculiar/asn1-pkcs8's releases.

v2.9.5

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.4...v2.9.5

Commits

Updates @peculiar/asn1-pkcs9 from 2.9.4 to 2.10.0

Release notes

Sourced from @​peculiar/asn1-pkcs9's releases.

v2.10.0

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.5...v2.10.0

v2.9.5

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.4...v2.9.5

Commits
  • 342632c chore(release): v2.10.0
  • bc123f1 fix: remove exports field for 2.x compatibility with 2.6 resolution
  • 28e1a84 chore(release): v2.9.5
  • See full diff in compare view

Updates @peculiar/asn1-rsa from 2.9.4 to 2.9.5

Release notes

Sourced from @​peculiar/asn1-rsa's releases.

v2.9.5

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.4...v2.9.5

Commits

Updates @peculiar/asn1-schema from 2.9.4 to 2.9.5

Release notes

Sourced from @​peculiar/asn1-schema's releases.

v2.9.5

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.4...v2.9.5

Commits

Updates @peculiar/asn1-x509 from 2.9.4 to 2.9.5

Release notes

Sourced from @​peculiar/asn1-x509's releases.

v2.9.5

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.4...v2.9.5

Commits

Updates @peculiar/asn1-x509-attr from 2.9.4 to 2.9.5

Release notes

Sourced from @​peculiar/asn1-x509-attr's releases.

v2.9.5

npm publish status

All intended npm packages were published successfully.

What's Changed

Full Changelog: PeculiarVentures/asn1-schema@v2.9.4...v2.9.5

Commits

Updates baseline-browser-mapping from 2.11.25 to 2.11.26

Commits

Updates browserslist from 4.29.0 to 4.29.3

Release notes

Sourced from browserslist's releases.

4.29.3

  • Updated Firefox ESR.

4.29.2

  • Fixed ignoring null usage in cover X in Y query (by @​wahidrizka).

4.29.1

Changelog

Sourced from browserslist's changelog.

4.29.3

  • Updated Firefox ESR.

4.29.2

  • Fixed ignoring null usage in cover X in Y query (by @​wahidrizka).

4.29.1

Commits
  • b4809dd Release 4.29.3 version
  • 9d844f8 Update Firefox ESR
  • 0033f34 Update dependencies
  • 906d329 Release 4.29.2 version
  • ff8c83f Update dependencies
  • 067f4a1 Merge pull request #952 from wahidrizka/fix-cover-null-usage
  • f760921 Do not add versions without usage data to cover queries
  • 5be63f5 Merge pull request #953 from wahidrizka/docs-android-latest-version
  • 1e5356f Note that Android version queries return only the latest version
  • 5b7e941 Add missed changes to ChangeLog
  • Additional commits viewable in compare view

Updates bundle-name from 4.1.0 to 4.1.1

Release notes

Sourced from bundle-name's releases.

v4.1.1

  • Fix: Validate bundle identifiers b03c225

sindresorhus/bundle-name@v4.1.0...v4.1.1

Commits

Updates caniuse-lite from 1.0.30001810 to 1.0.30001814

Commits

Updates dompurify from 3.4.15 to 3.4.16

Release notes

Sourced from dompurify's releases.

DOMPurify 3.4.16

  • Fixed a problem with IN_PLACE node removal when working with hooks, thanks @​manus-pi
  • Fixed a problem with IN_PLACE sanitization and raw-text roots, thanks @​h-t-m
  • Fixed a problem with ESM default exports landing in CommonJS declarations, thanks @​ssi02014
  • Migrated from rollup to rolldown because performance, thanks @​ssi02014
  • Bumped several dependencies where possible
Commits

Updates electron-to-chromium from 1.5.433 to 1.5.439

Commits

Updates minimizer-webpack-plugin from 5.11.0 to 5.12.0

Changelog

Sourced from minimizer-webpack-plugin's changelog.

5.12.0

Minor Changes

  • Take a minimizer as a module path or { path, export }, which a worker requires rather than rebuilding it from its source. (by @​alexander-akait in #744)

Patch Changes

  • Minify a style="" body as a rule's contents with every CSS minimizer, rather than dropping or rejecting it. (by @​alexander-akait in #748)

  • Minify assets whose names carry a #fragment, such as [name].js#[contenthash] or an asset module named [hash][ext][query][fragment]. (by @​alexander-akait in #747)

Commits

Updates node-releases from 2.0.56 to 2.0.57

Commits

Updates pkijs from 3.4.0 to 3.4.1

Release notes

Sourced from pkijs's releases.

Release v3.4.1

What's Changed

  • fix(ocsp): add OCSP responder authorization checks in accordance with RFC 6960 §4.2.2.2 (#502)
  • fix: use a safe global registry key when process.pid is not an integer (#538)
  • tests: migrate from Mocha to Vitest and update test imports (#504)
  • tooling: migrate to Oxlint and Oxfmt (#512, #521)
  • build: require Node.js >= 24.5.0 and npm 11.7.0
  • workspace: include website in the npm workspace (#518)
  • ci: update GitHub Actions, build checks, actions versions, and npm Trusted Publishing (#519, #520, #527)
  • dependencies: update project and website dependencies

New Contributors

Full Changelog: PeculiarVentures/PKI.js@v3.4.0...v3.4.1

Commits
  • c4fb15b 3.4.1
  • 67bf4aa Merge pull request #538 from cpruijsen/fix/issue-529
  • ac6f396 fix: use a safe global registry key when process.pid is not an integer
  • c073587 chore(deps): bump js-yaml from 4.3.1 to 4.3.2 (#535)
  • 9b098d1 chore(deps-dev): bump vitest from 4.1.10 to 4.1.11 (#534)
  • 0bfd6d0 chore(deps): bump svgo from 3.3.4 to 3.3.5 (#537)
  • 9c21e7a chore(deps): bump joi from 17.13.4 to 17.13.7 (#536)
  • 4e77d8e chore(deps): bump colord from 2.9.3 to 2.10.0 (#533)
  • 0435473 chore(deps): bump fast-uri from 3.1.5 to 3.1.7 (#532)
  • 1612ea6 Merge pull request #527 from PeculiarVentures/codex/trusted-publisher-release
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by GitHub Actions, a new releaser for pkijs since your current version.


Updates serialize-javascript from 7.1.1 to 7.1.2

Release notes

Sourced from serialize-javascript's releases.

v7.1.2

See: GHSA-gfhx-hw2g-v5hg

Commits

Updates undici from 7.29.1 to 7.30.0

Release notes

Sourced from undici's releases.

v7.30.0

What's Changed

Full Changelog: nodejs/undici@v7.29.1...v7.30.0

Commits

Updates webpack-sources from 3.5.1 to 3.6.0

Release notes

Sourced from webpack-sources's releases.

v3.6.0

Minor Changes

  • Add map({ scopes: true }), emitting the source map scopes field from the bindings a source declares. (by @​alexander-akait in #275)

Patch Changes

v3.5.3

Patch Changes

  • Hand out a recorded hash update as buffers, so cached data carries no big string. (by @​alexander-akait in #289)

v3.5.2

Patch Changes

  • perf: hash a string-backed source without materializing its buffer (by @​alexander-akait in #286)

    RawSource.updateHash and OriginalSource.updateHash called buffer(), which encodes the string to UTF-8 and memoizes the result — so every source that was hashed kept its content twice, as a string and as a buffer, for as long as the source lived. Node hashes a string as UTF-8, the same bytes buffer() produces, so the string is hashed directly instead and no digest changes.

    Measured on a webpack build of three.js + lodash-es (1033 modules, 2.71 MB of module source): retained arrayBuffers after the build drop from 8.74–8.76 MB to 5.81 MB with devtool: false, and from 9.35–12.11 MB to 6.42 MB with devtool: "source-map" — disjoint over six and five runs. 1029 Buffer.from calls per build are removed, one per module. CPU is unchanged: hashing those sources costs 9.23 ms via the buffer against 8.18 ms via the string, which no whole-build timing can resolve.

Changelog

Sourced from webpack-sources's changelog.

3.6.0

Minor Changes

  • Add map({ scopes: true }), emitting the source map scopes field from the bindings a source declares. (by @​alexander-akait in #275)

Patch Changes

3.5.3

Patch Changes

  • Hand out a recorded hash update as buffers, so cached data carries no big string. (by @​alexander-akait in #289)

3.5.2

Patch Changes

  • perf: hash a string-backed source without materializing its buffer (by @​alexander-akait in #286)

    RawSource.updateHash and OriginalSource.updateHash called buffer(), which encodes the string to UTF-8 and memoizes the result — so every source that was hashed kept its content twice, as a string and as a buffer, for as long as the source lived. Node hashes a string as UTF-8, the same bytes buffer() produces, so the string is hashed directly instead and no digest changes.

    Measured on a webpack build of three.js + lodash-es (1033 modules, 2.71 MB of module source): retained arrayBuffers after the build drop from 8.74–8.76 MB to 5.81 MB with devtool: false, and from 9.35–12.11 MB to 6.42 MB with devtool: "source-map" — disjoint over six and five runs. 1029 Buffer.from calls per build are removed, one per module. CPU is unchanged: hashing those sources costs 9.23 ms via the buffer against 8.18 ms via the string, which no whole-build timing can resolve.

Commits
  • 4f49c30 ci: make the CodSpeed memory benchmarks deterministic (#298)
  • 50fc1db chore(release): new release (#295)
  • d3548f7 test: check every mapping the library writes (#297)
  • f2bfd3a perf: create a cached source's map cache on first use (#296)
  • 5a9b34d fix: keep scope bindings through CachedSource replays and cached data (#293)
  • 2bd50f3 feat: emit the source map scopes field (#275)
  • 82a4bf0 test: run tests with node:test, keep Jest for old Node.js versions (#292)
  • fba8312 chore: generate types with the TypeScript CLI instead of tooling (#291)
  • 05f71a8 chore(release): new release (#290)
  • 1c97070 fix: hand out a recorded hash update as buffers (#289)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

…h 24 updates

Bumps the npm group with 24 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [prettier](https://github.com/prettier/prettier) | `3.9.8` | `3.9.9` |
| [sass](https://github.com/sass/dart-sass) | `1.104.1` | `1.105.0` |
| [@peculiar/asn1-cms](https://github.com/PeculiarVentures/asn1-schema/tree/HEAD/packages/cms) | `2.9.4` | `2.10.0` |
| [@peculiar/asn1-csr](https://github.com/PeculiarVentures/asn1-schema/tree/HEAD/packages/csr) | `2.9.4` | `2.10.0` |
| [@peculiar/asn1-ecc](https://github.com/PeculiarVentures/asn1-schema/tree/HEAD/packages/ecc) | `2.9.4` | `2.10.0` |
| [@peculiar/asn1-pfx](https://github.com/PeculiarVentures/asn1-schema/tree/HEAD/packages/pfx) | `2.9.4` | `2.10.0` |
| [@peculiar/asn1-pkcs8](https://github.com/PeculiarVentures/asn1-schema/tree/HEAD/packages/pkcs8) | `2.9.4` | `2.9.5` |
| [@peculiar/asn1-pkcs9](https://github.com/PeculiarVentures/asn1-schema/tree/HEAD/packages/pkcs9) | `2.9.4` | `2.10.0` |
| [@peculiar/asn1-rsa](https://github.com/PeculiarVentures/asn1-schema/tree/HEAD/packages/rsa) | `2.9.4` | `2.9.5` |
| [@peculiar/asn1-schema](https://github.com/PeculiarVentures/asn1-schema/tree/HEAD/packages/schema) | `2.9.4` | `2.9.5` |
| [@peculiar/asn1-x509](https://github.com/PeculiarVentures/asn1-schema/tree/HEAD/packages/x509) | `2.9.4` | `2.9.5` |
| [@peculiar/asn1-x509-attr](https://github.com/PeculiarVentures/asn1-schema/tree/HEAD/packages/x509-attr) | `2.9.4` | `2.9.5` |
| [baseline-browser-mapping](https://github.com/web-platform-dx/baseline-browser-mapping) | `2.11.25` | `2.11.26` |
| [browserslist](https://github.com/browserslist/browserslist) | `4.29.0` | `4.29.3` |
| [bundle-name](https://github.com/sindresorhus/bundle-name) | `4.1.0` | `4.1.1` |
| [caniuse-lite](https://github.com/browserslist/caniuse-lite) | `1.0.30001810` | `1.0.30001814` |
| [dompurify](https://github.com/cure53/DOMPurify) | `3.4.15` | `3.4.16` |
| [electron-to-chromium](https://github.com/Kilian/electron-to-chromium) | `1.5.433` | `1.5.439` |
| [minimizer-webpack-plugin](https://github.com/webpack/minimizer-webpack-plugin) | `5.11.0` | `5.12.0` |
| [node-releases](https://github.com/chicoxyzzy/node-releases) | `2.0.56` | `2.0.57` |
| [pkijs](https://github.com/PeculiarVentures/PKI.js) | `3.4.0` | `3.4.1` |
| [serialize-javascript](https://github.com/yahoo/serialize-javascript) | `7.1.1` | `7.1.2` |
| [undici](https://github.com/nodejs/undici) | `7.29.1` | `7.30.0` |
| [webpack-sources](https://github.com/webpack/webpack-sources) | `3.5.1` | `3.6.0` |



Updates `prettier` from 3.9.8 to 3.9.9
- [Release notes](https://github.com/prettier/prettier/releases)
- [Changelog](https://github.com/prettier/prettier/blob/main/CHANGELOG.md)
- [Commits](prettier/prettier@3.9.8...3.9.9)

Updates `sass` from 1.104.1 to 1.105.0
- [Release notes](https://github.com/sass/dart-sass/releases)
- [Changelog](https://github.com/sass/dart-sass/blob/main/CHANGELOG.md)
- [Commits](sass/dart-sass@1.104.1...1.105.0)

Updates `@peculiar/asn1-cms` from 2.9.4 to 2.10.0
- [Release notes](https://github.com/PeculiarVentures/asn1-schema/releases)
- [Commits](https://github.com/PeculiarVentures/asn1-schema/commits/v2.10.0/packages/cms)

Updates `@peculiar/asn1-csr` from 2.9.4 to 2.10.0
- [Release notes](https://github.com/PeculiarVentures/asn1-schema/releases)
- [Commits](https://github.com/PeculiarVentures/asn1-schema/commits/v2.10.0/packages/csr)

Updates `@peculiar/asn1-ecc` from 2.9.4 to 2.10.0
- [Release notes](https://github.com/PeculiarVentures/asn1-schema/releases)
- [Commits](https://github.com/PeculiarVentures/asn1-schema/commits/v2.10.0/packages/ecc)

Updates `@peculiar/asn1-pfx` from 2.9.4 to 2.10.0
- [Release notes](https://github.com/PeculiarVentures/asn1-schema/releases)
- [Commits](https://github.com/PeculiarVentures/asn1-schema/commits/v2.10.0/packages/pfx)

Updates `@peculiar/asn1-pkcs8` from 2.9.4 to 2.9.5
- [Release notes](https://github.com/PeculiarVentures/asn1-schema/releases)
- [Commits](https://github.com/PeculiarVentures/asn1-schema/commits/v2.9.5/packages/pkcs8)

Updates `@peculiar/asn1-pkcs9` from 2.9.4 to 2.10.0
- [Release notes](https://github.com/PeculiarVentures/asn1-schema/releases)
- [Commits](https://github.com/PeculiarVentures/asn1-schema/commits/v2.10.0/packages/pkcs9)

Updates `@peculiar/asn1-rsa` from 2.9.4 to 2.9.5
- [Release notes](https://github.com/PeculiarVentures/asn1-schema/releases)
- [Commits](https://github.com/PeculiarVentures/asn1-schema/commits/v2.9.5/packages/rsa)

Updates `@peculiar/asn1-schema` from 2.9.4 to 2.9.5
- [Release notes](https://github.com/PeculiarVentures/asn1-schema/releases)
- [Commits](https://github.com/PeculiarVentures/asn1-schema/commits/v2.9.5/packages/schema)

Updates `@peculiar/asn1-x509` from 2.9.4 to 2.9.5
- [Release notes](https://github.com/PeculiarVentures/asn1-schema/releases)
- [Commits](https://github.com/PeculiarVentures/asn1-schema/commits/v2.9.5/packages/x509)

Updates `@peculiar/asn1-x509-attr` from 2.9.4 to 2.9.5
- [Release notes](https://github.com/PeculiarVentures/asn1-schema/releases)
- [Commits](https://github.com/PeculiarVentures/asn1-schema/commits/v2.9.5/packages/x509-attr)

Updates `baseline-browser-mapping` from 2.11.25 to 2.11.26
- [Release notes](https://github.com/web-platform-dx/baseline-browser-mapping/releases)
- [Commits](web-platform-dx/baseline-browser-mapping@v2.11.25...v2.11.26)

Updates `browserslist` from 4.29.0 to 4.29.3
- [Release notes](https://github.com/browserslist/browserslist/releases)
- [Changelog](https://github.com/browserslist/browserslist/blob/main/CHANGELOG.md)
- [Commits](browserslist/browserslist@4.29.0...4.29.3)

Updates `bundle-name` from 4.1.0 to 4.1.1
- [Release notes](https://github.com/sindresorhus/bundle-name/releases)
- [Commits](sindresorhus/bundle-name@v4.1.0...v4.1.1)

Updates `caniuse-lite` from 1.0.30001810 to 1.0.30001814
- [Commits](browserslist/caniuse-lite@1.0.30001810...1.0.30001814)

Updates `dompurify` from 3.4.15 to 3.4.16
- [Release notes](https://github.com/cure53/DOMPurify/releases)
- [Commits](cure53/DOMPurify@3.4.15...3.4.16)

Updates `electron-to-chromium` from 1.5.433 to 1.5.439
- [Changelog](https://github.com/Kilian/electron-to-chromium/blob/main/CHANGELOG.md)
- [Commits](Kilian/electron-to-chromium@v1.5.433...v1.5.439)

Updates `minimizer-webpack-plugin` from 5.11.0 to 5.12.0
- [Release notes](https://github.com/webpack/minimizer-webpack-plugin/releases)
- [Changelog](https://github.com/webpack/minimizer-webpack-plugin/blob/main/CHANGELOG.md)
- [Commits](https://github.com/webpack/minimizer-webpack-plugin/commits)

Updates `node-releases` from 2.0.56 to 2.0.57
- [Commits](chicoxyzzy/node-releases@v2.0.56...v2.0.57)

Updates `pkijs` from 3.4.0 to 3.4.1
- [Release notes](https://github.com/PeculiarVentures/PKI.js/releases)
- [Commits](PeculiarVentures/PKI.js@v3.4.0...v3.4.1)

Updates `serialize-javascript` from 7.1.1 to 7.1.2
- [Release notes](https://github.com/yahoo/serialize-javascript/releases)
- [Commits](yahoo/serialize-javascript@v7.1.1...v7.1.2)

Updates `undici` from 7.29.1 to 7.30.0
- [Release notes](https://github.com/nodejs/undici/releases)
- [Commits](nodejs/undici@v7.29.1...v7.30.0)

Updates `webpack-sources` from 3.5.1 to 3.6.0
- [Release notes](https://github.com/webpack/webpack-sources/releases)
- [Changelog](https://github.com/webpack/webpack-sources/blob/main/CHANGELOG.md)
- [Commits](webpack/webpack-sources@v3.5.1...v3.6.0)

---
updated-dependencies:
- dependency-name: prettier
  dependency-version: 3.9.9
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: sass
  dependency-version: 1.105.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm
- dependency-name: "@peculiar/asn1-cms"
  dependency-version: 2.10.0
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: npm
- dependency-name: "@peculiar/asn1-csr"
  dependency-version: 2.10.0
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: npm
- dependency-name: "@peculiar/asn1-ecc"
  dependency-version: 2.10.0
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: npm
- dependency-name: "@peculiar/asn1-pfx"
  dependency-version: 2.10.0
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: npm
- dependency-name: "@peculiar/asn1-pkcs8"
  dependency-version: 2.9.5
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: "@peculiar/asn1-pkcs9"
  dependency-version: 2.10.0
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: npm
- dependency-name: "@peculiar/asn1-rsa"
  dependency-version: 2.9.5
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: "@peculiar/asn1-schema"
  dependency-version: 2.9.5
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: "@peculiar/asn1-x509"
  dependency-version: 2.9.5
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: "@peculiar/asn1-x509-attr"
  dependency-version: 2.9.5
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: baseline-browser-mapping
  dependency-version: 2.11.26
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: browserslist
  dependency-version: 4.29.3
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: bundle-name
  dependency-version: 4.1.1
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: caniuse-lite
  dependency-version: 1.0.30001814
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: dompurify
  dependency-version: 3.4.16
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: electron-to-chromium
  dependency-version: 1.5.439
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: minimizer-webpack-plugin
  dependency-version: 5.12.0
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: npm
- dependency-name: node-releases
  dependency-version: 2.0.57
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: pkijs
  dependency-version: 3.4.1
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: serialize-javascript
  dependency-version: 7.1.2
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: npm
- dependency-name: undici
  dependency-version: 7.30.0
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: npm
- dependency-name: webpack-sources
  dependency-version: 3.6.0
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: npm
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 30, 2026
@openshift-merge-bot

Copy link
Copy Markdown
Contributor

Pipeline controller notification
This repo is configured to use the pipeline controller. Second-stage tests will be triggered either automatically or after lgtm label is added, depending on the repository configuration. The pipeline controller will automatically detect which contexts are required and will utilize /test Prow commands to trigger the second stage.

For optional jobs, comment /test ? to see a list of all defined jobs. To trigger manually all jobs from second stage use /pipeline required command.

This repository is configured in: LGTM mode

@coderabbitai

coderabbitai Bot commented Sep 30, 2026

Copy link
Copy Markdown

Important

Review skipped

Auto reviews are disabled on base/target branches other than the default branch.

Please check the settings in the CodeRabbit UI or the .coderabbit.yaml file in this repository. To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration

Configuration used: Repository: openshift/coderabbit/.coderabbit.yaml

Review profile: CHILL

Plan: Enterprise

Run ID: 79ed0354-5297-4071-86c0-acf36b5041ba

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review

Comment @coderabbitai help to get the list of available commands.

@openshift-ci openshift-ci Bot added the needs-ok-to-test Indicates a PR that requires an org member to verify it is safe to test. label Sep 30, 2026
@openshift-ci

openshift-ci Bot commented Sep 30, 2026

Copy link
Copy Markdown
Contributor

Hi @dependabot[bot]. Thanks for your PR.

I'm waiting for a openshift member to verify that this patch is reasonable to test. If it is, they should reply with /ok-to-test on its own line. Until that is done, I will not automatically test new commits in this PR, but the usual testing commands by org members will still work.

Regular contributors should join the org to skip this step.

Once the patch is verified, the new status will be reflected by the ok-to-test label.

I understand the commands that are listed here.

Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository.

@lkladnit lkladnit left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

/lgtm

@openshift-ci openshift-ci Bot added the lgtm Indicates that a PR is ready to be merged. label Oct 1, 2026
@openshift-merge-bot

Copy link
Copy Markdown
Contributor

Scheduling required tests:
/test e2e

@openshift-ci

openshift-ci Bot commented Oct 1, 2026

Copy link
Copy Markdown
Contributor

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: dependabot[bot], lkladnit

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@openshift-ci openshift-ci Bot added the approved Indicates a PR has been approved by an approver from all required OWNERS files. label Oct 1, 2026
@rszwajko

rszwajko commented Oct 1, 2026

Copy link
Copy Markdown
Contributor

/ok-to-test
/test e2e

@openshift-ci openshift-ci Bot added ok-to-test Indicates a non-member PR verified by an org member that is safe to test. and removed needs-ok-to-test Indicates a PR that requires an org member to verify it is safe to test. labels Oct 1, 2026
@openshift-ci

openshift-ci Bot commented Oct 1, 2026

Copy link
Copy Markdown
Contributor

@dependabot[bot]: all tests passed!

Full PR test history. Your PR dashboard.

Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here.

@openshift-merge-bot
openshift-merge-bot Bot merged commit 622aac9 into release-4.20 Oct 1, 2026
6 checks passed
@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/release-4.20/npm-f74edafea1 branch October 1, 2026 12:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

approved Indicates a PR has been approved by an approver from all required OWNERS files. dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code lgtm Indicates that a PR is ready to be merged. ok-to-test Indicates a non-member PR verified by an org member that is safe to test.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants