{"id":4280,"name":"morgan","ecosystem":"npm","repository_url":"https://github.com/expressjs/morgan","issues_count":5447,"created_at":"2025-06-06T16:30:24.207Z","updated_at":"2025-06-06T16:30:24.207Z","purl":"pkg:npm/morgan","metadata":{"id":2034795,"name":"morgan","ecosystem":"npm","description":"HTTP request logger middleware for node.js","homepage":"https://github.com/expressjs/morgan#readme","licenses":"MIT","normalized_licenses":["MIT"],"repository_url":"https://github.com/expressjs/morgan","keywords_array":["express","http","logger","middleware"],"namespace":null,"versions_count":26,"first_release_published_at":"2014-02-08T19:19:24.247Z","latest_release_published_at":"2020-03-20T18:00:13.316Z","latest_release_number":"1.10.0","last_synced_at":"2025-06-04T21:01:48.575Z","created_at":"2022-04-09T19:54:41.876Z","updated_at":"2025-06-04T21:01:48.575Z","registry_url":"https://www.npmjs.com/package/morgan","install_command":"npm install morgan","documentation_url":null,"metadata":{"funding":null,"dist-tags":{"latest":"1.10.0"}},"repo_metadata":{"id":13950856,"uuid":"16650937","full_name":"expressjs/morgan","owner":"expressjs","description":"HTTP request logger middleware for node.js","archived":false,"fork":false,"pushed_at":"2024-05-14T16:39:32.000Z","size":245,"stargazers_count":7827,"open_issues_count":25,"forks_count":531,"subscribers_count":93,"default_branch":"master","last_synced_at":"2024-05-17T20:33:50.758Z","etag":null,"topics":["express","javascript","logger","nodejs"],"latest_commit_sha":null,"homepage":"","language":"JavaScript","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"mit","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/expressjs.png","metadata":{"files":{"readme":"README.md","changelog":"HISTORY.md","contributing":null,"funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null}},"created_at":"2014-02-08T19:19:14.000Z","updated_at":"2024-06-18T10:48:53.612Z","dependencies_parsed_at":"2023-02-10T14:30:32.323Z","dependency_job_id":"cfd0a046-16e7-4539-a88e-56ec36d167f0","html_url":"https://github.com/expressjs/morgan","commit_stats":{"total_commits":371,"total_committers":23,"mean_commits":"16.130434782608695","dds":0.07277628032345018,"last_synced_commit":"19a6aa5369220b522e9dac007975ee66b1c38283"},"previous_names":[],"tags_count":26,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/expressjs","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":217590326,"owners_count":16201263,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"},"owner_record":{"login":"expressjs","name":"expressjs","uuid":"5658226","kind":"organization","description":"Express.js: the fast, unopinionated, minimalist web framework for node","email":null,"website":"https://expressjs.com/","location":null,"twitter":null,"company":null,"icon_url":"https://avatars.githubusercontent.com/u/5658226?v=4","repositories_count":44,"last_synced_at":"2024-04-14T06:44:27.360Z","metadata":{"has_sponsors_listing":false},"html_url":"https://github.com/expressjs","funding_links":[],"total_stars":122430,"followers":1481,"following":0,"created_at":"2022-11-02T16:18:58.194Z","updated_at":"2024-04-14T06:44:39.104Z","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/expressjs","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/expressjs/repositories"},"tags":[{"name":"1.10.0","sha":"c68d2eab4c6a5d9940895a6d1614964d44358642","kind":"commit","published_at":"2020-03-20T17:51:13.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.10.0","html_url":"https://github.com/expressjs/morgan/releases/tag/1.10.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.10.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.10.0/manifests"},{"name":"1.9.1","sha":"572dd937f26d486babc709228c98fd15dd807408","kind":"commit","published_at":"2018-09-11T01:05:03.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.9.1","html_url":"https://github.com/expressjs/morgan/releases/tag/1.9.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.9.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.9.1/manifests"},{"name":"1.9.0","sha":"4def0fa6d4ac703dc5c76f901e997af667a27d65","kind":"commit","published_at":"2017-09-27T02:31:53.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.9.0","html_url":"https://github.com/expressjs/morgan/releases/tag/1.9.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.9.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.9.0/manifests"},{"name":"1.8.2","sha":"475ae38b5c308113bbf6b3a535351ceb2c419682","kind":"commit","published_at":"2017-05-24T01:52:41.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.8.2","html_url":"https://github.com/expressjs/morgan/releases/tag/1.8.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.8.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.8.2/manifests"},{"name":"1.8.1","sha":"29daba369e388522656183463fae1fb1a1dda609","kind":"commit","published_at":"2017-02-11T01:46:14.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.8.1","html_url":"https://github.com/expressjs/morgan/releases/tag/1.8.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.8.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.8.1/manifests"},{"name":"1.8.0","sha":"b0e3c90ee07ba549a2b5e835268500756eb6e154","kind":"commit","published_at":"2017-02-05T00:35:04.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.8.0","html_url":"https://github.com/expressjs/morgan/releases/tag/1.8.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.8.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.8.0/manifests"},{"name":"1.7.0","sha":"5da5ff1f5446e3f3ff29d29a2d6582712612bf89","kind":"commit","published_at":"2016-02-19T04:59:20.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.7.0","html_url":"https://github.com/expressjs/morgan/releases/tag/1.7.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.7.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.7.0/manifests"},{"name":"1.6.1","sha":"300286d1472928b10f723e8ea138533dfbd3b521","kind":"commit","published_at":"2015-07-04T03:03:32.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.6.1","html_url":"https://github.com/expressjs/morgan/releases/tag/1.6.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.6.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.6.1/manifests"},{"name":"1.6.0","sha":"8fbacc95c984be4c2538b67cd7294946c661d993","kind":"commit","published_at":"2015-06-13T06:10:44.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.6.0","html_url":"https://github.com/expressjs/morgan/releases/tag/1.6.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.6.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.6.0/manifests"},{"name":"1.5.3","sha":"7d5a190e6e22c4871c15aff2143bf76b808052cf","kind":"commit","published_at":"2015-05-11T06:42:42.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.5.3","html_url":"https://github.com/expressjs/morgan/releases/tag/1.5.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.5.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.5.3/manifests"},{"name":"1.5.2","sha":"b08705a7dc059dabc671a7b58c4bf6d81fccce85","kind":"commit","published_at":"2015-03-15T20:09:31.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.5.2","html_url":"https://github.com/expressjs/morgan/releases/tag/1.5.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.5.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.5.2/manifests"},{"name":"1.5.1","sha":"ae84a264fb9cdd7b4d7e2bf19d93b0b51da99996","kind":"commit","published_at":"2014-12-31T19:16:31.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.5.1","html_url":"https://github.com/expressjs/morgan/releases/tag/1.5.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.5.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.5.1/manifests"},{"name":"1.5.0","sha":"262c40de4df67f1972d10600157a79e4967d9bc5","kind":"commit","published_at":"2014-11-07T06:10:59.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.5.0","html_url":"https://github.com/expressjs/morgan/releases/tag/1.5.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.5.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.5.0/manifests"},{"name":"1.4.1","sha":"e2cae6ad7d772a0f1c90aa680f908b5f8d29e2c7","kind":"commit","published_at":"2014-10-23T03:03:37.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.4.1","html_url":"https://github.com/expressjs/morgan/releases/tag/1.4.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.4.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.4.1/manifests"},{"name":"1.4.0","sha":"aab13ecbf74b1cb74bbe13ffe110576acbfb5279","kind":"commit","published_at":"2014-10-17T01:14:53.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.4.0","html_url":"https://github.com/expressjs/morgan/releases/tag/1.4.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.4.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.4.0/manifests"},{"name":"1.3.2","sha":"90206954abeb32f867cd7db30bfa2eba64f1f0e8","kind":"commit","published_at":"2014-09-28T03:32:01.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.3.2","html_url":"https://github.com/expressjs/morgan/releases/tag/1.3.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.3.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.3.2/manifests"},{"name":"1.3.1","sha":"a7192887a0f388d6f397bd70c836a63d6b8afc76","kind":"commit","published_at":"2014-09-14T16:24:24.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.3.1","html_url":"https://github.com/expressjs/morgan/releases/tag/1.3.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.3.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.3.1/manifests"},{"name":"1.3.0","sha":"0b44ec02f5561f77ea69185973aaf713f5de8375","kind":"commit","published_at":"2014-09-02T04:36:06.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.3.0","html_url":"https://github.com/expressjs/morgan/releases/tag/1.3.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.3.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.3.0/manifests"},{"name":"1.2.3","sha":"733e01ec43b0b25c1a2b6bd1a6d3e5ca845ac95a","kind":"commit","published_at":"2014-08-17T03:02:30.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.2.3","html_url":"https://github.com/expressjs/morgan/releases/tag/1.2.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.2.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.2.3/manifests"},{"name":"1.2.2","sha":"0a070fa6510ecb96b67aa9908ab083ac0be325d5","kind":"commit","published_at":"2014-07-27T19:22:54.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.2.2","html_url":"https://github.com/expressjs/morgan/releases/tag/1.2.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.2.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.2.2/manifests"},{"name":"1.2.1","sha":"d648baf0b25f67105bb4907d14f64cce2df200fc","kind":"commit","published_at":"2014-07-26T20:36:29.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.2.1","html_url":"https://github.com/expressjs/morgan/releases/tag/1.2.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.2.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.2.1/manifests"},{"name":"1.2.0","sha":"34f0479eaf433191a264c1dce2b11c521f9749c0","kind":"commit","published_at":"2014-07-20T04:23:57.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.2.0","html_url":"https://github.com/expressjs/morgan/releases/tag/1.2.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.2.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.2.0/manifests"},{"name":"1.1.1","sha":"9029b371a4e52af310e33793f8e8f294806369b1","kind":"commit","published_at":"2014-05-21T00:34:46.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.1.1","html_url":"https://github.com/expressjs/morgan/releases/tag/1.1.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.1.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.1.1/manifests"},{"name":"1.1.0","sha":"39950b049e1eca39730cc78d45b137951597fc64","kind":"commit","published_at":"2014-05-19T02:57:44.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.1.0","html_url":"https://github.com/expressjs/morgan/releases/tag/1.1.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.1.0/manifests"},{"name":"1.0.1","sha":"53993bdd1c6081e6b87097d898bdb123c30f6259","kind":"commit","published_at":"2014-05-05T02:23:05.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.0.1","html_url":"https://github.com/expressjs/morgan/releases/tag/1.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.0.1/manifests"},{"name":"1.0.0","sha":"79622119370961349101f676965987320013835b","kind":"commit","published_at":"2014-02-08T19:19:03.000Z","download_url":"https://codeload.github.com/expressjs/morgan/tar.gz/1.0.0","html_url":"https://github.com/expressjs/morgan/releases/tag/1.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/expressjs%2Fmorgan/tags/1.0.0/manifests"}]},"repo_metadata_updated_at":"2024-09-08T15:42:42.007Z","dependent_packages_count":8657,"downloads":23041856,"downloads_period":"last-month","dependent_repos_count":986048,"rankings":{"downloads":0.07030766068936575,"dependent_repos_count":0.03564247720965394,"dependent_packages_count":0.011785012625772672,"stargazers_count":1.1662276030865235,"forks_count":1.5918716410344536,"docker_downloads_count":0.041247544190204356,"average":0.48618032313932896},"purl":"pkg:npm/morgan","advisories":[{"uuid":"MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWd3Zzktcmd2ai00aDVq","url":"https://github.com/advisories/GHSA-gwg9-rgvj-4h5j","title":"Code Injection in morgan","description":"Verisons of `morgan` before 1.9.1 are vulnerable to code injection when user input is allowed into the filter or combined with a prototype pollution attack.\n\n\n## Recommendation\n\nUpdate to version 1.9.1 or later.","origin":"UNSPECIFIED","severity":"CRITICAL","published_at":"2019-03-25T18:03:23.000Z","withdrawn_at":null,"classification":"GENERAL","cvss_score":0.0,"cvss_vector":null,"references":["https://nvd.nist.gov/vuln/detail/CVE-2019-5413","https://hackerone.com/reports/390881","https://github.com/advisories/GHSA-gwg9-rgvj-4h5j","https://github.com/nodejs/security-wg/blob/master/vuln/npm/473.json","https://www.npmjs.com/advisories/736","https://lists.apache.org/thread.html/r8ba4c628fba7181af58817d452119481adce4ba92e889c643e4c7dd3@%3Ccommits.netbeans.apache.org%3E","https://lists.apache.org/thread.html/rb5ac16fad337d1f3bb7079549f97d8166d0ef3082629417c39f12d63@%3Cnotifications.netbeans.apache.org%3E"],"source_kind":"github","identifiers":["GHSA-gwg9-rgvj-4h5j","CVE-2019-5413"],"repository_url":null,"blast_radius":0.0,"packages":[{"versions":[{"first_patched_version":"1.9.1","vulnerable_version_range":"\u003c 1.9.1"}],"ecosystem":"npm","package_name":"morgan"}],"created_at":"2022-12-21T16:13:30.742Z","updated_at":"2025-05-10T01:11:21.249Z","epss_percentage":0.02065,"epss_percentile":0.82931}],"docker_usage_url":"https://docker.ecosyste.ms/usage/npm/morgan","docker_dependents_count":6635,"docker_downloads_count":1914429973,"usage_url":"https://repos.ecosyste.ms/usage/npm/morgan","dependent_repositories_url":"https://repos.ecosyste.ms/api/v1/usage/npm/morgan/dependencies","status":null,"funding_links":[],"critical":false,"versions_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/packages/morgan/versions","version_numbers_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/packages/morgan/version_numbers","dependent_packages_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/packages/morgan/dependent_packages","related_packages_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/packages/morgan/related_packages","maintainers":[{"uuid":"dougwilson","login":"dougwilson","name":null,"email":"doug@somethingdoug.com","url":null,"packages_count":103,"html_url":"https://www.npmjs.com/~dougwilson","role":null,"created_at":"2022-11-10T11:33:09.396Z","updated_at":"2022-11-10T11:33:09.396Z","packages_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/maintainers/dougwilson/packages"},{"uuid":"ulisesgascon","login":"ulisesgascon","name":null,"email":"ulisesgascondev@gmail.com","url":null,"packages_count":207,"html_url":"https://www.npmjs.com/~ulisesgascon","role":null,"created_at":"2024-05-30T19:00:55.169Z","updated_at":"2024-05-30T19:00:55.169Z","packages_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/maintainers/ulisesgascon/packages"}],"registry":{"name":"npmjs.org","url":"https://registry.npmjs.org","ecosystem":"npm","default":true,"packages_count":5005319,"maintainers_count":1012639,"namespaces_count":295318,"keywords_count":699769,"github":"npm","metadata":{"funded_packages_count":150180},"icon_url":"https://github.com/npm.png","created_at":"2022-04-04T15:19:23.081Z","updated_at":"2025-06-05T05:52:15.849Z","packages_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/packages","maintainers_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/maintainers","namespaces_url":"https://packages.ecosyste.ms/api/v1/registries/npmjs.org/namespaces"}},"unique_repositories_count":5138,"unique_repositories_count_past_30_days":11,"recent_issues":[{"uuid":"4929751064","node_id":"PR_kwDOSr70Ks7z4tbM","number":19,"state":"closed","title":"chore(deps): bump the minor-and-patch group across 1 directory with 17 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":5,"pull_request":true,"closed_at":"2026-07-20T15:41:10.000Z","author_association":null,"state_reason":null,"created_at":"2026-07-20T14:08:09.000Z","updated_at":"2026-07-20T15:44:39.000Z","time_to_close":5581,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"minor-and-patch","update_count":17,"packages":[{"name":"@opentelemetry/semantic-conventions","old_version":"1.42.0","new_version":"1.43.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"bullmq","old_version":"5.77.6","new_version":"5.80.9","repository_url":"https://github.com/taskforcesh/bullmq"},{"name":"envalid","old_version":"8.1.1","new_version":"8.2.0","repository_url":"https://github.com/af/envalid"},{"name":"express-rate-limit","old_version":"8.5.2","new_version":"8.6.0","repository_url":"https://github.com/express-rate-limit/express-rate-limit"},{"name":"helmet","old_version":"8.2.0","new_version":"8.3.0","repository_url":"https://github.com/helmetjs/helmet"},{"name":"ioredis","old_version":"5.11.0","new_version":"5.11.1","repository_url":"https://github.com/luin/ioredis"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"pg","old_version":"8.21.0","new_version":"8.22.0","repository_url":"https://github.com/brianc/node-postgres"},{"name":"typeorm","old_version":"1.0.0","new_version":"1.1.0","repository_url":"https://github.com/typeorm/typeorm"},{"name":"@biomejs/biome","old_version":"2.4.16","new_version":"2.5.4","repository_url":"https://github.com/biomejs/biome"},{"name":"@faker-js/faker","old_version":"10.4.0","new_version":"10.5.0","repository_url":"https://github.com/faker-js/faker"},{"name":"@swc-node/register","old_version":"1.11.1","new_version":"1.12.1","repository_url":"https://github.com/swc-project/swc-node"},{"name":"@swc/core","old_version":"1.15.43","new_version":"1.15.46","repository_url":"https://github.com/swc-project/swc"},{"name":"@testcontainers/postgresql","old_version":"12.0.1","new_version":"12.0.4","repository_url":"https://github.com/testcontainers/testcontainers-node"},{"name":"@types/supertest","old_version":"7.2.0","new_version":"7.2.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"lint-staged","old_version":"17.0.6","new_version":"17.1.0","repository_url":"https://github.com/lint-staged/lint-staged"},{"name":"tsc-alias","old_version":"1.8.17","new_version":"1.9.1","repository_url":"https://github.com/justkey007/tsc-alias"}],"path":null,"ecosystem":"npm"},"body":"Bumps the minor-and-patch group with 17 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@opentelemetry/semantic-conventions](https://github.com/open-telemetry/opentelemetry-js) | `1.42.0` | `1.43.0` |\n| [bullmq](https://github.com/taskforcesh/bullmq) | `5.77.6` | `5.80.9` |\n| [envalid](https://github.com/af/envalid) | `8.1.1` | `8.2.0` |\n| [express-rate-limit](https://github.com/express-rate-limit/express-rate-limit) | `8.5.2` | `8.6.0` |\n| [helmet](https://github.com/helmetjs/helmet) | `8.2.0` | `8.3.0` |\n| [ioredis](https://github.com/luin/ioredis) | `5.11.0` | `5.11.1` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [pg](https://github.com/brianc/node-postgres/tree/HEAD/packages/pg) | `8.21.0` | `8.22.0` |\n| [typeorm](https://github.com/typeorm/typeorm) | `1.0.0` | `1.1.0` |\n| [@biomejs/biome](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome) | `2.4.16` | `2.5.4` |\n| [@faker-js/faker](https://github.com/faker-js/faker) | `10.4.0` | `10.5.0` |\n| [@swc-node/register](https://github.com/swc-project/swc-node) | `1.11.1` | `1.12.1` |\n| [@swc/core](https://github.com/swc-project/swc/tree/HEAD/packages/core) | `1.15.43` | `1.15.46` |\n| [@testcontainers/postgresql](https://github.com/testcontainers/testcontainers-node) | `12.0.1` | `12.0.4` |\n| [@types/supertest](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/supertest) | `7.2.0` | `7.2.1` |\n| [lint-staged](https://github.com/lint-staged/lint-staged) | `17.0.6` | `17.1.0` |\n| [tsc-alias](https://github.com/justkey007/tsc-alias) | `1.8.17` | `1.9.1` |\n\n\nUpdates `@opentelemetry/semantic-conventions` from 1.42.0 to 1.43.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/releases\"\u003e@​opentelemetry/semantic-conventions's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003esemconv/v1.43.0\u003c/h2\u003e\n\u003ch2\u003e1.43.0\u003c/h2\u003e\n\u003ch3\u003e:rocket: Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efeat: update semantic conventions to v1.43.0 \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6883\"\u003e#6883\u003c/a\u003e\n\u003cul\u003e\n\u003cli\u003eSemantic Conventions v1.43.0: \u003ca href=\"https://github.com/open-telemetry/semantic-conventions/blob/main/CHANGELOG.md#v1430\"\u003echangelog\u003c/a\u003e | \u003ca href=\"https://opentelemetry.io/docs/specs/semconv/\"\u003elatest docs\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@opentelemetry/semantic-conventions\u003c/code\u003e (stable) changes: \u003cem\u003e1 added export\u003c/em\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@opentelemetry/semantic-conventions/incubating\u003c/code\u003e (unstable) changes: \u003cem\u003e1 added export\u003c/em\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eStable changes in v1.43.0\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003eTELEMETRY_SDK_LANGUAGE_VALUE_KOTLIN // \u0026quot;kotlin\u0026quot;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch4\u003eUnstable changes in v1.43.0\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003eATTR_AZURE_RESOURCE_GROUP_NAME // azure.resource_group.name\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/9b05f668ee7ab884a44b04b504e0baaff6c6d2b2\"\u003e\u003ccode\u003e9b05f66\u003c/code\u003e\u003c/a\u003e chore: prepare next release (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6906\"\u003e#6906\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/0f18798b3100412ddabb0b720384caed4e08643c\"\u003e\u003ccode\u003e0f18798\u003c/code\u003e\u003c/a\u003e feat(semantic-conventions): update semantic conventions to v1.43.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6883\"\u003e#6883\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/bbcdfa8ccd6de110a1a07b40371d07ef455c8851\"\u003e\u003ccode\u003ebbcdfa8\u003c/code\u003e\u003c/a\u003e chore: update workflow to the shared one (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6904\"\u003e#6904\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/e6a57765f8c4ace29f47b435c690994382709d28\"\u003e\u003ccode\u003ee6a5776\u003c/code\u003e\u003c/a\u003e chore(deps): update dependency typedoc to v0.28.20 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6898\"\u003e#6898\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/8bec6624137bbef296dbb1969fc9fb3773a36317\"\u003e\u003ccode\u003e8bec662\u003c/code\u003e\u003c/a\u003e feat(propagator-jaeger): deprecate JaegerPropagator (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6893\"\u003e#6893\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/20e3abe89cd646936c5433e95814d358896aba10\"\u003e\u003ccode\u003e20e3abe\u003c/code\u003e\u003c/a\u003e chore: add workflow for first time contributor (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6896\"\u003e#6896\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/fda8f31b1f036a149de00cf7fb379e82cfa1987f\"\u003e\u003ccode\u003efda8f31\u003c/code\u003e\u003c/a\u003e chore: bump to typescript@5.2.2 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6888\"\u003e#6888\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/3394c3e234ef28a9538610f14ee4f6ff19abeb11\"\u003e\u003ccode\u003e3394c3e\u003c/code\u003e\u003c/a\u003e fix(sdk-trace): sample ratio 1 upper-bound trace IDs (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6890\"\u003e#6890\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/2568ac16e6f02da85a8893de3ad61dc2f418e95f\"\u003e\u003ccode\u003e2568ac1\u003c/code\u003e\u003c/a\u003e chore: clean up some deps and devDeps in exporter packages (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6892\"\u003e#6892\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/0fd7fac15f4afcc26c5c233fb4e7725f74ce2616\"\u003e\u003ccode\u003e0fd7fac\u003c/code\u003e\u003c/a\u003e test(exporter-metrics-otlp-*): return response to allow process exit (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6889\"\u003e#6889\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/compare/semconv/v1.42.0...semconv/v1.43.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `bullmq` from 5.77.6 to 5.80.9\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/taskforcesh/bullmq/releases\"\u003ebullmq's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.80.9\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.80.8...v5.80.9\"\u003e5.80.9\u003c/a\u003e (2026-07-18)\u003c/h2\u003e\n\u003ch3\u003ePerformance Improvements\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eflow-producer:\u003c/strong\u003e reuse queue's shared Scripts instance in jobs fixes \u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4263\"\u003e#4263\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4308\"\u003e#4308\u003c/a\u003e) (\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/4f4b574de507e56e1e3a7f359565eb359463710f\"\u003e4f4b574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev5.80.8\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.80.7...v5.80.8\"\u003e5.80.8\u003c/a\u003e (2026-07-18)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003escheduler:\u003c/strong\u003e walk past stale slots when re-upserting under same id (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4299\"\u003e#4299\u003c/a\u003e) (\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/e8af56348a77677a4d802d2563e33b7313a79570\"\u003ee8af563\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev5.80.7\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.80.6...v5.80.7\"\u003e5.80.7\u003c/a\u003e (2026-07-17)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eworker:\u003c/strong\u003e move stalled job to failed when fetched manually (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4294\"\u003e#4294\u003c/a\u003e) (\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/c4a0a4a90d48303b1b6b7c45f67898573a73c424\"\u003ec4a0a4a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev5.80.6\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.80.5...v5.80.6\"\u003e5.80.6\u003c/a\u003e (2026-07-17)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003esandbox:\u003c/strong\u003e preserve child_process exports in null-stdio (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4301\"\u003e#4301\u003c/a\u003e) (\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/5044cf8fc17f0842655eda581b9e26b27f6abfe8\"\u003e5044cf8\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev5.80.5\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.80.4...v5.80.5\"\u003e5.80.5\u003c/a\u003e (2026-07-16)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003esandbox:\u003c/strong\u003e kill children that fail init and surface refusal errors fixes \u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4283\"\u003e#4283\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4284\"\u003e#4284\u003c/a\u003e) (\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/7dd064ec794ff2f8f67a859caf11cd5554ad75e4\"\u003e7dd064e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev5.80.4\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.80.3...v5.80.4\"\u003e5.80.4\u003c/a\u003e (2026-07-15)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency ioredis to v5.11.1 [security] (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4282\"\u003e#4282\u003c/a\u003e) (\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/d978d721995aa4d40aa93980866e2a6b02bcfed1\"\u003ed978d72\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev5.80.3\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.80.2...v5.80.3\"\u003e5.80.3\u003c/a\u003e (2026-07-15)\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/4f4b574de507e56e1e3a7f359565eb359463710f\"\u003e\u003ccode\u003e4f4b574\u003c/code\u003e\u003c/a\u003e perf(flow-producer): reuse queue's shared Scripts instance in jobs fixes \u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/426\"\u003e#426\u003c/a\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/0715a56bba9d37571b76194caaf008fb82499582\"\u003e\u003ccode\u003e0715a56\u003c/code\u003e\u003c/a\u003e chore(release): 5.80.8 (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4306\"\u003e#4306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/e8af56348a77677a4d802d2563e33b7313a79570\"\u003e\u003ccode\u003ee8af563\u003c/code\u003e\u003c/a\u003e fix(scheduler): walk past stale slots when re-upserting under same id (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4299\"\u003e#4299\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/096977e6b6fde85735b1c91aa20e581ddf6d52b3\"\u003e\u003ccode\u003e096977e\u003c/code\u003e\u003c/a\u003e chore(release): 5.80.7 (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4304\"\u003e#4304\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/c4a0a4a90d48303b1b6b7c45f67898573a73c424\"\u003e\u003ccode\u003ec4a0a4a\u003c/code\u003e\u003c/a\u003e fix(worker): move stalled job to failed when fetched manually (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4294\"\u003e#4294\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/f311da253231385524e797300166b1c6ee707732\"\u003e\u003ccode\u003ef311da2\u003c/code\u003e\u003c/a\u003e docs: change changelog reference [rust] (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4303\"\u003e#4303\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/4df7e5c2d66305d1fa4fd9d574c015b3eb25654f\"\u003e\u003ccode\u003e4df7e5c\u003c/code\u003e\u003c/a\u003e chore(release): 5.80.6 (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4302\"\u003e#4302\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/5044cf8fc17f0842655eda581b9e26b27f6abfe8\"\u003e\u003ccode\u003e5044cf8\u003c/code\u003e\u003c/a\u003e fix(sandbox): preserve child_process exports in null-stdio (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4301\"\u003e#4301\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/5c657627785662e0c8293655795acdaf3da46fd4\"\u003e\u003ccode\u003e5c65762\u003c/code\u003e\u003c/a\u003e ci: ignore changelog from auto styling and fix rust/elixir paths-filter permi...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/5834ba93da32a902ffe1ac5111528d2494f98853\"\u003e\u003ccode\u003e5834ba9\u003c/code\u003e\u003c/a\u003e docs(job): clarify JSON payload round-trip for job data (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4276\"\u003e#4276\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.77.6...v5.80.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `envalid` from 8.1.1 to 8.2.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/af/envalid/releases\"\u003eenvalid's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.2.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003etestDefault\u003c/code\u003e in cb67a44. Thanks \u003ca href=\"https://github.com/garlab\"\u003e\u003ccode\u003e@​garlab\u003c/code\u003e\u003c/a\u003e!\u003c/li\u003e\n\u003cli\u003eUpdated various devDependencies\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eNote: the next release will likely be v9.0 which will include the removal of the \u003ccode\u003etestOnly\u003c/code\u003e util. Use the new \u003ccode\u003etestDefault\u003c/code\u003e instead!\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/af/envalid/commit/784385fcf209ed6f9afde068689afc90773636a3\"\u003e\u003ccode\u003e784385f\u003c/code\u003e\u003c/a\u003e 8.2.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/af/envalid/commit/9d5e5fb5abcc2bbd8710a3d88aa25e38d14c1de1\"\u003e\u003ccode\u003e9d5e5fb\u003c/code\u003e\u003c/a\u003e Update devDependencies, use npm run in hooks for compatibility\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/af/envalid/commit/9d292bc44fe6f7d033a84d35d7e398b81e7ec7f4\"\u003e\u003ccode\u003e9d292bc\u003c/code\u003e\u003c/a\u003e Replace yarn.lock with bun.lock\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/af/envalid/commit/cb67a4413531a865160ae503bdf7c484ffc6eb16\"\u003e\u003ccode\u003ecb67a44\u003c/code\u003e\u003c/a\u003e feat: add testDefault spec attribute (\u003ca href=\"https://redirect.github.com/af/envalid/issues/249\"\u003e#249\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/af/envalid/commit/7ca06e5e4f12019e54d166ea7bf36f5ebf1765ac\"\u003e\u003ccode\u003e7ca06e5\u003c/code\u003e\u003c/a\u003e Bump glob from 10.4.5 to 10.5.0 (\u003ca href=\"https://redirect.github.com/af/envalid/issues/242\"\u003e#242\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/af/envalid/compare/v8.1.1...v8.2.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `express-rate-limit` from 8.5.2 to 8.6.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/releases\"\u003eexpress-rate-limit's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.6.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/fffb3c4d6e614e79fcb5a6617c06cc57fd587ef0\"\u003e\u003ccode\u003efffb3c4\u003c/code\u003e\u003c/a\u003e 8.6.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/f366b2d3602abace7e053cfb5a7e80d1f664f094\"\u003e\u003ccode\u003ef366b2d\u003c/code\u003e\u003c/a\u003e docs: debugging guide, time constants, \u0026amp; v8.6.0 changelog (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/652\"\u003e#652\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/593ddd2f4fdf9111034ff81aef404d89cb07ad09\"\u003e\u003ccode\u003e593ddd2\u003c/code\u003e\u003c/a\u003e fix: make debug output easier to read (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/653\"\u003e#653\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/ef8c1295ff7f500717c9c0ceb099bbd873f8e9c2\"\u003e\u003ccode\u003eef8c129\u003c/code\u003e\u003c/a\u003e fix: Pin safe version of \u003ccode\u003e@​asyncapi/specs\u003c/code\u003e dev dep (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/659\"\u003e#659\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/7b05e0dbd8b838075498af4fee7eccff4bd6c8a5\"\u003e\u003ccode\u003e7b05e0d\u003c/code\u003e\u003c/a\u003e feat: add time constants to support more readable values for windowMs (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/655\"\u003e#655\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/863e730c2f61e97e45315a7db8be42fc088d5234\"\u003e\u003ccode\u003e863e730\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump the development-dependencies group with 3 updates (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/657\"\u003e#657\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/e0e711e4c05b98d136203147cb811129fba79f81\"\u003e\u003ccode\u003ee0e711e\u003c/code\u003e\u003c/a\u003e fix: correct wording in usage documentation for express-rate-limit (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/656\"\u003e#656\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/fcd3aa7d5eef9d78a3609142491e9dbb4ba7d338\"\u003e\u003ccode\u003efcd3aa7\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump the development-dependencies group with 3 updates (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/651\"\u003e#651\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/99d4298bda0d9cd11ba4a1d518cabc22ec74d241\"\u003e\u003ccode\u003e99d4298\u003c/code\u003e\u003c/a\u003e feat: use \u003ccode\u003edebug\u003c/code\u003e for debug logging (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/641\"\u003e#641\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/23e4ddef557f300a3a6d759ab7af7de44f21ab4f\"\u003e\u003ccode\u003e23e4dde\u003c/code\u003e\u003c/a\u003e feat: Run validations once each (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/650\"\u003e#650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/compare/v8.5.2...v8.6.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `helmet` from 8.2.0 to 8.3.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/helmetjs/helmet/blob/main/CHANGELOG.md\"\u003ehelmet's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.3.0 - 2026-07-11\u003c/h2\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eContent-Security-Policy\u003c/code\u003e: improved performance by ~7% when there are no dynamic directives\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eContent-Security-Policy\u003c/code\u003e: improved error handling for invalid directive names\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eContent-Security-Policy\u003c/code\u003e: \u003ccode\u003euseDefaults: false\u003c/code\u003e with no directives is no longer valid, both at runtime and the type level\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eContent-Security-Policy\u003c/code\u003e: dynamically-computed directive values would \u003ccode\u003ethrow\u003c/code\u003e, not call \u003ccode\u003enext\u003c/code\u003e, when invalid\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eContent-Security-Policy\u003c/code\u003e: dynamically-computed directive value entries would \u003ccode\u003ethrow\u003c/code\u003e, not call \u003ccode\u003enext\u003c/code\u003e, when function threw\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/75f1a98ec3cf092cc985985efcc0479265c9fe32\"\u003e\u003ccode\u003e75f1a98\u003c/code\u003e\u003c/a\u003e 8.3.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/f03f70da21409f525f90418a049ae7222261e9a2\"\u003e\u003ccode\u003ef03f70d\u003c/code\u003e\u003c/a\u003e Update changelog for 8.3.0 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/a307fce3b8714e7dfddba6a6979317dc8bc2e373\"\u003e\u003ccode\u003ea307fce\u003c/code\u003e\u003c/a\u003e Fix capitalization in CSP package changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/5347b43be7e340f3cd3407ba2d156a771cf9c371\"\u003e\u003ccode\u003e5347b43\u003c/code\u003e\u003c/a\u003e Format default CSP in README for readability\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/9afc570f67615f48bf8634ea75ad5e0b204f856b\"\u003e\u003ccode\u003e9afc570\u003c/code\u003e\u003c/a\u003e CSP: fix middleware-specific README missing link\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/266c95ca6541f0627e4622d0b6844c9e24108b85\"\u003e\u003ccode\u003e266c95c\u003c/code\u003e\u003c/a\u003e Minor speedups to project setups test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/7a4196c3d9f2efdaeada5e18243bd974262505ee\"\u003e\u003ccode\u003e7a4196c\u003c/code\u003e\u003c/a\u003e CSP: update package-specific changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/02716b4b7dc5099fe3c21bb1a89f954404632180\"\u003e\u003ccode\u003e02716b4\u003c/code\u003e\u003c/a\u003e CSP: improve performance when there are no dynamic directives\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/3f511ed75fa12dd456e5338dc7a9b578b5aafac1\"\u003e\u003ccode\u003e3f511ed\u003c/code\u003e\u003c/a\u003e CSP: move utility functions to separate file\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/80338af26325af6d47b0cfd5a4a43a5be52c3973\"\u003e\u003ccode\u003e80338af\u003c/code\u003e\u003c/a\u003e CSP: disabling defaults with no directives is now an error\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/helmetjs/helmet/compare/v8.2.0...v8.3.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ioredis` from 5.11.0 to 5.11.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/luin/ioredis/releases\"\u003eioredis's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.11.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/luin/ioredis/compare/v5.11.0...v5.11.1\"\u003e5.11.1\u003c/a\u003e (2026-06-04)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecluster:\u003c/strong\u003e reconnect to nodes that restart without slot changes (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2096\"\u003e#2096\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/c84b2ee97fd7b25d8f6ef8b509c228a602f47cca\"\u003ec84b2ee\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse protocol-relative Redis URLs as TCP connections (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2125\"\u003e#2125\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/131ee24173380b986e62ecc428ddde82be12bc40\"\u003e131ee24\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/redis/ioredis/blob/main/CHANGELOG.md\"\u003eioredis's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/luin/ioredis/compare/v5.11.0...v5.11.1\"\u003e5.11.1\u003c/a\u003e (2026-06-04)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecluster:\u003c/strong\u003e reconnect to nodes that restart without slot changes (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2096\"\u003e#2096\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/c84b2ee97fd7b25d8f6ef8b509c228a602f47cca\"\u003ec84b2ee\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse protocol-relative Redis URLs as TCP connections (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2125\"\u003e#2125\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/131ee24173380b986e62ecc428ddde82be12bc40\"\u003e131ee24\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/redis/ioredis/commit/fb224a7609b6d25959e06e31fdab2460d1f75691\"\u003e\u003ccode\u003efb224a7\u003c/code\u003e\u003c/a\u003e chore(release): 5.11.1 [skip ci]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/redis/ioredis/commit/131ee24173380b986e62ecc428ddde82be12bc40\"\u003e\u003ccode\u003e131ee24\u003c/code\u003e\u003c/a\u003e fix: parse protocol-relative Redis URLs as TCP connections (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2125\"\u003e#2125\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/redis/ioredis/commit/c84b2ee97fd7b25d8f6ef8b509c228a602f47cca\"\u003e\u003ccode\u003ec84b2ee\u003c/code\u003e\u003c/a\u003e fix(cluster): reconnect to nodes that restart without slot changes (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2096\"\u003e#2096\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/luin/ioredis/compare/v5.11.0...v5.11.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `morgan` from 1.10.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `pg` from 8.21.0 to 8.22.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/brianc/node-postgres/blob/master/CHANGELOG.md\"\u003epg's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003epg@8.22.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd support for \u003ca href=\"https://redirect.github.com/brianc/node-postgres/pull/3688\"\u003esslnegotiation=direct\u003c/a\u003e for PostgreSQL 17+.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/b617619f9fb6fbd231731823e2732a2927ded4be\"\u003e\u003ccode\u003eb617619\u003c/code\u003e\u003c/a\u003e Publish\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/d80b2612fbe83ed8234637f20b943d85e4331094\"\u003e\u003ccode\u003ed80b261\u003c/code\u003e\u003c/a\u003e Update docs \u0026amp; changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/835fb83ab9e1cf30fa8367ba42bd633720d71832\"\u003e\u003ccode\u003e835fb83\u003c/code\u003e\u003c/a\u003e Fix error handling for exceptions on values parsing. (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3574\"\u003e#3574\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/f49ab4a9795ae0866409f9bfe52a68b4f65ef024\"\u003e\u003ccode\u003ef49ab4a\u003c/code\u003e\u003c/a\u003e fix: correct spelling mistakes across codebase (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3692\"\u003e#3692\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/d7175a4aa0347b7416109e9ecc61d4d235486d0e\"\u003e\u003ccode\u003ed7175a4\u003c/code\u003e\u003c/a\u003e Expand CI matrix of PG versions and add direct SSL test (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3693\"\u003e#3693\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/882fc308cce7bf136cd1448e00395f760dad3e00\"\u003e\u003ccode\u003e882fc30\u003c/code\u003e\u003c/a\u003e Add support for sslnegotiation=direct (PostgreSQL 17) (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3688\"\u003e#3688\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/brianc/node-postgres/commits/pg@8.22.0/packages/pg\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `typeorm` from 1.0.0 to 1.1.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typeorm/typeorm/releases\"\u003etypeorm's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.1.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore(legacy-naming-strategies): bump to 1.0.0 by \u003ca href=\"https://github.com/michaelbromley\"\u003e\u003ccode\u003e@​michaelbromley\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12518\"\u003etypeorm/typeorm#12518\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs(blog): create v1 post by \u003ca href=\"https://github.com/naorpeled\"\u003e\u003ccode\u003e@​naorpeled\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12364\"\u003etypeorm/typeorm#12364\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs(data-source): clarify extra option as driver-native escape hatch by \u003ca href=\"https://github.com/naorpeled\"\u003e\u003ccode\u003e@​naorpeled\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12368\"\u003etypeorm/typeorm#12368\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump github/codeql-action from 4.35.4 to 4.35.5 in the github-actions-official group by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12528\"\u003etypeorm/typeorm#12528\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump ws from 8.20.0 to 8.20.1 in /docs by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12515\"\u003etypeorm/typeorm#12515\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump webpack-dev-server from 5.2.3 to 5.2.4 in /docs by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12516\"\u003etypeorm/typeorm#12516\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the github-actions-third-party group across 1 directory with 2 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12529\"\u003etypeorm/typeorm#12529\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: make Postgres custom extension installation test reusable locally by \u003ca href=\"https://github.com/OSA413\"\u003e\u003ccode\u003e@​OSA413\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12538\"\u003etypeorm/typeorm#12538\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump uuid from 10.0.0 to 11.1.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12536\"\u003etypeorm/typeorm#12536\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump github/codeql-action from 4.35.5 to 4.36.0 in the github-actions-official group by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12550\"\u003etypeorm/typeorm#12550\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(persistence): preserve select false columns on the in-memory entity after save() by \u003ca href=\"https://github.com/tada5hi\"\u003e\u003ccode\u003e@​tada5hi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12501\"\u003etypeorm/typeorm#12501\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the github-actions-official group with 2 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12561\"\u003etypeorm/typeorm#12561\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(cache): release query runner on error in storeInCache by \u003ca href=\"https://github.com/francisjohnjohnston-web\"\u003e\u003ccode\u003e@​francisjohnjohnston-web\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12545\"\u003etypeorm/typeorm#12545\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add PR triage workflow for issue linkage and duplicate detection by \u003ca href=\"https://github.com/smith-xyz\"\u003e\u003ccode\u003e@​smith-xyz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12469\"\u003etypeorm/typeorm#12469\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: multiple recursive cte problems by \u003ca href=\"https://github.com/twooster\"\u003e\u003ccode\u003e@​twooster\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12490\"\u003etypeorm/typeorm#12490\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: correct grammar in AlreadyHasActiveConnectionError message by \u003ca href=\"https://github.com/DucMinhNe\"\u003e\u003ccode\u003e@​DucMinhNe\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12554\"\u003etypeorm/typeorm#12554\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: normalization of FindOptionsWhere for arrays and Buffers by \u003ca href=\"https://github.com/alumni\"\u003e\u003ccode\u003e@​alumni\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12577\"\u003etypeorm/typeorm#12577\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump github/codeql-action from 4.36.1 to 4.36.2 in the github-actions-official group across 1 directory by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12572\"\u003etypeorm/typeorm#12572\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: rename github-issue 7558 test file name by \u003ca href=\"https://github.com/Cprakhar\"\u003e\u003ccode\u003e@​Cprakhar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12581\"\u003etypeorm/typeorm#12581\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(postgres): improve normalizeDatetimeFunction for tstzrange data type by \u003ca href=\"https://github.com/Cprakhar\"\u003e\u003ccode\u003e@​Cprakhar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12182\"\u003etypeorm/typeorm#12182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(mongodb): use cursor.transform for doc to entity transformation and skip load broadcast in next if toArray  by \u003ca href=\"https://github.com/Cprakhar\"\u003e\u003ccode\u003e@​Cprakhar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/11926\"\u003etypeorm/typeorm#11926\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(query-builder): wrap inner joins under left joins correctly by \u003ca href=\"https://github.com/harm-less\"\u003e\u003ccode\u003e@​harm-less\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/11137\"\u003etypeorm/typeorm#11137\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add healthcheck for oracle by \u003ca href=\"https://github.com/Cprakhar\"\u003e\u003ccode\u003e@​Cprakhar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12591\"\u003etypeorm/typeorm#12591\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(tree-entity): tree entity schema propagation in internal TreeRepository methods by \u003ca href=\"https://github.com/xEverth\"\u003e\u003ccode\u003e@​xEverth\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12590\"\u003etypeorm/typeorm#12590\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the github-actions-third-party group across 1 directory with 2 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12589\"\u003etypeorm/typeorm#12589\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: support distinct count by \u003ca href=\"https://github.com/Cprakhar\"\u003e\u003ccode\u003e@​Cprakhar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/11965\"\u003etypeorm/typeorm#11965\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump serialize-javascript from 6.0.2 to 7.0.5 (via audit fix) in /packages/codemod by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12534\"\u003etypeorm/typeorm#12534\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: move hashing function to PlatformTools by \u003ca href=\"https://github.com/alumni\"\u003e\u003ccode\u003e@​alumni\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12648\"\u003etypeorm/typeorm#12648\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: remove require() calls that break bundlers by \u003ca href=\"https://github.com/alumni\"\u003e\u003ccode\u003e@​alumni\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12647\"\u003etypeorm/typeorm#12647\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(query-builder): reject empty where criteria on update and delete operations by \u003ca href=\"https://github.com/naorpeled\"\u003e\u003ccode\u003e@​naorpeled\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12629\"\u003etypeorm/typeorm#12629\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: improve pr triage script by \u003ca href=\"https://github.com/smith-xyz\"\u003e\u003ccode\u003e@​smith-xyz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12677\"\u003etypeorm/typeorm#12677\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: update dependencies by \u003ca href=\"https://github.com/alumni\"\u003e\u003ccode\u003e@​alumni\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12678\"\u003etypeorm/typeorm#12678\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(entity-manager): default invalidWhereValuesBehavior to throw on the write path by \u003ca href=\"https://github.com/naorpeled\"\u003e\u003ccode\u003e@​naorpeled\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12690\"\u003etypeorm/typeorm#12690\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(entity-manager): validate where criteria in increment/decrement by \u003ca href=\"https://github.com/naorpeled\"\u003e\u003ccode\u003e@​naorpeled\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12692\"\u003etypeorm/typeorm#12692\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(release): prepare v1.1.0 by \u003ca href=\"https://github.com/alumni\"\u003e\u003ccode\u003e@​alumni\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12697\"\u003etypeorm/typeorm#12697\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/francisjohnjohnston-web\"\u003e\u003ccode\u003e@​francisjohnjohnston-web\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12545\"\u003etypeorm/typeorm#12545\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/twooster\"\u003e\u003ccode\u003e@​twooster\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12490\"\u003etypeorm/typeorm#12490\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/DucMinhNe\"\u003e\u003ccode\u003e@​DucMinhNe\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12554\"\u003etypeorm/typeorm#12554\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/xEverth\"\u003e\u003ccode\u003e@​xEverth\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12590\"\u003etypeorm/typeorm#12590\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/typeorm/typeorm/compare/1.0.0...1.1.0\"\u003ehttps://github.com/typeorm/typeorm/compare/1.0.0...1.1.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typeorm/typeorm/blob/master/CHANGELOG.md\"\u003etypeorm's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/typeorm/typeorm/compare/1.0.0...1.1.0\"\u003e1.1.0\u003c/a\u003e (2026-07-13)\u003c/h1\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecache:\u003c/strong\u003e release query runner on error in storeInCache (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12545\"\u003e#12545\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/a84b9b3d39c44cc0e5809b4680a5f046bda602cd\"\u003ea84b9b3\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ecorrect grammar in AlreadyHasActiveConnectionError message (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12554\"\u003e#12554\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/304d1290a4b6bd47d7d38269bae6a8514f378c9c\"\u003e304d129\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eentity-manager:\u003c/strong\u003e default invalidWhereValuesBehavior to throw on the write path (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12690\"\u003e#12690\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/44d8052ba4d226364c26e722826340d4ceb1419b\"\u003e44d8052\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eentity-manager:\u003c/strong\u003e validate where criteria in increment/decrement (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12692\"\u003e#12692\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/8a51b756bf31c885da1e1d92cb17d94819c7040a\"\u003e8a51b75\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003emongodb:\u003c/strong\u003e use cursor.transform for doc to entity transformation and skip load broadcast in next if toArray (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/11926\"\u003e#11926\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/0bbefc914ef69b3826a4a2075b0b008c9a02e807\"\u003e0bbefc9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003emove hashing function to PlatformTools (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12648\"\u003e#12648\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/c456cbd5d40aa2e797314bd202956449f64efbac\"\u003ec456cbd\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003emultiple recursive cte problems (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12490\"\u003e#12490\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/7c26654f430a7190c331242d68e75111fb334ea3\"\u003e7c26654\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003enormalization of FindOptionsWhere for arrays and Buffers (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12577\"\u003e#12577\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/a8173fcdf325c44bf3eb2101c6318b45c573102b\"\u003ea8173fc\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003epersistence:\u003c/strong\u003e preserve select false columns on the in-memory entity after save() (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12501\"\u003e#12501\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/324c46cd8669270dd5f22173cd78a7cab591349c\"\u003e324c46c\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003epostgres:\u003c/strong\u003e improve normalizeDatetimeFunction for tstzrange data type (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12182\"\u003e#12182\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/bf47c9f1171b15523292e8914cfbdcfee542ef07\"\u003ebf47c9f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003equery-builder:\u003c/strong\u003e reject empty where criteria on update and delete operations (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12629\"\u003e#12629\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/81b946625d84bcf3ce720fea7d406003270169ee\"\u003e81b9466\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003equery-builder:\u003c/strong\u003e wrap inner joins under left joins correctly (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/11137\"\u003e#11137\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/d5f4b9d7e0f0aca63a9dd66e7ae26a15f7e8eee0\"\u003ed5f4b9d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eremove \u003ccode\u003erequire()\u003c/code\u003e calls that break bundlers (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12647\"\u003e#12647\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/30f9fc717bcfaa472d56680437105a6b9581014d\"\u003e30f9fc7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etree-entity:\u003c/strong\u003e tree entity schema propagation in internal TreeRepository methods (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12590\"\u003e#12590\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/7fb7c2c7c30d57489921eed458dfb97a5d08d4b8\"\u003e7fb7c2c\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003esupport distinct count (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/11965\"\u003e#11965\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/cca26a919f3ee5afda5af0f835e10629bcc378d1\"\u003ecca26a9\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/8748b1be17bf93fc9b62b3444e411e9055e9e017\"\u003e\u003ccode\u003e8748b1b\u003c/code\u003e\u003c/a\u003e chore(release): prepare v1.1.0 (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12697\"\u003e#12697\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/0caca21bed8ff3509d77dfee8d53edcc92d3c980\"\u003e\u003ccode\u003e0caca21\u003c/code\u003e\u003c/a\u003e style(test): format migration test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/41d1c62fe49f99c3ca916d4d986f61ee9f45d519\"\u003e\u003ccode\u003e41d1c62\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/8a51b756bf31c885da1e1d92cb17d94819c7040a\"\u003e\u003ccode\u003e8a51b75\u003c/code\u003e\u003c/a\u003e fix(entity-manager): validate where criteria in increment/decrement (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12692\"\u003e#12692\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/44d8052ba4d226364c26e722826340d4ceb1419b\"\u003e\u003ccode\u003e44d8052\u003c/code\u003e\u003c/a\u003e fix(entity-manager): default invalidWhereValuesBehavior to throw on the write...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/af5f2a5f2ab159a69606aa120e588922d2dc1ac0\"\u003e\u003ccode\u003eaf5f2a5\u003c/code\u003e\u003c/a\u003e chore: update dependencies (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12678\"\u003e#12678\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/f5c6aa3bfe9ca402e595cbced6e48cd65ec2bea5\"\u003e\u003ccode\u003ef5c6aa3\u003c/code\u003e\u003c/a\u003e ci: improve pr triage script (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12677\"\u003e#12677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/81b946625d84bcf3ce720fea7d406003270169ee\"\u003e\u003ccode\u003e81b9466\u003c/code\u003e\u003c/a\u003e fix(query-builder): reject empty where criteria on update and delete operatio...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/30f9fc717bcfaa472d56680437105a6b9581014d\"\u003e\u003ccode\u003e30f9fc7\u003c/code\u003e\u003c/a\u003e fix: remove \u003ccode\u003erequire()\u003c/code\u003e calls that break bundlers (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12647\"\u003e#12647\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/c456cbd5d40aa2e797314bd202956449f64efbac\"\u003e\u003ccode\u003ec456cbd\u003c/code\u003e\u003c/a\u003e fix: move hashing function to PlatformTools (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12648\"\u003e#12648\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/typeorm/typeorm/compare/1.0.0...1.1.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@biomejs/biome` from 2.4.16 to 2.5.4\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/biomejs/biome/releases\"\u003e@​biomejs/biome's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eBiome CLI v2.5.4\u003c/h2\u003e\n\u003ch2\u003e2.5.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10665\"\u003e#10665\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/55ff995098148446b7e7fdfc19053902bb987122\"\u003e\u003ccode\u003e55ff995\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/dyc3\"\u003e\u003ccode\u003e@​dyc3\u003c/code\u003e\u003c/a\u003e! - Improved the performance of the HTML parser slightly in our synthetic benchmarks.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10894\"\u003e#10894\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/f4fb10e176e537e8ce2cac0c3fd4c38a77f91886\"\u003e\u003ccode\u003ef4fb10e\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/6392\"\u003e#6392\u003c/a\u003e: On-type formatting no longer moves comments before an \u003ccode\u003eif\u003c/code\u003e statement into its body.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10939\"\u003e#10939\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/f2799db38e3d8a644207d9b8f957abea6cb3d9fa\"\u003e\u003ccode\u003ef2799db\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/Netail\"\u003e\u003ccode\u003e@​Netail\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10930\"\u003e#10930\u003c/a\u003e: \u003ca href=\"https://biomejs.dev/linter/rules/no-label-without-control/\"\u003e\u003ccode\u003enoLabelWithoutControl\u003c/code\u003e\u003c/a\u003e now correctly detects text interpolation in Astro, Svelte \u0026amp; Vue as valid accessible content.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10945\"\u003e#10945\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/ae15d98bbf2222fbb34e3e31832cba9676a6d01c\"\u003e\u003ccode\u003eae15d98\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/Netail\"\u003e\u003ccode\u003e@​Netail\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10942\"\u003e#10942\u003c/a\u003e: Svelte directives don't throw an accidental debug log anymore.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10842\"\u003e#10842\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/5e1abfee59155b5fdca8813314371ed54c06acfb\"\u003e\u003ccode\u003e5e1abfe\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/JamBalaya56562\"\u003e\u003ccode\u003e@​JamBalaya56562\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/9196\"\u003e#9196\u003c/a\u003e: \u003ccode\u003ebiome check --write --unsafe\u003c/code\u003e no longer hangs forever when applying the \u003ca href=\"https://biomejs.dev/linter/rules/no-comment-text/\"\u003e\u003ccode\u003enoCommentText\u003c/code\u003e\u003c/a\u003e code fix.\u003c/p\u003e\n\u003cp\u003eThe rule's fix now wraps the comment in a real JSX expression container (\u003ccode\u003e{/* comment */}\u003c/code\u003e) instead of re-inserting the braces as plain JSX text, so the fixed code is no longer reported again by the same rule.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10891\"\u003e#10891\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/ecca79e8ff10f40aa676212c0db0a970c6091615\"\u003e\u003ccode\u003eecca79e\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10885\"\u003e\u003ccode\u003e[#10885](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10885)\u003c/code\u003e\u003c/a\u003e: prevented a module-inference regression introduced by a housekeeping change.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10886\"\u003e#10886\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/60c8043527f7ccc7b505471e1042f2a4324e4d31\"\u003e\u003ccode\u003e60c8043\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/dyc3\"\u003e\u003ccode\u003e@​dyc3\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10727\"\u003e#10727\u003c/a\u003e: Biome now breaks the arguments of curried \u003ccode\u003etest.each\u003c/code\u003e, \u003ccode\u003eit.each\u003c/code\u003e, \u003ccode\u003edescribe.each\u003c/code\u003e, and \u003ccode\u003etest.for\u003c/code\u003e calls when they exceed the configured line width.\u003c/p\u003e\n\u003cpre lang=\"diff\"\u003e\u003ccode\u003e- test.each([[1, 2]])(\u0026quot;a description that is long enough to push the hugged opening line beyond the print width\u0026quot;, (a, b) =\u0026gt; {\n-   expect(a).toBe(b);\n- });\n+ test.each([[1, 2]])(\n+   \u0026quot;a description that is long enough to push the hugged opening line beyond the print width\u0026quot;,\n+   (a, b) =\u0026gt; {\n+     expect(a).toBe(b);\n+   },\n+ );\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10895\"\u003e#10895\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/01a85f04b09f0af05b16a15c137421e312ceada5\"\u003e\u003ccode\u003e01a85f0\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e! - Biome will now remove stale Unix daemon sockets from older Biome versions when starting a newer daemon.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(yml/fmt): basic block properties by \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10873\"\u003ebiomejs/biome#10873\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(useSortedClasses): sort important-suffix classes in sort_v4 by \u003ca href=\"https://github.com/johncarmack1984\"\u003e\u003ccode\u003e@​johncarmack1984\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10880\"\u003ebiomejs/biome#10880\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(format/js): wrap curried test each calls by \u003ca href=\"https://github.com/dyc3\"\u003e\u003ccode\u003e@​dyc3\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10886\"\u003ebiomejs/biome#10886\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(markdown): parse whitespace after list markers by \u003ca href=\"https://github.com/tidefield\"\u003e\u003ccode\u003e@​tidefield\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10869\"\u003ebiomejs/biome#10869\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(inference): use correct function when cloning data by \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10891\"\u003ebiomejs/biome#10891\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs(noDuplicateProperties): note that \u003ca href=\"https://github.com/keyframes\"\u003e\u003ccode\u003e@​keyframes\u003c/code\u003e\u003c/a\u003e declarations are ignored by \u003ca href=\"https://github.com/dfedoryshchev\"\u003e\u003ccode\u003e@​dfedoryshchev\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10893\"\u003ebiomejs/biome#10893\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(lint): prevent noCommentText fix from looping forever by \u003ca href=\"https://github.com/JamBalaya56562\"\u003e\u003ccode\u003e@​JamBalaya56562\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10842\"\u003ebiomejs/biome#10842\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(core): cleanup old sockets in Unix by \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10895\"\u003ebiomejs/biome#10895\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(inference): inference engine via salsa by \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10888\"\u003ebiomejs/biome#10888\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): update dependency \u003ccode\u003e@​types/node\u003c/code\u003e to v24.13.3 by \u003ca href=\"https://github.com/renovate\"\u003e\u003ccode\u003e@​renovate\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10920\"\u003ebiomejs/biome#10920\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): update github-actions by \u003ca href=\"https://github.com/renovate\"\u003e\u003ccode\u003e@​renovate\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10921\"\u003ebiomejs/biome#10921\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/biomejs/biome/blob/main/packages/@biomejs/biome/CHANGELOG.md\"\u003e@​biomejs/biome's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.5.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10665\"\u003e#10665\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/55ff995098148446b7e7fdfc19053902bb987122\"\u003e\u003ccode\u003e55ff995\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/dyc3\"\u003e\u003ccode\u003e@​dyc3\u003c/code\u003e\u003c/a\u003e! - Improved the performance of the HTML parser slightly in our synthetic benchmarks.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10894\"\u003e#10894\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/f4fb10e176e537e8ce2cac0c3fd4c38a77f91886\"\u003e\u003ccode\u003ef4fb10e\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/6392\"\u003e#6392\u003c/a\u003e: On-type formatting no longer moves comments before an \u003ccode\u003eif\u003c/code\u003e statement into its body.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10939\"\u003e#10939\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/f2799db38e3d8a644207d9b8f957abea6cb3d9fa\"\u003e\u003ccode\u003ef2799db\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/Netail\"\u003e\u003ccode\u003e@​Netail\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10930\"\u003e#10930\u003c/a\u003e: \u003ca href=\"https://biomejs.dev/linter/rules/no-label-without-control/\"\u003e\u003ccode\u003enoLabelWithoutControl\u003c/code\u003e\u003c/a\u003e now correctly detects text interpolation in Astro, Svelte \u0026amp; Vue as valid accessible content.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10945\"\u003e#10945\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/ae15d98bbf2222fbb34e3e31832cba9676a6d01c\"\u003e\u003ccode\u003eae15d98\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/Netail\"\u003e\u003ccode\u003e@​Netail\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10942\"\u003e#10942\u003c/a\u003e: Svelte directives don't throw an accidental debug log anymore.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10842\"\u003e#10842\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/5e1abfee59155b5fdca8813314371ed54c06acfb\"\u003e\u003ccode\u003e5e1abfe\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/JamBalaya56562\"\u003e\u003ccode\u003e@​JamBalaya56562\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/9196\"\u003e#9196\u003c/a\u003e: \u003ccode\u003ebiome check --write --unsafe\u003c/code\u003e no longer hangs forever when applying the \u003ca href=\"https://biomejs.dev/linter/rules/no-comment-text/\"\u003e\u003ccode\u003enoCommentText\u003c/code\u003e\u003c/a\u003e code fix.\u003c/p\u003e\n\u003cp\u003eThe rule's fix now wraps the comment in a real JSX expression container (\u003ccode\u003e{/* comment */}\u003c/code\u003e) instead of re-inserting the braces as plain JSX text, so the fixed code is no longer reported again by the same rule.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10891\"\u003e#10891\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/ecca79e8ff10f40aa676212c0db0a970c6091615\"\u003e\u003ccode\u003eecca79e\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10885\"\u003e\u003ccode\u003e[#10885](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10885)\u003c/code\u003e\u003c/a\u003e: prevented a module-inference regression introduced by a housekeeping change.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10886\"\u003e#10886\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/60c8043527f7ccc7b505471e1042f2a4324e4d31\"\u003e\u003ccode\u003e60c8043\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/dyc3\"\u003e\u003ccode\u003e@​dyc3\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10727\"\u003e#10727\u003c/a\u003e: Biome now breaks the arguments of curried \u003ccode\u003etest.each\u003c/code\u003e, \u003ccode\u003eit.each\u003c/code\u003e, \u003ccode\u003edescribe.each\u003c/code\u003e, and \u003ccode\u003etest.for\u003c/code\u003e calls when they exceed the configured line width.\u003c/p\u003e\n\u003cpre lang=\"diff\"\u003e\u003ccode\u003e- test.each([[1, 2]])(\u0026quot;a description that is long enough to push the hugged opening line beyond the print width\u0026quot;, (a, b) =\u0026gt; {\n-   expect(a).toBe(b);\n- });\n+ test.each([[1, 2]])(\n+   \u0026quot;a description that is long enough to push the hugged opening line beyond the print width\u0026quot;,\n+   (a, b) =\u0026gt; {\n+     expect(a).toBe(b);\n+   },\n+ );\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10895\"\u003e#10895\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/01a85f04b09f0af05b16a15c137421e312ceada5\"\u003e\u003ccode\u003e01a85f0\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e! - Biome will now remove stale Unix daemon sockets from older Biome versions when starting a newer daemon.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.5.3\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10815\"\u003e#10815\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/86613d5b01eb965b460ccefbf27f168d87774aaf\"\u003e\u003ccode\u003e86613d5\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/WaterWhisperer\"\u003e\u003ccode\u003e@​WaterWhisperer\u003c/code\u003e\u003c/a\u003e! - Fixed a parser panic reported in \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10708\"\u003e#10708\u003c/a\u003e: Biome now recovers when unsupported CSS Modules \u003ccode\u003e@value\u003c/code\u003e rules or scoped \u003ccode\u003e@keyframes\u003c/code\u003e names end at EOF.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10534\"\u003e#10534\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/da9b403b6bbacc8d75d56e327a46f4ed0285913e\"\u003e\u003ccode\u003eda9b403\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/Mokto\"\u003e\u003ccode\u003e@​Mokto\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://biomejs.dev/linter/rules/no-unused-variables/\"\u003e\u003ccode\u003enoUnusedVariables\u003c/code\u003e\u003c/a\u003e false positives in Svelte files: Svelte store subscriptions (\u003ccode\u003e$store\u003c/code\u003e references in templates now keep the underlying \u003ccode\u003estore\u003c/code\u003e binding from being flagged), and \u003ccode\u003e$bindable()\u003c/code\u003e props that are only written to in the script block (write-only is intentional for bindable props) are no longer reported as unused.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10827\"\u003e#10827\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/098ba41c99e6efaac8eb182eec258a567bb00123\"\u003e\u003ccode\u003e098ba41\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/Aqu1bp\"\u003e\u003ccode\u003e@​Aqu1bp\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10698\"\u003e#10698\u003c/a\u003e: The \u003ca href=\"https://biomejs.dev/linter/rules/no-unsafe-optional-chaining/\"\u003e\u003ccode\u003enoUnsafeOptionalChaining\u003c/code\u003e\u003c/a\u003e rule now reports unsafe optional chains wrapped in TypeScript \u003ccode\u003eas\u003c/code\u003e, \u003ccode\u003esatisfies\u003c/code\u003e, type assertion, and instantiation expressions, such as \u003ccode\u003enew (value?.constructor as Constructor)()\u003c/code\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10773\"\u003e#10773\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/3c6513d4e9a82a195785144caa9d96093c3861ff\"\u003e\u003ccode\u003e3c6513d\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/otkrickey\"\u003e\u003ccode\u003e@​otkrickey\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10772\"\u003e#10772\u003c/a\u003e: \u003ca href=\"https://biomejs.dev/linter/rules/use-vue-valid-v-on/\"\u003e\u003ccode\u003euseVueValidVOn\u003c/code\u003e\u003c/a\u003e no longer reports a missing handler for v-on directives using a verb modifier (\u003ccode\u003e.stop\u003c/code\u003e / \u003ccode\u003e.prevent\u003c/code\u003e) without an expression, e.g. \u003ccode\u003e\u0026lt;div @click.stop\u0026gt;\u0026lt;/div\u0026gt;\u003c/code\u003e. The rule also accepts the arg-less object syntax \u003ccode\u003e\u0026lt;div v-on=\u0026quot;$listeners\u0026quot;\u0026gt;\u0026lt;/div\u0026gt;\u003c/code\u003e instead of reporting a missing event name.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10721\"\u003e#10721\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/d83c66b39a820703d94100f8a6502cc6dbad26a1\"\u003e\u003ccode\u003ed83c66b\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/minseong0324\"\u003e\u003ccode\u003e@​minseong0324\u003c/code\u003e\u003c/a\u003e! - Improved type-aware lint rule inference for built-in globals and indexed function calls. Biome now resolves \u003ccode\u003eError(...)\u003c/code\u003e, \u003ccode\u003enew Error(...)\u003c/code\u003e, optional \u003ccode\u003eError#stack\u003c/code\u003e, and calls through indexed function values such as \u003ccode\u003ehandlers[0](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/0)\u003c/code\u003e more accurately.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10865\"\u003e#10865\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/6450276764ee4794a0fcb46c139f95b68d892427\"\u003e\u003ccode\u003e6450276\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10845\"\u003e#10845\u003c/a\u003e. Biome Language Server no longer goes in deadlock when the scanner is enabled.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/bfc3f3d6981e0b5aa3269a253661cc5934c20331\"\u003e\u003ccode\u003ebfc3f3d\u003c/code\u003e\u003c/a\u003e ci: release (\u003ca href=\"https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10887\"\u003e#10887\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/9e1999f9936102b585e6f076794a27dcba16f6c9\"\u003e\u003ccode\u003e9e1999f\u003c/code\u003e\u003c/a\u003e chore: revert the revert\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/0b0fd8d5ec63ed26ee345c3b70635b8464af6c10\"\u003e\u003ccode\u003e0b0fd8d\u003c/code\u003e\u003c/a\u003e chore: revert\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/0afa35a968f1b541f2dd8405ec9678baed42d127\"\u003e\u003ccode\u003e0afa35a\u003c/code\u003e\u003c/a\u003e ci: release (\u003ca href=\"https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10817\"\u003e#10817\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/3447b2f5a3c430efc8e917514260af5341c5509d\"\u003e\u003ccode\u003e3447b2f\u003c/code\u003e\u003c/a\u003e feat(useDomQuerySelector): add ignore option (\u003ca href=\"https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10835\"\u003e#10835\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/e64919850ceb7571673b81665a54051510e84925\"\u003e\u003ccode\u003ee649198\u003c/code\u003e\u003c/a\u003e ci: release (\u003ca href=\"https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10747\"\u003e#10747\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/4a32b63eb41f144dc8faf6b5cdb05e1de5dbcb63\"\u003e\u003ccode\u003e4a32b63\u003c/code\u003e\u003c/a\u003e feat(lint): add ignorePrimitives option to useNullishCoalescing (\u003ca href=\"https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10798\"\u003e#10798\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/f3d4c0082676c5188e9a6aa516318c7e3d59bda6\"\u003e\u003ccode\u003ef3d4c00\u003c/code\u003e\u003c/a\u003e feat(js/nursery): add noSvelteNoUnnecessaryStateWrap rule (\u003ca href=\"https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10545\"\u003e#10545\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/f4580289094a8fe5c85252adc3399c060bab811e\"\u003e\u003ccode\u003ef458028\u003c/code\u003e\u003c/a\u003e feat(lint): add ignoreBooleanCoercion option to useNullishCoalescing (\u003ca href=\"https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10595\"\u003e#10595\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/ffe7d33212f7cb89162bb222ce29e3468b75488d\"\u003e\u003ccode\u003effe7d33\u003c/code\u003e\u003c/a\u003e chore: revert\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/biomejs/biome/commits/@biomejs/biome@2.5.4/packages/@biomejs/biome\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@faker-js/faker` from 10.4.0 to 10.5.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/faker-js/faker/releases\"\u003e@​faker-js/faker's r...\n\n_Description has been truncated_","html_url":"https://github.com/ndgkhoa/booking-platform-api/pull/19","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/ndgkhoa%2Fbooking-platform-api/issues/19","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/19/packages"},{"uuid":"4860174271","node_id":"PR_kwDOBna2287wbRgX","number":983,"state":"open","title":"build(deps): bump the npm_and_yarn group across 1 directory with 2 updates","user":"dependabot[bot]","labels":["javascript","size/XXL","🤖 bot","☑️ auto-merge","dependencies"],"assignees":["guibranco"],"locked":false,"comments_count":9,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-07-11T02:46:21.000Z","updated_at":"2026-07-11T11:50:43.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps): bump","group_name":"npm_and_yarn","update_count":2,"packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"ws","old_version":"8.20.1","new_version":"8.21.0","repository_url":"https://github.com/websockets/ws"}],"path":null,"ecosystem":"npm"},"body":"Bumps the npm_and_yarn group with 2 updates in the /examples/emberjs directory: [morgan](https://github.com/expressjs/morgan) and [ws](https://github.com/websockets/ws).\n\nUpdates `morgan` from 1.10.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ws` from 8.20.1 to 8.21.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/websockets/ws/releases\"\u003ews's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.21.0\u003c/h2\u003e\n\u003ch1\u003eFeatures\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eIntroduced the \u003ccode\u003emaxBufferedChunks\u003c/code\u003e and \u003ccode\u003emaxFragments\u003c/code\u003e options (2b2abd45).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eBug fixes\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eFixed a remote memory exhaustion DoS vulnerability (2b2abd45).\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eA high volume of tiny fragments and data chunks could be sent by a peer, using\nmodest network traffic, to crash a \u003ccode\u003ews\u003c/code\u003e server or client due to OOM.\u003c/p\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003eimport { WebSocket, WebSocketServer } from 'ws';\r\n\u003cp\u003econst wss = new WebSocketServer({ port: 0 }, function () {\nconst data = Buffer.alloc(1);\nconst options = { fin: false };\nconst { port } = wss.address();\nconst ws = new WebSocket(\u003ccode\u003ews://localhost:${port}\u003c/code\u003e);\u003c/p\u003e\n\u003cp\u003ews.on('open', function () {\n(function send() {\nws.send(data, options, function (err) {\nif (err) return;\nsend();\n});\n})();\n});\u003c/p\u003e\n\u003cp\u003ews.on('error', console.error);\nws.on('close', function (code, reason) {\nconsole.log(\u003ccode\u003eclient close - code: ${code} reason: ${reason.toString()}\u003c/code\u003e);\n});\n});\u003c/p\u003e\n\u003cp\u003ewss.on('connection', function (ws) {\nws.on('error', console.error);\nws.on('close', function (code, reason) {\nconsole.log(\u003ccode\u003eserver close - code: ${code} reason: ${reason.toString()}\u003c/code\u003e);\n});\n});\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003cp\u003eThe vulnerability was responsibly disclosed and fixed by \u003ca href=\"https://github.com/Nadav0077\"\u003eNadav Magier\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003eIn vulnerable versions, the issue can be mitigated by lowering the value of the\n\u003ccode\u003emaxPayload\u003c/code\u003e option if possible.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/websockets/ws/commit/bca91adf15677e47dbe4f959653452727be28b94\"\u003e\u003ccode\u003ebca91ad\u003c/code\u003e\u003c/a\u003e [dist] 8.21.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/websockets/ws/commit/2b2abd458a1b647d0b6033bd62a619c36189839a\"\u003e\u003ccode\u003e2b2abd4\u003c/code\u003e\u003c/a\u003e [security] Limit retained message parts\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/websockets/ws/commit/78eabe2a6677b231bf9c82601bde86ff91639490\"\u003e\u003ccode\u003e78eabe2\u003c/code\u003e\u003c/a\u003e [security] Add latest vulnerability to SECURITY.md\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/websockets/ws/compare/8.20.1...8.21.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/guibranco/BancosBrasileiros/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/guibranco/BancosBrasileiros/pull/983","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/guibranco%2FBancosBrasileiros/issues/983","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/983/packages"},{"uuid":"4859609708","node_id":"PR_kwDOPoaKoM7wZdHp","number":437,"state":"closed","title":"chore(deps-dev): bump morgan from 1.10.1 to 1.11.0","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":4,"pull_request":true,"closed_at":"2026-07-13T06:10:28.000Z","author_association":null,"state_reason":null,"created_at":"2026-07-11T00:22:46.000Z","updated_at":"2026-07-13T06:10:30.000Z","time_to_close":193662,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps-dev)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":null,"ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/deepnote/vscode-deepnote/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/deepnote/vscode-deepnote/pull/437","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/deepnote%2Fvscode-deepnote/issues/437","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/437/packages"},{"uuid":"4859582188","node_id":"PR_kwDORpblkc7wZXZ1","number":40,"state":"open","title":"Bump morgan from 1.10.1 to 1.11.0","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-07-11T00:17:07.000Z","updated_at":"2026-07-11T00:18:16.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":null,"ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/alialobidm/vscode-copilot-chat/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/alialobidm/vscode-copilot-chat/pull/40","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/alialobidm%2Fvscode-copilot-chat/issues/40","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/40/packages"},{"uuid":"4859505974","node_id":"PR_kwDOQfLbCs7wZHTq","number":62,"state":"open","title":"chore(deps): bump morgan from 1.10.1 to 1.11.0 in /BackEnd","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-07-11T00:01:58.000Z","updated_at":"2026-07-11T00:02:11.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":"/BackEnd","ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/Dxbea/epion-clean/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/Dxbea/epion-clean/pull/62","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/Dxbea%2Fepion-clean/issues/62","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/62/packages"},{"uuid":"4859360391","node_id":"PR_kwDOCkCL5s7wYo4H","number":655,"state":"closed","title":"chore(deps-dev): bump morgan from 1.10.1 to 1.11.0","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-07-18T00:02:16.000Z","author_association":null,"state_reason":null,"created_at":"2026-07-10T23:28:55.000Z","updated_at":"2026-07-18T00:02:24.000Z","time_to_close":606801,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps-dev)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":null,"ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/johnpapa/vscode-peacock/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/johnpapa/vscode-peacock/pull/655","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/johnpapa%2Fvscode-peacock/issues/655","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/655/packages"},{"uuid":"4858976755","node_id":"PR_kwDOPf23ns7wXbF8","number":5289,"state":"closed","title":"build(deps): bump morgan from 1.10.1 to 1.11.0 in /copilot/extension in the npm_and_yarn group across 1 directory","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":7,"pull_request":true,"closed_at":"2026-07-10T22:09:08.000Z","author_association":null,"state_reason":null,"created_at":"2026-07-10T22:08:12.000Z","updated_at":"2026-07-10T22:14:22.000Z","time_to_close":56,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":"/copilot/extension in the npm_and_yarn group across 1 directory","ecosystem":"npm"},"body":"Bumps the npm_and_yarn group with 1 update in the /copilot/extension directory: [morgan](https://github.com/expressjs/morgan).\n\nUpdates `morgan` from 1.10.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/Aries-Serpent/_codex_/network/alerts).\n\n\u003c/details\u003e\n\n\n\n**Summary**: 4 🔴 CRITICAL, 4 🟠 HIGH, 2 🟡 MEDIUM\n\n_Last scan: 2026-07-10T22:08:45Z_\n\n### Severity Distribution\n\n| Severity | Count | Tools | Trend |\n|----------|-------|-------|-------|\n| 🔴 CRITICAL | 4 | CodeQL, detect-secrets | ⚫ Unknown |\n| 🟠 HIGH | 4 | Bandit, Semgrep, pip-audit | ⚫ Unknown |\n| 🟡 MEDIUM | 2 | CodeQL, Semgrep | ⚫ Unknown |\n\n\n### Top Security Issues\n\n1. **[🔴 CRITICAL]** CWE-798: Hardcoded credentials in source code\n   - **File**: `codex/config.py:18`\n   - **Tool**: detect-secrets\n   - **Confidence**: 100%\n   - **Fix**: Move credentials to environment variables or secrets manager\n\n2. **[🔴 CRITICAL]** CWE-89: SQL Injection vulnerability in database queries\n   - **File**: `codex/db/queries.py:234`\n   - **Tool**: CodeQL\n   - **Confidence**: 99%\n   - **Fix**: Use parameterized queries or ORM with prepared statements\n\n3. **[🔴 CRITICAL]** CWE-79: Cross-site Scripting (XSS) vulnerability in user input handler\n   - **File**: `codex/cli.py:125`\n   - **Tool**: CodeQL\n   - **Confidence**: 98%\n   - **Fix**: Use html.escape() before HTML output or use a templating engine with auto-escaping\n\n4. **[🔴 CRITICAL]** CWE-502: Insecure deserialization of untrusted data\n   - **File**: `codex/serialization.py:87`\n   - **Tool**: CodeQL\n   - **Confidence**: 95%\n   - **Fix**: Use json.loads() instead of pickle.loads() for untrusted data\n\n5. **[🟠 HIGH]** CWE-22: Path Traversal vulnerability in file operations\n   - **File**: `codex/utils/file_ops.py:45`\n   - **Tool**: Semgrep\n   - **Confidence**: 92%\n   - **Fix**: Use pathlib.Path.resolve() with parent check to prevent directory traversal\n\n\n### Recommended Security Agents\n\n- **@codeql-alert-resolution-agent** (4 findings)\n  - Task: CodeQL security alerts\n- **@code-scanning-remediation-agent** (4 findings)\n  - Task: Semgrep policy violations\n- **@secret-detection-agent** (1 findings)\n  - Task: Leaked secrets/credentials\n- **@dependency-security-review-agent** (1 findings)\n  - Task: Dependency vulnerabilities\n\n---\n\n_For detailed analysis, see [Security Findings Report](.codex/security-findings-comprehensive.md) (if available)_\n\n## 🔐 Security Findings\n\n**Summary**: 4 🔴 CRITICAL, 4 🟠 HIGH, 2 🟡 MEDIUM\n\n_Last scan: 2026-07-10T22:10:14Z_\n\n### Severity Distribution\n\n| Severity | Count | Tools | Trend |\n|----------|-------|-------|-------|\n| 🔴 CRITICAL | 4 | CodeQL, detect-secrets | ⚫ Unknown |\n| 🟠 HIGH | 4 | Bandit, Semgrep, pip-audit | ⚫ Unknown |\n| 🟡 MEDIUM | 2 | CodeQL, Semgrep | ⚫ Unknown |\n\n\n### Top Security Issues\n\n1. **[🔴 CRITICAL]** CWE-798: Hardcoded credentials in source code\n   - **File**: `codex/config.py:18`\n   - **Tool**: detect-secrets\n   - **Confidence**: 100%\n   - **Fix**: Move credentials to environment variables or secrets manager\n\n2. **[🔴 CRITICAL]** CWE-89: SQL Injection vulnerability in database queries\n   - **File**: `codex/db/queries.py:234`\n   - **Tool**: CodeQL\n   - **Confidence**: 99%\n   - **Fix**: Use parameterized queries or ORM with prepared statements\n\n3. **[🔴 CRITICAL]** CWE-79: Cross-site Scripting (XSS) vulnerability in user input handler\n   - **File**: `codex/cli.py:125`\n   - **Tool**: CodeQL\n   - **Confidence**: 98%\n   - **Fix**: Use html.escape() before HTML output or use a templating engine with auto-escaping\n\n4. **[🔴 CRITICAL]** CWE-502: Insecure deserialization of untrusted data\n   - **File**: `codex/serialization.py:87`\n   - **Tool**: CodeQL\n   - **Confidence**: 95%\n   - **Fix**: Use json.loads() instead of pickle.loads() for untrusted data\n\n5. **[🟠 HIGH]** CWE-22: Path Traversal vulnerability in file operations\n   - **File**: `codex/utils/file_ops.py:45`\n   - **Tool**: Semgrep\n   - **Confidence**: 92%\n   - **Fix**: Use pathlib.Path.resolve() with parent check to prevent directory traversal\n\n\n### Recommended Security Agents\n\n- **@codeql-alert-resolution-agent** (4 findings)\n  - Task: CodeQL security alerts\n- **@code-scanning-remediation-agent** (4 findings)\n  - Task: Semgrep policy violations\n- **@secret-detection-agent** (1 findings)\n  - Task: Leaked secrets/credentials\n- **@dependency-security-review-agent** (1 findings)\n  - Task: Dependency vulnerabilities\n\n---\n\n_For detailed analysis, see [Security Findings Report](.codex/security-findings-comprehensive.md) (if available)_\n","html_url":"https://github.com/Aries-Serpent/_codex_/pull/5289","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/Aries-Serpent%2F_codex_/issues/5289","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/5289/packages"},{"uuid":"4807572853","node_id":"PR_kwDORsmFTc7tykZK","number":4,"state":"open","title":"build(deps): bump the dependencies group with 41 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-07-04T04:09:27.000Z","updated_at":"2026-07-04T04:11:31.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps): bump","group_name":"dependencies","update_count":41,"packages":[{"name":"@react-three/drei","old_version":"9.122.0","new_version":"10.7.7","repository_url":"https://github.com/pmndrs/drei"},{"name":"@react-three/fiber","old_version":"8.16.1","new_version":"9.6.1","repository_url":"https://github.com/pmndrs/react-three-fiber"},{"name":"@supabase/supabase-js","old_version":"2.101.0","new_version":"2.110.0","repository_url":"https://github.com/supabase/supabase-js"},{"name":"@vitejs/plugin-react","old_version":"4.7.0","new_version":"6.0.3","repository_url":"https://github.com/vitejs/vite-plugin-react"},{"name":"animejs","old_version":"3.2.2","new_version":"4.5.0","repository_url":"https://github.com/juliangarnier/anime"},{"name":"antd","old_version":"6.4.3","new_version":"6.5.0","repository_url":"https://github.com/ant-design/ant-design"},{"name":"autoprefixer","old_version":"10.4.27","new_version":"10.5.2","repository_url":"https://github.com/postcss/autoprefixer"},{"name":"dotenv","old_version":"17.3.1","new_version":"17.4.2","repository_url":"https://github.com/motdotla/dotenv"},{"name":"express","old_version":"4.22.2","new_version":"5.2.1","repository_url":"https://github.com/expressjs/express"},{"name":"express-rate-limit","old_version":"7.5.1","new_version":"8.5.2","repository_url":"https://github.com/express-rate-limit/express-rate-limit"},{"name":"framer-motion","old_version":"12.38.0","new_version":"12.42.2","repository_url":"https://github.com/motiondivision/motion"},{"name":"gsap","old_version":"3.14.2","new_version":"3.15.0","repository_url":"https://github.com/greensock/GSAP"},{"name":"helmet","old_version":"7.2.0","new_version":"8.2.0","repository_url":"https://github.com/helmetjs/helmet"},{"name":"ioredis","old_version":"5.10.1","new_version":"5.11.1","repository_url":"https://github.com/luin/ioredis"},{"name":"jspdf-autotable","old_version":"5.0.7","new_version":"5.0.8","repository_url":"https://github.com/simonbengtsson/jsPDF-AutoTable"},{"name":"lucide-react","old_version":"0.284.0","new_version":"1.23.0","repository_url":"https://github.com/lucide-icons/lucide"},{"name":"mongoose","old_version":"8.23.0","new_version":"9.7.3","repository_url":"https://github.com/Automattic/mongoose"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"multer","old_version":"2.1.1","new_version":"2.2.0","repository_url":"https://github.com/expressjs/multer"},{"name":"next","old_version":"14.2.3","new_version":"16.2.10","repository_url":"https://github.com/vercel/next.js"},{"name":"nodemailer","old_version":"8.0.9","new_version":"9.0.3","repository_url":"https://github.com/nodemailer/nodemailer"},{"name":"postcss","old_version":"8.5.15","new_version":"8.5.16","repository_url":"https://github.com/postcss/postcss"},{"name":"react","old_version":"18.3.1","new_version":"19.2.7","repository_url":"https://github.com/facebook/react"},{"name":"@types/react","old_version":"18.3.28","new_version":"19.2.17","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"react-dom","old_version":"18.3.1","new_version":"19.2.7","repository_url":"https://github.com/facebook/react"},{"name":"@types/react-dom","old_version":"18.3.7","new_version":"19.2.3","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"react-router-dom","old_version":"6.30.3","new_version":"7.18.1","repository_url":"https://github.com/remix-run/react-router"},{"name":"recharts","old_version":"3.8.1","new_version":"3.9.2","repository_url":"https://github.com/recharts/recharts"},{"name":"tailwindcss","old_version":"3.4.19","new_version":"4.3.2","repository_url":"https://github.com/tailwindlabs/tailwindcss"},{"name":"three","old_version":"0.183.2","new_version":"0.185.1","repository_url":"https://github.com/mrdoob/three.js"},{"name":"vite","old_version":"5.4.21","new_version":"8.1.3","repository_url":"https://github.com/vitejs/vite"},{"name":"zod","old_version":"3.25.76","new_version":"4.4.3","repository_url":"https://github.com/colinhacks/zod"},{"name":"@eslint/js","old_version":"9.39.4","new_version":"10.0.1","repository_url":"https://github.com/eslint/eslint"},{"name":"@playwright/test","old_version":"1.60.0","new_version":"1.61.1","repository_url":"https://github.com/microsoft/playwright"},{"name":"eslint","old_version":"9.39.4","new_version":"10.6.0","repository_url":"https://github.com/eslint/eslint"},{"name":"eslint-plugin-react-hooks","old_version":"7.0.1","new_version":"7.1.1","repository_url":"https://github.com/facebook/react"},{"name":"eslint-plugin-react-refresh","old_version":"0.5.2","new_version":"0.5.3","repository_url":"https://github.com/ArnaudBarre/eslint-plugin-react-refresh"},{"name":"eslint-plugin-tailwindcss","old_version":"3.17.4","new_version":"4.0.6","repository_url":"https://github.com/francoismassart/eslint-plugin-tailwindcss"},{"name":"globals","old_version":"17.4.0","new_version":"17.7.0","repository_url":"https://github.com/sindresorhus/globals"},{"name":"jsdom","old_version":"24.1.3","new_version":"29.1.1","repository_url":"https://github.com/jsdom/jsdom"},{"name":"vitest","old_version":"1.6.1","new_version":"4.1.9","repository_url":"https://github.com/vitest-dev/vitest"}],"path":null,"ecosystem":"npm"},"body":"Bumps the dependencies group with 41 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@react-three/drei](https://github.com/pmndrs/drei) | `9.122.0` | `10.7.7` |\n| [@react-three/fiber](https://github.com/pmndrs/react-three-fiber) | `8.16.1` | `9.6.1` |\n| [@supabase/supabase-js](https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js) | `2.101.0` | `2.110.0` |\n| [@vitejs/plugin-react](https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react) | `4.7.0` | `6.0.3` |\n| [animejs](https://github.com/juliangarnier/anime) | `3.2.2` | `4.5.0` |\n| [antd](https://github.com/ant-design/ant-design) | `6.4.3` | `6.5.0` |\n| [autoprefixer](https://github.com/postcss/autoprefixer) | `10.4.27` | `10.5.2` |\n| [dotenv](https://github.com/motdotla/dotenv) | `17.3.1` | `17.4.2` |\n| [express](https://github.com/expressjs/express) | `4.22.2` | `5.2.1` |\n| [express-rate-limit](https://github.com/express-rate-limit/express-rate-limit) | `7.5.1` | `8.5.2` |\n| [framer-motion](https://github.com/motiondivision/motion) | `12.38.0` | `12.42.2` |\n| [gsap](https://github.com/greensock/GSAP) | `3.14.2` | `3.15.0` |\n| [helmet](https://github.com/helmetjs/helmet) | `7.2.0` | `8.2.0` |\n| [ioredis](https://github.com/luin/ioredis) | `5.10.1` | `5.11.1` |\n| [jspdf-autotable](https://github.com/simonbengtsson/jsPDF-AutoTable) | `5.0.7` | `5.0.8` |\n| [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react) | `0.284.0` | `1.23.0` |\n| [mongoose](https://github.com/Automattic/mongoose) | `8.23.0` | `9.7.3` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [multer](https://github.com/expressjs/multer) | `2.1.1` | `2.2.0` |\n| [next](https://github.com/vercel/next.js) | `14.2.3` | `16.2.10` |\n| [nodemailer](https://github.com/nodemailer/nodemailer) | `8.0.9` | `9.0.3` |\n| [postcss](https://github.com/postcss/postcss) | `8.5.15` | `8.5.16` |\n| [react](https://github.com/facebook/react/tree/HEAD/packages/react) | `18.3.1` | `19.2.7` |\n| [@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react) | `18.3.28` | `19.2.17` |\n| [react-dom](https://github.com/facebook/react/tree/HEAD/packages/react-dom) | `18.3.1` | `19.2.7` |\n| [@types/react-dom](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-dom) | `18.3.7` | `19.2.3` |\n| [react-router-dom](https://github.com/remix-run/react-router/tree/HEAD/packages/react-router-dom) | `6.30.3` | `7.18.1` |\n| [recharts](https://github.com/recharts/recharts) | `3.8.1` | `3.9.2` |\n| [tailwindcss](https://github.com/tailwindlabs/tailwindcss/tree/HEAD/packages/tailwindcss) | `3.4.19` | `4.3.2` |\n| [three](https://github.com/mrdoob/three.js) | `0.183.2` | `0.185.1` |\n| [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) | `5.4.21` | `8.1.3` |\n| [zod](https://github.com/colinhacks/zod) | `3.25.76` | `4.4.3` |\n| [@eslint/js](https://github.com/eslint/eslint/tree/HEAD/packages/js) | `9.39.4` | `10.0.1` |\n| [@playwright/test](https://github.com/microsoft/playwright) | `1.60.0` | `1.61.1` |\n| [eslint](https://github.com/eslint/eslint) | `9.39.4` | `10.6.0` |\n| [eslint-plugin-react-hooks](https://github.com/facebook/react/tree/HEAD/packages/eslint-plugin-react-hooks) | `7.0.1` | `7.1.1` |\n| [eslint-plugin-react-refresh](https://github.com/ArnaudBarre/eslint-plugin-react-refresh) | `0.5.2` | `0.5.3` |\n| [eslint-plugin-tailwindcss](https://github.com/francoismassart/eslint-plugin-tailwindcss) | `3.17.4` | `4.0.6` |\n| [globals](https://github.com/sindresorhus/globals) | `17.4.0` | `17.7.0` |\n| [jsdom](https://github.com/jsdom/jsdom) | `24.1.3` | `29.1.1` |\n| [vitest](https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest) | `1.6.1` | `4.1.9` |\n\nUpdates `@react-three/drei` from 9.122.0 to 10.7.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/pmndrs/drei/releases\"\u003e@​react-three/drei's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev10.7.7\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/pmndrs/drei/compare/v10.7.6...v10.7.7\"\u003e10.7.7\u003c/a\u003e (2025-11-13)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edocs:\u003c/strong\u003e \u003ca href=\"https://github.com/v2\"\u003e\u003ccode\u003e@​v2\u003c/code\u003e\u003c/a\u003e.19.0 (\u003ca href=\"https://github.com/pmndrs/drei/commit/b8b99fd4ca1dfb8d821335671320512daa6efea4\"\u003eb8b99fd\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.7.6\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/pmndrs/drei/compare/v10.7.5...v10.7.6\"\u003e10.7.6\u003c/a\u003e (2025-09-11)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003etypes:\u003c/strong\u003e fix usage of ambient THREE namespace (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2517\"\u003e#2517\u003c/a\u003e) (\u003ca href=\"https://github.com/pmndrs/drei/commit/3b5d7dc0a6cb0ecfdab1a6e3bfdbb8c48410edba\"\u003e3b5d7dc\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.7.5\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/pmndrs/drei/compare/v10.7.4...v10.7.5\"\u003e10.7.5\u003c/a\u003e (2025-09-08)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003emissing suspend badges to the docs (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2530\"\u003e#2530\u003c/a\u003e) (\u003ca href=\"https://github.com/pmndrs/drei/commit/3e1246f3591ee4e54358519b0375541d5312bd9a\"\u003e3e1246f\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.7.4\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/pmndrs/drei/compare/v10.7.3...v10.7.4\"\u003e10.7.4\u003c/a\u003e (2025-08-23)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003esb link in Grid (\u003ca href=\"https://github.com/pmndrs/drei/commit/733b0a2bb21ca644449392f9cdc95b12009c325e\"\u003e733b0a2\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.7.3\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/pmndrs/drei/compare/v10.7.2...v10.7.3\"\u003e10.7.3\u003c/a\u003e (2025-08-17)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eadd renderOrder to AxisRotator (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2504\"\u003e#2504\u003c/a\u003e) (\u003ca href=\"https://github.com/pmndrs/drei/commit/4e48be0fe2bba6f81478eba0196d9eb4d2920b62\"\u003e4e48be0\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.7.2\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/pmndrs/drei/compare/v10.7.1...v10.7.2\"\u003e10.7.2\u003c/a\u003e (2025-08-16)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003elatest storybook (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2512\"\u003e#2512\u003c/a\u003e) (\u003ca href=\"https://github.com/pmndrs/drei/commit/1b933d53724e362db257dc95c6ca99fec1ab8ff3\"\u003e1b933d5\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.7.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/pmndrs/drei/compare/v10.7.0...v10.7.1\"\u003e10.7.1\u003c/a\u003e (2025-08-16)\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/b8b99fd4ca1dfb8d821335671320512daa6efea4\"\u003e\u003ccode\u003eb8b99fd\u003c/code\u003e\u003c/a\u003e fix(docs): \u003ca href=\"https://github.com/v2\"\u003e\u003ccode\u003e@​v2\u003c/code\u003e\u003c/a\u003e.19.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/7b62f6c004f9d8a2487c7cf405c32022c45dfe12\"\u003e\u003ccode\u003e7b62f6c\u003c/code\u003e\u003c/a\u003e chore: \u003ccode\u003e./e2e 0.180\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2571\"\u003e#2571\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/2a40b26fc5a199de254b3d5676335d701e0d9955\"\u003e\u003ccode\u003e2a40b26\u003c/code\u003e\u003c/a\u003e chore: -cjsapp\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/3b5d7dc0a6cb0ecfdab1a6e3bfdbb8c48410edba\"\u003e\u003ccode\u003e3b5d7dc\u003c/code\u003e\u003c/a\u003e fix(types): fix usage of ambient THREE namespace (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2517\"\u003e#2517\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/3e1246f3591ee4e54358519b0375541d5312bd9a\"\u003e\u003ccode\u003e3e1246f\u003c/code\u003e\u003c/a\u003e fix: missing suspend badges to the docs (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2530\"\u003e#2530\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/844be9a61a9b0b770e23e3c52362bc41a9c04659\"\u003e\u003ccode\u003e844be9a\u003c/code\u003e\u003c/a\u003e Apply renderOrder to all PivotControls children (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2524\"\u003e#2524\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/733b0a2bb21ca644449392f9cdc95b12009c325e\"\u003e\u003ccode\u003e733b0a2\u003c/code\u003e\u003c/a\u003e fix: sb link in Grid\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/4e48be0fe2bba6f81478eba0196d9eb4d2920b62\"\u003e\u003ccode\u003e4e48be0\u003c/code\u003e\u003c/a\u003e fix: add renderOrder to AxisRotator (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2504\"\u003e#2504\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/1b933d53724e362db257dc95c6ca99fec1ab8ff3\"\u003e\u003ccode\u003e1b933d5\u003c/code\u003e\u003c/a\u003e fix: latest storybook (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2512\"\u003e#2512\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/b7e48235dc767be5b4be06bf6273782577639726\"\u003e\u003ccode\u003eb7e4823\u003c/code\u003e\u003c/a\u003e fix(docs): center.mdx\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/pmndrs/drei/compare/v9.122.0...v10.7.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@react-three/fiber` from 8.16.1 to 9.6.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/pmndrs/react-three-fiber/releases\"\u003e@​react-three/fiber's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev9.6.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: Seamlessly transfer interactivity state when swapping instances (\u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/issues/3743\"\u003e#3743\u003c/a\u003e) by \u003ca href=\"https://github.com/notrabs\"\u003e\u003ccode\u003e@​notrabs\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/pull/3744\"\u003epmndrs/react-three-fiber#3744\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/pmndrs/react-three-fiber/compare/v9.6.0...v9.6.1\"\u003ehttps://github.com/pmndrs/react-three-fiber/compare/v9.6.0...v9.6.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev9.6.0 - Sunset X\u003c/h2\u003e\n\u003cp\u003eEver tried using \u003ccode\u003e\u0026lt;shaderMaterial uniforms={{ time: { value: time } }} /\u0026gt;\u003c/code\u003e and ran into immediate issues with desync? No more.\u003c/p\u003e\n\u003cp\u003eThe uniforms objects on \u003ccode\u003eShaderMaterial\u003c/code\u003e and its derivatives now have a stable reference. Objects passed into uniforms will instead copy into it. This is the same as behavior for math structures that have copy such as position, rotation, quaternion, etc. and ends up simplifying using the raw JSX where utilities were often introduced before.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eWhy does this matter?\u003c/strong\u003e\u003c/p\u003e\n\u003col\u003e\n\u003cli\u003e\n\u003cp\u003eImproves HMR. Even if you memoize the uniforms object it will still regenerate and desync Three. Now this won't happen. But also it makes compatibility with React compiler more complete with its auto-memoization.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAllows for inline uniform props and even prop uniforms directly on the material piercing.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ol\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003e\u0026lt;shaderMaterial\r\n  vertexShader={vertexShader}\r\n  fragmentShader={fragmentShader}\r\n  // The uniforms object has a stable reference so objects can be safely merged in\r\n  uniforms={{ \r\n    uTime: { value: 0 }, \r\n    uColor: { value: new THREE.Color('hotpink') } \r\n  }}\r\n  // Individual uniforms can also be safely updated with pierce notation\r\n  uniforms-uColor-value={hovered ? 'royalblue' : 'hotpink'}\r\n/\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003cp\u003eDocumentation can be found here: \u003ca href=\"https://r3f.docs.pmnd.rs/api/objects#shader-material-uniforms\"\u003ehttps://r3f.docs.pmnd.rs/api/objects#shader-material-uniforms\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eAnd an example can be found here: \u003ca href=\"https://github.com/pmndrs/react-three-fiber/blob/master/example/src/demos/ShaderMaterial.tsx\"\u003ehttps://github.com/pmndrs/react-three-fiber/blob/master/example/src/demos/ShaderMaterial.tsx\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: Fix broken link on \u0026quot;Performance pitfalls\u0026quot; documentation page by \u003ca href=\"https://github.com/simonKristensen\"\u003e\u003ccode\u003e@​simonKristensen\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/pull/3700\"\u003epmndrs/react-three-fiber#3700\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: uniforms have stable refs for ShaderMaterial by \u003ca href=\"https://github.com/krispya\"\u003e\u003ccode\u003e@​krispya\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/pull/3715\"\u003epmndrs/react-three-fiber#3715\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: fix typos and documentation consistency by \u003ca href=\"https://github.com/NssGourav\"\u003e\u003ccode\u003e@​NssGourav\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/pull/3709\"\u003epmndrs/react-three-fiber#3709\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/simonKristensen\"\u003e\u003ccode\u003e@​simonKristensen\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/pull/3700\"\u003epmndrs/react-three-fiber#3700\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/NssGourav\"\u003e\u003ccode\u003e@​NssGourav\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/pull/3709\"\u003epmndrs/react-three-fiber#3709\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/pmndrs/react-three-fiber/compare/v9.5.0...v9.6.0\"\u003ehttps://github.com/pmndrs/react-three-fiber/compare/v9.5.0...v9.6.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev9.5.0\u003c/h2\u003e\n\u003cp\u003eAfter a bit of research and development, R3F is now compatible with React 19.2, including the \u003ccode\u003eActivity\u003c/code\u003e feature!\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/2a528745e9aa7c9e6cca41e404b59d45cf0d0cc7\"\u003e\u003ccode\u003e2a52874\u003c/code\u003e\u003c/a\u003e RELEASING: Releasing 1 package(s)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/b645741874486417727ea75a0704d48e9f21d623\"\u003e\u003ccode\u003eb645741\u003c/code\u003e\u003c/a\u003e docs(changeset): fix: Seamlessly transfer interactivity state when swapping i...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/119668f9f3ee31b28485c9706407f22272fe059c\"\u003e\u003ccode\u003e119668f\u003c/code\u003e\u003c/a\u003e fix: Seamlessly transfer interactivity state when swapping instances (\u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/issues/3744\"\u003e#3744\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/943a37e66415d9a0e4bf4252b6fbb977e566788a\"\u003e\u003ccode\u003e943a37e\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/issues/3738\"\u003e#3738\u003c/a\u003e from pmndrs:chore/simplify-shadermaterial-demo\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/1be9504963f09e879e63e76a74b00e0daa316115\"\u003e\u003ccode\u003e1be9504\u003c/code\u003e\u003c/a\u003e chore: Add uniform piercing test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/4df10c0fdee3cfa016e0bdcdf6cdd93a36f55e88\"\u003e\u003ccode\u003e4df10c0\u003c/code\u003e\u003c/a\u003e chore: Simplify ShaderMaterial demo\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/877c8392288ca5c237c0ff8e7e1fbd238ade1170\"\u003e\u003ccode\u003e877c839\u003c/code\u003e\u003c/a\u003e chore: Move ShaderMaterial uniform notes to objects out of pitfalls (\u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/issues/3734\"\u003e#3734\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/47d30ba72582a2a4f47a8df2310a7ba1b5240552\"\u003e\u003ccode\u003e47d30ba\u003c/code\u003e\u003c/a\u003e chore: Move ShaderMaterial uniform notes to objects out of pitfalls\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/ece1a3fa385ae8687fabae98a25e6656bbca4079\"\u003e\u003ccode\u003eece1a3f\u003c/code\u003e\u003c/a\u003e RELEASING: Releasing 1 package(s)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/26e4716412b11a189dd9ac4b3033d0e504f1d7df\"\u003e\u003ccode\u003e26e4716\u003c/code\u003e\u003c/a\u003e docs(changeset): Fix uniforms refs so they remain stable for ShaderMaterial\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/pmndrs/react-three-fiber/compare/v8.16.1...v9.6.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@supabase/supabase-js` from 2.101.0 to 2.110.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/supabase/supabase-js/releases\"\u003e@​supabase/supabase-js's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.110.0\u003c/h2\u003e\n\u003ch2\u003e2.110.0 (2026-06-30)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003erepo:\u003c/strong\u003e drop Node.js 20 support (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2482\"\u003e#2482\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev2.110.0-canary.0\u003c/h2\u003e\n\u003ch2\u003e2.110.0-canary.0 (2026-06-30)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003erepo:\u003c/strong\u003e drop Node.js 20 support (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2482\"\u003e#2482\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev2.109.0\u003c/h2\u003e\n\u003ch2\u003e2.109.0 (2026-06-30)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eauth:\u003c/strong\u003e add custom_claims_allowlist to custom providers admin API (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2473\"\u003e#2473\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003erealtime:\u003c/strong\u003e add postgres_changes filter builder, new operators and select (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2463\"\u003e#2463\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e expose purgeCache for buckets and single objects (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2429\"\u003e#2429\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003efunctions:\u003c/strong\u003e honor a caller's Content-Type override regardless of casing (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2455\"\u003e#2455\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003erealtime:\u003c/strong\u003e pin \u003ccode\u003e@​supabase/phoenix\u003c/code\u003e and browser test CDN deps (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2457\"\u003e#2457\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003erealtime:\u003c/strong\u003e add replication connection system message option (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2470\"\u003e#2470\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e keep sortBy defaults when list() is given a partial sortBy (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2454\"\u003e#2454\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAnubhav Anand \u003ca href=\"https://github.com/i-anubhav-anand\"\u003e\u003ccode\u003e@​i-anubhav-anand\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCemal Kılıç \u003ca href=\"https://github.com/cemalkilic\"\u003e\u003ccode\u003e@​cemalkilic\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eClaude Opus 4.8 (1M context)\u003c/li\u003e\n\u003cli\u003eFilipe Cabaço \u003ca href=\"https://github.com/filipecabaco\"\u003e\u003ccode\u003e@​filipecabaco\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eLenny\u003c/li\u003e\n\u003cli\u003eRodrigo Mansueli \u003ca href=\"https://github.com/mansueli\"\u003e\u003ccode\u003e@​mansueli\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev2.108.3-canary.2\u003c/h2\u003e\n\u003ch2\u003e2.108.3-canary.2 (2026-06-19)\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/supabase/supabase-js/blob/master/packages/core/supabase-js/CHANGELOG.md\"\u003e@​supabase/supabase-js's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.110.0 (2026-06-30)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003erepo:\u003c/strong\u003e drop Node.js 20 support (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2482\"\u003e#2482\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.109.0 (2026-06-30)\u003c/h2\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003erealtime:\u003c/strong\u003e pin \u003ccode\u003e@​supabase/phoenix\u003c/code\u003e and browser test CDN deps (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2457\"\u003e#2457\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.108.2 (2026-06-15)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for \u003ccode\u003e@​supabase/supabase-js\u003c/code\u003e to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003ch2\u003e2.108.0 (2026-06-08)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for \u003ccode\u003e@​supabase/supabase-js\u003c/code\u003e to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003ch2\u003e2.107.0 (2026-06-02)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eauth:\u003c/strong\u003e remove navigator.locks-based mutex; introduce commit guard + dispose() (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2392\"\u003e#2392\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003esupabase:\u003c/strong\u003e update X-Client-Info to structured metadata format (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2359\"\u003e#2359\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003erealtime:\u003c/strong\u003e allow httpSend to send binary payload (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2400\"\u003e#2400\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eClaude Sonnet 4.6\u003c/li\u003e\n\u003cli\u003eEduardo Gurgel\u003c/li\u003e\n\u003cli\u003eGuilherme Souza\u003c/li\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eOmar Al Matar \u003ca href=\"https://github.com/Bewinxed\"\u003e\u003ccode\u003e@​Bewinxed\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.106.2 (2026-05-25)\u003c/h2\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003emisc:\u003c/strong\u003e add react-native export condition for Hermes-safe resolution (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2393\"\u003e#2393\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/c3d5e6d2949b0248de8ba97991e4484f0b57c83f\"\u003e\u003ccode\u003ec3d5e6d\u003c/code\u003e\u003c/a\u003e feat(repo): drop Node.js 20 support (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2482\"\u003e#2482\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/b2e02b997aaf81b4c09dcc67966629296b96f681\"\u003e\u003ccode\u003eb2e02b9\u003c/code\u003e\u003c/a\u003e chore(release): version 2.109.0 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2481\"\u003e#2481\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/dd2d4c270f0d6b84e61f3fa80330c42966783f87\"\u003e\u003ccode\u003edd2d4c2\u003c/code\u003e\u003c/a\u003e fix(realtime): pin \u003ccode\u003e@​supabase/phoenix\u003c/code\u003e and browser test CDN deps (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2457\"\u003e#2457\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/a25062e9285fa8e3bd702c59ddda0d87ad1fcc27\"\u003e\u003ccode\u003ea25062e\u003c/code\u003e\u003c/a\u003e chore(release): version 2.108.2 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2449\"\u003e#2449\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/b3e5f2d7a312eff971dfd9c7226c9c4edbc0de0f\"\u003e\u003ccode\u003eb3e5f2d\u003c/code\u003e\u003c/a\u003e chore(ci): unpin realtime version (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2432\"\u003e#2432\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/76f3f0290525c53aafedaf9fc94fcc09953c2189\"\u003e\u003ccode\u003e76f3f02\u003c/code\u003e\u003c/a\u003e test(auth): add passkey unit and e2e coverage (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2442\"\u003e#2442\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/65fafe5ccc124ecc616d031b1d3fa0a1703340ff\"\u003e\u003ccode\u003e65fafe5\u003c/code\u003e\u003c/a\u003e chore(release): version 2.108.0 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2433\"\u003e#2433\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/57014e167626211b68ead69e0d4e24766619e933\"\u003e\u003ccode\u003e57014e1\u003c/code\u003e\u003c/a\u003e chore(release): version 2.107.0 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2421\"\u003e#2421\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/54ec2b6955be26836e249e1fbe5f98c6f25a99a9\"\u003e\u003ccode\u003e54ec2b6\u003c/code\u003e\u003c/a\u003e feat(auth): remove navigator.locks-based mutex; introduce commit guard + disp...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/3397c9235712ae71333c5ded7b3cccc491124382\"\u003e\u003ccode\u003e3397c92\u003c/code\u003e\u003c/a\u003e feat(supabase): update X-Client-Info to structured metadata format (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2359\"\u003e#2359\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/supabase/supabase-js/commits/v2.110.0/packages/core/supabase-js\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@vitejs/plugin-react` from 4.7.0 to 6.0.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vitejs/vite-plugin-react/releases\"\u003e@​vitejs/plugin-react's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eplugin-react@6.0.3\u003c/h2\u003e\n\u003cp\u003eNo release notes provided.\u003c/p\u003e\n\u003ch2\u003eplugin-react@6.0.2\u003c/h2\u003e\n\u003ch3\u003eAllow all options in reactCompilerPreset (\u003ca href=\"https://redirect.github.com/vitejs/vite-plugin-react/pull/1189\"\u003e#1189\u003c/a\u003e)\u003c/h3\u003e\n\u003cp\u003eThis is a type only change. Only \u003ccode\u003ecompilationMode\u003c/code\u003e and \u003ccode\u003etarget\u003c/code\u003e options were available for \u003ccode\u003ereactCompilerPreset\u003c/code\u003e.\u003c/p\u003e\n\u003ch2\u003eplugin-react@6.0.1\u003c/h2\u003e\n\u003ch3\u003eExpand \u003ccode\u003e@rolldown/plugin-babel\u003c/code\u003e peer dep range (\u003ca href=\"https://redirect.github.com/vitejs/vite-plugin-react/pull/1146\"\u003e#1146\u003c/a\u003e)\u003c/h3\u003e\n\u003cp\u003eExpanded \u003ccode\u003e@rolldown/plugin-babel\u003c/code\u003e peer dep range to include \u003ccode\u003e^0.2.0\u003c/code\u003e.\u003c/p\u003e\n\u003ch2\u003eplugin-react@6.0.0\u003c/h2\u003e\n\u003ch3\u003eRemove Babel Related Features (\u003ca href=\"https://redirect.github.com/vitejs/vite-plugin-react/pull/1123\"\u003e#1123\u003c/a\u003e)\u003c/h3\u003e\n\u003cp\u003eVite 8+ can handle React Refresh Transform by Oxc and doesn't need Babel for it. With that, there are no transform applied that requires Babel. To reduce the installation size of this plugin, babel is no longer a dependency of this plugin and the related features are removed.\u003c/p\u003e\n\u003cp\u003eIf you are using Babel, you can use \u003ccode\u003e@rolldown/plugin-babel\u003c/code\u003e together with this plugin:\u003c/p\u003e\n\u003cpre lang=\"diff\"\u003e\u003ccode\u003e import { defineConfig } from 'vite'\r\n import react from '@vitejs/plugin-react'\r\n+import babel from '@rolldown/plugin-babel'\r\n\u003cp\u003eexport default defineConfig({\nplugins: [\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003ereact({\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e  babel: {\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e    plugins: ['@babel/plugin-proposal-throw-expressions'],\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e  },\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e}),\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003ereact(),\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003ebabel({\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e  plugins: ['@babel/plugin-proposal-throw-expressions'],\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e}),\n\u003c/code\u003e\u003c/pre\u003e\n]\n})\n\u003c/code\u003e\u003c/pre\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eFor React compiler users, you can use \u003ccode\u003ereactCompilerPreset\u003c/code\u003e for easier setup with preconfigured filter to improve build performance:\u003c/p\u003e\n\u003cpre lang=\"diff\"\u003e\u003ccode\u003e import { defineConfig } from 'vite'\r\n-import react from '@vitejs/plugin-react'\r\n+import react, { reactCompilerPreset } from '@vitejs/plugin-react'\r\n+import babel from '@rolldown/plugin-babel'\r\n\u003cp\u003eexport default defineConfig({\nplugins: [\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt;\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vitejs/vite-plugin-react/blob/main/packages/plugin-react/CHANGELOG.md\"\u003e@​vitejs/plugin-react's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e6.0.3 (2026-06-23)\u003c/h2\u003e\n\u003ch2\u003e6.0.2 (2026-05-14)\u003c/h2\u003e\n\u003ch3\u003eAllow all options in reactCompilerPreset (\u003ca href=\"https://redirect.github.com/vitejs/vite-plugin-react/pull/1189\"\u003e#1189\u003c/a\u003e)\u003c/h3\u003e\n\u003cp\u003eThis is a type only change. Only \u003ccode\u003ecompilationMode\u003c/code\u003e and \u003ccode\u003etarget\u003c/code\u003e options were available for \u003ccode\u003ereactCompilerPreset\u003c/code\u003e.\u003c/p\u003e\n\u003ch2\u003e6.0.1 (2026-03-13)\u003c/h2\u003e\n\u003ch3\u003eExpand \u003ccode\u003e@rolldown/plugin-babel\u003c/code\u003e peer dep range (\u003ca href=\"https://redirect.github.com/vitejs/vite-plugin-react/pull/1146\"\u003e#1146\u003c/a\u003e)\u003c/h3\u003e\n\u003cp\u003eExpanded \u003ccode\u003e@rolldown/plugin-babel\u003c/code\u003e peer dep range to include \u003ccode\u003e^0.2.0\u003c/code\u003e.\u003c/p\u003e\n\u003ch2\u003e6.0.0 (2026-03-12)\u003c/h2\u003e\n\u003ch2\u003e6.0.0-beta.0 (2026-03-03)\u003c/h2\u003e\n\u003ch3\u003eRemove Babel Related Features (\u003ca href=\"https://redirect.github.com/vitejs/vite-plugin-react/pull/1123\"\u003e#1123\u003c/a\u003e)\u003c/h3\u003e\n\u003cp\u003eVite 8+ can handle React Refresh Transform by Oxc and doesn't need Babel for it. With that, there are no transform applied that requires Babel. To reduce the installation size of this plugin, babel is no longer a dependency of this plugin and the related features are removed.\u003c/p\u003e\n\u003cp\u003eIf you are using Babel, you can use \u003ccode\u003e@rolldown/plugin-babel\u003c/code\u003e together with this plugin:\u003c/p\u003e\n\u003cpre lang=\"diff\"\u003e\u003ccode\u003e import { defineConfig } from 'vite'\n import react from '@vitejs/plugin-react'\n+import babel from '@rolldown/plugin-babel'\n\u003cp\u003eexport default defineConfig({\nplugins: [\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003ereact({\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e  babel: {\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e    plugins: ['@babel/plugin-proposal-throw-expressions'],\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e  },\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e}),\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003ereact(),\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003ebabel({\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e  plugins: ['@babel/plugin-proposal-throw-expressions'],\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e}),\n\u003c/code\u003e\u003c/pre\u003e\n]\n})\n\u003c/code\u003e\u003c/pre\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eFor React compiler users, you can use \u003ccode\u003ereactCompilerPreset\u003c/code\u003e for easier setup with preconfigured filter to improve build performance:\u003c/p\u003e\n\u003cpre lang=\"diff\"\u003e\u003ccode\u003e import { defineConfig } from 'vite'\n-import react from '@vitejs/plugin-react'\n+import react, { reactCompilerPreset } from '@vitejs/plugin-react'\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/640fd358a0e82393acfce4e92e19a6ac6e1641a7\"\u003e\u003ccode\u003e640fd35\u003c/code\u003e\u003c/a\u003e release: plugin-react@6.0.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/889efb02cdc4ec978a5e177a37e0213cfded38a4\"\u003e\u003ccode\u003e889efb0\u003c/code\u003e\u003c/a\u003e fix(deps): update all non-major dependencies (\u003ca href=\"https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react/issues/1249\"\u003e#1249\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/6c57dd4c5d71075b48039df2532804e72880da21\"\u003e\u003ccode\u003e6c57dd4\u003c/code\u003e\u003c/a\u003e fix(plugin-react): use '/' base in bundledDev preamble to fix non-root base p...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/3cc33a703636b558a1c1c99e787ddc6bd64aab2d\"\u003e\u003ccode\u003e3cc33a7\u003c/code\u003e\u003c/a\u003e fix(deps): update react-related dependencies (\u003ca href=\"https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react/issues/1245\"\u003e#1245\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/c0f7c7ff709dc9d88bc1f29f1b27c1b3e2bfcfca\"\u003e\u003ccode\u003ec0f7c7f\u003c/code\u003e\u003c/a\u003e docs: mention the Biome rule in the \u0026quot;Consistent components exports\u0026quot; section (...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/cd80f0f7b2b750f6e8f719f9c3dbe4f22ddd94db\"\u003e\u003ccode\u003ecd80f0f\u003c/code\u003e\u003c/a\u003e fix(deps): update all non-major dependencies (\u003ca href=\"https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react/issues/1241\"\u003e#1241\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/e38accafea0c7c84f7fc72fd69d9cec731fa7600\"\u003e\u003ccode\u003ee38acca\u003c/code\u003e\u003c/a\u003e fix(deps): update all non-major dependencies (\u003ca href=\"https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react/issues/1227\"\u003e#1227\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/9a9bb26c23b966dceed47ff9ec257faeb0e777d9\"\u003e\u003ccode\u003e9a9bb26\u003c/code\u003e\u003c/a\u003e perf(react): improve react compiler preset so that slightly more modules are ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/6535b55e956b425e6650ffc2cc98fd23cca1d231\"\u003e\u003ccode\u003e6535b55\u003c/code\u003e\u003c/a\u003e release: plugin-react@6.0.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/bf0e43b756e3be81f8572d59727c218311f431ef\"\u003e\u003ccode\u003ebf0e43b\u003c/code\u003e\u003c/a\u003e feat(react): whitelist debugging-options (\u003ca href=\"https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react/issues/1189\"\u003e#1189\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vitejs/vite-plugin-react/commits/plugin-react@6.0.3/packages/plugin-react\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​vitejs/plugin-react\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `animejs` from 3.2.2 to 4.5.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/juliangarnier/anime/releases\"\u003eanimejs's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.5.0\u003c/h2\u003e\n\u003ch2\u003eNew Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eAdapters\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eNew \u003ccode\u003eregisterAdapter()\u003c/code\u003e API to extend \u003ccode\u003eanimate()\u003c/code\u003e and \u003ccode\u003eutils.set()\u003c/code\u003e to non-DOM targets (learn more: \u003ca href=\"https://animejs.com/documentation/adapters\"\u003ehttps://animejs.com/documentation/adapters\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eThree.js adapter\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eNew built-in three.js adapter, imported as a side-effect from \u003ccode\u003eanimejs/adapters/three\u003c/code\u003e, to animate \u003ccode\u003eObject3D\u003c/code\u003e, materials, lights, cameras, audio nodes, \u003ccode\u003eUniformNode\u003c/code\u003e (TSL) and instanced meshes (learn more: \u003ca href=\"https://animejs.com/documentation/adapters/three\"\u003ehttps://animejs.com/documentation/adapters/three\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eStagger\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eAuto-grid mode now supports 3D layouts, using \u003ccode\u003e{x, y, z}\u003c/code\u003e coordinates or an explicit \u003ccode\u003egrid: [columns, rows, depth]\u003c/code\u003e triplet\u003c/li\u003e\n\u003cli\u003eThe \u003ccode\u003efrom\u003c/code\u003e parameter now accepts \u003ccode\u003e[x, y, z]\u003c/code\u003e normalized coordinates and \u003ccode\u003eaxis\u003c/code\u003e now accepts \u003ccode\u003e'z'\u003c/code\u003e for 3D grid origins\u003c/li\u003e\n\u003cli\u003eNew \u003ccode\u003ejitter\u003c/code\u003e parameter to add a random offset to staggered values, either a single number or a \u003ccode\u003e[start, end]\u003c/code\u003e range\u003c/li\u003e\n\u003cli\u003eNew \u003ccode\u003eseed\u003c/code\u003e parameter to make \u003ccode\u003ejitter\u003c/code\u003e and \u003ccode\u003efrom: 'random'\u003c/code\u003e reproducible\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBug Fixes and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eColor\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eColor animations now blend RGB channels in pseudo-linear space for smoother, more even transitions (intermediate colors differ slightly from previous versions)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRender\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eFix a flicker that could appear randomly between iterations of reversed loops\u003c/li\u003e\n\u003cli\u003eFix a flicker that could appear randomly on alternate loops when using non-integer duration values\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eTimeline\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eFix a backward seek leaving a timeline child stuck at its end value when all its properties share the same delay\u003c/li\u003e\n\u003cli\u003eFix a timeline child whose delay is longer than its duration overwriting a later sibling's value on a forward seek\u003c/li\u003e\n\u003cli\u003eFix stale values when seeking a timeline whose children animate the same property through delayed tweens, most visible with staggered \u003ccode\u003ejitter\u003c/code\u003e delays\u003c/li\u003e\n\u003cli\u003eFix an implicit \u003ccode\u003efrom\u003c/code\u003e value resolving to a stale value when an overridden tween sits earlier in the chain\u003c/li\u003e\n\u003cli\u003eImprove performance when building large timelines with many overlapping \u003ccode\u003e.add()\u003c/code\u003e calls on the same property, and fix a case where such a timeline could cancel itself\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eKeyframes\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eFix a floating point precision issue producing incorrect intermediate values in keyframe arrays\u003c/li\u003e\n\u003cli\u003eFix scrubbing backward past the start of a keyframe sequence not restoring the first keyframe's \u003ccode\u003efrom\u003c/code\u003e value\u003c/li\u003e\n\u003cli\u003eFix scrubbing forward past the end of a keyframe sequence leaving the target stuck on a previous keyframe's value\u003c/li\u003e\n\u003cli\u003eFix sequential keyframes occasionally detected as overlapping because of floating point drift, leaving the target stuck on the wrong value when scrubbing\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eAnimation\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eFix function-based and CSS variable \u003ccode\u003efrom\u003c/code\u003e values in object form (\u003ccode\u003e{ from, to }\u003c/code\u003e) not re-resolving on \u003ccode\u003erefresh()\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003estretch()\u003c/code\u003e not correctly scaling animations that use keyframes\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eScroll\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eFix a \u003ccode\u003egetBoundingClientRect\u003c/code\u003e crash that could happen when a scroll container resized before its target was ready\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eEngine\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eMore accurate frame scheduling that no longer drops frames arriving slightly early because of \u003ccode\u003erequestAnimationFrame\u003c/code\u003e jitter\u003c/li\u003e\n\u003cli\u003eFaster \u003ccode\u003eengine.speed\u003c/code\u003e and \u003ccode\u003eengine.timeUnit\u003c/code\u003e updates that skip unnecessary work when the value does not actually change\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.4.1\u003c/h2\u003e\n\u003ch2\u003eBug fix\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix a regression introduced in \u003ccode\u003e4.4.0\u003c/code\u003e with timeline \u003ccode\u003e.call()\u003c/code\u003e not triggering properly in some cases.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.4.0\u003c/h2\u003e\n\u003ch2\u003eBreaking Changes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eTransforms\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eTransforms now follow a fixed render order (\u003ccode\u003eperspective\u003c/code\u003e \u0026gt; \u003ccode\u003etranslate\u003c/code\u003e \u0026gt; \u003ccode\u003erotate\u003c/code\u003e \u0026gt; \u003ccode\u003escale\u003c/code\u003e \u0026gt; \u003ccode\u003eskew\u003c/code\u003e), regardless of the order they are defined in animation parameters:\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/2c9cf8ea00329f6768c7d7902252ed977d75ce42\"\u003e\u003ccode\u003e2c9cf8e\u003c/code\u003e\u003c/a\u003e Update README.md\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/34f417983c1d33103c5d6d50d1c435ef2787ece0\"\u003e\u003ccode\u003e34f4179\u003c/code\u003e\u003c/a\u003e 4.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/308c09346ffceeac67b27cbbe34881cbc8168e0f\"\u003e\u003ccode\u003e308c093\u003c/code\u003e\u003c/a\u003e 4.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/1578d99647f242b99f84446fc7efdb5b8326fd1d\"\u003e\u003ccode\u003e1578d99\u003c/code\u003e\u003c/a\u003e Update README.md\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/53338cbe7fb489ed8d8f968911fdaebe507dccfb\"\u003e\u003ccode\u003e53338cb\u003c/code\u003e\u003c/a\u003e Update README.md\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/4c5c85b8f2813370a224fc7ee7089fa4e86584a2\"\u003e\u003ccode\u003e4c5c85b\u003c/code\u003e\u003c/a\u003e 4.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/8816e4347973dae1c5677fccbebe437dc45432a6\"\u003e\u003ccode\u003e8816e43\u003c/code\u003e\u003c/a\u003e 4.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/3b369a4b1a98c90600502b1d94fad3c1bbfd7639\"\u003e\u003ccode\u003e3b369a4\u003c/code\u003e\u003c/a\u003e v4.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/1180369a5514f26ad77e1efae82fde6a691df391\"\u003e\u003ccode\u003e1180369\u003c/code\u003e\u003c/a\u003e Update README.md\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/d33098727cb28cc00ffd0116fd2751f1112eafdd\"\u003e\u003ccode\u003ed330987\u003c/code\u003e\u003c/a\u003e v4.3.5\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/juliangarnier/anime/compare/v3.2.2...v4.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `antd` from 6.4.3 to 6.5.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ant-design/ant-design/releases\"\u003eantd's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e6.5.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e🔥 Add the antd \u003ccode\u003eDESIGN.md\u003c/code\u003e design-language file and publish it at \u003ca href=\"https://ant.design/design.md\"\u003eant.design/design.md\u003c/a\u003e, helping AI design tools understand Ant Design visual language, component archetypes, and theme tokens. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58011\"\u003e#58011\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58356\"\u003e#58356\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58489\"\u003e#58489\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e📦 Optimize the antd full bundle size: compared with 6.4.5, size-limit reports \u003ccode\u003eantd.min.js\u003c/code\u003e down from \u003ccode\u003e437.05 KB\u003c/code\u003e to \u003ccode\u003e432.44 KB\u003c/code\u003e, and \u003ccode\u003eantd-with-locales.min.js\u003c/code\u003e down from \u003ccode\u003e514.19 KB\u003c/code\u003e to \u003ccode\u003e506.84 KB\u003c/code\u003e. The main gains come from slimmer DatePicker and TimePicker runtime code in \u003ccode\u003e@rc-component/picker\u003c/code\u003e, plus Icon/Upload avoiding extra TwoTone runtime in the full bundle. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58403\"\u003e#58403\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58497\"\u003e#58497\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIcon\n\u003cul\u003e\n\u003cli\u003e🔥 Add built-in Icon entries for Anthropic, Claude, Gemini, Mistral, DeepSeek, Qwen, Perplexity, HuggingFace, Ollama, Replicate, ElevenLabs, Telegram, Mastodon, Threads and Snapchat. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58524\"\u003e#58524\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\n\u003c!-- raw HTML omitted --\u003e\u003c/li\u003e\n\u003cli\u003e📦 Optimize Icon and Upload default icon imports by upgrading \u003ccode\u003e@ant-design/icons\u003c/code\u003e to \u003ccode\u003e6.3.1\u003c/code\u003e and switching Upload picture-list default placeholders to Outlined icons, reducing extra TwoTone runtime in the full bundle. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58497\"\u003e#58497\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Icon styles not working when \u003ccode\u003etheme.zeroRuntime\u003c/code\u003e is enabled. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58517\"\u003e#58517\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eInput\n\u003cul\u003e\n\u003cli\u003e🆕 Add Input.Password \u003ccode\u003evisibilityToggle.tabIndex\u003c/code\u003e to customize the visibility toggle button tab order. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58458\"\u003e#58458\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Input.Search not applying ConfigProvider root \u003ccode\u003estyle\u003c/code\u003e configuration. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58467\"\u003e#58467\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Input.Search losing \u003ccode\u003eenterButton.className\u003c/code\u003e. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58506\"\u003e#58506\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Fix Input.Search button height not aligning with Input token height. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58525\"\u003e#58525\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Add focus outline for borderless Input components. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58250\"\u003e#58250\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eSelect\n\u003cul\u003e\n\u003cli\u003e🆕 Add Select function-based \u003ccode\u003etokenSeparators\u003c/code\u003e support. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57966\"\u003e#57966\u003c/a\u003e \u003ca href=\"https://github.com/ZQDesigned\"\u003e\u003ccode\u003e@​ZQDesigned\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Select and related popup components numeric popup width rendering. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58511\"\u003e#58511\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Select creating disabled tags. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58518\"\u003e#58518\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Select single mode \u003ccode\u003elabelRender\u003c/code\u003e dimming while open. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58288\"\u003e#58288\u003c/a\u003e \u003ca href=\"https://github.com/kfylaktopoulos\"\u003e\u003ccode\u003e@​kfylaktopoulos\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eTable\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Table \u003ccode\u003edefaultSortOrder\u003c/code\u003e and controlled \u003ccode\u003esortOrder\u003c/code\u003e being ignored when the column is hidden by \u003ccode\u003eresponsive\u003c/code\u003e at the current breakpoint. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58008\"\u003e#58008\u003c/a\u003e \u003ca href=\"https://github.com/yogeshwaran-c\"\u003e\u003ccode\u003e@​yogeshwaran-c\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Table extra vertical line on the last fixed-right column in bordered mode. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58516\"\u003e#58516\u003c/a\u003e \u003ca href=\"https://github.com/uttam12331\"\u003e\u003ccode\u003e@​uttam12331\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e⌨️ Improve Table row selection checkbox accessibility by supporting \u003ccode\u003earia-*\u003c/code\u003e attributes from \u003ccode\u003egetCheckboxProps\u003c/code\u003e. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58275\"\u003e#58275\u003c/a\u003e \u003ca href=\"https://github.com/EmilyyyLiu\"\u003e\u003ccode\u003e@​EmilyyyLiu\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Fix Table sticky header top border missing in bordered mode. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58451\"\u003e#58451\u003c/a\u003e \u003ca href=\"https://github.com/BangDori\"\u003e\u003ccode\u003e@​BangDori\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eBorderBeam\n\u003cul\u003e\n\u003cli\u003e🆕 Add BorderBeam \u003ccode\u003eduration\u003c/code\u003e prop to control beam loop duration. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58233\"\u003e#58233\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🆕 Add BorderBeam \u003ccode\u003elineWidth\u003c/code\u003e prop to control beam width. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58324\"\u003e#58324\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🆕 Add BorderBeam \u003ccode\u003esize\u003c/code\u003e prop to control beam size. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58303\"\u003e#58303\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eBadge\n\u003cul\u003e\n\u003cli\u003e🆕 Add Badge \u003ccode\u003etitle\u003c/code\u003e prop to allow removing the native tooltip. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58209\"\u003e#58209\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Improve Badge processing status display in dark mode. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58414\"\u003e#58414\u003c/a\u003e \u003ca href=\"https://github.com/clxstart\"\u003e\u003ccode\u003e@​clxstart\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eLayout\n\u003cul\u003e\n\u003cli\u003e🆕 Add Layout.Sider semantic \u003ccode\u003eclassNames\u003c/code\u003e and \u003ccode\u003estyles\u003c/code\u003e support. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57938\"\u003e#57938\u003c/a\u003e \u003ca href=\"https://github.com/landeqiming666\"\u003e\u003ccode\u003e@​landeqiming666\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Layout.Header, Layout.Footer and Layout.Content losing default background when used standalone with \u003ccode\u003etheme.cssVar\u003c/code\u003e enabled. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58046\"\u003e#58046\u003c/a\u003e \u003ca href=\"https://github.com/yogeshwaran-c\"\u003e\u003ccode\u003e@​yogeshwaran-c\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003ePagination\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Pagination text wrapping and overflow in some scenarios. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58151\"\u003e#58151\u003c/a\u003e \u003ca href=\"https://github.com/selicens\"\u003e\u003ccode\u003e@​selicens\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Pagination quick jumper layout instability. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58282\"\u003e#58282\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eUpload\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Upload not showing file icon for failed files. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58484\"\u003e#58484\u003c/a\u003e \u003ca href=\"https://github.com/biubiukam\"\u003e\u003ccode\u003e@​biubiukam\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e⌨️ Improve Upload list item name accessibility when previewing files without a URL. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58092\"\u003e#58092\u003c/a\u003e \u003ca href=\"https://github.com/ug-one\"\u003e\u003ccode\u003e@​ug-one\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eAlert\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Alert icon vertical alignment when description content is provided. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57915\"\u003e#57915\u003c/a\u003e \u003ca href=\"https://github.com/MMMIXER\"\u003e\u003ccode\u003e@​MMMIXER\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Alert icon and close button not aligning with the first title line when only a title is provided. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57878\"\u003e#57878\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e📖 Improve AI agent support for the ant.design website and its \u003ca href=\"https://isitagentready.com/ant.design\"\u003eisitagentready.com/ant.design\u003c/a\u003e result. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58510\"\u003e#58510\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58490\"\u003e#58490\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57725\"\u003e#57725\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/ug-one\"\u003e\u003ccode\u003e@​ug-one\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e📖 Update Ant Design CLI docs with \u003ccode\u003eantd setup\u003c/code\u003e, Node.js \u003ccode\u003e\u0026gt;=20.0.0\u003c/code\u003e requirement, MCP version auto-detection, and environment variable notes, and sync the For Agents and MCP Server docs in both languages. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58460\"\u003e#58460\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix antd root semantic \u003ccode\u003estyle\u003c/code\u003e priority across components to ensure component \u003ccode\u003estyle\u003c/code\u003e overrides global \u003ccode\u003estyles.root\u003c/code\u003e and \u003ccode\u003estyle\u003c/code\u003e configuration. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58474\"\u003e#58474\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Improve Component Token small control height in compact theme to avoid cramped line boxes. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58411\"\u003e#58411\u003c/a\u003e \u003ca href=\"https://github.com/nightt5879\"\u003e\u003ccode\u003e@​nightt5879\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Anchor hash parsing performance issue with specially crafted hash values. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58472\"\u003e#58472\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🆕 Add Collapse \u003ccode\u003eheaderPaddingSM\u003c/code\u003e, \u003ccode\u003eheaderPaddingLG\u003c/code\u003e, \u003ccode\u003econtentPaddingSM\u003c/code\u003e, and \u003ccode\u003econtentPaddingLG\u003c/code\u003e tokens to configure header and content padding for small and large sizes separately. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58436\"\u003e#58436\u003c/a\u003e \u003ca href=\"https://github.com/biubiukam\"\u003e\u003ccode\u003e@​biubiukam\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🆕 Add ConfigProvider form \u003ccode\u003elabelWrap\u003c/code\u003e configuration support. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58035\"\u003e#58035\u003c/a\u003e \u003ca href=\"https://github.com/EmilyyyLiu\"\u003e\u003ccode\u003e@​EmilyyyLiu\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ant-design/ant-design/blob/master/CHANGELOG.en-US.md\"\u003eantd's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e6.5.0\u003c/h2\u003e\n\u003cp\u003e\u003ccode\u003e2026-06-27\u003c/code\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e🔥 Add the antd \u003ccode\u003eDESIGN.md\u003c/code\u003e design-language file and publish it at \u003ca href=\"https://ant.design/design.md\"\u003eant.design/design.md\u003c/a\u003e, helping AI design tools understand Ant Design visual language, component archetypes, and theme tokens. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58011\"\u003e#58011\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58356\"\u003e#58356\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58489\"\u003e#58489\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e📦 Optimize the antd full bundle size: compared with 6.4.5, size-limit reports \u003ccode\u003eantd.min.js\u003c/code\u003e down from \u003ccode\u003e437.05 KB\u003c/code\u003e to \u003ccode\u003e432.44 KB\u003c/code\u003e, and \u003ccode\u003eantd-with-locales.min.js\u003c/code\u003e down from \u003ccode\u003e514.19 KB\u003c/code\u003e to \u003ccode\u003e506.84 KB\u003c/code\u003e. The main gains come from slimmer DatePicker and TimePicker runtime code in \u003ccode\u003e@rc-component/picker\u003c/code\u003e, plus Icon/Upload avoiding extra TwoTone runtime in the full bundle. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58403\"\u003e#58403\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58497\"\u003e#58497\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIcon\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e🔥 Add built-in Icon entries for Anthropic, Claude, Gemini, Mistral, DeepSeek, Qwen, Perplexity, HuggingFace, Ollama, Replicate, ElevenLabs, Telegram, Mastodon, Threads and Snapchat. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58524\"\u003e#58524\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e📦 Optimize Icon and Upload default icon imports by upgrading \u003ccode\u003e@ant-design/icons\u003c/code\u003e to \u003ccode\u003e6.3.1\u003c/code\u003e and switching Upload picture-list default placeholders to Outlined icons, reducing extra TwoTone runtime in the full bundle. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58497\"\u003e#58497\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e🐞 Fix Icon styles not working when \u003ccode\u003etheme.zeroRuntime\u003c/code\u003e is enabled. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58517\"\u003e#58517\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eInput\n\u003cul\u003e\n\u003cli\u003e🆕 Add Input.Password \u003ccode\u003evisibilityToggle.tabIndex\u003c/code\u003e to customize the visibility toggle button tab order. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58458\"\u003e#58458\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Input.Search not applying ConfigProvider root \u003ccode\u003estyle\u003c/code\u003e configuration. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58467\"\u003e#58467\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Input.Search losing \u003ccode\u003eenterButton.className\u003c/code\u003e. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58506\"\u003e#58506\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Fix Input.Search button height not aligning with Input token height. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58525\"\u003e#58525\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Add focus outline for borderless Input components. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58250\"\u003e#58250\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eSelect\n\u003cul\u003e\n\u003cli\u003e🆕 Add Select function-based \u003ccode\u003etokenSeparators\u003c/code\u003e support. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57966\"\u003e#57966\u003c/a\u003e \u003ca href=\"https://github.com/ZQDesigned\"\u003e\u003ccode\u003e@​ZQDesigned\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Select and related popup components numeric popup width rendering. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58511\"\u003e#58511\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Select creating disabled tags. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58518\"\u003e#58518\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Select single mode \u003ccode\u003elabelRender\u003c/code\u003e dimming while open. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58288\"\u003e#58288\u003c/a\u003e \u003ca href=\"https://github.com/kfylaktopoulos\"\u003e\u003ccode\u003e@​kfylaktopoulos\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eTable\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Table \u003ccode\u003edefaultSortOrder\u003c/code\u003e and controlled \u003ccode\u003esortOrder\u003c/code\u003e being ignored when the column is hidden by \u003ccode\u003eresponsive\u003c/code\u003e at the current breakpoint. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58008\"\u003e#58008\u003c/a\u003e \u003ca href=\"https://github.com/yogeshwaran-c\"\u003e\u003ccode\u003e@​yogeshwaran-c\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Table extra vertical line on the last fixed-right column in bordered mode. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58516\"\u003e#58516\u003c/a\u003e \u003ca href=\"https://github.com/uttam12331\"\u003e\u003ccode\u003e@​uttam12331\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e⌨️ Improve Table row selection checkbox accessibility by supporting \u003ccode\u003earia-*\u003c/code\u003e attributes from \u003ccode\u003egetCheckboxProps\u003c/code\u003e. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58275\"\u003e#58275\u003c/a\u003e \u003ca href=\"https://github.com/EmilyyyLiu\"\u003e\u003ccode\u003e@​EmilyyyLiu\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Fix Table sticky header top border missing in bordered mode. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58451\"\u003e#58451\u003c/a\u003e \u003ca href=\"https://github.com/BangDori\"\u003e\u003ccode\u003e@​BangDori\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eBorderBeam\n\u003cul\u003e\n\u003cli\u003e🆕 Add BorderBeam \u003ccode\u003eduration\u003c/code\u003e prop to control beam loop duration. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58233\"\u003e#58233\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🆕 Add BorderBeam \u003ccode\u003elineWidth\u003c/code\u003e prop to control beam width. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58324\"\u003e#58324\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🆕 Add BorderBeam \u003ccode\u003esize\u003c/code\u003e prop to control beam size. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58303\"\u003e#58303\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eBadge\n\u003cul\u003e\n\u003cli\u003e🆕 Add Badge \u003ccode\u003etitle\u003c/code\u003e prop to allow removing the native tooltip. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58209\"\u003e#58209\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Improve Badge processing status display in dark mode. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58414\"\u003e#58414\u003c/a\u003e \u003ca href=\"https://github.com/clxstart\"\u003e\u003ccode\u003e@​clxstart\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eLayout\n\u003cul\u003e\n\u003cli\u003e🆕 Add Layout.Sider semantic \u003ccode\u003eclassNames\u003c/code\u003e and \u003ccode\u003estyles\u003c/code\u003e support. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57938\"\u003e#57938\u003c/a\u003e \u003ca href=\"https://github.com/landeqiming666\"\u003e\u003ccode\u003e@​landeqiming666\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Layout.Header, Layout.Footer and Layout.Content losing default background when used standalone with \u003ccode\u003etheme.cssVar\u003c/code\u003e enabled. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58046\"\u003e#58046\u003c/a\u003e \u003ca href=\"https://github.com/yogeshwaran-c\"\u003e\u003ccode\u003e@​yogeshwaran-c\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003ePagination\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Pagination text wrapping and overflow in some scenarios. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58151\"\u003e#58151\u003c/a\u003e \u003ca href=\"https://github.com/selicens\"\u003e\u003ccode\u003e@​selicens\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Pagination quick jumper layout instability. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58282\"\u003e#58282\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eUpload\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Upload not showing file icon for failed files. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58484\"\u003e#58484\u003c/a\u003e \u003ca href=\"https://github.com/biubiukam\"\u003e\u003ccode\u003e@​biubiukam\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e⌨️ Improve Upload list item name accessibility when previewing files without a URL. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58092\"\u003e#58092\u003c/a\u003e \u003ca href=\"https://github.com/ug-one\"\u003e\u003ccode\u003e@​ug-one\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eAlert\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Alert icon vertical alignment when description content is provided. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57915\"\u003e#57915\u003c/a\u003e \u003ca href=\"https://github.com/MMMIXER\"\u003e\u003ccode\u003e@​MMMIXER\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Alert icon and close button not aligning with the first title line when only a title is provided. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57878\"\u003e#57878\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e📖 Improve AI agent support for the ant.design website and its \u003ca href=\"https://isitagentready.com/ant.design\"\u003eisitagentready.com/ant.design\u003c/a\u003e result. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58510\"\u003e#58510\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58490\"\u003e#58490\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57725\"\u003e#57725\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/ug-one\"\u003e\u003ccode\u003e@​ug-one\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e📖 Update Ant Design CLI docs with \u003ccode\u003eantd setup\u003c/code\u003e, Node.js \u003ccode\u003e\u0026gt;=20.0.0\u003c/code\u003e requirement, MCP version auto-detection, and environment variable notes, and sync the For Agents and MCP Server docs in both languages. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58460\"\u003e#58460\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/740ad964dc2397f33e40944367b0536a7314cc32\"\u003e\u003ccode\u003e740ad96\u003c/code\u003e\u003c/a\u003e ci: rm action version comment (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/58536\"\u003e#58536\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/3b44cef6d9c7de3f777b774b721d8b73ecfdd132\"\u003e\u003ccode\u003e3b44cef\u003c/code\u003e\u003c/a\u003e docs: add changelog for 6.5.0 (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/58527\"\u003e#58527\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/c94729da43072dcf5940971f9d521ce72031e7e2\"\u003e\u003ccode\u003ec94729d\u003c/code\u003e\u003c/a\u003e revert: remove rate star border tokens (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/58535\"\u003e#58535\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/8856f85440be1698a5dc4947cc8fd5e9208b02b5\"\u003e\u003ccode\u003e8856f85\u003c/code\u003e\u003c/a\u003e type: typeScript definition improvement (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/58534\"\u003e#58534\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/b0272e2abf1940e5fdd75cc4cccc2153767fac13\"\u003e\u003ccode\u003eb0272e2\u003c/code\u003e\u003c/a\u003e fix(Descriptions): apply labelStyle/contentStyle to bordered cells\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/6a3a64141af825983b418f81f2ed1ce97f015c5c\"\u003e\u003ccode\u003e6a3a641\u003c/code\u003e\u003c/a\u003e fix: remove subpixel offset from Steps rail\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/81105082362b9d3578e8c11ee7f9c7de3be2e8dc\"\u003e\u003ccode\u003e8110508\u003c/code\u003e\u003c/a\u003e fix(Alert): align icon and close button for title-only alerts (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/57878\"\u003e#57878\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/0a8fb57ab12bc74fde2f076f7500af73129dbb62\"\u003e\u003ccode\u003e0a8fb57\u003c/code\u003e\u003c/a\u003e chore(deps): update dependency eslint to v10.6.0 (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/58532\"\u003e#58532\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/6b7a789c7f21b8ed7c8d05cd5319740e0e18a6ed\"\u003e\u003ccode\u003e6b7a789\u003c/code\u003e\u003c/a\u003e chore(deps): update dependency \u003ccode\u003e@​google/design\u003c/code\u003e.md to ^0.3.0 (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/58531\"\u003e#58531\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/7b1f0268a4035fdb9ec38b49e1272dc3c72fa6f9\"\u003e\u003ccode\u003e7b1f026\u003c/code\u003e\u003c/a\u003e chore(deps): update actions/cache digest to 55cc834 (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/58530\"\u003e#58530\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/ant-design/ant-design/compare/6.4.3...6.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `autoprefixer` from 10.4.27 to 10.5.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/autoprefixer/releases\"\u003eautoprefixer's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e10.5.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMoved \u003ccode\u003e-webkit-fill-available\u003c/code\u003e before \u003ccode\u003e-moz-available\u003c/code\u003e, so Firefox\nwill use \u003ccode\u003e-webkit-\u003c/code\u003e version which is closer to \u003ccode\u003estretch\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.5.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003egrid-area\u003c/code\u003e span reset for overriding areas (by \u003ca href=\"https://github.com/puneetdixit200\"\u003e\u003ccode\u003e@​puneetdixit200\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.5.0 “Each Endeavouring, All Achieving”\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003emask-position-x\u003c/code\u003e and \u003ccode\u003emask-position-y\u003c/code\u003e support (by \u003ca href=\"https://github.com/toporek\"\u003e\u003ccode\u003e@​toporek\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/autoprefixer/blob/main/CHANGELOG.md\"\u003eautoprefixer's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e10.5.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMoved \u003ccode\u003e-webkit-fill-available\u003c/code\u003e before \u003ccode\u003e-moz-available\u003c/code\u003e, so Firefox\nwill use \u003ccode\u003e-webkit-\u003c/code\u003e version which is closer to \u003ccode\u003estretch\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.5.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003egrid-area\u003c/code\u003e span reset for overriding areas (by \u003ca href=\"https://github.com/puneetdixit200\"\u003e\u003ccode\u003e@​puneetdixit200\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.5.0 “Each Endeavouring, All Achieving”\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003emask-position-x\u003c/code\u003e and \u003ccode\u003emask-position-y\u003c/code\u003e support (by \u003ca href=\"https://github.com/toporek\"\u003e\u003ccode\u003e@​toporek\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/e99e38122ce706747c903ef321a3c1df2d7ada3e\"\u003e\u003ccode\u003ee99e381\u003c/code\u003e\u003c/a\u003e Release 10.5.2 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/98de3f5238ba92ce3bbf1a36b52cafcb44cddcfb\"\u003e\u003ccode\u003e98de3f5\u003c/code\u003e\u003c/a\u003e Move -webkit-fill-available before -moz-available to get a closer to spec res...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/8fe2513502248c84ea5a6c35a3f843cb9dd7e682\"\u003e\u003ccode\u003e8fe2513\u003c/code\u003e\u003c/a\u003e Release 10.5.1 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/60ea6516dbf9efa9fe2dfeddac6b638904a93e52\"\u003e\u003ccode\u003e60ea651\u003c/code\u003e\u003c/a\u003e Update release process\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/cbd4a70f5fad6b5325f31836161ed70b5837a915\"\u003e\u003ccode\u003ecbd4a70\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/ffae49ff54e1a487124116844d538016aa809449\"\u003e\u003ccode\u003effae49f\u003c/code\u003e\u003c/a\u003e fix: reset grid area spans when overriding areas (\u003ca href=\"https://redirect.github.com/postcss/autoprefixer/issues/1549\"\u003e#1549\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/d90ad86a4e5f938c0e11cf15d1cf3ced900b94cb\"\u003e\u003ccode\u003ed90ad86\u003c/code\u003e\u003c/a\u003e Fix CI\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/a0f701bae5104043fc971452dc29e7adf1fc227a\"\u003e\u003ccode\u003ea0f701b\u003c/code\u003e...\n\n_Description has been truncated_","html_url":"https://github.com/ahmedchoudery/Stop-Shop/pull/4","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/ahmedchoudery%2FStop-Shop/issues/4","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/4/packages"},{"uuid":"4791849941","node_id":"PR_kwDOSqdGFs7s_cUc","number":12,"state":"open","title":"Bump the server-dependencies group across 1 directory with 11 updates","user":"dependabot[bot]","labels":[],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-07-02T06:25:30.000Z","updated_at":"2026-07-02T06:25:30.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"server-dependencies","update_count":11,"packages":[{"name":"axios","old_version":"1.16.1","new_version":"1.18.1","repository_url":"https://github.com/axios/axios"},{"name":"body-parser","old_version":"2.2.2","new_version":"2.3.0","repository_url":"https://github.com/expressjs/body-parser"},{"name":"fs-extra","old_version":"11.3.5","new_version":"11.3.6","repository_url":"https://github.com/jprichardson/node-fs-extra"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"node-red","old_version":"4.1.10","new_version":"5.0.1","repository_url":"https://github.com/node-red/node-red"},{"name":"nodemailer","old_version":"8.0.9","new_version":"9.0.3","repository_url":"https://github.com/nodemailer/nodemailer"},{"name":"nopt","old_version":"9.0.0","new_version":"10.0.1","repository_url":"https://github.com/npm/nopt"},{"name":"pdfmake","old_version":"0.3.9","new_version":"0.3.11","repository_url":"https://github.com/bpampuch/pdfmake"},{"name":"pg","old_version":"8.21.0","new_version":"8.22.0","repository_url":"https://github.com/brianc/node-postgres"},{"name":"@playwright/test","old_version":"1.60.0","new_version":"1.61.1","repository_url":"https://github.com/microsoft/playwright"},{"name":"typescript","old_version":"5.9.3","new_version":"6.0.3","repository_url":"https://github.com/microsoft/TypeScript"}],"path":null,"ecosystem":"npm"},"body":"Bumps the server-dependencies group with 11 updates in the /server directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [axios](https://github.com/axios/axios) | `1.16.1` | `1.18.1` |\n| [body-parser](https://github.com/expressjs/body-parser) | `2.2.2` | `2.3.0` |\n| [fs-extra](https://github.com/jprichardson/node-fs-extra) | `11.3.5` | `11.3.6` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [node-red](https://github.com/node-red/node-red) | `4.1.10` | `5.0.1` |\n| [nodemailer](https://github.com/nodemailer/nodemailer) | `8.0.9` | `9.0.3` |\n| [nopt](https://github.com/npm/nopt) | `9.0.0` | `10.0.1` |\n| [pdfmake](https://github.com/bpampuch/pdfmake) | `0.3.9` | `0.3.11` |\n| [pg](https://github.com/brianc/node-postgres/tree/HEAD/packages/pg) | `8.21.0` | `8.22.0` |\n| [@playwright/test](https://github.com/microsoft/playwright) | `1.60.0` | `1.61.1` |\n| [typescript](https://github.com/microsoft/TypeScript) | `5.9.3` | `6.0.3` |\n\n\nUpdates `axios` from 1.16.1 to 1.18.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/releases\"\u003eaxios's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.18.1 — June 21, 2026\u003c/h2\u003e\n\u003cp\u003eThis release focuses on Node HTTP adapter fixes, safer AxiosError serialisation, runtime/type correctness fixes, documentation updates, and dependency maintenance.\u003c/p\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAxiosError Serialisation: Made AxiosError#cause non-enumerable to prevent circular JSON serialisation failures when errors include nested causes. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10913\"\u003e#10913\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eNode HTTP Adapter: Guarded socket.setKeepAlive for proxy agent streams, accepted path-only URLs when socketPath is configured, deferred environment proxy handling to Node, and explicitly passed maxBodyLength through to follow-redirects. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10917\"\u003e#10917\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/10930\"\u003e#10930\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/10942\"\u003e#10942\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/10993\"\u003e#10993\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRuntime and Type Correctness: Fixed several runtime crashes, type definition mismatches, and incorrect error handling paths. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10959\"\u003e#10959\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11021\"\u003e#11021\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAxiosURLSearchParams: Switched the encoder callback to an arrow function so \u003ccode\u003eencoder.call(this)\u003c/code\u003e receives the \u003ccode\u003eAxiosURLSearchParams\u003c/code\u003e instance correctly. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11019\"\u003e#11019\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eDocumentation: Documented sensitive headers and status transition behaviour, prepared cleaned-up docs, added Deno install instructions, and clarified that request data is request-specific (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11007\"\u003e#11007\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11010\"\u003e#11010\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11023\"\u003e#11023\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11025\"\u003e#11025\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDependencies: Bumped vite, rollup, form-data, js-yaml, and multer across the root project, docs, smoke tests, and module test workspaces. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11011\"\u003e#11011\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11012\"\u003e#11012\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11013\"\u003e#11013\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11014\"\u003e#11014\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11015\"\u003e#11015\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11016\"\u003e#11016\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11017\"\u003e#11017\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11026\"\u003e#11026\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🌟 New Contributors\u003c/h2\u003e\n\u003cp\u003eWe are thrilled to welcome our new contributors. Thank you for helping improve axios:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webdevelopersrinu\"\u003e\u003ccode\u003e@​webdevelopersrinu\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10913\"\u003e#10913\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sijie-Z\"\u003e\u003ccode\u003e@​sijie-Z\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10993\"\u003e#10993\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bartlomieju\"\u003e\u003ccode\u003e@​bartlomieju\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11023\"\u003e#11023\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/JSap0914\"\u003e\u003ccode\u003e@​JSap0914\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11019\"\u003e#11019\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/axios/axios/compare/v1.18.0...v1.18.1\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev1.18.0 — June 13, 2026\u003c/h2\u003e\n\u003cp\u003eThis release hardens redirect and URL handling, improves the validateStatus configuration semantics, and includes updates to documentation, dependencies, and release metadata.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRedirect Header Safety:\u003c/strong\u003e Added Node HTTP adapter support for stripping caller-specified sensitive headers on cross-origin redirects, helping prevent custom auth headers such as API keys from leaking to another origin. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10892\"\u003e#10892\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eURL And Request Hardening:\u003c/strong\u003e Rejects malformed \u003ccode\u003ehttp:\u003c/code\u003e and \u003ccode\u003ehttps:\u003c/code\u003e URLs that omit \u003ccode\u003e//\u003c/code\u003e with \u003ccode\u003eERR_INVALID_URL\u003c/code\u003e, while tightening prototype-pollution-safe config reads, stream size limits, FormData depth handling, data URL sizing, and local \u003ccode\u003eNO_PROXY\u003c/code\u003e matching. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11000\"\u003e#11000\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eStatus Validation:\u003c/strong\u003e Added \u003ccode\u003etransitional.validateStatusUndefinedResolves\u003c/code\u003e so applications can opt in to treating \u003ccode\u003evalidateStatus: undefined\u003c/code\u003e like the option was omitted, while \u003ccode\u003evalidateStatus: null\u003c/code\u003e remains the explicit way to accept every status. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDocumentation:\u003c/strong\u003e Published the v1.17.0 release notes, fixed a changelog typo, clarified the package update PR policy, and marked the \u003ccode\u003eproxy\u003c/code\u003e request config as Node.js-only in the advanced docs. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10984\"\u003e#10984\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10988\"\u003e#10988\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10992\"\u003e#10992\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDependencies:\u003c/strong\u003e Bumped \u003ccode\u003e@babel/core\u003c/code\u003e, \u003ccode\u003e@babel/preset-env\u003c/code\u003e, \u003ccode\u003e@commitlint/cli\u003c/code\u003e, \u003ccode\u003e@commitlint/config-conventional\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-babel\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-commonjs\u003c/code\u003e, \u003ccode\u003e@vitest/browser\u003c/code\u003e, \u003ccode\u003e@vitest/browser-playwright\u003c/code\u003e, \u003ccode\u003eeslint\u003c/code\u003e, \u003ccode\u003elint-staged\u003c/code\u003e, \u003ccode\u003erollup\u003c/code\u003e, \u003ccode\u003evitest\u003c/code\u003e, and \u003ccode\u003eactions/checkout\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10989\"\u003e#10989\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10996\"\u003e#10996\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10997\"\u003e#10997\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRelease Metadata:\u003c/strong\u003e Prepared the 1.18.0 release by updating package metadata and the runtime \u003ccode\u003eVERSION\u003c/code\u003e value. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11003\"\u003e#11003\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/blob/v1.x/CHANGELOG.md\"\u003eaxios's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003ch2\u003ev1.18.0 — June 13, 2026\u003c/h2\u003e\n\u003cp\u003eThis release hardens redirect and URL handling, improves the validateStatus configuration semantics, and includes updates to documentation, dependencies, and release metadata.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRedirect Header Safety:\u003c/strong\u003e Added Node HTTP adapter support for stripping caller-specified sensitive headers on cross-origin redirects, helping prevent custom auth headers such as API keys from leaking to another origin. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10892\"\u003e#10892\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eURL And Request Hardening:\u003c/strong\u003e Rejects malformed \u003ccode\u003ehttp:\u003c/code\u003e and \u003ccode\u003ehttps:\u003c/code\u003e URLs that omit \u003ccode\u003e//\u003c/code\u003e with \u003ccode\u003eERR_INVALID_URL\u003c/code\u003e, while tightening prototype-pollution-safe config reads, stream size limits, FormData depth handling, data URL sizing, and local \u003ccode\u003eNO_PROXY\u003c/code\u003e matching. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11000\"\u003e#11000\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eStatus Validation:\u003c/strong\u003e Added \u003ccode\u003etransitional.validateStatusUndefinedResolves\u003c/code\u003e so applications can opt in to treating \u003ccode\u003evalidateStatus: undefined\u003c/code\u003e like the option was omitted, while \u003ccode\u003evalidateStatus: null\u003c/code\u003e remains the explicit way to accept every status. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDocumentation:\u003c/strong\u003e Published the v1.17.0 release notes, fixed a changelog typo, clarified the package update PR policy, and marked the \u003ccode\u003eproxy\u003c/code\u003e request config as Node.js-only in the advanced docs. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10984\"\u003e#10984\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10988\"\u003e#10988\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10992\"\u003e#10992\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDependencies:\u003c/strong\u003e Bumped \u003ccode\u003e@babel/core\u003c/code\u003e, \u003ccode\u003e@babel/preset-env\u003c/code\u003e, \u003ccode\u003e@commitlint/cli\u003c/code\u003e, \u003ccode\u003e@commitlint/config-conventional\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-babel\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-commonjs\u003c/code\u003e, \u003ccode\u003e@vitest/browser\u003c/code\u003e, \u003ccode\u003e@vitest/browser-playwright\u003c/code\u003e, \u003ccode\u003eeslint\u003c/code\u003e, \u003ccode\u003elint-staged\u003c/code\u003e, \u003ccode\u003erollup\u003c/code\u003e, \u003ccode\u003evitest\u003c/code\u003e, and \u003ccode\u003eactions/checkout\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10989\"\u003e#10989\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10996\"\u003e#10996\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10997\"\u003e#10997\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRelease Metadata:\u003c/strong\u003e Prepared the 1.18.0 release by updating package metadata and the runtime \u003ccode\u003eVERSION\u003c/code\u003e value. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11003\"\u003e#11003\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🌟 New Contributors\u003c/h2\u003e\n\u003cp\u003eWe are thrilled to welcome our new contributors. Thank you for helping improve axios:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/drori12\"\u003e\u003ccode\u003e@​drori12\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10984\"\u003e#10984\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/eyupcanakman\"\u003e\u003ccode\u003e@​eyupcanakman\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/Adi-Beker\"\u003e\u003ccode\u003e@​Adi-Beker\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/axios/axios/compare/v1.17.0...v1.18.0\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev1.17.0 — June 1, 2026\u003c/h2\u003e\n\u003cp\u003eThis release adds Node HTTP zstd decompression, hardens config and release workflows, and fixes authentication, header, proxy, and type-handling regressions.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eConfig Hardening:\u003c/strong\u003e Guarded \u003ccode\u003esocketPath\u003c/code\u003e, \u003ccode\u003eparams\u003c/code\u003e, and \u003ccode\u003eparamsSerializer\u003c/code\u003e reads with own-property checks to prevent inherited prototype values from affecting request behavior, including SSRF-sensitive paths. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10901\"\u003e#10901\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10922\"\u003e#10922\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRelease Publishing:\u003c/strong\u003e Switched the publish workflow to npm staged publishing for safer, auditable package releases with provenance. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10926\"\u003e#10926\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🚀 New Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eHTTP Compression:\u003c/strong\u003e Added Node HTTP adapter support for zstd response decompression, with \u003ccode\u003etransitional.advertiseZstdAcceptEncoding\u003c/code\u003e controlling whether \u003ccode\u003ezstd\u003c/code\u003e is advertised in \u003ccode\u003eAccept-Encoding\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/6792\"\u003e#6792\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10920\"\u003e#10920\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eAuthentication Handling:\u003c/strong\u003e Restored Basic auth on same-origin Node redirects while continuing to strip credentials cross-origin, and aligned the fetch adapter with HTTP adapter behavior for URL-embedded Basic auth. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10929\"\u003e#10929\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/a209bfb1e5dcbce3cecbf4bd955339d006358887\"\u003e\u003ccode\u003ea209bfb\u003c/code\u003e\u003c/a\u003e chore(release): prepare release 1.18.1 (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11027\"\u003e#11027\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/fa6a55ef99235074d2c11d80a1064ef02850d598\"\u003e\u003ccode\u003efa6a55e\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump multer from 2.1.1 to 2.2.0 (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11026\"\u003e#11026\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/40e7be8a78dd43caaeb2313cc4be3f8e714be91d\"\u003e\u003ccode\u003e40e7be8\u003c/code\u003e\u003c/a\u003e docs: clarifies that request data is request-specific in axios (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11025\"\u003e#11025\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/a446b39b19c8b570214a4158520c5ddd5b020366\"\u003e\u003ccode\u003ea446b39\u003c/code\u003e\u003c/a\u003e fix(AxiosURLSearchParams): use arrow function so encoder.call(this) receives ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/cf1306a42d97960b635c894c83658f2692e53585\"\u003e\u003ccode\u003ecf1306a\u003c/code\u003e\u003c/a\u003e docs: add Deno to install instructions (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11023\"\u003e#11023\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/b32880af48017457a1203ab2e63720902d3b71b3\"\u003e\u003ccode\u003eb32880a\u003c/code\u003e\u003c/a\u003e fix: incorrect use of error (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11021\"\u003e#11021\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/1792eda11aff8fe0f8c8a6e5ae6ff305740a6460\"\u003e\u003ccode\u003e1792eda\u003c/code\u003e\u003c/a\u003e fix: ensure maxBodyLength is explicitly passed to follow-redirects (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10993\"\u003e#10993\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/30499d6af0961ec38619792013a534d1933b08a9\"\u003e\u003ccode\u003e30499d6\u003c/code\u003e\u003c/a\u003e fix: various runtime crashes and type definition mismatches (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10959\"\u003e#10959\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/20ce9c412ebd88823d1a4a47000cb133a8f79440\"\u003e\u003ccode\u003e20ce9c4\u003c/code\u003e\u003c/a\u003e fix(http): defer env proxy handling to Node (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10942\"\u003e#10942\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/e64bcf9c5af231d6f37d8389b1e57ded314fff86\"\u003e\u003ccode\u003ee64bcf9\u003c/code\u003e\u003c/a\u003e chore(deps): merge branch 'v1.x' into tests/module/cjs (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11014\"\u003e#11014\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/axios/axios/compare/v1.16.1...v1.18.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `body-parser` from 2.2.2 to 2.3.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/body-parser/releases\"\u003ebody-parser's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.3.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ebuild(deps): bump actions/download-artifact from 6.0.0 to 7.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/681\"\u003eexpressjs/body-parser#681\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/checkout from 5.0.0 to 6.0.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/682\"\u003eexpressjs/body-parser#682\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.0.0 to 6.1.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/683\"\u003eexpressjs/body-parser#683\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/upload-artifact from 5.0.0 to 6.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/685\"\u003eexpressjs/body-parser#685\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.31.2 to 4.31.9 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/684\"\u003eexpressjs/body-parser#684\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eperf(urlencoded): move empty-body guard to avoid extra function closure by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/647\"\u003eexpressjs/body-parser#647\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove ESM compatibility by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/697\"\u003eexpressjs/body-parser#697\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: add recommendations for configuring payload limits by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/699\"\u003eexpressjs/body-parser#699\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.1.0 to 6.2.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/701\"\u003eexpressjs/body-parser#701\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.31.10 to 4.32.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/702\"\u003eexpressjs/body-parser#702\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/checkout from 6.0.1 to 6.0.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/700\"\u003eexpressjs/body-parser#700\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore:  add explicit type commonjs to package.json by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/711\"\u003eexpressjs/body-parser#711\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps: update dependencies to latest versions by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/708\"\u003eexpressjs/body-parser#708\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/download-artifact from 7.0.0 to 8.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/712\"\u003eexpressjs/body-parser#712\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.32.0 to 4.32.4 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/713\"\u003eexpressjs/body-parser#713\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/upload-artifact from 6.0.0 to 7.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/714\"\u003eexpressjs/body-parser#714\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: improve limit option validation by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/698\"\u003eexpressjs/body-parser#698\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.32.4 to 4.35.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/719\"\u003eexpressjs/body-parser#719\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.2.0 to 6.3.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/718\"\u003eexpressjs/body-parser#718\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/download-artifact from 8.0.0 to 8.0.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/717\"\u003eexpressjs/body-parser#717\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eperf: eliminate conditional check in json strict mode hot path by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/651\"\u003eexpressjs/body-parser#651\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add node.js 26 to text matrix by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/726\"\u003eexpressjs/body-parser#726\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.3.0 to 6.4.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/725\"\u003eexpressjs/body-parser#725\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/724\"\u003eexpressjs/body-parser#724\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.35.1 to 4.35.3 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/723\"\u003eexpressjs/body-parser#723\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade \u0026quot;content-type\u0026quot; by \u003ca href=\"https://github.com/blakeembrey\"\u003e\u003ccode\u003e@​blakeembrey\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/728\"\u003eexpressjs/body-parser#728\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: switch to const/let and enable eslint no-var rule by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/729\"\u003eexpressjs/body-parser#729\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate outdated reference to MDN docs by \u003ca href=\"https://github.com/krzysdz\"\u003e\u003ccode\u003e@​krzysdz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/730\"\u003eexpressjs/body-parser#730\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.35.3 to 4.36.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/731\"\u003eexpressjs/body-parser#731\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/checkout from 6.0.2 to 6.0.3 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/732\"\u003eexpressjs/body-parser#732\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: updated deps to latest by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/733\"\u003eexpressjs/body-parser#733\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e2.3.0 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/735\"\u003eexpressjs/body-parser#735\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/krzysdz\"\u003e\u003ccode\u003e@​krzysdz\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/730\"\u003eexpressjs/body-parser#730\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/body-parser/compare/v2.2.2...v2.3.0\"\u003ehttps://github.com/expressjs/body-parser/compare/v2.2.2...v2.3.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/body-parser/blob/master/HISTORY.md\"\u003ebody-parser's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e2.3.0 / 2026-06-15\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003efix: use static exports instead of lazy getters to improve ESM compatibility\u003c/li\u003e\n\u003cli\u003efeat: add subpath exports for individual parsers\u003c/li\u003e\n\u003cli\u003efix: improve \u003ccode\u003elimit\u003c/code\u003e option validation (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/698\"\u003e#698\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eInvalid \u003ccode\u003elimit\u003c/code\u003e values (e.g. unparseable strings or \u003ccode\u003eNaN\u003c/code\u003e) now throw instead of being silently ignored, which previously disabled size limit enforcement\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enull\u003c/code\u003e and \u003ccode\u003eundefined\u003c/code\u003e fall back to the default 100kb limit\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps:\n\u003cul\u003e\n\u003cli\u003econtent-type@^2.0.0\u003c/li\u003e\n\u003cli\u003ehttp-errors@^2.0.1\u003c/li\u003e\n\u003cli\u003eiconv-lite^0.7.2\u003c/li\u003e\n\u003cli\u003eqs@^6.15.2\u003c/li\u003e\n\u003cli\u003eraw-body@^3.0.2\u003c/li\u003e\n\u003cli\u003etype-is@^2.1.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/d0f2ace6c74769da7d19b8661b9a01c01bdb0bf7\"\u003e\u003ccode\u003ed0f2ace\u003c/code\u003e\u003c/a\u003e 2.3.0 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/735\"\u003e#735\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/7d03f2f9d561dafd1576b137713353c95253512c\"\u003e\u003ccode\u003e7d03f2f\u003c/code\u003e\u003c/a\u003e chore: updated deps to latest (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/733\"\u003e#733\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/8024ba7a813e6647ed63832d209a2abb8531267a\"\u003e\u003ccode\u003e8024ba7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 6.0.2 to 6.0.3 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/732\"\u003e#732\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/32b4ed4639281f04563adcd41d724ab06c9105d4\"\u003e\u003ccode\u003e32b4ed4\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.35.3 to 4.36.1 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/731\"\u003e#731\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/ff0f6b907106ec5a1b81c80f5a552d921c1bc9a5\"\u003e\u003ccode\u003eff0f6b9\u003c/code\u003e\u003c/a\u003e docs: update outdated reference to MDN docs (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/730\"\u003e#730\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/14d001a9c90abc05891d895ad3e9cf0a65b7b34a\"\u003e\u003ccode\u003e14d001a\u003c/code\u003e\u003c/a\u003e refactor: switch to const/let and enable eslint no-var rule (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/729\"\u003e#729\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/37f36a27528e65d7216f2c31c7039d3458c72147\"\u003e\u003ccode\u003e37f36a2\u003c/code\u003e\u003c/a\u003e deps: update content-type and type-is (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/728\"\u003e#728\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/e1c244bf55fb00a6de4be882b4ed9fc20807d864\"\u003e\u003ccode\u003ee1c244b\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.35.1 to 4.35.3 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/723\"\u003e#723\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/e01087f52192e20e2d0f8726d4f28a8d49d06c87\"\u003e\u003ccode\u003ee01087f\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/724\"\u003e#724\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/a7698d30280a3e931ea8841396e5d0ac5414e429\"\u003e\u003ccode\u003ea7698d3\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/setup-node from 6.3.0 to 6.4.0 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/725\"\u003e#725\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/body-parser/compare/v2.2.2...v2.3.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `fs-extra` from 11.3.5 to 11.3.6\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jprichardson/node-fs-extra/blob/master/CHANGELOG.md\"\u003efs-extra's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e11.3.6 / 2026-06-29\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix handling of symlinked destination ancestors in copy/move methods (\u003ca href=\"https://redirect.github.com/jprichardson/node-fs-extra/issues/1071\"\u003e#1071\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jprichardson/node-fs-extra/pull/1073\"\u003e#1073\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eDocs typo fixed (\u003ca href=\"https://redirect.github.com/jprichardson/node-fs-extra/pull/1074\"\u003e#1074\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jprichardson/node-fs-extra/commit/62a4e720804aaa45d377d06788e258375cc544fa\"\u003e\u003ccode\u003e62a4e72\u003c/code\u003e\u003c/a\u003e 11.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jprichardson/node-fs-extra/commit/01c0ca6ea81ff9b24239a875aeaa8d787dec5f0c\"\u003e\u003ccode\u003e01c0ca6\u003c/code\u003e\u003c/a\u003e Fix copy/move recursing into source through a symlinked dest ancestor (\u003ca href=\"https://redirect.github.com/jprichardson/node-fs-extra/issues/1073\"\u003e#1073\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jprichardson/node-fs-extra/commit/726825010ce2b4fef7c46e4e1dd4db914568abe9\"\u003e\u003ccode\u003e7268250\u003c/code\u003e\u003c/a\u003e docs: fix typo in README.md (seperate → separately) (\u003ca href=\"https://redirect.github.com/jprichardson/node-fs-extra/issues/1074\"\u003e#1074\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jprichardson/node-fs-extra/commit/2fd7b6c2de07de449ccd750e2fcf7792542d060c\"\u003e\u003ccode\u003e2fd7b6c\u003c/code\u003e\u003c/a\u003e chore: Add Node 26 to the test matrix (\u003ca href=\"https://redirect.github.com/jprichardson/node-fs-extra/issues/1072\"\u003e#1072\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/jprichardson/node-fs-extra/compare/11.3.5...11.3.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `morgan` from 1.10.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `node-red` from 4.1.10 to 5.0.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/node-red/node-red/releases\"\u003enode-red's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.0.1: Maintenance Release\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate default branch references by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5793\"\u003enode-red/node-red#5793\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSet minimum node version to 22.9 by \u003ca href=\"https://github.com/bonanitech\"\u003e\u003ccode\u003e@​bonanitech\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5792\"\u003enode-red/node-red#5792\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd Japanese translations for 5.0.0-beta.6 by \u003ca href=\"https://github.com/kazuhitoyokoi\"\u003e\u003ccode\u003e@​kazuhitoyokoi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5394\"\u003enode-red/node-red#5394\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove dead link in contributing guide by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5797\"\u003enode-red/node-red#5797\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix RED.sidebar.containsTab api by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5816\"\u003enode-red/node-red#5816\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMove sidebar resize-handle down one level in z-index by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5817\"\u003enode-red/node-red#5817\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid initialising sidebars with tabs that do not exist yet by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5818\"\u003enode-red/node-red#5818\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix expandOnClick behaviour of treeList by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5821\"\u003enode-red/node-red#5821\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix images in welcome tour for 4.1 by \u003ca href=\"https://github.com/kazuhitoyokoi\"\u003e\u003ccode\u003e@​kazuhitoyokoi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5814\"\u003enode-red/node-red#5814\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd Japanese Translations for v5.0.0 by \u003ca href=\"https://github.com/kazuhitoyokoi\"\u003e\u003ccode\u003e@​kazuhitoyokoi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5815\"\u003enode-red/node-red#5815\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003egerman translation for help texts of the link nodes by \u003ca href=\"https://github.com/m-schaeffler\"\u003e\u003ccode\u003e@​m-schaeffler\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5801\"\u003enode-red/node-red#5801\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDon't throw error looking up locales for themes by \u003ca href=\"https://github.com/hardillb\"\u003e\u003ccode\u003e@​hardillb\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5813\"\u003enode-red/node-red#5813\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake docs popup styling consistent with info sidebar by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5822\"\u003enode-red/node-red#5822\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReposition active popups in response to window resize events by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5823\"\u003enode-red/node-red#5823\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5810] NR5: \u0026quot;0 plugins\u0026quot; in palette manager by \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5825\"\u003enode-red/node-red#5825\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5809] NR5: Scrollbars are not updating when jumping between nodes in the same workspace by \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5826\"\u003enode-red/node-red#5826\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[7522] Sync theme preference into the embedded Node-RED editor by \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5819\"\u003enode-red/node-red#5819\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix issue with monaco after expanding and collapsing the editor by \u003ca href=\"https://github.com/Steve-Mcl\"\u003e\u003ccode\u003e@​Steve-Mcl\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5830\"\u003enode-red/node-red#5830\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5808] NR5: navigaton elements overlap workspace content at edges by \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5827\"\u003enode-red/node-red#5827\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[BUGFIX] Fix git ref parsing resulting in broken merge conflicts and commit diffs by \u003ca href=\"https://github.com/beasteers\"\u003e\u003ccode\u003e@​beasteers\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5833\"\u003enode-red/node-red#5833\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5828] Scroll bars don't update properly   by \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5832\"\u003enode-red/node-red#5832\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5839] NR5: info popover does not support node.info() by \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5841\"\u003enode-red/node-red#5841\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHandle repositioning tooltip when aligned to top by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5844\"\u003enode-red/node-red#5844\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eLoad images in info popup before positioning by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5845\"\u003enode-red/node-red#5845\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd --watch option to npm run dev by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5843\"\u003enode-red/node-red#5843\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd a button to ignore the import of unknown types by \u003ca href=\"https://github.com/GogoVega\"\u003e\u003ccode\u003e@​GogoVega\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5836\"\u003enode-red/node-red#5836\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHandle unknown node type properties in info properties table by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5846\"\u003enode-red/node-red#5846\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate dependencies by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5847\"\u003enode-red/node-red#5847\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBackport dev changes to main by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5848\"\u003enode-red/node-red#5848\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump for 5.0.1 release by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5849\"\u003enode-red/node-red#5849\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump lock file by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5850\"\u003enode-red/node-red#5850\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/m-schaeffler\"\u003e\u003ccode\u003e@​m-schaeffler\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5801\"\u003enode-red/node-red#5801\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beasteers\"\u003e\u003ccode\u003e@​beasteers\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5833\"\u003enode-red/node-red#5833\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/node-red/node-red/compare/5.0.0...5.0.1\"\u003ehttps://github.com/node-red/node-red/compare/5.0.0...5.0.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e5.0.0: Milestone Release\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cp\u003eNode-RED 5.0 is the biggest change to the editor experience in the history of the project. Back in our \u003ca href=\"https://nodered.org/blog/2025/12/03/node-red-roadmap-to-5\"\u003eroadmap post\u003c/a\u003e we set out four areas of focus - modernising the UX, improving node appearance, targeted functional enhancements, and updating our project infrastructure. After a long run of beta releases - and a huge amount of community feedback along the way - we're delighted to bring it all together in the final release.\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eNode-RED now requires Node.js 22.9 or later. At the time of release, we recommend running Node.js 24\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFull changelog\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate sidebar UX by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5327\"\u003enode-red/node-red#5327\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/node-red/node-red/blob/main/CHANGELOG.md\"\u003enode-red's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch4\u003e5.0.1: Maintenance Release\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate dependencies (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5847\"\u003e#5847\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHandle unknown node type properties in info properties table (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5846\"\u003e#5846\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd a button to ignore the import of unknown types (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5836\"\u003e#5836\u003c/a\u003e) \u003ca href=\"https://github.com/GogoVega\"\u003e\u003ccode\u003e@​GogoVega\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd --watch option to npm run dev (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5843\"\u003e#5843\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eLoad images in info popup before positioning (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5845\"\u003e#5845\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHandle repositioning tooltip when aligned to top (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5844\"\u003e#5844\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5839] NR5: info popover does not support node.info() (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5841\"\u003e#5841\u003c/a\u003e) \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5828] Scroll bars don't update properly (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5832\"\u003e#5832\u003c/a\u003e) \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[BUGFIX] Fix git ref parsing resulting in broken merge conflicts and commit diffs (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5833\"\u003e#5833\u003c/a\u003e) \u003ca href=\"https://github.com/beasteers\"\u003e\u003ccode\u003e@​beasteers\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5808] NR5: navigaton elements overlap workspace content at edges (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5827\"\u003e#5827\u003c/a\u003e) \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix issue with monaco after expanding and collapsing the editor (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5830\"\u003e#5830\u003c/a\u003e) \u003ca href=\"https://github.com/Steve-Mcl\"\u003e\u003ccode\u003e@​Steve-Mcl\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[7522] Sync theme preference into the embedded Node-RED editor (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5819\"\u003e#5819\u003c/a\u003e) \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5809] NR5: Scrollbars are not updating when jumping between nodes in the same workspace (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5826\"\u003e#5826\u003c/a\u003e) \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5810] NR5: \u0026quot;0 plugins\u0026quot; in palette manager (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5825\"\u003e#5825\u003c/a\u003e) \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReposition active popups in response to window resize events (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5823\"\u003e#5823\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake docs popup styling consistent with info sidebar (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5822\"\u003e#5822\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDon't throw error looking up locales for themes (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5813\"\u003e#5813\u003c/a\u003e) \u003ca href=\"https://github.com/hardillb\"\u003e\u003ccode\u003e@​hardillb\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003egerman translation for help texts of the link nodes (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5801\"\u003e#5801\u003c/a\u003e) \u003ca href=\"https://github.com/m-schaeffler\"\u003e\u003ccode\u003e@​m-schaeffler\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd Japanese Translations for v5.0.0 (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5815\"\u003e#5815\u003c/a\u003e) \u003ca href=\"https://github.com/kazuhitoyokoi\"\u003e\u003ccode\u003e@​kazuhitoyokoi\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix images in welcome tour for 4.1 (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5814\"\u003e#5814\u003c/a\u003e) \u003ca href=\"https://github.com/kazuhitoyokoi\"\u003e\u003ccode\u003e@​kazuhitoyokoi\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix expandOnClick behaviour of treeList (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5821\"\u003e#5821\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid initialising sidebars with tabs that do not exist yet (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5818\"\u003e#5818\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMove sidebar resize-handle down one level in z-index (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5817\"\u003e#5817\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix RED.sidebar.containsTab api (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5816\"\u003e#5816\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove dead link in contributing guide (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5797\"\u003e#5797\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSet minimum node version to 22.9 (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5792\"\u003e#5792\u003c/a\u003e) \u003ca href=\"https://github.com/bonanitech\"\u003e\u003ccode\u003e@​bonanitech\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate default branch references (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5793\"\u003e#5793\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003e5.0.0: Milestone Release\u003c/h4\u003e\n\u003cp\u003eThis marks the next major release of Node-RED. The following changes represent\nthose added since the last beta. Check the beta release details below for the complete\nlist.\u003c/p\u003e\n\u003cp\u003eBreaking Changes\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eNode-RED now requires Node 22.9 or later.\u003c/li\u003e\n\u003cli\u003eWe recommend Node 24.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eEditor\u003c/p\u003e\n\u003cp\u003eNew Features\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdd support for GH style blockquote alerts (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5733\"\u003e#5733\u003c/a\u003e) \u003ca href=\"https://github.com/Steve-Mcl\"\u003e\u003ccode\u003e@​Steve-Mcl\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd alert types toolbar functionality to markdown editor (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5757\"\u003e#5757\u003c/a\u003e) \u003ca href=\"https://github.com/Steve-Mcl\"\u003e\u003ccode\u003e@​Steve-Mcl\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRework search statusBar (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5744\"\u003e#5744\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWelcome tour v5 (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5784\"\u003e#5784\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/a831faffe678f74e028a2aee5a9825cf291cfbab\"\u003e\u003ccode\u003ea831faf\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5850\"\u003e#5850\u003c/a\u003e from node-red/bump-lock\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/8fa403843b06055e405f3e31ed055c4eb9e8e1aa\"\u003e\u003ccode\u003e8fa4038\u003c/code\u003e\u003c/a\u003e Bump lock file\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/87a8ca7b399d253fb08726291b99b321d4432cf9\"\u003e\u003ccode\u003e87a8ca7\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5849\"\u003e#5849\u003c/a\u003e from node-red/rel501\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/1d6f619da1f7bf5c4df0e17f5ae83785653836ba\"\u003e\u003ccode\u003e1d6f619\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5848\"\u003e#5848\u003c/a\u003e from node-red/gg\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/001cf45bce887cbd687c02a041d196f28dc83a68\"\u003e\u003ccode\u003e001cf45\u003c/code\u003e\u003c/a\u003e Merge branch 'dev' into gg\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/bd0b85f6cf25c2c7ea422ae21093f440f75fbc4b\"\u003e\u003ccode\u003ebd0b85f\u003c/code\u003e\u003c/a\u003e Bump for 5.0.1 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/31097a16f4c68668ef3e4d5ed4d9b4d55a6464b1\"\u003e\u003ccode\u003e31097a1\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5847\"\u003e#5847\u003c/a\u003e from node-red/update-deps\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/c485fa20307861a6081b7677115f03e6fd8afaf5\"\u003e\u003ccode\u003ec485fa2\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/9398fd69c803eaf4939481b9e7c8d6cde9e3338f\"\u003e\u003ccode\u003e9398fd6\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5846\"\u003e#5846\u003c/a\u003e from node-red/5838-unknown-info-table\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/cbad45da9a3950aaf3f85bc327f3a3fd5689bd45\"\u003e\u003ccode\u003ecbad45d\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5836\"\u003e#5836\u003c/a\u003e from GogoVega/ignore-unknown-types-notification\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/node-red/node-red/compare/4.1.10...5.0.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `nodemailer` from 8.0.9 to 9.0.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/nodemailer/nodemailer/releases\"\u003enodemailer's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev9.0.3\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v9.0.2...v9.0.3\"\u003e9.0.3\u003c/a\u003e (2026-06-30)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003esmtp-connection:\u003c/strong\u003e harden STARTTLS upgrade and secure socket handling (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1835\"\u003e#1835\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/07d8253326ecefff9f7d92c157429ce8bc7335f8\"\u003e07d8253\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev9.0.2\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v9.0.1...v9.0.2\"\u003e9.0.2\u003c/a\u003e (2026-06-29)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eaddressparser:\u003c/strong\u003e keep operator chars inside an address-literal as text (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1829\"\u003e#1829\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/9ba1064f3b115cd60cb63aa954a3c0961e86fbb7\"\u003e9ba1064\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eharden smtp-connection low-severity issues (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/22ddcea8ed043e4ea23b8971b75a2df196b5a581\"\u003e22ddcea\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eharden smtp-connection response parsing and socket lifecycle (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/68860b94311b5b6837754e5e790f186ca8a00b70\"\u003e68860b9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eprevent SES transport callback double-invocation and hang on sync errors (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1831\"\u003e#1831\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/9517bc5dc94e77907bb157e3466bf73a2b327f5c\"\u003e9517bc5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereject CRLF in HTTP proxy CONNECT destination to prevent request injection (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/6347b47c7d12f9d3acf53d391b921e836f400640\"\u003e6347b47\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev9.0.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v9.0.0...v9.0.1\"\u003e9.0.1\u003c/a\u003e (2026-06-17)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eenforce disableFileAccess/disableUrlAccess for raw message option (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/a82e060d978f27e5f41369a9a9807b1e3dedc2e2\"\u003ea82e060\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev9.0.0\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.11...v9.0.0\"\u003e9.0.0\u003c/a\u003e (2026-06-14)\u003c/h2\u003e\n\u003ch3\u003e⚠ BREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eHTTPS requests made while fetching remote content (attachment href/path URLs, OAuth2 token endpoints, HTTP/HTTPS proxy CONNECT) now validate the server's TLS certificate by default. Requests to hosts with self-signed, expired, or hostname-mismatched certificates that previously succeeded will now fail. Opt back out per request with tls.rejectUnauthorized=false (transport options, or a per-attachment \u003ccode\u003etls\u003c/code\u003e option).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ereplace deprecated url.parse with a WHATWG URL wrapper (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/0c080fbf3278926f013a5c2ad06f5f6f0e18f5ed\"\u003e0c080fb\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003evalidate TLS certificates by default when fetching remote content (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/6a947ac7114a16da1e6a50d9a6f4e17026ce145d\"\u003e6a947ac\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev8.0.11\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.10...v8.0.11\"\u003e8.0.11\u003c/a\u003e (2026-06-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eapply the transport-level newline option in stream and sendmail transports (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/cb4f904a53d2c2feeaf327203c92378d46304398\"\u003ecb4f904\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003einclude icalEvent path/href content in the application/ics attachment (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/b801c48fab8e9b71bc7e0ea1fb32ce6b34675b15\"\u003eb801c48\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse Ethereal response props without polynomial regex backtracking (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/067aebec83b8cbe7682905e89b30ab19d260b503\"\u003e067aebe\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/nodemailer/nodemailer/blob/master/CHANGELOG.md\"\u003enodemailer's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v9.0.2...v9.0.3\"\u003e9.0.3\u003c/a\u003e (2026-06-30)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003esmtp-connection:\u003c/strong\u003e harden STARTTLS upgrade and secure socket handling (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1835\"\u003e#1835\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/07d8253326ecefff9f7d92c157429ce8bc7335f8\"\u003e07d8253\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v9.0.1...v9.0.2\"\u003e9.0.2\u003c/a\u003e (2026-06-29)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eaddressparser:\u003c/strong\u003e keep operator chars inside an address-literal as text (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1829\"\u003e#1829\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/9ba1064f3b115cd60cb63aa954a3c0961e86fbb7\"\u003e9ba1064\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eharden smtp-connection low-severity issues (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/22ddcea8ed043e4ea23b8971b75a2df196b5a581\"\u003e22ddcea\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eharden smtp-connection response parsing and socket lifecycle (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/68860b94311b5b6837754e5e790f186ca8a00b70\"\u003e68860b9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eprevent SES transport callback double-invocation and hang on sync errors (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1831\"\u003e#1831\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/9517bc5dc94e77907bb157e3466bf73a2b327f5c\"\u003e9517bc5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereject CRLF in HTTP proxy CONNECT destination to prevent request injection (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/6347b47c7d12f9d3acf53d391b921e836f400640\"\u003e6347b47\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v9.0.0...v9.0.1\"\u003e9.0.1\u003c/a\u003e (2026-06-17)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eenforce disableFileAccess/disableUrlAccess for raw message option (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/a82e060d978f27e5f41369a9a9807b1e3dedc2e2\"\u003ea82e060\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.11...v9.0.0\"\u003e9.0.0\u003c/a\u003e (2026-06-14)\u003c/h2\u003e\n\u003ch3\u003e⚠ BREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eHTTPS requests made while fetching remote content (attachment href/path URLs, OAuth2 token endpoints, HTTP/HTTPS proxy CONNECT) now validate the server's TLS certificate by default. Requests to hosts with self-signed, expired, or hostname-mismatched certificates that previously succeeded will now fail. Opt back out per request with tls.rejectUnauthorized=false (transport options, or a per-attachment \u003ccode\u003etls\u003c/code\u003e option).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ereplace deprecated url.parse with a WHATWG URL wrapper (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/0c080fbf3278926f013a5c2ad06f5f6f0e18f5ed\"\u003e0c080fb\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003evalidate TLS certificates by default when fetching remote content (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/6a947ac7114a16da1e6a50d9a6f4e17026ce145d\"\u003e6a947ac\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.10...v8.0.11\"\u003e8.0.11\u003c/a\u003e (2026-06-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eapply the transport-level newline option in stream and sendmail transports (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/cb4f904a53d2c2feeaf327203c92378d46304398\"\u003ecb4f904\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003einclude icalEvent path/href content in the application/ics attachment (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/b801c48fab8e9b71bc7e0ea1fb32ce6b34675b15\"\u003eb801c48\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse Ethereal response props without polynomial regex backtracking (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/067aebec83b8cbe7682905e89b30ab19d260b503\"\u003e067aebe\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eresolve oauth2_provision_cb at send time for non-pooled SMTP transports (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/203c8ecf97594ac2e69919b0f3ba966c0f86750e\"\u003e203c8ec\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereturn the promise from every resolveContent branch (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/07ffe8cfd97f0486b8c7b541f398922ddab47882\"\u003e07ffe8c\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003estrip the url scheme from List-ID header values (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/77e5885cfa0c6723ea7749c1ee74b1c11aeb78bd\"\u003e77e5885\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etag AWS SES transport errors with the ESES code (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/efa647a125dd698413a7cf6813b8e36881a06f91\"\u003eefa647a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/1f61eb49b4316589045576752c721bd89918ef21\"\u003e\u003ccode\u003e1f61eb4\u003c/code\u003e\u003c/a\u003e chore(master): release 9.0.3 (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1836\"\u003e#1836\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/07d8253326ecefff9f7d92c157429ce8bc7335f8\"\u003e\u003ccode\u003e07d8253\u003c/code\u003e\u003c/a\u003e fix(smtp-connection): harden STARTTLS upgrade and secure socket handling (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1835\"\u003e#1835\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/4801f3aa1a30ae96439c2899c58cc14a18a169ba\"\u003e\u003ccode\u003e4801f3a\u003c/code\u003e\u003c/a\u003e chore(master): release 9.0.2 (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1832\"\u003e#1832\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/9ba1064f3b115cd60cb63aa954a3c0961e86fbb7\"\u003e\u003ccode\u003e9ba1064\u003c/code\u003e\u003c/a\u003e fix(addressparser): keep operator chars inside an address-literal as text (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1\"\u003e#1\u003c/a\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/22ddcea8ed043e4ea23b8971b75a2df196b5a581\"\u003e\u003ccode\u003e22ddcea\u003c/code\u003e\u003c/a\u003e fix: harden smtp-connection low-severity issues\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/af002eb353760b171b1c76f1c14311b07d224386\"\u003e\u003ccode\u003eaf002eb\u003c/code\u003e\u003c/a\u003e chore: add Node.js 26 to the CI test matrix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/6347b47c7d12f9d3acf53d391b921e836f400640\"\u003e\u003ccode\u003e6347b47\u003c/code\u003e\u003c/a\u003e fix: reject CRLF in HTTP proxy CONNECT destination to prevent request injection\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/68860b94311b5b6837754e5e790f186ca8a00b70\"\u003e\u003ccode\u003e68860b9\u003c/code\u003e\u003c/a\u003e fix: harden smtp-connection response parsing and socket lifecycle\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/9517bc5dc94e77907bb157e3466bf73a2b327f5c\"\u003e\u003ccode\u003e9517bc5\u003c/code\u003e\u003c/a\u003e fix: prevent SES transport callback double-invocation and hang on sync errors...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/69cf6252cd18227c79b75dd484357ee1e760e56e\"\u003e\u003ccode\u003e69cf625\u003c/code\u003e\u003c/a\u003e chore(master): release 9.0.1 (\u003ca href=\"https://redirect.github.com/nodemailer/n...\n\n_Description has been truncated_","html_url":"https://github.com/raohassandev/SolTrix/pull/12","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/raohassandev%2FSolTrix/issues/12","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/12/packages"},{"uuid":"4749473485","node_id":"PR_kwDOQxKbu87q2LdR","number":15,"state":"open","title":"chore(deps): bump morgan from 1.10.1 to 1.11.0 in /backend","user":"dependabot[bot]","labels":["dependencies"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-06-26T05:20:43.000Z","updated_at":"2026-06-26T05:20:48.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":"/backend","ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/XandarSword3/V2-Ecosystem/pull/15","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/XandarSword3%2FV2-Ecosystem/issues/15","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/15/packages"},{"uuid":"4709463316","node_id":"PR_kwDORqzl887oz3On","number":69,"state":"closed","title":"Bump the minor-and-patch group across 1 directory with 8 updates","user":"dependabot[bot]","labels":[],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-06-28T05:33:20.000Z","author_association":null,"state_reason":null,"created_at":"2026-06-21T05:33:50.000Z","updated_at":"2026-06-28T05:33:21.000Z","time_to_close":604770,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"minor-and-patch","update_count":8,"packages":[{"name":"@aws-sdk/client-s3","old_version":"3.1057.0","new_version":"3.1075.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"ethers","old_version":"6.16.0","new_version":"6.17.0","repository_url":"https://github.com/ethers-io/ethers.js"},{"name":"livekit-server-sdk","old_version":"2.15.4","new_version":"2.15.5","repository_url":"https://github.com/livekit/node-sdks"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"pg","old_version":"8.21.0","new_version":"8.22.0","repository_url":"https://github.com/brianc/node-postgres"},{"name":"resend","old_version":"6.12.4","new_version":"6.14.0","repository_url":"https://github.com/resend/resend-node"},{"name":"stripe","old_version":"22.2.0","new_version":"22.2.3","repository_url":"https://github.com/stripe/stripe-node"},{"name":"eslint","old_version":"10.4.1","new_version":"10.5.0","repository_url":"https://github.com/eslint/eslint"}],"path":null,"ecosystem":"npm"},"body":"Bumps the minor-and-patch group with 8 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@aws-sdk/client-s3](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3) | `3.1057.0` | `3.1075.0` |\n| [ethers](https://github.com/ethers-io/ethers.js) | `6.16.0` | `6.17.0` |\n| [livekit-server-sdk](https://github.com/livekit/node-sdks/tree/HEAD/packages/livekit-server-sdk) | `2.15.4` | `2.15.5` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [pg](https://github.com/brianc/node-postgres/tree/HEAD/packages/pg) | `8.21.0` | `8.22.0` |\n| [resend](https://github.com/resend/resend-node) | `6.12.4` | `6.14.0` |\n| [stripe](https://github.com/stripe/stripe-node) | `22.2.0` | `22.2.3` |\n| [eslint](https://github.com/eslint/eslint) | `10.4.1` | `10.5.0` |\n\n\nUpdates `@aws-sdk/client-s3` from 3.1057.0 to 3.1075.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/client-s3's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1075.0\u003c/h2\u003e\n\u003ch4\u003e3.1075.0(2026-06-23)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-kafka:\u003c/strong\u003e  Amazon MSK Replicator now supports mTLS authentication when connecting to external Apache Kafka clusters, enabling customers to replicate data from clusters that require mutual TLS for client authentication. This capability is supported when replicating to Amazon MSK Express brokers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/005f9529d4d3cd0c98b002a3584773b253a702dc\"\u003e005f9529\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1075.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1074.0\u003c/h2\u003e\n\u003ch4\u003e3.1074.0(2026-06-22)\u003c/h4\u003e\n\u003ch5\u003eChores\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003exml-builder:\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003emove testing devDeps to root, remove unused nodable dep (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8118\"\u003e#8118\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ed82880d26cac439d808eca5760da899cf449899\"\u003eed82880d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse XML internally (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/7863\"\u003e#7863\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/74d0a071437c84a14396dbcc7f07f8480c369c58\"\u003e74d0a071\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003etypo in contributing.md (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8116\"\u003e#8116\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/87ff33d30edb476912301f87ed6e2afac3cd5a93\"\u003e87ff33d3\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclients:\u003c/strong\u003e  update client endpoints as of 2026-06-22 (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3a55a3338792f712baf2e97d3f3c597fc28707c1\"\u003e3a55a333\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch-logs:\u003c/strong\u003e  CloudWatch Logs Updates - New APIs introduced to support syslog ingestion to a log group. For more information, see CloudWatch Logs API documentation. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/01a3b513503169fb86db0bea0889f585c9004b55\"\u003e01a3b513\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agentcore:\u003c/strong\u003e  Adds an optional extractionMode field to CreateEvent. SKIP retains the event in short-term memory but excludes it from long-term memory extraction. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/749753adae395e3ab3ab494df119f8d6354ca562\"\u003e749753ad\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-omics:\u003c/strong\u003e  Adds support for scratch ephemeral storage mounted at tmp (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/331e3023c1049c5188dc4cec3adabae0c62e84f2\"\u003e331e3023\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-application-signals:\u003c/strong\u003e  Application Signals now supports dynamic instrumentation and Service Events telemetry. Add instrumentation at runtime without restarts, and use fine-grained profiling data to quickly pinpoint latency and error root causes. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/f93b1c0333846b2d16c698f8c9b4034f93ab867c\"\u003ef93b1c03\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-mediaconnect:\u003c/strong\u003e  AWS MediaConnect now supports Content Quality Analysis for Router Inputs, enabling detection of black frames, frozen frames, and silent audio with configurable thresholds. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/05054853a5aa6e740597c3932b5e2491b15e3a12\"\u003e05054853\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda-core:\u003c/strong\u003e  Initial release of the AWS Lambda Core SDK with APIs to create, manage, and tag network connectors that enable Lambda compute resources to access private resources in your Amazon VPC. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e35cdab89fcf7ca679f37776418cb8d8e1269c14\"\u003ee35cdab8\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda:\u003c/strong\u003e  Add support for tagging Network Connector resources in AWS Lambda. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/fbfc40785e024fe2564e4be02ef425280693fce6\"\u003efbfc4078\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-guardduty:\u003c/strong\u003e  Added AI-powered investigations that automatically analyze security findings, correlate related activity, and produce structured summaries with risk assessment, confidence scoring, MITRE technique classification, and actionable next steps. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/83c2983945db4a54b004feed8d2d18935a3df431\"\u003e83c29839\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda-microvms:\u003c/strong\u003e  Lambda MicroVMs GA launch. Lambda MicroVMs enable isolated and highly responsive execution of user-supplied or LLM-generated code. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/5519a7e28fae4f57dd852109244b6370ff79f8bb\"\u003e5519a7e2\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-kafka:\u003c/strong\u003e  Amazon MSK Replicator now supports mTLS authentication when connecting to external Apache Kafka clusters, enabling customers to replicate data from clusters that require mutual TLS for client authentication. This capability is supported when replicating to Amazon MSK Express brokers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ce7d1bf501fe6f7d6a454f96c1befc3829e23385\"\u003ece7d1bf5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-quicksight:\u003c/strong\u003e  Updated the Amazon Quick Spaces API to remove unsupported SPACE and ARTIFACT values from the SpaceQuickSightResourceType enum. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e1b325d42e491ceb75742bbdb56bfc3b98767ff1\"\u003ee1b325d4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ec2:\u003c/strong\u003e  This release adds support for AMI Watermark and Allowed AMIs integration (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d1698bed3961295343fdd86d0a57820538023bc7\"\u003ed1698bed\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-direct-connect:\u003c/strong\u003e  Added VIF rate limiting support for AWS Direct Connect, allowing customers to set bandwidth allocations on virtual interfaces to manage traffic on dedicated connections. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/228a95dc0c11cbcc1f007718faf93181c014a854\"\u003e228a95dc\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eBug Fixes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecloudfront-signer:\u003c/strong\u003e  filename asterisk apostrophe encoding fix (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8119\"\u003e#8119\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/35acab408b9bd5350928525c8a67563ae551580a\"\u003e35acab40\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1074.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-s3/CHANGELOG.md\"\u003e@​aws-sdk/client-s3's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1074.0...v3.1075.0\"\u003e3.1075.0\u003c/a\u003e (2026-06-23)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1073.0...v3.1074.0\"\u003e3.1074.0\u003c/a\u003e (2026-06-22)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1072.0...v3.1073.0\"\u003e3.1073.0\u003c/a\u003e (2026-06-19)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1071.0...v3.1072.0\"\u003e3.1072.0\u003c/a\u003e (2026-06-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1070.0...v3.1071.0\"\u003e3.1071.0\u003c/a\u003e (2026-06-17)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1069.0...v3.1070.0\"\u003e3.1070.0\u003c/a\u003e (2026-06-16)\u003c/h1\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-s3:\u003c/strong\u003e Added support for annotations. You can now attach up to 1000 annotations (up to 1 MB each) directly to objects and create, retrieve, list, and delete them using new annotation APIs. Also added support for configuring an annotation table in S3 Metadata. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c555874690846b81904a2c0c1e96130bd03bbeaa\"\u003ec555874\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/29ee1999340b8d8288184076df6557541974b13f\"\u003e\u003ccode\u003e29ee199\u003c/code\u003e\u003c/a\u003e Publish v3.1075.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c48dfa08aa057f100c69ccb571d35004eddec207\"\u003e\u003ccode\u003ec48dfa0\u003c/code\u003e\u003c/a\u003e Publish v3.1074.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/74d0a071437c84a14396dbcc7f07f8480c369c58\"\u003e\u003ccode\u003e74d0a07\u003c/code\u003e\u003c/a\u003e chore(xml-builder): parse XML internally (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3/issues/7863\"\u003e#7863\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ee71adc9663fc2ebaabae455981fd169fd6e97b2\"\u003e\u003ccode\u003eee71adc\u003c/code\u003e\u003c/a\u003e Publish v3.1073.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/501cd332619533ae96f154d7c226dc2f7bf8d615\"\u003e\u003ccode\u003e501cd33\u003c/code\u003e\u003c/a\u003e Publish v3.1072.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3ce820aa54c953459eb58abe4f06e28ba4ceb87d\"\u003e\u003ccode\u003e3ce820a\u003c/code\u003e\u003c/a\u003e Publish v3.1071.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4f2cfe1cfc420d0b5bfa226ae6619dd67de73ccc\"\u003e\u003ccode\u003e4f2cfe1\u003c/code\u003e\u003c/a\u003e Publish v3.1070.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c555874690846b81904a2c0c1e96130bd03bbeaa\"\u003e\u003ccode\u003ec555874\u003c/code\u003e\u003c/a\u003e feat(client-s3): Added support for annotations. You can now attach up to 1000...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7058d13814795c6ff06a960077269458520bf161\"\u003e\u003ccode\u003e7058d13\u003c/code\u003e\u003c/a\u003e Publish v3.1069.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/67981c5a65d6dd797a065df034a8d0fcdaa9b7bd\"\u003e\u003ccode\u003e67981c5\u003c/code\u003e\u003c/a\u003e chore(scripts): tuning the build graph (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3/issues/8095\"\u003e#8095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1075.0/clients/client-s3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ethers` from 6.16.0 to 6.17.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ethers-io/ethers.js/releases\"\u003eethers's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eethers/v6.17.0 (2026-06-18 00:49)\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd requestRate throttle to calls (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/b48bfe34b11e059c4418718f9cad4e6cbe4c0680\"\u003eb48bfe3\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded provider requestRate throttle support (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/b74b6d39d413afb950ad20ca34d93aa735229d1b\"\u003eb74b6d3\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eDisable AlchemyProvider which does not provide the necessary API capacity for tests (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/1523ca8af25c13c78588842404aea1e61a96fc26\"\u003e1523ca8\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eMap ResolverNotFound error to null for reverse lookup (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/d07cfb67c750089d3a9ef4123eeb7e4634f04e08\"\u003ed07cfb6\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUse bigint for coinType instead of number values (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/4f6ec037f886f719d991ec74dc0a182e91488e5a\"\u003e4f6ec03\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdated AlchemyProvider endpoints for BNB (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/9bec2f98f62fae84be8aebacc9d21fe7afc620fc\"\u003e9bec2f9\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded basic ENSv2 tests and fixed issues with EVM cointypes (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/0e9a73dc446572634ae004749d00d78b00f92b76\"\u003e0e9a73d\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdding ENSv2 integrations from adraffy (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/a2d0af4a2ecfe207f02e5497ef2fa95a83dba92a\"\u003ea2d0af4\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdate Blockscout deffault API key and links (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/5647ae3e7c06854c60e822616eb00575ee88bc89\"\u003e5647ae3\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded transactionsRoot to Block (\u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5077\"\u003e#5077\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5078\"\u003e#5078\u003c/a\u003e; \u003ca href=\"https://github.com/ethers-io/ethers.js/commit/5bd2ce9e50cc85bb93e3d6840a0fc2f434180a9f\"\u003e5bd2ce9\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003ePreserve 301/302 method and support 307/308 (\u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/3106\"\u003e#3106\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5115\"\u003e#5115\u003c/a\u003e; \u003ca href=\"https://github.com/ethers-io/ethers.js/commit/999af5f5a8cc7211bd70d9e8414e1898b147636f\"\u003e999af5f\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFix maxFeePerGas property for EtherscanProvider transactions (\u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5080\"\u003e#5080\u003c/a\u003e; \u003ca href=\"https://github.com/ethers-io/ethers.js/commit/ca45d2388944f098a7e1a341f6ccccab7bf0aba2\"\u003eca45d23\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded rich inspection for Network and Plugins (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/f2ffb865c5197d933b196f5039105df225c2d954\"\u003ef2ffb86\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eTweaking API for Universal Resolver to be completely backward compatible (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/9a5c4b5b97310cbb7ba95d9c90fe7f101d6c2442\"\u003e9a5c4b5\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdated ENS Universal Resolver to latest API (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/0b3b12bc0b5581fe9ae9b269c8fcf1ea852e5122\"\u003e0b3b12b\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded CCIP to ENS Universal Resolver reverse resolution (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/982eef2561158d4a3a656ef4fd37073322983dc0\"\u003e982eef2\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded reverse lookup for ENS UniversalResolver (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/9a9a11d3da06f58653758b1739bca0681508f247\"\u003e9a9a11d\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eInitial forward resolution using ENS UniversalResolver (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/51df7b95d04a33db6efe1807c4cd810f92dfdf49\"\u003e51df7b9\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ethers-io/ethers.js/blob/main/CHANGELOG.md\"\u003eethers's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eethers/v6.17.0 (2026-06-17 23:50)\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd requestRate throttle to calls (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/b48bfe34b11e059c4418718f9cad4e6cbe4c0680\"\u003eb48bfe3\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded provider requestRate throttle support (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/b74b6d39d413afb950ad20ca34d93aa735229d1b\"\u003eb74b6d3\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eDisable AlchemyProvider which does not provide the necessary API capacity for tests (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/1523ca8af25c13c78588842404aea1e61a96fc26\"\u003e1523ca8\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eMap ResolverNotFound error to null for reverse lookup (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/d07cfb67c750089d3a9ef4123eeb7e4634f04e08\"\u003ed07cfb6\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUse bigint for coinType instead of number values (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/4f6ec037f886f719d991ec74dc0a182e91488e5a\"\u003e4f6ec03\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdated AlchemyProvider endpoints for BNB (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/9bec2f98f62fae84be8aebacc9d21fe7afc620fc\"\u003e9bec2f9\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded basic ENSv2 tests and fixed issues with EVM cointypes (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/0e9a73dc446572634ae004749d00d78b00f92b76\"\u003e0e9a73d\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdding ENSv2 integrations from adraffy (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/a2d0af4a2ecfe207f02e5497ef2fa95a83dba92a\"\u003ea2d0af4\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdate Blockscout deffault API key and links (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/5647ae3e7c06854c60e822616eb00575ee88bc89\"\u003e5647ae3\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded transactionsRoot to Block (\u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5077\"\u003e#5077\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5078\"\u003e#5078\u003c/a\u003e; \u003ca href=\"https://github.com/ethers-io/ethers.js/commit/5bd2ce9e50cc85bb93e3d6840a0fc2f434180a9f\"\u003e5bd2ce9\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003ePreserve 301/302 method and support 307/308 (\u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/3106\"\u003e#3106\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5115\"\u003e#5115\u003c/a\u003e; \u003ca href=\"https://github.com/ethers-io/ethers.js/commit/999af5f5a8cc7211bd70d9e8414e1898b147636f\"\u003e999af5f\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFix maxFeePerGas property for EtherscanProvider transactions (\u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5080\"\u003e#5080\u003c/a\u003e; \u003ca href=\"https://github.com/ethers-io/ethers.js/commit/ca45d2388944f098a7e1a341f6ccccab7bf0aba2\"\u003eca45d23\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded rich inspection for Network and Plugins (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/f2ffb865c5197d933b196f5039105df225c2d954\"\u003ef2ffb86\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eTweaking API for Universal Resolver to be completely backward compatible (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/9a5c4b5b97310cbb7ba95d9c90fe7f101d6c2442\"\u003e9a5c4b5\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdated ENS Universal Resolver to latest API (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/0b3b12bc0b5581fe9ae9b269c8fcf1ea852e5122\"\u003e0b3b12b\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded CCIP to ENS Universal Resolver reverse resolution (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/982eef2561158d4a3a656ef4fd37073322983dc0\"\u003e982eef2\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded reverse lookup for ENS UniversalResolver (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/9a9a11d3da06f58653758b1739bca0681508f247\"\u003e9a9a11d\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eInitial forward resolution using ENS UniversalResolver (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/51df7b95d04a33db6efe1807c4cd810f92dfdf49\"\u003e51df7b9\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/3ea4c226dd0b3a074abf90748de9d11192027f4f\"\u003e\u003ccode\u003e3ea4c22\u003c/code\u003e\u003c/a\u003e admin: updated dist files\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/2d35b6ab6db437a4db8a1cdb753946ddb9e4b0e1\"\u003e\u003ccode\u003e2d35b6a\u003c/code\u003e\u003c/a\u003e docs: fix property access order for Flatworm\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/b48bfe34b11e059c4418718f9cad4e6cbe4c0680\"\u003e\u003ccode\u003eb48bfe3\u003c/code\u003e\u003c/a\u003e Add requestRate throttle to calls.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/39f5ce1358069122a9de047df27e024417c81dfb\"\u003e\u003ccode\u003e39f5ce1\u003c/code\u003e\u003c/a\u003e tests: add INFURA_APIKEY for docs and workflows\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/96bd29c014c44c7e7245714d593b02d7c39b3653\"\u003e\u003ccode\u003e96bd29c\u003c/code\u003e\u003c/a\u003e tests: added provider throttling to test suites\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/b74b6d39d413afb950ad20ca34d93aa735229d1b\"\u003e\u003ccode\u003eb74b6d3\u003c/code\u003e\u003c/a\u003e Added provider requestRate throttle support.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/1523ca8af25c13c78588842404aea1e61a96fc26\"\u003e\u003ccode\u003e1523ca8\u003c/code\u003e\u003c/a\u003e Disable AlchemyProvider which does not provide the necessary API capacity for...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/d07cfb67c750089d3a9ef4123eeb7e4634f04e08\"\u003e\u003ccode\u003ed07cfb6\u003c/code\u003e\u003c/a\u003e Map ResolverNotFound error to null for reverse lookup.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/c32c542eafd553bd26a6e48d67fb61e89d7ccc5c\"\u003e\u003ccode\u003ec32c542\u003c/code\u003e\u003c/a\u003e docs: fix typo in config for INFURA API key\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/7c6b8400a381741b11226c76c4e4eca37c9e8517\"\u003e\u003ccode\u003e7c6b840\u003c/code\u003e\u003c/a\u003e admin: include INFURA_APIKEY in docs generation to resolve throttling\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/ethers-io/ethers.js/compare/v6.16.0...v6.17.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `livekit-server-sdk` from 2.15.4 to 2.15.5\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/livekit/node-sdks/releases\"\u003elivekit-server-sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003elivekit-server-sdk@2.15.5\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003edeployment\u003c/code\u003e to \u003ccode\u003eCreateDispatchOptions\u003c/code\u003e - \u003ca href=\"https://redirect.github.com/livekit/node-sdks/pull/675\"\u003e#675\u003c/a\u003e (\u003ca href=\"https://github.com/lukasIO\"\u003e\u003ccode\u003e@​lukasIO\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/livekit/node-sdks/blob/main/packages/livekit-server-sdk/CHANGELOG.md\"\u003elivekit-server-sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.15.5\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003edeployment\u003c/code\u003e to \u003ccode\u003eCreateDispatchOptions\u003c/code\u003e - \u003ca href=\"https://redirect.github.com/livekit/node-sdks/pull/675\"\u003e#675\u003c/a\u003e (\u003ca href=\"https://github.com/lukasIO\"\u003e\u003ccode\u003e@​lukasIO\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/livekit/node-sdks/commit/b93b1439af5ef5f2ed4a09f53a44925866244d91\"\u003e\u003ccode\u003eb93b143\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/livekit/node-sdks/tree/HEAD/packages/livekit-server-sdk/issues/681\"\u003e#681\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/livekit/node-sdks/commit/f8cbe934a13ad65a357201cd38e7da6c9d83744b\"\u003e\u003ccode\u003ef8cbe93\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003edeployment\u003c/code\u003e to \u003ccode\u003eCreateDispatchOptions\u003c/code\u003e (\u003ca href=\"https://github.com/livekit/node-sdks/tree/HEAD/packages/livekit-server-sdk/issues/675\"\u003e#675\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/livekit/node-sdks/commit/3029bdd9cfc05d9483fea2f4c6ebac4a3e1d9260\"\u003e\u003ccode\u003e3029bdd\u003c/code\u003e\u003c/a\u003e Update dependency vitest to v4 [SECURITY] (\u003ca href=\"https://github.com/livekit/node-sdks/tree/HEAD/packages/livekit-server-sdk/issues/673\"\u003e#673\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/livekit/node-sdks/commit/e2b66ddc0be33602c9f296b24c7eaa3e6d69dfea\"\u003e\u003ccode\u003ee2b66dd\u003c/code\u003e\u003c/a\u003e Update dependency vite to v6 [SECURITY] (\u003ca href=\"https://github.com/livekit/node-sdks/tree/HEAD/packages/livekit-server-sdk/issues/643\"\u003e#643\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/livekit/node-sdks/commits/livekit-server-sdk@2.15.5/packages/livekit-server-sdk\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `morgan` from 1.10.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `pg` from 8.21.0 to 8.22.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/brianc/node-postgres/blob/master/CHANGELOG.md\"\u003epg's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003epg@8.22.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd support for \u003ca href=\"https://redirect.github.com/brianc/node-postgres/pull/3688\"\u003esslnegotiation=direct\u003c/a\u003e for PostgreSQL 17+.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/b617619f9fb6fbd231731823e2732a2927ded4be\"\u003e\u003ccode\u003eb617619\u003c/code\u003e\u003c/a\u003e Publish\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/d80b2612fbe83ed8234637f20b943d85e4331094\"\u003e\u003ccode\u003ed80b261\u003c/code\u003e\u003c/a\u003e Update docs \u0026amp; changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/835fb83ab9e1cf30fa8367ba42bd633720d71832\"\u003e\u003ccode\u003e835fb83\u003c/code\u003e\u003c/a\u003e Fix error handling for exceptions on values parsing. (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3574\"\u003e#3574\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/f49ab4a9795ae0866409f9bfe52a68b4f65ef024\"\u003e\u003ccode\u003ef49ab4a\u003c/code\u003e\u003c/a\u003e fix: correct spelling mistakes across codebase (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3692\"\u003e#3692\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/d7175a4aa0347b7416109e9ecc61d4d235486d0e\"\u003e\u003ccode\u003ed7175a4\u003c/code\u003e\u003c/a\u003e Expand CI matrix of PG versions and add direct SSL test (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3693\"\u003e#3693\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/882fc308cce7bf136cd1448e00395f760dad3e00\"\u003e\u003ccode\u003e882fc30\u003c/code\u003e\u003c/a\u003e Add support for sslnegotiation=direct (PostgreSQL 17) (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3688\"\u003e#3688\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/brianc/node-postgres/commits/pg@8.22.0/packages/pg\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `resend` from 6.12.4 to 6.14.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/resend/resend-node/releases\"\u003eresend's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev6.13.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore: migrate to pnpm 11 by \u003ca href=\"https://github.com/gabrielmfern\"\u003e\u003ccode\u003e@​gabrielmfern\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/972\"\u003eresend/resend-node#972\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: add \u003ccode\u003eContactImports\u003c/code\u003e class for managing contact imports by \u003ca href=\"https://github.com/vcapretz\"\u003e\u003ccode\u003e@​vcapretz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/963\"\u003eresend/resend-node#963\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: release \u003ccode\u003e6.13.0-canary.0\u003c/code\u003e by \u003ca href=\"https://github.com/vcapretz\"\u003e\u003ccode\u003e@​vcapretz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/976\"\u003eresend/resend-node#976\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: typos in custom HTML example (readme.md) by \u003ca href=\"https://github.com/SRKrukowski\"\u003e\u003ccode\u003e@​SRKrukowski\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/981\"\u003eresend/resend-node#981\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: remove contact import onError option by \u003ca href=\"https://github.com/vcapretz\"\u003e\u003ccode\u003e@​vcapretz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/982\"\u003eresend/resend-node#982\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: options for html_format in receiving.get by \u003ca href=\"https://github.com/gabrielmfern\"\u003e\u003ccode\u003e@​gabrielmfern\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/983\"\u003eresend/resend-node#983\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: release \u003ccode\u003e6.13.0\u003c/code\u003e by \u003ca href=\"https://github.com/vcapretz\"\u003e\u003ccode\u003e@​vcapretz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/984\"\u003eresend/resend-node#984\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SRKrukowski\"\u003e\u003ccode\u003e@​SRKrukowski\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/981\"\u003eresend/resend-node#981\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/resend/resend-node/compare/v6.12.4...v6.13.0\"\u003ehttps://github.com/resend/resend-node/compare/v6.12.4...v6.13.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/resend/resend-node/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `stripe` from 22.2.0 to 22.2.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/stripe/stripe-node/releases\"\u003estripe's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev22.2.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2761\"\u003e#2761\u003c/a\u003e Encode URI path params in \u003ccode\u003eaccounts.retrieve\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/stripe/stripe-node/blob/v22.2.3/CHANGELOG.md\"\u003ethe changelog for more details\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev22.2.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2725\"\u003e#2725\u003c/a\u003e Fixes CJS type exports for stripe package (reported in \u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2683\"\u003e#2683\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2758\"\u003e#2758\u003c/a\u003e Fix \u003ccode\u003eStripe.ErrorType.StripeError\u003c/code\u003e incorrectly being usable as a runtime class (reported in \u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2661\"\u003e#2661\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2753\"\u003e#2753\u003c/a\u003e handle shadowed namespaces (reported in \u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2691\"\u003e#2691\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/stripe/stripe-node/blob/v22.2.2/CHANGELOG.md\"\u003ethe changelog for more details\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev22.2.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2750\"\u003e#2750\u003c/a\u003e URI Encode path params\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2747\"\u003e#2747\u003c/a\u003e Fix V2ListIterator: concurrency guard and empty page handling\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2740\"\u003e#2740\u003c/a\u003e Add \u0026quot;source\u0026quot; field to user-agent header\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2734\"\u003e#2734\u003c/a\u003e Fix parseHttpHeaderAsNumber to return undefined instead of NaN\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/stripe/stripe-node/blob/v22.2.1/CHANGELOG.md\"\u003ethe changelog for more details\u003c/a\u003e.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/stripe/stripe-node/blob/master/CHANGELOG.md\"\u003estripe's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e22.2.3 - 2026-06-22\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2761\"\u003e#2761\u003c/a\u003e Encode URI path params in \u003ccode\u003eaccounts.retrieve\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e22.2.2 - 2026-06-18\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2725\"\u003e#2725\u003c/a\u003e Fixes CJS type exports for stripe package (reported in \u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2683\"\u003e#2683\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2758\"\u003e#2758\u003c/a\u003e Fix \u003ccode\u003eStripe.ErrorType.StripeError\u003c/code\u003e incorrectly being usable as a runtime class (reported in \u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2661\"\u003e#2661\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2753\"\u003e#2753\u003c/a\u003e handle shadowed namespaces (reported in \u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2691\"\u003e#2691\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e22.2.1 - 2026-06-12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2750\"\u003e#2750\u003c/a\u003e URI Encode path params\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2747\"\u003e#2747\u003c/a\u003e Fix V2ListIterator: concurrency guard and empty page handling\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2740\"\u003e#2740\u003c/a\u003e Add \u0026quot;source\u0026quot; field to user-agent header\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2734\"\u003e#2734\u003c/a\u003e Fix parseHttpHeaderAsNumber to return undefined instead of NaN\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/b8e8c23f7b84786308e3377b92d44ed3dd2ca3c2\"\u003e\u003ccode\u003eb8e8c23\u003c/code\u003e\u003c/a\u003e Bump version to 22.2.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/10442be9d2b7282249474788be48de9f22696305\"\u003e\u003ccode\u003e10442be\u003c/code\u003e\u003c/a\u003e Pin \u003ccode\u003e@types/node\u003c/code\u003e to \u003ccode\u003e~22.19\u003c/code\u003e in CJS type test projects (\u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2762\"\u003e#2762\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/9c2d10ccd1b919d9197a9f661cbf113b4f291df1\"\u003e\u003ccode\u003e9c2d10c\u003c/code\u003e\u003c/a\u003e Encode URI path params in \u003ccode\u003eaccounts.retrieve\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2761\"\u003e#2761\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/4073ccf267c89eade592c55656cb4f9b31187150\"\u003e\u003ccode\u003e4073ccf\u003c/code\u003e\u003c/a\u003e re-add missing comments\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/9be501ccedf3bf207eedca170fdb058409954d33\"\u003e\u003ccode\u003e9be501c\u003c/code\u003e\u003c/a\u003e Bump version to 22.2.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/580b824b910258c04984ee59c07e5154c2dc8364\"\u003e\u003ccode\u003e580b824\u003c/code\u003e\u003c/a\u003e Fixes CJS type exports for stripe package (\u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2725\"\u003e#2725\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/047dd0cf460f9acc511c5d28170c22a2c085368c\"\u003e\u003ccode\u003e047dd0c\u003c/code\u003e\u003c/a\u003e Fix \u003ccode\u003eStripe.ErrorType.StripeError\u003c/code\u003e incorrectly being usable as a runtime clas...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/fe2f78c52f27969a1dd6207121fd2d9fea7197b5\"\u003e\u003ccode\u003efe2f78c\u003c/code\u003e\u003c/a\u003e handle shadowed namespaces (\u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2753\"\u003e#2753\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/56a570f8445392ab51cced01681e1591f7c7c9c2\"\u003e\u003ccode\u003e56a570f\u003c/code\u003e\u003c/a\u003e Add PR disclaimer to README (\u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2754\"\u003e#2754\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/d3b8ecd0a3b75a11c387b3664ce9dab69e88430c\"\u003e\u003ccode\u003ed3b8ecd\u003c/code\u003e\u003c/a\u003e Remove retired manual API tests covered by generated examples (\u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2752\"\u003e#2752\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/stripe/stripe-node/compare/v22.2.0...v22.2.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `eslint` from 10.4.1 to 10.5.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/eslint/eslint/releases\"\u003eeslint's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev10.5.0\u003c/h2\u003e\n\u003ch2\u003eFeatures\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/5ca8c5278edea1fd84d3ba83d8ea3f52fb3831ad\"\u003e\u003ccode\u003e5ca8c52\u003c/code\u003e\u003c/a\u003e feat: correct stack tracking in max-nested-callbacks (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20973\"\u003e#20973\u003c/a\u003e) (Pixel998)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/b5657837604fa5e8cf1278074782025cadd34b6c\"\u003e\u003ccode\u003eb565783\u003c/code\u003e\u003c/a\u003e feat: report no-with violations at the with keyword (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20971\"\u003e#20971\u003c/a\u003e) (Pixel998)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/2ce032fbc72a1a80c024c084a4f382fb6dece684\"\u003e\u003ccode\u003e2ce032f\u003c/code\u003e\u003c/a\u003e feat: report max-lines-per-function violations at function head (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20966\"\u003e#20966\u003c/a\u003e) (Pixel998)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/732cb3e09d5b8b809b5f461d118a5d9fdcd6427f\"\u003e\u003ccode\u003e732cb3e\u003c/code\u003e\u003c/a\u003e feat: report max-nested-callbacks violations at function head (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20967\"\u003e#20967\u003c/a\u003e) (Pixel998)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/f9c138a0ba7d8e37aed39aef4a3ff1cae8c669f7\"\u003e\u003ccode\u003ef9c138a\u003c/code\u003e\u003c/a\u003e feat: report max-depth violations on keywords (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20943\"\u003e#20943\u003c/a\u003e) (Pixel998)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/bdb496cc0d54b6d0a023aef9abd5f040ccff2101\"\u003e\u003ccode\u003ebdb496c\u003c/code\u003e\u003c/a\u003e feat: correct max-depth handling for else-if chains (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20944\"\u003e#20944\u003c/a\u003e) (Pixel998)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/c29687354a7f96093f57f7d73eecb866ad5e2953\"\u003e\u003ccode\u003ec296873\u003c/code\u003e\u003c/a\u003e feat: update error loc in \u003ccode\u003emax-statements\u003c/code\u003e to function header (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20907\"\u003e#20907\u003c/a\u003e) (Taejin Kim)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eDocumentation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/8ae1b5b856dc031cd6c701d89a4df7da4772cd56\"\u003e\u003ccode\u003e8ae1b5b\u003c/code\u003e\u003c/a\u003e docs: Update README (GitHub Actions Bot)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/ca7eb90127dcad917188bb1342623f02a272e781\"\u003e\u003ccode\u003eca7eb90\u003c/code\u003e\u003c/a\u003e docs: update Node.js prerequisites to include ICU support (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20962\"\u003e#20962\u003c/a\u003e) (Francesco Trotta)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/f99b47a6799be25321552402a49303bb06a43fe4\"\u003e\u003ccode\u003ef99b47a\u003c/code\u003e\u003c/a\u003e docs: Update README (GitHub Actions Bot)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/acf03d4eed31d259c7dc62af5b9640629784f7cc\"\u003e\u003ccode\u003eacf03d4\u003c/code\u003e\u003c/a\u003e docs: clarify precedence of parserOptions over languageOptions (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20926\"\u003e#20926\u003c/a\u003e) (sethamus)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eChores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/b18bf58c5ac748415ffffdff2d96980fbd6a57e8\"\u003e\u003ccode\u003eb18bf58\u003c/code\u003e\u003c/a\u003e chore: update ecosystem plugins (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20959\"\u003e#20959\u003c/a\u003e) (ESLint Bot)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/c2d1444df77cb42e5a0b89ab70496879d180a54d\"\u003e\u003ccode\u003ec2d1444\u003c/code\u003e\u003c/a\u003e refactor: replace areAllSegmentsUnreachable with !isAnySegmentReachable (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20951\"\u003e#20951\u003c/a\u003e) (Taejin Kim)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/243b8c56014bbbe63771185b0731d8dd4d1316e9\"\u003e\u003ccode\u003e243b8c5\u003c/code\u003e\u003c/a\u003e chore: enhance config-rule to support oneOf, anyOf, and nested schemas (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20788\"\u003e#20788\u003c/a\u003e) (kuldeep kumar)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/217b2a91f46137c5ffd693965e71306c4c15ea6b\"\u003e\u003ccode\u003e217b2a9\u003c/code\u003e\u003c/a\u003e test: add unit tests for ParserService (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20949\"\u003e#20949\u003c/a\u003e) (Taejin Kim)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/72003e781d76bd4ee0d98a6601730d0b829070f9\"\u003e\u003ccode\u003e72003e7\u003c/code\u003e\u003c/a\u003e test: add location information to error messages in \u003ccode\u003emax-statements\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20945\"\u003e#20945\u003c/a\u003e) (lumir)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/7797c266977b0bc4971aa79721813d480de72cd1\"\u003e\u003ccode\u003e7797c26\u003c/code\u003e\u003c/a\u003e refactor: deduplicate isAnySegmentReachable across rules (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20890\"\u003e#20890\u003c/a\u003e) (Taejin Kim)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/67c46fa6e4f34e88cc6bc82f8a0dcc917c65d257\"\u003e\u003ccode\u003e67c46fa\u003c/code\u003e\u003c/a\u003e chore: update ecosystem plugins (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20938\"\u003e#20938\u003c/a\u003e) (ESLint Bot)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/95d8c7a99f991abd8ab618d0ee2cbd4f58effc29\"\u003e\u003ccode\u003e95d8c7a\u003c/code\u003e\u003c/a\u003e chore: update dependency \u003ccode\u003e@​eslint/json\u003c/code\u003e to v2 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20934\"\u003e#20934\u003c/a\u003e) (renovate[bot])\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/cf9e496205142cd4971b9f98aed85866d1010b9c\"\u003e\u003ccode\u003ecf9e496\u003c/code\u003e\u003c/a\u003e chore: update \u003ccode\u003e@​arethetypeswrong/cli\u003c/code\u003e to 0.18.3 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20933\"\u003e#20933\u003c/a\u003e) (Pixel998)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/fb6d3960cacc51fc12383fa5ded2382adbf90c1c\"\u003e\u003ccode\u003efb6d396\u003c/code\u003e\u003c/a\u003e test: run type tests with TypeScript 7 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20868\"\u003e#20868\u003c/a\u003e) (sethamus)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/de3b672a267e32607db04176ce4775664acb3145\"\u003e\u003ccode\u003ede3b672\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/362a5185134290db696d39f97c9da609ded54040\"\u003e\u003ccode\u003e362a518\u003c/code\u003e\u003c/a\u003e Build: changelog update for 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/5ca8c5278edea1fd84d3ba83d8ea3f52fb3831ad\"\u003e\u003ccode\u003e5ca8c52\u003c/code\u003e\u003c/a\u003e feat: correct stack tracking in max-nested-callbacks (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20973\"\u003e#20973\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/b5657837604fa5e8cf1278074782025cadd34b6c\"\u003e\u003ccode\u003eb565783\u003c/code\u003e\u003c/a\u003e feat: report no-with violations at the with keyword (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20971\"\u003e#20971\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/2ce032fbc72a1a80c024c084a4f382fb6dece684\"\u003e\u003ccode\u003e2ce032f\u003c/code\u003e\u003c/a\u003e feat: report max-lines-per-function violations at function head (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20966\"\u003e#20966\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/732cb3e09d5b8b809b5f461d118a5d9fdcd6427f\"\u003e\u003ccode\u003e732cb3e\u003c/code\u003e\u003c/a\u003e feat: report max-nested-callbacks violations at function head (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20967\"\u003e#20967\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/f9c138a0ba7d8e37aed39aef4a3ff1cae8c669f7\"\u003e\u003ccode\u003ef9c138a\u003c/code\u003e\u003c/a\u003e feat: report max-depth violations on keywords (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20943\"\u003e#20943\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/8ae1b5b856dc031cd6c701d89a4df7da4772cd56\"\u003e\u003ccode\u003e8ae1b5b\u003c/code\u003e\u003c/a\u003e docs: Update README\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/ca7eb90127dcad917188bb1342623f02a272e781\"\u003e\u003ccode\u003eca7eb90\u003c/code\u003e\u003c/a\u003e docs: update Node.js prerequisites to include ICU support (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20962\"\u003e#20962\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/b18bf58c5ac748415ffffdff2d96980fbd6a57e8\"\u003e\u003ccode\u003eb18bf58\u003c/code\u003e\u003c/a\u003e chore: update ecosystem plugins (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20959\"\u003e#20959\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/eslint/eslint/compare/v10.4.1...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e","html_url":"https://github.com/proark1/meetingservice/pull/69","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/proark1%2Fmeetingservice/issues/69","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/69/packages"},{"uuid":"4703675254","node_id":"PR_kwDOCOOOjM7ohh7q","number":28,"state":"closed","title":"chore(deps): bump on-headers, compression and morgan","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-06-19T21:39:40.000Z","author_association":null,"state_reason":null,"created_at":"2026-06-19T21:32:50.000Z","updated_at":"2026-06-19T21:39:49.000Z","time_to_close":410,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"on-headers, compression"},{"name":"morgan","repository_url":"https://github.com/expressjs/morgan","old_version":"1.9.1","new_version":"1.11.0"}],"path":null,"ecosystem":"npm"},"body":"Bumps [on-headers](https://github.com/jshttp/on-headers) to 1.1.0 and updates ancestor dependencies [on-headers](https://github.com/jshttp/on-headers), [compression](https://github.com/expressjs/compression) and [morgan](https://github.com/expressjs/morgan). These dependencies need to be updated together.\n\nUpdates `on-headers` from 1.0.2 to 1.1.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jshttp/on-headers/releases\"\u003eon-headers's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.1.0\u003c/h2\u003e\n\u003ch2\u003eImportant\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2025-7339\"\u003eCVE-2025-7339\u003c/a\u003e (\u003ca href=\"https://github.com/jshttp/on-headers/security/advisories/GHSA-76c9-3jph-rj3q\"\u003eGHSA-76c9-3jph-rj3q\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMigrate CI pipeline to GitHub actions by \u003ca href=\"https://github.com/carpasse\"\u003e\u003ccode\u003e@​carpasse\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/12\"\u003ejshttp/on-headers#12\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix README.md badges by \u003ca href=\"https://github.com/carpasse\"\u003e\u003ccode\u003e@​carpasse\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/13\"\u003ejshttp/on-headers#13\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eadd OSSF scorecard action by \u003ca href=\"https://github.com/carpasse\"\u003e\u003ccode\u003e@​carpasse\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/14\"\u003ejshttp/on-headers#14\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: use \u003ccode\u003eubuntu-latest\u003c/code\u003e as ci runner by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/19\"\u003ejshttp/on-headers#19\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: apply OSSF Scorecard security best practices by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/20\"\u003ejshttp/on-headers#20\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e👷 add upstream change detection by \u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/31\"\u003ejshttp/on-headers#31\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e✨ add script to update known hashes by \u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/32\"\u003ejshttp/on-headers#32\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💚 update CI - add newer node versions by \u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/33\"\u003ejshttp/on-headers#33\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/carpasse\"\u003e\u003ccode\u003e@​carpasse\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/12\"\u003ejshttp/on-headers#12\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/19\"\u003ejshttp/on-headers#19\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/31\"\u003ejshttp/on-headers#31\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/jshttp/on-headers/compare/v1.0.2...v1.1.0\"\u003ehttps://github.com/jshttp/on-headers/compare/v1.0.2...v1.1.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jshttp/on-headers/blob/master/HISTORY.md\"\u003eon-headers's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.1.0 / 2025-07-17\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2025-7339\"\u003eCVE-2025-7339\u003c/a\u003e (\u003ca href=\"https://github.com/jshttp/on-headers/security/advisories/GHSA-76c9-3jph-rj3q\"\u003eGHSA-76c9-3jph-rj3q\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/4b017af88f5375bbdf3ad2ee732d2c122e4f52b0\"\u003e\u003ccode\u003e4b017af\u003c/code\u003e\u003c/a\u003e 1.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/b636f2d08e6c1e0a784b53a13cd61e05c09bb118\"\u003e\u003ccode\u003eb636f2d\u003c/code\u003e\u003c/a\u003e ♻️ refactor header array code\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/3e2c2d46c3e9592f6a1c3a3a1dbe622401f95d39\"\u003e\u003ccode\u003e3e2c2d4\u003c/code\u003e\u003c/a\u003e ✨ ignore falsy header keys, matching node behavior\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/172eb41b99a5a290b27a2c43fe602ca33aa1c8ce\"\u003e\u003ccode\u003e172eb41\u003c/code\u003e\u003c/a\u003e ✨ support duplicate headers\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/c6e384908c9c6127d18831d16ab0bd96e1231867\"\u003e\u003ccode\u003ec6e3849\u003c/code\u003e\u003c/a\u003e 🔒️ fix array handling\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/6893518341bb4e5363285df086b3158302d3b216\"\u003e\u003ccode\u003e6893518\u003c/code\u003e\u003c/a\u003e 💚 update CI - add newer node versions\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/56a345d82b51a0dcb8d09f061f87b1fd1dc4c01e\"\u003e\u003ccode\u003e56a345d\u003c/code\u003e\u003c/a\u003e ✨ add script to update known hashes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/175ab217155d525371a5416ff059f895a3a532a6\"\u003e\u003ccode\u003e175ab21\u003c/code\u003e\u003c/a\u003e 👷 add upstream change detection (\u003ca href=\"https://redirect.github.com/jshttp/on-headers/issues/31\"\u003e#31\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/ce0b2c8fcd313d38d3534fb731050dc16e105bf6\"\u003e\u003ccode\u003ece0b2c8\u003c/code\u003e\u003c/a\u003e ci: apply OSSF Scorecard security best practices (\u003ca href=\"https://redirect.github.com/jshttp/on-headers/issues/20\"\u003e#20\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/1a38c543e75cd06217b449531de10b1758e35299\"\u003e\u003ccode\u003e1a38c54\u003c/code\u003e\u003c/a\u003e fix: use \u003ccode\u003eubuntu-latest\u003c/code\u003e as ci runner (\u003ca href=\"https://redirect.github.com/jshttp/on-headers/issues/19\"\u003e#19\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/jshttp/on-headers/compare/v1.0.2...v1.1.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~ulisesgascon\"\u003eulisesgascon\u003c/a\u003e, a new releaser for on-headers since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `compression` from 1.7.3 to 1.8.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/compression/releases\"\u003ecompression's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.8.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(docs): update multiple links from http to https by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/222\"\u003eexpressjs/compression#222\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add dependabot for github actions by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/207\"\u003eexpressjs/compression#207\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 2.23.2 to 3.28.15 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/228\"\u003eexpressjs/compression#228\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/229\"\u003eexpressjs/compression#229\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps-dev): bump eslint-plugin-import from 2.26.0 to 2.31.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/230\"\u003eexpressjs/compression#230\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps-dev): bump supertest from 6.2.3 to 6.3.4 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/231\"\u003eexpressjs/compression#231\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[StepSecurity] ci: Harden GitHub Actions by \u003ca href=\"https://github.com/step-security-bot\"\u003e\u003ccode\u003e@​step-security-bot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/235\"\u003eexpressjs/compression#235\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 3.28.15 to 3.29.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/243\"\u003eexpressjs/compression#243\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/239\"\u003eexpressjs/compression#239\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump ossf/scorecard-action from 2.4.1 to 2.4.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/240\"\u003eexpressjs/compression#240\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/checkout from 4.1.1 to 4.2.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/241\"\u003eexpressjs/compression#241\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps-dev): bump eslint-plugin-import from 2.31.0 to 2.32.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/244\"\u003eexpressjs/compression#244\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps: on-headers@1.1.0 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/246\"\u003eexpressjs/compression#246\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRelease: 1.8.1 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/247\"\u003eexpressjs/compression#247\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/228\"\u003eexpressjs/compression#228\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/step-security-bot\"\u003e\u003ccode\u003e@​step-security-bot\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/235\"\u003eexpressjs/compression#235\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/compression/compare/1.8.0...v1.8.1\"\u003ehttps://github.com/expressjs/compression/compare/1.8.0...v1.8.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev1.8.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRefactor chunkLength function for improved readability and consistency by \u003ca href=\"https://github.com/Ayoub-Mabrouk\"\u003e\u003ccode\u003e@​Ayoub-Mabrouk\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/203\"\u003eexpressjs/compression#203\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor toBuffer function to simplify buffer check logic by \u003ca href=\"https://github.com/Ayoub-Mabrouk\"\u003e\u003ccode\u003e@​Ayoub-Mabrouk\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/201\"\u003eexpressjs/compression#201\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add CodeQL (SAST) by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/204\"\u003eexpressjs/compression#204\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse headersSent instead of  _header by \u003ca href=\"https://github.com/maritz\"\u003e\u003ccode\u003e@​maritz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/129\"\u003eexpressjs/compression#129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBugfix/use write head instead of implicit header by \u003ca href=\"https://github.com/Icehunter\"\u003e\u003ccode\u003e@​Icehunter\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/170\"\u003eexpressjs/compression#170\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: add default option by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/191\"\u003eexpressjs/compression#191\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: update ci workflow by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/206\"\u003eexpressjs/compression#206\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: support for brotli by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/194\"\u003eexpressjs/compression#194\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: improve readme by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/209\"\u003eexpressjs/compression#209\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: keywords field by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/210\"\u003eexpressjs/compression#210\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: simplify encoding negotiation logic by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/213\"\u003eexpressjs/compression#213\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Ayoub-Mabrouk\"\u003e\u003ccode\u003e@​Ayoub-Mabrouk\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/203\"\u003eexpressjs/compression#203\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/maritz\"\u003e\u003ccode\u003e@​maritz\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/129\"\u003eexpressjs/compression#129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Icehunter\"\u003e\u003ccode\u003e@​Icehunter\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/170\"\u003eexpressjs/compression#170\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/compression/compare/1.7.5...v1.8.0\"\u003ehttps://github.com/expressjs/compression/compare/1.7.5...v1.8.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e1.7.5\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore: add support for OSSF scorecard reporting by \u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/186\"\u003eexpressjs/compression#186\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: fix errors in ci github action for node 8 and 9 by \u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/187\"\u003eexpressjs/compression#187\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: fix spelling by \u003ca href=\"https://github.com/dijonkitchen\"\u003e\u003ccode\u003e@​dijonkitchen\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/174\"\u003eexpressjs/compression#174\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps: bytes@3.1.2 by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/192\"\u003eexpressjs/compression#192\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/compression/blob/master/HISTORY.md\"\u003ecompression's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.8.1 / 2025-07-17\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: on-headers@~1.1.0\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2025-7339\"\u003eCVE-2025-7339\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/on-headers/security/advisories/GHSA-76c9-3jph-rj3q\"\u003eGHSA-76c9-3jph-rj3q\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.8.0 / 2025-02-10\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eUse \u003ccode\u003eres.headersSent\u003c/code\u003e when available\u003c/li\u003e\n\u003cli\u003eReplace \u003ccode\u003e_implicitHeader\u003c/code\u003e with \u003ccode\u003ewriteHead\u003c/code\u003e property\u003c/li\u003e\n\u003cli\u003eadd brotli support for versions of node that support it\u003c/li\u003e\n\u003cli\u003eAdd the enforceEncoding option for requests without \u003ccode\u003eAccept-Encoding\u003c/code\u003e header\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.7.5 / 2024-10-31\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: Replace accepts with negotiator@~0.6.4\n\u003cul\u003e\n\u003cli\u003eAdd preference option\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: bytes@3.1.2\n\u003cul\u003e\n\u003cli\u003eAdd petabyte (\u003ccode\u003epb\u003c/code\u003e) support\u003c/li\u003e\n\u003cli\u003eFix \u0026quot;thousandsSeparator\u0026quot; incorrecting formatting fractional part\u003c/li\u003e\n\u003cli\u003eFix return value for un-parsable strings\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: compressible@~2.0.18\n\u003cul\u003e\n\u003cli\u003eMark \u003ccode\u003efont/ttf\u003c/code\u003e as compressible\u003c/li\u003e\n\u003cli\u003eRemove compressible from \u003ccode\u003emultipart/mixed\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: mime-db@'\u0026gt;= 1.43.0 \u0026lt; 2'\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: safe-buffer@5.2.1\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.7.4 / 2019-03-18\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: compressible@~2.0.16\n\u003cul\u003e\n\u003cli\u003eMark \u003ccode\u003etext/less\u003c/code\u003e as compressible\u003c/li\u003e\n\u003cli\u003edeps: mime-db@'\u0026gt;= 1.38.0 \u0026lt; 2'\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: on-headers@~1.0.2\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eres.writeHead\u003c/code\u003e patch missing return value\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eperf: prevent unnecessary buffer copy\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/83a0c45fe190f4fcb8b515c18065db9cb9029dd1\"\u003e\u003ccode\u003e83a0c45\u003c/code\u003e\u003c/a\u003e 1.8.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/ce62713129f4b33eac4b833e1722410091646395\"\u003e\u003ccode\u003ece62713\u003c/code\u003e\u003c/a\u003e deps: on-headers@1.1.0 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/246\"\u003e#246\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/f4acb23985fa345318d34d4a96acf555a883efeb\"\u003e\u003ccode\u003ef4acb23\u003c/code\u003e\u003c/a\u003e build(deps-dev): bump eslint-plugin-import from 2.31.0 to 2.32.0 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/244\"\u003e#244\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/6eaebe63f2ecac191d402c570bde140488435c4c\"\u003e\u003ccode\u003e6eaebe6\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 4.2.2 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/241\"\u003e#241\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/37e062312fd270f84b5f50f7c6f88312609633f5\"\u003e\u003ccode\u003e37e0623\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.4.1 to 2.4.2 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/240\"\u003e#240\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/bc436b26283c2f85a9711085dd0e4a580de50ba7\"\u003e\u003ccode\u003ebc436b2\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/239\"\u003e#239\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/2f9f5726751ecf12f7c46a9d1493bcd1966e09a7\"\u003e\u003ccode\u003e2f9f572\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.28.15 to 3.29.2 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/243\"\u003e#243\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/5f13b148d2a1a2daaa8647e03592214bb240bf18\"\u003e\u003ccode\u003e5f13b14\u003c/code\u003e\u003c/a\u003e [StepSecurity] ci: Harden GitHub Actions (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/235\"\u003e#235\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/76e094548125afbf8089a482d5982dc96c7ce398\"\u003e\u003ccode\u003e76e0945\u003c/code\u003e\u003c/a\u003e build(deps-dev): bump supertest from 6.2.3 to 6.3.4 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/231\"\u003e#231\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/ae6ee809dc0cb40febaf2a5bff298465bd5a207f\"\u003e\u003ccode\u003eae6ee80\u003c/code\u003e\u003c/a\u003e build(deps-dev): bump eslint-plugin-import from 2.26.0 to 2.31.0 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/230\"\u003e#230\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/compression/compare/1.7.3...v1.8.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~ulisesgascon\"\u003eulisesgascon\u003c/a\u003e, a new releaser for compression since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `morgan` from 1.9.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e1.10.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003erenaming simple to sample in readme by \u003ca href=\"https://github.com/ryhinchey\"\u003e\u003ccode\u003e@​ryhinchey\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/237\"\u003eexpressjs/morgan#237\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eadding installation instructions to readme by \u003ca href=\"https://github.com/ryhinchey\"\u003e\u003ccode\u003e@​ryhinchey\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/233\"\u003eexpressjs/morgan#233\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: add support for OSSF scorecard reporting by \u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: replace travis with github actions by \u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/290\"\u003eexpressjs/morgan#290\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: add example output for log formats by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: use ubuntu-latest by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: apply OSSF Scorecard security best practices by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eremove --bail by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/314\"\u003eexpressjs/morgan#314\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e⬆️ bump on-headers by \u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.10.1\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.10.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e1.10.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e:total-time\u003c/code\u003e token\u003c/li\u003e\n\u003cli\u003eFix trailing space in colored status code for \u003ccode\u003edev\u003c/code\u003e format\u003c/li\u003e\n\u003cli\u003edeps: basic-auth@~2.0.1\n\u003cul\u003e\n\u003cli\u003edeps: safe-buffer@5.1.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: depd@~2.0.0\n\u003cul\u003e\n\u003cli\u003eReplace internal \u003ccode\u003eeval\u003c/code\u003e usage with \u003ccode\u003eFunction\u003c/code\u003e constructor\u003c/li\u003e\n\u003cli\u003eUse instance methods on \u003ccode\u003eprocess\u003c/code\u003e to check for listeners\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: on-headers@~1.0.2\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eres.writeHead\u003c/code\u003e patch missing return value\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.10.1 / 2025-07-17\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: on-headers@~1.1.0\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2025-7339\"\u003eCVE-2025-7339\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/on-headers/security/advisories/GHSA-76c9-3jph-rj3q\"\u003eGHSA-76c9-3jph-rj3q\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.10.0 / 2020-03-20\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e:total-time\u003c/code\u003e token\u003c/li\u003e\n\u003cli\u003eFix trailing space in colored status code for \u003ccode\u003edev\u003c/code\u003e format\u003c/li\u003e\n\u003cli\u003edeps: basic-auth@~2.0.1\n\u003cul\u003e\n\u003cli\u003edeps: safe-buffer@5.1.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: depd@~2.0.0\n\u003cul\u003e\n\u003cli\u003eReplace internal \u003ccode\u003eeval\u003c/code\u003e usage with \u003ccode\u003eFunction\u003c/code\u003e constructor\u003c/li\u003e\n\u003cli\u003eUse instance methods on \u003ccode\u003eprocess\u003c/code\u003e to check for listeners\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: on-headers@~1.0.2\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eres.writeHead\u003c/code\u003e patch missing return value\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.9.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~ulisesgascon\"\u003eulisesgascon\u003c/a\u003e, a new releaser for morgan since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/ReachFive/fake-api-server/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/ReachFive/fake-api-server/pull/28","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/ReachFive%2Ffake-api-server/issues/28","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/28/packages"},{"uuid":"4688356768","node_id":"PR_kwDOR5Op087nvAk5","number":103,"state":"open","title":"chore(deps): Bump the seguridad-y-patches group across 1 directory with 34 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-06-18T01:26:44.000Z","updated_at":"2026-06-20T08:16:52.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): Bump","group_name":"seguridad-y-patches","update_count":34,"packages":[{"name":"next","old_version":"16.2.6","new_version":"16.2.9","repository_url":"https://github.com/vercel/next.js"},{"name":"@playwright/test","old_version":"1.59.1","new_version":"1.61.0","repository_url":"https://github.com/microsoft/playwright"},{"name":"prettier","old_version":"3.8.1","new_version":"3.8.4","repository_url":"https://github.com/prettier/prettier"},{"name":"turbo","old_version":"2.9.14","new_version":"2.9.18","repository_url":"https://github.com/vercel/turborepo"},{"name":"@sentry/nextjs","old_version":"10.49.0","new_version":"10.59.0","repository_url":"https://github.com/getsentry/sentry-javascript"},{"name":"axios","old_version":"1.16.1","new_version":"1.18.0","repository_url":"https://github.com/axios/axios"},{"name":"js-cookie","old_version":"3.0.5","new_version":"3.0.8","repository_url":"https://github.com/js-cookie/js-cookie"},{"name":"lucide-react","old_version":"0.468.0","new_version":"0.577.0","repository_url":"https://github.com/lucide-icons/lucide"},{"name":"react","old_version":"19.2.6","new_version":"19.2.7","repository_url":"https://github.com/facebook/react"},{"name":"@types/react","old_version":"19.2.14","new_version":"19.2.17","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"react-dom","old_version":"19.2.6","new_version":"19.2.7","repository_url":"https://github.com/facebook/react"},{"name":"@types/node","old_version":"20.19.39","new_version":"20.19.43","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"eslint-config-next","old_version":"16.2.5","new_version":"16.2.9","repository_url":"https://github.com/vercel/next.js"},{"name":"postcss","old_version":"8.5.10","new_version":"8.5.15","repository_url":"https://github.com/postcss/postcss"},{"name":"@supabase/supabase-js","old_version":"2.105.4","new_version":"2.108.2","repository_url":"https://github.com/supabase/supabase-js"},{"name":"cloudinary","old_version":"2.9.0","new_version":"2.10.0","repository_url":"https://github.com/cloudinary/cloudinary_npm"},{"name":"express","old_version":"4.22.1","new_version":"4.22.2","repository_url":"https://github.com/expressjs/express"},{"name":"mercadopago","old_version":"2.12.0","new_version":"2.13.0","repository_url":"https://github.com/mercadopago/sdk-nodejs"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"node-cron","old_version":"4.2.1","new_version":"4.4.1","repository_url":"https://github.com/merencia/node-cron"},{"name":"nodemailer","old_version":"8.0.7","new_version":"8.0.11","repository_url":"https://github.com/nodemailer/nodemailer"},{"name":"openai","old_version":"6.33.0","new_version":"6.44.0","repository_url":"https://github.com/openai/openai-node"},{"name":"resend","old_version":"6.10.0","new_version":"6.14.0","repository_url":"https://github.com/resend/resend-node"},{"name":"autoprefixer","old_version":"10.4.27","new_version":"10.5.0","repository_url":"https://github.com/postcss/autoprefixer"},{"name":"@capacitor/core","old_version":"8.3.1","new_version":"8.4.1","repository_url":"https://github.com/ionic-team/capacitor"},{"name":"@capgo/capacitor-updater","old_version":"8.45.11","new_version":"8.49.7","repository_url":"https://github.com/Cap-go/capacitor-updater"},{"name":"framer-motion","old_version":"12.38.0","new_version":"12.40.0","repository_url":"https://github.com/motiondivision/motion"},{"name":"@capacitor/android","old_version":"8.3.1","new_version":"8.4.1","repository_url":"https://github.com/ionic-team/capacitor"},{"name":"@capacitor/cli","old_version":"8.3.1","new_version":"8.4.1","repository_url":"https://github.com/ionic-team/capacitor"},{"name":"capacitor-tcp-socket","old_version":"7.1.0","new_version":"7.1.1","repository_url":"https://github.com/gee1k/capacitor-tcp-socket"},{"name":"@tanstack/react-virtual","old_version":"3.13.25","new_version":"3.14.3","repository_url":"https://github.com/TanStack/virtual"},{"name":"react-hotkeys-hook","old_version":"5.2.4","new_version":"5.3.2","repository_url":"https://github.com/JohannesKlauss/react-keymap-hook"},{"name":"pg","old_version":"8.20.0","new_version":"8.22.0","repository_url":"https://github.com/brianc/node-postgres"},{"name":"tsx","old_version":"4.21.0","new_version":"4.22.4","repository_url":"https://github.com/privatenumber/tsx"}],"path":null,"ecosystem":"npm"},"body":"Bumps the seguridad-y-patches group with 34 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [next](https://github.com/vercel/next.js) | `16.2.6` | `16.2.9` |\n| [@playwright/test](https://github.com/microsoft/playwright) | `1.59.1` | `1.61.0` |\n| [prettier](https://github.com/prettier/prettier) | `3.8.1` | `3.8.4` |\n| [turbo](https://github.com/vercel/turborepo) | `2.9.14` | `2.9.18` |\n| [@sentry/nextjs](https://github.com/getsentry/sentry-javascript) | `10.49.0` | `10.59.0` |\n| [axios](https://github.com/axios/axios) | `1.16.1` | `1.18.0` |\n| [js-cookie](https://github.com/js-cookie/js-cookie) | `3.0.5` | `3.0.8` |\n| [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react) | `0.468.0` | `0.577.0` |\n| [react](https://github.com/facebook/react/tree/HEAD/packages/react) | `19.2.6` | `19.2.7` |\n| [@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react) | `19.2.14` | `19.2.17` |\n| [react-dom](https://github.com/facebook/react/tree/HEAD/packages/react-dom) | `19.2.6` | `19.2.7` |\n| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `20.19.39` | `20.19.43` |\n| [eslint-config-next](https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next) | `16.2.5` | `16.2.9` |\n| [postcss](https://github.com/postcss/postcss) | `8.5.10` | `8.5.15` |\n| [@supabase/supabase-js](https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js) | `2.105.4` | `2.108.2` |\n| [cloudinary](https://github.com/cloudinary/cloudinary_npm) | `2.9.0` | `2.10.0` |\n| [express](https://github.com/expressjs/express) | `4.22.1` | `4.22.2` |\n| [mercadopago](https://github.com/mercadopago/sdk-nodejs) | `2.12.0` | `2.13.0` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [node-cron](https://github.com/merencia/node-cron) | `4.2.1` | `4.4.1` |\n| [nodemailer](https://github.com/nodemailer/nodemailer) | `8.0.7` | `8.0.11` |\n| [openai](https://github.com/openai/openai-node) | `6.33.0` | `6.44.0` |\n| [resend](https://github.com/resend/resend-node) | `6.10.0` | `6.14.0` |\n| [autoprefixer](https://github.com/postcss/autoprefixer) | `10.4.27` | `10.5.0` |\n| [@capacitor/core](https://github.com/ionic-team/capacitor) | `8.3.1` | `8.4.1` |\n| [@capgo/capacitor-updater](https://github.com/Cap-go/capacitor-updater) | `8.45.11` | `8.49.7` |\n| [framer-motion](https://github.com/motiondivision/motion) | `12.38.0` | `12.40.0` |\n| [@capacitor/android](https://github.com/ionic-team/capacitor) | `8.3.1` | `8.4.1` |\n| [@capacitor/cli](https://github.com/ionic-team/capacitor) | `8.3.1` | `8.4.1` |\n| [capacitor-tcp-socket](https://github.com/gee1k/capacitor-tcp-socket) | `7.1.0` | `7.1.1` |\n| [@tanstack/react-virtual](https://github.com/TanStack/virtual/tree/HEAD/packages/react-virtual) | `3.13.25` | `3.14.3` |\n| [react-hotkeys-hook](https://github.com/JohannesKlauss/react-keymap-hook) | `5.2.4` | `5.3.2` |\n| [pg](https://github.com/brianc/node-postgres/tree/HEAD/packages/pg) | `8.20.0` | `8.22.0` |\n| [tsx](https://github.com/privatenumber/tsx) | `4.21.0` | `4.22.4` |\n\n\nUpdates `next` from 16.2.6 to 16.2.9\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/next.js/releases\"\u003enext's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev16.2.9\u003c/h2\u003e\n\u003cp\u003eEmpty release to ensure \u003ccode\u003enext@latest\u003c/code\u003e points at a stable release. Next.js only allows publishing with Trusted Publishing enabled. In order to fix NPM dist-tags, we have to release a new version. Updating dist-tags is not possible with Trusted Publishing.\u003c/p\u003e\n\u003ch2\u003ev16.2.8\u003c/h2\u003e\n\u003cp\u003eRelease with no changes in an attempt to fix \u003ccode\u003enext@latest\u003c/code\u003e pointing at a prerelease version.\u003c/p\u003e\n\u003ch2\u003ev16.2.7\u003c/h2\u003e\n\u003cblockquote\u003e\n\u003cp\u003e[!NOTE]\nThis release is backporting bug fixes. It does \u003cstrong\u003enot\u003c/strong\u003e include all pending features/changes on canary.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003ch3\u003eCore Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBackport documentation fixes for v16.2 (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/93804\"\u003e#93804\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Patch \u003ccode\u003eplaywright-core\u003c/code\u003e to resolve \u003ccode\u003e_finishedPromise\u003c/code\u003e on \u003ccode\u003erequestFailed\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/93920\"\u003e#93920\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Fix dev mode hydration failure when page is served from HTTP cache (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/93492\"\u003e#93492\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Fix catch-all \u003ccode\u003erouter.query\u003c/code\u003e corruption with \u003ccode\u003ebasePath\u003c/code\u003e + \u003ccode\u003erewrites\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/93917\"\u003e#93917\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Encode non-ASCII characters in cache tags at construction (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/93918\"\u003e#93918\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Fix server action forwarding loop with middleware rewrites (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/93919\"\u003e#93919\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Turbopack: switch from base40 to base38 hash encoding (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/93932\"\u003e#93932\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[ci] Disable hanging node 24 typescript tests on 16.2 backport branch (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94164\"\u003e#94164\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Fix \u0026quot;type: module\u0026quot; in project dir when using standalone or adapters (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94050\"\u003e#94050\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Propagate adapter preferred regions (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94200\"\u003e#94200\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[16.2.x] Don't drop \u003ccode\u003eFormData\u003c/code\u003e entries (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94240\"\u003e#94240\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] feat(turbopack): add LocalPathOrProjectPath PostCSS config resolution (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94284\"\u003e#94284\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eCredits\u003c/h3\u003e\n\u003cp\u003eHuge thanks to \u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/icyJoseph\"\u003e\u003ccode\u003e@​icyJoseph\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/unstubbable\"\u003e\u003ccode\u003e@​unstubbable\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/mischnic\"\u003e\u003ccode\u003e@​mischnic\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/bgw\"\u003e\u003ccode\u003e@​bgw\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/timneutkens\"\u003e\u003ccode\u003e@​timneutkens\u003c/code\u003e\u003c/a\u003e, and \u003ca href=\"https://github.com/lukesandberg\"\u003e\u003ccode\u003e@​lukesandberg\u003c/code\u003e\u003c/a\u003e for helping!\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/f37fad940522e000af5498209fd237d863b4fa16\"\u003e\u003ccode\u003ef37fad9\u003c/code\u003e\u003c/a\u003e v16.2.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/d9aaaedfd8050e58e3c82c1cea412d670750b32b\"\u003e\u003ccode\u003ed9aaaed\u003c/code\u003e\u003c/a\u003e [cd] Allow tagging semver-lower releases as \u003ccode\u003e@latest\u003c/code\u003e if \u003ccode\u003e@latest\u003c/code\u003e po… (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94627\"\u003e#94627\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/6f1680448c81904efcd36704edf01a6b7323abbf\"\u003e\u003ccode\u003e6f16804\u003c/code\u003e\u003c/a\u003e v16.2.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/0dbc1d5c860bf47c8c4f794e053b93fd02355d4e\"\u003e\u003ccode\u003e0dbc1d5\u003c/code\u003e\u003c/a\u003e [16.2.x][cd] Ensure release can be triggered on old branches (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94598\"\u003e#94598\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/90e3c811e7a3603a60dfcf627cc65f8b24ad1d5d\"\u003e\u003ccode\u003e90e3c81\u003c/code\u003e\u003c/a\u003e [16.2.x] Align Actions dependencies with Canary (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94339\"\u003e#94339\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/83f402c69db9faf3f727bea5c85249fe9af9af54\"\u003e\u003ccode\u003e83f402c\u003c/code\u003e\u003c/a\u003e [16.2.x][cd] Stop fetching all tags when searching parent tag (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94334\"\u003e#94334\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/411c455dcdec630b9e2e83d24e27b0f9e05927b6\"\u003e\u003ccode\u003e411c455\u003c/code\u003e\u003c/a\u003e v16.2.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/c63224f3d8e8dd0a4ef8635916f92954421e5f1e\"\u003e\u003ccode\u003ec63224f\u003c/code\u003e\u003c/a\u003e [backport] feat(turbopack): add LocalPathOrProjectPath PostCSS config resolut...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/63115c79877c90df4371c2425f3fc5d3a55ac58d\"\u003e\u003ccode\u003e63115c7\u003c/code\u003e\u003c/a\u003e [16.2.x] Don't drop \u003ccode\u003eFormData\u003c/code\u003e entries (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94240\"\u003e#94240\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/aef22fdc828226227f618bb982a222e1256ba6f2\"\u003e\u003ccode\u003eaef22fd\u003c/code\u003e\u003c/a\u003e [backport] Propagate adapter preferred regions (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94200\"\u003e#94200\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vercel/next.js/compare/v16.2.6...v16.2.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@playwright/test` from 1.59.1 to 1.61.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/microsoft/playwright/releases\"\u003e@​playwright/test's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.61.0\u003c/h2\u003e\n\u003ch2\u003e🔑 WebAuthn passkeys\u003c/h2\u003e\n\u003cp\u003eNew \u003ca href=\"https://playwright.dev/docs/api/class-credentials\"\u003eCredentials\u003c/a\u003e virtual authenticator, available via \u003ca href=\"https://playwright.dev/docs/api/class-browsercontext#browser-context-credentials\"\u003ebrowserContext.credentials\u003c/a\u003e, lets tests register passkeys and answer \u003ccode\u003enavigator.credentials.create()\u003c/code\u003e / \u003ccode\u003enavigator.credentials.get()\u003c/code\u003e ceremonies in the page — no real hardware key required, works in all browsers:\u003c/p\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003econst context = await browser.newContext();\r\n\u003cp\u003e// Seed a passkey your backend provisioned for a test user.\u003cbr /\u003e\nawait context.credentials.create('example.com', {\u003cbr /\u003e\nid: credentialId,\u003cbr /\u003e\nuserHandle,\u003cbr /\u003e\nprivateKey,\u003cbr /\u003e\npublicKey,\u003cbr /\u003e\n});\u003cbr /\u003e\nawait context.credentials.install();\u003c/p\u003e\n\u003cp\u003econst page = await context.newPage();\u003cbr /\u003e\nawait page.goto('\u003ca href=\"https://example.com/login\"\u003ehttps://example.com/login\u003c/a\u003e');\u003cbr /\u003e\n// The page's navigator.credentials.get() is answered with the seeded passkey.\u003cbr /\u003e\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003cp\u003eYou can also let the app register a passkey once in a setup test, read it back with \u003ca href=\"https://playwright.dev/docs/api/class-credentials#credentials-get\"\u003ecredentials.get()\u003c/a\u003e, and seed it into later tests — see \u003ca href=\"https://playwright.dev/docs/api/class-credentials\"\u003eCredentials\u003c/a\u003e for details.\u003c/p\u003e\n\u003ch2\u003e🗃️ Web Storage\u003c/h2\u003e\n\u003cp\u003eNew \u003ca href=\"https://playwright.dev/docs/api/class-webstorage\"\u003eWebStorage\u003c/a\u003e API, available via \u003ca href=\"https://playwright.dev/docs/api/class-page#page-local-storage\"\u003epage.localStorage\u003c/a\u003e and \u003ca href=\"https://playwright.dev/docs/api/class-page#page-session-storage\"\u003epage.sessionStorage\u003c/a\u003e, reads and writes the page's storage for the current origin:\u003c/p\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003eawait page.localStorage.setItem('token', 'abc');\r\nconst token = await page.localStorage.getItem('token');\r\nconst items = await page.sessionStorage.items();\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch2\u003eNew APIs\u003c/h2\u003e\n\u003ch3\u003eNetwork\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://playwright.dev/docs/api/class-apiresponse#api-response-security-details\"\u003eapiResponse.securityDetails()\u003c/a\u003e and \u003ca href=\"https://playwright.dev/docs/api/class-apiresponse#api-response-server-addr\"\u003eapiResponse.serverAddr()\u003c/a\u003e mirror the browser-side \u003ca href=\"https://playwright.dev/docs/api/class-response#response-security-details\"\u003eresponse.securityDetails()\u003c/a\u003e and \u003ca href=\"https://playwright.dev/docs/api/class-response#response-server-addr\"\u003eresponse.serverAddr()\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBrowser and Screencast\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eNew option \u003ccode\u003eartifactsDir\u003c/code\u003e in \u003ca href=\"https://playwright.dev/docs/api/class-browsertype#browser-type-connect-over-cdp\"\u003ebrowserType.connectOverCDP()\u003c/a\u003e controls where artifacts such as traces and downloads are stored when attached to an existing browser.\u003c/li\u003e\n\u003cli\u003eNew option \u003ccode\u003ecursor\u003c/code\u003e in \u003ca href=\"https://playwright.dev/docs/api/class-screencast#screencast-show-actions\"\u003escreencast.showActions()\u003c/a\u003e controls the cursor decoration rendered for pointer actions.\u003c/li\u003e\n\u003cli\u003eThe \u003ccode\u003eonFrame\u003c/code\u003e callback in \u003ca href=\"https://playwright.dev/docs/api/class-screencast#screencast-start\"\u003escreencast.start()\u003c/a\u003e now receives a \u003ccode\u003etimestamp\u003c/code\u003e of when the frame was presented by the browser.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eTest runner\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe \u003ca href=\"https://playwright.dev/docs/api/class-testoptions#test-options-video\"\u003etestOptions.video\u003c/a\u003e option now supports the same set of modes as \u003ccode\u003etrace\u003c/code\u003e: new \u003ccode\u003e'on-all-retries'\u003c/code\u003e, \u003ccode\u003e'retain-on-first-failure'\u003c/code\u003e and \u003ccode\u003e'retain-on-failure-and-retries'\u003c/code\u003e values. See the \u003ca href=\"https://playwright.dev/docs/test-use-options#video-modes\"\u003evideo modes table\u003c/a\u003e for which runs are recorded and kept in each mode.\u003c/li\u003e\n\u003cli\u003eSupported \u003ccode\u003eexpect.soft.poll(...)\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eNew \u003ca href=\"https://playwright.dev/docs/api/class-fullconfig#full-config-argv\"\u003efullConfig.argv\u003c/a\u003e — a snapshot of \u003ccode\u003eprocess.argv\u003c/code\u003e from the runner process, handy for reading custom arguments passed after the \u003ccode\u003e--\u003c/code\u003e separator.\u003c/li\u003e\n\u003cli\u003eNew \u003ca href=\"https://playwright.dev/docs/api/class-fullconfig#full-config-fail-on-flaky-tests\"\u003efullConfig.failOnFlakyTests\u003c/a\u003e mirrors the config option, so reporters can explain why a flaky run failed.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://playwright.dev/docs/api/class-testinfo#test-info-errors\"\u003etestInfo.errors\u003c/a\u003e now lists each sub-error of an \u003ccode\u003eAggregateError\u003c/code\u003e as a separate entry.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/1cc5a90cfa3eaa430b1a991963100f95126caa47\"\u003e\u003ccode\u003e1cc5a90\u003c/code\u003e\u003c/a\u003e cherry-pick(\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41295\"\u003e#41295\u003c/a\u003e): chore: PLAYWRIGHT_TRACING_NO_WEBSOCKET_FRAMES and PLAYWR...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/a6772bdede34028cbbd417a3b3d778801899e870\"\u003e\u003ccode\u003ea6772bd\u003c/code\u003e\u003c/a\u003e cherry-pick(\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41280\"\u003e#41280\u003c/a\u003e): Revert \u0026quot;fix(trace-viewer): add keyboard navigation to `N...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/8133dcf97d52818d36022ed37797a616ff6cb934\"\u003e\u003ccode\u003e8133dcf\u003c/code\u003e\u003c/a\u003e cherry-pick(\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41283\"\u003e#41283\u003c/a\u003e): docs: add Ubuntu 26.04 and Node.js 26.x to system requir...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/812432e070afec9e44d22e95915f975965b7d5b7\"\u003e\u003ccode\u003e812432e\u003c/code\u003e\u003c/a\u003e chore: mark v1.61.0 (\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41277\"\u003e#41277\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/ac05145c8d9eb1303c8f3bfd4d860b6d1ca261ae\"\u003e\u003ccode\u003eac05145\u003c/code\u003e\u003c/a\u003e fix(fetch): report serverAddr and securityDetails for reused sockets (\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41267\"\u003e#41267\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/056efc9f5c0a870d0944e53a835d6283a77f200f\"\u003e\u003ccode\u003e056efc9\u003c/code\u003e\u003c/a\u003e fix(trace-viewer): add keyboard navigation to \u003ccode\u003eNetworkFilters\u003c/code\u003e component (\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41\"\u003e#41\u003c/a\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/41f7b9a0db0d1ada12ff0d9244393eea8f81b796\"\u003e\u003ccode\u003e41f7b9a\u003c/code\u003e\u003c/a\u003e chore: fixes uncovered by the .NET 1.61 roll (\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41266\"\u003e#41266\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/ba507783ae48724a1882f6423d8e8ec208bf366a\"\u003e\u003ccode\u003eba50778\u003c/code\u003e\u003c/a\u003e fix(mcp): assign caps as array for legacy --vision flag (\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41253\"\u003e#41253\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/b8ee5ae27fd068e3744852209dfcb5c1a142909f\"\u003e\u003ccode\u003eb8ee5ae\u003c/code\u003e\u003c/a\u003e docs: release notes for v1.61 (\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41261\"\u003e#41261\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/49c1f694c9bc06c9d1f6966afe8b6dfd4f388b3e\"\u003e\u003ccode\u003e49c1f69\u003c/code\u003e\u003c/a\u003e fix(trace viewer): load trace from a local file (\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41263\"\u003e#41263\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/microsoft/playwright/compare/v1.59.1...v1.61.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `prettier` from 3.8.1 to 3.8.4\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/prettier/prettier/releases\"\u003eprettier's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.8.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMarkdown: Fix blank lines between list items and nested sub-lists being removed in Markdown/MDX (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/17746\"\u003eprettier/prettier#17746\u003c/a\u003e by \u003ca href=\"https://github.com/byplayer\"\u003e\u003ccode\u003e@​byplayer\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.8.4/CHANGELOG.md#384\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.8.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSCSS: Prevent trailing comma in \u003ccode\u003eif()\u003c/code\u003e function (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/18471\"\u003eprettier/prettier#18471\u003c/a\u003e by \u003ca href=\"https://github.com/kovsu\"\u003e\u003ccode\u003e@​kovsu\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.8.3/CHANGELOG.md#383\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.8.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSupport Angular v21.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/main/CHANGELOG.md#382\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/prettier/prettier/blob/main/CHANGELOG.md\"\u003eprettier's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e3.8.4\u003c/h1\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/prettier/prettier/compare/3.8.3...3.8.4\"\u003ediff\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eMarkdown: Fix blank lines between list items and nested sub-lists being removed in Markdown/MDX (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/17746\"\u003e#17746\u003c/a\u003e by \u003ca href=\"https://github.com/byplayer\"\u003e\u003ccode\u003e@​byplayer\u003c/code\u003e\u003c/a\u003e)\u003c/h4\u003e\n\u003cp\u003ePrettier was removing blank lines between list items and their nested sub-lists, converting loose lists into tight lists and changing their semantic meaning.\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cpre lang=\"markdown\"\u003e\u003ccode\u003e\u0026lt;!-- Input --\u0026gt;\n- a\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eb\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003ec\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003ed\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u0026lt;!-- Prettier 3.8.3 --\u0026gt;\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003ea\n\u003cul\u003e\n\u003cli\u003eb\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003ec\n\u003cul\u003e\n\u003cli\u003ed\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u0026lt;!-- Prettier 3.8.4 --\u0026gt;\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003ea\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eb\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003ec\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003ed\u003cbr /\u003e\n\u003c/code\u003e\u003c/pre\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e3.8.3\u003c/h1\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/prettier/prettier/compare/3.8.2...3.8.3\"\u003ediff\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eSCSS: Prevent trailing comma in \u003ccode\u003eif()\u003c/code\u003e function (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/18471\"\u003e#18471\u003c/a\u003e by \u003ca href=\"https://github.com/kovsu\"\u003e\u003ccode\u003e@​kovsu\u003c/code\u003e\u003c/a\u003e)\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cpre lang=\"scss\"\u003e\u003ccode\u003e// Input\n$value: if(sass(false): 1; else: -1);\n\u003cp\u003e// Prettier 3.8.2\u003cbr /\u003e\n$value: if(\u003cbr /\u003e\nsass(false): 1; else: -1,\u003cbr /\u003e\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt;\u003cbr /\u003e\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/1c6ba5539141552e0e8e22d401ea620d8fdff468\"\u003e\u003ccode\u003e1c6ba55\u003c/code\u003e\u003c/a\u003e Release 3.8.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/4a673dc9b59ddf7296bbab9822093d2971da84a8\"\u003e\u003ccode\u003e4a673dc\u003c/code\u003e\u003c/a\u003e Fix blank lines between list items and nested sub-lists being removed in Mark...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/074aaedbb052a288e89d15eb0a4214de37a08866\"\u003e\u003ccode\u003e074aaed\u003c/code\u003e\u003c/a\u003e Replace \u003ccode\u003emain\u003c/code\u003e branch in changelog link with tags (\u003ca href=\"https://redirect.github.com/prettier/prettier/issues/19054\"\u003e#19054\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/c22a003ae97917c5043e8685b4fdff0f93e978f9\"\u003e\u003ccode\u003ec22a003\u003c/code\u003e\u003c/a\u003e Bump Prettier dependency to 3.8.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/07bad1f04536e9799927007baf466e67151576f0\"\u003e\u003ccode\u003e07bad1f\u003c/code\u003e\u003c/a\u003e Clean changelog_unreleased\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/d7108a79ec745c04292aabf22c4c1adbd690b191\"\u003e\u003ccode\u003ed7108a7\u003c/code\u003e\u003c/a\u003e Release 3.8.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/177f90898170d363ef64fde663e4d13170688bfe\"\u003e\u003ccode\u003e177f908\u003c/code\u003e\u003c/a\u003e Prevent trailing comma in SCSS \u003ccode\u003eif()\u003c/code\u003e function (\u003ca href=\"https://redirect.github.com/prettier/prettier/issues/18471\"\u003e#18471\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/1cd40668c3d6f2f4cf9d87bbc9096d92361b2606\"\u003e\u003ccode\u003e1cd4066\u003c/code\u003e\u003c/a\u003e Release \u003ccode\u003e@​prettier/plugin-oxc\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.1.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/a8700e245038cd8cc0cf28ef06ffedbcb3fc2dfc\"\u003e\u003ccode\u003ea8700e2\u003c/code\u003e\u003c/a\u003e Update oxc-parser to v0.125.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/752157c78eca6f0a30e5d5cb513b682c5ecfa01e\"\u003e\u003ccode\u003e752157c\u003c/code\u003e\u003c/a\u003e Fix tests\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/prettier/prettier/compare/3.8.1...3.8.4\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `turbo` from 2.9.14 to 2.9.18\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/turborepo/releases\"\u003eturbo's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eTurborepo v2.9.18\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003erelease(turborepo): 2.9.17 by \u003ca href=\"https://github.com/github-actions\"\u003e\u003ccode\u003e@​github-actions\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13047\"\u003evercel/turborepo#13047\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: Fetch version.txt via API in docs alias failure notification by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13050\"\u003evercel/turborepo#13050\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Harden cache archive symlink restore by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13051\"\u003evercel/turborepo#13051\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: Remove web UI mode by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13052\"\u003evercel/turborepo#13052\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Harden query server file access by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13053\"\u003evercel/turborepo#13053\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Confine prune patch paths by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13054\"\u003evercel/turborepo#13054\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Prevent git argument injection in SCM refs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13055\"\u003evercel/turborepo#13055\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Strip special mode bits from cache restore by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13056\"\u003evercel/turborepo#13056\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Contain incremental cache outputs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13057\"\u003evercel/turborepo#13057\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(turborepo): Normalize Windows daemon path hash by \u003ca href=\"https://github.com/Balance8\"\u003e\u003ccode\u003e@​Balance8\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13020\"\u003evercel/turborepo#13020\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Preserve vt100 cell byte counts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13058\"\u003evercel/turborepo#13058\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Separate artifact signature fields by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13059\"\u003evercel/turborepo#13059\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Validate OidHash hex buffers by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13060\"\u003evercel/turborepo#13060\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Block self-hosted login URLs from attempting to use Vercel's SSO by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13061\"\u003evercel/turborepo#13061\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Balance8\"\u003e\u003ccode\u003e@​Balance8\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13020\"\u003evercel/turborepo#13020\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/vercel/turborepo/compare/v2.9.17...v2.9.18\"\u003ehttps://github.com/vercel/turborepo/compare/v2.9.17...v2.9.18\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eTurborepo v2.9.17\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efix: Keep non-PTY stdin alive for persistent tasks by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12972\"\u003evercel/turborepo#12972\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(turborepo): 2.9.16 by \u003ca href=\"https://github.com/github-actions\"\u003e\u003ccode\u003e@​github-actions\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12970\"\u003evercel/turborepo#12970\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(turborepo): 2.9.17-canary.1 by \u003ca href=\"https://github.com/github-actions\"\u003e\u003ccode\u003e@​github-actions\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12973\"\u003evercel/turborepo#12973\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Add auth HTTP timeouts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12976\"\u003evercel/turborepo#12976\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Detect affected root tasks in query by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12977\"\u003evercel/turborepo#12977\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Wait for Windows graceful shutdown by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12979\"\u003evercel/turborepo#12979\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(turborepo): 2.9.17-canary.2 by \u003ca href=\"https://github.com/github-actions\"\u003e\u003ccode\u003e@​github-actions\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12980\"\u003evercel/turborepo#12980\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Skip installs for JSON output fixtures by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12981\"\u003evercel/turborepo#12981\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: Add Rsbuild examples by \u003ca href=\"https://github.com/Nsttt\"\u003e\u003ccode\u003e@​Nsttt\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12942\"\u003evercel/turborepo#12942\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Skip installs for single package dry runs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12982\"\u003evercel/turborepo#12982\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Skip Corepack setup without installs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12983\"\u003evercel/turborepo#12983\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Skip installs for metadata-only Rust tests by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12985\"\u003evercel/turborepo#12985\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Skip remaining unnecessary fixture installs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12986\"\u003evercel/turborepo#12986\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Add final hash contract snapshots by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12984\"\u003evercel/turborepo#12984\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Trim run logging integration matrix by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12987\"\u003evercel/turborepo#12987\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Trim affected query integration matrix by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12988\"\u003evercel/turborepo#12988\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Narrow Windows integration test group by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12989\"\u003evercel/turborepo#12989\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Trim task dependency integration coverage by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12990\"\u003evercel/turborepo#12990\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Trim affected integration coverage by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12991\"\u003evercel/turborepo#12991\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Collapse integration test matrices by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12992\"\u003evercel/turborepo#12992\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/3bdce3277d2e61cdbf29f244a515dd4b896d2556\"\u003e\u003ccode\u003e3bdce32\u003c/code\u003e\u003c/a\u003e publish 2.9.18 to registry\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/2a76556b9457c514fa597a09fef23da2e1250c8c\"\u003e\u003ccode\u003e2a76556\u003c/code\u003e\u003c/a\u003e fix: Block self-hosted login URLs from attempting to use Vercel's SSO (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13061\"\u003e#13061\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/da8e3487acce10039425180c42875d7ccc484ed5\"\u003e\u003ccode\u003eda8e348\u003c/code\u003e\u003c/a\u003e fix: Validate OidHash hex buffers (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13060\"\u003e#13060\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/3018717c28fc8f1ecffa2c92e3260be0dc0165aa\"\u003e\u003ccode\u003e3018717\u003c/code\u003e\u003c/a\u003e fix: Separate artifact signature fields (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13059\"\u003e#13059\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/34514e278822ccbe3a083730b7032709ef16f85c\"\u003e\u003ccode\u003e34514e2\u003c/code\u003e\u003c/a\u003e fix: Preserve vt100 cell byte counts (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13058\"\u003e#13058\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/24e2d3498f54fa1f8b729f18764f63cb05072bc6\"\u003e\u003ccode\u003e24e2d34\u003c/code\u003e\u003c/a\u003e fix(turborepo): Normalize Windows daemon path hash (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13020\"\u003e#13020\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/16dc881cabf5c13d02c27a5d7cfdfeb60736206c\"\u003e\u003ccode\u003e16dc881\u003c/code\u003e\u003c/a\u003e fix: Contain incremental cache outputs (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13057\"\u003e#13057\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/92e1f8e5365ea5a95e47c3698deb2f7adaa55eba\"\u003e\u003ccode\u003e92e1f8e\u003c/code\u003e\u003c/a\u003e fix: Strip special mode bits from cache restore (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13056\"\u003e#13056\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/f46f896ef414823582131304c9749e9be011fe37\"\u003e\u003ccode\u003ef46f896\u003c/code\u003e\u003c/a\u003e fix: Prevent git argument injection in SCM refs (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13055\"\u003e#13055\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/7f353ca3a6f28fbbcce931aeab7be0efe718c466\"\u003e\u003ccode\u003e7f353ca\u003c/code\u003e\u003c/a\u003e fix: Confine prune patch paths (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13054\"\u003e#13054\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vercel/turborepo/compare/v2.9.14...v2.9.18\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@sentry/nextjs` from 10.49.0 to 10.59.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/getsentry/sentry-javascript/releases\"\u003e@​sentry/nextjs's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e10.59.0\u003c/h2\u003e\n\u003ch3\u003eImportant Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003efeat(react-router): Add support for React Router v8 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21633\"\u003e#21633\u003c/a\u003e)\u003c/strong\u003e\u003c/p\u003e\n\u003cp\u003eThe SDK now supports React Router v8, in both the framework and SPA (\u003ccode\u003e@sentry/react\u003c/code\u003e) modes.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003efeat(react): Add version-agnostic React Router SPA exports (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21633\"\u003e#21633\u003c/a\u003e)\u003c/strong\u003e\u003c/p\u003e\n\u003cp\u003e\u003ccode\u003e@sentry/react\u003c/code\u003e now exports version-agnostic wrappers for React Router v6+ SPA instrumentation.\nThe new exports replace the version-specific \u003ccode\u003eV6\u003c/code\u003e/\u003ccode\u003eV7\u003c/code\u003e variants, which are now deprecated:\u003c/p\u003e\n\u003ctable\u003e\n\u003cthead\u003e\n\u003ctr\u003e\n\u003cth\u003eDeprecated\u003c/th\u003e\n\u003cth\u003eNew\u003c/th\u003e\n\u003c/tr\u003e\n\u003c/thead\u003e\n\u003ctbody\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ereactRouterV6BrowserTracingIntegration\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ereactRouterBrowserTracingIntegration\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewithSentryReactRouterV6Routing\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapReactRouterRouting\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateBrowserRouterV6\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateBrowserRouter\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateMemoryRouterV6\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateMemoryRouter\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewrapUseRoutesV6\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapUseRoutes\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003c/tbody\u003e\n\u003c/table\u003e\n\u003cp\u003eThe deprecated exports continue to work and will be removed in the next major version.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eOther Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efeat(aws-serverless): Instrument aws-sdk clients \u0026gt;= 3.1046.0 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21548\"\u003e#21548\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(bun): Add orchestrion bun build plugin (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21410\"\u003e#21410\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(cloudflare): Instrument sync KV (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21316\"\u003e#21316\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(core): Disable gen_ai message truncation by default when \u003ccode\u003estreamGenAiSpans\u003c/code\u003e is enabled (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21603\"\u003e#21603\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(deno): Add orchestrion deno runtime hook (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21451\"\u003e#21451\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(hono): Extend peer dependency range (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21550\"\u003e#21550\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(node): Collapse orchestrion opt-in to a single option (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/20900\"\u003e#20900\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: Diagnostics channel Node v18 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21631\"\u003e#21631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(browser): Clean up pageload readystatechange listener (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21632\"\u003e#21632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Capture scopes on span before emitting \u003ccode\u003espanStart\u003c/code\u003e event (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21644\"\u003e#21644\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Defer TwP sampling by reading trace state from the scope (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21549\"\u003e#21549\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Prevent outgoing HTTP instrumentation from crashing on \u003ccode\u003e//\u003c/code\u003e request paths (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21645\"\u003e#21645\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Set \u003ccode\u003eproduction\u003c/code\u003e as default \u003ccode\u003esentry.environment\u003c/code\u003e attribute value on streamed spans (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21637\"\u003e#21637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(nextjs): Register safe random ID context at module load (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21573\"\u003e#21573\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cul\u003e\n\u003cli\u003echore: Change deprecation/deprecation to oxlint equivalent (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21604\"\u003e#21604\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore: Switch license headers to SPDX format (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21357\"\u003e#21357\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore(deps-dev): Bump esbuild from 0.20.0 to 0.28.1 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21511\"\u003e#21511\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore(deps): Bump esbuild from 0.25.0 to 0.28.1 in /dev-packages/e2e-tests/test-applications/node-profiling-esm (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21514\"\u003e#21514\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore(deps): Bump react-router-6 to 6.30.4 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21566\"\u003e#21566\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: Assign server team as codeowner for server-utils package (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21601\"\u003e#21601\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: Dedup flaky test issues across esm/cjs variants (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21595\"\u003e#21595\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: Do not apply Bug label to flaky test issues (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21593\"\u003e#21593\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/getsentry/sentry-javascript/blob/develop/CHANGELOG.md\"\u003e@​sentry/nextjs's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e10.59.0\u003c/h2\u003e\n\u003ch3\u003eImportant Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003efeat(react-router): Add support for React Router v8 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21633\"\u003e#21633\u003c/a\u003e)\u003c/strong\u003e\u003c/p\u003e\n\u003cp\u003eThe SDK now supports React Router v8, in both the framework and SPA (\u003ccode\u003e@sentry/react\u003c/code\u003e) modes.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003efeat(react): Add version-agnostic React Router SPA exports (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21633\"\u003e#21633\u003c/a\u003e)\u003c/strong\u003e\u003c/p\u003e\n\u003cp\u003e\u003ccode\u003e@sentry/react\u003c/code\u003e now exports version-agnostic wrappers for React Router v6+ SPA instrumentation.\nThe new exports replace the version-specific \u003ccode\u003eV6\u003c/code\u003e/\u003ccode\u003eV7\u003c/code\u003e variants, which are now deprecated:\u003c/p\u003e\n\u003ctable\u003e\n\u003cthead\u003e\n\u003ctr\u003e\n\u003cth\u003eDeprecated\u003c/th\u003e\n\u003cth\u003eNew\u003c/th\u003e\n\u003c/tr\u003e\n\u003c/thead\u003e\n\u003ctbody\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ereactRouterV6BrowserTracingIntegration\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ereactRouterBrowserTracingIntegration\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewithSentryReactRouterV6Routing\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapReactRouterRouting\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateBrowserRouterV6\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateBrowserRouter\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateMemoryRouterV6\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateMemoryRouter\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewrapUseRoutesV6\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapUseRoutes\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003c/tbody\u003e\n\u003c/table\u003e\n\u003cp\u003eThe deprecated exports continue to work and will be removed in the next major version.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eOther Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efeat(aws-serverless): Instrument aws-sdk clients \u0026gt;= 3.1046.0 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21548\"\u003e#21548\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(bun): Add orchestrion bun build plugin (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21410\"\u003e#21410\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(cloudflare): Instrument sync KV (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21316\"\u003e#21316\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(core): Disable gen_ai message truncation by default when \u003ccode\u003estreamGenAiSpans\u003c/code\u003e is enabled (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21603\"\u003e#21603\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(deno): Add orchestrion deno runtime hook (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21451\"\u003e#21451\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(hono): Extend peer dependency range (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21550\"\u003e#21550\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(node): Collapse orchestrion opt-in to a single option (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/20900\"\u003e#20900\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: Diagnostics channel Node v18 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21631\"\u003e#21631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(browser): Clean up pageload readystatechange listener (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21632\"\u003e#21632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Capture scopes on span before emitting \u003ccode\u003espanStart\u003c/code\u003e event (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21644\"\u003e#21644\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Defer TwP sampling by reading trace state from the scope (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21549\"\u003e#21549\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Prevent outgoing HTTP instrumentation from crashing on \u003ccode\u003e//\u003c/code\u003e request paths (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21645\"\u003e#21645\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Set \u003ccode\u003eproduction\u003c/code\u003e as default \u003ccode\u003esentry.environment\u003c/code\u003e attribute value on streamed spans (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21637\"\u003e#21637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(nextjs): Register safe random ID context at module load (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21573\"\u003e#21573\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cul\u003e\n\u003cli\u003echore: Change deprecation/deprecation to oxlint equivalent (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21604\"\u003e#21604\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore: Switch license headers to SPDX format (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21357\"\u003e#21357\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore(deps-dev): Bump esbuild from 0.20.0 to 0.28.1 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21511\"\u003e#21511\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore(deps): Bump esbuild from 0.25.0 to 0.28.1 in /dev-packages/e2e-tests/test-applications/node-profiling-esm (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21514\"\u003e#21514\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore(deps): Bump react-router-6 to 6.30.4 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21566\"\u003e#21566\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: Assign server team as codeowner for server-utils package (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21601\"\u003e#21601\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: Dedup flaky test issues across esm/cjs variants (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21595\"\u003e#21595\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/2cb0ef60a06555082adaf59d6da07f9891244e43\"\u003e\u003ccode\u003e2cb0ef6\u003c/code\u003e\u003c/a\u003e release: 10.59.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/f77b265b2053dc705ca52c119d2321c1ab054000\"\u003e\u003ccode\u003ef77b265\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/issues/21655\"\u003e#21655\u003c/a\u003e from getsentry/prepare-release/10.59.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/8e32a8db5076cd934e2c280298f8bb2e64715236\"\u003e\u003ccode\u003e8e32a8d\u003c/code\u003e\u003c/a\u003e meta(changelog): Update changelog for 10.59.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/50fe5d914ef450979e047afddd2c10c679be4e36\"\u003e\u003ccode\u003e50fe5d9\u003c/code\u003e\u003c/a\u003e fix: Diagnostics channel Node v18 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/issues/21631\"\u003e#21631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/9c765e0fe224ff5a2cf1d073682ae06ad70769ad\"\u003e\u003ccode\u003e9c765e0\u003c/code\u003e\u003c/a\u003e feat(react-router): support react router v8 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/issues/21633\"\u003e#21633\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/815c1cff6992992c606d33e9877c1a80981dad13\"\u003e\u003ccode\u003e815c1cf\u003c/code\u003e\u003c/a\u003e feat(deps): Bump \u003ccode\u003e@​babel/core\u003c/code\u003e from 7.29.0 to 7.29.6 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/issues/21574\"\u003e#21574\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/a52044746084c32d267350991c4ee4576cbd5955\"\u003e\u003ccode\u003ea520447\u003c/code\u003e\u003c/a\u003e ref(tanstackstart-react): Use \u003ccode\u003e@sentry/conventions\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/issues/21498\"\u003e#21498\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/38a0485d2d7ca31693449b1a0bd2841ef875dc55\"\u003e\u003ccode\u003e38a0485\u003c/code\u003e\u003c/a\u003e test(cloudflare): Remove mock in DO tests (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/issues/21634\"\u003e#21634\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/cb69761890fb5988d2dc9d24ccae070ee956abeb\"\u003e\u003ccode\u003ecb69761\u003c/code\u003e\u003c/a\u003e feat(deno): Add orchestrion deno runtime hook (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/issues/21451\"\u003e#21451\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/1e057ba0bebd9c644d39f2c38eb66dac6ecb6e97\"\u003e\u003ccode\u003e1e057ba\u003c/code\u003e\u003c/a\u003e chore(deps): Bump esbuild from 0.25.0 to 0.28.1 in /dev-packages/e2e-tests/te...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/getsentry/sentry-javascript/compare/10.49.0...10.59.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `axios` from 1.16.1 to 1.18.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/releases\"\u003eaxios's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.18.0 — June 13, 2026\u003c/h2\u003e\n\u003cp\u003eThis release hardens redirect and URL handling, improves the validateStatus configuration semantics, and includes updates to documentation, dependencies, and release metadata.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRedirect Header Safety:\u003c/strong\u003e Added Node HTTP adapter support for stripping caller-specified sensitive headers on cross-origin redirects, helping prevent custom auth headers such as API keys from leaking to another origin. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10892\"\u003e#10892\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eURL And Request Hardening:\u003c/strong\u003e Rejects malformed \u003ccode\u003ehttp:\u003c/code\u003e and \u003ccode\u003ehttps:\u003c/code\u003e URLs that omit \u003ccode\u003e//\u003c/code\u003e with \u003ccode\u003eERR_INVALID_URL\u003c/code\u003e, while tightening prototype-pollution-safe config reads, stream size limits, FormData depth handling, data URL sizing, and local \u003ccode\u003eNO_PROXY\u003c/code\u003e matching. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11000\"\u003e#11000\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eStatus Validation:\u003c/strong\u003e Added \u003ccode\u003etransitional.validateStatusUndefinedResolves\u003c/code\u003e so applications can opt in to treating \u003ccode\u003evalidateStatus: undefined\u003c/code\u003e like the option was omitted, while \u003ccode\u003evalidateStatus: null\u003c/code\u003e remains the explicit way to accept every status. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDocumentation:\u003c/strong\u003e Published the v1.17.0 release notes, fixed a changelog typo, clarified the package update PR policy, and marked the \u003ccode\u003eproxy\u003c/code\u003e request config as Node.js-only in the advanced docs. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10984\"\u003e#10984\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10988\"\u003e#10988\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10992\"\u003e#10992\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDependencies:\u003c/strong\u003e Bumped \u003ccode\u003e@babel/core\u003c/code\u003e, \u003ccode\u003e@babel/preset-env\u003c/code\u003e, \u003ccode\u003e@commitlint/cli\u003c/code\u003e, \u003ccode\u003e@commitlint/config-conventional\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-babel\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-commonjs\u003c/code\u003e, \u003ccode\u003e@vitest/browser\u003c/code\u003e, \u003ccode\u003e@vitest/browser-playwright\u003c/code\u003e, \u003ccode\u003eeslint\u003c/code\u003e, \u003ccode\u003elint-staged\u003c/code\u003e, \u003ccode\u003erollup\u003c/code\u003e, \u003ccode\u003evitest\u003c/code\u003e, and \u003ccode\u003eactions/checkout\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10989\"\u003e#10989\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10996\"\u003e#10996\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10997\"\u003e#10997\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRelease Metadata:\u003c/strong\u003e Prepared the 1.18.0 release by updating package metadata and the runtime \u003ccode\u003eVERSION\u003c/code\u003e value. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11003\"\u003e#11003\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🌟 New Contributors\u003c/h2\u003e\n\u003cp\u003eWe are thrilled to welcome our new contributors. Thank you for helping improve axios:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/drori12\"\u003e\u003ccode\u003e@​drori12\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10984\"\u003e#10984\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/eyupcanakman\"\u003e\u003ccode\u003e@​eyupcanakman\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/Adi-Beker\"\u003e\u003ccode\u003e@​Adi-Beker\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/axios/axios/compare/v1.17.0...v1.18.0\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev1.17.0 — June 1, 2026\u003c/h2\u003e\n\u003cp\u003eThis release adds Node HTTP zstd decompression, hardens config and release workflows, and fixes authentication, header, proxy, and type-handling regressions.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eConfig Hardening:\u003c/strong\u003e Guarded \u003ccode\u003esocketPath\u003c/code\u003e, \u003ccode\u003eparams\u003c/code\u003e, and \u003ccode\u003eparamsSerializer\u003c/code\u003e reads with own-property checks to prevent inherited prototype values from affecting request behavior, including SSRF-sensitive paths. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10901\"\u003e#10901\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10922\"\u003e#10922\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRelease Publishing:\u003c/strong\u003e Switched the publish workflow to npm staged publishing for safer, auditable package releases with provenance. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10926\"\u003e#10926\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🚀 New Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eHTTP Compression:\u003c/strong\u003e Added Node HTTP adapter support for zstd response decompression, with \u003ccode\u003etransitional.advertiseZstdAcceptEncoding\u003c/code\u003e controlling whether \u003ccode\u003ezstd\u003c/code\u003e is advertised in \u003ccode\u003eAccept-Encoding\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/6792\"\u003e#6792\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10920\"\u003e#10920\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eAuthentication Handling:\u003c/strong\u003e Restored Basic auth on same-origin Node redirects while continuing to strip credentials cross-origin, and aligned the fetch adapter with HTTP adapter behavior for URL-embedded Basic auth. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10929\"\u003e#10929\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eProxy TLS:\u003c/strong\u003e Preserved user \u003ccode\u003ehttpsAgent\u003c/code\u003e TLS options when tunneling HTTPS requests through HTTP CONNECT proxies. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10957\"\u003e#10957\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eReact Native FormData:\u003c/strong\u003e Cleared default \u003ccode\u003eContent-Type\u003c/code\u003e for React Native \u003ccode\u003eFormData\u003c/code\u003e so multipart boundaries can be generated correctly. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10898\"\u003e#10898\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/blob/v1.x/CHANGELOG.md\"\u003eaxios's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.18.0 — June 13, 2026\u003c/h2\u003e\n\u003cp\u003eThis release hardens redirect and URL handling, improves the validateStatus configuration semantics, and includes updates to documentation, dependencies, and release metadata.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRedirect Header Safety:\u003c/strong\u003e Added Node HTTP adapter support for stripping caller-specified sensitive headers on cross-origin redirects, helping prevent custom auth headers such as API keys from leaking to another origin. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10892\"\u003e#10892\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eURL And Request Hardening:\u003c/strong\u003e Rejects malformed \u003ccode\u003ehttp:\u003c/code\u003e and \u003ccode\u003ehttps:\u003c/code\u003e URLs that omit \u003ccode\u003e//\u003c/code\u003e with \u003ccode\u003eERR_INVALID_URL\u003c/code\u003e, while tightening prototype-pollution-safe config reads, stream size limits, FormData depth handling, data URL sizing, and local \u003ccode\u003eNO_PROXY\u003c/code\u003e matching. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11000\"\u003e#11000\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eStatus Validation:\u003c/strong\u003e Added \u003ccode\u003etransitional.validateStatusUndefinedResolves\u003c/code\u003e so applications can opt in to treating \u003ccode\u003evalidateStatus: undefined\u003c/code\u003e like the option was omitted, while \u003ccode\u003evalidateStatus: null\u003c/code\u003e remains the explicit way to accept every status. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDocumentation:\u003c/strong\u003e Published the v1.17.0 release notes, fixed a changelog typo, clarified the package update PR policy, and marked the \u003ccode\u003eproxy\u003c/code\u003e request config as Node.js-only in the advanced docs. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10984\"\u003e#10984\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10988\"\u003e#10988\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10992\"\u003e#10992\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDependencies:\u003c/strong\u003e Bumped \u003ccode\u003e@babel/core\u003c/code\u003e, \u003ccode\u003e@babel/preset-env\u003c/code\u003e, \u003ccode\u003e@commitlint/cli\u003c/code\u003e, \u003ccode\u003e@commitlint/config-conventional\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-babel\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-commonjs\u003c/code\u003e, \u003ccode\u003e@vitest/browser\u003c/code\u003e, \u003ccode\u003e@vitest/browser-playwright\u003c/code\u003e, \u003ccode\u003eeslint\u003c/code\u003e, \u003ccode\u003elint-staged\u003c/code\u003e, \u003ccode\u003erollup\u003c/code\u003e, \u003ccode\u003evitest\u003c/code\u003e, and \u003ccode\u003eactions/checkout\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10989\"\u003e#10989\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10996\"\u003e#10996\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10997\"\u003e#10997\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRelease Metadata:\u003c/strong\u003e Prepared the 1.18.0 release by updating package metadata and the runtime \u003ccode\u003eVERSION\u003c/code\u003e value. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11003\"\u003e#11003\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🌟 New Contributors\u003c/h2\u003e\n\u003cp\u003eWe are thrilled to welcome our new contributors. Thank you for helping improve axios:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/drori12\"\u003e\u003ccode\u003e@​drori12\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10984\"\u003e#10984\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/eyupcanakman\"\u003e\u003ccode\u003e@​eyupcanakman\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/Adi-Beker\"\u003e\u003ccode\u003e@​Adi-Beker\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/axios/axios/compare/v1.17.0...v1.18.0\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev1.17.0 — June 1, 2026\u003c/h2\u003e\n\u003cp\u003eThis release adds Node HTTP zstd decompression, hardens config and release workflows, and fixes authentication, header, proxy, and type-handling regressions.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eConfig Hardening:\u003c/strong\u003e Guarded \u003ccode\u003esocketPath\u003c/code\u003e, \u003ccode\u003eparams\u003c/code\u003e, and \u003ccode\u003eparamsSerializer\u003c/code\u003e reads with own-property checks to prevent inherited prototype values from affecting request behavior, including SSRF-sensitive paths. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10901\"\u003e#10901\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10922\"\u003e#10922\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRelease Publishing:\u003c/strong\u003e Switched the publish workflow to npm staged publishing for safer, auditable package releases with provenance. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10926\"\u003e#10926\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🚀 New Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eHTTP Compression:\u003c/strong\u003e Added Node HTTP adapter support for zstd response decompression, with \u003ccode\u003etransitional.advertiseZstdAcceptEncoding\u003c/code\u003e controlling whether \u003ccode\u003ezstd\u003c/code\u003e is advertised in \u003ccode\u003eAccept-Encoding\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/6792\"\u003e#6792\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10920\"\u003e#10920\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eAuthentication Handling:\u003c/strong\u003e Restored Basic auth on same-origin Node redirects while continuing to strip credentials cross-origin, and aligned the fetch adapter with HTTP adapter behavior for URL-embedded Basic auth. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10929\"\u003e#10929\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eProxy TLS:\u003c/strong\u003e Preserved user \u003ccode\u003ehttpsAgent\u003c/code\u003e TLS options when tunneling HTTPS requests through HTTP CONNECT proxies. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10957\"\u003e#10957\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eReact Native FormData:\u003c/strong\u003e Cleared default \u003ccode\u003eContent-Type\u003c/code\u003e for React Native \u003ccode\u003eFormData\u003c/code\u003e so multipart boundaries can be generated correctly. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10898\"\u003e#10898\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/2d06f96e8602c2db13b65a26340ee4a1bbc0b61f\"\u003e\u003ccode\u003e2d06f96\u003c/code\u003e\u003c/a\u003e chore(release): prepare release 1.18.0 (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11003\"\u003e#11003\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/32fc489632377d214db55bfa4e2c48486a7d7ce2\"\u003e\u003ccode\u003e32fc489\u003c/code\u003e\u003c/a\u003e fix: malformed http urls (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11000\"\u003e#11000\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/b40ce498abfa10d90b873b4fd08f520afa5d2545\"\u003e\u003ccode\u003eb40ce49\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump the development_dependencies group with 10 updates (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10\"\u003e#10\u003c/a\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/fe964f960ecb52c3e1155b0daf7be77541956b01\"\u003e\u003ccode\u003efe964f9\u003c/code\u003e\u003c/a\u003e docs: mark proxy config as Node.js only (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/5f229d2d1f018d1db3dab6bbe034dbf3f9041b99\"\u003e\u003ccode\u003e5f229d2\u003c/code\u003e\u003c/a\u003e chore(deps): bump actions/checkout from 6.0.2 to 6.0.3 in the github-actions ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/fae9d4e7db6a858c407c75e607a071c533c5c4f6\"\u003e\u003ccode\u003efae9d4e\u003c/code\u003e\u003c/a\u003e docs: clarify package update PR policy (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10992\"\u003e#10992\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/28ab2ced820e55192806c53472ab3eb0cbb68dc2\"\u003e\u003ccode\u003e28ab2ce\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump the development_dependencies group with 2 updates (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10989\"\u003e#10989\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/a8e4f13aeecc45a3b8fab3ecfd9ddb5d70fb772b\"\u003e\u003ccode\u003ea8e4f13\u003c/code\u003e\u003c/a\u003e fix(core): keep default validateStatus when request passes undefined (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/614f4552a17de757d4171ad7c3bd38c9c1025fd8\"\u003e\u003ccode\u003e614f455\u003c/code\u003e\u003c/a\u003e docs: publish v1.17.0 release notes (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10988\"\u003e#10988\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/6bb12c191f5380fad321322fb90216ae0dc36985\"\u003e\u003ccode\u003e6bb12c1\u003c/code\u003e\u003c/a\u003e fix: custom auth headers not stripped on cross-origin redirects (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10892\"\u003e#10892\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/axios/axios/compare/v1.16.1...v1.18.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `js-cookie` from 3.0.5 to 3.0.8\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/js-cookie/js-cookie/releases\"\u003ejs-cookie's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.0.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRestore ES5 compatibility, inadvertently broken in 3.0.7 - \u003ca href=\"https://redirect.github.com/js-cookie/js-cookie/issues/959\"\u003e#959\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eLift Node version restriction, inadvertently restricted to \u0026gt;= 20 in 3.0.7 - \u003ca href=\"https://redirect.github.com/js-cookie/js-cookie/issues/956\"\u003e#956\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev3.0.7\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ePrevent cookie attribute injection: CVE-2026-46625 (eb3c40e)\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003ePartitioned\u003c/code\u003e attribute to readme (b994768)\u003c/li\u003e\n\u003cli\u003ePublish to npm registry via trusted publisher exclusively (4dc71be)\u003c/li\u003e\n\u003cli\u003eEnsure consistent behaviour for \u003ccode\u003eget('name')\u003c/code\u003e + \u003ccode\u003eget()\u003c/code\u003e (1953d30)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/d7a10966e3f2cbcbfa96e34e7544d23aab9e3372\"\u003e\u003ccode\u003ed7a1096\u003c/code\u003e\u003c/a\u003e Craft v3.0.8 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/248e685e20c7aa9553453f0084f14a62173462d2\"\u003e\u003ccode\u003e248e685\u003c/code\u003e\u003c/a\u003e Use existing Chrome with puppeteer\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/fc04269d83cae5536c08fdb71c9fd1d35e148f7a\"\u003e\u003ccode\u003efc04269\u003c/code\u003e\u003c/a\u003e Remove QUnit related workaround in Grunt config\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/265a6853d04eefa6f7a4d8acdd118d3f5c4dddc3\"\u003e\u003ccode\u003e265a685\u003c/code\u003e\u003c/a\u003e Tidy up package lock file\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/478e59129f8f1e5c80fc71fecd37b04cd8ed1575\"\u003e\u003ccode\u003e478e591\u003c/code\u003e\u003c/a\u003e Disable Node deprecation DEP0044 for release workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/331d5240db232da6748abbdde7a35823f681e9a7\"\u003e\u003ccode\u003e331d524\u003c/code\u003e\u003c/a\u003e Fix node version config for E2E test job\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/11d773d413f680a4ccf23a5375e82fa14df1b7a7\"\u003e\u003ccode\u003e11d773d\u003c/code\u003e\u003c/a\u003e Ensure ECMAScript compatibility\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/d78864600f3ee9c3780c3f3d0072342beb722f45\"\u003e\u003ccode\u003ed788646\u003c/code\u003e\u003c/a\u003e Remove \u003ccode\u003eengines\u003c/code\u003e property from package\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/e7d9a4dff0d5ebc51a200819e3ab3a2dbe87979a\"\u003e\u003ccode\u003ee7d9a4d\u003c/code\u003e\u003c/a\u003e Fix typo in test assertion message\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/b5fca24b9bc03b20e8751f7eea6c14c40095f7e8\"\u003e\u003ccode\u003eb5fca24\u003c/code\u003e\u003c/a\u003e Make credentials use explicit in release workflow\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/js-cookie/js-cookie/compare/v3.0.5...v3.0.8\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for js-cookie since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `lucide-react` from 0.468.0 to 0.577.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/lucide-icons/lucide/releases\"\u003elucide-react's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 0.577.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore(deps): bump rollup from 4.53.3 to 4.59.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4106\"\u003elucide-icons/lucide#4106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(repo): correctly ignore docs/releaseMetadata via .gitignore by \u003ca href=\"https://github.com/bhavberi\"\u003e\u003ccode\u003e@​bhavberi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.gi...\n\n_Description has been truncated_","html_url":"https://github.com/colonmbiano/mrtpvrest/pull/103","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/colonmbiano%2Fmrtpvrest/issues/103","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/103/packages"},{"uuid":"4686034899","node_id":"PR_kwDOACMMis7nnfED","number":15339,"state":"open","title":"chore(deps): bump the minor-deps-updates-main group across 1 directory with 26 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-06-17T18:32:04.000Z","updated_at":"2026-06-27T00:13:40.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"minor-deps-updates-main","update_count":26,"packages":[{"name":"@aws-sdk/client-cloudfront","old_version":"3.962.0","new_version":"3.1073.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@aws-sdk/client-device-farm","old_version":"3.962.0","new_version":"3.1073.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@aws-sdk/client-s3","old_version":"3.962.0","new_version":"3.1073.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@aws-sdk/lib-storage","old_version":"3.962.0","new_version":"3.1073.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@serenity-js/core","old_version":"3.37.1","new_version":"3.44.0","repository_url":"https://github.com/serenity-js/serenity-js"},{"name":"@stencil/core","old_version":"4.41.0","new_version":"4.43.5","repository_url":"https://github.com/stenciljs/core"},{"name":"cddl","old_version":"0.14.10","new_version":"0.20.1","repository_url":"https://github.com/webdriverio/cddl"},{"name":"cddl2ts","old_version":"0.4.5","new_version":"0.9.1","repository_url":"https://github.com/webdriverio/cddl"},{"name":"cheerio","old_version":"1.1.2","new_version":"1.2.0","repository_url":"https://github.com/cheeriojs/cheerio"},{"name":"tempy","old_version":"3.1.0","new_version":"3.2.0","repository_url":"https://github.com/sindresorhus/tempy"},{"name":"tsx","old_version":"4.21.0","new_version":"4.22.4","repository_url":"https://github.com/privatenumber/tsx"},{"name":"semver","old_version":"7.7.4","new_version":"7.8.5","repository_url":"https://github.com/npm/node-semver"},{"name":"typescript-eslint","old_version":"8.56.1","new_version":"8.61.1","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"allure-js-commons","old_version":"3.4.4","new_version":"3.10.0","repository_url":"https://github.com/allure-framework/allure-js"},{"name":"csv-stringify","old_version":"6.6.0","new_version":"6.8.0","repository_url":"https://github.com/adaltas/node-csv"},{"name":"strip-ansi","old_version":"7.1.2","new_version":"7.2.0","repository_url":"https://github.com/chalk/strip-ansi"},{"name":"get-port","old_version":"7.1.0","new_version":"7.2.0","repository_url":"https://github.com/sindresorhus/get-port"},{"name":"expect","old_version":"30.2.0","new_version":"30.4.1","repository_url":"https://github.com/jestjs/jest"},{"name":"safe-stringify","old_version":"1.2.0","new_version":"1.3.0","repository_url":"https://github.com/sindresorhus/safe-stringify"},{"name":"yauzl","old_version":"3.2.1","new_version":"3.4.0","repository_url":"https://github.com/thejoshwolfe/yauzl"},{"name":"@types/yauzl","old_version":"2.10.3","new_version":"3.4.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"dotenv","old_version":"17.2.3","new_version":"17.4.2","repository_url":"https://github.com/motdotla/dotenv"},{"name":"jiti","old_version":"2.6.1","new_version":"2.7.0","repository_url":"https://github.com/unjs/jiti"},{"name":"safe-regex2","old_version":"5.0.0","new_version":"5.1.1","repository_url":"https://github.com/fastify/safe-regex2"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"ws","old_version":"8.20.1","new_version":"8.21.0","repository_url":"https://github.com/websockets/ws"}],"path":null,"ecosystem":"npm"},"body":"Bumps the minor-deps-updates-main group with 26 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@aws-sdk/client-cloudfront](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-cloudfront) | `3.962.0` | `3.1073.0` |\n| [@aws-sdk/client-device-farm](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-device-farm) | `3.962.0` | `3.1073.0` |\n| [@aws-sdk/client-s3](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3) | `3.962.0` | `3.1073.0` |\n| [@aws-sdk/lib-storage](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/lib/lib-storage) | `3.962.0` | `3.1073.0` |\n| [@serenity-js/core](https://github.com/serenity-js/serenity-js/tree/HEAD/packages/core) | `3.37.1` | `3.44.0` |\n| [@stencil/core](https://github.com/stenciljs/core) | `4.41.0` | `4.43.5` |\n| [cddl](https://github.com/webdriverio/cddl) | `0.14.10` | `0.20.1` |\n| [cddl2ts](https://github.com/webdriverio/cddl) | `0.4.5` | `0.9.1` |\n| [cheerio](https://github.com/cheeriojs/cheerio) | `1.1.2` | `1.2.0` |\n| [tempy](https://github.com/sindresorhus/tempy) | `3.1.0` | `3.2.0` |\n| [tsx](https://github.com/privatenumber/tsx) | `4.21.0` | `4.22.4` |\n| [semver](https://github.com/npm/node-semver) | `7.7.4` | `7.8.5` |\n| [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint) | `8.56.1` | `8.61.1` |\n| [allure-js-commons](https://github.com/allure-framework/allure-js/tree/HEAD/packages/allure-js-commons) | `3.4.4` | `3.10.0` |\n| [csv-stringify](https://github.com/adaltas/node-csv/tree/HEAD/packages/csv-stringify) | `6.6.0` | `6.8.0` |\n| [strip-ansi](https://github.com/chalk/strip-ansi) | `7.1.2` | `7.2.0` |\n| [get-port](https://github.com/sindresorhus/get-port) | `7.1.0` | `7.2.0` |\n| [expect](https://github.com/jestjs/jest/tree/HEAD/packages/expect) | `30.2.0` | `30.4.1` |\n| [safe-stringify](https://github.com/sindresorhus/safe-stringify) | `1.2.0` | `1.3.0` |\n| [yauzl](https://github.com/thejoshwolfe/yauzl) | `3.2.1` | `3.4.0` |\n| [@types/yauzl](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/yauzl) | `2.10.3` | `3.4.0` |\n| [dotenv](https://github.com/motdotla/dotenv) | `17.2.3` | `17.4.2` |\n| [jiti](https://github.com/unjs/jiti) | `2.6.1` | `2.7.0` |\n| [safe-regex2](https://github.com/fastify/safe-regex2) | `5.0.0` | `5.1.1` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [ws](https://github.com/websockets/ws) | `8.20.1` | `8.21.0` |\n\n\nUpdates `@aws-sdk/client-cloudfront` from 3.962.0 to 3.1073.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/client-cloudfront's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1073.0\u003c/h2\u003e\n\u003ch4\u003e3.1073.0(2026-06-19)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-glue:\u003c/strong\u003e  Adds the SearchAssets operation for discovering assets in the AWS Glue Data Catalog using full-text search and filters. Minor naming refinements across the Glossary Terms and Attachment APIs for consistency. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ef204650ce46482b8b2bfeeb9c539244b59a848e\"\u003eef204650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-connect:\u003c/strong\u003e  This is the release for point based scoring system and the evaluation form validation project (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b19c162a2e22094c09d77d484ba0dfcfd3a5ecff\"\u003eb19c162a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent:\u003c/strong\u003e  Add support for metadata-only retrieval on GetFlow, GetFlowVersion, and GetPrompt APIs. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c9d5fb3378ba0d1c7ab7d3fe7bec0296491c6bbc\"\u003ec9d5fb33\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-appstream:\u003c/strong\u003e  Amazon WorkSpaces Agent Access now supports domain-joined fleets for enterprise identity integration, real-time agent observation with instant stop controls, and MCP tool forwarding for lower-latency, cost-effective desktop tool access. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d9c25f0b3f641fdc1999f0d4377140c0f3476ede\"\u003ed9c25f0b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-opensearch:\u003c/strong\u003e  This release introduces data source attachment APIs, enabling users to attach and detach Amazon OpenSearch Service domains and Amazon OpenSearch Serverless collections to an OpenSearch application. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6cce3d69dc550fb64245fa1eae1b4e74d6d23607\"\u003e6cce3d69\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1073.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1072.0\u003c/h2\u003e\n\u003ch4\u003e3.1072.0(2026-06-18)\u003c/h4\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ec2:\u003c/strong\u003e  Documentation updates clarifying CancelCapacityReservation cancellable states (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e3723ba73e2f2d307254d49ec73c5b3d91b8d892\"\u003ee3723ba7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer:\u003c/strong\u003e  This release surfaces two new metrics Volume IOPS Exceeded and Volume Throughput Exceeded into EBS volume rightsizing recommendations. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ded6618d5249ab413bd90b26d4cea91d5f4b9b8f\"\u003eded6618d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-application-auto-scaling:\u003c/strong\u003e  Adds support for ECS high-resolution predefined scaling metrics (ECSServiceAverageCPUUtilizationHighResolution, ECSServiceAverageMemoryUtilizationHighResolution) enabling 20-second metric periods for faster scaling (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/95b3513a224a678fb92dc623f149d24adb96ae7b\"\u003e95b3513a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cognito-identity-provider:\u003c/strong\u003e  In order to support the new TLS Self-Service feature, this change adds SecurityPolicyType to CustomDomainConfigType. During CreateUserPoolDomain and UpdateUserPoolDomain this is used to select a custom domain's TLS enforcement, and for DescribeUserPoolDomain it informs users about the current TLS. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e89377876aa392ea403636b6821cdb3df253648b\"\u003ee8937787\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-sagemaker:\u003c/strong\u003e  Adds support for automatic AMI patching on HyperPod clusters. Customers can configure patching strategies to automatically apply security patch with zero job termination. Customers can also specify an AMI version at instance group level and update cluster software to a certain AMI version. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/fd33a5e46ca314f064b9149900abe4e451661b5e\"\u003efd33a5e4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Amazon ECS services now support high resolution (20 second) CloudWatch metrics for CPUUtilization and MemoryUtilization. Use these metrics for faster service auto scaling. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93055ac93bffca3e2957b2d67cb24ecdc784457a\"\u003e93055ac9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-healthlake:\u003c/strong\u003e  Adding New Configurations to the FHIR Create Datastore. The new configurations include NLP Configuration, AnalyticsConfiguration, ProfileConfiguration (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/494fa59f48705e23ab79da259046966831183c71\"\u003e494fa59f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-gamelift:\u003c/strong\u003e  Amazon GameLift Servers has launched support for customizing Linux capabilities in container fleets. You can now specify additional Linux capabilities for containers in a container group definition, giving you finer control over the default Docker capabilities available to your containers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93cefd905d4fc0c649b1d7ed69f4c8f0d79d3371\"\u003e93cefd90\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eks:\u003c/strong\u003e  Adds support for configurable control plane egress routing in Amazon EKS, allowing you to route control plane egress traffic through your VPC and control how the control plane reaches resources in your network such as webhook servers and OIDC providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/693db62958c6818b4cb847887b8e36a66347c119\"\u003e693db629\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda:\u003c/strong\u003e  Converging and fixing existing documentation gaps in Lambda SDK (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6555a565348a308dad7a51c85457c2bcee87feb8\"\u003e6555a565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-synthetics:\u003c/strong\u003e  CloudWatch Synthetics adds support for multi-location canaries. Customers can now monitor their endpoints from multiple locations with centralized management from a primary location. The SDK includes new parameters for configuring multiple locations and tracking their state. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/f2c8b480812b5ba2d1e173a8a074df6d72654239\"\u003ef2c8b480\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch-logs:\u003c/strong\u003e  Added optional startFromHead parameter to FilterLogEvents enabling descending timestamp order (newest first) when set to false. Default true preserves existing ascending order. Reverse sorting requires a startTime on or after Jan 1, 2024. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/1be63ed942af46df978e55df4bec6fb6c9d16e60\"\u003e1be63ed9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-batch:\u003c/strong\u003e  Adds Support for ordered allocation strategies- BEST-FIT-PROGRESSIVE-ORDERED or SPOT-CAPACITY-OPTIMIZED-PRIORITIZED (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0e57e53b1e0914a03b5b7c7d346245a1e6b6da11\"\u003e0e57e53b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1072.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1071.0\u003c/h2\u003e\n\u003ch4\u003e3.1071.0(2026-06-17)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-partnercentral-selling:\u003c/strong\u003e  Cosell Resonate AND Prospecing API Launch with ARN correction (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7e8c98abe070924fbbd1ea2abc183f0715f80945\"\u003e7e8c98ab\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer-automation:\u003c/strong\u003e  This launch adds IfExists comparison operators to Compute Optimizer Automation rule criteria, so a rule can include recommended actions whose specified attribute isn't present. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ab2c616d167a0796fba91e44d1118a6a8baee60d\"\u003eab2c616d\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-cloudfront/CHANGELOG.md\"\u003e@​aws-sdk/client-cloudfront's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1072.0...v3.1073.0\"\u003e3.1073.0\u003c/a\u003e (2026-06-19)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-cloudfront\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1071.0...v3.1072.0\"\u003e3.1072.0\u003c/a\u003e (2026-06-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-cloudfront\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1070.0...v3.1071.0\"\u003e3.1071.0\u003c/a\u003e (2026-06-17)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-cloudfront\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1069.0...v3.1070.0\"\u003e3.1070.0\u003c/a\u003e (2026-06-16)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-cloudfront\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1068.0...v3.1069.0\"\u003e3.1069.0\u003c/a\u003e (2026-06-15)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-cloudfront\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1067.0...v3.1068.0\"\u003e3.1068.0\u003c/a\u003e (2026-06-12)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-cloudfront\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1066.0...v3.1067.0\"\u003e3.1067.0\u003c/a\u003e (2026-06-11)\u003c/h1\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ee71adc9663fc2ebaabae455981fd169fd6e97b2\"\u003e\u003ccode\u003eee71adc\u003c/code\u003e\u003c/a\u003e Publish v3.1073.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/501cd332619533ae96f154d7c226dc2f7bf8d615\"\u003e\u003ccode\u003e501cd33\u003c/code\u003e\u003c/a\u003e Publish v3.1072.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3ce820aa54c953459eb58abe4f06e28ba4ceb87d\"\u003e\u003ccode\u003e3ce820a\u003c/code\u003e\u003c/a\u003e Publish v3.1071.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4f2cfe1cfc420d0b5bfa226ae6619dd67de73ccc\"\u003e\u003ccode\u003e4f2cfe1\u003c/code\u003e\u003c/a\u003e Publish v3.1070.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7058d13814795c6ff06a960077269458520bf161\"\u003e\u003ccode\u003e7058d13\u003c/code\u003e\u003c/a\u003e Publish v3.1069.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/67981c5a65d6dd797a065df034a8d0fcdaa9b7bd\"\u003e\u003ccode\u003e67981c5\u003c/code\u003e\u003c/a\u003e chore(scripts): tuning the build graph (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-cloudfront/issues/8095\"\u003e#8095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0632f6dc8842caaa916c5f43a5043342ff9ba6bb\"\u003e\u003ccode\u003e0632f6d\u003c/code\u003e\u003c/a\u003e Publish v3.1068.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0a3246f174335af55a6981b4891f0f4c10dfe4c4\"\u003e\u003ccode\u003e0a3246f\u003c/code\u003e\u003c/a\u003e Publish v3.1067.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4b11912aef8adc845f81b7e9922bd180c5cf1d90\"\u003e\u003ccode\u003e4b11912\u003c/code\u003e\u003c/a\u003e Publish v3.1066.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e4ef6c57d8fd97d15e0a7a27a24396990d704307\"\u003e\u003ccode\u003ee4ef6c5\u003c/code\u003e\u003c/a\u003e test: use crypto.randomUUID for resource names in e2e tests (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-cloudfront/issues/8091\"\u003e#8091\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1073.0/clients/client-cloudfront\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@aws-sdk/client-device-farm` from 3.962.0 to 3.1073.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/client-device-farm's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1073.0\u003c/h2\u003e\n\u003ch4\u003e3.1073.0(2026-06-19)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-glue:\u003c/strong\u003e  Adds the SearchAssets operation for discovering assets in the AWS Glue Data Catalog using full-text search and filters. Minor naming refinements across the Glossary Terms and Attachment APIs for consistency. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ef204650ce46482b8b2bfeeb9c539244b59a848e\"\u003eef204650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-connect:\u003c/strong\u003e  This is the release for point based scoring system and the evaluation form validation project (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b19c162a2e22094c09d77d484ba0dfcfd3a5ecff\"\u003eb19c162a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent:\u003c/strong\u003e  Add support for metadata-only retrieval on GetFlow, GetFlowVersion, and GetPrompt APIs. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c9d5fb3378ba0d1c7ab7d3fe7bec0296491c6bbc\"\u003ec9d5fb33\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-appstream:\u003c/strong\u003e  Amazon WorkSpaces Agent Access now supports domain-joined fleets for enterprise identity integration, real-time agent observation with instant stop controls, and MCP tool forwarding for lower-latency, cost-effective desktop tool access. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d9c25f0b3f641fdc1999f0d4377140c0f3476ede\"\u003ed9c25f0b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-opensearch:\u003c/strong\u003e  This release introduces data source attachment APIs, enabling users to attach and detach Amazon OpenSearch Service domains and Amazon OpenSearch Serverless collections to an OpenSearch application. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6cce3d69dc550fb64245fa1eae1b4e74d6d23607\"\u003e6cce3d69\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1073.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1072.0\u003c/h2\u003e\n\u003ch4\u003e3.1072.0(2026-06-18)\u003c/h4\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ec2:\u003c/strong\u003e  Documentation updates clarifying CancelCapacityReservation cancellable states (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e3723ba73e2f2d307254d49ec73c5b3d91b8d892\"\u003ee3723ba7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer:\u003c/strong\u003e  This release surfaces two new metrics Volume IOPS Exceeded and Volume Throughput Exceeded into EBS volume rightsizing recommendations. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ded6618d5249ab413bd90b26d4cea91d5f4b9b8f\"\u003eded6618d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-application-auto-scaling:\u003c/strong\u003e  Adds support for ECS high-resolution predefined scaling metrics (ECSServiceAverageCPUUtilizationHighResolution, ECSServiceAverageMemoryUtilizationHighResolution) enabling 20-second metric periods for faster scaling (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/95b3513a224a678fb92dc623f149d24adb96ae7b\"\u003e95b3513a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cognito-identity-provider:\u003c/strong\u003e  In order to support the new TLS Self-Service feature, this change adds SecurityPolicyType to CustomDomainConfigType. During CreateUserPoolDomain and UpdateUserPoolDomain this is used to select a custom domain's TLS enforcement, and for DescribeUserPoolDomain it informs users about the current TLS. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e89377876aa392ea403636b6821cdb3df253648b\"\u003ee8937787\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-sagemaker:\u003c/strong\u003e  Adds support for automatic AMI patching on HyperPod clusters. Customers can configure patching strategies to automatically apply security patch with zero job termination. Customers can also specify an AMI version at instance group level and update cluster software to a certain AMI version. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/fd33a5e46ca314f064b9149900abe4e451661b5e\"\u003efd33a5e4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Amazon ECS services now support high resolution (20 second) CloudWatch metrics for CPUUtilization and MemoryUtilization. Use these metrics for faster service auto scaling. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93055ac93bffca3e2957b2d67cb24ecdc784457a\"\u003e93055ac9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-healthlake:\u003c/strong\u003e  Adding New Configurations to the FHIR Create Datastore. The new configurations include NLP Configuration, AnalyticsConfiguration, ProfileConfiguration (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/494fa59f48705e23ab79da259046966831183c71\"\u003e494fa59f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-gamelift:\u003c/strong\u003e  Amazon GameLift Servers has launched support for customizing Linux capabilities in container fleets. You can now specify additional Linux capabilities for containers in a container group definition, giving you finer control over the default Docker capabilities available to your containers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93cefd905d4fc0c649b1d7ed69f4c8f0d79d3371\"\u003e93cefd90\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eks:\u003c/strong\u003e  Adds support for configurable control plane egress routing in Amazon EKS, allowing you to route control plane egress traffic through your VPC and control how the control plane reaches resources in your network such as webhook servers and OIDC providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/693db62958c6818b4cb847887b8e36a66347c119\"\u003e693db629\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda:\u003c/strong\u003e  Converging and fixing existing documentation gaps in Lambda SDK (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6555a565348a308dad7a51c85457c2bcee87feb8\"\u003e6555a565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-synthetics:\u003c/strong\u003e  CloudWatch Synthetics adds support for multi-location canaries. Customers can now monitor their endpoints from multiple locations with centralized management from a primary location. The SDK includes new parameters for configuring multiple locations and tracking their state. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/f2c8b480812b5ba2d1e173a8a074df6d72654239\"\u003ef2c8b480\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch-logs:\u003c/strong\u003e  Added optional startFromHead parameter to FilterLogEvents enabling descending timestamp order (newest first) when set to false. Default true preserves existing ascending order. Reverse sorting requires a startTime on or after Jan 1, 2024. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/1be63ed942af46df978e55df4bec6fb6c9d16e60\"\u003e1be63ed9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-batch:\u003c/strong\u003e  Adds Support for ordered allocation strategies- BEST-FIT-PROGRESSIVE-ORDERED or SPOT-CAPACITY-OPTIMIZED-PRIORITIZED (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0e57e53b1e0914a03b5b7c7d346245a1e6b6da11\"\u003e0e57e53b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1072.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1071.0\u003c/h2\u003e\n\u003ch4\u003e3.1071.0(2026-06-17)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-partnercentral-selling:\u003c/strong\u003e  Cosell Resonate AND Prospecing API Launch with ARN correction (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7e8c98abe070924fbbd1ea2abc183f0715f80945\"\u003e7e8c98ab\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer-automation:\u003c/strong\u003e  This launch adds IfExists comparison operators to Compute Optimizer Automation rule criteria, so a rule can include recommended actions whose specified attribute isn't present. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ab2c616d167a0796fba91e44d1118a6a8baee60d\"\u003eab2c616d\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-device-farm/CHANGELOG.md\"\u003e@​aws-sdk/client-device-farm's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1072.0...v3.1073.0\"\u003e3.1073.0\u003c/a\u003e (2026-06-19)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-device-farm\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1071.0...v3.1072.0\"\u003e3.1072.0\u003c/a\u003e (2026-06-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-device-farm\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1070.0...v3.1071.0\"\u003e3.1071.0\u003c/a\u003e (2026-06-17)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-device-farm\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1069.0...v3.1070.0\"\u003e3.1070.0\u003c/a\u003e (2026-06-16)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-device-farm\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1068.0...v3.1069.0\"\u003e3.1069.0\u003c/a\u003e (2026-06-15)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-device-farm\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1067.0...v3.1068.0\"\u003e3.1068.0\u003c/a\u003e (2026-06-12)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-device-farm\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1066.0...v3.1067.0\"\u003e3.1067.0\u003c/a\u003e (2026-06-11)\u003c/h1\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ee71adc9663fc2ebaabae455981fd169fd6e97b2\"\u003e\u003ccode\u003eee71adc\u003c/code\u003e\u003c/a\u003e Publish v3.1073.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/501cd332619533ae96f154d7c226dc2f7bf8d615\"\u003e\u003ccode\u003e501cd33\u003c/code\u003e\u003c/a\u003e Publish v3.1072.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3ce820aa54c953459eb58abe4f06e28ba4ceb87d\"\u003e\u003ccode\u003e3ce820a\u003c/code\u003e\u003c/a\u003e Publish v3.1071.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4f2cfe1cfc420d0b5bfa226ae6619dd67de73ccc\"\u003e\u003ccode\u003e4f2cfe1\u003c/code\u003e\u003c/a\u003e Publish v3.1070.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7058d13814795c6ff06a960077269458520bf161\"\u003e\u003ccode\u003e7058d13\u003c/code\u003e\u003c/a\u003e Publish v3.1069.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/67981c5a65d6dd797a065df034a8d0fcdaa9b7bd\"\u003e\u003ccode\u003e67981c5\u003c/code\u003e\u003c/a\u003e chore(scripts): tuning the build graph (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-device-farm/issues/8095\"\u003e#8095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0632f6dc8842caaa916c5f43a5043342ff9ba6bb\"\u003e\u003ccode\u003e0632f6d\u003c/code\u003e\u003c/a\u003e Publish v3.1068.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0a3246f174335af55a6981b4891f0f4c10dfe4c4\"\u003e\u003ccode\u003e0a3246f\u003c/code\u003e\u003c/a\u003e Publish v3.1067.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4b11912aef8adc845f81b7e9922bd180c5cf1d90\"\u003e\u003ccode\u003e4b11912\u003c/code\u003e\u003c/a\u003e Publish v3.1066.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/62daf07c545b1fbac5753c554e2c8298ae6b820f\"\u003e\u003ccode\u003e62daf07\u003c/code\u003e\u003c/a\u003e Publish v3.1065.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1073.0/clients/client-device-farm\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@aws-sdk/client-s3` from 3.962.0 to 3.1073.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/client-s3's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1073.0\u003c/h2\u003e\n\u003ch4\u003e3.1073.0(2026-06-19)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-glue:\u003c/strong\u003e  Adds the SearchAssets operation for discovering assets in the AWS Glue Data Catalog using full-text search and filters. Minor naming refinements across the Glossary Terms and Attachment APIs for consistency. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ef204650ce46482b8b2bfeeb9c539244b59a848e\"\u003eef204650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-connect:\u003c/strong\u003e  This is the release for point based scoring system and the evaluation form validation project (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b19c162a2e22094c09d77d484ba0dfcfd3a5ecff\"\u003eb19c162a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent:\u003c/strong\u003e  Add support for metadata-only retrieval on GetFlow, GetFlowVersion, and GetPrompt APIs. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c9d5fb3378ba0d1c7ab7d3fe7bec0296491c6bbc\"\u003ec9d5fb33\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-appstream:\u003c/strong\u003e  Amazon WorkSpaces Agent Access now supports domain-joined fleets for enterprise identity integration, real-time agent observation with instant stop controls, and MCP tool forwarding for lower-latency, cost-effective desktop tool access. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d9c25f0b3f641fdc1999f0d4377140c0f3476ede\"\u003ed9c25f0b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-opensearch:\u003c/strong\u003e  This release introduces data source attachment APIs, enabling users to attach and detach Amazon OpenSearch Service domains and Amazon OpenSearch Serverless collections to an OpenSearch application. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6cce3d69dc550fb64245fa1eae1b4e74d6d23607\"\u003e6cce3d69\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1073.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1072.0\u003c/h2\u003e\n\u003ch4\u003e3.1072.0(2026-06-18)\u003c/h4\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ec2:\u003c/strong\u003e  Documentation updates clarifying CancelCapacityReservation cancellable states (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e3723ba73e2f2d307254d49ec73c5b3d91b8d892\"\u003ee3723ba7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer:\u003c/strong\u003e  This release surfaces two new metrics Volume IOPS Exceeded and Volume Throughput Exceeded into EBS volume rightsizing recommendations. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ded6618d5249ab413bd90b26d4cea91d5f4b9b8f\"\u003eded6618d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-application-auto-scaling:\u003c/strong\u003e  Adds support for ECS high-resolution predefined scaling metrics (ECSServiceAverageCPUUtilizationHighResolution, ECSServiceAverageMemoryUtilizationHighResolution) enabling 20-second metric periods for faster scaling (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/95b3513a224a678fb92dc623f149d24adb96ae7b\"\u003e95b3513a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cognito-identity-provider:\u003c/strong\u003e  In order to support the new TLS Self-Service feature, this change adds SecurityPolicyType to CustomDomainConfigType. During CreateUserPoolDomain and UpdateUserPoolDomain this is used to select a custom domain's TLS enforcement, and for DescribeUserPoolDomain it informs users about the current TLS. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e89377876aa392ea403636b6821cdb3df253648b\"\u003ee8937787\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-sagemaker:\u003c/strong\u003e  Adds support for automatic AMI patching on HyperPod clusters. Customers can configure patching strategies to automatically apply security patch with zero job termination. Customers can also specify an AMI version at instance group level and update cluster software to a certain AMI version. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/fd33a5e46ca314f064b9149900abe4e451661b5e\"\u003efd33a5e4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Amazon ECS services now support high resolution (20 second) CloudWatch metrics for CPUUtilization and MemoryUtilization. Use these metrics for faster service auto scaling. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93055ac93bffca3e2957b2d67cb24ecdc784457a\"\u003e93055ac9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-healthlake:\u003c/strong\u003e  Adding New Configurations to the FHIR Create Datastore. The new configurations include NLP Configuration, AnalyticsConfiguration, ProfileConfiguration (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/494fa59f48705e23ab79da259046966831183c71\"\u003e494fa59f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-gamelift:\u003c/strong\u003e  Amazon GameLift Servers has launched support for customizing Linux capabilities in container fleets. You can now specify additional Linux capabilities for containers in a container group definition, giving you finer control over the default Docker capabilities available to your containers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93cefd905d4fc0c649b1d7ed69f4c8f0d79d3371\"\u003e93cefd90\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eks:\u003c/strong\u003e  Adds support for configurable control plane egress routing in Amazon EKS, allowing you to route control plane egress traffic through your VPC and control how the control plane reaches resources in your network such as webhook servers and OIDC providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/693db62958c6818b4cb847887b8e36a66347c119\"\u003e693db629\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda:\u003c/strong\u003e  Converging and fixing existing documentation gaps in Lambda SDK (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6555a565348a308dad7a51c85457c2bcee87feb8\"\u003e6555a565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-synthetics:\u003c/strong\u003e  CloudWatch Synthetics adds support for multi-location canaries. Customers can now monitor their endpoints from multiple locations with centralized management from a primary location. The SDK includes new parameters for configuring multiple locations and tracking their state. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/f2c8b480812b5ba2d1e173a8a074df6d72654239\"\u003ef2c8b480\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch-logs:\u003c/strong\u003e  Added optional startFromHead parameter to FilterLogEvents enabling descending timestamp order (newest first) when set to false. Default true preserves existing ascending order. Reverse sorting requires a startTime on or after Jan 1, 2024. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/1be63ed942af46df978e55df4bec6fb6c9d16e60\"\u003e1be63ed9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-batch:\u003c/strong\u003e  Adds Support for ordered allocation strategies- BEST-FIT-PROGRESSIVE-ORDERED or SPOT-CAPACITY-OPTIMIZED-PRIORITIZED (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0e57e53b1e0914a03b5b7c7d346245a1e6b6da11\"\u003e0e57e53b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1072.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1071.0\u003c/h2\u003e\n\u003ch4\u003e3.1071.0(2026-06-17)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-partnercentral-selling:\u003c/strong\u003e  Cosell Resonate AND Prospecing API Launch with ARN correction (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7e8c98abe070924fbbd1ea2abc183f0715f80945\"\u003e7e8c98ab\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer-automation:\u003c/strong\u003e  This launch adds IfExists comparison operators to Compute Optimizer Automation rule criteria, so a rule can include recommended actions whose specified attribute isn't present. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ab2c616d167a0796fba91e44d1118a6a8baee60d\"\u003eab2c616d\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-s3/CHANGELOG.md\"\u003e@​aws-sdk/client-s3's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1072.0...v3.1073.0\"\u003e3.1073.0\u003c/a\u003e (2026-06-19)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1071.0...v3.1072.0\"\u003e3.1072.0\u003c/a\u003e (2026-06-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1070.0...v3.1071.0\"\u003e3.1071.0\u003c/a\u003e (2026-06-17)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1069.0...v3.1070.0\"\u003e3.1070.0\u003c/a\u003e (2026-06-16)\u003c/h1\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-s3:\u003c/strong\u003e Added support for annotations. You can now attach up to 1000 annotations (up to 1 MB each) directly to objects and create, retrieve, list, and delete them using new annotation APIs. Also added support for configuring an annotation table in S3 Metadata. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c555874690846b81904a2c0c1e96130bd03bbeaa\"\u003ec555874\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1068.0...v3.1069.0\"\u003e3.1069.0\u003c/a\u003e (2026-06-15)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1067.0...v3.1068.0\"\u003e3.1068.0\u003c/a\u003e (2026-06-12)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ee71adc9663fc2ebaabae455981fd169fd6e97b2\"\u003e\u003ccode\u003eee71adc\u003c/code\u003e\u003c/a\u003e Publish v3.1073.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/501cd332619533ae96f154d7c226dc2f7bf8d615\"\u003e\u003ccode\u003e501cd33\u003c/code\u003e\u003c/a\u003e Publish v3.1072.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3ce820aa54c953459eb58abe4f06e28ba4ceb87d\"\u003e\u003ccode\u003e3ce820a\u003c/code\u003e\u003c/a\u003e Publish v3.1071.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4f2cfe1cfc420d0b5bfa226ae6619dd67de73ccc\"\u003e\u003ccode\u003e4f2cfe1\u003c/code\u003e\u003c/a\u003e Publish v3.1070.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c555874690846b81904a2c0c1e96130bd03bbeaa\"\u003e\u003ccode\u003ec555874\u003c/code\u003e\u003c/a\u003e feat(client-s3): Added support for annotations. You can now attach up to 1000...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7058d13814795c6ff06a960077269458520bf161\"\u003e\u003ccode\u003e7058d13\u003c/code\u003e\u003c/a\u003e Publish v3.1069.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/67981c5a65d6dd797a065df034a8d0fcdaa9b7bd\"\u003e\u003ccode\u003e67981c5\u003c/code\u003e\u003c/a\u003e chore(scripts): tuning the build graph (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3/issues/8095\"\u003e#8095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0632f6dc8842caaa916c5f43a5043342ff9ba6bb\"\u003e\u003ccode\u003e0632f6d\u003c/code\u003e\u003c/a\u003e Publish v3.1068.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0a3246f174335af55a6981b4891f0f4c10dfe4c4\"\u003e\u003ccode\u003e0a3246f\u003c/code\u003e\u003c/a\u003e Publish v3.1067.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4b11912aef8adc845f81b7e9922bd180c5cf1d90\"\u003e\u003ccode\u003e4b11912\u003c/code\u003e\u003c/a\u003e Publish v3.1066.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1073.0/clients/client-s3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@aws-sdk/lib-storage` from 3.962.0 to 3.1073.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/lib-storage's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1073.0\u003c/h2\u003e\n\u003ch4\u003e3.1073.0(2026-06-19)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-glue:\u003c/strong\u003e  Adds the SearchAssets operation for discovering assets in the AWS Glue Data Catalog using full-text search and filters. Minor naming refinements across the Glossary Terms and Attachment APIs for consistency. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ef204650ce46482b8b2bfeeb9c539244b59a848e\"\u003eef204650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-connect:\u003c/strong\u003e  This is the release for point based scoring system and the evaluation form validation project (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b19c162a2e22094c09d77d484ba0dfcfd3a5ecff\"\u003eb19c162a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent:\u003c/strong\u003e  Add support for metadata-only retrieval on GetFlow, GetFlowVersion, and GetPrompt APIs. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c9d5fb3378ba0d1c7ab7d3fe7bec0296491c6bbc\"\u003ec9d5fb33\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-appstream:\u003c/strong\u003e  Amazon WorkSpaces Agent Access now supports domain-joined fleets for enterprise identity integration, real-time agent observation with instant stop controls, and MCP tool forwarding for lower-latency, cost-effective desktop tool access. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d9c25f0b3f641fdc1999f0d4377140c0f3476ede\"\u003ed9c25f0b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-opensearch:\u003c/strong\u003e  This release introduces data source attachment APIs, enabling users to attach and detach Amazon OpenSearch Service domains and Amazon OpenSearch Serverless collections to an OpenSearch application. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6cce3d69dc550fb64245fa1eae1b4e74d6d23607\"\u003e6cce3d69\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1073.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1072.0\u003c/h2\u003e\n\u003ch4\u003e3.1072.0(2026-06-18)\u003c/h4\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ec2:\u003c/strong\u003e  Documentation updates clarifying CancelCapacityReservation cancellable states (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e3723ba73e2f2d307254d49ec73c5b3d91b8d892\"\u003ee3723ba7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer:\u003c/strong\u003e  This release surfaces two new metrics Volume IOPS Exceeded and Volume Throughput Exceeded into EBS volume rightsizing recommendations. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ded6618d5249ab413bd90b26d4cea91d5f4b9b8f\"\u003eded6618d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-application-auto-scaling:\u003c/strong\u003e  Adds support for ECS high-resolution predefined scaling metrics (ECSServiceAverageCPUUtilizationHighResolution, ECSServiceAverageMemoryUtilizationHighResolution) enabling 20-second metric periods for faster scaling (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/95b3513a224a678fb92dc623f149d24adb96ae7b\"\u003e95b3513a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cognito-identity-provider:\u003c/strong\u003e  In order to support the new TLS Self-Service feature, this change adds SecurityPolicyType to CustomDomainConfigType. During CreateUserPoolDomain and UpdateUserPoolDomain this is used to select a custom domain's TLS enforcement, and for DescribeUserPoolDomain it informs users about the current TLS. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e89377876aa392ea403636b6821cdb3df253648b\"\u003ee8937787\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-sagemaker:\u003c/strong\u003e  Adds support for automatic AMI patching on HyperPod clusters. Customers can configure patching strategies to automatically apply security patch with zero job termination. Customers can also specify an AMI version at instance group level and update cluster software to a certain AMI version. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/fd33a5e46ca314f064b9149900abe4e451661b5e\"\u003efd33a5e4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Amazon ECS services now support high resolution (20 second) CloudWatch metrics for CPUUtilization and MemoryUtilization. Use these metrics for faster service auto scaling. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93055ac93bffca3e2957b2d67cb24ecdc784457a\"\u003e93055ac9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-healthlake:\u003c/strong\u003e  Adding New Configurations to the FHIR Create Datastore. The new configurations include NLP Configuration, AnalyticsConfiguration, ProfileConfiguration (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/494fa59f48705e23ab79da259046966831183c71\"\u003e494fa59f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-gamelift:\u003c/strong\u003e  Amazon GameLift Servers has launched support for customizing Linux capabilities in container fleets. You can now specify additional Linux capabilities for containers in a container group definition, giving you finer control over the default Docker capabilities available to your containers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93cefd905d4fc0c649b1d7ed69f4c8f0d79d3371\"\u003e93cefd90\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eks:\u003c/strong\u003e  Adds support for configurable control plane egress routing in Amazon EKS, allowing you to route control plane egress traffic through your VPC and control how the control plane reaches resources in your network such as webhook servers and OIDC providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/693db62958c6818b4cb847887b8e36a66347c119\"\u003e693db629\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda:\u003c/strong\u003e  Converging and fixing existing documentation gaps in Lambda SDK (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6555a565348a308dad7a51c85457c2bcee87feb8\"\u003e6555a565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-synthetics:\u003c/strong\u003e  CloudWatch Synthetics adds support for multi-location canaries. Customers can now monitor their endpoints from multiple locations with centralized management from a primary location. The SDK includes new parameters for configuring multiple locations and tracking their state. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/f2c8b480812b5ba2d1e173a8a074df6d72654239\"\u003ef2c8b480\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch-logs:\u003c/strong\u003e  Added optional startFromHead parameter to FilterLogEvents enabling descending timestamp order (newest first) when set to false. Default true preserves existing ascending order. Reverse sorting requires a startTime on or after Jan 1, 2024. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/1be63ed942af46df978e55df4bec6fb6c9d16e60\"\u003e1be63ed9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-batch:\u003c/strong\u003e  Adds Support for ordered allocation strategies- BEST-FIT-PROGRESSIVE-ORDERED or SPOT-CAPACITY-OPTIMIZED-PRIORITIZED (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0e57e53b1e0914a03b5b7c7d346245a1e6b6da11\"\u003e0e57e53b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1072.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1071.0\u003c/h2\u003e\n\u003ch4\u003e3.1071.0(2026-06-17)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-partnercentral-selling:\u003c/strong\u003e  Cosell Resonate AND Prospecing API Launch with ARN correction (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7e8c98abe070924fbbd1ea2abc183f0715f80945\"\u003e7e8c98ab\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer-automation:\u003c/strong\u003e  This launch adds IfExists comparison operators to Compute Optimizer Automation rule criteria, so a rule can include recommended actions whose specified attribute isn't present. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ab2c616d167a0796fba91e44d1118a6a8baee60d\"\u003eab2c616d\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/lib/lib-storage/CHANGELOG.md\"\u003e@​aws-sdk/lib-storage's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1072.0...v3.1073.0\"\u003e3.1073.0\u003c/a\u003e (2026-06-19)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/lib-storage\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1071.0...v3.1072.0\"\u003e3.1072.0\u003c/a\u003e (2026-06-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/lib-storage\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1070.0...v3.1071.0\"\u003e3.1071.0\u003c/a\u003e (2026-06-17)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/lib-storage\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1069.0...v3.1070.0\"\u003e3.1070.0\u003c/a\u003e (2026-06-16)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/lib-storage\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1068.0...v3.1069.0\"\u003e3.1069.0\u003c/a\u003e (2026-06-15)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/lib-storage\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1067.0...v3.1068.0\"\u003e3.1068.0\u003c/a\u003e (2026-06-12)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/lib-storage\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1066.0...v3.1067.0\"\u003e3.1067.0\u003c/a\u003e (2026-06-11)\u003c/h1\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ee71adc9663fc2ebaabae455981fd169fd6e97b2\"\u003e\u003ccode\u003eee71adc\u003c/code\u003e\u003c/a\u003e Publish v3.1073.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/501cd332619533ae96f154d7c226dc2f7bf8d615\"\u003e\u003ccode\u003e501cd33\u003c/code\u003e\u003c/a\u003e Publish v3.1072.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3ce820aa54c953459eb58abe4f06e28ba4ceb87d\"\u003e\u003ccode\u003e3ce820a\u003c/code\u003e\u003c/a\u003e Publish v3.1071.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4f2cfe1cfc420d0b5bfa226ae6619dd67de73ccc\"\u003e\u003ccode\u003e4f2cfe1\u003c/code\u003e\u003c/a\u003e Publish v3.1070.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7058d13814795c6ff06a960077269458520bf161\"\u003e\u003ccode\u003e7058d13\u003c/code\u003e\u003c/a\u003e Publish v3.1069.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/67981c5a65d6dd797a065df034a8d0fcdaa9b7bd\"\u003e\u003ccode\u003e67981c5\u003c/code\u003e\u003c/a\u003e chore(scripts): tuning the build graph (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/lib/lib-storage/issues/8095\"\u003e#8095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0632f6dc8842caaa916c5f43a5043342ff9ba6bb\"\u003e\u003ccode\u003e0632f6d\u003c/code\u003e\u003c/a\u003e Publish v3.1068.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0a3246f174335af55a6981b4891f0f4c10dfe4c4\"\u003e\u003ccode\u003e0a3246f\u003c/code\u003e\u003c/a\u003e Publish v3.1067.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4b11912aef8adc845f81b7e9922bd180c5cf1d90\"\u003e\u003ccode\u003e4b11912\u003c/code\u003e\u003c/a\u003e Publish v3.1066.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/62daf07c545b1fbac5753c554e2c8298ae6b820f\"\u003e\u003ccode\u003e62daf07\u003c/code\u003e\u003c/a\u003e Publish v3.1065.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1073.0/lib/lib-storage\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@serenity-js/core` from 3.37.1 to 3.44.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/serenity-js/serenity-js/releases\"\u003e@​serenity-js/core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.44.0\u003c/h2\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.4...v3.44.0\"\u003e3.44.0\u003c/a\u003e (2026-06-13)\u003c/h1\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecucumber:\u003c/strong\u003e handle Cucumber 13 behavioral changes (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/f53449309f1c246334c87ca0133852d052fbb3d5\"\u003ef534493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecucumber:\u003c/strong\u003e reconstruct ambiguous step error message from support code library (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/b0bd8ce65bd556035c459ea7c5c606125c957bbd\"\u003eb0bd8ce\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update webdriverio dependencies to ^9.28.0 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/966ddfc9f33edc99bb42688215ef01a1cb52014b\"\u003e966ddfc\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint:\u003c/strong\u003e add skip_hook.ts to unicorn/filename-case ignore list (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/d3ca1713fc0b367248e68a2c59feb23546657cf8\"\u003ed3ca171\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecucumber:\u003c/strong\u003e add support for Cucumber 13 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/830236632eb05e0228e89658ee1f4e7e20fb5863\"\u003e8302366\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev3.43.4\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.3...v3.43.4\"\u003e3.43.4\u003c/a\u003e (2026-06-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency proxy to v4.1.0 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/d35ab151a4ffc52da772ed613cd40c96b5c94fb3\"\u003ed35ab15\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency semver to v7.8.4 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/7ae8f25cd458ab74d4036d643ce2f6120b55367e\"\u003e7ae8f25\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update jasmine dependencies to v6.3.0 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/f129f6b4025037a7b56882f5d65649292d34964e\"\u003ef129f6b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint:\u003c/strong\u003e ignore step_definitions directories in unicorn/filename-case (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/324e4c7fb75a6bc220d4b79d7fdde477ffab24aa\"\u003e324e4c7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev3.43.3\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.2...v3.43.3\"\u003e3.43.3\u003c/a\u003e (2026-06-06)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecore:\u003c/strong\u003e drop Node 20 support, require Node \u0026gt;=22.12 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/08cbd88ab545402b7c439178fd83152183f741e8\"\u003e08cbd88\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency \u003ccode\u003e@​cucumber/cucumber\u003c/code\u003e to v12.9.0 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/fd86a42816097896a4c78b2e381d44e9c368fd48\"\u003efd86a42\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency morgan to v1.11.0 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/36e05b62cc375ca6b8e3bb90c0f49ed1b32eb374\"\u003e36e05b6\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency semver to v7.8.2 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/d29555a17741ef945dc4938651091b291a1dc8f1\"\u003ed29555a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update react monorepo (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/b8306c4e781b518d37a1bce9df8053e3bf6810bc\"\u003eb8306c4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update rest dependencies (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/5fbd5505fb11a2cc7536b8933ddc0d70efcf0a64\"\u003e5fbd550\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update webdriverio dependencies to ^9.27.2 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/96284015f6d5021b48347091ec3dcd867c030343\"\u003e9628401\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ewebdriverio:\u003c/strong\u003e correced reporter name (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/ab56667e889f799118ea7f221b627f4acc3bd211\"\u003eab56667\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev3.43.2\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.1...v3.43.2\"\u003e3.43.2\u003c/a\u003e (2026-05-13)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update playwright dependencies to v1.60.0 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/e0fab633109ebe5abcd978ed9db0b2c21480f912\"\u003ee0fab63\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update webdriverio 8 dependencies (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/c55ebfd824fb9592c70fcb2fcbd366a86f0499ed\"\u003ec55ebfd\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/serenity-js/serenity-js/blob/main/packages/core/CHANGELOG.md\"\u003e@​serenity-js/core's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.4...v3.44.0\"\u003e3.44.0\u003c/a\u003e (2026-06-13)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​serenity-js/core\u003c/code\u003e\u003c/p\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.3...v3.43.4\"\u003e3.43.4\u003c/a\u003e (2026-06-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency semver to v7.8.4 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/7ae8f25cd458ab74d4036d643ce2f6120b55367e\"\u003e7ae8f25\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.2...v3.43.3\"\u003e3.43.3\u003c/a\u003e (2026-06-06)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecore:\u003c/strong\u003e drop Node 20 support, require Node \u0026gt;=22.12 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/08cbd88ab545402b7c439178fd83152183f741e8\"\u003e08cbd88\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency semver to v7.8.2 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/d29555a17741ef945dc4938651091b291a1dc8f1\"\u003ed29555a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.1...v3.43.2\"\u003e3.43.2\u003c/a\u003e (2026-05-13)\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​serenity-js/core\u003c/code\u003e\u003c/p\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.0...v3.43.1\"\u003e3.43.1\u003c/a\u003e (2026-05-11)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecore:\u003c/strong\u003e updated API docs (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/38b86f4190b5d3c6a64fd0042c87ac187f847f89\"\u003e38b86f4\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/305069c9630749755dda748ee0463371657adf1a\"\u003e\u003ccode\u003e305069c\u003c/code\u003e\u003c/a\u003e chore(release): v3.44.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/c5426b8313c0123bf7020e9c0e4f3205a37ddbfd\"\u003e\u003ccode\u003ec5426b8\u003c/code\u003e\u003c/a\u003e chore(deps): update dependency memfs to v4.57.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/338ec74a0e938591e00954c6a296c97149c2b5a4\"\u003e\u003ccode\u003e338ec74\u003c/code\u003e\u003c/a\u003e chore(release): v3.43.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/7ae8f25cd458ab74d4036d643ce2f6120b55367e\"\u003e\u003ccode\u003e7ae8f25\u003c/code\u003e\u003c/a\u003e fix(deps): update dependency semver to v7.8.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/e7fd7793656c2ef48ceae7b81587a8a6c0252696\"\u003e\u003ccode\u003ee7fd779\u003c/code\u003e\u003c/a\u003e chore(release): v3.43.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/69d26b311b9baba7c085017177c7c1e37084f146\"\u003e\u003ccode\u003e69d26b3\u003c/code\u003e\u003c/a\u003e Merge branch 'renovate/semver-7.x'\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/b79e2639c79ff12578b09a992f6f86fd22450305\"\u003e\u003ccode\u003eb79e263\u003c/code\u003e\u003c/a\u003e Merge branch 'renovate/memfs-4.x'\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/bf4fae4575c81f0f4da9d320a7ee11e55400ba44\"\u003e\u003ccode\u003ebf4fae4\u003c/code\u003e\u003c/a\u003e Merge branch 'renovate/mocha-11.x'\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/08cbd88ab545402b7c439178fd83152183f741e8\"\u003e\u003ccode\u003e08cbd88\u003c/code\u003e\u003c/a\u003e fix(core): drop Node 20 support, require Node \u0026gt;=22.12\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/d29555a17741ef945dc4938651091b291a1dc8f1\"\u003e\u003ccode\u003ed29555a\u003c/code\u003e\u003c/a\u003e fix(deps): update dependency semver to v7.8.2\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/serenity-js/serenity-js/commits/v3.44.0/packages/core\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@stencil/core` from 4.41.0 to 4.43.5\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/stenciljs/core/releases\"\u003e@​stencil/core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e🍐 4.43.5 (2026-05-28)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e resolve \u003ca href=\"https://github.com/Prop\"\u003e\u003ccode\u003e@​Prop\u003c/code\u003e\u003c/a\u003e variable defaults to literal values in docs output (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6728\"\u003e#6728\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/6cdcec725c07ccda5c256e43e89d8aeef2e9c34a\"\u003e6cdcec7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e silence INVALID_ANNOTATION and SOURCEMAP_BROKEN warnings from workerPlugin (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6718\"\u003e#6718\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/ef79a49cabda21e040d09b102512a18e97bd949b\"\u003eef79a49\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etypes:\u003c/strong\u003e add referrerPolicy to ImgHTMLAttributes (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6694\"\u003e#6694\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/3ed82f1abbfa46edf4e26e631cd568f4fa92a1d7\"\u003e3ed82f1\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6692\"\u003e#6692\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/civing\"\u003e\u003ccode\u003e@​civing\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/stenciljs/core/pull/6694\"\u003estenciljs/core#6694\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Scan0815\"\u003e\u003ccode\u003e@​Scan0815\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/stenciljs/core/pull/6718\"\u003estenciljs/core#6718\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/stenciljs/core/compare/v4.43.4...v4.43.5\"\u003ehttps://github.com/stenciljs/core/compare/v4.43.4...v4.43.5\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e🏝 4.43.4 (2026-04-13)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ecache host refs in public render() method (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6674\"\u003e#6674\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/7dd8ea7a7d93aef6386705438b0b8160d601bbd8\"\u003e7dd8ea7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e set log file path when writeLog is enabled (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6655\"\u003e#6655\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/3d95083d919b4ba64eb11687a9f665c460fd7a72\"\u003e3d95083\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6632\"\u003e#6632\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eruntime:\u003c/strong\u003e normalize legacy watcher metadata for backward compatibility (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6676\"\u003e#6676\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/db26aba5153a7c2276872212edf0b1666f92a0e9\"\u003edb26aba\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eruntime:\u003c/strong\u003e skip setter when removing reflected bool attr (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6673\"\u003e#6673\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/6c8a3b639145cccf1490433b9629b303502b2a6f\"\u003e6c8a3b6\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6672\"\u003e#6672\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eutils:\u003c/strong\u003e handle Unicode characters in serializeProperty (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6654\"\u003e#6654\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/000ddb98da06d37acf32d61509d6935f403dce24\"\u003e000ddb9\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6643\"\u003e#6643\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cyphercodes\"\u003e\u003ccode\u003e@​cyphercodes\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/stenciljs/core/pull/6654\"\u003estenciljs/core#6654\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/AlyssonT\"\u003e\u003ccode\u003e@​AlyssonT\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/stenciljs/core/pull/6673\"\u003estenciljs/core#6673\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/stenciljs/core/compare/v4.43.3...v4.43.4\"\u003ehttps://github.com/stenciljs/core/compare/v4.43.3...v4.43.4\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e🐕 4.43.3 (2026-03-19)\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(testing): deprecate all integrated testing options by \u003ca href=\"https://github.com/johnjenkins\"\u003e\u003ccode\u003e@​johnjenkins\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/stenciljs/core/pull/6642\"\u003estenciljs/core#6642\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(mock-doc): updated node.prepend to work even if there are no existing children  by \u003ca href=\"https://github.com/kyleMessnerLillyContractor\"\u003e\u003ccode\u003e@​kyleMessnerLillyContractor\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/stenciljs/core/pull/6640\"\u003estenciljs/core#6640\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/kyleMessnerLillyContractor\"\u003e\u003ccode\u003e@​kyleMessnerLillyContractor\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/stenciljs/core/pull/6640\"\u003estenciljs/core#6640\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/stenciljs/core/compare/v4.43.2...v4.43.3\"\u003ehttps://github.com/stenciljs/core/compare/v4.43.2...v4.43.3\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e🌙 4.43.2 (2026-02-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e mixin jsx processing (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6615\"\u003e#6615\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/ccda746e50ae90b10ad11b8d56182f59537ff598\"\u003eccda746\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e proper discovery and processing of external mixins / classes (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6620\"\u003e#6620\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/0ee951eca3b21facfd48afd90bd16ed5ef7877b0\"\u003e0ee951e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edist-custom-elements:\u003c/strong\u003e stop \u003ccode\u003erender\u003c/code\u003e function being stripped from imports (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6623\"\u003e#6623\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/cd33ccb270761be9a3e2f9f4668231ff53bb42f7\"\u003ecd33ccb\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003emock-doc:\u003c/strong\u003e add missing \u003ccode\u003epart\u003c/code\u003e setter to MockElement (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6612\"\u003e#6612\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/abfdd57e04d0422a12ad189f2066090315265e02\"\u003eabfdd57\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eruntime:\u003c/strong\u003e init prop reactivity when ele.prop === instance.prop (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6614\"\u003e#6614\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/ad6a344cbe7145f8e810c322c608ed422d17a8b4\"\u003ead6a344\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eruntime:\u003c/strong\u003e mixin get / set \u003ccode\u003e@Prop\u003c/code\u003e infinite loop (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6618\"\u003e#6618\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/11201b5565b6122e6b9ad38014b21004d27904c1\"\u003e11201b5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etypes:\u003c/strong\u003e provide warnings for ts 4094; anon classes may not be private or protected (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6613\"\u003e#6613\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/3fbc441849f82d6b2b88c3c79883f3a2a704d0a0\"\u003e3fbc441\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etypes:\u003c/strong\u003e raise typescript errors even without \u003ccode\u003ecomponents.d.ts\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6616\"\u003e#6616\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/827d0d6a61a90f288310070deae12c2a50e149a3\"\u003e827d0d6\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/stenciljs/core/blob/main/CHANGELOG.md\"\u003e@​stencil/core's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e🍐 \u003ca href=\"https://github.com/stenciljs/core/compare/v4.43.4...v4.43.5\"\u003e4.43.5\u003c/a\u003e (2026-05-28)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e resolve \u003ca href=\"https://github.com/Prop\"\u003e\u003ccode\u003e@​Prop\u003c/code\u003e\u003c/a\u003e variable defaults to literal values in docs output (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6728\"\u003e#6728\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/6cdcec725c07ccda5c256e43e89d8aeef2e9c34a\"\u003e6cdcec7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e silence INVALID_ANNOTATION and SOURCEMAP_BROKEN warnings from workerPlugin (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6718\"\u003e#6718\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/ef79a49cabda21e040d09b102512a18e97bd949b\"\u003eef79a49\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etypes:\u003c/strong\u003e add referrerPolicy to ImgHTMLAttributes (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6694\"\u003e#6694\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/3ed82f1abbfa46edf4e26e631cd568f4fa92a1d7\"\u003e3ed82f1\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6692\"\u003e#6692\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🏝 \u003ca href=\"https://github.com/stenciljs/core/compare/v4.43.3...v4.43.4\"\u003e4.43.4\u003c/a\u003e (2026-04-13)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ecache host refs in public render() method (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6674\"\u003e#6674\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/7dd8ea7a7d93aef6386705438b0b8160d601bbd8\"\u003e7dd8ea7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e set log file path when writeLog is enabled (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6655\"\u003e#6655\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/3d95083d919b4ba64eb11687a9f665c460fd7a72\"\u003e3d95083\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6632\"\u003e#6632\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eruntime:\u003c/strong\u003e normalize legacy watcher metadata for backward compatibility (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6676\"\u003e#6676\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/db26aba5153a7c2276872212edf0b1666f92a0e9\"\u003edb26aba\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eruntime:\u003c/strong\u003e skip setter when removing reflected bool attr (\u003ca href=\"https://redirect.github.com/stenci...\n\n_Description has been truncated_","html_url":"https://github.com/webdriverio/webdriverio/pull/15339","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/webdriverio%2Fwebdriverio/issues/15339","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/15339/packages"},{"uuid":"4684076238","node_id":"PR_kwDOQ54IGs7ng8bQ","number":8,"state":"closed","title":"build(deps): bump morgan from 1.10.1 to 1.11.0","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-06-18T20:53:37.000Z","author_association":null,"state_reason":null,"created_at":"2026-06-17T14:12:26.000Z","updated_at":"2026-06-18T20:53:39.000Z","time_to_close":110471,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":null,"ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n","html_url":"https://github.com/jaimemartinez/wordjs/pull/8","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/jaimemartinez%2Fwordjs/issues/8","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/8/packages"},{"uuid":"4671546796","node_id":"PR_kwDOQR8Hk87m3f-P","number":118,"state":"closed","title":"chore(deps)(deps): bump the backend-minor-patch group across 1 directory with 40 updates","user":"dependabot[bot]","labels":[],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-06-20T00:25:50.000Z","author_association":null,"state_reason":null,"created_at":"2026-06-16T06:08:58.000Z","updated_at":"2026-06-20T00:25:52.000Z","time_to_close":325012,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)(deps): bump","group_name":"backend-minor-patch","update_count":40,"packages":[{"name":"@ai-sdk/langchain","old_version":"2.0.174","new_version":"2.0.216","repository_url":"https://github.com/vercel/ai"},{"name":"@ai-sdk/openai","old_version":"3.0.53","new_version":"3.0.73","repository_url":"https://github.com/vercel/ai"},{"name":"@ai-sdk/react","old_version":"3.0.170","new_version":"3.0.210","repository_url":"https://github.com/vercel/ai"},{"name":"@anthropic-ai/sdk","old_version":"0.92.0","new_version":"0.105.0","repository_url":"https://github.com/anthropics/anthropic-sdk-typescript"},{"name":"@aws-sdk/client-s3","old_version":"3.1050.0","new_version":"3.1072.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@aws-sdk/s3-request-presigner","old_version":"3.1050.0","new_version":"3.1072.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@elevenlabs/elevenlabs-js","old_version":"2.49.1","new_version":"2.53.1","repository_url":"https://github.com/elevenlabs/elevenlabs-js"},{"name":"@fal-ai/client","old_version":"1.7.0","new_version":"1.10.1","repository_url":"https://github.com/fal-ai/fal-js"},{"name":"@langchain/langgraph","old_version":"1.2.9","new_version":"1.4.4","repository_url":"https://github.com/langchain-ai/langgraphjs"},{"name":"@langchain/openai","old_version":"1.4.4","new_version":"1.5.1","repository_url":"https://github.com/langchain-ai/langchainjs"},{"name":"@langfuse/langchain","old_version":"5.3.0","new_version":"5.5.3","repository_url":"https://github.com/langfuse/langfuse-js"},{"name":"@opentelemetry/auto-instrumentations-node","old_version":"0.76.0","new_version":"0.77.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js-contrib"},{"name":"@opentelemetry/exporter-trace-otlp-http","old_version":"0.218.0","new_version":"0.219.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"@opentelemetry/resources","old_version":"2.7.1","new_version":"2.8.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"@opentelemetry/sdk-node","old_version":"0.218.0","new_version":"0.219.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"@sentry/node","old_version":"10.51.0","new_version":"10.58.0","repository_url":"https://github.com/getsentry/sentry-javascript"},{"name":"@sentry/profiling-node","old_version":"10.53.1","new_version":"10.58.0","repository_url":"https://github.com/getsentry/sentry-javascript"},{"name":"ai","old_version":"6.0.168","new_version":"6.0.208","repository_url":"https://github.com/vercel/ai"},{"name":"axios","old_version":"1.16.1","new_version":"1.18.0","repository_url":"https://github.com/axios/axios"},{"name":"bcryptjs","old_version":"3.0.2","new_version":"3.0.3","repository_url":"https://github.com/dcodeIO/bcrypt.js"},{"name":"bullmq","old_version":"5.76.10","new_version":"5.79.0","repository_url":"https://github.com/taskforcesh/bullmq"},{"name":"cors","old_version":"2.8.5","new_version":"2.8.6","repository_url":"https://github.com/expressjs/cors"},{"name":"docx","old_version":"9.5.1","new_version":"9.7.1","repository_url":"https://github.com/dolanmiu/docx"},{"name":"docxtemplater","old_version":"3.67.1","new_version":"3.69.0","repository_url":"https://github.com/open-xml-templating/docxtemplater"},{"name":"express-session","old_version":"1.18.2","new_version":"1.19.0","repository_url":"https://github.com/expressjs/session"},{"name":"express-validator","old_version":"7.3.0","new_version":"7.3.2","repository_url":"https://github.com/express-validator/express-validator"},{"name":"fast-xml-parser","old_version":"5.7.3","new_version":"5.9.2","repository_url":"https://github.com/NaturalIntelligence/fast-xml-parser"},{"name":"google-auth-library","old_version":"10.5.0","new_version":"10.7.0","repository_url":"https://github.com/googleapis/google-cloud-node-core"},{"name":"ioredis","old_version":"5.10.1","new_version":"5.11.1","repository_url":"https://github.com/luin/ioredis"},{"name":"jsonwebtoken","old_version":"9.0.2","new_version":"9.0.3","repository_url":"https://github.com/auth0/node-jsonwebtoken"},{"name":"langchain","old_version":"1.3.4","new_version":"1.5.0","repository_url":"https://github.com/langchain-ai/langchainjs"},{"name":"langsmith","old_version":"0.7.3","new_version":"0.7.10","repository_url":"https://github.com/langchain-ai/langsmith-sdk"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"multer","old_version":"2.1.1","new_version":"2.2.0","repository_url":"https://github.com/expressjs/multer"},{"name":"pdfkit","old_version":"0.17.2","new_version":"0.19.1","repository_url":"https://github.com/foliojs/pdfkit"},{"name":"playwright","old_version":"1.56.1","new_version":"1.61.0","repository_url":"https://github.com/microsoft/playwright"},{"name":"sharp","old_version":"0.34.4","new_version":"0.35.1","repository_url":"https://github.com/lovell/sharp"},{"name":"tsx","old_version":"4.22.3","new_version":"4.22.4","repository_url":"https://github.com/privatenumber/tsx"},{"name":"user-agents","old_version":"2.1.42","new_version":"2.1.95","repository_url":"https://github.com/intoli/user-agents"},{"name":"nodemon","old_version":"3.1.10","new_version":"3.1.14","repository_url":"https://github.com/remy/nodemon"}],"path":null,"ecosystem":"npm"},"body":"Bumps the backend-minor-patch group with 40 updates in the /backend directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@ai-sdk/langchain](https://github.com/vercel/ai/tree/HEAD/packages/langchain) | `2.0.174` | `2.0.216` |\n| [@ai-sdk/openai](https://github.com/vercel/ai/tree/HEAD/packages/openai) | `3.0.53` | `3.0.73` |\n| [@ai-sdk/react](https://github.com/vercel/ai/tree/HEAD/packages/react) | `3.0.170` | `3.0.210` |\n| [@anthropic-ai/sdk](https://github.com/anthropics/anthropic-sdk-typescript) | `0.92.0` | `0.105.0` |\n| [@aws-sdk/client-s3](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3) | `3.1050.0` | `3.1072.0` |\n| [@aws-sdk/s3-request-presigner](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/packages/s3-request-presigner) | `3.1050.0` | `3.1072.0` |\n| [@elevenlabs/elevenlabs-js](https://github.com/elevenlabs/elevenlabs-js) | `2.49.1` | `2.53.1` |\n| [@fal-ai/client](https://github.com/fal-ai/fal-js/tree/HEAD/libs/client) | `1.7.0` | `1.10.1` |\n| [@langchain/langgraph](https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core) | `1.2.9` | `1.4.4` |\n| [@langchain/openai](https://github.com/langchain-ai/langchainjs) | `1.4.4` | `1.5.1` |\n| [@langfuse/langchain](https://github.com/langfuse/langfuse-js/tree/HEAD/packages/langchain) | `5.3.0` | `5.5.3` |\n| [@opentelemetry/auto-instrumentations-node](https://github.com/open-telemetry/opentelemetry-js-contrib/tree/HEAD/packages/auto-instrumentations-node) | `0.76.0` | `0.77.0` |\n| [@opentelemetry/exporter-trace-otlp-http](https://github.com/open-telemetry/opentelemetry-js) | `0.218.0` | `0.219.0` |\n| [@opentelemetry/resources](https://github.com/open-telemetry/opentelemetry-js) | `2.7.1` | `2.8.0` |\n| [@opentelemetry/sdk-node](https://github.com/open-telemetry/opentelemetry-js) | `0.218.0` | `0.219.0` |\n| [@sentry/node](https://github.com/getsentry/sentry-javascript) | `10.51.0` | `10.58.0` |\n| [@sentry/profiling-node](https://github.com/getsentry/sentry-javascript) | `10.53.1` | `10.58.0` |\n| [ai](https://github.com/vercel/ai/tree/HEAD/packages/ai) | `6.0.168` | `6.0.208` |\n| [axios](https://github.com/axios/axios) | `1.16.1` | `1.18.0` |\n| [bcryptjs](https://github.com/dcodeIO/bcrypt.js) | `3.0.2` | `3.0.3` |\n| [bullmq](https://github.com/taskforcesh/bullmq) | `5.76.10` | `5.79.0` |\n| [cors](https://github.com/expressjs/cors) | `2.8.5` | `2.8.6` |\n| [docx](https://github.com/dolanmiu/docx) | `9.5.1` | `9.7.1` |\n| [docxtemplater](https://github.com/open-xml-templating/docxtemplater) | `3.67.1` | `3.69.0` |\n| [express-session](https://github.com/expressjs/session) | `1.18.2` | `1.19.0` |\n| [express-validator](https://github.com/express-validator/express-validator) | `7.3.0` | `7.3.2` |\n| [fast-xml-parser](https://github.com/NaturalIntelligence/fast-xml-parser) | `5.7.3` | `5.9.2` |\n| [google-auth-library](https://github.com/googleapis/google-cloud-node-core/tree/HEAD/packages/google-auth-library-nodejs) | `10.5.0` | `10.7.0` |\n| [ioredis](https://github.com/luin/ioredis) | `5.10.1` | `5.11.1` |\n| [jsonwebtoken](https://github.com/auth0/node-jsonwebtoken) | `9.0.2` | `9.0.3` |\n| [langchain](https://github.com/langchain-ai/langchainjs) | `1.3.4` | `1.5.0` |\n| [langsmith](https://github.com/langchain-ai/langsmith-sdk) | `0.7.3` | `0.7.10` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [multer](https://github.com/expressjs/multer) | `2.1.1` | `2.2.0` |\n| [pdfkit](https://github.com/foliojs/pdfkit) | `0.17.2` | `0.19.1` |\n| [playwright](https://github.com/microsoft/playwright) | `1.56.1` | `1.61.0` |\n| [sharp](https://github.com/lovell/sharp) | `0.34.4` | `0.35.1` |\n| [tsx](https://github.com/privatenumber/tsx) | `4.22.3` | `4.22.4` |\n| [user-agents](https://github.com/intoli/user-agents) | `2.1.42` | `2.1.95` |\n| [nodemon](https://github.com/remy/nodemon) | `3.1.10` | `3.1.14` |\n\n\nUpdates `@ai-sdk/langchain` from 2.0.174 to 2.0.216\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/ai/releases\"\u003e@​ai-sdk/langchain's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​ai-sdk/langchain\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.0.216\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [8261640]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f994df3]\n\u003cul\u003e\n\u003cli\u003eai@6.0.208\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​ai-sdk/langchain\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.0.215\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003edff49ee: Surface LangChain citation annotations as spec-compliant \u003ccode\u003esource-url\u003c/code\u003e / \u003ccode\u003esource-document\u003c/code\u003e UI message parts. Previously, citations attached to text content blocks (e.g. from web search or RAG) were dropped entirely instead of being emitted as AI SDK source parts. Citation metadata (\u003ccode\u003ecitedText\u003c/code\u003e, \u003ccode\u003estartIndex\u003c/code\u003e, \u003ccode\u003eendIndex\u003c/code\u003e, \u003ccode\u003esource\u003c/code\u003e) is preserved under \u003ccode\u003eproviderMetadata.langchain\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/ai/blob/@ai-sdk/langchain@2.0.216/packages/langchain/CHANGELOG.md\"\u003e@​ai-sdk/langchain's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.0.216\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [8261640]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f994df3]\n\u003cul\u003e\n\u003cli\u003eai@6.0.208\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.0.215\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003edff49ee: Surface LangChain citation annotations as spec-compliant \u003ccode\u003esource-url\u003c/code\u003e / \u003ccode\u003esource-document\u003c/code\u003e UI message parts. Previously, citations attached to text content blocks (e.g. from web search or RAG) were dropped entirely instead of being emitted as AI SDK source parts. Citation metadata (\u003ccode\u003ecitedText\u003c/code\u003e, \u003ccode\u003estartIndex\u003c/code\u003e, \u003ccode\u003eendIndex\u003c/code\u003e, \u003ccode\u003esource\u003c/code\u003e) is preserved under \u003ccode\u003eproviderMetadata.langchain\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.0.214\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [779f5cd]\n\u003cul\u003e\n\u003cli\u003eai@6.0.207\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.0.213\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eai@6.0.206\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.0.212\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eai@6.0.205\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.0.211\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eb51014f: fix(langchain): prevent polluting global object.prototype\n\u003cul\u003e\n\u003cli\u003eai@6.0.204\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.0.210\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [f42aa79]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [5291f7e]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [b4b575a]\n\u003cul\u003e\n\u003cli\u003eai@6.0.203\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.0.209\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/3270146267b1d82f07972bc40f09e9b4ee8bb9d3\"\u003e\u003ccode\u003e3270146\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16243\"\u003e#16243\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/a7e3263e8e4d34c13c4a2eb0da46c0a474727d6d\"\u003e\u003ccode\u003ea7e3263\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16225\"\u003e#16225\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/dff49ee9c79a263919301bd53bf673f97e1f6031\"\u003e\u003ccode\u003edff49ee\u003c/code\u003e\u003c/a\u003e Backport: feat(langchain): emit source-url/source-document parts from citatio...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/caebb44016dbd084e5bf7b7f4ab5194fd2c7c045\"\u003e\u003ccode\u003ecaebb44\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16157\"\u003e#16157\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/562311796cd23e0518c8c8a74f1db35815a9287a\"\u003e\u003ccode\u003e5623117\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16134\"\u003e#16134\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/55486720c5be0238b9d477a778b0428e5e48d9d4\"\u003e\u003ccode\u003e5548672\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16097\"\u003e#16097\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/63b3f6081df232ff3b2a84b27cc3eda33f215586\"\u003e\u003ccode\u003e63b3f60\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16086\"\u003e#16086\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/b51014f9e346f1c9b4be5e9c7085cce1eec48314\"\u003e\u003ccode\u003eb51014f\u003c/code\u003e\u003c/a\u003e Backport: fix(langchain): prevent polluting global object.prototype (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16085\"\u003e#16085\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/bae9babb22e195e74a9a0c0e26a5e52c8ba8e7f2\"\u003e\u003ccode\u003ebae9bab\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16026\"\u003e#16026\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/9ef2c3cfadfc4a469e9eec6a6e8a0ac0fc80a1e5\"\u003e\u003ccode\u003e9ef2c3c\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/15998\"\u003e#15998\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vercel/ai/commits/@ai-sdk/langchain@2.0.216/packages/langchain\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​ai-sdk/langchain\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@ai-sdk/openai` from 3.0.53 to 3.0.73\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/ai/releases\"\u003e@​ai-sdk/openai's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​ai-sdk/openai\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.73\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e1274c07: fix(provider/openai): send client-executed tool calls as full function_call items in the Responses API so they pair with their function_call_output by call_id\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/ai/blob/@ai-sdk/openai@3.0.73/packages/openai/CHANGELOG.md\"\u003e@​ai-sdk/openai's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.0.73\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e1274c07: fix(provider/openai): send client-executed tool calls as full function_call items in the Responses API so they pair with their function_call_output by call_id\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.72\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [779f5cd]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​ai-sdk/provider-utils\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.30\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.71\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [bfa5864]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f42aa79]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​ai-sdk/provider-utils\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.29\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.70\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [942f2f8]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​ai-sdk/provider-utils\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.28\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.69\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e9a55f6d: feat(openai): add namespaces for tool definitions\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.68\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003ec65c952: fix(openai): round-trip \u003ccode\u003enamespace\u003c/code\u003e on function_call input items\u003c/p\u003e\n\u003cp\u003eWhen \u003ccode\u003etool_search\u003c/code\u003e dispatches a deferred tool, the resulting \u003ccode\u003efunction_call\u003c/code\u003e carries a \u003ccode\u003enamespace\u003c/code\u003e field identifying which deferred-tool group the model picked. \u003ccode\u003e[#14789](https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/14789)\u003c/code\u003e preserved this on the read side (\u003ccode\u003eproviderMetadata.openai.namespace\u003c/code\u003e), but the write side still serialized \u003ccode\u003efunction_call\u003c/code\u003e input items without \u003ccode\u003enamespace\u003c/code\u003e. Multi-step / multi-turn conversations then failed with \u003ccode\u003eMissing namespace for function_call '\u0026lt;name\u0026gt;'. ... Round-trip the model's function_call item with its namespace field included.\u003c/code\u003e\u003c/p\u003e\n\u003cp\u003e\u003ccode\u003econvert-to-openai-responses-input.ts\u003c/code\u003e now reads \u003ccode\u003enamespace\u003c/code\u003e from \u003ccode\u003eproviderOptions.openai.namespace\u003c/code\u003e (or \u003ccode\u003eproviderMetadata.openai.namespace\u003c/code\u003e) on \u003ccode\u003etool-call\u003c/code\u003e parts and includes it on the serialized \u003ccode\u003efunction_call\u003c/code\u003e item, mirroring how \u003ccode\u003eitemId\u003c/code\u003e is round-tripped.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.67\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ec679fec: feat(provider/azure):web search tool in the Azure OpenAI Responses API.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/cc38fceda391b38ce8597ce3acf09e8297af929b\"\u003e\u003ccode\u003ecc38fce\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/16229\"\u003e#16229\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/1274c070f149e518a441b48ee94ccb1e6a0e821b\"\u003e\u003ccode\u003e1274c07\u003c/code\u003e\u003c/a\u003e Backport: fix(openai): send client-executed tool calls as full function_call ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/caebb44016dbd084e5bf7b7f4ab5194fd2c7c045\"\u003e\u003ccode\u003ecaebb44\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/16157\"\u003e#16157\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/bae9babb22e195e74a9a0c0e26a5e52c8ba8e7f2\"\u003e\u003ccode\u003ebae9bab\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/16026\"\u003e#16026\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/9ef2c3cfadfc4a469e9eec6a6e8a0ac0fc80a1e5\"\u003e\u003ccode\u003e9ef2c3c\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/15998\"\u003e#15998\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/f6e588173713842794c619f9554a4b341c6e97f5\"\u003e\u003ccode\u003ef6e5881\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/15902\"\u003e#15902\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/9a55f6d3664399b243f68506b615ed87aab79454\"\u003e\u003ccode\u003e9a55f6d\u003c/code\u003e\u003c/a\u003e Backport: feat(openai): add namespaces for tool definitions (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/15910\"\u003e#15910\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/de852ab79aac88345c8a9ae54003fb206e1a64b4\"\u003e\u003ccode\u003ede852ab\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/15821\"\u003e#15821\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/c65c95231508df82fc85149a873047908e71b3c3\"\u003e\u003ccode\u003ec65c952\u003c/code\u003e\u003c/a\u003e Backport: fix(openai): round-trip namespace on function_call input items (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/15\"\u003e#15\u003c/a\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/7aca1fc2004800171233ae16c2456ef297552441\"\u003e\u003ccode\u003e7aca1fc\u003c/code\u003e\u003c/a\u003e backport: chore: update TypeScript references and fix `pnpm update-references...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vercel/ai/commits/@ai-sdk/openai@3.0.73/packages/openai\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​ai-sdk/openai\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@ai-sdk/react` from 3.0.170 to 3.0.210\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/ai/releases\"\u003e@​ai-sdk/react's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​ai-sdk/react\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.210\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [8261640]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f994df3]\n\u003cul\u003e\n\u003cli\u003eai@6.0.208\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​ai-sdk/react\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.209\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [779f5cd]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​ai-sdk/provider-utils\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.30\u003c/li\u003e\n\u003cli\u003eai@6.0.207\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/ai/blob/@ai-sdk/react@3.0.210/packages/react/CHANGELOG.md\"\u003e@​ai-sdk/react's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.0.210\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [8261640]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f994df3]\n\u003cul\u003e\n\u003cli\u003eai@6.0.208\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.209\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [779f5cd]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​ai-sdk/provider-utils\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.30\u003c/li\u003e\n\u003cli\u003eai@6.0.207\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.208\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eai@6.0.206\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.207\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eai@6.0.205\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.206\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eai@6.0.204\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.205\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [bfa5864]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f42aa79]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [5291f7e]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [b4b575a]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​ai-sdk/provider-utils\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.29\u003c/li\u003e\n\u003cli\u003eai@6.0.203\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.204\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [942f2f8]\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/3270146267b1d82f07972bc40f09e9b4ee8bb9d3\"\u003e\u003ccode\u003e3270146\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/16243\"\u003e#16243\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/caebb44016dbd084e5bf7b7f4ab5194fd2c7c045\"\u003e\u003ccode\u003ecaebb44\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/16157\"\u003e#16157\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/562311796cd23e0518c8c8a74f1db35815a9287a\"\u003e\u003ccode\u003e5623117\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/16134\"\u003e#16134\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/55486720c5be0238b9d477a778b0428e5e48d9d4\"\u003e\u003ccode\u003e5548672\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/16097\"\u003e#16097\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/63b3f6081df232ff3b2a84b27cc3eda33f215586\"\u003e\u003ccode\u003e63b3f60\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/16086\"\u003e#16086\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/bae9babb22e195e74a9a0c0e26a5e52c8ba8e7f2\"\u003e\u003ccode\u003ebae9bab\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/16026\"\u003e#16026\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/9ef2c3cfadfc4a469e9eec6a6e8a0ac0fc80a1e5\"\u003e\u003ccode\u003e9ef2c3c\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/15998\"\u003e#15998\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/dca8c38b09acba1a5eebf354b532833ab055413a\"\u003e\u003ccode\u003edca8c38\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/15992\"\u003e#15992\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/a340536d4cd232c42757bf04c3ec35f589f6fe35\"\u003e\u003ccode\u003ea340536\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/15965\"\u003e#15965\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/f6e588173713842794c619f9554a4b341c6e97f5\"\u003e\u003ccode\u003ef6e5881\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/15902\"\u003e#15902\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vercel/ai/commits/@ai-sdk/react@3.0.210/packages/react\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​ai-sdk/react\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@anthropic-ai/sdk` from 0.92.0 to 0.105.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/releases\"\u003e@​anthropic-ai/sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003esdk: v0.105.0\u003c/h2\u003e\n\u003ch2\u003e0.105.0 (2026-06-18)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.104.2...sdk-v0.105.0\"\u003esdk-v0.104.2...sdk-v0.105.0\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e add support for new code_execution_20260120 tool (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/8dc2b54ee9f19cfc0a8f5cb49d0e1b93f4a4cadd\"\u003e8dc2b54\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estream:\u003c/strong\u003e lazily parse partial tool json input (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/99\"\u003e#99\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/e55ceee5e3053ada96a7fe008b1fd6ebc0e42544\"\u003ee55ceee\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003einternal/deps:\u003c/strong\u003e bump swc to 1.15.40 (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/97\"\u003e#97\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/a1d4d7549251f88100f44b0350f6123c9cbea5ec\"\u003ea1d4d75\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003einternal:\u003c/strong\u003e use are the types wrong directly (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/94\"\u003e#94\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/3d362afd0aade3d18f10e61a5e4809c0bd495768\"\u003e3d362af\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etests:\u003c/strong\u003e stop using deprecated models (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/98\"\u003e#98\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/65ae1afee1bb76179c58e1758a48d668e3fcf7b3\"\u003e65ae1af\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esdk: v0.104.2\u003c/h2\u003e\n\u003ch2\u003e0.104.2 (2026-06-15)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.104.1...sdk-v0.104.2\"\u003esdk-v0.104.1...sdk-v0.104.2\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e remove retired models from API and SDKs (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/a94287690a383ba34aa0d2ad9e0262eeb9241bd3\"\u003ea942876\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esdk: v0.104.1\u003c/h2\u003e\n\u003ch2\u003e0.104.1 (2026-06-09)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.104.0...sdk-v0.104.1\"\u003esdk-v0.104.0...sdk-v0.104.1\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e add \u003ccode\u003efrontier_llm\u003c/code\u003e refusal category (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/465e6866d66952c0a0a9eb2c465b2e4389da58f1\"\u003e465e686\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esdk: v0.104.0\u003c/h2\u003e\n\u003ch2\u003e0.104.0 (2026-06-09)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.103.0...sdk-v0.104.0\"\u003esdk-v0.103.0...sdk-v0.104.0\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e add support for Managed Agents deployments and environment variable credentials (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/d01e38b5b6f62400450b727d9724ea00a6b1eaf5\"\u003ed01e38b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esdk: v0.103.0\u003c/h2\u003e\n\u003ch2\u003e0.103.0 (2026-06-09)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.102.0...sdk-v0.103.0\"\u003esdk-v0.102.0...sdk-v0.103.0\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/blob/main/CHANGELOG.md\"\u003e@​anthropic-ai/sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e0.105.0 (2026-06-18)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.104.2...sdk-v0.105.0\"\u003esdk-v0.104.2...sdk-v0.105.0\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e add support for new code_execution_20260120 tool (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/8dc2b54ee9f19cfc0a8f5cb49d0e1b93f4a4cadd\"\u003e8dc2b54\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estream:\u003c/strong\u003e lazily parse partial tool json input (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/99\"\u003e#99\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/e55ceee5e3053ada96a7fe008b1fd6ebc0e42544\"\u003ee55ceee\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003einternal/deps:\u003c/strong\u003e bump swc to 1.15.40 (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/97\"\u003e#97\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/a1d4d7549251f88100f44b0350f6123c9cbea5ec\"\u003ea1d4d75\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003einternal:\u003c/strong\u003e use are the types wrong directly (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/94\"\u003e#94\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/3d362afd0aade3d18f10e61a5e4809c0bd495768\"\u003e3d362af\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etests:\u003c/strong\u003e stop using deprecated models (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/98\"\u003e#98\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/65ae1afee1bb76179c58e1758a48d668e3fcf7b3\"\u003e65ae1af\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e0.104.2 (2026-06-15)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.104.1...sdk-v0.104.2\"\u003esdk-v0.104.1...sdk-v0.104.2\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e remove retired models from API and SDKs (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/a94287690a383ba34aa0d2ad9e0262eeb9241bd3\"\u003ea942876\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e0.104.1 (2026-06-09)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.104.0...sdk-v0.104.1\"\u003esdk-v0.104.0...sdk-v0.104.1\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e add \u003ccode\u003efrontier_llm\u003c/code\u003e refusal category (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/465e6866d66952c0a0a9eb2c465b2e4389da58f1\"\u003e465e686\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e0.104.0 (2026-06-09)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.103.0...sdk-v0.104.0\"\u003esdk-v0.103.0...sdk-v0.104.0\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e add support for Managed Agents deployments and environment variable credentials (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/d01e38b5b6f62400450b727d9724ea00a6b1eaf5\"\u003ed01e38b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e0.103.0 (2026-06-09)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.102.0...sdk-v0.103.0\"\u003esdk-v0.102.0...sdk-v0.103.0\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e add support for claude-mythos-5 and claude-fable-5, with support for server-side fallbacks on refusal (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/cc337f72dcf22d2ffd92f511918330f37ffab652\"\u003ecc337f7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient:\u003c/strong\u003e adds client-side fallbacks middleware for API providers that do not support server-side fallbacks (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/cc337f72dcf22d2ffd92f511918330f37ffab652\"\u003ecc337f7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003emiddleware:\u003c/strong\u003e add ctx.logger (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/55\"\u003e#55\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/edd14544173cf60ee2a2bf01acbf14e50bcfdaaa\"\u003eedd1454\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/ab700dc013e735b80dead115fcae52fba83f1aeb\"\u003e\u003ccode\u003eab700dc\u003c/code\u003e\u003c/a\u003e chore: release main\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/a3225175d067110fc0e9152ed2699540455aa4ce\"\u003e\u003ccode\u003ea322517\u003c/code\u003e\u003c/a\u003e feat(api): add support for new code_execution_20260120 tool\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/65a01068857f521d27d8963152cd3e66cbe232ad\"\u003e\u003ccode\u003e65a0106\u003c/code\u003e\u003c/a\u003e feat(stream): lazily parse partial tool json input (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/99\"\u003e#99\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/384ab5179b6120fa6c3fdc37fabb1baba23a1d73\"\u003e\u003ccode\u003e384ab51\u003c/code\u003e\u003c/a\u003e chore(tests): stop using deprecated models (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/98\"\u003e#98\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/a49a19143ae0b13fc5312058c008c5a39250cd96\"\u003e\u003ccode\u003ea49a191\u003c/code\u003e\u003c/a\u003e chore(internal/deps): bump swc to 1.15.40 (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/97\"\u003e#97\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/7ac63f3b566c898fa9ce3eaced546da5cf0e3014\"\u003e\u003ccode\u003e7ac63f3\u003c/code\u003e\u003c/a\u003e chore(internal): use are the types wrong directly (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/94\"\u003e#94\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/fbee0d149ce08532885d766d9b1dc99133181d8e\"\u003e\u003ccode\u003efbee0d1\u003c/code\u003e\u003c/a\u003e chore: release main\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/e984ba4942d0e9660690910c4a7c7325b1fe3607\"\u003e\u003ccode\u003ee984ba4\u003c/code\u003e\u003c/a\u003e chore(api): remove retired models from API and SDKs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/9a0442d88eebd1861e595bed7c57d309a609c3a5\"\u003e\u003ccode\u003e9a0442d\u003c/code\u003e\u003c/a\u003e chore: release main\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/1ccd4012e7931dd41c94c8bc02c05ebe9a1c5282\"\u003e\u003ccode\u003e1ccd401\u003c/code\u003e\u003c/a\u003e fix(api): add \u003ccode\u003efrontier_llm\u003c/code\u003e refusal category\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.92.0...sdk-v0.105.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​anthropic-ai/sdk\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@aws-sdk/client-s3` from 3.1050.0 to 3.1072.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/client-s3's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1072.0\u003c/h2\u003e\n\u003ch4\u003e3.1072.0(2026-06-18)\u003c/h4\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ec2:\u003c/strong\u003e  Documentation updates clarifying CancelCapacityReservation cancellable states (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e3723ba73e2f2d307254d49ec73c5b3d91b8d892\"\u003ee3723ba7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer:\u003c/strong\u003e  This release surfaces two new metrics Volume IOPS Exceeded and Volume Throughput Exceeded into EBS volume rightsizing recommendations. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ded6618d5249ab413bd90b26d4cea91d5f4b9b8f\"\u003eded6618d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-application-auto-scaling:\u003c/strong\u003e  Adds support for ECS high-resolution predefined scaling metrics (ECSServiceAverageCPUUtilizationHighResolution, ECSServiceAverageMemoryUtilizationHighResolution) enabling 20-second metric periods for faster scaling (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/95b3513a224a678fb92dc623f149d24adb96ae7b\"\u003e95b3513a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cognito-identity-provider:\u003c/strong\u003e  In order to support the new TLS Self-Service feature, this change adds SecurityPolicyType to CustomDomainConfigType. During CreateUserPoolDomain and UpdateUserPoolDomain this is used to select a custom domain's TLS enforcement, and for DescribeUserPoolDomain it informs users about the current TLS. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e89377876aa392ea403636b6821cdb3df253648b\"\u003ee8937787\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-sagemaker:\u003c/strong\u003e  Adds support for automatic AMI patching on HyperPod clusters. Customers can configure patching strategies to automatically apply security patch with zero job termination. Customers can also specify an AMI version at instance group level and update cluster software to a certain AMI version. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/fd33a5e46ca314f064b9149900abe4e451661b5e\"\u003efd33a5e4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Amazon ECS services now support high resolution (20 second) CloudWatch metrics for CPUUtilization and MemoryUtilization. Use these metrics for faster service auto scaling. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93055ac93bffca3e2957b2d67cb24ecdc784457a\"\u003e93055ac9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-healthlake:\u003c/strong\u003e  Adding New Configurations to the FHIR Create Datastore. The new configurations include NLP Configuration, AnalyticsConfiguration, ProfileConfiguration (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/494fa59f48705e23ab79da259046966831183c71\"\u003e494fa59f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-gamelift:\u003c/strong\u003e  Amazon GameLift Servers has launched support for customizing Linux capabilities in container fleets. You can now specify additional Linux capabilities for containers in a container group definition, giving you finer control over the default Docker capabilities available to your containers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93cefd905d4fc0c649b1d7ed69f4c8f0d79d3371\"\u003e93cefd90\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eks:\u003c/strong\u003e  Adds support for configurable control plane egress routing in Amazon EKS, allowing you to route control plane egress traffic through your VPC and control how the control plane reaches resources in your network such as webhook servers and OIDC providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/693db62958c6818b4cb847887b8e36a66347c119\"\u003e693db629\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda:\u003c/strong\u003e  Converging and fixing existing documentation gaps in Lambda SDK (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6555a565348a308dad7a51c85457c2bcee87feb8\"\u003e6555a565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-synthetics:\u003c/strong\u003e  CloudWatch Synthetics adds support for multi-location canaries. Customers can now monitor their endpoints from multiple locations with centralized management from a primary location. The SDK includes new parameters for configuring multiple locations and tracking their state. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/f2c8b480812b5ba2d1e173a8a074df6d72654239\"\u003ef2c8b480\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch-logs:\u003c/strong\u003e  Added optional startFromHead parameter to FilterLogEvents enabling descending timestamp order (newest first) when set to false. Default true preserves existing ascending order. Reverse sorting requires a startTime on or after Jan 1, 2024. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/1be63ed942af46df978e55df4bec6fb6c9d16e60\"\u003e1be63ed9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-batch:\u003c/strong\u003e  Adds Support for ordered allocation strategies- BEST-FIT-PROGRESSIVE-ORDERED or SPOT-CAPACITY-OPTIMIZED-PRIORITIZED (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0e57e53b1e0914a03b5b7c7d346245a1e6b6da11\"\u003e0e57e53b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1072.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1071.0\u003c/h2\u003e\n\u003ch4\u003e3.1071.0(2026-06-17)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-partnercentral-selling:\u003c/strong\u003e  Cosell Resonate AND Prospecing API Launch with ARN correction (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7e8c98abe070924fbbd1ea2abc183f0715f80945\"\u003e7e8c98ab\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer-automation:\u003c/strong\u003e  This launch adds IfExists comparison operators to Compute Optimizer Automation rule criteria, so a rule can include recommended actions whose specified attribute isn't present. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ab2c616d167a0796fba91e44d1118a6a8baee60d\"\u003eab2c616d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent:\u003c/strong\u003e  Launching Bedrock Managed Knowledge Bases. Added support for resource-based policies on Knowledge Base resources, enabling cross-account access for Managed Knowledge Bases. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/de0affe4ad738b7f07d91574e2b2cfd83a447d44\"\u003ede0affe4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-securityagent:\u003c/strong\u003e  Updated AWS Security Agent SDK model with new APIs for threat modeling, code review, security requirements, and additional integration providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/9c3d3351842902b1ea1e8be52c4e7f40b868daae\"\u003e9c3d3351\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-opensearch:\u003c/strong\u003e  Adds support for configuring IAM Identity Center options on existing OpenSearch applications via the UpdateApplication API. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/94f06a20a15ab75302088d5f3c31d708a8256e5c\"\u003e94f06a20\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-glue:\u003c/strong\u003e  This release adds support for Search and Discovery in AWS Glue, letting you and your applications search Data Catalog assets such as table and enrich them with business context and glossary terms. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b394fc0b39c814d5f72593dfc4db5ff5c2cbe643\"\u003eb394fc0b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agentcore-control:\u003c/strong\u003e  AgentCore Gateway now supports inference targets to LLM providers (direct config or built-in connectors), HTTP passthrough targets with session stickiness, runtime target API schemas, AWS WAF web ACL association with configurable fail-open or fail-close modes, and interceptor payload filtering. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/75f1d588d526de04060ebd653ca1a96e7ea75ff6\"\u003e75f1d588\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-devops-agent:\u003c/strong\u003e  Adds support for Remote A2A (Agent-to-Agent) agent registration and management. Adds new Release Readiness Review and Release Testing capabilities. Adds support for Git managed skills in AWS DevOps Agent. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ebc040e1f3fc292d3eee1a9b146c972338e14807\"\u003eebc040e1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agentcore:\u003c/strong\u003e  AgentCore Harness service will be Generally Available at NYS 2026 with this Treb release. Harness will support invoking specific endpoints via the qualifier parameter, AWS Skills for pre-built agent capabilities, and improved validation for skill git source URLs. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/5bf9fcccc3b4cc204df57caea2adcf254c5d3846\"\u003e5bf9fccc\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Releasing the ability to bring-your-own task-definition for CreateExpressGatewayService and UpdateGatewayExpressService (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b7b9cb4f46a34c4ab0fedf2138a9a5ba17bdd731\"\u003eb7b9cb4f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-mq:\u003c/strong\u003e  This release adds private networking support for Amazon MQ for RabbitMQ. You can now associate AWS RAM resource shares with your broker and retrieve shared resource details using the new DescribeSharedResources API. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e96af4503bfea9a6f211bc905b8e949af6cc38d7\"\u003ee96af450\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent-runtime:\u003c/strong\u003e  Adds new AgenticRetrieveStream API for managed knowledge bases to use conversation history and autonomously plan for multi-hop multi-KB reasoning with built-in evaluation and access-control. Updates Retrieve API for access-control-based filtering for managed knowledge bases. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/557f7b3246fb6530fb8dcb481f1035d7827d2a1e\"\u003e557f7b32\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eTests\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecore:\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eprebuild before integration and e2e (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8111\"\u003e#8111\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/363f3fb7165d327e3ca24b3d7beffb19cc528c31\"\u003e363f3fb7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eprebuild core before unit tests (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8108\"\u003e#8108\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/5f789e7fe2089eacff868a6e1d0b6c2c11313bbc\"\u003e5f789e7f\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-s3/CHANGELOG.md\"\u003e@​aws-sdk/client-s3's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1071.0...v3.1072.0\"\u003e3.1072.0\u003c/a\u003e (2026-06-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1070.0...v3.1071.0\"\u003e3.1071.0\u003c/a\u003e (2026-06-17)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1069.0...v3.1070.0\"\u003e3.1070.0\u003c/a\u003e (2026-06-16)\u003c/h1\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-s3:\u003c/strong\u003e Added support for annotations. You can now attach up to 1000 annotations (up to 1 MB each) directly to objects and create, retrieve, list, and delete them using new annotation APIs. Also added support for configuring an annotation table in S3 Metadata. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c555874690846b81904a2c0c1e96130bd03bbeaa\"\u003ec555874\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1068.0...v3.1069.0\"\u003e3.1069.0\u003c/a\u003e (2026-06-15)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1067.0...v3.1068.0\"\u003e3.1068.0\u003c/a\u003e (2026-06-12)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1066.0...v3.1067.0\"\u003e3.1067.0\u003c/a\u003e (2026-06-11)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/501cd332619533ae96f154d7c226dc2f7bf8d615\"\u003e\u003ccode\u003e501cd33\u003c/code\u003e\u003c/a\u003e Publish v3.1072.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3ce820aa54c953459eb58abe4f06e28ba4ceb87d\"\u003e\u003ccode\u003e3ce820a\u003c/code\u003e\u003c/a\u003e Publish v3.1071.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4f2cfe1cfc420d0b5bfa226ae6619dd67de73ccc\"\u003e\u003ccode\u003e4f2cfe1\u003c/code\u003e\u003c/a\u003e Publish v3.1070.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c555874690846b81904a2c0c1e96130bd03bbeaa\"\u003e\u003ccode\u003ec555874\u003c/code\u003e\u003c/a\u003e feat(client-s3): Added support for annotations. You can now attach up to 1000...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7058d13814795c6ff06a960077269458520bf161\"\u003e\u003ccode\u003e7058d13\u003c/code\u003e\u003c/a\u003e Publish v3.1069.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/67981c5a65d6dd797a065df034a8d0fcdaa9b7bd\"\u003e\u003ccode\u003e67981c5\u003c/code\u003e\u003c/a\u003e chore(scripts): tuning the build graph (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3/issues/8095\"\u003e#8095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0632f6dc8842caaa916c5f43a5043342ff9ba6bb\"\u003e\u003ccode\u003e0632f6d\u003c/code\u003e\u003c/a\u003e Publish v3.1068.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0a3246f174335af55a6981b4891f0f4c10dfe4c4\"\u003e\u003ccode\u003e0a3246f\u003c/code\u003e\u003c/a\u003e Publish v3.1067.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4b11912aef8adc845f81b7e9922bd180c5cf1d90\"\u003e\u003ccode\u003e4b11912\u003c/code\u003e\u003c/a\u003e Publish v3.1066.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e4ef6c57d8fd97d15e0a7a27a24396990d704307\"\u003e\u003ccode\u003ee4ef6c5\u003c/code\u003e\u003c/a\u003e test: use crypto.randomUUID for resource names in e2e tests (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3/issues/8091\"\u003e#8091\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1072.0/clients/client-s3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@aws-sdk/s3-request-presigner` from 3.1050.0 to 3.1072.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/s3-request-presigner's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1072.0\u003c/h2\u003e\n\u003ch4\u003e3.1072.0(2026-06-18)\u003c/h4\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ec2:\u003c/strong\u003e  Documentation updates clarifying CancelCapacityReservation cancellable states (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e3723ba73e2f2d307254d49ec73c5b3d91b8d892\"\u003ee3723ba7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer:\u003c/strong\u003e  This release surfaces two new metrics Volume IOPS Exceeded and Volume Throughput Exceeded into EBS volume rightsizing recommendations. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ded6618d5249ab413bd90b26d4cea91d5f4b9b8f\"\u003eded6618d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-application-auto-scaling:\u003c/strong\u003e  Adds support for ECS high-resolution predefined scaling metrics (ECSServiceAverageCPUUtilizationHighResolution, ECSServiceAverageMemoryUtilizationHighResolution) enabling 20-second metric periods for faster scaling (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/95b3513a224a678fb92dc623f149d24adb96ae7b\"\u003e95b3513a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cognito-identity-provider:\u003c/strong\u003e  In order to support the new TLS Self-Service feature, this change adds SecurityPolicyType to CustomDomainConfigType. During CreateUserPoolDomain and UpdateUserPoolDomain this is used to select a custom domain's TLS enforcement, and for DescribeUserPoolDomain it informs users about the current TLS. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e89377876aa392ea403636b6821cdb3df253648b\"\u003ee8937787\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-sagemaker:\u003c/strong\u003e  Adds support for automatic AMI patching on HyperPod clusters. Customers can configure patching strategies to automatically apply security patch with zero job termination. Customers can also specify an AMI version at instance group level and update cluster software to a certain AMI version. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/fd33a5e46ca314f064b9149900abe4e451661b5e\"\u003efd33a5e4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Amazon ECS services now support high resolution (20 second) CloudWatch metrics for CPUUtilization and MemoryUtilization. Use these metrics for faster service auto scaling. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93055ac93bffca3e2957b2d67cb24ecdc784457a\"\u003e93055ac9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-healthlake:\u003c/strong\u003e  Adding New Configurations to the FHIR Create Datastore. The new configurations include NLP Configuration, AnalyticsConfiguration, ProfileConfiguration (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/494fa59f48705e23ab79da259046966831183c71\"\u003e494fa59f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-gamelift:\u003c/strong\u003e  Amazon GameLift Servers has launched support for customizing Linux capabilities in container fleets. You can now specify additional Linux capabilities for containers in a container group definition, giving you finer control over the default Docker capabilities available to your containers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93cefd905d4fc0c649b1d7ed69f4c8f0d79d3371\"\u003e93cefd90\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eks:\u003c/strong\u003e  Adds support for configurable control plane egress routing in Amazon EKS, allowing you to route control plane egress traffic through your VPC and control how the control plane reaches resources in your network such as webhook servers and OIDC providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/693db62958c6818b4cb847887b8e36a66347c119\"\u003e693db629\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda:\u003c/strong\u003e  Converging and fixing existing documentation gaps in Lambda SDK (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6555a565348a308dad7a51c85457c2bcee87feb8\"\u003e6555a565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-synthetics:\u003c/strong\u003e  CloudWatch Synthetics adds support for multi-location canaries. Customers can now monitor their endpoints from multiple locations with centralized management from a primary location. The SDK includes new parameters for configuring multiple locations and tracking their state. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/f2c8b480812b5ba2d1e173a8a074df6d72654239\"\u003ef2c8b480\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch-logs:\u003c/strong\u003e  Added optional startFromHead parameter to FilterLogEvents enabling descending timestamp order (newest first) when set to false. Default true preserves existing ascending order. Reverse sorting requires a startTime on or after Jan 1, 2024. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/1be63ed942af46df978e55df4bec6fb6c9d16e60\"\u003e1be63ed9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-batch:\u003c/strong\u003e  Adds Support for ordered allocation strategies- BEST-FIT-PROGRESSIVE-ORDERED or SPOT-CAPACITY-OPTIMIZED-PRIORITIZED (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0e57e53b1e0914a03b5b7c7d346245a1e6b6da11\"\u003e0e57e53b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1072.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1071.0\u003c/h2\u003e\n\u003ch4\u003e3.1071.0(2026-06-17)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-partnercentral-selling:\u003c/strong\u003e  Cosell Resonate AND Prospecing API Launch with ARN correction (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7e8c98abe070924fbbd1ea2abc183f0715f80945\"\u003e7e8c98ab\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer-automation:\u003c/strong\u003e  This launch adds IfExists comparison operators to Compute Optimizer Automation rule criteria, so a rule can include recommended actions whose specified attribute isn't present. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ab2c616d167a0796fba91e44d1118a6a8baee60d\"\u003eab2c616d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent:\u003c/strong\u003e  Launching Bedrock Managed Knowledge Bases. Added support for resource-based policies on Knowledge Base resources, enabling cross-account access for Managed Knowledge Bases. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/de0affe4ad738b7f07d91574e2b2cfd83a447d44\"\u003ede0affe4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-securityagent:\u003c/strong\u003e  Updated AWS Security Agent SDK model with new APIs for threat modeling, code review, security requirements, and additional integration providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/9c3d3351842902b1ea1e8be52c4e7f40b868daae\"\u003e9c3d3351\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-opensearch:\u003c/strong\u003e  Adds support for configuring IAM Identity Center options on existing OpenSearch applications via the UpdateApplication API. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/94f06a20a15ab75302088d5f3c31d708a8256e5c\"\u003e94f06a20\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-glue:\u003c/strong\u003e  This release adds support for Search and Discovery in AWS Glue, letting you and your applications search Data Catalog assets such as table and enrich them with business context and glossary terms. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b394fc0b39c814d5f72593dfc4db5ff5c2cbe643\"\u003eb394fc0b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agentcore-control:\u003c/strong\u003e  AgentCore Gateway now supports inference targets to LLM providers (direct config or built-in connectors), HTTP passthrough targets with session stickiness, runtime target API schemas, AWS WAF web ACL association with configurable fail-open or fail-close modes, and interceptor payload filtering. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/75f1d588d526de04060ebd653ca1a96e7ea75ff6\"\u003e75f1d588\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-devops-agent:\u003c/strong\u003e  Adds support for Remote A2A (Agent-to-Agent) agent registration and management. Adds new Release Readiness Review and Release Testing capabilities. Adds support for Git managed skills in AWS DevOps Agent. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ebc040e1f3fc292d3eee1a9b146c972338e14807\"\u003eebc040e1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agentcore:\u003c/strong\u003e  AgentCore Harness service will be Generally Available at NYS 2026 with this Treb release. Harness will support invoking specific endpoints via the qualifier parameter, AWS Skills for pre-built agent capabilities, and improved validation for skill git source URLs. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/5bf9fcccc3b4cc204df57caea2adcf254c5d3846\"\u003e5bf9fccc\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Releasing the ability to bring-your-own task-definition for CreateExpressGatewayService and UpdateGatewayExpressService (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b7b9cb4f46a34c4ab0fedf2138a9a5ba17bdd731\"\u003eb7b9cb4f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-mq:\u003c/strong\u003e  This release adds private networking support for Amazon MQ for RabbitMQ. You can now associate AWS RAM resource shares with your broker and retrieve shared resource details using the new DescribeSharedResources API. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e96af4503bfea9a6f211bc905b8e949af6cc38d7\"\u003ee96af450\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent-runtime:\u003c/strong\u003e  Adds new AgenticRetrieveStream API for managed knowledge bases to use conversation history and autonomously plan for multi-hop multi-KB reasoning with built-in evaluation and access-control. Updates Retrieve API for access-control-based filtering for managed knowledge bases. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/557f7b3246fb6530fb8dcb481f1035d7827d2a1e\"\u003e557f7b32\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eTests\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecore:\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eprebuild before integration and e2e (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8111\"\u003e#8111\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/363f3fb7165d327e3ca24b3d7beffb19cc528c31\"\u003e363f3fb7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eprebuild core before unit tests (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8108\"\u003e#8108\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/5f789e7fe2089eacff868a6e1d0b6c2c11313bbc\"\u003e5f789e7f\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/packages/s3-request-presigner/CHANGELOG.md\"\u003e@​aws-sdk/s3-request-presigner's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1071.0...v3.1072.0\"\u003e3.1072.0\u003c/a\u003e (2026-06-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/s3-request-presigner\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1070.0...v3.1071.0\"\u003e3.1071.0\u003c/a\u003e (2026-06-17)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/s3-request-presigner\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1069.0...v3.1070.0\"\u003e3.1070.0\u003c/a\u003e (2026-06-16)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/s3-request-presigner\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1068.0...v3.1069.0\"\u003e3.1069.0\u003c/a\u003e (2026-06-15)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/s3-request-presigner\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1067.0...v3.1068.0\"\u003e3.1068.0\u003c/a\u003e (2026-06-12)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/s3-request-presigner\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1066.0...v3.1067.0\"\u003e3.1067.0\u003c/a\u003e (2026-06-11)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/s3-request-presigner\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1065.0...v3.1066.0\"\u003e3.1066.0\u003c/a\u003e (2026-06-10)\u003c/h1\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/501cd332619533ae96f154d7c226dc2f7bf8d615\"\u003e\u003ccode\u003e501cd33\u003c/code\u003e\u003c/a\u003e Publish v3.1072.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3ce820aa54c953459eb58abe4f06e28ba4ceb87d\"\u003e\u003ccode\u003e3ce820a\u003c/code\u003e\u003c/a\u003e Publish v3.1071.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4f2cfe1cfc420d0b5bfa226ae6619dd67de73ccc\"\u003e\u003ccode\u003e4f2cfe1\u003c/code\u003e\u003c/a\u003e Publish v3.1070.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7058d13814795c6ff06a960077269458520bf161\"\u003e\u003ccode\u003e7058d13\u003c/code\u003e\u003c/a\u003e Publish v3.1069.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/67981c5a65d6dd797a065df034a8d0fcdaa9b7bd\"\u003e\u003ccode\u003e67981c5\u003c/code\u003e\u003c/a\u003e chore(scripts): tuning the build graph (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/packages/s3-request-presigner/issues/8095\"\u003e#8095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0632f6dc8842caaa916c5f43a5043342ff9ba6bb\"\u003e\u003ccode\u003e0632f6d\u003c/code\u003e\u003c/a\u003e Publish v3.1068.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0a3246f174335af55a6981b4891f0f4c10dfe4c4\"\u003e\u003ccode\u003e0a3246f\u003c/code\u003e\u003c/a\u003e Publish v3.1067.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4b11912aef8adc845f81b7e9922bd180c5cf1d90\"\u003e\u003ccode\u003e4b11912\u003c/code\u003e\u003c/a\u003e Publish v3.1066.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/62daf07c545b1fbac5753c554e2c8298ae6b820f\"\u003e\u003ccode\u003e62daf07\u003c/code\u003e\u003c/a\u003e Publish v3.1065.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/bac71756a62d28fb08dce3e219176b365118eae4\"\u003e\u003ccode\u003ebac7175\u003c/code\u003e\u003c/a\u003e Publish v3.1064.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1072.0/packages/s3-request-presigner\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@elevenlabs/elevenlabs-js` from 2.49.1 to 2.53.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/releases\"\u003e@​elevenlabs/elevenlabs-js's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.53.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e[fix] Restore optional values in DynamicVariablesConfig records (2.53.1) by \u003ca href=\"https://github.com/PaulAsjes\"\u003e\u003ccode\u003e@​PaulAsjes\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/pull/411\"\u003eelevenlabs/elevenlabs-js#411\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/compare/v2.53.0...v2.53.1\"\u003ehttps://github.com/elevenlabs/elevenlabs-js/compare/v2.53.0...v2.53.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.53.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSDK regeneration by \u003ca href=\"https://github.com/fern-api\"\u003e\u003ccode\u003e@​fern-api\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/pull/410\"\u003eelevenlabs/elevenlabs-js#410\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/compare/v2.52.0...v2.53.0\"\u003ehttps://github.com/elevenlabs/elevenlabs-js/compare/v2.52.0...v2.53.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.52.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSDK regeneration by \u003ca href=\"https://github.com/fern-api\"\u003e\u003ccode\u003e@​fern-api\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/pull/406\"\u003eelevenlabs/elevenlabs-js#406\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/compare/v2.51.0...v2.52.0\"\u003ehttps://github.com/elevenlabs/elevenlabs-js/compare/v2.51.0...v2.52.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.51.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSDK regeneration by \u003ca href=\"https://github.com/fern-api\"\u003e\u003ccode\u003e@​fern-api\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/pull/403\"\u003eelevenlabs/elevenlabs-js#403\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/compare/v2.50.0...v2.51.0\"\u003ehttps://github.com/elevenlabs/elevenlabs-js/compare/v2.50.0...v2.51.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.50.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e[Music] Add missing methods and test by \u003ca href=\"https://github.com/PaulAsjes\"\u003e\u003ccode\u003e@​PaulAsjes\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/pull/399\"\u003eelevenlabs/elevenlabs-js#399\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSDK regeneration by \u003ca href=\"https://github.com/fern-api\"\u003e\u003ccode\u003e@​fern-api\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/pull/401\"\u003eelevenlabs/elevenlabs-js#401\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/compare/v2.49.1...v2.50.0\"\u003ehttps://github.com/elevenlabs/elevenlabs-js/compare/v2.49.1...v2.50.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/commit/5e8b62bbdffe9a99d3772e7fa78f51e047ece96e\"\u003e\u003ccode\u003e5e8b62b\u003c/code\u003e\u003c/a\u003e Restore optional values in DynamicVariablesConfig records (2.53.1) (\u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/issues/411\"\u003e#411\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/commit/d4eea0709bf4a9f1f99ce9d2e47b6682473a6d63\"\u003e\u003ccode\u003ed4eea07\u003c/code\u003e\u003c/a\u003e SDK regeneration (\u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/issues/410\"\u003e#410\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/commit/4ad8ddefd65c3eba1320609b37d09b358b2d36f7\"\u003e\u003ccode\u003e4ad8dde\u003c/code\u003e\u003c/a\u003e SDK regeneration (\u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/issues/406\"\u003e#406\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/commit/b1fd204ffee36dc2a1adb0ad86336636f32b4545\"\u003e\u003ccode\u003eb1fd204\u003c/code\u003e\u003c/a\u003e SDK regeneration (\u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/issues/403\"\u003e#403\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/commit/3cd176fe18c9eaab75d16979e3de21597afb9c5b\"\u003e\u003ccode\u003e3cd176f\u003c/code\u003e\u003c/a\u003e SDK regeneration (\u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/issues/401\"\u003e#401\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/commit/f50f1558f741e331dd3949ded57771c012ef27ab\"\u003e\u003ccode\u003ef50f155\u003c/code\u003e\u003c/a\u003e Add missing methods and test (\u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/issues/399\"\u003e#399\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/compare/v2.49.1...v2.53.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@fal-ai/client` from 1.7.0 to 1.10.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/fal-ai/fal-js/releases\"\u003e@​fal-ai/client's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eclient-v1.10.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(client): retry Node-level transport errors in subscribe/dispatch by \u003ca href=\"https://github.com/efiop\"\u003e\u003ccode\u003e@​efiop\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/211\"\u003efal-ai/fal-js#211\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/fal-ai/fal-js/compare/client-v1.10.0...client-v1.10.1\"\u003ehttps://github.com/fal-ai/fal-js/compare/client-v1.10.0...client-v1.10.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eclient-v1.10.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(client): allow proxy middleware in non-browser runtimes by \u003ca href=\"https://github.com/drochetti\"\u003e\u003ccode\u003e@​drochetti\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/209\"\u003efal-ai/fal-js#209\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/fal-ai/fal-js/compare/client-v1.9.6...client-v1.10.0\"\u003ehttps://github.com/fal-ai/fal-js/compare/client-v1.9.6...client-v1.10.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eclient-v1.9.6\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(realtime): connection closed transition expires token by \u003ca href=\"https://github.com/noahgsolomon\"\u003e\u003ccode\u003e@​noahgsolomon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/201\"\u003efal-ai/fal-js#201\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ecleanup realtime state machine and support live references by \u003ca href=\"https://github.com/noahgsolomon\"\u003e\u003ccode\u003e@​noahgsolomon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/202\"\u003efal-ai/fal-js#202\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: supply chain security, enforce minimum age for node dependencies by \u003ca href=\"https://github.com/wennergr\"\u003e\u003ccode\u003e@​wennergr\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/205\"\u003efal-ai/fal-js#205\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: update endpoint types by \u003ca href=\"https://github.com/aykutkardas\"\u003e\u003ccode\u003e@​aykutkardas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/192\"\u003efal-ai/fal-js#192\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(client): expose lifecycle ACL options in storage settings by \u003ca href=\"https://github.com/efiop\"\u003e\u003ccode\u003e@​efiop\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/208\"\u003efal-ai/fal-js#208\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: pin GitHub Actions to full commit SHAs by \u003ca href=\"https://github.com/wennergr\"\u003e\u003ccode\u003e@​wennergr\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/207\"\u003efal-ai/fal-js#207\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/wennergr\"\u003e\u003ccode\u003e@​wennergr\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/205\"\u003efal-ai/fal-js#205\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/fal-ai/fal-js/compare/client-v1.9.4...client-v1.9.6\"\u003ehttps://github.com/fal-ai/fal-js/compare/client-v1.9.4...client-v1.9.6\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eclient-v1.9.5\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(realtime): connection closed transition expires ...\n\n_Description has been truncated_","html_url":"https://github.com/SiraGPT-ORg/siraGPT/pull/118","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/SiraGPT-ORg%2FsiraGPT/issues/118","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/118/packages"},{"uuid":"4636343634","node_id":"PR_kwDORP8u4c7lHFc_","number":9,"state":"open","title":"chore(deps): bump morgan from 1.10.1 to 1.11.0","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-06-11T01:18:43.000Z","updated_at":"2026-06-11T01:18:46.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":null,"ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/mulkymalikuldhrs/pase-fx/pull/9","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/mulkymalikuldhrs%2Fpase-fx/issues/9","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/9/packages"},{"uuid":"4627849786","node_id":"PR_kwDOBBkQZs7krOpR","number":4173,"state":"closed","title":"chore(deps): bump morgan from 1.10.1 to 1.11.0 in /superset-websocket/utils/client-ws-app","user":"dependabot[bot]","labels":[],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-06-11T01:37:47.000Z","author_association":null,"state_reason":null,"created_at":"2026-06-10T04:04:14.000Z","updated_at":"2026-06-11T01:37:49.000Z","time_to_close":77613,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":"/superset-websocket/utils/client-ws-app","ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/aliavni/incubator-superset/pull/4173","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/aliavni%2Fincubator-superset/issues/4173","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/4173/packages"},{"uuid":"4613165584","node_id":"PR_kwDOPUR0Hc7j6pXK","number":32,"state":"closed","title":"chore(deps): bump the patches group with 5 updates","user":"dependabot[bot]","labels":["dependencies"],"assignees":[],"locked":false,"comments_count":3,"pull_request":true,"closed_at":"2026-06-08T13:19:15.000Z","author_association":null,"state_reason":null,"created_at":"2026-06-08T13:11:11.000Z","updated_at":"2026-06-08T13:19:24.000Z","time_to_close":484,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"patches","update_count":5,"packages":[{"name":"@langchain/langgraph","old_version":"1.3.3","new_version":"1.3.6","repository_url":"https://github.com/langchain-ai/langgraphjs"},{"name":"ioredis","old_version":"5.11.0","new_version":"5.11.1","repository_url":"https://github.com/luin/ioredis"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"posthog-node","old_version":"5.35.11","new_version":"5.36.4","repository_url":"https://github.com/PostHog/posthog-js"},{"name":"axios","old_version":"1.16.1","new_version":"1.17.0","repository_url":"https://github.com/axios/axios"}],"path":null,"ecosystem":"npm"},"body":"Bumps the patches group with 5 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@langchain/langgraph](https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core) | `1.3.3` | `1.3.6` |\n| [ioredis](https://github.com/luin/ioredis) | `5.11.0` | `5.11.1` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [posthog-node](https://github.com/PostHog/posthog-js/tree/HEAD/packages/node) | `5.35.11` | `5.36.4` |\n| [axios](https://github.com/axios/axios) | `1.16.1` | `1.17.0` |\n\nUpdates `@langchain/langgraph` from 1.3.3 to 1.3.6\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/langchain-ai/langgraphjs/releases\"\u003e@​langchain/langgraph's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/langgraph\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.3.6\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/658a076d5b50af9f5b96ab99f26ed629da6e182f\"\u003e\u003ccode\u003e658a076\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/christian-bromann\"\u003e\u003ccode\u003e@​christian-bromann\u003c/code\u003e\u003c/a\u003e! - fix(langgraph): forward named custom stream channels consistently\u003c/p\u003e\n\u003cp\u003eForward remote \u003ccode\u003eStreamChannel\u003c/code\u003e emissions as \u003ccode\u003ecustom:\u0026lt;name\u0026gt;\u003c/code\u003e protocol events and normalize them back to custom-channel payloads in the API session. This aligns JavaScript stream-channel forwarding with the protocol subscription shape used by remote clients, so \u003ccode\u003ecustom:\u0026lt;name\u0026gt;\u003c/code\u003e subscriptions receive extension channel data consistently.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/0a0e04e9ff7e82fd08411cc0094e1f94729a1e1e\"\u003e\u003ccode\u003e0a0e04e\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/658a076d5b50af9f5b96ab99f26ed629da6e182f\"\u003e\u003ccode\u003e658a076\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/a9aa8d6a9b23f5f7d4c56889fa68697b1e076b31\"\u003e\u003ccode\u003ea9aa8d6\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​langchain/langgraph-sdk\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.9.17\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/langgraph\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.3.5\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langgraphjs/pull/2489\"\u003e#2489\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/e3a1933a8825a515d847b38b24a0743f4d418646\"\u003e\u003ccode\u003ee3a1933\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/christian-bromann\"\u003e\u003ccode\u003e@​christian-bromann\u003c/code\u003e\u003c/a\u003e! - fix(core): keep stream chunks as three-element tuples\u003c/p\u003e\n\u003cp\u003eEmit lightweight checkpoint envelopes as separate\n\u003ccode\u003e[namespace, \u0026quot;checkpoints\u0026quot;, envelope]\u003c/code\u003e chunks before paired \u003ccode\u003evalues\u003c/code\u003e chunks.\nPublic \u003ccode\u003estream()\u003c/code\u003e always yields \u003ccode\u003e[namespace, mode, payload]\u003c/code\u003e; the v3\nprotocol path surfaces envelopes via \u003ccode\u003econvertToProtocolEvent\u003c/code\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/244c24eaccff4009df7d83e4320e51a4b310b15f\"\u003e\u003ccode\u003e244c24e\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​langchain/langgraph-sdk\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.9.16\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/langgraph\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.3.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langgraphjs/pull/2035\"\u003e#2035\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/7c3a98b23af29fee0d9f064942abb71044ed0e51\"\u003e\u003ccode\u003e7c3a98b\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/JadenKim-dev\"\u003e\u003ccode\u003e@​JadenKim-dev\u003c/code\u003e\u003c/a\u003e! - fix(core): prevent Zod schema defaults from overwriting checkpoint state in Command.update\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/04915347128e40fc9617647cadba6b472a357d36\"\u003e\u003ccode\u003e0491534\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​langchain/langgraph-sdk\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.9.12\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/langchain-ai/langgraphjs/blob/main/libs/langgraph-core/CHANGELOG.md\"\u003e@​langchain/langgraph's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.3.6\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/658a076d5b50af9f5b96ab99f26ed629da6e182f\"\u003e\u003ccode\u003e658a076\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/christian-bromann\"\u003e\u003ccode\u003e@​christian-bromann\u003c/code\u003e\u003c/a\u003e! - fix(langgraph): forward named custom stream channels consistently\u003c/p\u003e\n\u003cp\u003eForward remote \u003ccode\u003eStreamChannel\u003c/code\u003e emissions as \u003ccode\u003ecustom:\u0026lt;name\u0026gt;\u003c/code\u003e protocol events and normalize them back to custom-channel payloads in the API session. This aligns JavaScript stream-channel forwarding with the protocol subscription shape used by remote clients, so \u003ccode\u003ecustom:\u0026lt;name\u0026gt;\u003c/code\u003e subscriptions receive extension channel data consistently.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/0a0e04e9ff7e82fd08411cc0094e1f94729a1e1e\"\u003e\u003ccode\u003e0a0e04e\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/658a076d5b50af9f5b96ab99f26ed629da6e182f\"\u003e\u003ccode\u003e658a076\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/a9aa8d6a9b23f5f7d4c56889fa68697b1e076b31\"\u003e\u003ccode\u003ea9aa8d6\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​langchain/langgraph-sdk\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.9.17\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e1.3.5\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langgraphjs/pull/2489\"\u003e#2489\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/e3a1933a8825a515d847b38b24a0743f4d418646\"\u003e\u003ccode\u003ee3a1933\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/christian-bromann\"\u003e\u003ccode\u003e@​christian-bromann\u003c/code\u003e\u003c/a\u003e! - fix(core): keep stream chunks as three-element tuples\u003c/p\u003e\n\u003cp\u003eEmit lightweight checkpoint envelopes as separate\n\u003ccode\u003e[namespace, \u0026quot;checkpoints\u0026quot;, envelope]\u003c/code\u003e chunks before paired \u003ccode\u003evalues\u003c/code\u003e chunks.\nPublic \u003ccode\u003estream()\u003c/code\u003e always yields \u003ccode\u003e[namespace, mode, payload]\u003c/code\u003e; the v3\nprotocol path surfaces envelopes via \u003ccode\u003econvertToProtocolEvent\u003c/code\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/244c24eaccff4009df7d83e4320e51a4b310b15f\"\u003e\u003ccode\u003e244c24e\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​langchain/langgraph-sdk\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.9.16\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e1.3.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langgraphjs/pull/2035\"\u003e#2035\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/7c3a98b23af29fee0d9f064942abb71044ed0e51\"\u003e\u003ccode\u003e7c3a98b\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/JadenKim-dev\"\u003e\u003ccode\u003e@​JadenKim-dev\u003c/code\u003e\u003c/a\u003e! - fix(core): prevent Zod schema defaults from overwriting checkpoint state in Command.update\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/04915347128e40fc9617647cadba6b472a357d36\"\u003e\u003ccode\u003e0491534\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​langchain/langgraph-sdk\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.9.12\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/c41878187014ff58a4ee8371fa8361edc97b2e84\"\u003e\u003ccode\u003ec418781\u003c/code\u003e\u003c/a\u003e chore: version packages (\u003ca href=\"https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core/issues/2495\"\u003e#2495\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/a9aa8d6a9b23f5f7d4c56889fa68697b1e076b31\"\u003e\u003ccode\u003ea9aa8d6\u003c/code\u003e\u003c/a\u003e fix(sdk): reconcile subagents and subgraphs on thread reconnect (\u003ca href=\"https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core/issues/2497\"\u003e#2497\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/28fbf1dc4e4cfd8045d4ac8175bf2c9619ca1884\"\u003e\u003ccode\u003e28fbf1d\u003c/code\u003e\u003c/a\u003e chore: version packages (\u003ca href=\"https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core/issues/2490\"\u003e#2490\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/c6528b2ff42cea138910aecdf3b73907b751fb10\"\u003e\u003ccode\u003ec6528b2\u003c/code\u003e\u003c/a\u003e chore(sdk): update vitest browser dependency (\u003ca href=\"https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core/issues/2493\"\u003e#2493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/e3a1933a8825a515d847b38b24a0743f4d418646\"\u003e\u003ccode\u003ee3a1933\u003c/code\u003e\u003c/a\u003e fix(core): keep stream() on 3-tuple shape (\u003ca href=\"https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core/issues/2489\"\u003e#2489\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/a4919b667ed297dc89634e3471336aaaefbdea53\"\u003e\u003ccode\u003ea4919b6\u003c/code\u003e\u003c/a\u003e chore(deps): bump the langchain group across 1 directory with 8 updates (\u003ca href=\"https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core/issues/2476\"\u003e#2476\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/c6b29fb040963e3dcedb7e98ee3a3e3a728e5f82\"\u003e\u003ccode\u003ec6b29fb\u003c/code\u003e\u003c/a\u003e chore: version packages (\u003ca href=\"https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core/issues/2465\"\u003e#2465\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/7c3a98b23af29fee0d9f064942abb71044ed0e51\"\u003e\u003ccode\u003e7c3a98b\u003c/code\u003e\u003c/a\u003e fix(core): prevent Zod schema defaults from overwriting checkpoint state in C...\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commits/@langchain/langgraph@1.3.6/libs/langgraph-core\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ioredis` from 5.11.0 to 5.11.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/luin/ioredis/releases\"\u003eioredis's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.11.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/luin/ioredis/compare/v5.11.0...v5.11.1\"\u003e5.11.1\u003c/a\u003e (2026-06-04)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecluster:\u003c/strong\u003e reconnect to nodes that restart without slot changes (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2096\"\u003e#2096\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/c84b2ee97fd7b25d8f6ef8b509c228a602f47cca\"\u003ec84b2ee\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse protocol-relative Redis URLs as TCP connections (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2125\"\u003e#2125\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/131ee24173380b986e62ecc428ddde82be12bc40\"\u003e131ee24\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/redis/ioredis/blob/main/CHANGELOG.md\"\u003eioredis's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/luin/ioredis/compare/v5.11.0...v5.11.1\"\u003e5.11.1\u003c/a\u003e (2026-06-04)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecluster:\u003c/strong\u003e reconnect to nodes that restart without slot changes (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2096\"\u003e#2096\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/c84b2ee97fd7b25d8f6ef8b509c228a602f47cca\"\u003ec84b2ee\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse protocol-relative Redis URLs as TCP connections (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2125\"\u003e#2125\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/131ee24173380b986e62ecc428ddde82be12bc40\"\u003e131ee24\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/redis/ioredis/commit/fb224a7609b6d25959e06e31fdab2460d1f75691\"\u003e\u003ccode\u003efb224a7\u003c/code\u003e\u003c/a\u003e chore(release): 5.11.1 [skip ci]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/redis/ioredis/commit/131ee24173380b986e62ecc428ddde82be12bc40\"\u003e\u003ccode\u003e131ee24\u003c/code\u003e\u003c/a\u003e fix: parse protocol-relative Redis URLs as TCP connections (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2125\"\u003e#2125\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/redis/ioredis/commit/c84b2ee97fd7b25d8f6ef8b509c228a602f47cca\"\u003e\u003ccode\u003ec84b2ee\u003c/code\u003e\u003c/a\u003e fix(cluster): reconnect to nodes that restart without slot changes (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2096\"\u003e#2096\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/luin/ioredis/compare/v5.11.0...v5.11.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `morgan` from 1.10.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `posthog-node` from 5.35.11 to 5.36.4\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/PostHog/posthog-js/releases\"\u003eposthog-node's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eposthog-node@5.36.4\u003c/h2\u003e\n\u003ch2\u003e5.36.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.10\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eposthog-node@5.36.3\u003c/h2\u003e\n\u003ch2\u003e5.36.3\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.9\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eposthog-node@5.36.2\u003c/h2\u003e\n\u003ch2\u003e5.36.2\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.8\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eposthog-node@5.36.1\u003c/h2\u003e\n\u003ch2\u003e5.36.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.7\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eposthog-node@5.36.0\u003c/h2\u003e\n\u003ch2\u003e5.36.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/PostHog/posthog-js/pull/3728\"\u003e#3728\u003c/a\u003e \u003ca href=\"https://github.com/PostHog/posthog-js/commit/9287c87b7d4cf00160269d0cc648074f27c0847a\"\u003e\u003ccode\u003e9287c87\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/turnipdabeets\"\u003e\u003ccode\u003e@​turnipdabeets\u003c/code\u003e\u003c/a\u003e! - Add a configurable \u003ccode\u003e$is_server\u003c/code\u003e event property (default \u003ccode\u003etrue\u003c/code\u003e) so PostHog can identify server-side events. Set \u003ccode\u003eisServer: false\u003c/code\u003e when using the SDK as a client/CLI so the device OS is attributed normally.\n(2026-06-04)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eposthog-node@5.35.15\u003c/h2\u003e\n\u003ch2\u003e5.35.15\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.6\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eposthog-node@5.35.14\u003c/h2\u003e\n\u003ch2\u003e5.35.14\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/PostHog/posthog-js/blob/main/packages/node/CHANGELOG.md\"\u003eposthog-node's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.36.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.10\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.36.3\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.9\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.36.2\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.8\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.36.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.7\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.36.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/PostHog/posthog-js/pull/3728\"\u003e#3728\u003c/a\u003e \u003ca href=\"https://github.com/PostHog/posthog-js/commit/9287c87b7d4cf00160269d0cc648074f27c0847a\"\u003e\u003ccode\u003e9287c87\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/turnipdabeets\"\u003e\u003ccode\u003e@​turnipdabeets\u003c/code\u003e\u003c/a\u003e! - Add a configurable \u003ccode\u003e$is_server\u003c/code\u003e event property (default \u003ccode\u003etrue\u003c/code\u003e) so PostHog can identify server-side events. Set \u003ccode\u003eisServer: false\u003c/code\u003e when using the SDK as a client/CLI so the device OS is attributed normally.\n(2026-06-04)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.35.15\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.6\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.35.14\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.5\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.35.13\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/d46f0b9b8015c336103dccab12dadd8e071e895f\"\u003e\u003ccode\u003ed46f0b9\u003c/code\u003e\u003c/a\u003e chore: update versions and lockfile [version bump]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/e0ebad51a12ea6276f9fda7ecd6cb57a6ff8f3a1\"\u003e\u003ccode\u003ee0ebad5\u003c/code\u003e\u003c/a\u003e chore: update versions and lockfile [version bump]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/a8fd22825d9e9203ed88084d2c07b7b31e585f2f\"\u003e\u003ccode\u003ea8fd228\u003c/code\u003e\u003c/a\u003e chore: update versions and lockfile [version bump]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/287ad9fcbb0990f770ab8e0a4311e8fcde6855be\"\u003e\u003ccode\u003e287ad9f\u003c/code\u003e\u003c/a\u003e chore: update versions and lockfile [version bump]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/dc1e1935b1e9e6f26b184e6adb19d68f44a5682e\"\u003e\u003ccode\u003edc1e193\u003c/code\u003e\u003c/a\u003e chore: update versions and lockfile [version bump]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/9287c87b7d4cf00160269d0cc648074f27c0847a\"\u003e\u003ccode\u003e9287c87\u003c/code\u003e\u003c/a\u003e feat: emit $is_server property on captured events (\u003ca href=\"https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/3728\"\u003e#3728\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/b539fcbe64515945a18190b6c973a1bd727b75f1\"\u003e\u003ccode\u003eb539fcb\u003c/code\u003e\u003c/a\u003e chore: update versions and lockfile [version bump]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/79de44145333bd1c18b6c240fef35baf25dba37d\"\u003e\u003ccode\u003e79de441\u003c/code\u003e\u003c/a\u003e chore: update versions and lockfile [version bump]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/4a8cacc72ea1f8a371b06e9e92f1d2671190e48a\"\u003e\u003ccode\u003e4a8cacc\u003c/code\u003e\u003c/a\u003e chore: add Sentry attribution comments (\u003ca href=\"https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/3738\"\u003e#3738\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/d385e2a28b4f540620ba8afb0d5ae87839d745ce\"\u003e\u003ccode\u003ed385e2a\u003c/code\u003e\u003c/a\u003e chore: clarify error tracking comments (\u003ca href=\"https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/3735\"\u003e#3735\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/PostHog/posthog-js/commits/posthog-node@5.36.4/packages/node\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `axios` from 1.16.1 to 1.17.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/releases\"\u003eaxios's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.17.0 — June 1, 2026\u003c/h2\u003e\n\u003cp\u003eThis release adds Node HTTP zstd decompression, hardens config and release workflows, and fixes authentication, header, proxy, and type-handling regressions.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eConfig Hardening:\u003c/strong\u003e Guarded \u003ccode\u003esocketPath\u003c/code\u003e, \u003ccode\u003eparams\u003c/code\u003e, and \u003ccode\u003eparamsSerializer\u003c/code\u003e reads with own-property checks to prevent inherited prototype values from affecting request behavior, including SSRF-sensitive paths. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10901\"\u003e#10901\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10922\"\u003e#10922\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRelease Publishing:\u003c/strong\u003e Switched the publish workflow to npm staged publishing for safer, auditable package releases with provenance. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10926\"\u003e#10926\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🚀 New Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eHTTP Compression:\u003c/strong\u003e Added Node HTTP adapter support for zstd response decompression, with \u003ccode\u003etransitional.advertiseZstdAcceptEncoding\u003c/code\u003e controlling whether \u003ccode\u003ezstd\u003c/code\u003e is advertised in \u003ccode\u003eAccept-Encoding\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/6792\"\u003e#6792\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10920\"\u003e#10920\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eAuthentication Handling:\u003c/strong\u003e Restored Basic auth on same-origin Node redirects while continuing to strip credentials cross-origin, and aligned the fetch adapter with HTTP adapter behavior for URL-embedded Basic auth. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10929\"\u003e#10929\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eProxy TLS:\u003c/strong\u003e Preserved user \u003ccode\u003ehttpsAgent\u003c/code\u003e TLS options when tunneling HTTPS requests through HTTP CONNECT proxies. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10957\"\u003e#10957\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eReact Native FormData:\u003c/strong\u003e Cleared default \u003ccode\u003eContent-Type\u003c/code\u003e for React Native \u003ccode\u003eFormData\u003c/code\u003e so multipart boundaries can be generated correctly. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10898\"\u003e#10898\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eHeaders:\u003c/strong\u003e Silently skipped empty or whitespace-only header names instead of throwing, matching parsed-header behavior and avoiding React Native response crashes. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10875\"\u003e#10875\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRequest Data Merging:\u003c/strong\u003e Preserved enumerable symbol keys when cloning plain request data through axios merge logic. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10812\"\u003e#10812\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eBundler Compatibility:\u003c/strong\u003e Converted \u003ccode\u003eresolveConfig\u003c/code\u003e from an arrow default export to a named function export to avoid webpack and Babel transform interop failures. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10891\"\u003e#10891\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eTypes:\u003c/strong\u003e Corrected \u003ccode\u003eAxiosHeaders.toJSON()\u003c/code\u003e return types and updated CommonJS \u003ccode\u003eisCancel\u003c/code\u003e typings to narrow to \u003ccode\u003eCanceledError\u0026lt;T\u0026gt;\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10956\"\u003e#10956\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10952\"\u003e#10952\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eBuild Tooling:\u003c/strong\u003e Avoided emitting a null \u003ccode\u003eAuthorization\u003c/code\u003e header from the GitHub build helper when \u003ccode\u003eGITHUB_TOKEN\u003c/code\u003e is unset. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10931\"\u003e#10931\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eHTTP/2 Internals:\u003c/strong\u003e Extracted \u003ccode\u003eHttp2Sessions\u003c/code\u003e into its own helper module and added direct unit coverage for session pooling, timeout, and cleanup behavior. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10861\"\u003e#10861\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ePackage Publishing:\u003c/strong\u003e Reduced published package size by switching to a \u003ccode\u003efiles\u003c/code\u003e allowlist and dropping unneeded unminified bundle source maps. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10939\"\u003e#10939\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eCI and Release Automation:\u003c/strong\u003e Added bundle-size reporting, moved reports to the job summary, fixed bundle-size comparison coverage, added Node 26 to the matrix, pinned npm for staged publishing, and prepared the 1.17.0 release. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10907\"\u003e#10907\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10911\"\u003e#10911\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10916\"\u003e#10916\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10927\"\u003e#10927\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10935\"\u003e#10935\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10983\"\u003e#10983\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eDeveloper Workflow:\u003c/strong\u003e Added a dev container and iterated on OpenSpec workflow files before removing them from the release branch. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10925\"\u003e#10925\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10914\"\u003e#10914\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10958\"\u003e#10958\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eDocumentation and Policy:\u003c/strong\u003e Updated disclosure, contributor, collaboration, threat-model, advanced docs, README badges, release notes, moderator configuration, and project metadata. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10890\"\u003e#10890\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10889\"\u003e#10889\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10921\"\u003e#10921\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10945\"\u003e#10945\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10905\"\u003e#10905\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10933\"\u003e#10933\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10915\"\u003e#10915\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10887\"\u003e#10887\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10955\"\u003e#10955\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eDependencies:\u003c/strong\u003e Bumped Babel tooling, Commitlint, ESLint, Rollup, Globals, Vitest, Playwright, \u003ccode\u003efs-extra\u003c/code\u003e, \u003ccode\u003eqs\u003c/code\u003e, docs dependencies, and GitHub Actions dependencies including \u003ccode\u003eactions/dependency-review-action\u003c/code\u003e and \u003ccode\u003ezizmorcore/zizmor-action\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10871\"\u003e#10871\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10879\"\u003e#10879\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10918\"\u003e#10918\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10919\"\u003e#10919\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10934\"\u003e#10934\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10947\"\u003e#10947\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10954\"\u003e#10954\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10960\"\u003e#10960\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🌟 New Contributors\u003c/h2\u003e\n\u003cp\u003eWe are thrilled to welcome our new contributors. Thank you for helping improve axios:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/BasixKOR\"\u003e\u003ccode\u003e@​BasixKOR\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/6792\"\u003e#6792\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/carladams1299-lab\"\u003e\u003ccode\u003e@​carladams1299-lab\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10861\"\u003e#10861\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/LaplaceYoung\"\u003e\u003ccode\u003e@​LaplaceYoung\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10812\"\u003e#10812\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/JamieMagee\"\u003e\u003ccode\u003e@​JamieMagee\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10939\"\u003e#10939\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/RonGamzu\"\u003e\u003ccode\u003e@​RonGamzu\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10905\"\u003e#10905\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/sapirbaruch\"\u003e\u003ccode\u003e@​sapirbaruch\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10891\"\u003e#10891\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/nezukoagent\"\u003e\u003ccode\u003e@​nezukoagent\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10901\"\u003e#10901\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/devareddy05\"\u003e\u003ccode\u003e@​devareddy05\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10929\"\u003e#10929\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/Mohammad-Faiz-Cloud-Engineer\"\u003e\u003ccode\u003e@​Mohammad-Faiz-Cloud-Engineer\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10922\"\u003e#10922\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/azandabot\"\u003e\u003ccode\u003e@​azandabot\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10931\"\u003e#10931\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/niksy\"\u003e\u003ccode\u003e@​niksy\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/axios/axios/compare/v1.16.1...v1.17.0\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/blob/v1.x/CHANGELOG.md\"\u003eaxios's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.17.0 — June 1, 2026\u003c/h2\u003e\n\u003cp\u003eThis release adds Node HTTP zstd decompression, hardens config and release workflows, and fixes authentication, header, proxy, and type-handling regressions.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eConfig Hardening:\u003c/strong\u003e Guarded \u003ccode\u003esocketPath\u003c/code\u003e, \u003ccode\u003eparams\u003c/code\u003e, and \u003ccode\u003eparamsSerializer\u003c/code\u003e reads with own-property checks to prevent inherited prototype values from affecting request behavior, including SSRF-sensitive paths. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10901\"\u003e#10901\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10922\"\u003e#10922\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRelease Publishing:\u003c/strong\u003e Switched the publish workflow to npm staged publishing for safer, auditable package releases with provenance. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10926\"\u003e#10926\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🚀 New Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eHTTP Compression:\u003c/strong\u003e Added Node HTTP adapter support for zstd response decompression, with \u003ccode\u003etransitional.advertiseZstdAcceptEncoding\u003c/code\u003e controlling whether \u003ccode\u003ezstd\u003c/code\u003e is advertised in \u003ccode\u003eAccept-Encoding\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/6792\"\u003e#6792\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10920\"\u003e#10920\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eAuthentication Handling:\u003c/strong\u003e Restored Basic auth on same-origin Node redirects while continuing to strip credentials cross-origin, and aligned the fetch adapter with HTTP adapter behavior for URL-embedded Basic auth. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10929\"\u003e#10929\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eProxy TLS:\u003c/strong\u003e Preserved user \u003ccode\u003ehttpsAgent\u003c/code\u003e TLS options when tunneling HTTPS requests through HTTP CONNECT proxies. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10957\"\u003e#10957\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eReact Native FormData:\u003c/strong\u003e Cleared default \u003ccode\u003eContent-Type\u003c/code\u003e for React Native \u003ccode\u003eFormData\u003c/code\u003e so multipart boundaries can be generated correctly. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10898\"\u003e#10898\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eHeaders:\u003c/strong\u003e Silently skipped empty or whitespace-only header names instead of throwing, matching parsed-header behavior and avoiding React Native response crashes. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10875\"\u003e#10875\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRequest Data Merging:\u003c/strong\u003e Preserved enumerable symbol keys when cloning plain request data through axios merge logic. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10812\"\u003e#10812\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eBundler Compatibility:\u003c/strong\u003e Converted \u003ccode\u003eresolveConfig\u003c/code\u003e from an arrow default export to a named function export to avoid webpack and Babel transform interop failures. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10891\"\u003e#10891\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eTypes:\u003c/strong\u003e Corrected \u003ccode\u003eAxiosHeaders.toJSON()\u003c/code\u003e return types and updated CommonJS \u003ccode\u003eisCancel\u003c/code\u003e typings to narrow to \u003ccode\u003eCanceledError\u0026lt;T\u0026gt;\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10956\"\u003e#10956\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10952\"\u003e#10952\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eBuild Tooling:\u003c/strong\u003e Avoided emitting a null \u003ccode\u003eAuthorization\u003c/code\u003e header from the GitHub build helper when \u003ccode\u003eGITHUB_TOKEN\u003c/code\u003e is unset. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10931\"\u003e#10931\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eHTTP/2 Internals:\u003c/strong\u003e Extracted \u003ccode\u003eHttp2Sessions\u003c/code\u003e into its own helper module and added direct unit coverage for session pooling, timeout, and cleanup behavior. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10861\"\u003e#10861\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ePackage Publishing:\u003c/strong\u003e Reduced published package size by switching to a \u003ccode\u003efiles\u003c/code\u003e allowlist and dropping unneeded unminified bundle source maps. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10939\"\u003e#10939\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eCI and Release Automation:\u003c/strong\u003e Added bundle-size reporting, moved reports to the job summary, fixed bundle-size comparison coverage, added Node 26 to the matrix, pinned npm for staged publishing, and prepared the 1.17.0 release. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10907\"\u003e#10907\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10911\"\u003e#10911\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10916\"\u003e#10916\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10927\"\u003e#10927\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10935\"\u003e#10935\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10983\"\u003e#10983\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eDeveloper Workflow:\u003c/strong\u003e Added a dev container and iterated on OpenSpec workflow files before removing them from the release branch. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10925\"\u003e#10925\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10914\"\u003e#10914\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10958\"\u003e#10958\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eDocumentation and Policy:\u003c/strong\u003e Updated disclosure, contributor, collaboration, threat-model, advanced docs, README badges, release notes, moderator configuration, and project metadata. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10890\"\u003e#10890\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10889\"\u003e#10889\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10921\"\u003e#10921\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10945\"\u003e#10945\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10905\"\u003e#10905\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10933\"\u003e#10933\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10915\"\u003e#10915\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10887\"\u003e#10887\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10955\"\u003e#10955\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eDependencies:\u003c/strong\u003e Bumped Babel tooling, Commitlint, ESLint, Rollup, Globals, Vitest, Playwright, \u003ccode\u003efs-extra\u003c/code\u003e, \u003ccode\u003eqs\u003c/code\u003e, docs dependencies, and GitHub Actions dependencies including \u003ccode\u003eactions/dependency-review-action\u003c/code\u003e and \u003ccode\u003ezizmorcore/zizmor-action\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10871\"\u003e#10871\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10879\"\u003e#10879\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10918\"\u003e#10918\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10919\"\u003e#10919\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10934\"\u003e#10934\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10947\"\u003e#10947\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10954\"\u003e#10954\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10960\"\u003e#10960\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🌟 New Contributors\u003c/h2\u003e\n\u003cp\u003eWe are thrilled to welcome our new contributors. Thank you for helping improve axios:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/BasixKOR\"\u003e\u003ccode\u003e@​BasixKOR\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/6792\"\u003e#6792\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/carladams1299-lab\"\u003e\u003ccode\u003e@​carladams1299-lab\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10861\"\u003e#10861\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/LaplaceYoung\"\u003e\u003ccode\u003e@​LaplaceYoung\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10812\"\u003e#10812\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/JamieMagee\"\u003e\u003ccode\u003e@​JamieMagee\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10939\"\u003e#10939\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/RonGamzu\"\u003e\u003ccode\u003e@​RonGamzu\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10905\"\u003e#10905\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/sapirbaruch\"\u003e\u003ccode\u003e@​sapirbaruch\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10891\"\u003e#10891\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/nezukoagent\"\u003e\u003ccode\u003e@​nezukoagent\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10901\"\u003e#10901\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/devareddy05\"\u003e\u003ccode\u003e@​devareddy05\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10929\"\u003e#10929\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/Mohammad-Faiz-Cloud-Engineer\"\u003e\u003ccode\u003e@​Mohammad-Faiz-Cloud-Engineer\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10922\"\u003e#10922\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/azandabot\"\u003e\u003ccode\u003e@​azandabot\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10931\"\u003e#10931\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/niksy\"\u003e\u003ccode\u003e@​niksy\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/axios/axios/compare/v1.16.1...v1.17.0\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/4306df21e84332fc576e98c2de549347c06bfb76\"\u003e\u003ccode\u003e4306df2\u003c/code\u003e\u003c/a\u003e chore: add fun 88 sponsorship\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/931cc8f0106db4c9885403f85364b9e09ae1f6dc\"\u003e\u003ccode\u003e931cc8f\u003c/code\u003e\u003c/a\u003e chore(release): prepare release 1.17.0 (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10983\"\u003e#10983\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/38ba1b3d2b0aa5ada0463a37a548feb83a84dfa1\"\u003e\u003ccode\u003e38ba1b3\u003c/code\u003e\u003c/a\u003e fix(fetch): support basic auth from URL (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/32e2515f1e09b649723e4acd89d920df13eee77e\"\u003e\u003ccode\u003e32e2515\u003c/code\u003e\u003c/a\u003e fix: replace ternary side effect in script (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10931\"\u003e#10931\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/030e7223831b0f562af3eb7501b24242c8a4c5ba\"\u003e\u003ccode\u003e030e722\u003c/code\u003e\u003c/a\u003e chore(deps): bump axios from 1.15.2 to 1.16.1 in /docs (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10960\"\u003e#10960\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/ec63164ac6b7a1fcd6b742a8628d3fffe23ce001\"\u003e\u003ccode\u003eec63164\u003c/code\u003e\u003c/a\u003e chore: remove openspec (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10958\"\u003e#10958\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/3dec28f94ce29d396d5f2d9718805b47428dc7ab\"\u003e\u003ccode\u003e3dec28f\u003c/code\u003e\u003c/a\u003e fix(http): preserve TLS options for proxy tunnels (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10957\"\u003e#10957\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/a2390a5c059342bcac2a5297728181dd9939f562\"\u003e\u003ccode\u003ea2390a5\u003c/code\u003e\u003c/a\u003e fix: correct isCancel type to narrow to CanceledError\u0026lt;T\u0026gt; (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10952\"\u003e#10952\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/fa01b9255d71e72599826428bc6c60f34994c6ce\"\u003e\u003ccode\u003efa01b92\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump tmp from 0.2.5 to 0.2.7 in /docs (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10954\"\u003e#10954\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/2d2314a1ac29ce6723eb53e130b4a36617fd201c\"\u003e\u003ccode\u003e2d2314a\u003c/code\u003e\u003c/a\u003e fix: AxiosHeaders \u003ccode\u003etoJSON()\u003c/code\u003e return types (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10956\"\u003e#10956\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/axios/axios/compare/v1.16.1...v1.17.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n\u003c/details\u003e","html_url":"https://github.com/forbiddenlink/stancestream/pull/32","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/forbiddenlink%2Fstancestream/issues/32","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/32/packages"},{"uuid":"4609981405","node_id":"PR_kwDOQhyNV87jwJaJ","number":20,"state":"open","title":"chore(deps): bump the prod-minor-patch group across 1 directory with 8 updates","user":"dependabot[bot]","labels":[],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-06-08T04:18:39.000Z","updated_at":"2026-06-08T04:18:39.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"prod-minor-patch","update_count":8,"packages":[{"name":"@simplewebauthn/server","old_version":"13.3.0","new_version":"13.3.1","repository_url":"https://github.com/MasterKale/SimpleWebAuthn"},{"name":"date-fns","old_version":"4.1.0","new_version":"4.4.0","repository_url":"https://github.com/date-fns/date-fns"},{"name":"dompurify","old_version":"3.4.4","new_version":"3.4.8","repository_url":"https://github.com/cure53/DOMPurify"},{"name":"helmet","old_version":"8.1.0","new_version":"8.2.0","repository_url":"https://github.com/helmetjs/helmet"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"react","old_version":"19.2.6","new_version":"19.2.7","repository_url":"https://github.com/facebook/react"},{"name":"react-dom","old_version":"19.2.6","new_version":"19.2.7","repository_url":"https://github.com/facebook/react"},{"name":"react-router-dom","old_version":"7.15.1","new_version":"7.17.0","repository_url":"https://github.com/remix-run/react-router"}],"path":null,"ecosystem":"npm"},"body":"Bumps the prod-minor-patch group with 8 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@simplewebauthn/server](https://github.com/MasterKale/SimpleWebAuthn/tree/HEAD/packages/server) | `13.3.0` | `13.3.1` |\n| [date-fns](https://github.com/date-fns/date-fns) | `4.1.0` | `4.4.0` |\n| [dompurify](https://github.com/cure53/DOMPurify) | `3.4.4` | `3.4.8` |\n| [helmet](https://github.com/helmetjs/helmet) | `8.1.0` | `8.2.0` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [react](https://github.com/facebook/react/tree/HEAD/packages/react) | `19.2.6` | `19.2.7` |\n| [react-dom](https://github.com/facebook/react/tree/HEAD/packages/react-dom) | `19.2.6` | `19.2.7` |\n| [react-router-dom](https://github.com/remix-run/react-router/tree/HEAD/packages/react-router-dom) | `7.15.1` | `7.17.0` |\n\n\nUpdates `@simplewebauthn/server` from 13.3.0 to 13.3.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/MasterKale/SimpleWebAuthn/releases\"\u003e@​simplewebauthn/server's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev13.3.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eChanges:\u003c/strong\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003e[server]\u003c/strong\u003e Fixed an issue with \u003ccode\u003everifyRegistrationResponse()\u003c/code\u003e failing to verify some Packed and SafetyNet statements (\u003ca href=\"https://redirect.github.com/MasterKale/SimpleWebAuthn/pull/767\"\u003e#767\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/MasterKale/SimpleWebAuthn/blob/master/CHANGELOG.md\"\u003e@​simplewebauthn/server's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev13.3.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eChanges:\u003c/strong\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003e[server]\u003c/strong\u003e Fixed an issue with \u003ccode\u003everifyRegistrationResponse()\u003c/code\u003e failing to verify some Packed and\nSafetyNet statements (\u003ca href=\"https://redirect.github.com/MasterKale/SimpleWebAuthn/pull/767\"\u003e#767\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/MasterKale/SimpleWebAuthn/commit/615538fb1a80d95f9cbb5790a670e5ae1146d455\"\u003e\u003ccode\u003e615538f\u003c/code\u003e\u003c/a\u003e Update version to 13.3.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/MasterKale/SimpleWebAuthn/commit/61601dd1b665aef19ff611f271beebe226673d71\"\u003e\u003ccode\u003e61601dd\u003c/code\u003e\u003c/a\u003e Ignore E2E test for now\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/MasterKale/SimpleWebAuthn/commit/6c43af766a6432d4e4ab65495bda9427e1650bfd\"\u003e\u003ccode\u003e6c43af7\u003c/code\u003e\u003c/a\u003e Use attStmt.alg in Safety Net and Packed Full\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/MasterKale/SimpleWebAuthn/commits/v13.3.1/packages/server\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `date-fns` from 4.1.0 to 4.4.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/date-fns/date-fns/releases\"\u003edate-fns's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.4.0\u003c/h2\u003e\n\u003cp\u003eThis release revisits the approach to CDN usage and introduces a new package, \u003ccode\u003e@date-fns/cdn\u003c/code\u003e and deprecates the \u003ccode\u003edate-fns\u003c/code\u003e CDN scripts. It allowed reducing the zipped package size from \u003ccode\u003e5.83 MB\u003c/code\u003e down to \u003ccode\u003e3.96 MB\u003c/code\u003e without introducing any breaking changes.\u003c/p\u003e\n\u003cp\u003eIn \u003ccode\u003ev5.0.0-alpha.0\u003c/code\u003e where CDN scripts are completely removed from \u003ccode\u003edate-fns\u003c/code\u003e the change is more significant and brings the zipped package size down to \u003ccode\u003e2.89 MB\u003c/code\u003e.\u003c/p\u003e\n\u003cp\u003eIt is just the first step in optimizing the package size. Expect further size reduction in the future v4 and v5 versions.\u003c/p\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDEPRECATED\u003c/strong\u003e: The \u003ccode\u003edate-fns\u003c/code\u003e CDN scripts are now deprecated and will be removed in the next major release. Please switch to the new \u003ccode\u003e@date-fns/cdn\u003c/code\u003e package for CDN usage.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eRemoved CDN source maps to reduce the package size. If you rely on them, please switch to the new \u003ccode\u003e@date-fns/cdn\u003c/code\u003e package that still includes them.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.3.0\u003c/h2\u003e\n\u003cp\u003eKudos to \u003ca href=\"https://github.com/ImRodry\"\u003e\u003ccode\u003e@​ImRodry\u003c/code\u003e\u003c/a\u003e and \u003ca href=\"https://github.com/puneetdixit200\"\u003e\u003ccode\u003e@​puneetdixit200\u003c/code\u003e\u003c/a\u003e for their contributions.\u003c/p\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eFixed missing modularized optimization fallback (\u003ca href=\"https://x.com/kossnocorp/status/1731181274579325260\"\u003efor Next.js and others\u003c/a\u003e). See \u003ca href=\"https://x.com/kossnocorp/status/1731181274579325260\"\u003e#4193\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eFixed \u003ccode\u003ept\u003c/code\u003e locale first day of week to be Sunday. See \u003ca href=\"https://redirect.github.com/date-fns/date-fns/pull/4195\"\u003e#4195\u003c/a\u003e by \u003ca href=\"https://github.com/ImRodry\"\u003e\u003ccode\u003e@​ImRodry\u003c/code\u003e\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eFixed \u003ccode\u003ezh-CN\u003c/code\u003e, \u003ccode\u003ezh-HK\u003c/code\u003e, and \u003ccode\u003ezh-TW\u003c/code\u003e locale month parsing for October, November, and December. See \u003ca href=\"https://redirect.github.com/date-fns/date-fns/pull/4194\"\u003e#4194\u003c/a\u003e by \u003ca href=\"https://github.com/puneetdixit200\"\u003e\u003ccode\u003e@​puneetdixit200\u003c/code\u003e\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.2.1\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFixed type definitions missing in v4.2.0 due to TypeScript misconfiguration.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.2.0\u003c/h2\u003e\n\u003cp\u003eThis is a minor release in all senses, it only includes documentation updates (first of many) that points to the new \u003ca href=\"https://date-fns.org/you-dont-need-date-fns\"\u003eYou Don't Need date-fns*\u003c/a\u003e page.\u003c/p\u003e\n\u003cp\u003e* Not really\u003c/p\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdded Temporal API references to the JSDoc annotations of \u003ccode\u003eadd\u003c/code\u003e, \u003ccode\u003eaddBusinessDays\u003c/code\u003e, and \u003ccode\u003eaddDays\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/cd53d2538cfa318404eff7ade6449b49bf34562e\"\u003e\u003ccode\u003ecd53d25\u003c/code\u003e\u003c/a\u003e Promote to v4.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/d948ec151d395096de8a45fbcd9b1e79c26fda25\"\u003e\u003ccode\u003ed948ec1\u003c/code\u003e\u003c/a\u003e Preserve but deprecate CDN versions for v4, set up v5 with polyfills\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/ee65753cfc5d73cc9acd43aaa8012b3b233ddf32\"\u003e\u003ccode\u003eee65753\u003c/code\u003e\u003c/a\u003e Add root \u003ccode\u003emise :format\u003c/code\u003e task\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/9f5bdf5d5a944772aa9668c4fa6567d89ca01fa9\"\u003e\u003ccode\u003e9f5bdf5\u003c/code\u003e\u003c/a\u003e Add positional argument to \u003ccode\u003etest/smoke.sh\u003c/code\u003e script\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/651ead6faf331515814803faf457f5b9db7c9729\"\u003e\u003ccode\u003e651ead6\u003c/code\u003e\u003c/a\u003e Split CDN bundles into separate \u003ccode\u003e@​date-fns/cdn\u003c/code\u003e package\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/224c1a209967dad359a2c2adc9a5b0ef72e4fe7b\"\u003e\u003ccode\u003e224c1a2\u003c/code\u003e\u003c/a\u003e Deprecate type tests as attw hangs on date-fns package\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/7bb2842dac3d579f84b2de62f015335fb3ac734a\"\u003e\u003ccode\u003e7bb2842\u003c/code\u003e\u003c/a\u003e Switch \u003ccode\u003ePACKAGE_OUTPUT_PATH\u003c/code\u003e to \u003ccode\u003e--dist\u003c/code\u003e flag in the package build script\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/b6ad5acc5ab0b40777a2695ec074c2ffcd982763\"\u003e\u003ccode\u003eb6ad5ac\u003c/code\u003e\u003c/a\u003e Add flags to control package build script\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/424a783de1fd974bcdbe907c9c5eb5154e9db29f\"\u003e\u003ccode\u003e424a783\u003c/code\u003e\u003c/a\u003e Fix docs release after moving to monorepo setup\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/f95bcf18b53e6832b2c575c24c98654a24f52699\"\u003e\u003ccode\u003ef95bcf1\u003c/code\u003e\u003c/a\u003e (docs): Add missing \u003ccode\u003etsx\u003c/code\u003e dependency\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/date-fns/date-fns/compare/v4.1.0...v4.4.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `dompurify` from 3.4.4 to 3.4.8\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cure53/DOMPurify/releases\"\u003edompurify's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eDOMPurify 3.4.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eCleaned up the repository root, renamed some and removed unneeded files\u003c/li\u003e\n\u003cli\u003eFixed an issue with handling of Trusted Types policies, thanks \u003ca href=\"https://github.com/fulstadev\"\u003e\u003ccode\u003e@​fulstadev\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFixed the node iterator for better template scrubbing, thanks \u003ca href=\"https://github.com/IamLeandrooooo\"\u003e\u003ccode\u003e@​IamLeandrooooo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIncluded formerly missing LICENSE-MPL in published npm package, thanks \u003ca href=\"https://github.com/asamuzaK\"\u003e\u003ccode\u003e@​asamuzaK\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBumped several dependencies where possible\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eDOMPurify 3.4.7\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eHardened the handling of Shadow Roots when using \u003ccode\u003eIN_PLACE\u003c/code\u003e, thanks \u003ca href=\"https://github.com/GameZoneHacker\"\u003e\u003ccode\u003e@​GameZoneHacker\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemoved a problem leading to permanent hook pollution, thanks \u003ca href=\"https://github.com/offset\"\u003e\u003ccode\u003e@​offset\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactored the test suite and expanded test coverage significantly\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eDOMPurify 3.4.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed several issues with DOM Clobbering in \u003ccode\u003eIN_PLACE\u003c/code\u003e mode, thanks \u003ca href=\"https://github.com/offset\"\u003e\u003ccode\u003e@​offset\u003c/code\u003e\u003c/a\u003e \u0026amp; \u003ca href=\"https://github.com/Bankde\"\u003e\u003ccode\u003e@​Bankde\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHardened the checks for cross-realm \u003ccode\u003eIN_PLACE\u003c/code\u003e and Shadow DOM sanitization, thanks \u003ca href=\"https://github.com/offset\"\u003e\u003ccode\u003e@​offset\u003c/code\u003e\u003c/a\u003e \u0026amp; \u003ca href=\"https://github.com/Bankde\"\u003e\u003ccode\u003e@​Bankde\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdded more test coverage for \u003ccode\u003eIN_PLACE\u003c/code\u003e and general DOM Clobbering attacks\u003c/li\u003e\n\u003cli\u003eBumped several dependencies where possible\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eDOMPurify 3.4.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed a bypass caused by the new HTML element \u003ccode\u003eselectedcontent\u003c/code\u003e added in 3.4.4, thanks \u003ca href=\"https://github.com/KabirAcharya\"\u003e\u003ccode\u003e@​KabirAcharya\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eNote that this is a security release for an issue introduced in 3.4.4 and should be upgraded to immediately.\u003c/strong\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cure53/DOMPurify/commit/bcdd8285412dc9c4c149652aed2d712e790d6ccf\"\u003e\u003ccode\u003ebcdd828\u003c/code\u003e\u003c/a\u003e release: 3.4.8 (\u003ca href=\"https://redirect.github.com/cure53/DOMPurify/issues/1439\"\u003e#1439\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cure53/DOMPurify/commit/ca30f070c360df162a3e3848e80e6fd3c9e74bff\"\u003e\u003ccode\u003eca30f07\u003c/code\u003e\u003c/a\u003e release: 3.4.7 (\u003ca href=\"https://redirect.github.com/cure53/DOMPurify/issues/1414\"\u003e#1414\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cure53/DOMPurify/commit/bb7739e5bccec7e1ab3dae3f3e42d02db3acaaae\"\u003e\u003ccode\u003ebb7739e\u003c/code\u003e\u003c/a\u003e release: 3.4.6 (\u003ca href=\"https://redirect.github.com/cure53/DOMPurify/issues/1394\"\u003e#1394\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cure53/DOMPurify/commit/011b0c78f2a0f57ee54f5fcccb697a46ca6e63ea\"\u003e\u003ccode\u003e011b0c7\u003c/code\u003e\u003c/a\u003e release: 3.4.5 (\u003ca href=\"https://redirect.github.com/cure53/DOMPurify/issues/1382\"\u003e#1382\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/cure53/DOMPurify/compare/3.4.4...3.4.8\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `helmet` from 8.1.0 to 8.2.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/helmetjs/helmet/blob/main/CHANGELOG.md\"\u003ehelmet's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.2.0 - 2026-05-21\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eCross-Origin-Opener-Policy\u003c/code\u003e: support \u003ccode\u003enoopener-allow-popups\u003c/code\u003e. See \u003ca href=\"https://redirect.github.com/helmetjs/helmet/pull/522\"\u003e#522\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove error message when passing duplicate options\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/638e43becc81d970778b0bae31703193e295816d\"\u003e\u003ccode\u003e638e43b\u003c/code\u003e\u003c/a\u003e 8.2.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/fdf25a882da3cf0cd89343a6debdae725ec82515\"\u003e\u003ccode\u003efdf25a8\u003c/code\u003e\u003c/a\u003e Update changelog for 8.2.0 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/bd293b74d1bbf67e3eb17b1330f3339acca5d12c\"\u003e\u003ccode\u003ebd293b7\u003c/code\u003e\u003c/a\u003e Update devDependencies to latest versions\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/81ce5cc33ddc8ff1ad621d0d62ab0d10528a1f05\"\u003e\u003ccode\u003e81ce5cc\u003c/code\u003e\u003c/a\u003e Test supported Node versions on CI\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/807a888ded818a1857da5ada274c184cea05ef9e\"\u003e\u003ccode\u003e807a888\u003c/code\u003e\u003c/a\u003e Update to new URL\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/d4e0128652a05e99d1dc66df9c32a00e0db31597\"\u003e\u003ccode\u003ed4e0128\u003c/code\u003e\u003c/a\u003e Add direct link to FAQ\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/437d2eb81363ecb57633e5717e81e4055a431e3e\"\u003e\u003ccode\u003e437d2eb\u003c/code\u003e\u003c/a\u003e Bump actions/setup-node from 6.3.0 to 6.4.0 (\u003ca href=\"https://redirect.github.com/helmetjs/helmet/issues/537\"\u003e#537\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/a6bd779566f3c23b92b287b9df0c6305c80885e8\"\u003e\u003ccode\u003ea6bd779\u003c/code\u003e\u003c/a\u003e Upgrade actions/setup-node to 6.3.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/1e09f5fd8aee6a02dd871712049e31cec3e6fc45\"\u003e\u003ccode\u003e1e09f5f\u003c/code\u003e\u003c/a\u003e Fix changelog typo\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/d526f5c04578e8905b6a4c3e147b069927bad349\"\u003e\u003ccode\u003ed526f5c\u003c/code\u003e\u003c/a\u003e Bump Picomatch dev sub-dependency\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/helmetjs/helmet/compare/v8.1.0...v8.2.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `morgan` from 1.10.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `react` from 19.2.6 to 19.2.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/facebook/react/releases\"\u003ereact's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e19.2.7 (June 1st, 2026)\u003c/h2\u003e\n\u003ch2\u003eReact Server Components\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed missing \u003ccode\u003eFormData\u003c/code\u003e entries in Server Actions which regressed in 19.2.6\n(\u003ca href=\"https://redirect.github.com/facebook/react/pull/36566\"\u003e#36566\u003c/a\u003e by \u003ca href=\"https://github.com/unstubbable\"\u003e\u003ccode\u003e@​unstubbable\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/facebook/react/commit/6117d7cca4906492c51fe6a03381e35adfd86e7d\"\u003e\u003ccode\u003e6117d7c\u003c/code\u003e\u003c/a\u003e Version 19.2.7 (\u003ca href=\"https://github.com/facebook/react/tree/HEAD/packages/react/issues/36591\"\u003e#36591\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/facebook/react/commits/v19.2.7/packages/react\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for react since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `react-dom` from 19.2.6 to 19.2.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/facebook/react/releases\"\u003ereact-dom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e19.2.7 (June 1st, 2026)\u003c/h2\u003e\n\u003ch2\u003eReact Server Components\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed missing \u003ccode\u003eFormData\u003c/code\u003e entries in Server Actions which regressed in 19.2.6\n(\u003ca href=\"https://redirect.github.com/facebook/react/pull/36566\"\u003e#36566\u003c/a\u003e by \u003ca href=\"https://github.com/unstubbable\"\u003e\u003ccode\u003e@​unstubbable\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/facebook/react/commit/6117d7cca4906492c51fe6a03381e35adfd86e7d\"\u003e\u003ccode\u003e6117d7c\u003c/code\u003e\u003c/a\u003e Version 19.2.7 (\u003ca href=\"https://github.com/facebook/react/tree/HEAD/packages/react-dom/issues/36591\"\u003e#36591\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/facebook/react/commits/v19.2.7/packages/react-dom\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for react-dom since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `react-router-dom` from 7.15.1 to 7.17.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/remix-run/react-router/blob/main/packages/react-router-dom/CHANGELOG.md\"\u003ereact-router-dom's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.17.0\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies:\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/remix-run/react-router/releases/tag/react-router@7.17.0\"\u003e\u003ccode\u003ereact-router@7.17.0\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.16.0\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eRemove stale/invalid \u003ccode\u003eunpkg\u003c/code\u003e field from \u003ccode\u003epackage.json\u003c/code\u003e. This was removed from other packages with the release of v7 but missed in the \u003ccode\u003ereact-router-dom\u003c/code\u003e re-export package (\u003ca href=\"https://redirect.github.com/remix-run/react-router/pull/15075\"\u003e#15075\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUpdated dependencies:\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/remix-run/react-router/releases/tag/react-router@7.16.0\"\u003e\u003ccode\u003ereact-router@7.16.0\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/remix-run/react-router/commit/195a0d03c1417127ccee73853058c8521beb4fce\"\u003e\u003ccode\u003e195a0d0\u003c/code\u003e\u003c/a\u003e Release v7.17.0 (\u003ca href=\"https://github.com/remix-run/react-router/tree/HEAD/packages/react-router-dom/issues/15145\"\u003e#15145\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/remix-run/react-router/commit/8984d23f86ca7ae5655711744b77816090bda4e6\"\u003e\u003ccode\u003e8984d23\u003c/code\u003e\u003c/a\u003e Release v7.16.0 (\u003ca href=\"https://github.com/remix-run/react-router/tree/HEAD/packages/react-router-dom/issues/15105\"\u003e#15105\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/remix-run/react-router/commit/3ed77afcde0ad9aea79f1afe5f05a700b201f289\"\u003e\u003ccode\u003e3ed77af\u003c/code\u003e\u003c/a\u003e chore: format\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/remix-run/react-router/commit/e96962bc6159a2290632849b55872a3878753342\"\u003e\u003ccode\u003ee96962b\u003c/code\u003e\u003c/a\u003e fix: remove stale unpkg field from react-router-dom (\u003ca href=\"https://github.com/remix-run/react-router/tree/HEAD/packages/react-router-dom/issues/15075\"\u003e#15075\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/remix-run/react-router/commits/react-router-dom@7.17.0/packages/react-router-dom\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n\u003c/details\u003e","html_url":"https://github.com/JaavLex/HERMES/pull/20","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/JaavLex%2FHERMES/issues/20","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/20/packages"}],"issue_packages":[{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-07-20T14:08:09.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4929751064","node_id":"PR_kwDOSr70Ks7z4tbM","number":19,"state":"closed","title":"chore(deps): bump the minor-and-patch group across 1 directory with 17 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":5,"pull_request":true,"closed_at":"2026-07-20T15:41:10.000Z","author_association":null,"state_reason":null,"created_at":"2026-07-20T14:08:09.000Z","updated_at":"2026-07-20T15:44:39.000Z","time_to_close":5581,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"minor-and-patch","update_count":17,"packages":[{"name":"@opentelemetry/semantic-conventions","old_version":"1.42.0","new_version":"1.43.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"bullmq","old_version":"5.77.6","new_version":"5.80.9","repository_url":"https://github.com/taskforcesh/bullmq"},{"name":"envalid","old_version":"8.1.1","new_version":"8.2.0","repository_url":"https://github.com/af/envalid"},{"name":"express-rate-limit","old_version":"8.5.2","new_version":"8.6.0","repository_url":"https://github.com/express-rate-limit/express-rate-limit"},{"name":"helmet","old_version":"8.2.0","new_version":"8.3.0","repository_url":"https://github.com/helmetjs/helmet"},{"name":"ioredis","old_version":"5.11.0","new_version":"5.11.1","repository_url":"https://github.com/luin/ioredis"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"pg","old_version":"8.21.0","new_version":"8.22.0","repository_url":"https://github.com/brianc/node-postgres"},{"name":"typeorm","old_version":"1.0.0","new_version":"1.1.0","repository_url":"https://github.com/typeorm/typeorm"},{"name":"@biomejs/biome","old_version":"2.4.16","new_version":"2.5.4","repository_url":"https://github.com/biomejs/biome"},{"name":"@faker-js/faker","old_version":"10.4.0","new_version":"10.5.0","repository_url":"https://github.com/faker-js/faker"},{"name":"@swc-node/register","old_version":"1.11.1","new_version":"1.12.1","repository_url":"https://github.com/swc-project/swc-node"},{"name":"@swc/core","old_version":"1.15.43","new_version":"1.15.46","repository_url":"https://github.com/swc-project/swc"},{"name":"@testcontainers/postgresql","old_version":"12.0.1","new_version":"12.0.4","repository_url":"https://github.com/testcontainers/testcontainers-node"},{"name":"@types/supertest","old_version":"7.2.0","new_version":"7.2.1","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"lint-staged","old_version":"17.0.6","new_version":"17.1.0","repository_url":"https://github.com/lint-staged/lint-staged"},{"name":"tsc-alias","old_version":"1.8.17","new_version":"1.9.1","repository_url":"https://github.com/justkey007/tsc-alias"}],"path":null,"ecosystem":"npm"},"body":"Bumps the minor-and-patch group with 17 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@opentelemetry/semantic-conventions](https://github.com/open-telemetry/opentelemetry-js) | `1.42.0` | `1.43.0` |\n| [bullmq](https://github.com/taskforcesh/bullmq) | `5.77.6` | `5.80.9` |\n| [envalid](https://github.com/af/envalid) | `8.1.1` | `8.2.0` |\n| [express-rate-limit](https://github.com/express-rate-limit/express-rate-limit) | `8.5.2` | `8.6.0` |\n| [helmet](https://github.com/helmetjs/helmet) | `8.2.0` | `8.3.0` |\n| [ioredis](https://github.com/luin/ioredis) | `5.11.0` | `5.11.1` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [pg](https://github.com/brianc/node-postgres/tree/HEAD/packages/pg) | `8.21.0` | `8.22.0` |\n| [typeorm](https://github.com/typeorm/typeorm) | `1.0.0` | `1.1.0` |\n| [@biomejs/biome](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome) | `2.4.16` | `2.5.4` |\n| [@faker-js/faker](https://github.com/faker-js/faker) | `10.4.0` | `10.5.0` |\n| [@swc-node/register](https://github.com/swc-project/swc-node) | `1.11.1` | `1.12.1` |\n| [@swc/core](https://github.com/swc-project/swc/tree/HEAD/packages/core) | `1.15.43` | `1.15.46` |\n| [@testcontainers/postgresql](https://github.com/testcontainers/testcontainers-node) | `12.0.1` | `12.0.4` |\n| [@types/supertest](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/supertest) | `7.2.0` | `7.2.1` |\n| [lint-staged](https://github.com/lint-staged/lint-staged) | `17.0.6` | `17.1.0` |\n| [tsc-alias](https://github.com/justkey007/tsc-alias) | `1.8.17` | `1.9.1` |\n\n\nUpdates `@opentelemetry/semantic-conventions` from 1.42.0 to 1.43.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/releases\"\u003e@​opentelemetry/semantic-conventions's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003esemconv/v1.43.0\u003c/h2\u003e\n\u003ch2\u003e1.43.0\u003c/h2\u003e\n\u003ch3\u003e:rocket: Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efeat: update semantic conventions to v1.43.0 \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/pull/6883\"\u003e#6883\u003c/a\u003e\n\u003cul\u003e\n\u003cli\u003eSemantic Conventions v1.43.0: \u003ca href=\"https://github.com/open-telemetry/semantic-conventions/blob/main/CHANGELOG.md#v1430\"\u003echangelog\u003c/a\u003e | \u003ca href=\"https://opentelemetry.io/docs/specs/semconv/\"\u003elatest docs\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@opentelemetry/semantic-conventions\u003c/code\u003e (stable) changes: \u003cem\u003e1 added export\u003c/em\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003e@opentelemetry/semantic-conventions/incubating\u003c/code\u003e (unstable) changes: \u003cem\u003e1 added export\u003c/em\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eStable changes in v1.43.0\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003eTELEMETRY_SDK_LANGUAGE_VALUE_KOTLIN // \u0026quot;kotlin\u0026quot;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch4\u003eUnstable changes in v1.43.0\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003eATTR_AZURE_RESOURCE_GROUP_NAME // azure.resource_group.name\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/9b05f668ee7ab884a44b04b504e0baaff6c6d2b2\"\u003e\u003ccode\u003e9b05f66\u003c/code\u003e\u003c/a\u003e chore: prepare next release (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6906\"\u003e#6906\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/0f18798b3100412ddabb0b720384caed4e08643c\"\u003e\u003ccode\u003e0f18798\u003c/code\u003e\u003c/a\u003e feat(semantic-conventions): update semantic conventions to v1.43.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6883\"\u003e#6883\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/bbcdfa8ccd6de110a1a07b40371d07ef455c8851\"\u003e\u003ccode\u003ebbcdfa8\u003c/code\u003e\u003c/a\u003e chore: update workflow to the shared one (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6904\"\u003e#6904\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/e6a57765f8c4ace29f47b435c690994382709d28\"\u003e\u003ccode\u003ee6a5776\u003c/code\u003e\u003c/a\u003e chore(deps): update dependency typedoc to v0.28.20 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6898\"\u003e#6898\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/8bec6624137bbef296dbb1969fc9fb3773a36317\"\u003e\u003ccode\u003e8bec662\u003c/code\u003e\u003c/a\u003e feat(propagator-jaeger): deprecate JaegerPropagator (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6893\"\u003e#6893\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/20e3abe89cd646936c5433e95814d358896aba10\"\u003e\u003ccode\u003e20e3abe\u003c/code\u003e\u003c/a\u003e chore: add workflow for first time contributor (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6896\"\u003e#6896\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/fda8f31b1f036a149de00cf7fb379e82cfa1987f\"\u003e\u003ccode\u003efda8f31\u003c/code\u003e\u003c/a\u003e chore: bump to typescript@5.2.2 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6888\"\u003e#6888\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/3394c3e234ef28a9538610f14ee4f6ff19abeb11\"\u003e\u003ccode\u003e3394c3e\u003c/code\u003e\u003c/a\u003e fix(sdk-trace): sample ratio 1 upper-bound trace IDs (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6890\"\u003e#6890\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/2568ac16e6f02da85a8893de3ad61dc2f418e95f\"\u003e\u003ccode\u003e2568ac1\u003c/code\u003e\u003c/a\u003e chore: clean up some deps and devDeps in exporter packages (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6892\"\u003e#6892\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/commit/0fd7fac15f4afcc26c5c233fb4e7725f74ce2616\"\u003e\u003ccode\u003e0fd7fac\u003c/code\u003e\u003c/a\u003e test(exporter-metrics-otlp-*): return response to allow process exit (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-js/issues/6889\"\u003e#6889\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/open-telemetry/opentelemetry-js/compare/semconv/v1.42.0...semconv/v1.43.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `bullmq` from 5.77.6 to 5.80.9\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/taskforcesh/bullmq/releases\"\u003ebullmq's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.80.9\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.80.8...v5.80.9\"\u003e5.80.9\u003c/a\u003e (2026-07-18)\u003c/h2\u003e\n\u003ch3\u003ePerformance Improvements\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eflow-producer:\u003c/strong\u003e reuse queue's shared Scripts instance in jobs fixes \u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4263\"\u003e#4263\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4308\"\u003e#4308\u003c/a\u003e) (\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/4f4b574de507e56e1e3a7f359565eb359463710f\"\u003e4f4b574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev5.80.8\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.80.7...v5.80.8\"\u003e5.80.8\u003c/a\u003e (2026-07-18)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003escheduler:\u003c/strong\u003e walk past stale slots when re-upserting under same id (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4299\"\u003e#4299\u003c/a\u003e) (\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/e8af56348a77677a4d802d2563e33b7313a79570\"\u003ee8af563\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev5.80.7\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.80.6...v5.80.7\"\u003e5.80.7\u003c/a\u003e (2026-07-17)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eworker:\u003c/strong\u003e move stalled job to failed when fetched manually (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4294\"\u003e#4294\u003c/a\u003e) (\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/c4a0a4a90d48303b1b6b7c45f67898573a73c424\"\u003ec4a0a4a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev5.80.6\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.80.5...v5.80.6\"\u003e5.80.6\u003c/a\u003e (2026-07-17)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003esandbox:\u003c/strong\u003e preserve child_process exports in null-stdio (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4301\"\u003e#4301\u003c/a\u003e) (\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/5044cf8fc17f0842655eda581b9e26b27f6abfe8\"\u003e5044cf8\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev5.80.5\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.80.4...v5.80.5\"\u003e5.80.5\u003c/a\u003e (2026-07-16)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003esandbox:\u003c/strong\u003e kill children that fail init and surface refusal errors fixes \u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4283\"\u003e#4283\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4284\"\u003e#4284\u003c/a\u003e) (\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/7dd064ec794ff2f8f67a859caf11cd5554ad75e4\"\u003e7dd064e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev5.80.4\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.80.3...v5.80.4\"\u003e5.80.4\u003c/a\u003e (2026-07-15)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency ioredis to v5.11.1 [security] (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4282\"\u003e#4282\u003c/a\u003e) (\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/d978d721995aa4d40aa93980866e2a6b02bcfed1\"\u003ed978d72\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev5.80.3\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.80.2...v5.80.3\"\u003e5.80.3\u003c/a\u003e (2026-07-15)\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/4f4b574de507e56e1e3a7f359565eb359463710f\"\u003e\u003ccode\u003e4f4b574\u003c/code\u003e\u003c/a\u003e perf(flow-producer): reuse queue's shared Scripts instance in jobs fixes \u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/426\"\u003e#426\u003c/a\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/0715a56bba9d37571b76194caaf008fb82499582\"\u003e\u003ccode\u003e0715a56\u003c/code\u003e\u003c/a\u003e chore(release): 5.80.8 (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4306\"\u003e#4306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/e8af56348a77677a4d802d2563e33b7313a79570\"\u003e\u003ccode\u003ee8af563\u003c/code\u003e\u003c/a\u003e fix(scheduler): walk past stale slots when re-upserting under same id (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4299\"\u003e#4299\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/096977e6b6fde85735b1c91aa20e581ddf6d52b3\"\u003e\u003ccode\u003e096977e\u003c/code\u003e\u003c/a\u003e chore(release): 5.80.7 (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4304\"\u003e#4304\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/c4a0a4a90d48303b1b6b7c45f67898573a73c424\"\u003e\u003ccode\u003ec4a0a4a\u003c/code\u003e\u003c/a\u003e fix(worker): move stalled job to failed when fetched manually (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4294\"\u003e#4294\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/f311da253231385524e797300166b1c6ee707732\"\u003e\u003ccode\u003ef311da2\u003c/code\u003e\u003c/a\u003e docs: change changelog reference [rust] (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4303\"\u003e#4303\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/4df7e5c2d66305d1fa4fd9d574c015b3eb25654f\"\u003e\u003ccode\u003e4df7e5c\u003c/code\u003e\u003c/a\u003e chore(release): 5.80.6 (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4302\"\u003e#4302\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/5044cf8fc17f0842655eda581b9e26b27f6abfe8\"\u003e\u003ccode\u003e5044cf8\u003c/code\u003e\u003c/a\u003e fix(sandbox): preserve child_process exports in null-stdio (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4301\"\u003e#4301\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/5c657627785662e0c8293655795acdaf3da46fd4\"\u003e\u003ccode\u003e5c65762\u003c/code\u003e\u003c/a\u003e ci: ignore changelog from auto styling and fix rust/elixir paths-filter permi...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/taskforcesh/bullmq/commit/5834ba93da32a902ffe1ac5111528d2494f98853\"\u003e\u003ccode\u003e5834ba9\u003c/code\u003e\u003c/a\u003e docs(job): clarify JSON payload round-trip for job data (\u003ca href=\"https://redirect.github.com/taskforcesh/bullmq/issues/4276\"\u003e#4276\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/taskforcesh/bullmq/compare/v5.77.6...v5.80.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `envalid` from 8.1.1 to 8.2.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/af/envalid/releases\"\u003eenvalid's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.2.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003etestDefault\u003c/code\u003e in cb67a44. Thanks \u003ca href=\"https://github.com/garlab\"\u003e\u003ccode\u003e@​garlab\u003c/code\u003e\u003c/a\u003e!\u003c/li\u003e\n\u003cli\u003eUpdated various devDependencies\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eNote: the next release will likely be v9.0 which will include the removal of the \u003ccode\u003etestOnly\u003c/code\u003e util. Use the new \u003ccode\u003etestDefault\u003c/code\u003e instead!\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/af/envalid/commit/784385fcf209ed6f9afde068689afc90773636a3\"\u003e\u003ccode\u003e784385f\u003c/code\u003e\u003c/a\u003e 8.2.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/af/envalid/commit/9d5e5fb5abcc2bbd8710a3d88aa25e38d14c1de1\"\u003e\u003ccode\u003e9d5e5fb\u003c/code\u003e\u003c/a\u003e Update devDependencies, use npm run in hooks for compatibility\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/af/envalid/commit/9d292bc44fe6f7d033a84d35d7e398b81e7ec7f4\"\u003e\u003ccode\u003e9d292bc\u003c/code\u003e\u003c/a\u003e Replace yarn.lock with bun.lock\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/af/envalid/commit/cb67a4413531a865160ae503bdf7c484ffc6eb16\"\u003e\u003ccode\u003ecb67a44\u003c/code\u003e\u003c/a\u003e feat: add testDefault spec attribute (\u003ca href=\"https://redirect.github.com/af/envalid/issues/249\"\u003e#249\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/af/envalid/commit/7ca06e5e4f12019e54d166ea7bf36f5ebf1765ac\"\u003e\u003ccode\u003e7ca06e5\u003c/code\u003e\u003c/a\u003e Bump glob from 10.4.5 to 10.5.0 (\u003ca href=\"https://redirect.github.com/af/envalid/issues/242\"\u003e#242\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/af/envalid/compare/v8.1.1...v8.2.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `express-rate-limit` from 8.5.2 to 8.6.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/releases\"\u003eexpress-rate-limit's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev8.6.0\u003c/h2\u003e\n\u003cp\u003eYou can view the changelog \u003ca href=\"https://express-rate-limit.mintlify.app/reference/changelog\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/fffb3c4d6e614e79fcb5a6617c06cc57fd587ef0\"\u003e\u003ccode\u003efffb3c4\u003c/code\u003e\u003c/a\u003e 8.6.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/f366b2d3602abace7e053cfb5a7e80d1f664f094\"\u003e\u003ccode\u003ef366b2d\u003c/code\u003e\u003c/a\u003e docs: debugging guide, time constants, \u0026amp; v8.6.0 changelog (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/652\"\u003e#652\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/593ddd2f4fdf9111034ff81aef404d89cb07ad09\"\u003e\u003ccode\u003e593ddd2\u003c/code\u003e\u003c/a\u003e fix: make debug output easier to read (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/653\"\u003e#653\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/ef8c1295ff7f500717c9c0ceb099bbd873f8e9c2\"\u003e\u003ccode\u003eef8c129\u003c/code\u003e\u003c/a\u003e fix: Pin safe version of \u003ccode\u003e@​asyncapi/specs\u003c/code\u003e dev dep (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/659\"\u003e#659\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/7b05e0dbd8b838075498af4fee7eccff4bd6c8a5\"\u003e\u003ccode\u003e7b05e0d\u003c/code\u003e\u003c/a\u003e feat: add time constants to support more readable values for windowMs (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/655\"\u003e#655\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/863e730c2f61e97e45315a7db8be42fc088d5234\"\u003e\u003ccode\u003e863e730\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump the development-dependencies group with 3 updates (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/657\"\u003e#657\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/e0e711e4c05b98d136203147cb811129fba79f81\"\u003e\u003ccode\u003ee0e711e\u003c/code\u003e\u003c/a\u003e fix: correct wording in usage documentation for express-rate-limit (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/656\"\u003e#656\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/fcd3aa7d5eef9d78a3609142491e9dbb4ba7d338\"\u003e\u003ccode\u003efcd3aa7\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump the development-dependencies group with 3 updates (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/651\"\u003e#651\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/99d4298bda0d9cd11ba4a1d518cabc22ec74d241\"\u003e\u003ccode\u003e99d4298\u003c/code\u003e\u003c/a\u003e feat: use \u003ccode\u003edebug\u003c/code\u003e for debug logging (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/641\"\u003e#641\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/commit/23e4ddef557f300a3a6d759ab7af7de44f21ab4f\"\u003e\u003ccode\u003e23e4dde\u003c/code\u003e\u003c/a\u003e feat: Run validations once each (\u003ca href=\"https://redirect.github.com/express-rate-limit/express-rate-limit/issues/650\"\u003e#650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/express-rate-limit/express-rate-limit/compare/v8.5.2...v8.6.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `helmet` from 8.2.0 to 8.3.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/helmetjs/helmet/blob/main/CHANGELOG.md\"\u003ehelmet's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.3.0 - 2026-07-11\u003c/h2\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eContent-Security-Policy\u003c/code\u003e: improved performance by ~7% when there are no dynamic directives\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eContent-Security-Policy\u003c/code\u003e: improved error handling for invalid directive names\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eContent-Security-Policy\u003c/code\u003e: \u003ccode\u003euseDefaults: false\u003c/code\u003e with no directives is no longer valid, both at runtime and the type level\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eContent-Security-Policy\u003c/code\u003e: dynamically-computed directive values would \u003ccode\u003ethrow\u003c/code\u003e, not call \u003ccode\u003enext\u003c/code\u003e, when invalid\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eContent-Security-Policy\u003c/code\u003e: dynamically-computed directive value entries would \u003ccode\u003ethrow\u003c/code\u003e, not call \u003ccode\u003enext\u003c/code\u003e, when function threw\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/75f1a98ec3cf092cc985985efcc0479265c9fe32\"\u003e\u003ccode\u003e75f1a98\u003c/code\u003e\u003c/a\u003e 8.3.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/f03f70da21409f525f90418a049ae7222261e9a2\"\u003e\u003ccode\u003ef03f70d\u003c/code\u003e\u003c/a\u003e Update changelog for 8.3.0 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/a307fce3b8714e7dfddba6a6979317dc8bc2e373\"\u003e\u003ccode\u003ea307fce\u003c/code\u003e\u003c/a\u003e Fix capitalization in CSP package changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/5347b43be7e340f3cd3407ba2d156a771cf9c371\"\u003e\u003ccode\u003e5347b43\u003c/code\u003e\u003c/a\u003e Format default CSP in README for readability\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/9afc570f67615f48bf8634ea75ad5e0b204f856b\"\u003e\u003ccode\u003e9afc570\u003c/code\u003e\u003c/a\u003e CSP: fix middleware-specific README missing link\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/266c95ca6541f0627e4622d0b6844c9e24108b85\"\u003e\u003ccode\u003e266c95c\u003c/code\u003e\u003c/a\u003e Minor speedups to project setups test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/7a4196c3d9f2efdaeada5e18243bd974262505ee\"\u003e\u003ccode\u003e7a4196c\u003c/code\u003e\u003c/a\u003e CSP: update package-specific changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/02716b4b7dc5099fe3c21bb1a89f954404632180\"\u003e\u003ccode\u003e02716b4\u003c/code\u003e\u003c/a\u003e CSP: improve performance when there are no dynamic directives\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/3f511ed75fa12dd456e5338dc7a9b578b5aafac1\"\u003e\u003ccode\u003e3f511ed\u003c/code\u003e\u003c/a\u003e CSP: move utility functions to separate file\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/80338af26325af6d47b0cfd5a4a43a5be52c3973\"\u003e\u003ccode\u003e80338af\u003c/code\u003e\u003c/a\u003e CSP: disabling defaults with no directives is now an error\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/helmetjs/helmet/compare/v8.2.0...v8.3.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ioredis` from 5.11.0 to 5.11.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/luin/ioredis/releases\"\u003eioredis's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.11.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/luin/ioredis/compare/v5.11.0...v5.11.1\"\u003e5.11.1\u003c/a\u003e (2026-06-04)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecluster:\u003c/strong\u003e reconnect to nodes that restart without slot changes (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2096\"\u003e#2096\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/c84b2ee97fd7b25d8f6ef8b509c228a602f47cca\"\u003ec84b2ee\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse protocol-relative Redis URLs as TCP connections (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2125\"\u003e#2125\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/131ee24173380b986e62ecc428ddde82be12bc40\"\u003e131ee24\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/redis/ioredis/blob/main/CHANGELOG.md\"\u003eioredis's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/luin/ioredis/compare/v5.11.0...v5.11.1\"\u003e5.11.1\u003c/a\u003e (2026-06-04)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecluster:\u003c/strong\u003e reconnect to nodes that restart without slot changes (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2096\"\u003e#2096\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/c84b2ee97fd7b25d8f6ef8b509c228a602f47cca\"\u003ec84b2ee\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse protocol-relative Redis URLs as TCP connections (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2125\"\u003e#2125\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/131ee24173380b986e62ecc428ddde82be12bc40\"\u003e131ee24\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/redis/ioredis/commit/fb224a7609b6d25959e06e31fdab2460d1f75691\"\u003e\u003ccode\u003efb224a7\u003c/code\u003e\u003c/a\u003e chore(release): 5.11.1 [skip ci]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/redis/ioredis/commit/131ee24173380b986e62ecc428ddde82be12bc40\"\u003e\u003ccode\u003e131ee24\u003c/code\u003e\u003c/a\u003e fix: parse protocol-relative Redis URLs as TCP connections (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2125\"\u003e#2125\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/redis/ioredis/commit/c84b2ee97fd7b25d8f6ef8b509c228a602f47cca\"\u003e\u003ccode\u003ec84b2ee\u003c/code\u003e\u003c/a\u003e fix(cluster): reconnect to nodes that restart without slot changes (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2096\"\u003e#2096\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/luin/ioredis/compare/v5.11.0...v5.11.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `morgan` from 1.10.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `pg` from 8.21.0 to 8.22.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/brianc/node-postgres/blob/master/CHANGELOG.md\"\u003epg's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003epg@8.22.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd support for \u003ca href=\"https://redirect.github.com/brianc/node-postgres/pull/3688\"\u003esslnegotiation=direct\u003c/a\u003e for PostgreSQL 17+.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/b617619f9fb6fbd231731823e2732a2927ded4be\"\u003e\u003ccode\u003eb617619\u003c/code\u003e\u003c/a\u003e Publish\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/d80b2612fbe83ed8234637f20b943d85e4331094\"\u003e\u003ccode\u003ed80b261\u003c/code\u003e\u003c/a\u003e Update docs \u0026amp; changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/835fb83ab9e1cf30fa8367ba42bd633720d71832\"\u003e\u003ccode\u003e835fb83\u003c/code\u003e\u003c/a\u003e Fix error handling for exceptions on values parsing. (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3574\"\u003e#3574\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/f49ab4a9795ae0866409f9bfe52a68b4f65ef024\"\u003e\u003ccode\u003ef49ab4a\u003c/code\u003e\u003c/a\u003e fix: correct spelling mistakes across codebase (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3692\"\u003e#3692\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/d7175a4aa0347b7416109e9ecc61d4d235486d0e\"\u003e\u003ccode\u003ed7175a4\u003c/code\u003e\u003c/a\u003e Expand CI matrix of PG versions and add direct SSL test (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3693\"\u003e#3693\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/882fc308cce7bf136cd1448e00395f760dad3e00\"\u003e\u003ccode\u003e882fc30\u003c/code\u003e\u003c/a\u003e Add support for sslnegotiation=direct (PostgreSQL 17) (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3688\"\u003e#3688\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/brianc/node-postgres/commits/pg@8.22.0/packages/pg\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `typeorm` from 1.0.0 to 1.1.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typeorm/typeorm/releases\"\u003etypeorm's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.1.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore(legacy-naming-strategies): bump to 1.0.0 by \u003ca href=\"https://github.com/michaelbromley\"\u003e\u003ccode\u003e@​michaelbromley\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12518\"\u003etypeorm/typeorm#12518\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs(blog): create v1 post by \u003ca href=\"https://github.com/naorpeled\"\u003e\u003ccode\u003e@​naorpeled\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12364\"\u003etypeorm/typeorm#12364\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs(data-source): clarify extra option as driver-native escape hatch by \u003ca href=\"https://github.com/naorpeled\"\u003e\u003ccode\u003e@​naorpeled\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12368\"\u003etypeorm/typeorm#12368\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump github/codeql-action from 4.35.4 to 4.35.5 in the github-actions-official group by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12528\"\u003etypeorm/typeorm#12528\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump ws from 8.20.0 to 8.20.1 in /docs by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12515\"\u003etypeorm/typeorm#12515\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump webpack-dev-server from 5.2.3 to 5.2.4 in /docs by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12516\"\u003etypeorm/typeorm#12516\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the github-actions-third-party group across 1 directory with 2 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12529\"\u003etypeorm/typeorm#12529\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: make Postgres custom extension installation test reusable locally by \u003ca href=\"https://github.com/OSA413\"\u003e\u003ccode\u003e@​OSA413\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12538\"\u003etypeorm/typeorm#12538\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump uuid from 10.0.0 to 11.1.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12536\"\u003etypeorm/typeorm#12536\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump github/codeql-action from 4.35.5 to 4.36.0 in the github-actions-official group by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12550\"\u003etypeorm/typeorm#12550\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(persistence): preserve select false columns on the in-memory entity after save() by \u003ca href=\"https://github.com/tada5hi\"\u003e\u003ccode\u003e@​tada5hi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12501\"\u003etypeorm/typeorm#12501\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the github-actions-official group with 2 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12561\"\u003etypeorm/typeorm#12561\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(cache): release query runner on error in storeInCache by \u003ca href=\"https://github.com/francisjohnjohnston-web\"\u003e\u003ccode\u003e@​francisjohnjohnston-web\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12545\"\u003etypeorm/typeorm#12545\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add PR triage workflow for issue linkage and duplicate detection by \u003ca href=\"https://github.com/smith-xyz\"\u003e\u003ccode\u003e@​smith-xyz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12469\"\u003etypeorm/typeorm#12469\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: multiple recursive cte problems by \u003ca href=\"https://github.com/twooster\"\u003e\u003ccode\u003e@​twooster\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12490\"\u003etypeorm/typeorm#12490\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: correct grammar in AlreadyHasActiveConnectionError message by \u003ca href=\"https://github.com/DucMinhNe\"\u003e\u003ccode\u003e@​DucMinhNe\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12554\"\u003etypeorm/typeorm#12554\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: normalization of FindOptionsWhere for arrays and Buffers by \u003ca href=\"https://github.com/alumni\"\u003e\u003ccode\u003e@​alumni\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12577\"\u003etypeorm/typeorm#12577\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump github/codeql-action from 4.36.1 to 4.36.2 in the github-actions-official group across 1 directory by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12572\"\u003etypeorm/typeorm#12572\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: rename github-issue 7558 test file name by \u003ca href=\"https://github.com/Cprakhar\"\u003e\u003ccode\u003e@​Cprakhar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12581\"\u003etypeorm/typeorm#12581\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(postgres): improve normalizeDatetimeFunction for tstzrange data type by \u003ca href=\"https://github.com/Cprakhar\"\u003e\u003ccode\u003e@​Cprakhar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12182\"\u003etypeorm/typeorm#12182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(mongodb): use cursor.transform for doc to entity transformation and skip load broadcast in next if toArray  by \u003ca href=\"https://github.com/Cprakhar\"\u003e\u003ccode\u003e@​Cprakhar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/11926\"\u003etypeorm/typeorm#11926\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(query-builder): wrap inner joins under left joins correctly by \u003ca href=\"https://github.com/harm-less\"\u003e\u003ccode\u003e@​harm-less\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/11137\"\u003etypeorm/typeorm#11137\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add healthcheck for oracle by \u003ca href=\"https://github.com/Cprakhar\"\u003e\u003ccode\u003e@​Cprakhar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12591\"\u003etypeorm/typeorm#12591\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(tree-entity): tree entity schema propagation in internal TreeRepository methods by \u003ca href=\"https://github.com/xEverth\"\u003e\u003ccode\u003e@​xEverth\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12590\"\u003etypeorm/typeorm#12590\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the github-actions-third-party group across 1 directory with 2 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12589\"\u003etypeorm/typeorm#12589\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: support distinct count by \u003ca href=\"https://github.com/Cprakhar\"\u003e\u003ccode\u003e@​Cprakhar\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/11965\"\u003etypeorm/typeorm#11965\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump serialize-javascript from 6.0.2 to 7.0.5 (via audit fix) in /packages/codemod by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12534\"\u003etypeorm/typeorm#12534\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: move hashing function to PlatformTools by \u003ca href=\"https://github.com/alumni\"\u003e\u003ccode\u003e@​alumni\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12648\"\u003etypeorm/typeorm#12648\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: remove require() calls that break bundlers by \u003ca href=\"https://github.com/alumni\"\u003e\u003ccode\u003e@​alumni\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12647\"\u003etypeorm/typeorm#12647\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(query-builder): reject empty where criteria on update and delete operations by \u003ca href=\"https://github.com/naorpeled\"\u003e\u003ccode\u003e@​naorpeled\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12629\"\u003etypeorm/typeorm#12629\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: improve pr triage script by \u003ca href=\"https://github.com/smith-xyz\"\u003e\u003ccode\u003e@​smith-xyz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12677\"\u003etypeorm/typeorm#12677\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: update dependencies by \u003ca href=\"https://github.com/alumni\"\u003e\u003ccode\u003e@​alumni\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12678\"\u003etypeorm/typeorm#12678\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(entity-manager): default invalidWhereValuesBehavior to throw on the write path by \u003ca href=\"https://github.com/naorpeled\"\u003e\u003ccode\u003e@​naorpeled\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12690\"\u003etypeorm/typeorm#12690\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(entity-manager): validate where criteria in increment/decrement by \u003ca href=\"https://github.com/naorpeled\"\u003e\u003ccode\u003e@​naorpeled\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12692\"\u003etypeorm/typeorm#12692\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(release): prepare v1.1.0 by \u003ca href=\"https://github.com/alumni\"\u003e\u003ccode\u003e@​alumni\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12697\"\u003etypeorm/typeorm#12697\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/francisjohnjohnston-web\"\u003e\u003ccode\u003e@​francisjohnjohnston-web\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12545\"\u003etypeorm/typeorm#12545\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/twooster\"\u003e\u003ccode\u003e@​twooster\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12490\"\u003etypeorm/typeorm#12490\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/DucMinhNe\"\u003e\u003ccode\u003e@​DucMinhNe\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12554\"\u003etypeorm/typeorm#12554\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/xEverth\"\u003e\u003ccode\u003e@​xEverth\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/typeorm/typeorm/pull/12590\"\u003etypeorm/typeorm#12590\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/typeorm/typeorm/compare/1.0.0...1.1.0\"\u003ehttps://github.com/typeorm/typeorm/compare/1.0.0...1.1.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typeorm/typeorm/blob/master/CHANGELOG.md\"\u003etypeorm's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/typeorm/typeorm/compare/1.0.0...1.1.0\"\u003e1.1.0\u003c/a\u003e (2026-07-13)\u003c/h1\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecache:\u003c/strong\u003e release query runner on error in storeInCache (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12545\"\u003e#12545\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/a84b9b3d39c44cc0e5809b4680a5f046bda602cd\"\u003ea84b9b3\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ecorrect grammar in AlreadyHasActiveConnectionError message (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12554\"\u003e#12554\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/304d1290a4b6bd47d7d38269bae6a8514f378c9c\"\u003e304d129\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eentity-manager:\u003c/strong\u003e default invalidWhereValuesBehavior to throw on the write path (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12690\"\u003e#12690\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/44d8052ba4d226364c26e722826340d4ceb1419b\"\u003e44d8052\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eentity-manager:\u003c/strong\u003e validate where criteria in increment/decrement (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12692\"\u003e#12692\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/8a51b756bf31c885da1e1d92cb17d94819c7040a\"\u003e8a51b75\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003emongodb:\u003c/strong\u003e use cursor.transform for doc to entity transformation and skip load broadcast in next if toArray (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/11926\"\u003e#11926\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/0bbefc914ef69b3826a4a2075b0b008c9a02e807\"\u003e0bbefc9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003emove hashing function to PlatformTools (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12648\"\u003e#12648\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/c456cbd5d40aa2e797314bd202956449f64efbac\"\u003ec456cbd\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003emultiple recursive cte problems (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12490\"\u003e#12490\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/7c26654f430a7190c331242d68e75111fb334ea3\"\u003e7c26654\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003enormalization of FindOptionsWhere for arrays and Buffers (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12577\"\u003e#12577\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/a8173fcdf325c44bf3eb2101c6318b45c573102b\"\u003ea8173fc\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003epersistence:\u003c/strong\u003e preserve select false columns on the in-memory entity after save() (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12501\"\u003e#12501\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/324c46cd8669270dd5f22173cd78a7cab591349c\"\u003e324c46c\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003epostgres:\u003c/strong\u003e improve normalizeDatetimeFunction for tstzrange data type (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12182\"\u003e#12182\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/bf47c9f1171b15523292e8914cfbdcfee542ef07\"\u003ebf47c9f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003equery-builder:\u003c/strong\u003e reject empty where criteria on update and delete operations (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12629\"\u003e#12629\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/81b946625d84bcf3ce720fea7d406003270169ee\"\u003e81b9466\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003equery-builder:\u003c/strong\u003e wrap inner joins under left joins correctly (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/11137\"\u003e#11137\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/d5f4b9d7e0f0aca63a9dd66e7ae26a15f7e8eee0\"\u003ed5f4b9d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eremove \u003ccode\u003erequire()\u003c/code\u003e calls that break bundlers (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12647\"\u003e#12647\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/30f9fc717bcfaa472d56680437105a6b9581014d\"\u003e30f9fc7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etree-entity:\u003c/strong\u003e tree entity schema propagation in internal TreeRepository methods (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12590\"\u003e#12590\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/7fb7c2c7c30d57489921eed458dfb97a5d08d4b8\"\u003e7fb7c2c\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003esupport distinct count (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/11965\"\u003e#11965\u003c/a\u003e) (\u003ca href=\"https://github.com/typeorm/typeorm/commit/cca26a919f3ee5afda5af0f835e10629bcc378d1\"\u003ecca26a9\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/8748b1be17bf93fc9b62b3444e411e9055e9e017\"\u003e\u003ccode\u003e8748b1b\u003c/code\u003e\u003c/a\u003e chore(release): prepare v1.1.0 (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12697\"\u003e#12697\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/0caca21bed8ff3509d77dfee8d53edcc92d3c980\"\u003e\u003ccode\u003e0caca21\u003c/code\u003e\u003c/a\u003e style(test): format migration test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/41d1c62fe49f99c3ca916d4d986f61ee9f45d519\"\u003e\u003ccode\u003e41d1c62\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/8a51b756bf31c885da1e1d92cb17d94819c7040a\"\u003e\u003ccode\u003e8a51b75\u003c/code\u003e\u003c/a\u003e fix(entity-manager): validate where criteria in increment/decrement (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12692\"\u003e#12692\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/44d8052ba4d226364c26e722826340d4ceb1419b\"\u003e\u003ccode\u003e44d8052\u003c/code\u003e\u003c/a\u003e fix(entity-manager): default invalidWhereValuesBehavior to throw on the write...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/af5f2a5f2ab159a69606aa120e588922d2dc1ac0\"\u003e\u003ccode\u003eaf5f2a5\u003c/code\u003e\u003c/a\u003e chore: update dependencies (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12678\"\u003e#12678\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/f5c6aa3bfe9ca402e595cbced6e48cd65ec2bea5\"\u003e\u003ccode\u003ef5c6aa3\u003c/code\u003e\u003c/a\u003e ci: improve pr triage script (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12677\"\u003e#12677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/81b946625d84bcf3ce720fea7d406003270169ee\"\u003e\u003ccode\u003e81b9466\u003c/code\u003e\u003c/a\u003e fix(query-builder): reject empty where criteria on update and delete operatio...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/30f9fc717bcfaa472d56680437105a6b9581014d\"\u003e\u003ccode\u003e30f9fc7\u003c/code\u003e\u003c/a\u003e fix: remove \u003ccode\u003erequire()\u003c/code\u003e calls that break bundlers (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12647\"\u003e#12647\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typeorm/typeorm/commit/c456cbd5d40aa2e797314bd202956449f64efbac\"\u003e\u003ccode\u003ec456cbd\u003c/code\u003e\u003c/a\u003e fix: move hashing function to PlatformTools (\u003ca href=\"https://redirect.github.com/typeorm/typeorm/issues/12648\"\u003e#12648\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/typeorm/typeorm/compare/1.0.0...1.1.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@biomejs/biome` from 2.4.16 to 2.5.4\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/biomejs/biome/releases\"\u003e@​biomejs/biome's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eBiome CLI v2.5.4\u003c/h2\u003e\n\u003ch2\u003e2.5.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10665\"\u003e#10665\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/55ff995098148446b7e7fdfc19053902bb987122\"\u003e\u003ccode\u003e55ff995\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/dyc3\"\u003e\u003ccode\u003e@​dyc3\u003c/code\u003e\u003c/a\u003e! - Improved the performance of the HTML parser slightly in our synthetic benchmarks.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10894\"\u003e#10894\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/f4fb10e176e537e8ce2cac0c3fd4c38a77f91886\"\u003e\u003ccode\u003ef4fb10e\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/6392\"\u003e#6392\u003c/a\u003e: On-type formatting no longer moves comments before an \u003ccode\u003eif\u003c/code\u003e statement into its body.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10939\"\u003e#10939\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/f2799db38e3d8a644207d9b8f957abea6cb3d9fa\"\u003e\u003ccode\u003ef2799db\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/Netail\"\u003e\u003ccode\u003e@​Netail\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10930\"\u003e#10930\u003c/a\u003e: \u003ca href=\"https://biomejs.dev/linter/rules/no-label-without-control/\"\u003e\u003ccode\u003enoLabelWithoutControl\u003c/code\u003e\u003c/a\u003e now correctly detects text interpolation in Astro, Svelte \u0026amp; Vue as valid accessible content.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10945\"\u003e#10945\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/ae15d98bbf2222fbb34e3e31832cba9676a6d01c\"\u003e\u003ccode\u003eae15d98\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/Netail\"\u003e\u003ccode\u003e@​Netail\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10942\"\u003e#10942\u003c/a\u003e: Svelte directives don't throw an accidental debug log anymore.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10842\"\u003e#10842\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/5e1abfee59155b5fdca8813314371ed54c06acfb\"\u003e\u003ccode\u003e5e1abfe\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/JamBalaya56562\"\u003e\u003ccode\u003e@​JamBalaya56562\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/9196\"\u003e#9196\u003c/a\u003e: \u003ccode\u003ebiome check --write --unsafe\u003c/code\u003e no longer hangs forever when applying the \u003ca href=\"https://biomejs.dev/linter/rules/no-comment-text/\"\u003e\u003ccode\u003enoCommentText\u003c/code\u003e\u003c/a\u003e code fix.\u003c/p\u003e\n\u003cp\u003eThe rule's fix now wraps the comment in a real JSX expression container (\u003ccode\u003e{/* comment */}\u003c/code\u003e) instead of re-inserting the braces as plain JSX text, so the fixed code is no longer reported again by the same rule.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10891\"\u003e#10891\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/ecca79e8ff10f40aa676212c0db0a970c6091615\"\u003e\u003ccode\u003eecca79e\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10885\"\u003e\u003ccode\u003e[#10885](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10885)\u003c/code\u003e\u003c/a\u003e: prevented a module-inference regression introduced by a housekeeping change.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10886\"\u003e#10886\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/60c8043527f7ccc7b505471e1042f2a4324e4d31\"\u003e\u003ccode\u003e60c8043\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/dyc3\"\u003e\u003ccode\u003e@​dyc3\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10727\"\u003e#10727\u003c/a\u003e: Biome now breaks the arguments of curried \u003ccode\u003etest.each\u003c/code\u003e, \u003ccode\u003eit.each\u003c/code\u003e, \u003ccode\u003edescribe.each\u003c/code\u003e, and \u003ccode\u003etest.for\u003c/code\u003e calls when they exceed the configured line width.\u003c/p\u003e\n\u003cpre lang=\"diff\"\u003e\u003ccode\u003e- test.each([[1, 2]])(\u0026quot;a description that is long enough to push the hugged opening line beyond the print width\u0026quot;, (a, b) =\u0026gt; {\n-   expect(a).toBe(b);\n- });\n+ test.each([[1, 2]])(\n+   \u0026quot;a description that is long enough to push the hugged opening line beyond the print width\u0026quot;,\n+   (a, b) =\u0026gt; {\n+     expect(a).toBe(b);\n+   },\n+ );\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10895\"\u003e#10895\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/01a85f04b09f0af05b16a15c137421e312ceada5\"\u003e\u003ccode\u003e01a85f0\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e! - Biome will now remove stale Unix daemon sockets from older Biome versions when starting a newer daemon.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(yml/fmt): basic block properties by \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10873\"\u003ebiomejs/biome#10873\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(useSortedClasses): sort important-suffix classes in sort_v4 by \u003ca href=\"https://github.com/johncarmack1984\"\u003e\u003ccode\u003e@​johncarmack1984\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10880\"\u003ebiomejs/biome#10880\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(format/js): wrap curried test each calls by \u003ca href=\"https://github.com/dyc3\"\u003e\u003ccode\u003e@​dyc3\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10886\"\u003ebiomejs/biome#10886\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(markdown): parse whitespace after list markers by \u003ca href=\"https://github.com/tidefield\"\u003e\u003ccode\u003e@​tidefield\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10869\"\u003ebiomejs/biome#10869\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(inference): use correct function when cloning data by \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10891\"\u003ebiomejs/biome#10891\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs(noDuplicateProperties): note that \u003ca href=\"https://github.com/keyframes\"\u003e\u003ccode\u003e@​keyframes\u003c/code\u003e\u003c/a\u003e declarations are ignored by \u003ca href=\"https://github.com/dfedoryshchev\"\u003e\u003ccode\u003e@​dfedoryshchev\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10893\"\u003ebiomejs/biome#10893\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(lint): prevent noCommentText fix from looping forever by \u003ca href=\"https://github.com/JamBalaya56562\"\u003e\u003ccode\u003e@​JamBalaya56562\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10842\"\u003ebiomejs/biome#10842\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(core): cleanup old sockets in Unix by \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10895\"\u003ebiomejs/biome#10895\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(inference): inference engine via salsa by \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10888\"\u003ebiomejs/biome#10888\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): update dependency \u003ccode\u003e@​types/node\u003c/code\u003e to v24.13.3 by \u003ca href=\"https://github.com/renovate\"\u003e\u003ccode\u003e@​renovate\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10920\"\u003ebiomejs/biome#10920\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): update github-actions by \u003ca href=\"https://github.com/renovate\"\u003e\u003ccode\u003e@​renovate\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10921\"\u003ebiomejs/biome#10921\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/biomejs/biome/blob/main/packages/@biomejs/biome/CHANGELOG.md\"\u003e@​biomejs/biome's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.5.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10665\"\u003e#10665\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/55ff995098148446b7e7fdfc19053902bb987122\"\u003e\u003ccode\u003e55ff995\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/dyc3\"\u003e\u003ccode\u003e@​dyc3\u003c/code\u003e\u003c/a\u003e! - Improved the performance of the HTML parser slightly in our synthetic benchmarks.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10894\"\u003e#10894\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/f4fb10e176e537e8ce2cac0c3fd4c38a77f91886\"\u003e\u003ccode\u003ef4fb10e\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/6392\"\u003e#6392\u003c/a\u003e: On-type formatting no longer moves comments before an \u003ccode\u003eif\u003c/code\u003e statement into its body.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10939\"\u003e#10939\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/f2799db38e3d8a644207d9b8f957abea6cb3d9fa\"\u003e\u003ccode\u003ef2799db\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/Netail\"\u003e\u003ccode\u003e@​Netail\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10930\"\u003e#10930\u003c/a\u003e: \u003ca href=\"https://biomejs.dev/linter/rules/no-label-without-control/\"\u003e\u003ccode\u003enoLabelWithoutControl\u003c/code\u003e\u003c/a\u003e now correctly detects text interpolation in Astro, Svelte \u0026amp; Vue as valid accessible content.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10945\"\u003e#10945\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/ae15d98bbf2222fbb34e3e31832cba9676a6d01c\"\u003e\u003ccode\u003eae15d98\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/Netail\"\u003e\u003ccode\u003e@​Netail\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10942\"\u003e#10942\u003c/a\u003e: Svelte directives don't throw an accidental debug log anymore.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10842\"\u003e#10842\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/5e1abfee59155b5fdca8813314371ed54c06acfb\"\u003e\u003ccode\u003e5e1abfe\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/JamBalaya56562\"\u003e\u003ccode\u003e@​JamBalaya56562\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/9196\"\u003e#9196\u003c/a\u003e: \u003ccode\u003ebiome check --write --unsafe\u003c/code\u003e no longer hangs forever when applying the \u003ca href=\"https://biomejs.dev/linter/rules/no-comment-text/\"\u003e\u003ccode\u003enoCommentText\u003c/code\u003e\u003c/a\u003e code fix.\u003c/p\u003e\n\u003cp\u003eThe rule's fix now wraps the comment in a real JSX expression container (\u003ccode\u003e{/* comment */}\u003c/code\u003e) instead of re-inserting the braces as plain JSX text, so the fixed code is no longer reported again by the same rule.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10891\"\u003e#10891\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/ecca79e8ff10f40aa676212c0db0a970c6091615\"\u003e\u003ccode\u003eecca79e\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10885\"\u003e\u003ccode\u003e[#10885](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10885)\u003c/code\u003e\u003c/a\u003e: prevented a module-inference regression introduced by a housekeeping change.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10886\"\u003e#10886\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/60c8043527f7ccc7b505471e1042f2a4324e4d31\"\u003e\u003ccode\u003e60c8043\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/dyc3\"\u003e\u003ccode\u003e@​dyc3\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10727\"\u003e#10727\u003c/a\u003e: Biome now breaks the arguments of curried \u003ccode\u003etest.each\u003c/code\u003e, \u003ccode\u003eit.each\u003c/code\u003e, \u003ccode\u003edescribe.each\u003c/code\u003e, and \u003ccode\u003etest.for\u003c/code\u003e calls when they exceed the configured line width.\u003c/p\u003e\n\u003cpre lang=\"diff\"\u003e\u003ccode\u003e- test.each([[1, 2]])(\u0026quot;a description that is long enough to push the hugged opening line beyond the print width\u0026quot;, (a, b) =\u0026gt; {\n-   expect(a).toBe(b);\n- });\n+ test.each([[1, 2]])(\n+   \u0026quot;a description that is long enough to push the hugged opening line beyond the print width\u0026quot;,\n+   (a, b) =\u0026gt; {\n+     expect(a).toBe(b);\n+   },\n+ );\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10895\"\u003e#10895\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/01a85f04b09f0af05b16a15c137421e312ceada5\"\u003e\u003ccode\u003e01a85f0\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e! - Biome will now remove stale Unix daemon sockets from older Biome versions when starting a newer daemon.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.5.3\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10815\"\u003e#10815\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/86613d5b01eb965b460ccefbf27f168d87774aaf\"\u003e\u003ccode\u003e86613d5\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/WaterWhisperer\"\u003e\u003ccode\u003e@​WaterWhisperer\u003c/code\u003e\u003c/a\u003e! - Fixed a parser panic reported in \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10708\"\u003e#10708\u003c/a\u003e: Biome now recovers when unsupported CSS Modules \u003ccode\u003e@value\u003c/code\u003e rules or scoped \u003ccode\u003e@keyframes\u003c/code\u003e names end at EOF.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10534\"\u003e#10534\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/da9b403b6bbacc8d75d56e327a46f4ed0285913e\"\u003e\u003ccode\u003eda9b403\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/Mokto\"\u003e\u003ccode\u003e@​Mokto\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://biomejs.dev/linter/rules/no-unused-variables/\"\u003e\u003ccode\u003enoUnusedVariables\u003c/code\u003e\u003c/a\u003e false positives in Svelte files: Svelte store subscriptions (\u003ccode\u003e$store\u003c/code\u003e references in templates now keep the underlying \u003ccode\u003estore\u003c/code\u003e binding from being flagged), and \u003ccode\u003e$bindable()\u003c/code\u003e props that are only written to in the script block (write-only is intentional for bindable props) are no longer reported as unused.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10827\"\u003e#10827\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/098ba41c99e6efaac8eb182eec258a567bb00123\"\u003e\u003ccode\u003e098ba41\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/Aqu1bp\"\u003e\u003ccode\u003e@​Aqu1bp\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10698\"\u003e#10698\u003c/a\u003e: The \u003ca href=\"https://biomejs.dev/linter/rules/no-unsafe-optional-chaining/\"\u003e\u003ccode\u003enoUnsafeOptionalChaining\u003c/code\u003e\u003c/a\u003e rule now reports unsafe optional chains wrapped in TypeScript \u003ccode\u003eas\u003c/code\u003e, \u003ccode\u003esatisfies\u003c/code\u003e, type assertion, and instantiation expressions, such as \u003ccode\u003enew (value?.constructor as Constructor)()\u003c/code\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10773\"\u003e#10773\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/3c6513d4e9a82a195785144caa9d96093c3861ff\"\u003e\u003ccode\u003e3c6513d\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/otkrickey\"\u003e\u003ccode\u003e@​otkrickey\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10772\"\u003e#10772\u003c/a\u003e: \u003ca href=\"https://biomejs.dev/linter/rules/use-vue-valid-v-on/\"\u003e\u003ccode\u003euseVueValidVOn\u003c/code\u003e\u003c/a\u003e no longer reports a missing handler for v-on directives using a verb modifier (\u003ccode\u003e.stop\u003c/code\u003e / \u003ccode\u003e.prevent\u003c/code\u003e) without an expression, e.g. \u003ccode\u003e\u0026lt;div @click.stop\u0026gt;\u0026lt;/div\u0026gt;\u003c/code\u003e. The rule also accepts the arg-less object syntax \u003ccode\u003e\u0026lt;div v-on=\u0026quot;$listeners\u0026quot;\u0026gt;\u0026lt;/div\u0026gt;\u003c/code\u003e instead of reporting a missing event name.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10721\"\u003e#10721\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/d83c66b39a820703d94100f8a6502cc6dbad26a1\"\u003e\u003ccode\u003ed83c66b\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/minseong0324\"\u003e\u003ccode\u003e@​minseong0324\u003c/code\u003e\u003c/a\u003e! - Improved type-aware lint rule inference for built-in globals and indexed function calls. Biome now resolves \u003ccode\u003eError(...)\u003c/code\u003e, \u003ccode\u003enew Error(...)\u003c/code\u003e, optional \u003ccode\u003eError#stack\u003c/code\u003e, and calls through indexed function values such as \u003ccode\u003ehandlers[0](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/0)\u003c/code\u003e more accurately.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/biomejs/biome/pull/10865\"\u003e#10865\u003c/a\u003e \u003ca href=\"https://github.com/biomejs/biome/commit/6450276764ee4794a0fcb46c139f95b68d892427\"\u003e\u003ccode\u003e6450276\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/ematipico\"\u003e\u003ccode\u003e@​ematipico\u003c/code\u003e\u003c/a\u003e! - Fixed \u003ca href=\"https://redirect.github.com/biomejs/biome/issues/10845\"\u003e#10845\u003c/a\u003e. Biome Language Server no longer goes in deadlock when the scanner is enabled.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/bfc3f3d6981e0b5aa3269a253661cc5934c20331\"\u003e\u003ccode\u003ebfc3f3d\u003c/code\u003e\u003c/a\u003e ci: release (\u003ca href=\"https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10887\"\u003e#10887\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/9e1999f9936102b585e6f076794a27dcba16f6c9\"\u003e\u003ccode\u003e9e1999f\u003c/code\u003e\u003c/a\u003e chore: revert the revert\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/0b0fd8d5ec63ed26ee345c3b70635b8464af6c10\"\u003e\u003ccode\u003e0b0fd8d\u003c/code\u003e\u003c/a\u003e chore: revert\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/0afa35a968f1b541f2dd8405ec9678baed42d127\"\u003e\u003ccode\u003e0afa35a\u003c/code\u003e\u003c/a\u003e ci: release (\u003ca href=\"https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10817\"\u003e#10817\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/3447b2f5a3c430efc8e917514260af5341c5509d\"\u003e\u003ccode\u003e3447b2f\u003c/code\u003e\u003c/a\u003e feat(useDomQuerySelector): add ignore option (\u003ca href=\"https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10835\"\u003e#10835\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/e64919850ceb7571673b81665a54051510e84925\"\u003e\u003ccode\u003ee649198\u003c/code\u003e\u003c/a\u003e ci: release (\u003ca href=\"https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10747\"\u003e#10747\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/4a32b63eb41f144dc8faf6b5cdb05e1de5dbcb63\"\u003e\u003ccode\u003e4a32b63\u003c/code\u003e\u003c/a\u003e feat(lint): add ignorePrimitives option to useNullishCoalescing (\u003ca href=\"https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10798\"\u003e#10798\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/f3d4c0082676c5188e9a6aa516318c7e3d59bda6\"\u003e\u003ccode\u003ef3d4c00\u003c/code\u003e\u003c/a\u003e feat(js/nursery): add noSvelteNoUnnecessaryStateWrap rule (\u003ca href=\"https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10545\"\u003e#10545\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/f4580289094a8fe5c85252adc3399c060bab811e\"\u003e\u003ccode\u003ef458028\u003c/code\u003e\u003c/a\u003e feat(lint): add ignoreBooleanCoercion option to useNullishCoalescing (\u003ca href=\"https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome/issues/10595\"\u003e#10595\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/biomejs/biome/commit/ffe7d33212f7cb89162bb222ce29e3468b75488d\"\u003e\u003ccode\u003effe7d33\u003c/code\u003e\u003c/a\u003e chore: revert\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/biomejs/biome/commits/@biomejs/biome@2.5.4/packages/@biomejs/biome\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@faker-js/faker` from 10.4.0 to 10.5.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/faker-js/faker/releases\"\u003e@​faker-js/faker's r...\n\n_Description has been truncated_","html_url":"https://github.com/ndgkhoa/booking-platform-api/pull/19","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/ndgkhoa%2Fbooking-platform-api/issues/19","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/19/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-07-11T02:46:21.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4860174271","node_id":"PR_kwDOBna2287wbRgX","number":983,"state":"open","title":"build(deps): bump the npm_and_yarn group across 1 directory with 2 updates","user":"dependabot[bot]","labels":["javascript","size/XXL","🤖 bot","☑️ auto-merge","dependencies"],"assignees":["guibranco"],"locked":false,"comments_count":9,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-07-11T02:46:21.000Z","updated_at":"2026-07-11T11:50:43.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps): bump","group_name":"npm_and_yarn","update_count":2,"packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"ws","old_version":"8.20.1","new_version":"8.21.0","repository_url":"https://github.com/websockets/ws"}],"path":null,"ecosystem":"npm"},"body":"Bumps the npm_and_yarn group with 2 updates in the /examples/emberjs directory: [morgan](https://github.com/expressjs/morgan) and [ws](https://github.com/websockets/ws).\n\nUpdates `morgan` from 1.10.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ws` from 8.20.1 to 8.21.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/websockets/ws/releases\"\u003ews's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.21.0\u003c/h2\u003e\n\u003ch1\u003eFeatures\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eIntroduced the \u003ccode\u003emaxBufferedChunks\u003c/code\u003e and \u003ccode\u003emaxFragments\u003c/code\u003e options (2b2abd45).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eBug fixes\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eFixed a remote memory exhaustion DoS vulnerability (2b2abd45).\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eA high volume of tiny fragments and data chunks could be sent by a peer, using\nmodest network traffic, to crash a \u003ccode\u003ews\u003c/code\u003e server or client due to OOM.\u003c/p\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003eimport { WebSocket, WebSocketServer } from 'ws';\r\n\u003cp\u003econst wss = new WebSocketServer({ port: 0 }, function () {\nconst data = Buffer.alloc(1);\nconst options = { fin: false };\nconst { port } = wss.address();\nconst ws = new WebSocket(\u003ccode\u003ews://localhost:${port}\u003c/code\u003e);\u003c/p\u003e\n\u003cp\u003ews.on('open', function () {\n(function send() {\nws.send(data, options, function (err) {\nif (err) return;\nsend();\n});\n})();\n});\u003c/p\u003e\n\u003cp\u003ews.on('error', console.error);\nws.on('close', function (code, reason) {\nconsole.log(\u003ccode\u003eclient close - code: ${code} reason: ${reason.toString()}\u003c/code\u003e);\n});\n});\u003c/p\u003e\n\u003cp\u003ewss.on('connection', function (ws) {\nws.on('error', console.error);\nws.on('close', function (code, reason) {\nconsole.log(\u003ccode\u003eserver close - code: ${code} reason: ${reason.toString()}\u003c/code\u003e);\n});\n});\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003cp\u003eThe vulnerability was responsibly disclosed and fixed by \u003ca href=\"https://github.com/Nadav0077\"\u003eNadav Magier\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003eIn vulnerable versions, the issue can be mitigated by lowering the value of the\n\u003ccode\u003emaxPayload\u003c/code\u003e option if possible.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/websockets/ws/commit/bca91adf15677e47dbe4f959653452727be28b94\"\u003e\u003ccode\u003ebca91ad\u003c/code\u003e\u003c/a\u003e [dist] 8.21.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/websockets/ws/commit/2b2abd458a1b647d0b6033bd62a619c36189839a\"\u003e\u003ccode\u003e2b2abd4\u003c/code\u003e\u003c/a\u003e [security] Limit retained message parts\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/websockets/ws/commit/78eabe2a6677b231bf9c82601bde86ff91639490\"\u003e\u003ccode\u003e78eabe2\u003c/code\u003e\u003c/a\u003e [security] Add latest vulnerability to SECURITY.md\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/websockets/ws/compare/8.20.1...8.21.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/guibranco/BancosBrasileiros/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/guibranco/BancosBrasileiros/pull/983","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/guibranco%2FBancosBrasileiros/issues/983","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/983/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-07-11T00:22:46.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4859609708","node_id":"PR_kwDOPoaKoM7wZdHp","number":437,"state":"closed","title":"chore(deps-dev): bump morgan from 1.10.1 to 1.11.0","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":4,"pull_request":true,"closed_at":"2026-07-13T06:10:28.000Z","author_association":null,"state_reason":null,"created_at":"2026-07-11T00:22:46.000Z","updated_at":"2026-07-13T06:10:30.000Z","time_to_close":193662,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps-dev)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":null,"ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/deepnote/vscode-deepnote/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/deepnote/vscode-deepnote/pull/437","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/deepnote%2Fvscode-deepnote/issues/437","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/437/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-07-11T00:17:07.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4859582188","node_id":"PR_kwDORpblkc7wZXZ1","number":40,"state":"open","title":"Bump morgan from 1.10.1 to 1.11.0","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-07-11T00:17:07.000Z","updated_at":"2026-07-11T00:18:16.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":null,"ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/alialobidm/vscode-copilot-chat/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/alialobidm/vscode-copilot-chat/pull/40","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/alialobidm%2Fvscode-copilot-chat/issues/40","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/40/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":"/BackEnd","pr_created_at":"2026-07-11T00:01:58.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4859505974","node_id":"PR_kwDOQfLbCs7wZHTq","number":62,"state":"open","title":"chore(deps): bump morgan from 1.10.1 to 1.11.0 in /BackEnd","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-07-11T00:01:58.000Z","updated_at":"2026-07-11T00:02:11.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":"/BackEnd","ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/Dxbea/epion-clean/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/Dxbea/epion-clean/pull/62","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/Dxbea%2Fepion-clean/issues/62","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/62/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-07-10T23:28:55.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4859360391","node_id":"PR_kwDOCkCL5s7wYo4H","number":655,"state":"closed","title":"chore(deps-dev): bump morgan from 1.10.1 to 1.11.0","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-07-18T00:02:16.000Z","author_association":null,"state_reason":null,"created_at":"2026-07-10T23:28:55.000Z","updated_at":"2026-07-18T00:02:24.000Z","time_to_close":606801,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps-dev)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":null,"ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/johnpapa/vscode-peacock/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/johnpapa/vscode-peacock/pull/655","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/johnpapa%2Fvscode-peacock/issues/655","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/655/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":"/copilot/extension in the npm_and_yarn group across 1 directory","pr_created_at":"2026-07-10T22:08:12.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4858976755","node_id":"PR_kwDOPf23ns7wXbF8","number":5289,"state":"closed","title":"build(deps): bump morgan from 1.10.1 to 1.11.0 in /copilot/extension in the npm_and_yarn group across 1 directory","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":7,"pull_request":true,"closed_at":"2026-07-10T22:09:08.000Z","author_association":null,"state_reason":null,"created_at":"2026-07-10T22:08:12.000Z","updated_at":"2026-07-10T22:14:22.000Z","time_to_close":56,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":"/copilot/extension in the npm_and_yarn group across 1 directory","ecosystem":"npm"},"body":"Bumps the npm_and_yarn group with 1 update in the /copilot/extension directory: [morgan](https://github.com/expressjs/morgan).\n\nUpdates `morgan` from 1.10.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/Aries-Serpent/_codex_/network/alerts).\n\n\u003c/details\u003e\n\n\n\n**Summary**: 4 🔴 CRITICAL, 4 🟠 HIGH, 2 🟡 MEDIUM\n\n_Last scan: 2026-07-10T22:08:45Z_\n\n### Severity Distribution\n\n| Severity | Count | Tools | Trend |\n|----------|-------|-------|-------|\n| 🔴 CRITICAL | 4 | CodeQL, detect-secrets | ⚫ Unknown |\n| 🟠 HIGH | 4 | Bandit, Semgrep, pip-audit | ⚫ Unknown |\n| 🟡 MEDIUM | 2 | CodeQL, Semgrep | ⚫ Unknown |\n\n\n### Top Security Issues\n\n1. **[🔴 CRITICAL]** CWE-798: Hardcoded credentials in source code\n   - **File**: `codex/config.py:18`\n   - **Tool**: detect-secrets\n   - **Confidence**: 100%\n   - **Fix**: Move credentials to environment variables or secrets manager\n\n2. **[🔴 CRITICAL]** CWE-89: SQL Injection vulnerability in database queries\n   - **File**: `codex/db/queries.py:234`\n   - **Tool**: CodeQL\n   - **Confidence**: 99%\n   - **Fix**: Use parameterized queries or ORM with prepared statements\n\n3. **[🔴 CRITICAL]** CWE-79: Cross-site Scripting (XSS) vulnerability in user input handler\n   - **File**: `codex/cli.py:125`\n   - **Tool**: CodeQL\n   - **Confidence**: 98%\n   - **Fix**: Use html.escape() before HTML output or use a templating engine with auto-escaping\n\n4. **[🔴 CRITICAL]** CWE-502: Insecure deserialization of untrusted data\n   - **File**: `codex/serialization.py:87`\n   - **Tool**: CodeQL\n   - **Confidence**: 95%\n   - **Fix**: Use json.loads() instead of pickle.loads() for untrusted data\n\n5. **[🟠 HIGH]** CWE-22: Path Traversal vulnerability in file operations\n   - **File**: `codex/utils/file_ops.py:45`\n   - **Tool**: Semgrep\n   - **Confidence**: 92%\n   - **Fix**: Use pathlib.Path.resolve() with parent check to prevent directory traversal\n\n\n### Recommended Security Agents\n\n- **@codeql-alert-resolution-agent** (4 findings)\n  - Task: CodeQL security alerts\n- **@code-scanning-remediation-agent** (4 findings)\n  - Task: Semgrep policy violations\n- **@secret-detection-agent** (1 findings)\n  - Task: Leaked secrets/credentials\n- **@dependency-security-review-agent** (1 findings)\n  - Task: Dependency vulnerabilities\n\n---\n\n_For detailed analysis, see [Security Findings Report](.codex/security-findings-comprehensive.md) (if available)_\n\n## 🔐 Security Findings\n\n**Summary**: 4 🔴 CRITICAL, 4 🟠 HIGH, 2 🟡 MEDIUM\n\n_Last scan: 2026-07-10T22:10:14Z_\n\n### Severity Distribution\n\n| Severity | Count | Tools | Trend |\n|----------|-------|-------|-------|\n| 🔴 CRITICAL | 4 | CodeQL, detect-secrets | ⚫ Unknown |\n| 🟠 HIGH | 4 | Bandit, Semgrep, pip-audit | ⚫ Unknown |\n| 🟡 MEDIUM | 2 | CodeQL, Semgrep | ⚫ Unknown |\n\n\n### Top Security Issues\n\n1. **[🔴 CRITICAL]** CWE-798: Hardcoded credentials in source code\n   - **File**: `codex/config.py:18`\n   - **Tool**: detect-secrets\n   - **Confidence**: 100%\n   - **Fix**: Move credentials to environment variables or secrets manager\n\n2. **[🔴 CRITICAL]** CWE-89: SQL Injection vulnerability in database queries\n   - **File**: `codex/db/queries.py:234`\n   - **Tool**: CodeQL\n   - **Confidence**: 99%\n   - **Fix**: Use parameterized queries or ORM with prepared statements\n\n3. **[🔴 CRITICAL]** CWE-79: Cross-site Scripting (XSS) vulnerability in user input handler\n   - **File**: `codex/cli.py:125`\n   - **Tool**: CodeQL\n   - **Confidence**: 98%\n   - **Fix**: Use html.escape() before HTML output or use a templating engine with auto-escaping\n\n4. **[🔴 CRITICAL]** CWE-502: Insecure deserialization of untrusted data\n   - **File**: `codex/serialization.py:87`\n   - **Tool**: CodeQL\n   - **Confidence**: 95%\n   - **Fix**: Use json.loads() instead of pickle.loads() for untrusted data\n\n5. **[🟠 HIGH]** CWE-22: Path Traversal vulnerability in file operations\n   - **File**: `codex/utils/file_ops.py:45`\n   - **Tool**: Semgrep\n   - **Confidence**: 92%\n   - **Fix**: Use pathlib.Path.resolve() with parent check to prevent directory traversal\n\n\n### Recommended Security Agents\n\n- **@codeql-alert-resolution-agent** (4 findings)\n  - Task: CodeQL security alerts\n- **@code-scanning-remediation-agent** (4 findings)\n  - Task: Semgrep policy violations\n- **@secret-detection-agent** (1 findings)\n  - Task: Leaked secrets/credentials\n- **@dependency-security-review-agent** (1 findings)\n  - Task: Dependency vulnerabilities\n\n---\n\n_For detailed analysis, see [Security Findings Report](.codex/security-findings-comprehensive.md) (if available)_\n","html_url":"https://github.com/Aries-Serpent/_codex_/pull/5289","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/Aries-Serpent%2F_codex_/issues/5289","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/5289/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-07-04T04:09:27.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4807572853","node_id":"PR_kwDORsmFTc7tykZK","number":4,"state":"open","title":"build(deps): bump the dependencies group with 41 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-07-04T04:09:27.000Z","updated_at":"2026-07-04T04:11:31.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps): bump","group_name":"dependencies","update_count":41,"packages":[{"name":"@react-three/drei","old_version":"9.122.0","new_version":"10.7.7","repository_url":"https://github.com/pmndrs/drei"},{"name":"@react-three/fiber","old_version":"8.16.1","new_version":"9.6.1","repository_url":"https://github.com/pmndrs/react-three-fiber"},{"name":"@supabase/supabase-js","old_version":"2.101.0","new_version":"2.110.0","repository_url":"https://github.com/supabase/supabase-js"},{"name":"@vitejs/plugin-react","old_version":"4.7.0","new_version":"6.0.3","repository_url":"https://github.com/vitejs/vite-plugin-react"},{"name":"animejs","old_version":"3.2.2","new_version":"4.5.0","repository_url":"https://github.com/juliangarnier/anime"},{"name":"antd","old_version":"6.4.3","new_version":"6.5.0","repository_url":"https://github.com/ant-design/ant-design"},{"name":"autoprefixer","old_version":"10.4.27","new_version":"10.5.2","repository_url":"https://github.com/postcss/autoprefixer"},{"name":"dotenv","old_version":"17.3.1","new_version":"17.4.2","repository_url":"https://github.com/motdotla/dotenv"},{"name":"express","old_version":"4.22.2","new_version":"5.2.1","repository_url":"https://github.com/expressjs/express"},{"name":"express-rate-limit","old_version":"7.5.1","new_version":"8.5.2","repository_url":"https://github.com/express-rate-limit/express-rate-limit"},{"name":"framer-motion","old_version":"12.38.0","new_version":"12.42.2","repository_url":"https://github.com/motiondivision/motion"},{"name":"gsap","old_version":"3.14.2","new_version":"3.15.0","repository_url":"https://github.com/greensock/GSAP"},{"name":"helmet","old_version":"7.2.0","new_version":"8.2.0","repository_url":"https://github.com/helmetjs/helmet"},{"name":"ioredis","old_version":"5.10.1","new_version":"5.11.1","repository_url":"https://github.com/luin/ioredis"},{"name":"jspdf-autotable","old_version":"5.0.7","new_version":"5.0.8","repository_url":"https://github.com/simonbengtsson/jsPDF-AutoTable"},{"name":"lucide-react","old_version":"0.284.0","new_version":"1.23.0","repository_url":"https://github.com/lucide-icons/lucide"},{"name":"mongoose","old_version":"8.23.0","new_version":"9.7.3","repository_url":"https://github.com/Automattic/mongoose"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"multer","old_version":"2.1.1","new_version":"2.2.0","repository_url":"https://github.com/expressjs/multer"},{"name":"next","old_version":"14.2.3","new_version":"16.2.10","repository_url":"https://github.com/vercel/next.js"},{"name":"nodemailer","old_version":"8.0.9","new_version":"9.0.3","repository_url":"https://github.com/nodemailer/nodemailer"},{"name":"postcss","old_version":"8.5.15","new_version":"8.5.16","repository_url":"https://github.com/postcss/postcss"},{"name":"react","old_version":"18.3.1","new_version":"19.2.7","repository_url":"https://github.com/facebook/react"},{"name":"@types/react","old_version":"18.3.28","new_version":"19.2.17","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"react-dom","old_version":"18.3.1","new_version":"19.2.7","repository_url":"https://github.com/facebook/react"},{"name":"@types/react-dom","old_version":"18.3.7","new_version":"19.2.3","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"react-router-dom","old_version":"6.30.3","new_version":"7.18.1","repository_url":"https://github.com/remix-run/react-router"},{"name":"recharts","old_version":"3.8.1","new_version":"3.9.2","repository_url":"https://github.com/recharts/recharts"},{"name":"tailwindcss","old_version":"3.4.19","new_version":"4.3.2","repository_url":"https://github.com/tailwindlabs/tailwindcss"},{"name":"three","old_version":"0.183.2","new_version":"0.185.1","repository_url":"https://github.com/mrdoob/three.js"},{"name":"vite","old_version":"5.4.21","new_version":"8.1.3","repository_url":"https://github.com/vitejs/vite"},{"name":"zod","old_version":"3.25.76","new_version":"4.4.3","repository_url":"https://github.com/colinhacks/zod"},{"name":"@eslint/js","old_version":"9.39.4","new_version":"10.0.1","repository_url":"https://github.com/eslint/eslint"},{"name":"@playwright/test","old_version":"1.60.0","new_version":"1.61.1","repository_url":"https://github.com/microsoft/playwright"},{"name":"eslint","old_version":"9.39.4","new_version":"10.6.0","repository_url":"https://github.com/eslint/eslint"},{"name":"eslint-plugin-react-hooks","old_version":"7.0.1","new_version":"7.1.1","repository_url":"https://github.com/facebook/react"},{"name":"eslint-plugin-react-refresh","old_version":"0.5.2","new_version":"0.5.3","repository_url":"https://github.com/ArnaudBarre/eslint-plugin-react-refresh"},{"name":"eslint-plugin-tailwindcss","old_version":"3.17.4","new_version":"4.0.6","repository_url":"https://github.com/francoismassart/eslint-plugin-tailwindcss"},{"name":"globals","old_version":"17.4.0","new_version":"17.7.0","repository_url":"https://github.com/sindresorhus/globals"},{"name":"jsdom","old_version":"24.1.3","new_version":"29.1.1","repository_url":"https://github.com/jsdom/jsdom"},{"name":"vitest","old_version":"1.6.1","new_version":"4.1.9","repository_url":"https://github.com/vitest-dev/vitest"}],"path":null,"ecosystem":"npm"},"body":"Bumps the dependencies group with 41 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@react-three/drei](https://github.com/pmndrs/drei) | `9.122.0` | `10.7.7` |\n| [@react-three/fiber](https://github.com/pmndrs/react-three-fiber) | `8.16.1` | `9.6.1` |\n| [@supabase/supabase-js](https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js) | `2.101.0` | `2.110.0` |\n| [@vitejs/plugin-react](https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react) | `4.7.0` | `6.0.3` |\n| [animejs](https://github.com/juliangarnier/anime) | `3.2.2` | `4.5.0` |\n| [antd](https://github.com/ant-design/ant-design) | `6.4.3` | `6.5.0` |\n| [autoprefixer](https://github.com/postcss/autoprefixer) | `10.4.27` | `10.5.2` |\n| [dotenv](https://github.com/motdotla/dotenv) | `17.3.1` | `17.4.2` |\n| [express](https://github.com/expressjs/express) | `4.22.2` | `5.2.1` |\n| [express-rate-limit](https://github.com/express-rate-limit/express-rate-limit) | `7.5.1` | `8.5.2` |\n| [framer-motion](https://github.com/motiondivision/motion) | `12.38.0` | `12.42.2` |\n| [gsap](https://github.com/greensock/GSAP) | `3.14.2` | `3.15.0` |\n| [helmet](https://github.com/helmetjs/helmet) | `7.2.0` | `8.2.0` |\n| [ioredis](https://github.com/luin/ioredis) | `5.10.1` | `5.11.1` |\n| [jspdf-autotable](https://github.com/simonbengtsson/jsPDF-AutoTable) | `5.0.7` | `5.0.8` |\n| [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react) | `0.284.0` | `1.23.0` |\n| [mongoose](https://github.com/Automattic/mongoose) | `8.23.0` | `9.7.3` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [multer](https://github.com/expressjs/multer) | `2.1.1` | `2.2.0` |\n| [next](https://github.com/vercel/next.js) | `14.2.3` | `16.2.10` |\n| [nodemailer](https://github.com/nodemailer/nodemailer) | `8.0.9` | `9.0.3` |\n| [postcss](https://github.com/postcss/postcss) | `8.5.15` | `8.5.16` |\n| [react](https://github.com/facebook/react/tree/HEAD/packages/react) | `18.3.1` | `19.2.7` |\n| [@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react) | `18.3.28` | `19.2.17` |\n| [react-dom](https://github.com/facebook/react/tree/HEAD/packages/react-dom) | `18.3.1` | `19.2.7` |\n| [@types/react-dom](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-dom) | `18.3.7` | `19.2.3` |\n| [react-router-dom](https://github.com/remix-run/react-router/tree/HEAD/packages/react-router-dom) | `6.30.3` | `7.18.1` |\n| [recharts](https://github.com/recharts/recharts) | `3.8.1` | `3.9.2` |\n| [tailwindcss](https://github.com/tailwindlabs/tailwindcss/tree/HEAD/packages/tailwindcss) | `3.4.19` | `4.3.2` |\n| [three](https://github.com/mrdoob/three.js) | `0.183.2` | `0.185.1` |\n| [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) | `5.4.21` | `8.1.3` |\n| [zod](https://github.com/colinhacks/zod) | `3.25.76` | `4.4.3` |\n| [@eslint/js](https://github.com/eslint/eslint/tree/HEAD/packages/js) | `9.39.4` | `10.0.1` |\n| [@playwright/test](https://github.com/microsoft/playwright) | `1.60.0` | `1.61.1` |\n| [eslint](https://github.com/eslint/eslint) | `9.39.4` | `10.6.0` |\n| [eslint-plugin-react-hooks](https://github.com/facebook/react/tree/HEAD/packages/eslint-plugin-react-hooks) | `7.0.1` | `7.1.1` |\n| [eslint-plugin-react-refresh](https://github.com/ArnaudBarre/eslint-plugin-react-refresh) | `0.5.2` | `0.5.3` |\n| [eslint-plugin-tailwindcss](https://github.com/francoismassart/eslint-plugin-tailwindcss) | `3.17.4` | `4.0.6` |\n| [globals](https://github.com/sindresorhus/globals) | `17.4.0` | `17.7.0` |\n| [jsdom](https://github.com/jsdom/jsdom) | `24.1.3` | `29.1.1` |\n| [vitest](https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest) | `1.6.1` | `4.1.9` |\n\nUpdates `@react-three/drei` from 9.122.0 to 10.7.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/pmndrs/drei/releases\"\u003e@​react-three/drei's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev10.7.7\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/pmndrs/drei/compare/v10.7.6...v10.7.7\"\u003e10.7.7\u003c/a\u003e (2025-11-13)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edocs:\u003c/strong\u003e \u003ca href=\"https://github.com/v2\"\u003e\u003ccode\u003e@​v2\u003c/code\u003e\u003c/a\u003e.19.0 (\u003ca href=\"https://github.com/pmndrs/drei/commit/b8b99fd4ca1dfb8d821335671320512daa6efea4\"\u003eb8b99fd\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.7.6\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/pmndrs/drei/compare/v10.7.5...v10.7.6\"\u003e10.7.6\u003c/a\u003e (2025-09-11)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003etypes:\u003c/strong\u003e fix usage of ambient THREE namespace (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2517\"\u003e#2517\u003c/a\u003e) (\u003ca href=\"https://github.com/pmndrs/drei/commit/3b5d7dc0a6cb0ecfdab1a6e3bfdbb8c48410edba\"\u003e3b5d7dc\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.7.5\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/pmndrs/drei/compare/v10.7.4...v10.7.5\"\u003e10.7.5\u003c/a\u003e (2025-09-08)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003emissing suspend badges to the docs (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2530\"\u003e#2530\u003c/a\u003e) (\u003ca href=\"https://github.com/pmndrs/drei/commit/3e1246f3591ee4e54358519b0375541d5312bd9a\"\u003e3e1246f\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.7.4\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/pmndrs/drei/compare/v10.7.3...v10.7.4\"\u003e10.7.4\u003c/a\u003e (2025-08-23)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003esb link in Grid (\u003ca href=\"https://github.com/pmndrs/drei/commit/733b0a2bb21ca644449392f9cdc95b12009c325e\"\u003e733b0a2\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.7.3\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/pmndrs/drei/compare/v10.7.2...v10.7.3\"\u003e10.7.3\u003c/a\u003e (2025-08-17)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eadd renderOrder to AxisRotator (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2504\"\u003e#2504\u003c/a\u003e) (\u003ca href=\"https://github.com/pmndrs/drei/commit/4e48be0fe2bba6f81478eba0196d9eb4d2920b62\"\u003e4e48be0\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.7.2\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/pmndrs/drei/compare/v10.7.1...v10.7.2\"\u003e10.7.2\u003c/a\u003e (2025-08-16)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003elatest storybook (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2512\"\u003e#2512\u003c/a\u003e) (\u003ca href=\"https://github.com/pmndrs/drei/commit/1b933d53724e362db257dc95c6ca99fec1ab8ff3\"\u003e1b933d5\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev10.7.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/pmndrs/drei/compare/v10.7.0...v10.7.1\"\u003e10.7.1\u003c/a\u003e (2025-08-16)\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/b8b99fd4ca1dfb8d821335671320512daa6efea4\"\u003e\u003ccode\u003eb8b99fd\u003c/code\u003e\u003c/a\u003e fix(docs): \u003ca href=\"https://github.com/v2\"\u003e\u003ccode\u003e@​v2\u003c/code\u003e\u003c/a\u003e.19.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/7b62f6c004f9d8a2487c7cf405c32022c45dfe12\"\u003e\u003ccode\u003e7b62f6c\u003c/code\u003e\u003c/a\u003e chore: \u003ccode\u003e./e2e 0.180\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2571\"\u003e#2571\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/2a40b26fc5a199de254b3d5676335d701e0d9955\"\u003e\u003ccode\u003e2a40b26\u003c/code\u003e\u003c/a\u003e chore: -cjsapp\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/3b5d7dc0a6cb0ecfdab1a6e3bfdbb8c48410edba\"\u003e\u003ccode\u003e3b5d7dc\u003c/code\u003e\u003c/a\u003e fix(types): fix usage of ambient THREE namespace (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2517\"\u003e#2517\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/3e1246f3591ee4e54358519b0375541d5312bd9a\"\u003e\u003ccode\u003e3e1246f\u003c/code\u003e\u003c/a\u003e fix: missing suspend badges to the docs (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2530\"\u003e#2530\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/844be9a61a9b0b770e23e3c52362bc41a9c04659\"\u003e\u003ccode\u003e844be9a\u003c/code\u003e\u003c/a\u003e Apply renderOrder to all PivotControls children (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2524\"\u003e#2524\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/733b0a2bb21ca644449392f9cdc95b12009c325e\"\u003e\u003ccode\u003e733b0a2\u003c/code\u003e\u003c/a\u003e fix: sb link in Grid\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/4e48be0fe2bba6f81478eba0196d9eb4d2920b62\"\u003e\u003ccode\u003e4e48be0\u003c/code\u003e\u003c/a\u003e fix: add renderOrder to AxisRotator (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2504\"\u003e#2504\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/1b933d53724e362db257dc95c6ca99fec1ab8ff3\"\u003e\u003ccode\u003e1b933d5\u003c/code\u003e\u003c/a\u003e fix: latest storybook (\u003ca href=\"https://redirect.github.com/pmndrs/drei/issues/2512\"\u003e#2512\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/drei/commit/b7e48235dc767be5b4be06bf6273782577639726\"\u003e\u003ccode\u003eb7e4823\u003c/code\u003e\u003c/a\u003e fix(docs): center.mdx\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/pmndrs/drei/compare/v9.122.0...v10.7.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@react-three/fiber` from 8.16.1 to 9.6.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/pmndrs/react-three-fiber/releases\"\u003e@​react-three/fiber's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev9.6.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: Seamlessly transfer interactivity state when swapping instances (\u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/issues/3743\"\u003e#3743\u003c/a\u003e) by \u003ca href=\"https://github.com/notrabs\"\u003e\u003ccode\u003e@​notrabs\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/pull/3744\"\u003epmndrs/react-three-fiber#3744\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/pmndrs/react-three-fiber/compare/v9.6.0...v9.6.1\"\u003ehttps://github.com/pmndrs/react-three-fiber/compare/v9.6.0...v9.6.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev9.6.0 - Sunset X\u003c/h2\u003e\n\u003cp\u003eEver tried using \u003ccode\u003e\u0026lt;shaderMaterial uniforms={{ time: { value: time } }} /\u0026gt;\u003c/code\u003e and ran into immediate issues with desync? No more.\u003c/p\u003e\n\u003cp\u003eThe uniforms objects on \u003ccode\u003eShaderMaterial\u003c/code\u003e and its derivatives now have a stable reference. Objects passed into uniforms will instead copy into it. This is the same as behavior for math structures that have copy such as position, rotation, quaternion, etc. and ends up simplifying using the raw JSX where utilities were often introduced before.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eWhy does this matter?\u003c/strong\u003e\u003c/p\u003e\n\u003col\u003e\n\u003cli\u003e\n\u003cp\u003eImproves HMR. Even if you memoize the uniforms object it will still regenerate and desync Three. Now this won't happen. But also it makes compatibility with React compiler more complete with its auto-memoization.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAllows for inline uniform props and even prop uniforms directly on the material piercing.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ol\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003e\u0026lt;shaderMaterial\r\n  vertexShader={vertexShader}\r\n  fragmentShader={fragmentShader}\r\n  // The uniforms object has a stable reference so objects can be safely merged in\r\n  uniforms={{ \r\n    uTime: { value: 0 }, \r\n    uColor: { value: new THREE.Color('hotpink') } \r\n  }}\r\n  // Individual uniforms can also be safely updated with pierce notation\r\n  uniforms-uColor-value={hovered ? 'royalblue' : 'hotpink'}\r\n/\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003cp\u003eDocumentation can be found here: \u003ca href=\"https://r3f.docs.pmnd.rs/api/objects#shader-material-uniforms\"\u003ehttps://r3f.docs.pmnd.rs/api/objects#shader-material-uniforms\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eAnd an example can be found here: \u003ca href=\"https://github.com/pmndrs/react-three-fiber/blob/master/example/src/demos/ShaderMaterial.tsx\"\u003ehttps://github.com/pmndrs/react-three-fiber/blob/master/example/src/demos/ShaderMaterial.tsx\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix: Fix broken link on \u0026quot;Performance pitfalls\u0026quot; documentation page by \u003ca href=\"https://github.com/simonKristensen\"\u003e\u003ccode\u003e@​simonKristensen\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/pull/3700\"\u003epmndrs/react-three-fiber#3700\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: uniforms have stable refs for ShaderMaterial by \u003ca href=\"https://github.com/krispya\"\u003e\u003ccode\u003e@​krispya\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/pull/3715\"\u003epmndrs/react-three-fiber#3715\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: fix typos and documentation consistency by \u003ca href=\"https://github.com/NssGourav\"\u003e\u003ccode\u003e@​NssGourav\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/pull/3709\"\u003epmndrs/react-three-fiber#3709\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/simonKristensen\"\u003e\u003ccode\u003e@​simonKristensen\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/pull/3700\"\u003epmndrs/react-three-fiber#3700\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/NssGourav\"\u003e\u003ccode\u003e@​NssGourav\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/pull/3709\"\u003epmndrs/react-three-fiber#3709\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/pmndrs/react-three-fiber/compare/v9.5.0...v9.6.0\"\u003ehttps://github.com/pmndrs/react-three-fiber/compare/v9.5.0...v9.6.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev9.5.0\u003c/h2\u003e\n\u003cp\u003eAfter a bit of research and development, R3F is now compatible with React 19.2, including the \u003ccode\u003eActivity\u003c/code\u003e feature!\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/2a528745e9aa7c9e6cca41e404b59d45cf0d0cc7\"\u003e\u003ccode\u003e2a52874\u003c/code\u003e\u003c/a\u003e RELEASING: Releasing 1 package(s)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/b645741874486417727ea75a0704d48e9f21d623\"\u003e\u003ccode\u003eb645741\u003c/code\u003e\u003c/a\u003e docs(changeset): fix: Seamlessly transfer interactivity state when swapping i...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/119668f9f3ee31b28485c9706407f22272fe059c\"\u003e\u003ccode\u003e119668f\u003c/code\u003e\u003c/a\u003e fix: Seamlessly transfer interactivity state when swapping instances (\u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/issues/3744\"\u003e#3744\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/943a37e66415d9a0e4bf4252b6fbb977e566788a\"\u003e\u003ccode\u003e943a37e\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/issues/3738\"\u003e#3738\u003c/a\u003e from pmndrs:chore/simplify-shadermaterial-demo\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/1be9504963f09e879e63e76a74b00e0daa316115\"\u003e\u003ccode\u003e1be9504\u003c/code\u003e\u003c/a\u003e chore: Add uniform piercing test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/4df10c0fdee3cfa016e0bdcdf6cdd93a36f55e88\"\u003e\u003ccode\u003e4df10c0\u003c/code\u003e\u003c/a\u003e chore: Simplify ShaderMaterial demo\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/877c8392288ca5c237c0ff8e7e1fbd238ade1170\"\u003e\u003ccode\u003e877c839\u003c/code\u003e\u003c/a\u003e chore: Move ShaderMaterial uniform notes to objects out of pitfalls (\u003ca href=\"https://redirect.github.com/pmndrs/react-three-fiber/issues/3734\"\u003e#3734\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/47d30ba72582a2a4f47a8df2310a7ba1b5240552\"\u003e\u003ccode\u003e47d30ba\u003c/code\u003e\u003c/a\u003e chore: Move ShaderMaterial uniform notes to objects out of pitfalls\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/ece1a3fa385ae8687fabae98a25e6656bbca4079\"\u003e\u003ccode\u003eece1a3f\u003c/code\u003e\u003c/a\u003e RELEASING: Releasing 1 package(s)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pmndrs/react-three-fiber/commit/26e4716412b11a189dd9ac4b3033d0e504f1d7df\"\u003e\u003ccode\u003e26e4716\u003c/code\u003e\u003c/a\u003e docs(changeset): Fix uniforms refs so they remain stable for ShaderMaterial\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/pmndrs/react-three-fiber/compare/v8.16.1...v9.6.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@supabase/supabase-js` from 2.101.0 to 2.110.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/supabase/supabase-js/releases\"\u003e@​supabase/supabase-js's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.110.0\u003c/h2\u003e\n\u003ch2\u003e2.110.0 (2026-06-30)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003erepo:\u003c/strong\u003e drop Node.js 20 support (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2482\"\u003e#2482\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev2.110.0-canary.0\u003c/h2\u003e\n\u003ch2\u003e2.110.0-canary.0 (2026-06-30)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003erepo:\u003c/strong\u003e drop Node.js 20 support (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2482\"\u003e#2482\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev2.109.0\u003c/h2\u003e\n\u003ch2\u003e2.109.0 (2026-06-30)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eauth:\u003c/strong\u003e add custom_claims_allowlist to custom providers admin API (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2473\"\u003e#2473\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003erealtime:\u003c/strong\u003e add postgres_changes filter builder, new operators and select (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2463\"\u003e#2463\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e expose purgeCache for buckets and single objects (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2429\"\u003e#2429\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003efunctions:\u003c/strong\u003e honor a caller's Content-Type override regardless of casing (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2455\"\u003e#2455\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003erealtime:\u003c/strong\u003e pin \u003ccode\u003e@​supabase/phoenix\u003c/code\u003e and browser test CDN deps (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2457\"\u003e#2457\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003erealtime:\u003c/strong\u003e add replication connection system message option (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2470\"\u003e#2470\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estorage:\u003c/strong\u003e keep sortBy defaults when list() is given a partial sortBy (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2454\"\u003e#2454\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAnubhav Anand \u003ca href=\"https://github.com/i-anubhav-anand\"\u003e\u003ccode\u003e@​i-anubhav-anand\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCemal Kılıç \u003ca href=\"https://github.com/cemalkilic\"\u003e\u003ccode\u003e@​cemalkilic\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eClaude Opus 4.8 (1M context)\u003c/li\u003e\n\u003cli\u003eFilipe Cabaço \u003ca href=\"https://github.com/filipecabaco\"\u003e\u003ccode\u003e@​filipecabaco\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eLenny\u003c/li\u003e\n\u003cli\u003eRodrigo Mansueli \u003ca href=\"https://github.com/mansueli\"\u003e\u003ccode\u003e@​mansueli\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev2.108.3-canary.2\u003c/h2\u003e\n\u003ch2\u003e2.108.3-canary.2 (2026-06-19)\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/supabase/supabase-js/blob/master/packages/core/supabase-js/CHANGELOG.md\"\u003e@​supabase/supabase-js's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.110.0 (2026-06-30)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003erepo:\u003c/strong\u003e drop Node.js 20 support (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2482\"\u003e#2482\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.109.0 (2026-06-30)\u003c/h2\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003erealtime:\u003c/strong\u003e pin \u003ccode\u003e@​supabase/phoenix\u003c/code\u003e and browser test CDN deps (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2457\"\u003e#2457\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.108.2 (2026-06-15)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for \u003ccode\u003e@​supabase/supabase-js\u003c/code\u003e to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003ch2\u003e2.108.0 (2026-06-08)\u003c/h2\u003e\n\u003cp\u003eThis was a version bump only for \u003ccode\u003e@​supabase/supabase-js\u003c/code\u003e to align it with other projects, there were no code changes.\u003c/p\u003e\n\u003ch2\u003e2.107.0 (2026-06-02)\u003c/h2\u003e\n\u003ch3\u003e🚀 Features\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eauth:\u003c/strong\u003e remove navigator.locks-based mutex; introduce commit guard + dispose() (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2392\"\u003e#2392\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003esupabase:\u003c/strong\u003e update X-Client-Info to structured metadata format (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2359\"\u003e#2359\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003erealtime:\u003c/strong\u003e allow httpSend to send binary payload (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2400\"\u003e#2400\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e❤️ Thank You\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eClaude Sonnet 4.6\u003c/li\u003e\n\u003cli\u003eEduardo Gurgel\u003c/li\u003e\n\u003cli\u003eGuilherme Souza\u003c/li\u003e\n\u003cli\u003eKaterina Skroumpelou \u003ca href=\"https://github.com/mandarini\"\u003e\u003ccode\u003e@​mandarini\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eOmar Al Matar \u003ca href=\"https://github.com/Bewinxed\"\u003e\u003ccode\u003e@​Bewinxed\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.106.2 (2026-05-25)\u003c/h2\u003e\n\u003ch3\u003e🩹 Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003emisc:\u003c/strong\u003e add react-native export condition for Hermes-safe resolution (\u003ca href=\"https://redirect.github.com/supabase/supabase-js/pull/2393\"\u003e#2393\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/c3d5e6d2949b0248de8ba97991e4484f0b57c83f\"\u003e\u003ccode\u003ec3d5e6d\u003c/code\u003e\u003c/a\u003e feat(repo): drop Node.js 20 support (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2482\"\u003e#2482\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/b2e02b997aaf81b4c09dcc67966629296b96f681\"\u003e\u003ccode\u003eb2e02b9\u003c/code\u003e\u003c/a\u003e chore(release): version 2.109.0 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2481\"\u003e#2481\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/dd2d4c270f0d6b84e61f3fa80330c42966783f87\"\u003e\u003ccode\u003edd2d4c2\u003c/code\u003e\u003c/a\u003e fix(realtime): pin \u003ccode\u003e@​supabase/phoenix\u003c/code\u003e and browser test CDN deps (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2457\"\u003e#2457\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/a25062e9285fa8e3bd702c59ddda0d87ad1fcc27\"\u003e\u003ccode\u003ea25062e\u003c/code\u003e\u003c/a\u003e chore(release): version 2.108.2 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2449\"\u003e#2449\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/b3e5f2d7a312eff971dfd9c7226c9c4edbc0de0f\"\u003e\u003ccode\u003eb3e5f2d\u003c/code\u003e\u003c/a\u003e chore(ci): unpin realtime version (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2432\"\u003e#2432\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/76f3f0290525c53aafedaf9fc94fcc09953c2189\"\u003e\u003ccode\u003e76f3f02\u003c/code\u003e\u003c/a\u003e test(auth): add passkey unit and e2e coverage (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2442\"\u003e#2442\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/65fafe5ccc124ecc616d031b1d3fa0a1703340ff\"\u003e\u003ccode\u003e65fafe5\u003c/code\u003e\u003c/a\u003e chore(release): version 2.108.0 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2433\"\u003e#2433\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/57014e167626211b68ead69e0d4e24766619e933\"\u003e\u003ccode\u003e57014e1\u003c/code\u003e\u003c/a\u003e chore(release): version 2.107.0 changelogs (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2421\"\u003e#2421\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/54ec2b6955be26836e249e1fbe5f98c6f25a99a9\"\u003e\u003ccode\u003e54ec2b6\u003c/code\u003e\u003c/a\u003e feat(auth): remove navigator.locks-based mutex; introduce commit guard + disp...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/supabase/supabase-js/commit/3397c9235712ae71333c5ded7b3cccc491124382\"\u003e\u003ccode\u003e3397c92\u003c/code\u003e\u003c/a\u003e feat(supabase): update X-Client-Info to structured metadata format (\u003ca href=\"https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js/issues/2359\"\u003e#2359\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/supabase/supabase-js/commits/v2.110.0/packages/core/supabase-js\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@vitejs/plugin-react` from 4.7.0 to 6.0.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vitejs/vite-plugin-react/releases\"\u003e@​vitejs/plugin-react's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eplugin-react@6.0.3\u003c/h2\u003e\n\u003cp\u003eNo release notes provided.\u003c/p\u003e\n\u003ch2\u003eplugin-react@6.0.2\u003c/h2\u003e\n\u003ch3\u003eAllow all options in reactCompilerPreset (\u003ca href=\"https://redirect.github.com/vitejs/vite-plugin-react/pull/1189\"\u003e#1189\u003c/a\u003e)\u003c/h3\u003e\n\u003cp\u003eThis is a type only change. Only \u003ccode\u003ecompilationMode\u003c/code\u003e and \u003ccode\u003etarget\u003c/code\u003e options were available for \u003ccode\u003ereactCompilerPreset\u003c/code\u003e.\u003c/p\u003e\n\u003ch2\u003eplugin-react@6.0.1\u003c/h2\u003e\n\u003ch3\u003eExpand \u003ccode\u003e@rolldown/plugin-babel\u003c/code\u003e peer dep range (\u003ca href=\"https://redirect.github.com/vitejs/vite-plugin-react/pull/1146\"\u003e#1146\u003c/a\u003e)\u003c/h3\u003e\n\u003cp\u003eExpanded \u003ccode\u003e@rolldown/plugin-babel\u003c/code\u003e peer dep range to include \u003ccode\u003e^0.2.0\u003c/code\u003e.\u003c/p\u003e\n\u003ch2\u003eplugin-react@6.0.0\u003c/h2\u003e\n\u003ch3\u003eRemove Babel Related Features (\u003ca href=\"https://redirect.github.com/vitejs/vite-plugin-react/pull/1123\"\u003e#1123\u003c/a\u003e)\u003c/h3\u003e\n\u003cp\u003eVite 8+ can handle React Refresh Transform by Oxc and doesn't need Babel for it. With that, there are no transform applied that requires Babel. To reduce the installation size of this plugin, babel is no longer a dependency of this plugin and the related features are removed.\u003c/p\u003e\n\u003cp\u003eIf you are using Babel, you can use \u003ccode\u003e@rolldown/plugin-babel\u003c/code\u003e together with this plugin:\u003c/p\u003e\n\u003cpre lang=\"diff\"\u003e\u003ccode\u003e import { defineConfig } from 'vite'\r\n import react from '@vitejs/plugin-react'\r\n+import babel from '@rolldown/plugin-babel'\r\n\u003cp\u003eexport default defineConfig({\nplugins: [\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003ereact({\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e  babel: {\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e    plugins: ['@babel/plugin-proposal-throw-expressions'],\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e  },\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e}),\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003ereact(),\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003ebabel({\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e  plugins: ['@babel/plugin-proposal-throw-expressions'],\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e}),\n\u003c/code\u003e\u003c/pre\u003e\n]\n})\n\u003c/code\u003e\u003c/pre\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eFor React compiler users, you can use \u003ccode\u003ereactCompilerPreset\u003c/code\u003e for easier setup with preconfigured filter to improve build performance:\u003c/p\u003e\n\u003cpre lang=\"diff\"\u003e\u003ccode\u003e import { defineConfig } from 'vite'\r\n-import react from '@vitejs/plugin-react'\r\n+import react, { reactCompilerPreset } from '@vitejs/plugin-react'\r\n+import babel from '@rolldown/plugin-babel'\r\n\u003cp\u003eexport default defineConfig({\nplugins: [\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt;\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vitejs/vite-plugin-react/blob/main/packages/plugin-react/CHANGELOG.md\"\u003e@​vitejs/plugin-react's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e6.0.3 (2026-06-23)\u003c/h2\u003e\n\u003ch2\u003e6.0.2 (2026-05-14)\u003c/h2\u003e\n\u003ch3\u003eAllow all options in reactCompilerPreset (\u003ca href=\"https://redirect.github.com/vitejs/vite-plugin-react/pull/1189\"\u003e#1189\u003c/a\u003e)\u003c/h3\u003e\n\u003cp\u003eThis is a type only change. Only \u003ccode\u003ecompilationMode\u003c/code\u003e and \u003ccode\u003etarget\u003c/code\u003e options were available for \u003ccode\u003ereactCompilerPreset\u003c/code\u003e.\u003c/p\u003e\n\u003ch2\u003e6.0.1 (2026-03-13)\u003c/h2\u003e\n\u003ch3\u003eExpand \u003ccode\u003e@rolldown/plugin-babel\u003c/code\u003e peer dep range (\u003ca href=\"https://redirect.github.com/vitejs/vite-plugin-react/pull/1146\"\u003e#1146\u003c/a\u003e)\u003c/h3\u003e\n\u003cp\u003eExpanded \u003ccode\u003e@rolldown/plugin-babel\u003c/code\u003e peer dep range to include \u003ccode\u003e^0.2.0\u003c/code\u003e.\u003c/p\u003e\n\u003ch2\u003e6.0.0 (2026-03-12)\u003c/h2\u003e\n\u003ch2\u003e6.0.0-beta.0 (2026-03-03)\u003c/h2\u003e\n\u003ch3\u003eRemove Babel Related Features (\u003ca href=\"https://redirect.github.com/vitejs/vite-plugin-react/pull/1123\"\u003e#1123\u003c/a\u003e)\u003c/h3\u003e\n\u003cp\u003eVite 8+ can handle React Refresh Transform by Oxc and doesn't need Babel for it. With that, there are no transform applied that requires Babel. To reduce the installation size of this plugin, babel is no longer a dependency of this plugin and the related features are removed.\u003c/p\u003e\n\u003cp\u003eIf you are using Babel, you can use \u003ccode\u003e@rolldown/plugin-babel\u003c/code\u003e together with this plugin:\u003c/p\u003e\n\u003cpre lang=\"diff\"\u003e\u003ccode\u003e import { defineConfig } from 'vite'\n import react from '@vitejs/plugin-react'\n+import babel from '@rolldown/plugin-babel'\n\u003cp\u003eexport default defineConfig({\nplugins: [\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003ereact({\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e  babel: {\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e    plugins: ['@babel/plugin-proposal-throw-expressions'],\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e  },\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e}),\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003ereact(),\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003ebabel({\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e  plugins: ['@babel/plugin-proposal-throw-expressions'],\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e}),\n\u003c/code\u003e\u003c/pre\u003e\n]\n})\n\u003c/code\u003e\u003c/pre\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eFor React compiler users, you can use \u003ccode\u003ereactCompilerPreset\u003c/code\u003e for easier setup with preconfigured filter to improve build performance:\u003c/p\u003e\n\u003cpre lang=\"diff\"\u003e\u003ccode\u003e import { defineConfig } from 'vite'\n-import react from '@vitejs/plugin-react'\n+import react, { reactCompilerPreset } from '@vitejs/plugin-react'\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/640fd358a0e82393acfce4e92e19a6ac6e1641a7\"\u003e\u003ccode\u003e640fd35\u003c/code\u003e\u003c/a\u003e release: plugin-react@6.0.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/889efb02cdc4ec978a5e177a37e0213cfded38a4\"\u003e\u003ccode\u003e889efb0\u003c/code\u003e\u003c/a\u003e fix(deps): update all non-major dependencies (\u003ca href=\"https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react/issues/1249\"\u003e#1249\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/6c57dd4c5d71075b48039df2532804e72880da21\"\u003e\u003ccode\u003e6c57dd4\u003c/code\u003e\u003c/a\u003e fix(plugin-react): use '/' base in bundledDev preamble to fix non-root base p...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/3cc33a703636b558a1c1c99e787ddc6bd64aab2d\"\u003e\u003ccode\u003e3cc33a7\u003c/code\u003e\u003c/a\u003e fix(deps): update react-related dependencies (\u003ca href=\"https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react/issues/1245\"\u003e#1245\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/c0f7c7ff709dc9d88bc1f29f1b27c1b3e2bfcfca\"\u003e\u003ccode\u003ec0f7c7f\u003c/code\u003e\u003c/a\u003e docs: mention the Biome rule in the \u0026quot;Consistent components exports\u0026quot; section (...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/cd80f0f7b2b750f6e8f719f9c3dbe4f22ddd94db\"\u003e\u003ccode\u003ecd80f0f\u003c/code\u003e\u003c/a\u003e fix(deps): update all non-major dependencies (\u003ca href=\"https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react/issues/1241\"\u003e#1241\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/e38accafea0c7c84f7fc72fd69d9cec731fa7600\"\u003e\u003ccode\u003ee38acca\u003c/code\u003e\u003c/a\u003e fix(deps): update all non-major dependencies (\u003ca href=\"https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react/issues/1227\"\u003e#1227\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/9a9bb26c23b966dceed47ff9ec257faeb0e777d9\"\u003e\u003ccode\u003e9a9bb26\u003c/code\u003e\u003c/a\u003e perf(react): improve react compiler preset so that slightly more modules are ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/6535b55e956b425e6650ffc2cc98fd23cca1d231\"\u003e\u003ccode\u003e6535b55\u003c/code\u003e\u003c/a\u003e release: plugin-react@6.0.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vitejs/vite-plugin-react/commit/bf0e43b756e3be81f8572d59727c218311f431ef\"\u003e\u003ccode\u003ebf0e43b\u003c/code\u003e\u003c/a\u003e feat(react): whitelist debugging-options (\u003ca href=\"https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react/issues/1189\"\u003e#1189\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vitejs/vite-plugin-react/commits/plugin-react@6.0.3/packages/plugin-react\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​vitejs/plugin-react\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `animejs` from 3.2.2 to 4.5.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/juliangarnier/anime/releases\"\u003eanimejs's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.5.0\u003c/h2\u003e\n\u003ch2\u003eNew Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eAdapters\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eNew \u003ccode\u003eregisterAdapter()\u003c/code\u003e API to extend \u003ccode\u003eanimate()\u003c/code\u003e and \u003ccode\u003eutils.set()\u003c/code\u003e to non-DOM targets (learn more: \u003ca href=\"https://animejs.com/documentation/adapters\"\u003ehttps://animejs.com/documentation/adapters\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eThree.js adapter\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eNew built-in three.js adapter, imported as a side-effect from \u003ccode\u003eanimejs/adapters/three\u003c/code\u003e, to animate \u003ccode\u003eObject3D\u003c/code\u003e, materials, lights, cameras, audio nodes, \u003ccode\u003eUniformNode\u003c/code\u003e (TSL) and instanced meshes (learn more: \u003ca href=\"https://animejs.com/documentation/adapters/three\"\u003ehttps://animejs.com/documentation/adapters/three\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eStagger\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eAuto-grid mode now supports 3D layouts, using \u003ccode\u003e{x, y, z}\u003c/code\u003e coordinates or an explicit \u003ccode\u003egrid: [columns, rows, depth]\u003c/code\u003e triplet\u003c/li\u003e\n\u003cli\u003eThe \u003ccode\u003efrom\u003c/code\u003e parameter now accepts \u003ccode\u003e[x, y, z]\u003c/code\u003e normalized coordinates and \u003ccode\u003eaxis\u003c/code\u003e now accepts \u003ccode\u003e'z'\u003c/code\u003e for 3D grid origins\u003c/li\u003e\n\u003cli\u003eNew \u003ccode\u003ejitter\u003c/code\u003e parameter to add a random offset to staggered values, either a single number or a \u003ccode\u003e[start, end]\u003c/code\u003e range\u003c/li\u003e\n\u003cli\u003eNew \u003ccode\u003eseed\u003c/code\u003e parameter to make \u003ccode\u003ejitter\u003c/code\u003e and \u003ccode\u003efrom: 'random'\u003c/code\u003e reproducible\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBug Fixes and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eColor\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eColor animations now blend RGB channels in pseudo-linear space for smoother, more even transitions (intermediate colors differ slightly from previous versions)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRender\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eFix a flicker that could appear randomly between iterations of reversed loops\u003c/li\u003e\n\u003cli\u003eFix a flicker that could appear randomly on alternate loops when using non-integer duration values\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eTimeline\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eFix a backward seek leaving a timeline child stuck at its end value when all its properties share the same delay\u003c/li\u003e\n\u003cli\u003eFix a timeline child whose delay is longer than its duration overwriting a later sibling's value on a forward seek\u003c/li\u003e\n\u003cli\u003eFix stale values when seeking a timeline whose children animate the same property through delayed tweens, most visible with staggered \u003ccode\u003ejitter\u003c/code\u003e delays\u003c/li\u003e\n\u003cli\u003eFix an implicit \u003ccode\u003efrom\u003c/code\u003e value resolving to a stale value when an overridden tween sits earlier in the chain\u003c/li\u003e\n\u003cli\u003eImprove performance when building large timelines with many overlapping \u003ccode\u003e.add()\u003c/code\u003e calls on the same property, and fix a case where such a timeline could cancel itself\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eKeyframes\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eFix a floating point precision issue producing incorrect intermediate values in keyframe arrays\u003c/li\u003e\n\u003cli\u003eFix scrubbing backward past the start of a keyframe sequence not restoring the first keyframe's \u003ccode\u003efrom\u003c/code\u003e value\u003c/li\u003e\n\u003cli\u003eFix scrubbing forward past the end of a keyframe sequence leaving the target stuck on a previous keyframe's value\u003c/li\u003e\n\u003cli\u003eFix sequential keyframes occasionally detected as overlapping because of floating point drift, leaving the target stuck on the wrong value when scrubbing\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eAnimation\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eFix function-based and CSS variable \u003ccode\u003efrom\u003c/code\u003e values in object form (\u003ccode\u003e{ from, to }\u003c/code\u003e) not re-resolving on \u003ccode\u003erefresh()\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003estretch()\u003c/code\u003e not correctly scaling animations that use keyframes\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eScroll\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eFix a \u003ccode\u003egetBoundingClientRect\u003c/code\u003e crash that could happen when a scroll container resized before its target was ready\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eEngine\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eMore accurate frame scheduling that no longer drops frames arriving slightly early because of \u003ccode\u003erequestAnimationFrame\u003c/code\u003e jitter\u003c/li\u003e\n\u003cli\u003eFaster \u003ccode\u003eengine.speed\u003c/code\u003e and \u003ccode\u003eengine.timeUnit\u003c/code\u003e updates that skip unnecessary work when the value does not actually change\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.4.1\u003c/h2\u003e\n\u003ch2\u003eBug fix\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix a regression introduced in \u003ccode\u003e4.4.0\u003c/code\u003e with timeline \u003ccode\u003e.call()\u003c/code\u003e not triggering properly in some cases.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.4.0\u003c/h2\u003e\n\u003ch2\u003eBreaking Changes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eTransforms\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eTransforms now follow a fixed render order (\u003ccode\u003eperspective\u003c/code\u003e \u0026gt; \u003ccode\u003etranslate\u003c/code\u003e \u0026gt; \u003ccode\u003erotate\u003c/code\u003e \u0026gt; \u003ccode\u003escale\u003c/code\u003e \u0026gt; \u003ccode\u003eskew\u003c/code\u003e), regardless of the order they are defined in animation parameters:\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/2c9cf8ea00329f6768c7d7902252ed977d75ce42\"\u003e\u003ccode\u003e2c9cf8e\u003c/code\u003e\u003c/a\u003e Update README.md\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/34f417983c1d33103c5d6d50d1c435ef2787ece0\"\u003e\u003ccode\u003e34f4179\u003c/code\u003e\u003c/a\u003e 4.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/308c09346ffceeac67b27cbbe34881cbc8168e0f\"\u003e\u003ccode\u003e308c093\u003c/code\u003e\u003c/a\u003e 4.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/1578d99647f242b99f84446fc7efdb5b8326fd1d\"\u003e\u003ccode\u003e1578d99\u003c/code\u003e\u003c/a\u003e Update README.md\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/53338cbe7fb489ed8d8f968911fdaebe507dccfb\"\u003e\u003ccode\u003e53338cb\u003c/code\u003e\u003c/a\u003e Update README.md\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/4c5c85b8f2813370a224fc7ee7089fa4e86584a2\"\u003e\u003ccode\u003e4c5c85b\u003c/code\u003e\u003c/a\u003e 4.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/8816e4347973dae1c5677fccbebe437dc45432a6\"\u003e\u003ccode\u003e8816e43\u003c/code\u003e\u003c/a\u003e 4.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/3b369a4b1a98c90600502b1d94fad3c1bbfd7639\"\u003e\u003ccode\u003e3b369a4\u003c/code\u003e\u003c/a\u003e v4.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/1180369a5514f26ad77e1efae82fde6a691df391\"\u003e\u003ccode\u003e1180369\u003c/code\u003e\u003c/a\u003e Update README.md\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/juliangarnier/anime/commit/d33098727cb28cc00ffd0116fd2751f1112eafdd\"\u003e\u003ccode\u003ed330987\u003c/code\u003e\u003c/a\u003e v4.3.5\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/juliangarnier/anime/compare/v3.2.2...v4.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `antd` from 6.4.3 to 6.5.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ant-design/ant-design/releases\"\u003eantd's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e6.5.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e🔥 Add the antd \u003ccode\u003eDESIGN.md\u003c/code\u003e design-language file and publish it at \u003ca href=\"https://ant.design/design.md\"\u003eant.design/design.md\u003c/a\u003e, helping AI design tools understand Ant Design visual language, component archetypes, and theme tokens. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58011\"\u003e#58011\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58356\"\u003e#58356\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58489\"\u003e#58489\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e📦 Optimize the antd full bundle size: compared with 6.4.5, size-limit reports \u003ccode\u003eantd.min.js\u003c/code\u003e down from \u003ccode\u003e437.05 KB\u003c/code\u003e to \u003ccode\u003e432.44 KB\u003c/code\u003e, and \u003ccode\u003eantd-with-locales.min.js\u003c/code\u003e down from \u003ccode\u003e514.19 KB\u003c/code\u003e to \u003ccode\u003e506.84 KB\u003c/code\u003e. The main gains come from slimmer DatePicker and TimePicker runtime code in \u003ccode\u003e@rc-component/picker\u003c/code\u003e, plus Icon/Upload avoiding extra TwoTone runtime in the full bundle. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58403\"\u003e#58403\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58497\"\u003e#58497\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIcon\n\u003cul\u003e\n\u003cli\u003e🔥 Add built-in Icon entries for Anthropic, Claude, Gemini, Mistral, DeepSeek, Qwen, Perplexity, HuggingFace, Ollama, Replicate, ElevenLabs, Telegram, Mastodon, Threads and Snapchat. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58524\"\u003e#58524\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\n\u003c!-- raw HTML omitted --\u003e\u003c/li\u003e\n\u003cli\u003e📦 Optimize Icon and Upload default icon imports by upgrading \u003ccode\u003e@ant-design/icons\u003c/code\u003e to \u003ccode\u003e6.3.1\u003c/code\u003e and switching Upload picture-list default placeholders to Outlined icons, reducing extra TwoTone runtime in the full bundle. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58497\"\u003e#58497\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Icon styles not working when \u003ccode\u003etheme.zeroRuntime\u003c/code\u003e is enabled. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58517\"\u003e#58517\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eInput\n\u003cul\u003e\n\u003cli\u003e🆕 Add Input.Password \u003ccode\u003evisibilityToggle.tabIndex\u003c/code\u003e to customize the visibility toggle button tab order. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58458\"\u003e#58458\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Input.Search not applying ConfigProvider root \u003ccode\u003estyle\u003c/code\u003e configuration. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58467\"\u003e#58467\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Input.Search losing \u003ccode\u003eenterButton.className\u003c/code\u003e. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58506\"\u003e#58506\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Fix Input.Search button height not aligning with Input token height. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58525\"\u003e#58525\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Add focus outline for borderless Input components. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58250\"\u003e#58250\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eSelect\n\u003cul\u003e\n\u003cli\u003e🆕 Add Select function-based \u003ccode\u003etokenSeparators\u003c/code\u003e support. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57966\"\u003e#57966\u003c/a\u003e \u003ca href=\"https://github.com/ZQDesigned\"\u003e\u003ccode\u003e@​ZQDesigned\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Select and related popup components numeric popup width rendering. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58511\"\u003e#58511\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Select creating disabled tags. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58518\"\u003e#58518\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Select single mode \u003ccode\u003elabelRender\u003c/code\u003e dimming while open. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58288\"\u003e#58288\u003c/a\u003e \u003ca href=\"https://github.com/kfylaktopoulos\"\u003e\u003ccode\u003e@​kfylaktopoulos\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eTable\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Table \u003ccode\u003edefaultSortOrder\u003c/code\u003e and controlled \u003ccode\u003esortOrder\u003c/code\u003e being ignored when the column is hidden by \u003ccode\u003eresponsive\u003c/code\u003e at the current breakpoint. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58008\"\u003e#58008\u003c/a\u003e \u003ca href=\"https://github.com/yogeshwaran-c\"\u003e\u003ccode\u003e@​yogeshwaran-c\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Table extra vertical line on the last fixed-right column in bordered mode. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58516\"\u003e#58516\u003c/a\u003e \u003ca href=\"https://github.com/uttam12331\"\u003e\u003ccode\u003e@​uttam12331\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e⌨️ Improve Table row selection checkbox accessibility by supporting \u003ccode\u003earia-*\u003c/code\u003e attributes from \u003ccode\u003egetCheckboxProps\u003c/code\u003e. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58275\"\u003e#58275\u003c/a\u003e \u003ca href=\"https://github.com/EmilyyyLiu\"\u003e\u003ccode\u003e@​EmilyyyLiu\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Fix Table sticky header top border missing in bordered mode. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58451\"\u003e#58451\u003c/a\u003e \u003ca href=\"https://github.com/BangDori\"\u003e\u003ccode\u003e@​BangDori\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eBorderBeam\n\u003cul\u003e\n\u003cli\u003e🆕 Add BorderBeam \u003ccode\u003eduration\u003c/code\u003e prop to control beam loop duration. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58233\"\u003e#58233\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🆕 Add BorderBeam \u003ccode\u003elineWidth\u003c/code\u003e prop to control beam width. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58324\"\u003e#58324\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🆕 Add BorderBeam \u003ccode\u003esize\u003c/code\u003e prop to control beam size. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58303\"\u003e#58303\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eBadge\n\u003cul\u003e\n\u003cli\u003e🆕 Add Badge \u003ccode\u003etitle\u003c/code\u003e prop to allow removing the native tooltip. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58209\"\u003e#58209\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Improve Badge processing status display in dark mode. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58414\"\u003e#58414\u003c/a\u003e \u003ca href=\"https://github.com/clxstart\"\u003e\u003ccode\u003e@​clxstart\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eLayout\n\u003cul\u003e\n\u003cli\u003e🆕 Add Layout.Sider semantic \u003ccode\u003eclassNames\u003c/code\u003e and \u003ccode\u003estyles\u003c/code\u003e support. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57938\"\u003e#57938\u003c/a\u003e \u003ca href=\"https://github.com/landeqiming666\"\u003e\u003ccode\u003e@​landeqiming666\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Layout.Header, Layout.Footer and Layout.Content losing default background when used standalone with \u003ccode\u003etheme.cssVar\u003c/code\u003e enabled. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58046\"\u003e#58046\u003c/a\u003e \u003ca href=\"https://github.com/yogeshwaran-c\"\u003e\u003ccode\u003e@​yogeshwaran-c\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003ePagination\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Pagination text wrapping and overflow in some scenarios. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58151\"\u003e#58151\u003c/a\u003e \u003ca href=\"https://github.com/selicens\"\u003e\u003ccode\u003e@​selicens\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Pagination quick jumper layout instability. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58282\"\u003e#58282\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eUpload\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Upload not showing file icon for failed files. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58484\"\u003e#58484\u003c/a\u003e \u003ca href=\"https://github.com/biubiukam\"\u003e\u003ccode\u003e@​biubiukam\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e⌨️ Improve Upload list item name accessibility when previewing files without a URL. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58092\"\u003e#58092\u003c/a\u003e \u003ca href=\"https://github.com/ug-one\"\u003e\u003ccode\u003e@​ug-one\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eAlert\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Alert icon vertical alignment when description content is provided. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57915\"\u003e#57915\u003c/a\u003e \u003ca href=\"https://github.com/MMMIXER\"\u003e\u003ccode\u003e@​MMMIXER\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Alert icon and close button not aligning with the first title line when only a title is provided. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57878\"\u003e#57878\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e📖 Improve AI agent support for the ant.design website and its \u003ca href=\"https://isitagentready.com/ant.design\"\u003eisitagentready.com/ant.design\u003c/a\u003e result. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58510\"\u003e#58510\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58490\"\u003e#58490\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57725\"\u003e#57725\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/ug-one\"\u003e\u003ccode\u003e@​ug-one\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e📖 Update Ant Design CLI docs with \u003ccode\u003eantd setup\u003c/code\u003e, Node.js \u003ccode\u003e\u0026gt;=20.0.0\u003c/code\u003e requirement, MCP version auto-detection, and environment variable notes, and sync the For Agents and MCP Server docs in both languages. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58460\"\u003e#58460\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix antd root semantic \u003ccode\u003estyle\u003c/code\u003e priority across components to ensure component \u003ccode\u003estyle\u003c/code\u003e overrides global \u003ccode\u003estyles.root\u003c/code\u003e and \u003ccode\u003estyle\u003c/code\u003e configuration. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58474\"\u003e#58474\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Improve Component Token small control height in compact theme to avoid cramped line boxes. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58411\"\u003e#58411\u003c/a\u003e \u003ca href=\"https://github.com/nightt5879\"\u003e\u003ccode\u003e@​nightt5879\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Anchor hash parsing performance issue with specially crafted hash values. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58472\"\u003e#58472\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🆕 Add Collapse \u003ccode\u003eheaderPaddingSM\u003c/code\u003e, \u003ccode\u003eheaderPaddingLG\u003c/code\u003e, \u003ccode\u003econtentPaddingSM\u003c/code\u003e, and \u003ccode\u003econtentPaddingLG\u003c/code\u003e tokens to configure header and content padding for small and large sizes separately. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58436\"\u003e#58436\u003c/a\u003e \u003ca href=\"https://github.com/biubiukam\"\u003e\u003ccode\u003e@​biubiukam\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🆕 Add ConfigProvider form \u003ccode\u003elabelWrap\u003c/code\u003e configuration support. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58035\"\u003e#58035\u003c/a\u003e \u003ca href=\"https://github.com/EmilyyyLiu\"\u003e\u003ccode\u003e@​EmilyyyLiu\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ant-design/ant-design/blob/master/CHANGELOG.en-US.md\"\u003eantd's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e6.5.0\u003c/h2\u003e\n\u003cp\u003e\u003ccode\u003e2026-06-27\u003c/code\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e🔥 Add the antd \u003ccode\u003eDESIGN.md\u003c/code\u003e design-language file and publish it at \u003ca href=\"https://ant.design/design.md\"\u003eant.design/design.md\u003c/a\u003e, helping AI design tools understand Ant Design visual language, component archetypes, and theme tokens. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58011\"\u003e#58011\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58356\"\u003e#58356\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58489\"\u003e#58489\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e📦 Optimize the antd full bundle size: compared with 6.4.5, size-limit reports \u003ccode\u003eantd.min.js\u003c/code\u003e down from \u003ccode\u003e437.05 KB\u003c/code\u003e to \u003ccode\u003e432.44 KB\u003c/code\u003e, and \u003ccode\u003eantd-with-locales.min.js\u003c/code\u003e down from \u003ccode\u003e514.19 KB\u003c/code\u003e to \u003ccode\u003e506.84 KB\u003c/code\u003e. The main gains come from slimmer DatePicker and TimePicker runtime code in \u003ccode\u003e@rc-component/picker\u003c/code\u003e, plus Icon/Upload avoiding extra TwoTone runtime in the full bundle. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58403\"\u003e#58403\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58497\"\u003e#58497\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIcon\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e🔥 Add built-in Icon entries for Anthropic, Claude, Gemini, Mistral, DeepSeek, Qwen, Perplexity, HuggingFace, Ollama, Replicate, ElevenLabs, Telegram, Mastodon, Threads and Snapchat. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58524\"\u003e#58524\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e📦 Optimize Icon and Upload default icon imports by upgrading \u003ccode\u003e@ant-design/icons\u003c/code\u003e to \u003ccode\u003e6.3.1\u003c/code\u003e and switching Upload picture-list default placeholders to Outlined icons, reducing extra TwoTone runtime in the full bundle. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58497\"\u003e#58497\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e🐞 Fix Icon styles not working when \u003ccode\u003etheme.zeroRuntime\u003c/code\u003e is enabled. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58517\"\u003e#58517\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eInput\n\u003cul\u003e\n\u003cli\u003e🆕 Add Input.Password \u003ccode\u003evisibilityToggle.tabIndex\u003c/code\u003e to customize the visibility toggle button tab order. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58458\"\u003e#58458\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Input.Search not applying ConfigProvider root \u003ccode\u003estyle\u003c/code\u003e configuration. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58467\"\u003e#58467\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Input.Search losing \u003ccode\u003eenterButton.className\u003c/code\u003e. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58506\"\u003e#58506\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Fix Input.Search button height not aligning with Input token height. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58525\"\u003e#58525\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Add focus outline for borderless Input components. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58250\"\u003e#58250\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eSelect\n\u003cul\u003e\n\u003cli\u003e🆕 Add Select function-based \u003ccode\u003etokenSeparators\u003c/code\u003e support. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57966\"\u003e#57966\u003c/a\u003e \u003ca href=\"https://github.com/ZQDesigned\"\u003e\u003ccode\u003e@​ZQDesigned\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Select and related popup components numeric popup width rendering. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58511\"\u003e#58511\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Select creating disabled tags. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58518\"\u003e#58518\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Select single mode \u003ccode\u003elabelRender\u003c/code\u003e dimming while open. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58288\"\u003e#58288\u003c/a\u003e \u003ca href=\"https://github.com/kfylaktopoulos\"\u003e\u003ccode\u003e@​kfylaktopoulos\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eTable\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Table \u003ccode\u003edefaultSortOrder\u003c/code\u003e and controlled \u003ccode\u003esortOrder\u003c/code\u003e being ignored when the column is hidden by \u003ccode\u003eresponsive\u003c/code\u003e at the current breakpoint. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58008\"\u003e#58008\u003c/a\u003e \u003ca href=\"https://github.com/yogeshwaran-c\"\u003e\u003ccode\u003e@​yogeshwaran-c\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Table extra vertical line on the last fixed-right column in bordered mode. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58516\"\u003e#58516\u003c/a\u003e \u003ca href=\"https://github.com/uttam12331\"\u003e\u003ccode\u003e@​uttam12331\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e⌨️ Improve Table row selection checkbox accessibility by supporting \u003ccode\u003earia-*\u003c/code\u003e attributes from \u003ccode\u003egetCheckboxProps\u003c/code\u003e. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58275\"\u003e#58275\u003c/a\u003e \u003ca href=\"https://github.com/EmilyyyLiu\"\u003e\u003ccode\u003e@​EmilyyyLiu\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Fix Table sticky header top border missing in bordered mode. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58451\"\u003e#58451\u003c/a\u003e \u003ca href=\"https://github.com/BangDori\"\u003e\u003ccode\u003e@​BangDori\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eBorderBeam\n\u003cul\u003e\n\u003cli\u003e🆕 Add BorderBeam \u003ccode\u003eduration\u003c/code\u003e prop to control beam loop duration. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58233\"\u003e#58233\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🆕 Add BorderBeam \u003ccode\u003elineWidth\u003c/code\u003e prop to control beam width. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58324\"\u003e#58324\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🆕 Add BorderBeam \u003ccode\u003esize\u003c/code\u003e prop to control beam size. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58303\"\u003e#58303\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eBadge\n\u003cul\u003e\n\u003cli\u003e🆕 Add Badge \u003ccode\u003etitle\u003c/code\u003e prop to allow removing the native tooltip. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58209\"\u003e#58209\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💄 Improve Badge processing status display in dark mode. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58414\"\u003e#58414\u003c/a\u003e \u003ca href=\"https://github.com/clxstart\"\u003e\u003ccode\u003e@​clxstart\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eLayout\n\u003cul\u003e\n\u003cli\u003e🆕 Add Layout.Sider semantic \u003ccode\u003eclassNames\u003c/code\u003e and \u003ccode\u003estyles\u003c/code\u003e support. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57938\"\u003e#57938\u003c/a\u003e \u003ca href=\"https://github.com/landeqiming666\"\u003e\u003ccode\u003e@​landeqiming666\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Layout.Header, Layout.Footer and Layout.Content losing default background when used standalone with \u003ccode\u003etheme.cssVar\u003c/code\u003e enabled. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58046\"\u003e#58046\u003c/a\u003e \u003ca href=\"https://github.com/yogeshwaran-c\"\u003e\u003ccode\u003e@​yogeshwaran-c\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003ePagination\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Pagination text wrapping and overflow in some scenarios. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58151\"\u003e#58151\u003c/a\u003e \u003ca href=\"https://github.com/selicens\"\u003e\u003ccode\u003e@​selicens\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Pagination quick jumper layout instability. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58282\"\u003e#58282\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eUpload\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Upload not showing file icon for failed files. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58484\"\u003e#58484\u003c/a\u003e \u003ca href=\"https://github.com/biubiukam\"\u003e\u003ccode\u003e@​biubiukam\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e⌨️ Improve Upload list item name accessibility when previewing files without a URL. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58092\"\u003e#58092\u003c/a\u003e \u003ca href=\"https://github.com/ug-one\"\u003e\u003ccode\u003e@​ug-one\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eAlert\n\u003cul\u003e\n\u003cli\u003e🐞 Fix Alert icon vertical alignment when description content is provided. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57915\"\u003e#57915\u003c/a\u003e \u003ca href=\"https://github.com/MMMIXER\"\u003e\u003ccode\u003e@​MMMIXER\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e🐞 Fix Alert icon and close button not aligning with the first title line when only a title is provided. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57878\"\u003e#57878\u003c/a\u003e \u003ca href=\"https://github.com/QDyanbing\"\u003e\u003ccode\u003e@​QDyanbing\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e📖 Improve AI agent support for the ant.design website and its \u003ca href=\"https://isitagentready.com/ant.design\"\u003eisitagentready.com/ant.design\u003c/a\u003e result. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58510\"\u003e#58510\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58490\"\u003e#58490\u003c/a\u003e \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/57725\"\u003e#57725\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e \u003ca href=\"https://github.com/ug-one\"\u003e\u003ccode\u003e@​ug-one\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e📖 Update Ant Design CLI docs with \u003ccode\u003eantd setup\u003c/code\u003e, Node.js \u003ccode\u003e\u0026gt;=20.0.0\u003c/code\u003e requirement, MCP version auto-detection, and environment variable notes, and sync the For Agents and MCP Server docs in both languages. \u003ca href=\"https://redirect.github.com/ant-design/ant-design/pull/58460\"\u003e#58460\u003c/a\u003e \u003ca href=\"https://github.com/afc163\"\u003e\u003ccode\u003e@​afc163\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/740ad964dc2397f33e40944367b0536a7314cc32\"\u003e\u003ccode\u003e740ad96\u003c/code\u003e\u003c/a\u003e ci: rm action version comment (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/58536\"\u003e#58536\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/3b44cef6d9c7de3f777b774b721d8b73ecfdd132\"\u003e\u003ccode\u003e3b44cef\u003c/code\u003e\u003c/a\u003e docs: add changelog for 6.5.0 (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/58527\"\u003e#58527\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/c94729da43072dcf5940971f9d521ce72031e7e2\"\u003e\u003ccode\u003ec94729d\u003c/code\u003e\u003c/a\u003e revert: remove rate star border tokens (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/58535\"\u003e#58535\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/8856f85440be1698a5dc4947cc8fd5e9208b02b5\"\u003e\u003ccode\u003e8856f85\u003c/code\u003e\u003c/a\u003e type: typeScript definition improvement (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/58534\"\u003e#58534\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/b0272e2abf1940e5fdd75cc4cccc2153767fac13\"\u003e\u003ccode\u003eb0272e2\u003c/code\u003e\u003c/a\u003e fix(Descriptions): apply labelStyle/contentStyle to bordered cells\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/6a3a64141af825983b418f81f2ed1ce97f015c5c\"\u003e\u003ccode\u003e6a3a641\u003c/code\u003e\u003c/a\u003e fix: remove subpixel offset from Steps rail\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/81105082362b9d3578e8c11ee7f9c7de3be2e8dc\"\u003e\u003ccode\u003e8110508\u003c/code\u003e\u003c/a\u003e fix(Alert): align icon and close button for title-only alerts (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/57878\"\u003e#57878\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/0a8fb57ab12bc74fde2f076f7500af73129dbb62\"\u003e\u003ccode\u003e0a8fb57\u003c/code\u003e\u003c/a\u003e chore(deps): update dependency eslint to v10.6.0 (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/58532\"\u003e#58532\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/6b7a789c7f21b8ed7c8d05cd5319740e0e18a6ed\"\u003e\u003ccode\u003e6b7a789\u003c/code\u003e\u003c/a\u003e chore(deps): update dependency \u003ccode\u003e@​google/design\u003c/code\u003e.md to ^0.3.0 (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/58531\"\u003e#58531\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ant-design/ant-design/commit/7b1f0268a4035fdb9ec38b49e1272dc3c72fa6f9\"\u003e\u003ccode\u003e7b1f026\u003c/code\u003e\u003c/a\u003e chore(deps): update actions/cache digest to 55cc834 (\u003ca href=\"https://redirect.github.com/ant-design/ant-design/issues/58530\"\u003e#58530\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/ant-design/ant-design/compare/6.4.3...6.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `autoprefixer` from 10.4.27 to 10.5.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/autoprefixer/releases\"\u003eautoprefixer's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e10.5.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMoved \u003ccode\u003e-webkit-fill-available\u003c/code\u003e before \u003ccode\u003e-moz-available\u003c/code\u003e, so Firefox\nwill use \u003ccode\u003e-webkit-\u003c/code\u003e version which is closer to \u003ccode\u003estretch\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.5.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003egrid-area\u003c/code\u003e span reset for overriding areas (by \u003ca href=\"https://github.com/puneetdixit200\"\u003e\u003ccode\u003e@​puneetdixit200\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.5.0 “Each Endeavouring, All Achieving”\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003emask-position-x\u003c/code\u003e and \u003ccode\u003emask-position-y\u003c/code\u003e support (by \u003ca href=\"https://github.com/toporek\"\u003e\u003ccode\u003e@​toporek\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/postcss/autoprefixer/blob/main/CHANGELOG.md\"\u003eautoprefixer's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e10.5.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMoved \u003ccode\u003e-webkit-fill-available\u003c/code\u003e before \u003ccode\u003e-moz-available\u003c/code\u003e, so Firefox\nwill use \u003ccode\u003e-webkit-\u003c/code\u003e version which is closer to \u003ccode\u003estretch\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.5.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed \u003ccode\u003egrid-area\u003c/code\u003e span reset for overriding areas (by \u003ca href=\"https://github.com/puneetdixit200\"\u003e\u003ccode\u003e@​puneetdixit200\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e10.5.0 “Each Endeavouring, All Achieving”\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdded \u003ccode\u003emask-position-x\u003c/code\u003e and \u003ccode\u003emask-position-y\u003c/code\u003e support (by \u003ca href=\"https://github.com/toporek\"\u003e\u003ccode\u003e@​toporek\u003c/code\u003e\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/e99e38122ce706747c903ef321a3c1df2d7ada3e\"\u003e\u003ccode\u003ee99e381\u003c/code\u003e\u003c/a\u003e Release 10.5.2 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/98de3f5238ba92ce3bbf1a36b52cafcb44cddcfb\"\u003e\u003ccode\u003e98de3f5\u003c/code\u003e\u003c/a\u003e Move -webkit-fill-available before -moz-available to get a closer to spec res...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/8fe2513502248c84ea5a6c35a3f843cb9dd7e682\"\u003e\u003ccode\u003e8fe2513\u003c/code\u003e\u003c/a\u003e Release 10.5.1 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/60ea6516dbf9efa9fe2dfeddac6b638904a93e52\"\u003e\u003ccode\u003e60ea651\u003c/code\u003e\u003c/a\u003e Update release process\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/cbd4a70f5fad6b5325f31836161ed70b5837a915\"\u003e\u003ccode\u003ecbd4a70\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/ffae49ff54e1a487124116844d538016aa809449\"\u003e\u003ccode\u003effae49f\u003c/code\u003e\u003c/a\u003e fix: reset grid area spans when overriding areas (\u003ca href=\"https://redirect.github.com/postcss/autoprefixer/issues/1549\"\u003e#1549\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/d90ad86a4e5f938c0e11cf15d1cf3ced900b94cb\"\u003e\u003ccode\u003ed90ad86\u003c/code\u003e\u003c/a\u003e Fix CI\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/postcss/autoprefixer/commit/a0f701bae5104043fc971452dc29e7adf1fc227a\"\u003e\u003ccode\u003ea0f701b\u003c/code\u003e...\n\n_Description has been truncated_","html_url":"https://github.com/ahmedchoudery/Stop-Shop/pull/4","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/ahmedchoudery%2FStop-Shop/issues/4","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/4/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-07-02T06:25:30.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4791849941","node_id":"PR_kwDOSqdGFs7s_cUc","number":12,"state":"open","title":"Bump the server-dependencies group across 1 directory with 11 updates","user":"dependabot[bot]","labels":[],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-07-02T06:25:30.000Z","updated_at":"2026-07-02T06:25:30.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"server-dependencies","update_count":11,"packages":[{"name":"axios","old_version":"1.16.1","new_version":"1.18.1","repository_url":"https://github.com/axios/axios"},{"name":"body-parser","old_version":"2.2.2","new_version":"2.3.0","repository_url":"https://github.com/expressjs/body-parser"},{"name":"fs-extra","old_version":"11.3.5","new_version":"11.3.6","repository_url":"https://github.com/jprichardson/node-fs-extra"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"node-red","old_version":"4.1.10","new_version":"5.0.1","repository_url":"https://github.com/node-red/node-red"},{"name":"nodemailer","old_version":"8.0.9","new_version":"9.0.3","repository_url":"https://github.com/nodemailer/nodemailer"},{"name":"nopt","old_version":"9.0.0","new_version":"10.0.1","repository_url":"https://github.com/npm/nopt"},{"name":"pdfmake","old_version":"0.3.9","new_version":"0.3.11","repository_url":"https://github.com/bpampuch/pdfmake"},{"name":"pg","old_version":"8.21.0","new_version":"8.22.0","repository_url":"https://github.com/brianc/node-postgres"},{"name":"@playwright/test","old_version":"1.60.0","new_version":"1.61.1","repository_url":"https://github.com/microsoft/playwright"},{"name":"typescript","old_version":"5.9.3","new_version":"6.0.3","repository_url":"https://github.com/microsoft/TypeScript"}],"path":null,"ecosystem":"npm"},"body":"Bumps the server-dependencies group with 11 updates in the /server directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [axios](https://github.com/axios/axios) | `1.16.1` | `1.18.1` |\n| [body-parser](https://github.com/expressjs/body-parser) | `2.2.2` | `2.3.0` |\n| [fs-extra](https://github.com/jprichardson/node-fs-extra) | `11.3.5` | `11.3.6` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [node-red](https://github.com/node-red/node-red) | `4.1.10` | `5.0.1` |\n| [nodemailer](https://github.com/nodemailer/nodemailer) | `8.0.9` | `9.0.3` |\n| [nopt](https://github.com/npm/nopt) | `9.0.0` | `10.0.1` |\n| [pdfmake](https://github.com/bpampuch/pdfmake) | `0.3.9` | `0.3.11` |\n| [pg](https://github.com/brianc/node-postgres/tree/HEAD/packages/pg) | `8.21.0` | `8.22.0` |\n| [@playwright/test](https://github.com/microsoft/playwright) | `1.60.0` | `1.61.1` |\n| [typescript](https://github.com/microsoft/TypeScript) | `5.9.3` | `6.0.3` |\n\n\nUpdates `axios` from 1.16.1 to 1.18.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/releases\"\u003eaxios's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.18.1 — June 21, 2026\u003c/h2\u003e\n\u003cp\u003eThis release focuses on Node HTTP adapter fixes, safer AxiosError serialisation, runtime/type correctness fixes, documentation updates, and dependency maintenance.\u003c/p\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAxiosError Serialisation: Made AxiosError#cause non-enumerable to prevent circular JSON serialisation failures when errors include nested causes. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10913\"\u003e#10913\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eNode HTTP Adapter: Guarded socket.setKeepAlive for proxy agent streams, accepted path-only URLs when socketPath is configured, deferred environment proxy handling to Node, and explicitly passed maxBodyLength through to follow-redirects. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10917\"\u003e#10917\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/10930\"\u003e#10930\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/10942\"\u003e#10942\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/10993\"\u003e#10993\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRuntime and Type Correctness: Fixed several runtime crashes, type definition mismatches, and incorrect error handling paths. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10959\"\u003e#10959\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11021\"\u003e#11021\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAxiosURLSearchParams: Switched the encoder callback to an arrow function so \u003ccode\u003eencoder.call(this)\u003c/code\u003e receives the \u003ccode\u003eAxiosURLSearchParams\u003c/code\u003e instance correctly. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11019\"\u003e#11019\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eDocumentation: Documented sensitive headers and status transition behaviour, prepared cleaned-up docs, added Deno install instructions, and clarified that request data is request-specific (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11007\"\u003e#11007\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11010\"\u003e#11010\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11023\"\u003e#11023\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11025\"\u003e#11025\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDependencies: Bumped vite, rollup, form-data, js-yaml, and multer across the root project, docs, smoke tests, and module test workspaces. (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11011\"\u003e#11011\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11012\"\u003e#11012\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11013\"\u003e#11013\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11014\"\u003e#11014\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11015\"\u003e#11015\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11016\"\u003e#11016\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11017\"\u003e#11017\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/axios/axios/issues/11026\"\u003e#11026\u003c/a\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🌟 New Contributors\u003c/h2\u003e\n\u003cp\u003eWe are thrilled to welcome our new contributors. Thank you for helping improve axios:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/webdevelopersrinu\"\u003e\u003ccode\u003e@​webdevelopersrinu\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10913\"\u003e#10913\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/sijie-Z\"\u003e\u003ccode\u003e@​sijie-Z\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10993\"\u003e#10993\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bartlomieju\"\u003e\u003ccode\u003e@​bartlomieju\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11023\"\u003e#11023\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/JSap0914\"\u003e\u003ccode\u003e@​JSap0914\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11019\"\u003e#11019\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/axios/axios/compare/v1.18.0...v1.18.1\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev1.18.0 — June 13, 2026\u003c/h2\u003e\n\u003cp\u003eThis release hardens redirect and URL handling, improves the validateStatus configuration semantics, and includes updates to documentation, dependencies, and release metadata.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRedirect Header Safety:\u003c/strong\u003e Added Node HTTP adapter support for stripping caller-specified sensitive headers on cross-origin redirects, helping prevent custom auth headers such as API keys from leaking to another origin. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10892\"\u003e#10892\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eURL And Request Hardening:\u003c/strong\u003e Rejects malformed \u003ccode\u003ehttp:\u003c/code\u003e and \u003ccode\u003ehttps:\u003c/code\u003e URLs that omit \u003ccode\u003e//\u003c/code\u003e with \u003ccode\u003eERR_INVALID_URL\u003c/code\u003e, while tightening prototype-pollution-safe config reads, stream size limits, FormData depth handling, data URL sizing, and local \u003ccode\u003eNO_PROXY\u003c/code\u003e matching. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11000\"\u003e#11000\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eStatus Validation:\u003c/strong\u003e Added \u003ccode\u003etransitional.validateStatusUndefinedResolves\u003c/code\u003e so applications can opt in to treating \u003ccode\u003evalidateStatus: undefined\u003c/code\u003e like the option was omitted, while \u003ccode\u003evalidateStatus: null\u003c/code\u003e remains the explicit way to accept every status. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDocumentation:\u003c/strong\u003e Published the v1.17.0 release notes, fixed a changelog typo, clarified the package update PR policy, and marked the \u003ccode\u003eproxy\u003c/code\u003e request config as Node.js-only in the advanced docs. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10984\"\u003e#10984\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10988\"\u003e#10988\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10992\"\u003e#10992\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDependencies:\u003c/strong\u003e Bumped \u003ccode\u003e@babel/core\u003c/code\u003e, \u003ccode\u003e@babel/preset-env\u003c/code\u003e, \u003ccode\u003e@commitlint/cli\u003c/code\u003e, \u003ccode\u003e@commitlint/config-conventional\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-babel\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-commonjs\u003c/code\u003e, \u003ccode\u003e@vitest/browser\u003c/code\u003e, \u003ccode\u003e@vitest/browser-playwright\u003c/code\u003e, \u003ccode\u003eeslint\u003c/code\u003e, \u003ccode\u003elint-staged\u003c/code\u003e, \u003ccode\u003erollup\u003c/code\u003e, \u003ccode\u003evitest\u003c/code\u003e, and \u003ccode\u003eactions/checkout\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10989\"\u003e#10989\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10996\"\u003e#10996\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10997\"\u003e#10997\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRelease Metadata:\u003c/strong\u003e Prepared the 1.18.0 release by updating package metadata and the runtime \u003ccode\u003eVERSION\u003c/code\u003e value. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11003\"\u003e#11003\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/blob/v1.x/CHANGELOG.md\"\u003eaxios's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003ch2\u003ev1.18.0 — June 13, 2026\u003c/h2\u003e\n\u003cp\u003eThis release hardens redirect and URL handling, improves the validateStatus configuration semantics, and includes updates to documentation, dependencies, and release metadata.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRedirect Header Safety:\u003c/strong\u003e Added Node HTTP adapter support for stripping caller-specified sensitive headers on cross-origin redirects, helping prevent custom auth headers such as API keys from leaking to another origin. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10892\"\u003e#10892\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eURL And Request Hardening:\u003c/strong\u003e Rejects malformed \u003ccode\u003ehttp:\u003c/code\u003e and \u003ccode\u003ehttps:\u003c/code\u003e URLs that omit \u003ccode\u003e//\u003c/code\u003e with \u003ccode\u003eERR_INVALID_URL\u003c/code\u003e, while tightening prototype-pollution-safe config reads, stream size limits, FormData depth handling, data URL sizing, and local \u003ccode\u003eNO_PROXY\u003c/code\u003e matching. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11000\"\u003e#11000\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eStatus Validation:\u003c/strong\u003e Added \u003ccode\u003etransitional.validateStatusUndefinedResolves\u003c/code\u003e so applications can opt in to treating \u003ccode\u003evalidateStatus: undefined\u003c/code\u003e like the option was omitted, while \u003ccode\u003evalidateStatus: null\u003c/code\u003e remains the explicit way to accept every status. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDocumentation:\u003c/strong\u003e Published the v1.17.0 release notes, fixed a changelog typo, clarified the package update PR policy, and marked the \u003ccode\u003eproxy\u003c/code\u003e request config as Node.js-only in the advanced docs. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10984\"\u003e#10984\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10988\"\u003e#10988\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10992\"\u003e#10992\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDependencies:\u003c/strong\u003e Bumped \u003ccode\u003e@babel/core\u003c/code\u003e, \u003ccode\u003e@babel/preset-env\u003c/code\u003e, \u003ccode\u003e@commitlint/cli\u003c/code\u003e, \u003ccode\u003e@commitlint/config-conventional\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-babel\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-commonjs\u003c/code\u003e, \u003ccode\u003e@vitest/browser\u003c/code\u003e, \u003ccode\u003e@vitest/browser-playwright\u003c/code\u003e, \u003ccode\u003eeslint\u003c/code\u003e, \u003ccode\u003elint-staged\u003c/code\u003e, \u003ccode\u003erollup\u003c/code\u003e, \u003ccode\u003evitest\u003c/code\u003e, and \u003ccode\u003eactions/checkout\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10989\"\u003e#10989\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10996\"\u003e#10996\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10997\"\u003e#10997\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRelease Metadata:\u003c/strong\u003e Prepared the 1.18.0 release by updating package metadata and the runtime \u003ccode\u003eVERSION\u003c/code\u003e value. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11003\"\u003e#11003\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🌟 New Contributors\u003c/h2\u003e\n\u003cp\u003eWe are thrilled to welcome our new contributors. Thank you for helping improve axios:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/drori12\"\u003e\u003ccode\u003e@​drori12\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10984\"\u003e#10984\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/eyupcanakman\"\u003e\u003ccode\u003e@​eyupcanakman\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/Adi-Beker\"\u003e\u003ccode\u003e@​Adi-Beker\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/axios/axios/compare/v1.17.0...v1.18.0\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev1.17.0 — June 1, 2026\u003c/h2\u003e\n\u003cp\u003eThis release adds Node HTTP zstd decompression, hardens config and release workflows, and fixes authentication, header, proxy, and type-handling regressions.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eConfig Hardening:\u003c/strong\u003e Guarded \u003ccode\u003esocketPath\u003c/code\u003e, \u003ccode\u003eparams\u003c/code\u003e, and \u003ccode\u003eparamsSerializer\u003c/code\u003e reads with own-property checks to prevent inherited prototype values from affecting request behavior, including SSRF-sensitive paths. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10901\"\u003e#10901\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10922\"\u003e#10922\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRelease Publishing:\u003c/strong\u003e Switched the publish workflow to npm staged publishing for safer, auditable package releases with provenance. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10926\"\u003e#10926\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🚀 New Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eHTTP Compression:\u003c/strong\u003e Added Node HTTP adapter support for zstd response decompression, with \u003ccode\u003etransitional.advertiseZstdAcceptEncoding\u003c/code\u003e controlling whether \u003ccode\u003ezstd\u003c/code\u003e is advertised in \u003ccode\u003eAccept-Encoding\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/6792\"\u003e#6792\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10920\"\u003e#10920\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eAuthentication Handling:\u003c/strong\u003e Restored Basic auth on same-origin Node redirects while continuing to strip credentials cross-origin, and aligned the fetch adapter with HTTP adapter behavior for URL-embedded Basic auth. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10929\"\u003e#10929\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/a209bfb1e5dcbce3cecbf4bd955339d006358887\"\u003e\u003ccode\u003ea209bfb\u003c/code\u003e\u003c/a\u003e chore(release): prepare release 1.18.1 (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11027\"\u003e#11027\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/fa6a55ef99235074d2c11d80a1064ef02850d598\"\u003e\u003ccode\u003efa6a55e\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump multer from 2.1.1 to 2.2.0 (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11026\"\u003e#11026\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/40e7be8a78dd43caaeb2313cc4be3f8e714be91d\"\u003e\u003ccode\u003e40e7be8\u003c/code\u003e\u003c/a\u003e docs: clarifies that request data is request-specific in axios (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11025\"\u003e#11025\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/a446b39b19c8b570214a4158520c5ddd5b020366\"\u003e\u003ccode\u003ea446b39\u003c/code\u003e\u003c/a\u003e fix(AxiosURLSearchParams): use arrow function so encoder.call(this) receives ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/cf1306a42d97960b635c894c83658f2692e53585\"\u003e\u003ccode\u003ecf1306a\u003c/code\u003e\u003c/a\u003e docs: add Deno to install instructions (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11023\"\u003e#11023\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/b32880af48017457a1203ab2e63720902d3b71b3\"\u003e\u003ccode\u003eb32880a\u003c/code\u003e\u003c/a\u003e fix: incorrect use of error (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11021\"\u003e#11021\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/1792eda11aff8fe0f8c8a6e5ae6ff305740a6460\"\u003e\u003ccode\u003e1792eda\u003c/code\u003e\u003c/a\u003e fix: ensure maxBodyLength is explicitly passed to follow-redirects (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10993\"\u003e#10993\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/30499d6af0961ec38619792013a534d1933b08a9\"\u003e\u003ccode\u003e30499d6\u003c/code\u003e\u003c/a\u003e fix: various runtime crashes and type definition mismatches (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10959\"\u003e#10959\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/20ce9c412ebd88823d1a4a47000cb133a8f79440\"\u003e\u003ccode\u003e20ce9c4\u003c/code\u003e\u003c/a\u003e fix(http): defer env proxy handling to Node (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10942\"\u003e#10942\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/e64bcf9c5af231d6f37d8389b1e57ded314fff86\"\u003e\u003ccode\u003ee64bcf9\u003c/code\u003e\u003c/a\u003e chore(deps): merge branch 'v1.x' into tests/module/cjs (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11014\"\u003e#11014\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/axios/axios/compare/v1.16.1...v1.18.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `body-parser` from 2.2.2 to 2.3.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/body-parser/releases\"\u003ebody-parser's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.3.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ebuild(deps): bump actions/download-artifact from 6.0.0 to 7.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/681\"\u003eexpressjs/body-parser#681\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/checkout from 5.0.0 to 6.0.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/682\"\u003eexpressjs/body-parser#682\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.0.0 to 6.1.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/683\"\u003eexpressjs/body-parser#683\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/upload-artifact from 5.0.0 to 6.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/685\"\u003eexpressjs/body-parser#685\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.31.2 to 4.31.9 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/684\"\u003eexpressjs/body-parser#684\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eperf(urlencoded): move empty-body guard to avoid extra function closure by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/647\"\u003eexpressjs/body-parser#647\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove ESM compatibility by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/697\"\u003eexpressjs/body-parser#697\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: add recommendations for configuring payload limits by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/699\"\u003eexpressjs/body-parser#699\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.1.0 to 6.2.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/701\"\u003eexpressjs/body-parser#701\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.31.10 to 4.32.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/702\"\u003eexpressjs/body-parser#702\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/checkout from 6.0.1 to 6.0.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/700\"\u003eexpressjs/body-parser#700\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore:  add explicit type commonjs to package.json by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/711\"\u003eexpressjs/body-parser#711\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps: update dependencies to latest versions by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/708\"\u003eexpressjs/body-parser#708\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/download-artifact from 7.0.0 to 8.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/712\"\u003eexpressjs/body-parser#712\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.32.0 to 4.32.4 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/713\"\u003eexpressjs/body-parser#713\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/upload-artifact from 6.0.0 to 7.0.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/714\"\u003eexpressjs/body-parser#714\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: improve limit option validation by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/698\"\u003eexpressjs/body-parser#698\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.32.4 to 4.35.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/719\"\u003eexpressjs/body-parser#719\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.2.0 to 6.3.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/718\"\u003eexpressjs/body-parser#718\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/download-artifact from 8.0.0 to 8.0.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/717\"\u003eexpressjs/body-parser#717\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eperf: eliminate conditional check in json strict mode hot path by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/651\"\u003eexpressjs/body-parser#651\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add node.js 26 to text matrix by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/726\"\u003eexpressjs/body-parser#726\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/setup-node from 6.3.0 to 6.4.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/725\"\u003eexpressjs/body-parser#725\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/724\"\u003eexpressjs/body-parser#724\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.35.1 to 4.35.3 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/723\"\u003eexpressjs/body-parser#723\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade \u0026quot;content-type\u0026quot; by \u003ca href=\"https://github.com/blakeembrey\"\u003e\u003ccode\u003e@​blakeembrey\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/728\"\u003eexpressjs/body-parser#728\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: switch to const/let and enable eslint no-var rule by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/729\"\u003eexpressjs/body-parser#729\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate outdated reference to MDN docs by \u003ca href=\"https://github.com/krzysdz\"\u003e\u003ccode\u003e@​krzysdz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/730\"\u003eexpressjs/body-parser#730\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 4.35.3 to 4.36.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/731\"\u003eexpressjs/body-parser#731\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/checkout from 6.0.2 to 6.0.3 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/732\"\u003eexpressjs/body-parser#732\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: updated deps to latest by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/733\"\u003eexpressjs/body-parser#733\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e2.3.0 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/735\"\u003eexpressjs/body-parser#735\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/krzysdz\"\u003e\u003ccode\u003e@​krzysdz\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/body-parser/pull/730\"\u003eexpressjs/body-parser#730\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/body-parser/compare/v2.2.2...v2.3.0\"\u003ehttps://github.com/expressjs/body-parser/compare/v2.2.2...v2.3.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/body-parser/blob/master/HISTORY.md\"\u003ebody-parser's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e2.3.0 / 2026-06-15\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003efix: use static exports instead of lazy getters to improve ESM compatibility\u003c/li\u003e\n\u003cli\u003efeat: add subpath exports for individual parsers\u003c/li\u003e\n\u003cli\u003efix: improve \u003ccode\u003elimit\u003c/code\u003e option validation (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/698\"\u003e#698\u003c/a\u003e)\n\u003cul\u003e\n\u003cli\u003eInvalid \u003ccode\u003elimit\u003c/code\u003e values (e.g. unparseable strings or \u003ccode\u003eNaN\u003c/code\u003e) now throw instead of being silently ignored, which previously disabled size limit enforcement\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enull\u003c/code\u003e and \u003ccode\u003eundefined\u003c/code\u003e fall back to the default 100kb limit\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps:\n\u003cul\u003e\n\u003cli\u003econtent-type@^2.0.0\u003c/li\u003e\n\u003cli\u003ehttp-errors@^2.0.1\u003c/li\u003e\n\u003cli\u003eiconv-lite^0.7.2\u003c/li\u003e\n\u003cli\u003eqs@^6.15.2\u003c/li\u003e\n\u003cli\u003eraw-body@^3.0.2\u003c/li\u003e\n\u003cli\u003etype-is@^2.1.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/d0f2ace6c74769da7d19b8661b9a01c01bdb0bf7\"\u003e\u003ccode\u003ed0f2ace\u003c/code\u003e\u003c/a\u003e 2.3.0 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/735\"\u003e#735\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/7d03f2f9d561dafd1576b137713353c95253512c\"\u003e\u003ccode\u003e7d03f2f\u003c/code\u003e\u003c/a\u003e chore: updated deps to latest (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/733\"\u003e#733\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/8024ba7a813e6647ed63832d209a2abb8531267a\"\u003e\u003ccode\u003e8024ba7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 6.0.2 to 6.0.3 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/732\"\u003e#732\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/32b4ed4639281f04563adcd41d724ab06c9105d4\"\u003e\u003ccode\u003e32b4ed4\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.35.3 to 4.36.1 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/731\"\u003e#731\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/ff0f6b907106ec5a1b81c80f5a552d921c1bc9a5\"\u003e\u003ccode\u003eff0f6b9\u003c/code\u003e\u003c/a\u003e docs: update outdated reference to MDN docs (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/730\"\u003e#730\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/14d001a9c90abc05891d895ad3e9cf0a65b7b34a\"\u003e\u003ccode\u003e14d001a\u003c/code\u003e\u003c/a\u003e refactor: switch to const/let and enable eslint no-var rule (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/729\"\u003e#729\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/37f36a27528e65d7216f2c31c7039d3458c72147\"\u003e\u003ccode\u003e37f36a2\u003c/code\u003e\u003c/a\u003e deps: update content-type and type-is (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/728\"\u003e#728\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/e1c244bf55fb00a6de4be882b4ed9fc20807d864\"\u003e\u003ccode\u003ee1c244b\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.35.1 to 4.35.3 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/723\"\u003e#723\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/e01087f52192e20e2d0f8726d4f28a8d49d06c87\"\u003e\u003ccode\u003ee01087f\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/724\"\u003e#724\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/body-parser/commit/a7698d30280a3e931ea8841396e5d0ac5414e429\"\u003e\u003ccode\u003ea7698d3\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/setup-node from 6.3.0 to 6.4.0 (\u003ca href=\"https://redirect.github.com/expressjs/body-parser/issues/725\"\u003e#725\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/body-parser/compare/v2.2.2...v2.3.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `fs-extra` from 11.3.5 to 11.3.6\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jprichardson/node-fs-extra/blob/master/CHANGELOG.md\"\u003efs-extra's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e11.3.6 / 2026-06-29\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix handling of symlinked destination ancestors in copy/move methods (\u003ca href=\"https://redirect.github.com/jprichardson/node-fs-extra/issues/1071\"\u003e#1071\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jprichardson/node-fs-extra/pull/1073\"\u003e#1073\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eDocs typo fixed (\u003ca href=\"https://redirect.github.com/jprichardson/node-fs-extra/pull/1074\"\u003e#1074\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jprichardson/node-fs-extra/commit/62a4e720804aaa45d377d06788e258375cc544fa\"\u003e\u003ccode\u003e62a4e72\u003c/code\u003e\u003c/a\u003e 11.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jprichardson/node-fs-extra/commit/01c0ca6ea81ff9b24239a875aeaa8d787dec5f0c\"\u003e\u003ccode\u003e01c0ca6\u003c/code\u003e\u003c/a\u003e Fix copy/move recursing into source through a symlinked dest ancestor (\u003ca href=\"https://redirect.github.com/jprichardson/node-fs-extra/issues/1073\"\u003e#1073\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jprichardson/node-fs-extra/commit/726825010ce2b4fef7c46e4e1dd4db914568abe9\"\u003e\u003ccode\u003e7268250\u003c/code\u003e\u003c/a\u003e docs: fix typo in README.md (seperate → separately) (\u003ca href=\"https://redirect.github.com/jprichardson/node-fs-extra/issues/1074\"\u003e#1074\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jprichardson/node-fs-extra/commit/2fd7b6c2de07de449ccd750e2fcf7792542d060c\"\u003e\u003ccode\u003e2fd7b6c\u003c/code\u003e\u003c/a\u003e chore: Add Node 26 to the test matrix (\u003ca href=\"https://redirect.github.com/jprichardson/node-fs-extra/issues/1072\"\u003e#1072\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/jprichardson/node-fs-extra/compare/11.3.5...11.3.6\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `morgan` from 1.10.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `node-red` from 4.1.10 to 5.0.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/node-red/node-red/releases\"\u003enode-red's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.0.1: Maintenance Release\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate default branch references by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5793\"\u003enode-red/node-red#5793\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSet minimum node version to 22.9 by \u003ca href=\"https://github.com/bonanitech\"\u003e\u003ccode\u003e@​bonanitech\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5792\"\u003enode-red/node-red#5792\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd Japanese translations for 5.0.0-beta.6 by \u003ca href=\"https://github.com/kazuhitoyokoi\"\u003e\u003ccode\u003e@​kazuhitoyokoi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5394\"\u003enode-red/node-red#5394\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove dead link in contributing guide by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5797\"\u003enode-red/node-red#5797\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix RED.sidebar.containsTab api by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5816\"\u003enode-red/node-red#5816\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMove sidebar resize-handle down one level in z-index by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5817\"\u003enode-red/node-red#5817\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid initialising sidebars with tabs that do not exist yet by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5818\"\u003enode-red/node-red#5818\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix expandOnClick behaviour of treeList by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5821\"\u003enode-red/node-red#5821\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix images in welcome tour for 4.1 by \u003ca href=\"https://github.com/kazuhitoyokoi\"\u003e\u003ccode\u003e@​kazuhitoyokoi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5814\"\u003enode-red/node-red#5814\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd Japanese Translations for v5.0.0 by \u003ca href=\"https://github.com/kazuhitoyokoi\"\u003e\u003ccode\u003e@​kazuhitoyokoi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5815\"\u003enode-red/node-red#5815\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003egerman translation for help texts of the link nodes by \u003ca href=\"https://github.com/m-schaeffler\"\u003e\u003ccode\u003e@​m-schaeffler\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5801\"\u003enode-red/node-red#5801\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDon't throw error looking up locales for themes by \u003ca href=\"https://github.com/hardillb\"\u003e\u003ccode\u003e@​hardillb\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5813\"\u003enode-red/node-red#5813\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake docs popup styling consistent with info sidebar by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5822\"\u003enode-red/node-red#5822\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReposition active popups in response to window resize events by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5823\"\u003enode-red/node-red#5823\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5810] NR5: \u0026quot;0 plugins\u0026quot; in palette manager by \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5825\"\u003enode-red/node-red#5825\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5809] NR5: Scrollbars are not updating when jumping between nodes in the same workspace by \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5826\"\u003enode-red/node-red#5826\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[7522] Sync theme preference into the embedded Node-RED editor by \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5819\"\u003enode-red/node-red#5819\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix issue with monaco after expanding and collapsing the editor by \u003ca href=\"https://github.com/Steve-Mcl\"\u003e\u003ccode\u003e@​Steve-Mcl\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5830\"\u003enode-red/node-red#5830\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5808] NR5: navigaton elements overlap workspace content at edges by \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5827\"\u003enode-red/node-red#5827\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[BUGFIX] Fix git ref parsing resulting in broken merge conflicts and commit diffs by \u003ca href=\"https://github.com/beasteers\"\u003e\u003ccode\u003e@​beasteers\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5833\"\u003enode-red/node-red#5833\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5828] Scroll bars don't update properly   by \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5832\"\u003enode-red/node-red#5832\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5839] NR5: info popover does not support node.info() by \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5841\"\u003enode-red/node-red#5841\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHandle repositioning tooltip when aligned to top by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5844\"\u003enode-red/node-red#5844\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eLoad images in info popup before positioning by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5845\"\u003enode-red/node-red#5845\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd --watch option to npm run dev by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5843\"\u003enode-red/node-red#5843\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd a button to ignore the import of unknown types by \u003ca href=\"https://github.com/GogoVega\"\u003e\u003ccode\u003e@​GogoVega\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5836\"\u003enode-red/node-red#5836\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHandle unknown node type properties in info properties table by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5846\"\u003enode-red/node-red#5846\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate dependencies by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5847\"\u003enode-red/node-red#5847\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBackport dev changes to main by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5848\"\u003enode-red/node-red#5848\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump for 5.0.1 release by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5849\"\u003enode-red/node-red#5849\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump lock file by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5850\"\u003enode-red/node-red#5850\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/m-schaeffler\"\u003e\u003ccode\u003e@​m-schaeffler\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5801\"\u003enode-red/node-red#5801\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/beasteers\"\u003e\u003ccode\u003e@​beasteers\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5833\"\u003enode-red/node-red#5833\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/node-red/node-red/compare/5.0.0...5.0.1\"\u003ehttps://github.com/node-red/node-red/compare/5.0.0...5.0.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e5.0.0: Milestone Release\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cp\u003eNode-RED 5.0 is the biggest change to the editor experience in the history of the project. Back in our \u003ca href=\"https://nodered.org/blog/2025/12/03/node-red-roadmap-to-5\"\u003eroadmap post\u003c/a\u003e we set out four areas of focus - modernising the UX, improving node appearance, targeted functional enhancements, and updating our project infrastructure. After a long run of beta releases - and a huge amount of community feedback along the way - we're delighted to bring it all together in the final release.\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eNode-RED now requires Node.js 22.9 or later. At the time of release, we recommend running Node.js 24\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFull changelog\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate sidebar UX by \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/node-red/node-red/pull/5327\"\u003enode-red/node-red#5327\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/node-red/node-red/blob/main/CHANGELOG.md\"\u003enode-red's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch4\u003e5.0.1: Maintenance Release\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate dependencies (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5847\"\u003e#5847\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHandle unknown node type properties in info properties table (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5846\"\u003e#5846\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd a button to ignore the import of unknown types (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5836\"\u003e#5836\u003c/a\u003e) \u003ca href=\"https://github.com/GogoVega\"\u003e\u003ccode\u003e@​GogoVega\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd --watch option to npm run dev (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5843\"\u003e#5843\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eLoad images in info popup before positioning (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5845\"\u003e#5845\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHandle repositioning tooltip when aligned to top (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5844\"\u003e#5844\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5839] NR5: info popover does not support node.info() (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5841\"\u003e#5841\u003c/a\u003e) \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5828] Scroll bars don't update properly (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5832\"\u003e#5832\u003c/a\u003e) \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[BUGFIX] Fix git ref parsing resulting in broken merge conflicts and commit diffs (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5833\"\u003e#5833\u003c/a\u003e) \u003ca href=\"https://github.com/beasteers\"\u003e\u003ccode\u003e@​beasteers\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5808] NR5: navigaton elements overlap workspace content at edges (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5827\"\u003e#5827\u003c/a\u003e) \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix issue with monaco after expanding and collapsing the editor (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5830\"\u003e#5830\u003c/a\u003e) \u003ca href=\"https://github.com/Steve-Mcl\"\u003e\u003ccode\u003e@​Steve-Mcl\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[7522] Sync theme preference into the embedded Node-RED editor (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5819\"\u003e#5819\u003c/a\u003e) \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5809] NR5: Scrollbars are not updating when jumping between nodes in the same workspace (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5826\"\u003e#5826\u003c/a\u003e) \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[5810] NR5: \u0026quot;0 plugins\u0026quot; in palette manager (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5825\"\u003e#5825\u003c/a\u003e) \u003ca href=\"https://github.com/n-lark\"\u003e\u003ccode\u003e@​n-lark\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReposition active popups in response to window resize events (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5823\"\u003e#5823\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake docs popup styling consistent with info sidebar (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5822\"\u003e#5822\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDon't throw error looking up locales for themes (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5813\"\u003e#5813\u003c/a\u003e) \u003ca href=\"https://github.com/hardillb\"\u003e\u003ccode\u003e@​hardillb\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003egerman translation for help texts of the link nodes (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5801\"\u003e#5801\u003c/a\u003e) \u003ca href=\"https://github.com/m-schaeffler\"\u003e\u003ccode\u003e@​m-schaeffler\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd Japanese Translations for v5.0.0 (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5815\"\u003e#5815\u003c/a\u003e) \u003ca href=\"https://github.com/kazuhitoyokoi\"\u003e\u003ccode\u003e@​kazuhitoyokoi\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix images in welcome tour for 4.1 (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5814\"\u003e#5814\u003c/a\u003e) \u003ca href=\"https://github.com/kazuhitoyokoi\"\u003e\u003ccode\u003e@​kazuhitoyokoi\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix expandOnClick behaviour of treeList (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5821\"\u003e#5821\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid initialising sidebars with tabs that do not exist yet (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5818\"\u003e#5818\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMove sidebar resize-handle down one level in z-index (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5817\"\u003e#5817\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix RED.sidebar.containsTab api (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5816\"\u003e#5816\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove dead link in contributing guide (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5797\"\u003e#5797\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSet minimum node version to 22.9 (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5792\"\u003e#5792\u003c/a\u003e) \u003ca href=\"https://github.com/bonanitech\"\u003e\u003ccode\u003e@​bonanitech\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate default branch references (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5793\"\u003e#5793\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003e5.0.0: Milestone Release\u003c/h4\u003e\n\u003cp\u003eThis marks the next major release of Node-RED. The following changes represent\nthose added since the last beta. Check the beta release details below for the complete\nlist.\u003c/p\u003e\n\u003cp\u003eBreaking Changes\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eNode-RED now requires Node 22.9 or later.\u003c/li\u003e\n\u003cli\u003eWe recommend Node 24.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eEditor\u003c/p\u003e\n\u003cp\u003eNew Features\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdd support for GH style blockquote alerts (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5733\"\u003e#5733\u003c/a\u003e) \u003ca href=\"https://github.com/Steve-Mcl\"\u003e\u003ccode\u003e@​Steve-Mcl\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd alert types toolbar functionality to markdown editor (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5757\"\u003e#5757\u003c/a\u003e) \u003ca href=\"https://github.com/Steve-Mcl\"\u003e\u003ccode\u003e@​Steve-Mcl\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRework search statusBar (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5744\"\u003e#5744\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWelcome tour v5 (\u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5784\"\u003e#5784\u003c/a\u003e) \u003ca href=\"https://github.com/knolleary\"\u003e\u003ccode\u003e@​knolleary\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/a831faffe678f74e028a2aee5a9825cf291cfbab\"\u003e\u003ccode\u003ea831faf\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5850\"\u003e#5850\u003c/a\u003e from node-red/bump-lock\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/8fa403843b06055e405f3e31ed055c4eb9e8e1aa\"\u003e\u003ccode\u003e8fa4038\u003c/code\u003e\u003c/a\u003e Bump lock file\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/87a8ca7b399d253fb08726291b99b321d4432cf9\"\u003e\u003ccode\u003e87a8ca7\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5849\"\u003e#5849\u003c/a\u003e from node-red/rel501\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/1d6f619da1f7bf5c4df0e17f5ae83785653836ba\"\u003e\u003ccode\u003e1d6f619\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5848\"\u003e#5848\u003c/a\u003e from node-red/gg\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/001cf45bce887cbd687c02a041d196f28dc83a68\"\u003e\u003ccode\u003e001cf45\u003c/code\u003e\u003c/a\u003e Merge branch 'dev' into gg\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/bd0b85f6cf25c2c7ea422ae21093f440f75fbc4b\"\u003e\u003ccode\u003ebd0b85f\u003c/code\u003e\u003c/a\u003e Bump for 5.0.1 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/31097a16f4c68668ef3e4d5ed4d9b4d55a6464b1\"\u003e\u003ccode\u003e31097a1\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5847\"\u003e#5847\u003c/a\u003e from node-red/update-deps\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/c485fa20307861a6081b7677115f03e6fd8afaf5\"\u003e\u003ccode\u003ec485fa2\u003c/code\u003e\u003c/a\u003e Update dependencies\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/9398fd69c803eaf4939481b9e7c8d6cde9e3338f\"\u003e\u003ccode\u003e9398fd6\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5846\"\u003e#5846\u003c/a\u003e from node-red/5838-unknown-info-table\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/node-red/node-red/commit/cbad45da9a3950aaf3f85bc327f3a3fd5689bd45\"\u003e\u003ccode\u003ecbad45d\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/node-red/node-red/issues/5836\"\u003e#5836\u003c/a\u003e from GogoVega/ignore-unknown-types-notification\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/node-red/node-red/compare/4.1.10...5.0.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `nodemailer` from 8.0.9 to 9.0.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/nodemailer/nodemailer/releases\"\u003enodemailer's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev9.0.3\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v9.0.2...v9.0.3\"\u003e9.0.3\u003c/a\u003e (2026-06-30)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003esmtp-connection:\u003c/strong\u003e harden STARTTLS upgrade and secure socket handling (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1835\"\u003e#1835\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/07d8253326ecefff9f7d92c157429ce8bc7335f8\"\u003e07d8253\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev9.0.2\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v9.0.1...v9.0.2\"\u003e9.0.2\u003c/a\u003e (2026-06-29)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eaddressparser:\u003c/strong\u003e keep operator chars inside an address-literal as text (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1829\"\u003e#1829\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/9ba1064f3b115cd60cb63aa954a3c0961e86fbb7\"\u003e9ba1064\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eharden smtp-connection low-severity issues (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/22ddcea8ed043e4ea23b8971b75a2df196b5a581\"\u003e22ddcea\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eharden smtp-connection response parsing and socket lifecycle (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/68860b94311b5b6837754e5e790f186ca8a00b70\"\u003e68860b9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eprevent SES transport callback double-invocation and hang on sync errors (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1831\"\u003e#1831\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/9517bc5dc94e77907bb157e3466bf73a2b327f5c\"\u003e9517bc5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereject CRLF in HTTP proxy CONNECT destination to prevent request injection (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/6347b47c7d12f9d3acf53d391b921e836f400640\"\u003e6347b47\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev9.0.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v9.0.0...v9.0.1\"\u003e9.0.1\u003c/a\u003e (2026-06-17)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eenforce disableFileAccess/disableUrlAccess for raw message option (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/a82e060d978f27e5f41369a9a9807b1e3dedc2e2\"\u003ea82e060\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev9.0.0\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.11...v9.0.0\"\u003e9.0.0\u003c/a\u003e (2026-06-14)\u003c/h2\u003e\n\u003ch3\u003e⚠ BREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eHTTPS requests made while fetching remote content (attachment href/path URLs, OAuth2 token endpoints, HTTP/HTTPS proxy CONNECT) now validate the server's TLS certificate by default. Requests to hosts with self-signed, expired, or hostname-mismatched certificates that previously succeeded will now fail. Opt back out per request with tls.rejectUnauthorized=false (transport options, or a per-attachment \u003ccode\u003etls\u003c/code\u003e option).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ereplace deprecated url.parse with a WHATWG URL wrapper (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/0c080fbf3278926f013a5c2ad06f5f6f0e18f5ed\"\u003e0c080fb\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003evalidate TLS certificates by default when fetching remote content (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/6a947ac7114a16da1e6a50d9a6f4e17026ce145d\"\u003e6a947ac\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev8.0.11\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.10...v8.0.11\"\u003e8.0.11\u003c/a\u003e (2026-06-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eapply the transport-level newline option in stream and sendmail transports (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/cb4f904a53d2c2feeaf327203c92378d46304398\"\u003ecb4f904\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003einclude icalEvent path/href content in the application/ics attachment (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/b801c48fab8e9b71bc7e0ea1fb32ce6b34675b15\"\u003eb801c48\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse Ethereal response props without polynomial regex backtracking (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/067aebec83b8cbe7682905e89b30ab19d260b503\"\u003e067aebe\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/nodemailer/nodemailer/blob/master/CHANGELOG.md\"\u003enodemailer's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v9.0.2...v9.0.3\"\u003e9.0.3\u003c/a\u003e (2026-06-30)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003esmtp-connection:\u003c/strong\u003e harden STARTTLS upgrade and secure socket handling (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1835\"\u003e#1835\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/07d8253326ecefff9f7d92c157429ce8bc7335f8\"\u003e07d8253\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v9.0.1...v9.0.2\"\u003e9.0.2\u003c/a\u003e (2026-06-29)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eaddressparser:\u003c/strong\u003e keep operator chars inside an address-literal as text (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1829\"\u003e#1829\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/9ba1064f3b115cd60cb63aa954a3c0961e86fbb7\"\u003e9ba1064\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eharden smtp-connection low-severity issues (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/22ddcea8ed043e4ea23b8971b75a2df196b5a581\"\u003e22ddcea\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eharden smtp-connection response parsing and socket lifecycle (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/68860b94311b5b6837754e5e790f186ca8a00b70\"\u003e68860b9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eprevent SES transport callback double-invocation and hang on sync errors (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1831\"\u003e#1831\u003c/a\u003e) (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/9517bc5dc94e77907bb157e3466bf73a2b327f5c\"\u003e9517bc5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereject CRLF in HTTP proxy CONNECT destination to prevent request injection (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/6347b47c7d12f9d3acf53d391b921e836f400640\"\u003e6347b47\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v9.0.0...v9.0.1\"\u003e9.0.1\u003c/a\u003e (2026-06-17)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eenforce disableFileAccess/disableUrlAccess for raw message option (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/a82e060d978f27e5f41369a9a9807b1e3dedc2e2\"\u003ea82e060\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.11...v9.0.0\"\u003e9.0.0\u003c/a\u003e (2026-06-14)\u003c/h2\u003e\n\u003ch3\u003e⚠ BREAKING CHANGES\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eHTTPS requests made while fetching remote content (attachment href/path URLs, OAuth2 token endpoints, HTTP/HTTPS proxy CONNECT) now validate the server's TLS certificate by default. Requests to hosts with self-signed, expired, or hostname-mismatched certificates that previously succeeded will now fail. Opt back out per request with tls.rejectUnauthorized=false (transport options, or a per-attachment \u003ccode\u003etls\u003c/code\u003e option).\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ereplace deprecated url.parse with a WHATWG URL wrapper (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/0c080fbf3278926f013a5c2ad06f5f6f0e18f5ed\"\u003e0c080fb\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003evalidate TLS certificates by default when fetching remote content (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/6a947ac7114a16da1e6a50d9a6f4e17026ce145d\"\u003e6a947ac\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/compare/v8.0.10...v8.0.11\"\u003e8.0.11\u003c/a\u003e (2026-06-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eapply the transport-level newline option in stream and sendmail transports (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/cb4f904a53d2c2feeaf327203c92378d46304398\"\u003ecb4f904\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003einclude icalEvent path/href content in the application/ics attachment (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/b801c48fab8e9b71bc7e0ea1fb32ce6b34675b15\"\u003eb801c48\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse Ethereal response props without polynomial regex backtracking (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/067aebec83b8cbe7682905e89b30ab19d260b503\"\u003e067aebe\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eresolve oauth2_provision_cb at send time for non-pooled SMTP transports (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/203c8ecf97594ac2e69919b0f3ba966c0f86750e\"\u003e203c8ec\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ereturn the promise from every resolveContent branch (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/07ffe8cfd97f0486b8c7b541f398922ddab47882\"\u003e07ffe8c\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003estrip the url scheme from List-ID header values (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/77e5885cfa0c6723ea7749c1ee74b1c11aeb78bd\"\u003e77e5885\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etag AWS SES transport errors with the ESES code (\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/efa647a125dd698413a7cf6813b8e36881a06f91\"\u003eefa647a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/1f61eb49b4316589045576752c721bd89918ef21\"\u003e\u003ccode\u003e1f61eb4\u003c/code\u003e\u003c/a\u003e chore(master): release 9.0.3 (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1836\"\u003e#1836\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/07d8253326ecefff9f7d92c157429ce8bc7335f8\"\u003e\u003ccode\u003e07d8253\u003c/code\u003e\u003c/a\u003e fix(smtp-connection): harden STARTTLS upgrade and secure socket handling (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1835\"\u003e#1835\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/4801f3aa1a30ae96439c2899c58cc14a18a169ba\"\u003e\u003ccode\u003e4801f3a\u003c/code\u003e\u003c/a\u003e chore(master): release 9.0.2 (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1832\"\u003e#1832\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/9ba1064f3b115cd60cb63aa954a3c0961e86fbb7\"\u003e\u003ccode\u003e9ba1064\u003c/code\u003e\u003c/a\u003e fix(addressparser): keep operator chars inside an address-literal as text (\u003ca href=\"https://redirect.github.com/nodemailer/nodemailer/issues/1\"\u003e#1\u003c/a\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/22ddcea8ed043e4ea23b8971b75a2df196b5a581\"\u003e\u003ccode\u003e22ddcea\u003c/code\u003e\u003c/a\u003e fix: harden smtp-connection low-severity issues\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/af002eb353760b171b1c76f1c14311b07d224386\"\u003e\u003ccode\u003eaf002eb\u003c/code\u003e\u003c/a\u003e chore: add Node.js 26 to the CI test matrix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/6347b47c7d12f9d3acf53d391b921e836f400640\"\u003e\u003ccode\u003e6347b47\u003c/code\u003e\u003c/a\u003e fix: reject CRLF in HTTP proxy CONNECT destination to prevent request injection\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/68860b94311b5b6837754e5e790f186ca8a00b70\"\u003e\u003ccode\u003e68860b9\u003c/code\u003e\u003c/a\u003e fix: harden smtp-connection response parsing and socket lifecycle\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/9517bc5dc94e77907bb157e3466bf73a2b327f5c\"\u003e\u003ccode\u003e9517bc5\u003c/code\u003e\u003c/a\u003e fix: prevent SES transport callback double-invocation and hang on sync errors...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/nodemailer/nodemailer/commit/69cf6252cd18227c79b75dd484357ee1e760e56e\"\u003e\u003ccode\u003e69cf625\u003c/code\u003e\u003c/a\u003e chore(master): release 9.0.1 (\u003ca href=\"https://redirect.github.com/nodemailer/n...\n\n_Description has been truncated_","html_url":"https://github.com/raohassandev/SolTrix/pull/12","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/raohassandev%2FSolTrix/issues/12","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/12/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":"/backend","pr_created_at":"2026-06-26T05:20:43.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4749473485","node_id":"PR_kwDOQxKbu87q2LdR","number":15,"state":"open","title":"chore(deps): bump morgan from 1.10.1 to 1.11.0 in /backend","user":"dependabot[bot]","labels":["dependencies"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-06-26T05:20:43.000Z","updated_at":"2026-06-26T05:20:48.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":"/backend","ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/XandarSword3/V2-Ecosystem/pull/15","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/XandarSword3%2FV2-Ecosystem/issues/15","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/15/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-06-21T05:33:50.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4709463316","node_id":"PR_kwDORqzl887oz3On","number":69,"state":"closed","title":"Bump the minor-and-patch group across 1 directory with 8 updates","user":"dependabot[bot]","labels":[],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-06-28T05:33:20.000Z","author_association":null,"state_reason":null,"created_at":"2026-06-21T05:33:50.000Z","updated_at":"2026-06-28T05:33:21.000Z","time_to_close":604770,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"minor-and-patch","update_count":8,"packages":[{"name":"@aws-sdk/client-s3","old_version":"3.1057.0","new_version":"3.1075.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"ethers","old_version":"6.16.0","new_version":"6.17.0","repository_url":"https://github.com/ethers-io/ethers.js"},{"name":"livekit-server-sdk","old_version":"2.15.4","new_version":"2.15.5","repository_url":"https://github.com/livekit/node-sdks"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"pg","old_version":"8.21.0","new_version":"8.22.0","repository_url":"https://github.com/brianc/node-postgres"},{"name":"resend","old_version":"6.12.4","new_version":"6.14.0","repository_url":"https://github.com/resend/resend-node"},{"name":"stripe","old_version":"22.2.0","new_version":"22.2.3","repository_url":"https://github.com/stripe/stripe-node"},{"name":"eslint","old_version":"10.4.1","new_version":"10.5.0","repository_url":"https://github.com/eslint/eslint"}],"path":null,"ecosystem":"npm"},"body":"Bumps the minor-and-patch group with 8 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@aws-sdk/client-s3](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3) | `3.1057.0` | `3.1075.0` |\n| [ethers](https://github.com/ethers-io/ethers.js) | `6.16.0` | `6.17.0` |\n| [livekit-server-sdk](https://github.com/livekit/node-sdks/tree/HEAD/packages/livekit-server-sdk) | `2.15.4` | `2.15.5` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [pg](https://github.com/brianc/node-postgres/tree/HEAD/packages/pg) | `8.21.0` | `8.22.0` |\n| [resend](https://github.com/resend/resend-node) | `6.12.4` | `6.14.0` |\n| [stripe](https://github.com/stripe/stripe-node) | `22.2.0` | `22.2.3` |\n| [eslint](https://github.com/eslint/eslint) | `10.4.1` | `10.5.0` |\n\n\nUpdates `@aws-sdk/client-s3` from 3.1057.0 to 3.1075.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/client-s3's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1075.0\u003c/h2\u003e\n\u003ch4\u003e3.1075.0(2026-06-23)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-kafka:\u003c/strong\u003e  Amazon MSK Replicator now supports mTLS authentication when connecting to external Apache Kafka clusters, enabling customers to replicate data from clusters that require mutual TLS for client authentication. This capability is supported when replicating to Amazon MSK Express brokers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/005f9529d4d3cd0c98b002a3584773b253a702dc\"\u003e005f9529\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1075.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1074.0\u003c/h2\u003e\n\u003ch4\u003e3.1074.0(2026-06-22)\u003c/h4\u003e\n\u003ch5\u003eChores\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003exml-builder:\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003emove testing devDeps to root, remove unused nodable dep (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8118\"\u003e#8118\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ed82880d26cac439d808eca5760da899cf449899\"\u003eed82880d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse XML internally (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/7863\"\u003e#7863\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/74d0a071437c84a14396dbcc7f07f8480c369c58\"\u003e74d0a071\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003etypo in contributing.md (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8116\"\u003e#8116\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/87ff33d30edb476912301f87ed6e2afac3cd5a93\"\u003e87ff33d3\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclients:\u003c/strong\u003e  update client endpoints as of 2026-06-22 (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3a55a3338792f712baf2e97d3f3c597fc28707c1\"\u003e3a55a333\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch-logs:\u003c/strong\u003e  CloudWatch Logs Updates - New APIs introduced to support syslog ingestion to a log group. For more information, see CloudWatch Logs API documentation. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/01a3b513503169fb86db0bea0889f585c9004b55\"\u003e01a3b513\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agentcore:\u003c/strong\u003e  Adds an optional extractionMode field to CreateEvent. SKIP retains the event in short-term memory but excludes it from long-term memory extraction. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/749753adae395e3ab3ab494df119f8d6354ca562\"\u003e749753ad\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-omics:\u003c/strong\u003e  Adds support for scratch ephemeral storage mounted at tmp (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/331e3023c1049c5188dc4cec3adabae0c62e84f2\"\u003e331e3023\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-application-signals:\u003c/strong\u003e  Application Signals now supports dynamic instrumentation and Service Events telemetry. Add instrumentation at runtime without restarts, and use fine-grained profiling data to quickly pinpoint latency and error root causes. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/f93b1c0333846b2d16c698f8c9b4034f93ab867c\"\u003ef93b1c03\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-mediaconnect:\u003c/strong\u003e  AWS MediaConnect now supports Content Quality Analysis for Router Inputs, enabling detection of black frames, frozen frames, and silent audio with configurable thresholds. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/05054853a5aa6e740597c3932b5e2491b15e3a12\"\u003e05054853\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda-core:\u003c/strong\u003e  Initial release of the AWS Lambda Core SDK with APIs to create, manage, and tag network connectors that enable Lambda compute resources to access private resources in your Amazon VPC. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e35cdab89fcf7ca679f37776418cb8d8e1269c14\"\u003ee35cdab8\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda:\u003c/strong\u003e  Add support for tagging Network Connector resources in AWS Lambda. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/fbfc40785e024fe2564e4be02ef425280693fce6\"\u003efbfc4078\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-guardduty:\u003c/strong\u003e  Added AI-powered investigations that automatically analyze security findings, correlate related activity, and produce structured summaries with risk assessment, confidence scoring, MITRE technique classification, and actionable next steps. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/83c2983945db4a54b004feed8d2d18935a3df431\"\u003e83c29839\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda-microvms:\u003c/strong\u003e  Lambda MicroVMs GA launch. Lambda MicroVMs enable isolated and highly responsive execution of user-supplied or LLM-generated code. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/5519a7e28fae4f57dd852109244b6370ff79f8bb\"\u003e5519a7e2\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-kafka:\u003c/strong\u003e  Amazon MSK Replicator now supports mTLS authentication when connecting to external Apache Kafka clusters, enabling customers to replicate data from clusters that require mutual TLS for client authentication. This capability is supported when replicating to Amazon MSK Express brokers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ce7d1bf501fe6f7d6a454f96c1befc3829e23385\"\u003ece7d1bf5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-quicksight:\u003c/strong\u003e  Updated the Amazon Quick Spaces API to remove unsupported SPACE and ARTIFACT values from the SpaceQuickSightResourceType enum. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e1b325d42e491ceb75742bbdb56bfc3b98767ff1\"\u003ee1b325d4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ec2:\u003c/strong\u003e  This release adds support for AMI Watermark and Allowed AMIs integration (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d1698bed3961295343fdd86d0a57820538023bc7\"\u003ed1698bed\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-direct-connect:\u003c/strong\u003e  Added VIF rate limiting support for AWS Direct Connect, allowing customers to set bandwidth allocations on virtual interfaces to manage traffic on dedicated connections. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/228a95dc0c11cbcc1f007718faf93181c014a854\"\u003e228a95dc\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eBug Fixes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecloudfront-signer:\u003c/strong\u003e  filename asterisk apostrophe encoding fix (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8119\"\u003e#8119\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/35acab408b9bd5350928525c8a67563ae551580a\"\u003e35acab40\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1074.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-s3/CHANGELOG.md\"\u003e@​aws-sdk/client-s3's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1074.0...v3.1075.0\"\u003e3.1075.0\u003c/a\u003e (2026-06-23)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1073.0...v3.1074.0\"\u003e3.1074.0\u003c/a\u003e (2026-06-22)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1072.0...v3.1073.0\"\u003e3.1073.0\u003c/a\u003e (2026-06-19)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1071.0...v3.1072.0\"\u003e3.1072.0\u003c/a\u003e (2026-06-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1070.0...v3.1071.0\"\u003e3.1071.0\u003c/a\u003e (2026-06-17)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1069.0...v3.1070.0\"\u003e3.1070.0\u003c/a\u003e (2026-06-16)\u003c/h1\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-s3:\u003c/strong\u003e Added support for annotations. You can now attach up to 1000 annotations (up to 1 MB each) directly to objects and create, retrieve, list, and delete them using new annotation APIs. Also added support for configuring an annotation table in S3 Metadata. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c555874690846b81904a2c0c1e96130bd03bbeaa\"\u003ec555874\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/29ee1999340b8d8288184076df6557541974b13f\"\u003e\u003ccode\u003e29ee199\u003c/code\u003e\u003c/a\u003e Publish v3.1075.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c48dfa08aa057f100c69ccb571d35004eddec207\"\u003e\u003ccode\u003ec48dfa0\u003c/code\u003e\u003c/a\u003e Publish v3.1074.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/74d0a071437c84a14396dbcc7f07f8480c369c58\"\u003e\u003ccode\u003e74d0a07\u003c/code\u003e\u003c/a\u003e chore(xml-builder): parse XML internally (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3/issues/7863\"\u003e#7863\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ee71adc9663fc2ebaabae455981fd169fd6e97b2\"\u003e\u003ccode\u003eee71adc\u003c/code\u003e\u003c/a\u003e Publish v3.1073.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/501cd332619533ae96f154d7c226dc2f7bf8d615\"\u003e\u003ccode\u003e501cd33\u003c/code\u003e\u003c/a\u003e Publish v3.1072.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3ce820aa54c953459eb58abe4f06e28ba4ceb87d\"\u003e\u003ccode\u003e3ce820a\u003c/code\u003e\u003c/a\u003e Publish v3.1071.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4f2cfe1cfc420d0b5bfa226ae6619dd67de73ccc\"\u003e\u003ccode\u003e4f2cfe1\u003c/code\u003e\u003c/a\u003e Publish v3.1070.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c555874690846b81904a2c0c1e96130bd03bbeaa\"\u003e\u003ccode\u003ec555874\u003c/code\u003e\u003c/a\u003e feat(client-s3): Added support for annotations. You can now attach up to 1000...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7058d13814795c6ff06a960077269458520bf161\"\u003e\u003ccode\u003e7058d13\u003c/code\u003e\u003c/a\u003e Publish v3.1069.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/67981c5a65d6dd797a065df034a8d0fcdaa9b7bd\"\u003e\u003ccode\u003e67981c5\u003c/code\u003e\u003c/a\u003e chore(scripts): tuning the build graph (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3/issues/8095\"\u003e#8095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1075.0/clients/client-s3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ethers` from 6.16.0 to 6.17.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ethers-io/ethers.js/releases\"\u003eethers's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eethers/v6.17.0 (2026-06-18 00:49)\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd requestRate throttle to calls (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/b48bfe34b11e059c4418718f9cad4e6cbe4c0680\"\u003eb48bfe3\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded provider requestRate throttle support (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/b74b6d39d413afb950ad20ca34d93aa735229d1b\"\u003eb74b6d3\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eDisable AlchemyProvider which does not provide the necessary API capacity for tests (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/1523ca8af25c13c78588842404aea1e61a96fc26\"\u003e1523ca8\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eMap ResolverNotFound error to null for reverse lookup (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/d07cfb67c750089d3a9ef4123eeb7e4634f04e08\"\u003ed07cfb6\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUse bigint for coinType instead of number values (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/4f6ec037f886f719d991ec74dc0a182e91488e5a\"\u003e4f6ec03\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdated AlchemyProvider endpoints for BNB (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/9bec2f98f62fae84be8aebacc9d21fe7afc620fc\"\u003e9bec2f9\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded basic ENSv2 tests and fixed issues with EVM cointypes (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/0e9a73dc446572634ae004749d00d78b00f92b76\"\u003e0e9a73d\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdding ENSv2 integrations from adraffy (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/a2d0af4a2ecfe207f02e5497ef2fa95a83dba92a\"\u003ea2d0af4\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdate Blockscout deffault API key and links (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/5647ae3e7c06854c60e822616eb00575ee88bc89\"\u003e5647ae3\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded transactionsRoot to Block (\u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5077\"\u003e#5077\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5078\"\u003e#5078\u003c/a\u003e; \u003ca href=\"https://github.com/ethers-io/ethers.js/commit/5bd2ce9e50cc85bb93e3d6840a0fc2f434180a9f\"\u003e5bd2ce9\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003ePreserve 301/302 method and support 307/308 (\u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/3106\"\u003e#3106\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5115\"\u003e#5115\u003c/a\u003e; \u003ca href=\"https://github.com/ethers-io/ethers.js/commit/999af5f5a8cc7211bd70d9e8414e1898b147636f\"\u003e999af5f\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFix maxFeePerGas property for EtherscanProvider transactions (\u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5080\"\u003e#5080\u003c/a\u003e; \u003ca href=\"https://github.com/ethers-io/ethers.js/commit/ca45d2388944f098a7e1a341f6ccccab7bf0aba2\"\u003eca45d23\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded rich inspection for Network and Plugins (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/f2ffb865c5197d933b196f5039105df225c2d954\"\u003ef2ffb86\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eTweaking API for Universal Resolver to be completely backward compatible (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/9a5c4b5b97310cbb7ba95d9c90fe7f101d6c2442\"\u003e9a5c4b5\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdated ENS Universal Resolver to latest API (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/0b3b12bc0b5581fe9ae9b269c8fcf1ea852e5122\"\u003e0b3b12b\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded CCIP to ENS Universal Resolver reverse resolution (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/982eef2561158d4a3a656ef4fd37073322983dc0\"\u003e982eef2\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded reverse lookup for ENS UniversalResolver (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/9a9a11d3da06f58653758b1739bca0681508f247\"\u003e9a9a11d\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eInitial forward resolution using ENS UniversalResolver (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/51df7b95d04a33db6efe1807c4cd810f92dfdf49\"\u003e51df7b9\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/ethers-io/ethers.js/blob/main/CHANGELOG.md\"\u003eethers's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eethers/v6.17.0 (2026-06-17 23:50)\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd requestRate throttle to calls (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/b48bfe34b11e059c4418718f9cad4e6cbe4c0680\"\u003eb48bfe3\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded provider requestRate throttle support (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/b74b6d39d413afb950ad20ca34d93aa735229d1b\"\u003eb74b6d3\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eDisable AlchemyProvider which does not provide the necessary API capacity for tests (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/1523ca8af25c13c78588842404aea1e61a96fc26\"\u003e1523ca8\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eMap ResolverNotFound error to null for reverse lookup (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/d07cfb67c750089d3a9ef4123eeb7e4634f04e08\"\u003ed07cfb6\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUse bigint for coinType instead of number values (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/4f6ec037f886f719d991ec74dc0a182e91488e5a\"\u003e4f6ec03\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdated AlchemyProvider endpoints for BNB (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/9bec2f98f62fae84be8aebacc9d21fe7afc620fc\"\u003e9bec2f9\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded basic ENSv2 tests and fixed issues with EVM cointypes (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/0e9a73dc446572634ae004749d00d78b00f92b76\"\u003e0e9a73d\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdding ENSv2 integrations from adraffy (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/a2d0af4a2ecfe207f02e5497ef2fa95a83dba92a\"\u003ea2d0af4\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdate Blockscout deffault API key and links (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/5647ae3e7c06854c60e822616eb00575ee88bc89\"\u003e5647ae3\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded transactionsRoot to Block (\u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5077\"\u003e#5077\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5078\"\u003e#5078\u003c/a\u003e; \u003ca href=\"https://github.com/ethers-io/ethers.js/commit/5bd2ce9e50cc85bb93e3d6840a0fc2f434180a9f\"\u003e5bd2ce9\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003ePreserve 301/302 method and support 307/308 (\u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/3106\"\u003e#3106\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5115\"\u003e#5115\u003c/a\u003e; \u003ca href=\"https://github.com/ethers-io/ethers.js/commit/999af5f5a8cc7211bd70d9e8414e1898b147636f\"\u003e999af5f\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eFix maxFeePerGas property for EtherscanProvider transactions (\u003ca href=\"https://redirect.github.com/ethers-io/ethers.js/issues/5080\"\u003e#5080\u003c/a\u003e; \u003ca href=\"https://github.com/ethers-io/ethers.js/commit/ca45d2388944f098a7e1a341f6ccccab7bf0aba2\"\u003eca45d23\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded rich inspection for Network and Plugins (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/f2ffb865c5197d933b196f5039105df225c2d954\"\u003ef2ffb86\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eTweaking API for Universal Resolver to be completely backward compatible (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/9a5c4b5b97310cbb7ba95d9c90fe7f101d6c2442\"\u003e9a5c4b5\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eUpdated ENS Universal Resolver to latest API (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/0b3b12bc0b5581fe9ae9b269c8fcf1ea852e5122\"\u003e0b3b12b\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded CCIP to ENS Universal Resolver reverse resolution (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/982eef2561158d4a3a656ef4fd37073322983dc0\"\u003e982eef2\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eAdded reverse lookup for ENS UniversalResolver (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/9a9a11d3da06f58653758b1739bca0681508f247\"\u003e9a9a11d\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eInitial forward resolution using ENS UniversalResolver (\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/51df7b95d04a33db6efe1807c4cd810f92dfdf49\"\u003e51df7b9\u003c/a\u003e).\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/3ea4c226dd0b3a074abf90748de9d11192027f4f\"\u003e\u003ccode\u003e3ea4c22\u003c/code\u003e\u003c/a\u003e admin: updated dist files\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/2d35b6ab6db437a4db8a1cdb753946ddb9e4b0e1\"\u003e\u003ccode\u003e2d35b6a\u003c/code\u003e\u003c/a\u003e docs: fix property access order for Flatworm\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/b48bfe34b11e059c4418718f9cad4e6cbe4c0680\"\u003e\u003ccode\u003eb48bfe3\u003c/code\u003e\u003c/a\u003e Add requestRate throttle to calls.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/39f5ce1358069122a9de047df27e024417c81dfb\"\u003e\u003ccode\u003e39f5ce1\u003c/code\u003e\u003c/a\u003e tests: add INFURA_APIKEY for docs and workflows\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/96bd29c014c44c7e7245714d593b02d7c39b3653\"\u003e\u003ccode\u003e96bd29c\u003c/code\u003e\u003c/a\u003e tests: added provider throttling to test suites\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/b74b6d39d413afb950ad20ca34d93aa735229d1b\"\u003e\u003ccode\u003eb74b6d3\u003c/code\u003e\u003c/a\u003e Added provider requestRate throttle support.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/1523ca8af25c13c78588842404aea1e61a96fc26\"\u003e\u003ccode\u003e1523ca8\u003c/code\u003e\u003c/a\u003e Disable AlchemyProvider which does not provide the necessary API capacity for...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/d07cfb67c750089d3a9ef4123eeb7e4634f04e08\"\u003e\u003ccode\u003ed07cfb6\u003c/code\u003e\u003c/a\u003e Map ResolverNotFound error to null for reverse lookup.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/c32c542eafd553bd26a6e48d67fb61e89d7ccc5c\"\u003e\u003ccode\u003ec32c542\u003c/code\u003e\u003c/a\u003e docs: fix typo in config for INFURA API key\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ethers-io/ethers.js/commit/7c6b8400a381741b11226c76c4e4eca37c9e8517\"\u003e\u003ccode\u003e7c6b840\u003c/code\u003e\u003c/a\u003e admin: include INFURA_APIKEY in docs generation to resolve throttling\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/ethers-io/ethers.js/compare/v6.16.0...v6.17.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `livekit-server-sdk` from 2.15.4 to 2.15.5\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/livekit/node-sdks/releases\"\u003elivekit-server-sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003elivekit-server-sdk@2.15.5\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003edeployment\u003c/code\u003e to \u003ccode\u003eCreateDispatchOptions\u003c/code\u003e - \u003ca href=\"https://redirect.github.com/livekit/node-sdks/pull/675\"\u003e#675\u003c/a\u003e (\u003ca href=\"https://github.com/lukasIO\"\u003e\u003ccode\u003e@​lukasIO\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/livekit/node-sdks/blob/main/packages/livekit-server-sdk/CHANGELOG.md\"\u003elivekit-server-sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.15.5\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003edeployment\u003c/code\u003e to \u003ccode\u003eCreateDispatchOptions\u003c/code\u003e - \u003ca href=\"https://redirect.github.com/livekit/node-sdks/pull/675\"\u003e#675\u003c/a\u003e (\u003ca href=\"https://github.com/lukasIO\"\u003e\u003ccode\u003e@​lukasIO\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/livekit/node-sdks/commit/b93b1439af5ef5f2ed4a09f53a44925866244d91\"\u003e\u003ccode\u003eb93b143\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/livekit/node-sdks/tree/HEAD/packages/livekit-server-sdk/issues/681\"\u003e#681\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/livekit/node-sdks/commit/f8cbe934a13ad65a357201cd38e7da6c9d83744b\"\u003e\u003ccode\u003ef8cbe93\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003edeployment\u003c/code\u003e to \u003ccode\u003eCreateDispatchOptions\u003c/code\u003e (\u003ca href=\"https://github.com/livekit/node-sdks/tree/HEAD/packages/livekit-server-sdk/issues/675\"\u003e#675\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/livekit/node-sdks/commit/3029bdd9cfc05d9483fea2f4c6ebac4a3e1d9260\"\u003e\u003ccode\u003e3029bdd\u003c/code\u003e\u003c/a\u003e Update dependency vitest to v4 [SECURITY] (\u003ca href=\"https://github.com/livekit/node-sdks/tree/HEAD/packages/livekit-server-sdk/issues/673\"\u003e#673\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/livekit/node-sdks/commit/e2b66ddc0be33602c9f296b24c7eaa3e6d69dfea\"\u003e\u003ccode\u003ee2b66dd\u003c/code\u003e\u003c/a\u003e Update dependency vite to v6 [SECURITY] (\u003ca href=\"https://github.com/livekit/node-sdks/tree/HEAD/packages/livekit-server-sdk/issues/643\"\u003e#643\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/livekit/node-sdks/commits/livekit-server-sdk@2.15.5/packages/livekit-server-sdk\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `morgan` from 1.10.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `pg` from 8.21.0 to 8.22.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/brianc/node-postgres/blob/master/CHANGELOG.md\"\u003epg's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003epg@8.22.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd support for \u003ca href=\"https://redirect.github.com/brianc/node-postgres/pull/3688\"\u003esslnegotiation=direct\u003c/a\u003e for PostgreSQL 17+.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/b617619f9fb6fbd231731823e2732a2927ded4be\"\u003e\u003ccode\u003eb617619\u003c/code\u003e\u003c/a\u003e Publish\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/d80b2612fbe83ed8234637f20b943d85e4331094\"\u003e\u003ccode\u003ed80b261\u003c/code\u003e\u003c/a\u003e Update docs \u0026amp; changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/835fb83ab9e1cf30fa8367ba42bd633720d71832\"\u003e\u003ccode\u003e835fb83\u003c/code\u003e\u003c/a\u003e Fix error handling for exceptions on values parsing. (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3574\"\u003e#3574\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/f49ab4a9795ae0866409f9bfe52a68b4f65ef024\"\u003e\u003ccode\u003ef49ab4a\u003c/code\u003e\u003c/a\u003e fix: correct spelling mistakes across codebase (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3692\"\u003e#3692\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/d7175a4aa0347b7416109e9ecc61d4d235486d0e\"\u003e\u003ccode\u003ed7175a4\u003c/code\u003e\u003c/a\u003e Expand CI matrix of PG versions and add direct SSL test (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3693\"\u003e#3693\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/brianc/node-postgres/commit/882fc308cce7bf136cd1448e00395f760dad3e00\"\u003e\u003ccode\u003e882fc30\u003c/code\u003e\u003c/a\u003e Add support for sslnegotiation=direct (PostgreSQL 17) (\u003ca href=\"https://github.com/brianc/node-postgres/tree/HEAD/packages/pg/issues/3688\"\u003e#3688\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/brianc/node-postgres/commits/pg@8.22.0/packages/pg\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `resend` from 6.12.4 to 6.14.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/resend/resend-node/releases\"\u003eresend's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev6.13.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore: migrate to pnpm 11 by \u003ca href=\"https://github.com/gabrielmfern\"\u003e\u003ccode\u003e@​gabrielmfern\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/972\"\u003eresend/resend-node#972\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: add \u003ccode\u003eContactImports\u003c/code\u003e class for managing contact imports by \u003ca href=\"https://github.com/vcapretz\"\u003e\u003ccode\u003e@​vcapretz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/963\"\u003eresend/resend-node#963\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: release \u003ccode\u003e6.13.0-canary.0\u003c/code\u003e by \u003ca href=\"https://github.com/vcapretz\"\u003e\u003ccode\u003e@​vcapretz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/976\"\u003eresend/resend-node#976\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: typos in custom HTML example (readme.md) by \u003ca href=\"https://github.com/SRKrukowski\"\u003e\u003ccode\u003e@​SRKrukowski\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/981\"\u003eresend/resend-node#981\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: remove contact import onError option by \u003ca href=\"https://github.com/vcapretz\"\u003e\u003ccode\u003e@​vcapretz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/982\"\u003eresend/resend-node#982\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: options for html_format in receiving.get by \u003ca href=\"https://github.com/gabrielmfern\"\u003e\u003ccode\u003e@​gabrielmfern\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/983\"\u003eresend/resend-node#983\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: release \u003ccode\u003e6.13.0\u003c/code\u003e by \u003ca href=\"https://github.com/vcapretz\"\u003e\u003ccode\u003e@​vcapretz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/984\"\u003eresend/resend-node#984\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SRKrukowski\"\u003e\u003ccode\u003e@​SRKrukowski\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/resend/resend-node/pull/981\"\u003eresend/resend-node#981\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/resend/resend-node/compare/v6.12.4...v6.13.0\"\u003ehttps://github.com/resend/resend-node/compare/v6.12.4...v6.13.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/resend/resend-node/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `stripe` from 22.2.0 to 22.2.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/stripe/stripe-node/releases\"\u003estripe's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev22.2.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2761\"\u003e#2761\u003c/a\u003e Encode URI path params in \u003ccode\u003eaccounts.retrieve\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/stripe/stripe-node/blob/v22.2.3/CHANGELOG.md\"\u003ethe changelog for more details\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev22.2.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2725\"\u003e#2725\u003c/a\u003e Fixes CJS type exports for stripe package (reported in \u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2683\"\u003e#2683\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2758\"\u003e#2758\u003c/a\u003e Fix \u003ccode\u003eStripe.ErrorType.StripeError\u003c/code\u003e incorrectly being usable as a runtime class (reported in \u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2661\"\u003e#2661\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2753\"\u003e#2753\u003c/a\u003e handle shadowed namespaces (reported in \u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2691\"\u003e#2691\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/stripe/stripe-node/blob/v22.2.2/CHANGELOG.md\"\u003ethe changelog for more details\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003ev22.2.1\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2750\"\u003e#2750\u003c/a\u003e URI Encode path params\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2747\"\u003e#2747\u003c/a\u003e Fix V2ListIterator: concurrency guard and empty page handling\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2740\"\u003e#2740\u003c/a\u003e Add \u0026quot;source\u0026quot; field to user-agent header\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2734\"\u003e#2734\u003c/a\u003e Fix parseHttpHeaderAsNumber to return undefined instead of NaN\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSee \u003ca href=\"https://github.com/stripe/stripe-node/blob/v22.2.1/CHANGELOG.md\"\u003ethe changelog for more details\u003c/a\u003e.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/stripe/stripe-node/blob/master/CHANGELOG.md\"\u003estripe's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e22.2.3 - 2026-06-22\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2761\"\u003e#2761\u003c/a\u003e Encode URI path params in \u003ccode\u003eaccounts.retrieve\u003c/code\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e22.2.2 - 2026-06-18\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2725\"\u003e#2725\u003c/a\u003e Fixes CJS type exports for stripe package (reported in \u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2683\"\u003e#2683\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2758\"\u003e#2758\u003c/a\u003e Fix \u003ccode\u003eStripe.ErrorType.StripeError\u003c/code\u003e incorrectly being usable as a runtime class (reported in \u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2661\"\u003e#2661\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2753\"\u003e#2753\u003c/a\u003e handle shadowed namespaces (reported in \u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2691\"\u003e#2691\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e22.2.1 - 2026-06-12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2750\"\u003e#2750\u003c/a\u003e URI Encode path params\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2747\"\u003e#2747\u003c/a\u003e Fix V2ListIterator: concurrency guard and empty page handling\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2740\"\u003e#2740\u003c/a\u003e Add \u0026quot;source\u0026quot; field to user-agent header\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/stripe/stripe-node/pull/2734\"\u003e#2734\u003c/a\u003e Fix parseHttpHeaderAsNumber to return undefined instead of NaN\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/b8e8c23f7b84786308e3377b92d44ed3dd2ca3c2\"\u003e\u003ccode\u003eb8e8c23\u003c/code\u003e\u003c/a\u003e Bump version to 22.2.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/10442be9d2b7282249474788be48de9f22696305\"\u003e\u003ccode\u003e10442be\u003c/code\u003e\u003c/a\u003e Pin \u003ccode\u003e@types/node\u003c/code\u003e to \u003ccode\u003e~22.19\u003c/code\u003e in CJS type test projects (\u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2762\"\u003e#2762\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/9c2d10ccd1b919d9197a9f661cbf113b4f291df1\"\u003e\u003ccode\u003e9c2d10c\u003c/code\u003e\u003c/a\u003e Encode URI path params in \u003ccode\u003eaccounts.retrieve\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2761\"\u003e#2761\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/4073ccf267c89eade592c55656cb4f9b31187150\"\u003e\u003ccode\u003e4073ccf\u003c/code\u003e\u003c/a\u003e re-add missing comments\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/9be501ccedf3bf207eedca170fdb058409954d33\"\u003e\u003ccode\u003e9be501c\u003c/code\u003e\u003c/a\u003e Bump version to 22.2.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/580b824b910258c04984ee59c07e5154c2dc8364\"\u003e\u003ccode\u003e580b824\u003c/code\u003e\u003c/a\u003e Fixes CJS type exports for stripe package (\u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2725\"\u003e#2725\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/047dd0cf460f9acc511c5d28170c22a2c085368c\"\u003e\u003ccode\u003e047dd0c\u003c/code\u003e\u003c/a\u003e Fix \u003ccode\u003eStripe.ErrorType.StripeError\u003c/code\u003e incorrectly being usable as a runtime clas...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/fe2f78c52f27969a1dd6207121fd2d9fea7197b5\"\u003e\u003ccode\u003efe2f78c\u003c/code\u003e\u003c/a\u003e handle shadowed namespaces (\u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2753\"\u003e#2753\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/56a570f8445392ab51cced01681e1591f7c7c9c2\"\u003e\u003ccode\u003e56a570f\u003c/code\u003e\u003c/a\u003e Add PR disclaimer to README (\u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2754\"\u003e#2754\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/stripe/stripe-node/commit/d3b8ecd0a3b75a11c387b3664ce9dab69e88430c\"\u003e\u003ccode\u003ed3b8ecd\u003c/code\u003e\u003c/a\u003e Remove retired manual API tests covered by generated examples (\u003ca href=\"https://redirect.github.com/stripe/stripe-node/issues/2752\"\u003e#2752\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/stripe/stripe-node/compare/v22.2.0...v22.2.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `eslint` from 10.4.1 to 10.5.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/eslint/eslint/releases\"\u003eeslint's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev10.5.0\u003c/h2\u003e\n\u003ch2\u003eFeatures\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/5ca8c5278edea1fd84d3ba83d8ea3f52fb3831ad\"\u003e\u003ccode\u003e5ca8c52\u003c/code\u003e\u003c/a\u003e feat: correct stack tracking in max-nested-callbacks (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20973\"\u003e#20973\u003c/a\u003e) (Pixel998)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/b5657837604fa5e8cf1278074782025cadd34b6c\"\u003e\u003ccode\u003eb565783\u003c/code\u003e\u003c/a\u003e feat: report no-with violations at the with keyword (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20971\"\u003e#20971\u003c/a\u003e) (Pixel998)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/2ce032fbc72a1a80c024c084a4f382fb6dece684\"\u003e\u003ccode\u003e2ce032f\u003c/code\u003e\u003c/a\u003e feat: report max-lines-per-function violations at function head (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20966\"\u003e#20966\u003c/a\u003e) (Pixel998)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/732cb3e09d5b8b809b5f461d118a5d9fdcd6427f\"\u003e\u003ccode\u003e732cb3e\u003c/code\u003e\u003c/a\u003e feat: report max-nested-callbacks violations at function head (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20967\"\u003e#20967\u003c/a\u003e) (Pixel998)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/f9c138a0ba7d8e37aed39aef4a3ff1cae8c669f7\"\u003e\u003ccode\u003ef9c138a\u003c/code\u003e\u003c/a\u003e feat: report max-depth violations on keywords (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20943\"\u003e#20943\u003c/a\u003e) (Pixel998)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/bdb496cc0d54b6d0a023aef9abd5f040ccff2101\"\u003e\u003ccode\u003ebdb496c\u003c/code\u003e\u003c/a\u003e feat: correct max-depth handling for else-if chains (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20944\"\u003e#20944\u003c/a\u003e) (Pixel998)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/c29687354a7f96093f57f7d73eecb866ad5e2953\"\u003e\u003ccode\u003ec296873\u003c/code\u003e\u003c/a\u003e feat: update error loc in \u003ccode\u003emax-statements\u003c/code\u003e to function header (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20907\"\u003e#20907\u003c/a\u003e) (Taejin Kim)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eDocumentation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/8ae1b5b856dc031cd6c701d89a4df7da4772cd56\"\u003e\u003ccode\u003e8ae1b5b\u003c/code\u003e\u003c/a\u003e docs: Update README (GitHub Actions Bot)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/ca7eb90127dcad917188bb1342623f02a272e781\"\u003e\u003ccode\u003eca7eb90\u003c/code\u003e\u003c/a\u003e docs: update Node.js prerequisites to include ICU support (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20962\"\u003e#20962\u003c/a\u003e) (Francesco Trotta)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/f99b47a6799be25321552402a49303bb06a43fe4\"\u003e\u003ccode\u003ef99b47a\u003c/code\u003e\u003c/a\u003e docs: Update README (GitHub Actions Bot)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/acf03d4eed31d259c7dc62af5b9640629784f7cc\"\u003e\u003ccode\u003eacf03d4\u003c/code\u003e\u003c/a\u003e docs: clarify precedence of parserOptions over languageOptions (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20926\"\u003e#20926\u003c/a\u003e) (sethamus)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eChores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/b18bf58c5ac748415ffffdff2d96980fbd6a57e8\"\u003e\u003ccode\u003eb18bf58\u003c/code\u003e\u003c/a\u003e chore: update ecosystem plugins (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20959\"\u003e#20959\u003c/a\u003e) (ESLint Bot)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/c2d1444df77cb42e5a0b89ab70496879d180a54d\"\u003e\u003ccode\u003ec2d1444\u003c/code\u003e\u003c/a\u003e refactor: replace areAllSegmentsUnreachable with !isAnySegmentReachable (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20951\"\u003e#20951\u003c/a\u003e) (Taejin Kim)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/243b8c56014bbbe63771185b0731d8dd4d1316e9\"\u003e\u003ccode\u003e243b8c5\u003c/code\u003e\u003c/a\u003e chore: enhance config-rule to support oneOf, anyOf, and nested schemas (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20788\"\u003e#20788\u003c/a\u003e) (kuldeep kumar)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/217b2a91f46137c5ffd693965e71306c4c15ea6b\"\u003e\u003ccode\u003e217b2a9\u003c/code\u003e\u003c/a\u003e test: add unit tests for ParserService (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20949\"\u003e#20949\u003c/a\u003e) (Taejin Kim)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/72003e781d76bd4ee0d98a6601730d0b829070f9\"\u003e\u003ccode\u003e72003e7\u003c/code\u003e\u003c/a\u003e test: add location information to error messages in \u003ccode\u003emax-statements\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20945\"\u003e#20945\u003c/a\u003e) (lumir)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/7797c266977b0bc4971aa79721813d480de72cd1\"\u003e\u003ccode\u003e7797c26\u003c/code\u003e\u003c/a\u003e refactor: deduplicate isAnySegmentReachable across rules (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20890\"\u003e#20890\u003c/a\u003e) (Taejin Kim)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/67c46fa6e4f34e88cc6bc82f8a0dcc917c65d257\"\u003e\u003ccode\u003e67c46fa\u003c/code\u003e\u003c/a\u003e chore: update ecosystem plugins (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20938\"\u003e#20938\u003c/a\u003e) (ESLint Bot)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/95d8c7a99f991abd8ab618d0ee2cbd4f58effc29\"\u003e\u003ccode\u003e95d8c7a\u003c/code\u003e\u003c/a\u003e chore: update dependency \u003ccode\u003e@​eslint/json\u003c/code\u003e to v2 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20934\"\u003e#20934\u003c/a\u003e) (renovate[bot])\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/cf9e496205142cd4971b9f98aed85866d1010b9c\"\u003e\u003ccode\u003ecf9e496\u003c/code\u003e\u003c/a\u003e chore: update \u003ccode\u003e@​arethetypeswrong/cli\u003c/code\u003e to 0.18.3 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20933\"\u003e#20933\u003c/a\u003e) (Pixel998)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/fb6d3960cacc51fc12383fa5ded2382adbf90c1c\"\u003e\u003ccode\u003efb6d396\u003c/code\u003e\u003c/a\u003e test: run type tests with TypeScript 7 (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20868\"\u003e#20868\u003c/a\u003e) (sethamus)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/de3b672a267e32607db04176ce4775664acb3145\"\u003e\u003ccode\u003ede3b672\u003c/code\u003e\u003c/a\u003e 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/362a5185134290db696d39f97c9da609ded54040\"\u003e\u003ccode\u003e362a518\u003c/code\u003e\u003c/a\u003e Build: changelog update for 10.5.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/5ca8c5278edea1fd84d3ba83d8ea3f52fb3831ad\"\u003e\u003ccode\u003e5ca8c52\u003c/code\u003e\u003c/a\u003e feat: correct stack tracking in max-nested-callbacks (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20973\"\u003e#20973\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/b5657837604fa5e8cf1278074782025cadd34b6c\"\u003e\u003ccode\u003eb565783\u003c/code\u003e\u003c/a\u003e feat: report no-with violations at the with keyword (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20971\"\u003e#20971\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/2ce032fbc72a1a80c024c084a4f382fb6dece684\"\u003e\u003ccode\u003e2ce032f\u003c/code\u003e\u003c/a\u003e feat: report max-lines-per-function violations at function head (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20966\"\u003e#20966\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/732cb3e09d5b8b809b5f461d118a5d9fdcd6427f\"\u003e\u003ccode\u003e732cb3e\u003c/code\u003e\u003c/a\u003e feat: report max-nested-callbacks violations at function head (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20967\"\u003e#20967\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/f9c138a0ba7d8e37aed39aef4a3ff1cae8c669f7\"\u003e\u003ccode\u003ef9c138a\u003c/code\u003e\u003c/a\u003e feat: report max-depth violations on keywords (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20943\"\u003e#20943\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/8ae1b5b856dc031cd6c701d89a4df7da4772cd56\"\u003e\u003ccode\u003e8ae1b5b\u003c/code\u003e\u003c/a\u003e docs: Update README\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/ca7eb90127dcad917188bb1342623f02a272e781\"\u003e\u003ccode\u003eca7eb90\u003c/code\u003e\u003c/a\u003e docs: update Node.js prerequisites to include ICU support (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20962\"\u003e#20962\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eslint/eslint/commit/b18bf58c5ac748415ffffdff2d96980fbd6a57e8\"\u003e\u003ccode\u003eb18bf58\u003c/code\u003e\u003c/a\u003e chore: update ecosystem plugins (\u003ca href=\"https://redirect.github.com/eslint/eslint/issues/20959\"\u003e#20959\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/eslint/eslint/compare/v10.4.1...v10.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e","html_url":"https://github.com/proark1/meetingservice/pull/69","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/proark1%2Fmeetingservice/issues/69","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/69/packages"}},{"old_version":"1.9.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-06-19T21:32:50.000Z","version_change":"1.9.1 → 1.11.0","issue":{"uuid":"4703675254","node_id":"PR_kwDOCOOOjM7ohh7q","number":28,"state":"closed","title":"chore(deps): bump on-headers, compression and morgan","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-06-19T21:39:40.000Z","author_association":null,"state_reason":null,"created_at":"2026-06-19T21:32:50.000Z","updated_at":"2026-06-19T21:39:49.000Z","time_to_close":410,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"on-headers, compression"},{"name":"morgan","repository_url":"https://github.com/expressjs/morgan","old_version":"1.9.1","new_version":"1.11.0"}],"path":null,"ecosystem":"npm"},"body":"Bumps [on-headers](https://github.com/jshttp/on-headers) to 1.1.0 and updates ancestor dependencies [on-headers](https://github.com/jshttp/on-headers), [compression](https://github.com/expressjs/compression) and [morgan](https://github.com/expressjs/morgan). These dependencies need to be updated together.\n\nUpdates `on-headers` from 1.0.2 to 1.1.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jshttp/on-headers/releases\"\u003eon-headers's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.1.0\u003c/h2\u003e\n\u003ch2\u003eImportant\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2025-7339\"\u003eCVE-2025-7339\u003c/a\u003e (\u003ca href=\"https://github.com/jshttp/on-headers/security/advisories/GHSA-76c9-3jph-rj3q\"\u003eGHSA-76c9-3jph-rj3q\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMigrate CI pipeline to GitHub actions by \u003ca href=\"https://github.com/carpasse\"\u003e\u003ccode\u003e@​carpasse\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/12\"\u003ejshttp/on-headers#12\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix README.md badges by \u003ca href=\"https://github.com/carpasse\"\u003e\u003ccode\u003e@​carpasse\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/13\"\u003ejshttp/on-headers#13\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eadd OSSF scorecard action by \u003ca href=\"https://github.com/carpasse\"\u003e\u003ccode\u003e@​carpasse\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/14\"\u003ejshttp/on-headers#14\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: use \u003ccode\u003eubuntu-latest\u003c/code\u003e as ci runner by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/19\"\u003ejshttp/on-headers#19\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: apply OSSF Scorecard security best practices by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/20\"\u003ejshttp/on-headers#20\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e👷 add upstream change detection by \u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/31\"\u003ejshttp/on-headers#31\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e✨ add script to update known hashes by \u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/32\"\u003ejshttp/on-headers#32\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e💚 update CI - add newer node versions by \u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/33\"\u003ejshttp/on-headers#33\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/carpasse\"\u003e\u003ccode\u003e@​carpasse\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/12\"\u003ejshttp/on-headers#12\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/19\"\u003ejshttp/on-headers#19\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/jshttp/on-headers/pull/31\"\u003ejshttp/on-headers#31\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/jshttp/on-headers/compare/v1.0.2...v1.1.0\"\u003ehttps://github.com/jshttp/on-headers/compare/v1.0.2...v1.1.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jshttp/on-headers/blob/master/HISTORY.md\"\u003eon-headers's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.1.0 / 2025-07-17\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2025-7339\"\u003eCVE-2025-7339\u003c/a\u003e (\u003ca href=\"https://github.com/jshttp/on-headers/security/advisories/GHSA-76c9-3jph-rj3q\"\u003eGHSA-76c9-3jph-rj3q\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/4b017af88f5375bbdf3ad2ee732d2c122e4f52b0\"\u003e\u003ccode\u003e4b017af\u003c/code\u003e\u003c/a\u003e 1.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/b636f2d08e6c1e0a784b53a13cd61e05c09bb118\"\u003e\u003ccode\u003eb636f2d\u003c/code\u003e\u003c/a\u003e ♻️ refactor header array code\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/3e2c2d46c3e9592f6a1c3a3a1dbe622401f95d39\"\u003e\u003ccode\u003e3e2c2d4\u003c/code\u003e\u003c/a\u003e ✨ ignore falsy header keys, matching node behavior\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/172eb41b99a5a290b27a2c43fe602ca33aa1c8ce\"\u003e\u003ccode\u003e172eb41\u003c/code\u003e\u003c/a\u003e ✨ support duplicate headers\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/c6e384908c9c6127d18831d16ab0bd96e1231867\"\u003e\u003ccode\u003ec6e3849\u003c/code\u003e\u003c/a\u003e 🔒️ fix array handling\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/6893518341bb4e5363285df086b3158302d3b216\"\u003e\u003ccode\u003e6893518\u003c/code\u003e\u003c/a\u003e 💚 update CI - add newer node versions\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/56a345d82b51a0dcb8d09f061f87b1fd1dc4c01e\"\u003e\u003ccode\u003e56a345d\u003c/code\u003e\u003c/a\u003e ✨ add script to update known hashes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/175ab217155d525371a5416ff059f895a3a532a6\"\u003e\u003ccode\u003e175ab21\u003c/code\u003e\u003c/a\u003e 👷 add upstream change detection (\u003ca href=\"https://redirect.github.com/jshttp/on-headers/issues/31\"\u003e#31\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/ce0b2c8fcd313d38d3534fb731050dc16e105bf6\"\u003e\u003ccode\u003ece0b2c8\u003c/code\u003e\u003c/a\u003e ci: apply OSSF Scorecard security best practices (\u003ca href=\"https://redirect.github.com/jshttp/on-headers/issues/20\"\u003e#20\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jshttp/on-headers/commit/1a38c543e75cd06217b449531de10b1758e35299\"\u003e\u003ccode\u003e1a38c54\u003c/code\u003e\u003c/a\u003e fix: use \u003ccode\u003eubuntu-latest\u003c/code\u003e as ci runner (\u003ca href=\"https://redirect.github.com/jshttp/on-headers/issues/19\"\u003e#19\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/jshttp/on-headers/compare/v1.0.2...v1.1.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~ulisesgascon\"\u003eulisesgascon\u003c/a\u003e, a new releaser for on-headers since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `compression` from 1.7.3 to 1.8.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/compression/releases\"\u003ecompression's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.8.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(docs): update multiple links from http to https by \u003ca href=\"https://github.com/Phillip9587\"\u003e\u003ccode\u003e@​Phillip9587\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/222\"\u003eexpressjs/compression#222\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add dependabot for github actions by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/207\"\u003eexpressjs/compression#207\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 2.23.2 to 3.28.15 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/228\"\u003eexpressjs/compression#228\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.1 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/229\"\u003eexpressjs/compression#229\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps-dev): bump eslint-plugin-import from 2.26.0 to 2.31.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/230\"\u003eexpressjs/compression#230\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps-dev): bump supertest from 6.2.3 to 6.3.4 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/231\"\u003eexpressjs/compression#231\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[StepSecurity] ci: Harden GitHub Actions by \u003ca href=\"https://github.com/step-security-bot\"\u003e\u003ccode\u003e@​step-security-bot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/235\"\u003eexpressjs/compression#235\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump github/codeql-action from 3.28.15 to 3.29.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/243\"\u003eexpressjs/compression#243\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/239\"\u003eexpressjs/compression#239\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump ossf/scorecard-action from 2.4.1 to 2.4.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/240\"\u003eexpressjs/compression#240\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps): bump actions/checkout from 4.1.1 to 4.2.2 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/241\"\u003eexpressjs/compression#241\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ebuild(deps-dev): bump eslint-plugin-import from 2.31.0 to 2.32.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/244\"\u003eexpressjs/compression#244\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps: on-headers@1.1.0 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/246\"\u003eexpressjs/compression#246\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRelease: 1.8.1 by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/247\"\u003eexpressjs/compression#247\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/228\"\u003eexpressjs/compression#228\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/step-security-bot\"\u003e\u003ccode\u003e@​step-security-bot\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/235\"\u003eexpressjs/compression#235\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/compression/compare/1.8.0...v1.8.1\"\u003ehttps://github.com/expressjs/compression/compare/1.8.0...v1.8.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev1.8.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRefactor chunkLength function for improved readability and consistency by \u003ca href=\"https://github.com/Ayoub-Mabrouk\"\u003e\u003ccode\u003e@​Ayoub-Mabrouk\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/203\"\u003eexpressjs/compression#203\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor toBuffer function to simplify buffer check logic by \u003ca href=\"https://github.com/Ayoub-Mabrouk\"\u003e\u003ccode\u003e@​Ayoub-Mabrouk\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/201\"\u003eexpressjs/compression#201\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: add CodeQL (SAST) by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/204\"\u003eexpressjs/compression#204\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse headersSent instead of  _header by \u003ca href=\"https://github.com/maritz\"\u003e\u003ccode\u003e@​maritz\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/129\"\u003eexpressjs/compression#129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBugfix/use write head instead of implicit header by \u003ca href=\"https://github.com/Icehunter\"\u003e\u003ccode\u003e@​Icehunter\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/170\"\u003eexpressjs/compression#170\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: add default option by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/191\"\u003eexpressjs/compression#191\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: update ci workflow by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/206\"\u003eexpressjs/compression#206\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: support for brotli by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/194\"\u003eexpressjs/compression#194\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: improve readme by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/209\"\u003eexpressjs/compression#209\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: keywords field by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/210\"\u003eexpressjs/compression#210\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erefactor: simplify encoding negotiation logic by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/213\"\u003eexpressjs/compression#213\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Ayoub-Mabrouk\"\u003e\u003ccode\u003e@​Ayoub-Mabrouk\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/203\"\u003eexpressjs/compression#203\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/maritz\"\u003e\u003ccode\u003e@​maritz\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/129\"\u003eexpressjs/compression#129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Icehunter\"\u003e\u003ccode\u003e@​Icehunter\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/170\"\u003eexpressjs/compression#170\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/compression/compare/1.7.5...v1.8.0\"\u003ehttps://github.com/expressjs/compression/compare/1.7.5...v1.8.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e1.7.5\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore: add support for OSSF scorecard reporting by \u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/186\"\u003eexpressjs/compression#186\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: fix errors in ci github action for node 8 and 9 by \u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/187\"\u003eexpressjs/compression#187\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: fix spelling by \u003ca href=\"https://github.com/dijonkitchen\"\u003e\u003ccode\u003e@​dijonkitchen\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/174\"\u003eexpressjs/compression#174\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edeps: bytes@3.1.2 by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/compression/pull/192\"\u003eexpressjs/compression#192\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/compression/blob/master/HISTORY.md\"\u003ecompression's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.8.1 / 2025-07-17\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: on-headers@~1.1.0\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2025-7339\"\u003eCVE-2025-7339\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/on-headers/security/advisories/GHSA-76c9-3jph-rj3q\"\u003eGHSA-76c9-3jph-rj3q\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.8.0 / 2025-02-10\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eUse \u003ccode\u003eres.headersSent\u003c/code\u003e when available\u003c/li\u003e\n\u003cli\u003eReplace \u003ccode\u003e_implicitHeader\u003c/code\u003e with \u003ccode\u003ewriteHead\u003c/code\u003e property\u003c/li\u003e\n\u003cli\u003eadd brotli support for versions of node that support it\u003c/li\u003e\n\u003cli\u003eAdd the enforceEncoding option for requests without \u003ccode\u003eAccept-Encoding\u003c/code\u003e header\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.7.5 / 2024-10-31\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: Replace accepts with negotiator@~0.6.4\n\u003cul\u003e\n\u003cli\u003eAdd preference option\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: bytes@3.1.2\n\u003cul\u003e\n\u003cli\u003eAdd petabyte (\u003ccode\u003epb\u003c/code\u003e) support\u003c/li\u003e\n\u003cli\u003eFix \u0026quot;thousandsSeparator\u0026quot; incorrecting formatting fractional part\u003c/li\u003e\n\u003cli\u003eFix return value for un-parsable strings\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: compressible@~2.0.18\n\u003cul\u003e\n\u003cli\u003eMark \u003ccode\u003efont/ttf\u003c/code\u003e as compressible\u003c/li\u003e\n\u003cli\u003eRemove compressible from \u003ccode\u003emultipart/mixed\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003edeps: mime-db@'\u0026gt;= 1.43.0 \u0026lt; 2'\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: safe-buffer@5.2.1\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.7.4 / 2019-03-18\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: compressible@~2.0.16\n\u003cul\u003e\n\u003cli\u003eMark \u003ccode\u003etext/less\u003c/code\u003e as compressible\u003c/li\u003e\n\u003cli\u003edeps: mime-db@'\u0026gt;= 1.38.0 \u0026lt; 2'\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: on-headers@~1.0.2\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eres.writeHead\u003c/code\u003e patch missing return value\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003eperf: prevent unnecessary buffer copy\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/83a0c45fe190f4fcb8b515c18065db9cb9029dd1\"\u003e\u003ccode\u003e83a0c45\u003c/code\u003e\u003c/a\u003e 1.8.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/ce62713129f4b33eac4b833e1722410091646395\"\u003e\u003ccode\u003ece62713\u003c/code\u003e\u003c/a\u003e deps: on-headers@1.1.0 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/246\"\u003e#246\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/f4acb23985fa345318d34d4a96acf555a883efeb\"\u003e\u003ccode\u003ef4acb23\u003c/code\u003e\u003c/a\u003e build(deps-dev): bump eslint-plugin-import from 2.31.0 to 2.32.0 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/244\"\u003e#244\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/6eaebe63f2ecac191d402c570bde140488435c4c\"\u003e\u003ccode\u003e6eaebe6\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 4.2.2 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/241\"\u003e#241\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/37e062312fd270f84b5f50f7c6f88312609633f5\"\u003e\u003ccode\u003e37e0623\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.4.1 to 2.4.2 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/240\"\u003e#240\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/bc436b26283c2f85a9711085dd0e4a580de50ba7\"\u003e\u003ccode\u003ebc436b2\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/239\"\u003e#239\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/2f9f5726751ecf12f7c46a9d1493bcd1966e09a7\"\u003e\u003ccode\u003e2f9f572\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.28.15 to 3.29.2 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/243\"\u003e#243\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/5f13b148d2a1a2daaa8647e03592214bb240bf18\"\u003e\u003ccode\u003e5f13b14\u003c/code\u003e\u003c/a\u003e [StepSecurity] ci: Harden GitHub Actions (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/235\"\u003e#235\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/76e094548125afbf8089a482d5982dc96c7ce398\"\u003e\u003ccode\u003e76e0945\u003c/code\u003e\u003c/a\u003e build(deps-dev): bump supertest from 6.2.3 to 6.3.4 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/231\"\u003e#231\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/compression/commit/ae6ee809dc0cb40febaf2a5bff298465bd5a207f\"\u003e\u003ccode\u003eae6ee80\u003c/code\u003e\u003c/a\u003e build(deps-dev): bump eslint-plugin-import from 2.26.0 to 2.31.0 (\u003ca href=\"https://redirect.github.com/expressjs/compression/issues/230\"\u003e#230\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/compression/compare/1.7.3...v1.8.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~ulisesgascon\"\u003eulisesgascon\u003c/a\u003e, a new releaser for compression since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `morgan` from 1.9.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e1.10.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003erenaming simple to sample in readme by \u003ca href=\"https://github.com/ryhinchey\"\u003e\u003ccode\u003e@​ryhinchey\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/237\"\u003eexpressjs/morgan#237\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eadding installation instructions to readme by \u003ca href=\"https://github.com/ryhinchey\"\u003e\u003ccode\u003e@​ryhinchey\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/233\"\u003eexpressjs/morgan#233\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: add support for OSSF scorecard reporting by \u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: replace travis with github actions by \u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/290\"\u003eexpressjs/morgan#290\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003edocs: add example output for log formats by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: use ubuntu-latest by \u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: apply OSSF Scorecard security best practices by \u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eremove --bail by \u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/314\"\u003eexpressjs/morgan#314\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e⬆️ bump on-headers by \u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.10.1\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.10.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e1.10.0\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e:total-time\u003c/code\u003e token\u003c/li\u003e\n\u003cli\u003eFix trailing space in colored status code for \u003ccode\u003edev\u003c/code\u003e format\u003c/li\u003e\n\u003cli\u003edeps: basic-auth@~2.0.1\n\u003cul\u003e\n\u003cli\u003edeps: safe-buffer@5.1.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: depd@~2.0.0\n\u003cul\u003e\n\u003cli\u003eReplace internal \u003ccode\u003eeval\u003c/code\u003e usage with \u003ccode\u003eFunction\u003c/code\u003e constructor\u003c/li\u003e\n\u003cli\u003eUse instance methods on \u003ccode\u003eprocess\u003c/code\u003e to check for listeners\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: on-headers@~1.0.2\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eres.writeHead\u003c/code\u003e patch missing return value\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.10.1 / 2025-07-17\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003edeps: on-headers@~1.1.0\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2025-7339\"\u003eCVE-2025-7339\u003c/a\u003e (\u003ca href=\"https://github.com/expressjs/on-headers/security/advisories/GHSA-76c9-3jph-rj3q\"\u003eGHSA-76c9-3jph-rj3q\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e1.10.0 / 2020-03-20\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003e:total-time\u003c/code\u003e token\u003c/li\u003e\n\u003cli\u003eFix trailing space in colored status code for \u003ccode\u003edev\u003c/code\u003e format\u003c/li\u003e\n\u003cli\u003edeps: basic-auth@~2.0.1\n\u003cul\u003e\n\u003cli\u003edeps: safe-buffer@5.1.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: depd@~2.0.0\n\u003cul\u003e\n\u003cli\u003eReplace internal \u003ccode\u003eeval\u003c/code\u003e usage with \u003ccode\u003eFunction\u003c/code\u003e constructor\u003c/li\u003e\n\u003cli\u003eUse instance methods on \u003ccode\u003eprocess\u003c/code\u003e to check for listeners\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003edeps: on-headers@~1.0.2\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eres.writeHead\u003c/code\u003e patch missing return value\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.9.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~ulisesgascon\"\u003eulisesgascon\u003c/a\u003e, a new releaser for morgan since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/ReachFive/fake-api-server/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/ReachFive/fake-api-server/pull/28","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/ReachFive%2Ffake-api-server/issues/28","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/28/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-06-18T01:26:44.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4688356768","node_id":"PR_kwDOR5Op087nvAk5","number":103,"state":"open","title":"chore(deps): Bump the seguridad-y-patches group across 1 directory with 34 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-06-18T01:26:44.000Z","updated_at":"2026-06-20T08:16:52.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): Bump","group_name":"seguridad-y-patches","update_count":34,"packages":[{"name":"next","old_version":"16.2.6","new_version":"16.2.9","repository_url":"https://github.com/vercel/next.js"},{"name":"@playwright/test","old_version":"1.59.1","new_version":"1.61.0","repository_url":"https://github.com/microsoft/playwright"},{"name":"prettier","old_version":"3.8.1","new_version":"3.8.4","repository_url":"https://github.com/prettier/prettier"},{"name":"turbo","old_version":"2.9.14","new_version":"2.9.18","repository_url":"https://github.com/vercel/turborepo"},{"name":"@sentry/nextjs","old_version":"10.49.0","new_version":"10.59.0","repository_url":"https://github.com/getsentry/sentry-javascript"},{"name":"axios","old_version":"1.16.1","new_version":"1.18.0","repository_url":"https://github.com/axios/axios"},{"name":"js-cookie","old_version":"3.0.5","new_version":"3.0.8","repository_url":"https://github.com/js-cookie/js-cookie"},{"name":"lucide-react","old_version":"0.468.0","new_version":"0.577.0","repository_url":"https://github.com/lucide-icons/lucide"},{"name":"react","old_version":"19.2.6","new_version":"19.2.7","repository_url":"https://github.com/facebook/react"},{"name":"@types/react","old_version":"19.2.14","new_version":"19.2.17","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"react-dom","old_version":"19.2.6","new_version":"19.2.7","repository_url":"https://github.com/facebook/react"},{"name":"@types/node","old_version":"20.19.39","new_version":"20.19.43","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"eslint-config-next","old_version":"16.2.5","new_version":"16.2.9","repository_url":"https://github.com/vercel/next.js"},{"name":"postcss","old_version":"8.5.10","new_version":"8.5.15","repository_url":"https://github.com/postcss/postcss"},{"name":"@supabase/supabase-js","old_version":"2.105.4","new_version":"2.108.2","repository_url":"https://github.com/supabase/supabase-js"},{"name":"cloudinary","old_version":"2.9.0","new_version":"2.10.0","repository_url":"https://github.com/cloudinary/cloudinary_npm"},{"name":"express","old_version":"4.22.1","new_version":"4.22.2","repository_url":"https://github.com/expressjs/express"},{"name":"mercadopago","old_version":"2.12.0","new_version":"2.13.0","repository_url":"https://github.com/mercadopago/sdk-nodejs"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"node-cron","old_version":"4.2.1","new_version":"4.4.1","repository_url":"https://github.com/merencia/node-cron"},{"name":"nodemailer","old_version":"8.0.7","new_version":"8.0.11","repository_url":"https://github.com/nodemailer/nodemailer"},{"name":"openai","old_version":"6.33.0","new_version":"6.44.0","repository_url":"https://github.com/openai/openai-node"},{"name":"resend","old_version":"6.10.0","new_version":"6.14.0","repository_url":"https://github.com/resend/resend-node"},{"name":"autoprefixer","old_version":"10.4.27","new_version":"10.5.0","repository_url":"https://github.com/postcss/autoprefixer"},{"name":"@capacitor/core","old_version":"8.3.1","new_version":"8.4.1","repository_url":"https://github.com/ionic-team/capacitor"},{"name":"@capgo/capacitor-updater","old_version":"8.45.11","new_version":"8.49.7","repository_url":"https://github.com/Cap-go/capacitor-updater"},{"name":"framer-motion","old_version":"12.38.0","new_version":"12.40.0","repository_url":"https://github.com/motiondivision/motion"},{"name":"@capacitor/android","old_version":"8.3.1","new_version":"8.4.1","repository_url":"https://github.com/ionic-team/capacitor"},{"name":"@capacitor/cli","old_version":"8.3.1","new_version":"8.4.1","repository_url":"https://github.com/ionic-team/capacitor"},{"name":"capacitor-tcp-socket","old_version":"7.1.0","new_version":"7.1.1","repository_url":"https://github.com/gee1k/capacitor-tcp-socket"},{"name":"@tanstack/react-virtual","old_version":"3.13.25","new_version":"3.14.3","repository_url":"https://github.com/TanStack/virtual"},{"name":"react-hotkeys-hook","old_version":"5.2.4","new_version":"5.3.2","repository_url":"https://github.com/JohannesKlauss/react-keymap-hook"},{"name":"pg","old_version":"8.20.0","new_version":"8.22.0","repository_url":"https://github.com/brianc/node-postgres"},{"name":"tsx","old_version":"4.21.0","new_version":"4.22.4","repository_url":"https://github.com/privatenumber/tsx"}],"path":null,"ecosystem":"npm"},"body":"Bumps the seguridad-y-patches group with 34 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [next](https://github.com/vercel/next.js) | `16.2.6` | `16.2.9` |\n| [@playwright/test](https://github.com/microsoft/playwright) | `1.59.1` | `1.61.0` |\n| [prettier](https://github.com/prettier/prettier) | `3.8.1` | `3.8.4` |\n| [turbo](https://github.com/vercel/turborepo) | `2.9.14` | `2.9.18` |\n| [@sentry/nextjs](https://github.com/getsentry/sentry-javascript) | `10.49.0` | `10.59.0` |\n| [axios](https://github.com/axios/axios) | `1.16.1` | `1.18.0` |\n| [js-cookie](https://github.com/js-cookie/js-cookie) | `3.0.5` | `3.0.8` |\n| [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react) | `0.468.0` | `0.577.0` |\n| [react](https://github.com/facebook/react/tree/HEAD/packages/react) | `19.2.6` | `19.2.7` |\n| [@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react) | `19.2.14` | `19.2.17` |\n| [react-dom](https://github.com/facebook/react/tree/HEAD/packages/react-dom) | `19.2.6` | `19.2.7` |\n| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `20.19.39` | `20.19.43` |\n| [eslint-config-next](https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next) | `16.2.5` | `16.2.9` |\n| [postcss](https://github.com/postcss/postcss) | `8.5.10` | `8.5.15` |\n| [@supabase/supabase-js](https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js) | `2.105.4` | `2.108.2` |\n| [cloudinary](https://github.com/cloudinary/cloudinary_npm) | `2.9.0` | `2.10.0` |\n| [express](https://github.com/expressjs/express) | `4.22.1` | `4.22.2` |\n| [mercadopago](https://github.com/mercadopago/sdk-nodejs) | `2.12.0` | `2.13.0` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [node-cron](https://github.com/merencia/node-cron) | `4.2.1` | `4.4.1` |\n| [nodemailer](https://github.com/nodemailer/nodemailer) | `8.0.7` | `8.0.11` |\n| [openai](https://github.com/openai/openai-node) | `6.33.0` | `6.44.0` |\n| [resend](https://github.com/resend/resend-node) | `6.10.0` | `6.14.0` |\n| [autoprefixer](https://github.com/postcss/autoprefixer) | `10.4.27` | `10.5.0` |\n| [@capacitor/core](https://github.com/ionic-team/capacitor) | `8.3.1` | `8.4.1` |\n| [@capgo/capacitor-updater](https://github.com/Cap-go/capacitor-updater) | `8.45.11` | `8.49.7` |\n| [framer-motion](https://github.com/motiondivision/motion) | `12.38.0` | `12.40.0` |\n| [@capacitor/android](https://github.com/ionic-team/capacitor) | `8.3.1` | `8.4.1` |\n| [@capacitor/cli](https://github.com/ionic-team/capacitor) | `8.3.1` | `8.4.1` |\n| [capacitor-tcp-socket](https://github.com/gee1k/capacitor-tcp-socket) | `7.1.0` | `7.1.1` |\n| [@tanstack/react-virtual](https://github.com/TanStack/virtual/tree/HEAD/packages/react-virtual) | `3.13.25` | `3.14.3` |\n| [react-hotkeys-hook](https://github.com/JohannesKlauss/react-keymap-hook) | `5.2.4` | `5.3.2` |\n| [pg](https://github.com/brianc/node-postgres/tree/HEAD/packages/pg) | `8.20.0` | `8.22.0` |\n| [tsx](https://github.com/privatenumber/tsx) | `4.21.0` | `4.22.4` |\n\n\nUpdates `next` from 16.2.6 to 16.2.9\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/next.js/releases\"\u003enext's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev16.2.9\u003c/h2\u003e\n\u003cp\u003eEmpty release to ensure \u003ccode\u003enext@latest\u003c/code\u003e points at a stable release. Next.js only allows publishing with Trusted Publishing enabled. In order to fix NPM dist-tags, we have to release a new version. Updating dist-tags is not possible with Trusted Publishing.\u003c/p\u003e\n\u003ch2\u003ev16.2.8\u003c/h2\u003e\n\u003cp\u003eRelease with no changes in an attempt to fix \u003ccode\u003enext@latest\u003c/code\u003e pointing at a prerelease version.\u003c/p\u003e\n\u003ch2\u003ev16.2.7\u003c/h2\u003e\n\u003cblockquote\u003e\n\u003cp\u003e[!NOTE]\nThis release is backporting bug fixes. It does \u003cstrong\u003enot\u003c/strong\u003e include all pending features/changes on canary.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003ch3\u003eCore Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBackport documentation fixes for v16.2 (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/93804\"\u003e#93804\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Patch \u003ccode\u003eplaywright-core\u003c/code\u003e to resolve \u003ccode\u003e_finishedPromise\u003c/code\u003e on \u003ccode\u003erequestFailed\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/93920\"\u003e#93920\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Fix dev mode hydration failure when page is served from HTTP cache (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/93492\"\u003e#93492\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Fix catch-all \u003ccode\u003erouter.query\u003c/code\u003e corruption with \u003ccode\u003ebasePath\u003c/code\u003e + \u003ccode\u003erewrites\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/93917\"\u003e#93917\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Encode non-ASCII characters in cache tags at construction (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/93918\"\u003e#93918\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Fix server action forwarding loop with middleware rewrites (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/93919\"\u003e#93919\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Turbopack: switch from base40 to base38 hash encoding (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/93932\"\u003e#93932\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[ci] Disable hanging node 24 typescript tests on 16.2 backport branch (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94164\"\u003e#94164\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Fix \u0026quot;type: module\u0026quot; in project dir when using standalone or adapters (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94050\"\u003e#94050\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] Propagate adapter preferred regions (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94200\"\u003e#94200\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[16.2.x] Don't drop \u003ccode\u003eFormData\u003c/code\u003e entries (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94240\"\u003e#94240\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e[backport] feat(turbopack): add LocalPathOrProjectPath PostCSS config resolution (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94284\"\u003e#94284\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eCredits\u003c/h3\u003e\n\u003cp\u003eHuge thanks to \u003ca href=\"https://github.com/eps1lon\"\u003e\u003ccode\u003e@​eps1lon\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/icyJoseph\"\u003e\u003ccode\u003e@​icyJoseph\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/unstubbable\"\u003e\u003ccode\u003e@​unstubbable\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/mischnic\"\u003e\u003ccode\u003e@​mischnic\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/bgw\"\u003e\u003ccode\u003e@​bgw\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/timneutkens\"\u003e\u003ccode\u003e@​timneutkens\u003c/code\u003e\u003c/a\u003e, and \u003ca href=\"https://github.com/lukesandberg\"\u003e\u003ccode\u003e@​lukesandberg\u003c/code\u003e\u003c/a\u003e for helping!\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/f37fad940522e000af5498209fd237d863b4fa16\"\u003e\u003ccode\u003ef37fad9\u003c/code\u003e\u003c/a\u003e v16.2.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/d9aaaedfd8050e58e3c82c1cea412d670750b32b\"\u003e\u003ccode\u003ed9aaaed\u003c/code\u003e\u003c/a\u003e [cd] Allow tagging semver-lower releases as \u003ccode\u003e@latest\u003c/code\u003e if \u003ccode\u003e@latest\u003c/code\u003e po… (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94627\"\u003e#94627\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/6f1680448c81904efcd36704edf01a6b7323abbf\"\u003e\u003ccode\u003e6f16804\u003c/code\u003e\u003c/a\u003e v16.2.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/0dbc1d5c860bf47c8c4f794e053b93fd02355d4e\"\u003e\u003ccode\u003e0dbc1d5\u003c/code\u003e\u003c/a\u003e [16.2.x][cd] Ensure release can be triggered on old branches (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94598\"\u003e#94598\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/90e3c811e7a3603a60dfcf627cc65f8b24ad1d5d\"\u003e\u003ccode\u003e90e3c81\u003c/code\u003e\u003c/a\u003e [16.2.x] Align Actions dependencies with Canary (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94339\"\u003e#94339\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/83f402c69db9faf3f727bea5c85249fe9af9af54\"\u003e\u003ccode\u003e83f402c\u003c/code\u003e\u003c/a\u003e [16.2.x][cd] Stop fetching all tags when searching parent tag (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94334\"\u003e#94334\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/411c455dcdec630b9e2e83d24e27b0f9e05927b6\"\u003e\u003ccode\u003e411c455\u003c/code\u003e\u003c/a\u003e v16.2.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/c63224f3d8e8dd0a4ef8635916f92954421e5f1e\"\u003e\u003ccode\u003ec63224f\u003c/code\u003e\u003c/a\u003e [backport] feat(turbopack): add LocalPathOrProjectPath PostCSS config resolut...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/63115c79877c90df4371c2425f3fc5d3a55ac58d\"\u003e\u003ccode\u003e63115c7\u003c/code\u003e\u003c/a\u003e [16.2.x] Don't drop \u003ccode\u003eFormData\u003c/code\u003e entries (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94240\"\u003e#94240\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/next.js/commit/aef22fdc828226227f618bb982a222e1256ba6f2\"\u003e\u003ccode\u003eaef22fd\u003c/code\u003e\u003c/a\u003e [backport] Propagate adapter preferred regions (\u003ca href=\"https://redirect.github.com/vercel/next.js/issues/94200\"\u003e#94200\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vercel/next.js/compare/v16.2.6...v16.2.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@playwright/test` from 1.59.1 to 1.61.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/microsoft/playwright/releases\"\u003e@​playwright/test's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.61.0\u003c/h2\u003e\n\u003ch2\u003e🔑 WebAuthn passkeys\u003c/h2\u003e\n\u003cp\u003eNew \u003ca href=\"https://playwright.dev/docs/api/class-credentials\"\u003eCredentials\u003c/a\u003e virtual authenticator, available via \u003ca href=\"https://playwright.dev/docs/api/class-browsercontext#browser-context-credentials\"\u003ebrowserContext.credentials\u003c/a\u003e, lets tests register passkeys and answer \u003ccode\u003enavigator.credentials.create()\u003c/code\u003e / \u003ccode\u003enavigator.credentials.get()\u003c/code\u003e ceremonies in the page — no real hardware key required, works in all browsers:\u003c/p\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003econst context = await browser.newContext();\r\n\u003cp\u003e// Seed a passkey your backend provisioned for a test user.\u003cbr /\u003e\nawait context.credentials.create('example.com', {\u003cbr /\u003e\nid: credentialId,\u003cbr /\u003e\nuserHandle,\u003cbr /\u003e\nprivateKey,\u003cbr /\u003e\npublicKey,\u003cbr /\u003e\n});\u003cbr /\u003e\nawait context.credentials.install();\u003c/p\u003e\n\u003cp\u003econst page = await context.newPage();\u003cbr /\u003e\nawait page.goto('\u003ca href=\"https://example.com/login\"\u003ehttps://example.com/login\u003c/a\u003e');\u003cbr /\u003e\n// The page's navigator.credentials.get() is answered with the seeded passkey.\u003cbr /\u003e\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003cp\u003eYou can also let the app register a passkey once in a setup test, read it back with \u003ca href=\"https://playwright.dev/docs/api/class-credentials#credentials-get\"\u003ecredentials.get()\u003c/a\u003e, and seed it into later tests — see \u003ca href=\"https://playwright.dev/docs/api/class-credentials\"\u003eCredentials\u003c/a\u003e for details.\u003c/p\u003e\n\u003ch2\u003e🗃️ Web Storage\u003c/h2\u003e\n\u003cp\u003eNew \u003ca href=\"https://playwright.dev/docs/api/class-webstorage\"\u003eWebStorage\u003c/a\u003e API, available via \u003ca href=\"https://playwright.dev/docs/api/class-page#page-local-storage\"\u003epage.localStorage\u003c/a\u003e and \u003ca href=\"https://playwright.dev/docs/api/class-page#page-session-storage\"\u003epage.sessionStorage\u003c/a\u003e, reads and writes the page's storage for the current origin:\u003c/p\u003e\n\u003cpre lang=\"js\"\u003e\u003ccode\u003eawait page.localStorage.setItem('token', 'abc');\r\nconst token = await page.localStorage.getItem('token');\r\nconst items = await page.sessionStorage.items();\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch2\u003eNew APIs\u003c/h2\u003e\n\u003ch3\u003eNetwork\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://playwright.dev/docs/api/class-apiresponse#api-response-security-details\"\u003eapiResponse.securityDetails()\u003c/a\u003e and \u003ca href=\"https://playwright.dev/docs/api/class-apiresponse#api-response-server-addr\"\u003eapiResponse.serverAddr()\u003c/a\u003e mirror the browser-side \u003ca href=\"https://playwright.dev/docs/api/class-response#response-security-details\"\u003eresponse.securityDetails()\u003c/a\u003e and \u003ca href=\"https://playwright.dev/docs/api/class-response#response-server-addr\"\u003eresponse.serverAddr()\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBrowser and Screencast\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eNew option \u003ccode\u003eartifactsDir\u003c/code\u003e in \u003ca href=\"https://playwright.dev/docs/api/class-browsertype#browser-type-connect-over-cdp\"\u003ebrowserType.connectOverCDP()\u003c/a\u003e controls where artifacts such as traces and downloads are stored when attached to an existing browser.\u003c/li\u003e\n\u003cli\u003eNew option \u003ccode\u003ecursor\u003c/code\u003e in \u003ca href=\"https://playwright.dev/docs/api/class-screencast#screencast-show-actions\"\u003escreencast.showActions()\u003c/a\u003e controls the cursor decoration rendered for pointer actions.\u003c/li\u003e\n\u003cli\u003eThe \u003ccode\u003eonFrame\u003c/code\u003e callback in \u003ca href=\"https://playwright.dev/docs/api/class-screencast#screencast-start\"\u003escreencast.start()\u003c/a\u003e now receives a \u003ccode\u003etimestamp\u003c/code\u003e of when the frame was presented by the browser.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eTest runner\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe \u003ca href=\"https://playwright.dev/docs/api/class-testoptions#test-options-video\"\u003etestOptions.video\u003c/a\u003e option now supports the same set of modes as \u003ccode\u003etrace\u003c/code\u003e: new \u003ccode\u003e'on-all-retries'\u003c/code\u003e, \u003ccode\u003e'retain-on-first-failure'\u003c/code\u003e and \u003ccode\u003e'retain-on-failure-and-retries'\u003c/code\u003e values. See the \u003ca href=\"https://playwright.dev/docs/test-use-options#video-modes\"\u003evideo modes table\u003c/a\u003e for which runs are recorded and kept in each mode.\u003c/li\u003e\n\u003cli\u003eSupported \u003ccode\u003eexpect.soft.poll(...)\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eNew \u003ca href=\"https://playwright.dev/docs/api/class-fullconfig#full-config-argv\"\u003efullConfig.argv\u003c/a\u003e — a snapshot of \u003ccode\u003eprocess.argv\u003c/code\u003e from the runner process, handy for reading custom arguments passed after the \u003ccode\u003e--\u003c/code\u003e separator.\u003c/li\u003e\n\u003cli\u003eNew \u003ca href=\"https://playwright.dev/docs/api/class-fullconfig#full-config-fail-on-flaky-tests\"\u003efullConfig.failOnFlakyTests\u003c/a\u003e mirrors the config option, so reporters can explain why a flaky run failed.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://playwright.dev/docs/api/class-testinfo#test-info-errors\"\u003etestInfo.errors\u003c/a\u003e now lists each sub-error of an \u003ccode\u003eAggregateError\u003c/code\u003e as a separate entry.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/1cc5a90cfa3eaa430b1a991963100f95126caa47\"\u003e\u003ccode\u003e1cc5a90\u003c/code\u003e\u003c/a\u003e cherry-pick(\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41295\"\u003e#41295\u003c/a\u003e): chore: PLAYWRIGHT_TRACING_NO_WEBSOCKET_FRAMES and PLAYWR...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/a6772bdede34028cbbd417a3b3d778801899e870\"\u003e\u003ccode\u003ea6772bd\u003c/code\u003e\u003c/a\u003e cherry-pick(\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41280\"\u003e#41280\u003c/a\u003e): Revert \u0026quot;fix(trace-viewer): add keyboard navigation to `N...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/8133dcf97d52818d36022ed37797a616ff6cb934\"\u003e\u003ccode\u003e8133dcf\u003c/code\u003e\u003c/a\u003e cherry-pick(\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41283\"\u003e#41283\u003c/a\u003e): docs: add Ubuntu 26.04 and Node.js 26.x to system requir...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/812432e070afec9e44d22e95915f975965b7d5b7\"\u003e\u003ccode\u003e812432e\u003c/code\u003e\u003c/a\u003e chore: mark v1.61.0 (\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41277\"\u003e#41277\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/ac05145c8d9eb1303c8f3bfd4d860b6d1ca261ae\"\u003e\u003ccode\u003eac05145\u003c/code\u003e\u003c/a\u003e fix(fetch): report serverAddr and securityDetails for reused sockets (\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41267\"\u003e#41267\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/056efc9f5c0a870d0944e53a835d6283a77f200f\"\u003e\u003ccode\u003e056efc9\u003c/code\u003e\u003c/a\u003e fix(trace-viewer): add keyboard navigation to \u003ccode\u003eNetworkFilters\u003c/code\u003e component (\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41\"\u003e#41\u003c/a\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/41f7b9a0db0d1ada12ff0d9244393eea8f81b796\"\u003e\u003ccode\u003e41f7b9a\u003c/code\u003e\u003c/a\u003e chore: fixes uncovered by the .NET 1.61 roll (\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41266\"\u003e#41266\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/ba507783ae48724a1882f6423d8e8ec208bf366a\"\u003e\u003ccode\u003eba50778\u003c/code\u003e\u003c/a\u003e fix(mcp): assign caps as array for legacy --vision flag (\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41253\"\u003e#41253\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/b8ee5ae27fd068e3744852209dfcb5c1a142909f\"\u003e\u003ccode\u003eb8ee5ae\u003c/code\u003e\u003c/a\u003e docs: release notes for v1.61 (\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41261\"\u003e#41261\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/microsoft/playwright/commit/49c1f694c9bc06c9d1f6966afe8b6dfd4f388b3e\"\u003e\u003ccode\u003e49c1f69\u003c/code\u003e\u003c/a\u003e fix(trace viewer): load trace from a local file (\u003ca href=\"https://redirect.github.com/microsoft/playwright/issues/41263\"\u003e#41263\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/microsoft/playwright/compare/v1.59.1...v1.61.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `prettier` from 3.8.1 to 3.8.4\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/prettier/prettier/releases\"\u003eprettier's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.8.4\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMarkdown: Fix blank lines between list items and nested sub-lists being removed in Markdown/MDX (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/17746\"\u003eprettier/prettier#17746\u003c/a\u003e by \u003ca href=\"https://github.com/byplayer\"\u003e\u003ccode\u003e@​byplayer\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.8.4/CHANGELOG.md#384\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.8.3\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSCSS: Prevent trailing comma in \u003ccode\u003eif()\u003c/code\u003e function (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/18471\"\u003eprettier/prettier#18471\u003c/a\u003e by \u003ca href=\"https://github.com/kovsu\"\u003e\u003ccode\u003e@​kovsu\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/3.8.3/CHANGELOG.md#383\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e3.8.2\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSupport Angular v21.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e🔗 \u003ca href=\"https://github.com/prettier/prettier/blob/main/CHANGELOG.md#382\"\u003eChangelog\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/prettier/prettier/blob/main/CHANGELOG.md\"\u003eprettier's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e3.8.4\u003c/h1\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/prettier/prettier/compare/3.8.3...3.8.4\"\u003ediff\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eMarkdown: Fix blank lines between list items and nested sub-lists being removed in Markdown/MDX (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/17746\"\u003e#17746\u003c/a\u003e by \u003ca href=\"https://github.com/byplayer\"\u003e\u003ccode\u003e@​byplayer\u003c/code\u003e\u003c/a\u003e)\u003c/h4\u003e\n\u003cp\u003ePrettier was removing blank lines between list items and their nested sub-lists, converting loose lists into tight lists and changing their semantic meaning.\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cpre lang=\"markdown\"\u003e\u003ccode\u003e\u0026lt;!-- Input --\u0026gt;\n- a\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eb\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003ec\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003ed\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u0026lt;!-- Prettier 3.8.3 --\u0026gt;\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003ea\n\u003cul\u003e\n\u003cli\u003eb\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003ec\n\u003cul\u003e\n\u003cli\u003ed\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u0026lt;!-- Prettier 3.8.4 --\u0026gt;\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003ea\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eb\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003ec\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003ed\u003cbr /\u003e\n\u003c/code\u003e\u003c/pre\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e3.8.3\u003c/h1\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/prettier/prettier/compare/3.8.2...3.8.3\"\u003ediff\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eSCSS: Prevent trailing comma in \u003ccode\u003eif()\u003c/code\u003e function (\u003ca href=\"https://redirect.github.com/prettier/prettier/pull/18471\"\u003e#18471\u003c/a\u003e by \u003ca href=\"https://github.com/kovsu\"\u003e\u003ccode\u003e@​kovsu\u003c/code\u003e\u003c/a\u003e)\u003c/h4\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cpre lang=\"scss\"\u003e\u003ccode\u003e// Input\n$value: if(sass(false): 1; else: -1);\n\u003cp\u003e// Prettier 3.8.2\u003cbr /\u003e\n$value: if(\u003cbr /\u003e\nsass(false): 1; else: -1,\u003cbr /\u003e\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt;\u003cbr /\u003e\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/1c6ba5539141552e0e8e22d401ea620d8fdff468\"\u003e\u003ccode\u003e1c6ba55\u003c/code\u003e\u003c/a\u003e Release 3.8.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/4a673dc9b59ddf7296bbab9822093d2971da84a8\"\u003e\u003ccode\u003e4a673dc\u003c/code\u003e\u003c/a\u003e Fix blank lines between list items and nested sub-lists being removed in Mark...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/074aaedbb052a288e89d15eb0a4214de37a08866\"\u003e\u003ccode\u003e074aaed\u003c/code\u003e\u003c/a\u003e Replace \u003ccode\u003emain\u003c/code\u003e branch in changelog link with tags (\u003ca href=\"https://redirect.github.com/prettier/prettier/issues/19054\"\u003e#19054\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/c22a003ae97917c5043e8685b4fdff0f93e978f9\"\u003e\u003ccode\u003ec22a003\u003c/code\u003e\u003c/a\u003e Bump Prettier dependency to 3.8.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/07bad1f04536e9799927007baf466e67151576f0\"\u003e\u003ccode\u003e07bad1f\u003c/code\u003e\u003c/a\u003e Clean changelog_unreleased\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/d7108a79ec745c04292aabf22c4c1adbd690b191\"\u003e\u003ccode\u003ed7108a7\u003c/code\u003e\u003c/a\u003e Release 3.8.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/177f90898170d363ef64fde663e4d13170688bfe\"\u003e\u003ccode\u003e177f908\u003c/code\u003e\u003c/a\u003e Prevent trailing comma in SCSS \u003ccode\u003eif()\u003c/code\u003e function (\u003ca href=\"https://redirect.github.com/prettier/prettier/issues/18471\"\u003e#18471\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/1cd40668c3d6f2f4cf9d87bbc9096d92361b2606\"\u003e\u003ccode\u003e1cd4066\u003c/code\u003e\u003c/a\u003e Release \u003ccode\u003e@​prettier/plugin-oxc\u003c/code\u003e\u003ca href=\"https://github.com/0\"\u003e\u003ccode\u003e@​0\u003c/code\u003e\u003c/a\u003e.1.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/a8700e245038cd8cc0cf28ef06ffedbcb3fc2dfc\"\u003e\u003ccode\u003ea8700e2\u003c/code\u003e\u003c/a\u003e Update oxc-parser to v0.125.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/prettier/prettier/commit/752157c78eca6f0a30e5d5cb513b682c5ecfa01e\"\u003e\u003ccode\u003e752157c\u003c/code\u003e\u003c/a\u003e Fix tests\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/prettier/prettier/compare/3.8.1...3.8.4\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `turbo` from 2.9.14 to 2.9.18\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/turborepo/releases\"\u003eturbo's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eTurborepo v2.9.18\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003erelease(turborepo): 2.9.17 by \u003ca href=\"https://github.com/github-actions\"\u003e\u003ccode\u003e@​github-actions\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13047\"\u003evercel/turborepo#13047\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: Fetch version.txt via API in docs alias failure notification by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13050\"\u003evercel/turborepo#13050\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Harden cache archive symlink restore by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13051\"\u003evercel/turborepo#13051\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: Remove web UI mode by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13052\"\u003evercel/turborepo#13052\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Harden query server file access by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13053\"\u003evercel/turborepo#13053\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Confine prune patch paths by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13054\"\u003evercel/turborepo#13054\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Prevent git argument injection in SCM refs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13055\"\u003evercel/turborepo#13055\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Strip special mode bits from cache restore by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13056\"\u003evercel/turborepo#13056\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Contain incremental cache outputs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13057\"\u003evercel/turborepo#13057\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(turborepo): Normalize Windows daemon path hash by \u003ca href=\"https://github.com/Balance8\"\u003e\u003ccode\u003e@​Balance8\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13020\"\u003evercel/turborepo#13020\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Preserve vt100 cell byte counts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13058\"\u003evercel/turborepo#13058\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Separate artifact signature fields by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13059\"\u003evercel/turborepo#13059\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Validate OidHash hex buffers by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13060\"\u003evercel/turborepo#13060\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Block self-hosted login URLs from attempting to use Vercel's SSO by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13061\"\u003evercel/turborepo#13061\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Balance8\"\u003e\u003ccode\u003e@​Balance8\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/13020\"\u003evercel/turborepo#13020\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/vercel/turborepo/compare/v2.9.17...v2.9.18\"\u003ehttps://github.com/vercel/turborepo/compare/v2.9.17...v2.9.18\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eTurborepo v2.9.17\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efix: Keep non-PTY stdin alive for persistent tasks by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12972\"\u003evercel/turborepo#12972\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(turborepo): 2.9.16 by \u003ca href=\"https://github.com/github-actions\"\u003e\u003ccode\u003e@​github-actions\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12970\"\u003evercel/turborepo#12970\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(turborepo): 2.9.17-canary.1 by \u003ca href=\"https://github.com/github-actions\"\u003e\u003ccode\u003e@​github-actions\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12973\"\u003evercel/turborepo#12973\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Add auth HTTP timeouts by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12976\"\u003evercel/turborepo#12976\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Detect affected root tasks in query by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12977\"\u003evercel/turborepo#12977\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: Wait for Windows graceful shutdown by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12979\"\u003evercel/turborepo#12979\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003erelease(turborepo): 2.9.17-canary.2 by \u003ca href=\"https://github.com/github-actions\"\u003e\u003ccode\u003e@​github-actions\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12980\"\u003evercel/turborepo#12980\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Skip installs for JSON output fixtures by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12981\"\u003evercel/turborepo#12981\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat: Add Rsbuild examples by \u003ca href=\"https://github.com/Nsttt\"\u003e\u003ccode\u003e@​Nsttt\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12942\"\u003evercel/turborepo#12942\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Skip installs for single package dry runs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12982\"\u003evercel/turborepo#12982\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Skip Corepack setup without installs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12983\"\u003evercel/turborepo#12983\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Skip installs for metadata-only Rust tests by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12985\"\u003evercel/turborepo#12985\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Skip remaining unnecessary fixture installs by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12986\"\u003evercel/turborepo#12986\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Add final hash contract snapshots by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12984\"\u003evercel/turborepo#12984\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Trim run logging integration matrix by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12987\"\u003evercel/turborepo#12987\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Trim affected query integration matrix by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12988\"\u003evercel/turborepo#12988\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Narrow Windows integration test group by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12989\"\u003evercel/turborepo#12989\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Trim task dependency integration coverage by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12990\"\u003evercel/turborepo#12990\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Trim affected integration coverage by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12991\"\u003evercel/turborepo#12991\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003etest: Collapse integration test matrices by \u003ca href=\"https://github.com/anthonyshew\"\u003e\u003ccode\u003e@​anthonyshew\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/vercel/turborepo/pull/12992\"\u003evercel/turborepo#12992\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/3bdce3277d2e61cdbf29f244a515dd4b896d2556\"\u003e\u003ccode\u003e3bdce32\u003c/code\u003e\u003c/a\u003e publish 2.9.18 to registry\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/2a76556b9457c514fa597a09fef23da2e1250c8c\"\u003e\u003ccode\u003e2a76556\u003c/code\u003e\u003c/a\u003e fix: Block self-hosted login URLs from attempting to use Vercel's SSO (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13061\"\u003e#13061\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/da8e3487acce10039425180c42875d7ccc484ed5\"\u003e\u003ccode\u003eda8e348\u003c/code\u003e\u003c/a\u003e fix: Validate OidHash hex buffers (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13060\"\u003e#13060\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/3018717c28fc8f1ecffa2c92e3260be0dc0165aa\"\u003e\u003ccode\u003e3018717\u003c/code\u003e\u003c/a\u003e fix: Separate artifact signature fields (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13059\"\u003e#13059\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/34514e278822ccbe3a083730b7032709ef16f85c\"\u003e\u003ccode\u003e34514e2\u003c/code\u003e\u003c/a\u003e fix: Preserve vt100 cell byte counts (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13058\"\u003e#13058\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/24e2d3498f54fa1f8b729f18764f63cb05072bc6\"\u003e\u003ccode\u003e24e2d34\u003c/code\u003e\u003c/a\u003e fix(turborepo): Normalize Windows daemon path hash (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13020\"\u003e#13020\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/16dc881cabf5c13d02c27a5d7cfdfeb60736206c\"\u003e\u003ccode\u003e16dc881\u003c/code\u003e\u003c/a\u003e fix: Contain incremental cache outputs (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13057\"\u003e#13057\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/92e1f8e5365ea5a95e47c3698deb2f7adaa55eba\"\u003e\u003ccode\u003e92e1f8e\u003c/code\u003e\u003c/a\u003e fix: Strip special mode bits from cache restore (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13056\"\u003e#13056\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/f46f896ef414823582131304c9749e9be011fe37\"\u003e\u003ccode\u003ef46f896\u003c/code\u003e\u003c/a\u003e fix: Prevent git argument injection in SCM refs (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13055\"\u003e#13055\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/turborepo/commit/7f353ca3a6f28fbbcce931aeab7be0efe718c466\"\u003e\u003ccode\u003e7f353ca\u003c/code\u003e\u003c/a\u003e fix: Confine prune patch paths (\u003ca href=\"https://redirect.github.com/vercel/turborepo/issues/13054\"\u003e#13054\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vercel/turborepo/compare/v2.9.14...v2.9.18\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@sentry/nextjs` from 10.49.0 to 10.59.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/getsentry/sentry-javascript/releases\"\u003e@​sentry/nextjs's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e10.59.0\u003c/h2\u003e\n\u003ch3\u003eImportant Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003efeat(react-router): Add support for React Router v8 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21633\"\u003e#21633\u003c/a\u003e)\u003c/strong\u003e\u003c/p\u003e\n\u003cp\u003eThe SDK now supports React Router v8, in both the framework and SPA (\u003ccode\u003e@sentry/react\u003c/code\u003e) modes.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003efeat(react): Add version-agnostic React Router SPA exports (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21633\"\u003e#21633\u003c/a\u003e)\u003c/strong\u003e\u003c/p\u003e\n\u003cp\u003e\u003ccode\u003e@sentry/react\u003c/code\u003e now exports version-agnostic wrappers for React Router v6+ SPA instrumentation.\nThe new exports replace the version-specific \u003ccode\u003eV6\u003c/code\u003e/\u003ccode\u003eV7\u003c/code\u003e variants, which are now deprecated:\u003c/p\u003e\n\u003ctable\u003e\n\u003cthead\u003e\n\u003ctr\u003e\n\u003cth\u003eDeprecated\u003c/th\u003e\n\u003cth\u003eNew\u003c/th\u003e\n\u003c/tr\u003e\n\u003c/thead\u003e\n\u003ctbody\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ereactRouterV6BrowserTracingIntegration\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ereactRouterBrowserTracingIntegration\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewithSentryReactRouterV6Routing\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapReactRouterRouting\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateBrowserRouterV6\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateBrowserRouter\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateMemoryRouterV6\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateMemoryRouter\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewrapUseRoutesV6\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapUseRoutes\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003c/tbody\u003e\n\u003c/table\u003e\n\u003cp\u003eThe deprecated exports continue to work and will be removed in the next major version.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eOther Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efeat(aws-serverless): Instrument aws-sdk clients \u0026gt;= 3.1046.0 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21548\"\u003e#21548\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(bun): Add orchestrion bun build plugin (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21410\"\u003e#21410\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(cloudflare): Instrument sync KV (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21316\"\u003e#21316\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(core): Disable gen_ai message truncation by default when \u003ccode\u003estreamGenAiSpans\u003c/code\u003e is enabled (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21603\"\u003e#21603\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(deno): Add orchestrion deno runtime hook (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21451\"\u003e#21451\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(hono): Extend peer dependency range (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21550\"\u003e#21550\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(node): Collapse orchestrion opt-in to a single option (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/20900\"\u003e#20900\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: Diagnostics channel Node v18 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21631\"\u003e#21631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(browser): Clean up pageload readystatechange listener (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21632\"\u003e#21632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Capture scopes on span before emitting \u003ccode\u003espanStart\u003c/code\u003e event (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21644\"\u003e#21644\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Defer TwP sampling by reading trace state from the scope (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21549\"\u003e#21549\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Prevent outgoing HTTP instrumentation from crashing on \u003ccode\u003e//\u003c/code\u003e request paths (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21645\"\u003e#21645\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Set \u003ccode\u003eproduction\u003c/code\u003e as default \u003ccode\u003esentry.environment\u003c/code\u003e attribute value on streamed spans (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21637\"\u003e#21637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(nextjs): Register safe random ID context at module load (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21573\"\u003e#21573\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cul\u003e\n\u003cli\u003echore: Change deprecation/deprecation to oxlint equivalent (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21604\"\u003e#21604\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore: Switch license headers to SPDX format (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21357\"\u003e#21357\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore(deps-dev): Bump esbuild from 0.20.0 to 0.28.1 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21511\"\u003e#21511\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore(deps): Bump esbuild from 0.25.0 to 0.28.1 in /dev-packages/e2e-tests/test-applications/node-profiling-esm (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21514\"\u003e#21514\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore(deps): Bump react-router-6 to 6.30.4 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21566\"\u003e#21566\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: Assign server team as codeowner for server-utils package (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21601\"\u003e#21601\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: Dedup flaky test issues across esm/cjs variants (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21595\"\u003e#21595\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: Do not apply Bug label to flaky test issues (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21593\"\u003e#21593\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/getsentry/sentry-javascript/blob/develop/CHANGELOG.md\"\u003e@​sentry/nextjs's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e10.59.0\u003c/h2\u003e\n\u003ch3\u003eImportant Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003efeat(react-router): Add support for React Router v8 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21633\"\u003e#21633\u003c/a\u003e)\u003c/strong\u003e\u003c/p\u003e\n\u003cp\u003eThe SDK now supports React Router v8, in both the framework and SPA (\u003ccode\u003e@sentry/react\u003c/code\u003e) modes.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003efeat(react): Add version-agnostic React Router SPA exports (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21633\"\u003e#21633\u003c/a\u003e)\u003c/strong\u003e\u003c/p\u003e\n\u003cp\u003e\u003ccode\u003e@sentry/react\u003c/code\u003e now exports version-agnostic wrappers for React Router v6+ SPA instrumentation.\nThe new exports replace the version-specific \u003ccode\u003eV6\u003c/code\u003e/\u003ccode\u003eV7\u003c/code\u003e variants, which are now deprecated:\u003c/p\u003e\n\u003ctable\u003e\n\u003cthead\u003e\n\u003ctr\u003e\n\u003cth\u003eDeprecated\u003c/th\u003e\n\u003cth\u003eNew\u003c/th\u003e\n\u003c/tr\u003e\n\u003c/thead\u003e\n\u003ctbody\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ereactRouterV6BrowserTracingIntegration\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ereactRouterBrowserTracingIntegration\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewithSentryReactRouterV6Routing\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapReactRouterRouting\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateBrowserRouterV6\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateBrowserRouter\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateMemoryRouterV6\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapCreateMemoryRouter\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003ctr\u003e\n\u003ctd\u003e\u003ccode\u003ewrapUseRoutesV6\u003c/code\u003e / \u003ccode\u003eV7\u003c/code\u003e\u003c/td\u003e\n\u003ctd\u003e\u003ccode\u003ewrapUseRoutes\u003c/code\u003e\u003c/td\u003e\n\u003c/tr\u003e\n\u003c/tbody\u003e\n\u003c/table\u003e\n\u003cp\u003eThe deprecated exports continue to work and will be removed in the next major version.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eOther Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efeat(aws-serverless): Instrument aws-sdk clients \u0026gt;= 3.1046.0 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21548\"\u003e#21548\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(bun): Add orchestrion bun build plugin (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21410\"\u003e#21410\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(cloudflare): Instrument sync KV (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21316\"\u003e#21316\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(core): Disable gen_ai message truncation by default when \u003ccode\u003estreamGenAiSpans\u003c/code\u003e is enabled (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21603\"\u003e#21603\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(deno): Add orchestrion deno runtime hook (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21451\"\u003e#21451\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(hono): Extend peer dependency range (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21550\"\u003e#21550\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(node): Collapse orchestrion opt-in to a single option (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/20900\"\u003e#20900\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: Diagnostics channel Node v18 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21631\"\u003e#21631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(browser): Clean up pageload readystatechange listener (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21632\"\u003e#21632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Capture scopes on span before emitting \u003ccode\u003espanStart\u003c/code\u003e event (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21644\"\u003e#21644\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Defer TwP sampling by reading trace state from the scope (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21549\"\u003e#21549\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Prevent outgoing HTTP instrumentation from crashing on \u003ccode\u003e//\u003c/code\u003e request paths (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21645\"\u003e#21645\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(core): Set \u003ccode\u003eproduction\u003c/code\u003e as default \u003ccode\u003esentry.environment\u003c/code\u003e attribute value on streamed spans (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21637\"\u003e#21637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(nextjs): Register safe random ID context at module load (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21573\"\u003e#21573\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cul\u003e\n\u003cli\u003echore: Change deprecation/deprecation to oxlint equivalent (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21604\"\u003e#21604\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore: Switch license headers to SPDX format (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21357\"\u003e#21357\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore(deps-dev): Bump esbuild from 0.20.0 to 0.28.1 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21511\"\u003e#21511\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore(deps): Bump esbuild from 0.25.0 to 0.28.1 in /dev-packages/e2e-tests/test-applications/node-profiling-esm (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21514\"\u003e#21514\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore(deps): Bump react-router-6 to 6.30.4 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21566\"\u003e#21566\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: Assign server team as codeowner for server-utils package (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21601\"\u003e#21601\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: Dedup flaky test issues across esm/cjs variants (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/pull/21595\"\u003e#21595\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/2cb0ef60a06555082adaf59d6da07f9891244e43\"\u003e\u003ccode\u003e2cb0ef6\u003c/code\u003e\u003c/a\u003e release: 10.59.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/f77b265b2053dc705ca52c119d2321c1ab054000\"\u003e\u003ccode\u003ef77b265\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/issues/21655\"\u003e#21655\u003c/a\u003e from getsentry/prepare-release/10.59.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/8e32a8db5076cd934e2c280298f8bb2e64715236\"\u003e\u003ccode\u003e8e32a8d\u003c/code\u003e\u003c/a\u003e meta(changelog): Update changelog for 10.59.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/50fe5d914ef450979e047afddd2c10c679be4e36\"\u003e\u003ccode\u003e50fe5d9\u003c/code\u003e\u003c/a\u003e fix: Diagnostics channel Node v18 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/issues/21631\"\u003e#21631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/9c765e0fe224ff5a2cf1d073682ae06ad70769ad\"\u003e\u003ccode\u003e9c765e0\u003c/code\u003e\u003c/a\u003e feat(react-router): support react router v8 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/issues/21633\"\u003e#21633\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/815c1cff6992992c606d33e9877c1a80981dad13\"\u003e\u003ccode\u003e815c1cf\u003c/code\u003e\u003c/a\u003e feat(deps): Bump \u003ccode\u003e@​babel/core\u003c/code\u003e from 7.29.0 to 7.29.6 (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/issues/21574\"\u003e#21574\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/a52044746084c32d267350991c4ee4576cbd5955\"\u003e\u003ccode\u003ea520447\u003c/code\u003e\u003c/a\u003e ref(tanstackstart-react): Use \u003ccode\u003e@sentry/conventions\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/issues/21498\"\u003e#21498\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/38a0485d2d7ca31693449b1a0bd2841ef875dc55\"\u003e\u003ccode\u003e38a0485\u003c/code\u003e\u003c/a\u003e test(cloudflare): Remove mock in DO tests (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/issues/21634\"\u003e#21634\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/cb69761890fb5988d2dc9d24ccae070ee956abeb\"\u003e\u003ccode\u003ecb69761\u003c/code\u003e\u003c/a\u003e feat(deno): Add orchestrion deno runtime hook (\u003ca href=\"https://redirect.github.com/getsentry/sentry-javascript/issues/21451\"\u003e#21451\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/getsentry/sentry-javascript/commit/1e057ba0bebd9c644d39f2c38eb66dac6ecb6e97\"\u003e\u003ccode\u003e1e057ba\u003c/code\u003e\u003c/a\u003e chore(deps): Bump esbuild from 0.25.0 to 0.28.1 in /dev-packages/e2e-tests/te...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/getsentry/sentry-javascript/compare/10.49.0...10.59.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `axios` from 1.16.1 to 1.18.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/releases\"\u003eaxios's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.18.0 — June 13, 2026\u003c/h2\u003e\n\u003cp\u003eThis release hardens redirect and URL handling, improves the validateStatus configuration semantics, and includes updates to documentation, dependencies, and release metadata.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRedirect Header Safety:\u003c/strong\u003e Added Node HTTP adapter support for stripping caller-specified sensitive headers on cross-origin redirects, helping prevent custom auth headers such as API keys from leaking to another origin. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10892\"\u003e#10892\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eURL And Request Hardening:\u003c/strong\u003e Rejects malformed \u003ccode\u003ehttp:\u003c/code\u003e and \u003ccode\u003ehttps:\u003c/code\u003e URLs that omit \u003ccode\u003e//\u003c/code\u003e with \u003ccode\u003eERR_INVALID_URL\u003c/code\u003e, while tightening prototype-pollution-safe config reads, stream size limits, FormData depth handling, data URL sizing, and local \u003ccode\u003eNO_PROXY\u003c/code\u003e matching. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11000\"\u003e#11000\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eStatus Validation:\u003c/strong\u003e Added \u003ccode\u003etransitional.validateStatusUndefinedResolves\u003c/code\u003e so applications can opt in to treating \u003ccode\u003evalidateStatus: undefined\u003c/code\u003e like the option was omitted, while \u003ccode\u003evalidateStatus: null\u003c/code\u003e remains the explicit way to accept every status. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDocumentation:\u003c/strong\u003e Published the v1.17.0 release notes, fixed a changelog typo, clarified the package update PR policy, and marked the \u003ccode\u003eproxy\u003c/code\u003e request config as Node.js-only in the advanced docs. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10984\"\u003e#10984\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10988\"\u003e#10988\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10992\"\u003e#10992\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDependencies:\u003c/strong\u003e Bumped \u003ccode\u003e@babel/core\u003c/code\u003e, \u003ccode\u003e@babel/preset-env\u003c/code\u003e, \u003ccode\u003e@commitlint/cli\u003c/code\u003e, \u003ccode\u003e@commitlint/config-conventional\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-babel\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-commonjs\u003c/code\u003e, \u003ccode\u003e@vitest/browser\u003c/code\u003e, \u003ccode\u003e@vitest/browser-playwright\u003c/code\u003e, \u003ccode\u003eeslint\u003c/code\u003e, \u003ccode\u003elint-staged\u003c/code\u003e, \u003ccode\u003erollup\u003c/code\u003e, \u003ccode\u003evitest\u003c/code\u003e, and \u003ccode\u003eactions/checkout\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10989\"\u003e#10989\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10996\"\u003e#10996\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10997\"\u003e#10997\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRelease Metadata:\u003c/strong\u003e Prepared the 1.18.0 release by updating package metadata and the runtime \u003ccode\u003eVERSION\u003c/code\u003e value. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11003\"\u003e#11003\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🌟 New Contributors\u003c/h2\u003e\n\u003cp\u003eWe are thrilled to welcome our new contributors. Thank you for helping improve axios:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/drori12\"\u003e\u003ccode\u003e@​drori12\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10984\"\u003e#10984\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/eyupcanakman\"\u003e\u003ccode\u003e@​eyupcanakman\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/Adi-Beker\"\u003e\u003ccode\u003e@​Adi-Beker\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/axios/axios/compare/v1.17.0...v1.18.0\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev1.17.0 — June 1, 2026\u003c/h2\u003e\n\u003cp\u003eThis release adds Node HTTP zstd decompression, hardens config and release workflows, and fixes authentication, header, proxy, and type-handling regressions.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eConfig Hardening:\u003c/strong\u003e Guarded \u003ccode\u003esocketPath\u003c/code\u003e, \u003ccode\u003eparams\u003c/code\u003e, and \u003ccode\u003eparamsSerializer\u003c/code\u003e reads with own-property checks to prevent inherited prototype values from affecting request behavior, including SSRF-sensitive paths. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10901\"\u003e#10901\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10922\"\u003e#10922\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRelease Publishing:\u003c/strong\u003e Switched the publish workflow to npm staged publishing for safer, auditable package releases with provenance. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10926\"\u003e#10926\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🚀 New Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eHTTP Compression:\u003c/strong\u003e Added Node HTTP adapter support for zstd response decompression, with \u003ccode\u003etransitional.advertiseZstdAcceptEncoding\u003c/code\u003e controlling whether \u003ccode\u003ezstd\u003c/code\u003e is advertised in \u003ccode\u003eAccept-Encoding\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/6792\"\u003e#6792\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10920\"\u003e#10920\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eAuthentication Handling:\u003c/strong\u003e Restored Basic auth on same-origin Node redirects while continuing to strip credentials cross-origin, and aligned the fetch adapter with HTTP adapter behavior for URL-embedded Basic auth. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10929\"\u003e#10929\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eProxy TLS:\u003c/strong\u003e Preserved user \u003ccode\u003ehttpsAgent\u003c/code\u003e TLS options when tunneling HTTPS requests through HTTP CONNECT proxies. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10957\"\u003e#10957\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eReact Native FormData:\u003c/strong\u003e Cleared default \u003ccode\u003eContent-Type\u003c/code\u003e for React Native \u003ccode\u003eFormData\u003c/code\u003e so multipart boundaries can be generated correctly. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10898\"\u003e#10898\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/blob/v1.x/CHANGELOG.md\"\u003eaxios's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.18.0 — June 13, 2026\u003c/h2\u003e\n\u003cp\u003eThis release hardens redirect and URL handling, improves the validateStatus configuration semantics, and includes updates to documentation, dependencies, and release metadata.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRedirect Header Safety:\u003c/strong\u003e Added Node HTTP adapter support for stripping caller-specified sensitive headers on cross-origin redirects, helping prevent custom auth headers such as API keys from leaking to another origin. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10892\"\u003e#10892\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eURL And Request Hardening:\u003c/strong\u003e Rejects malformed \u003ccode\u003ehttp:\u003c/code\u003e and \u003ccode\u003ehttps:\u003c/code\u003e URLs that omit \u003ccode\u003e//\u003c/code\u003e with \u003ccode\u003eERR_INVALID_URL\u003c/code\u003e, while tightening prototype-pollution-safe config reads, stream size limits, FormData depth handling, data URL sizing, and local \u003ccode\u003eNO_PROXY\u003c/code\u003e matching. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11000\"\u003e#11000\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eStatus Validation:\u003c/strong\u003e Added \u003ccode\u003etransitional.validateStatusUndefinedResolves\u003c/code\u003e so applications can opt in to treating \u003ccode\u003evalidateStatus: undefined\u003c/code\u003e like the option was omitted, while \u003ccode\u003evalidateStatus: null\u003c/code\u003e remains the explicit way to accept every status. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDocumentation:\u003c/strong\u003e Published the v1.17.0 release notes, fixed a changelog typo, clarified the package update PR policy, and marked the \u003ccode\u003eproxy\u003c/code\u003e request config as Node.js-only in the advanced docs. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10984\"\u003e#10984\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10988\"\u003e#10988\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10992\"\u003e#10992\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDependencies:\u003c/strong\u003e Bumped \u003ccode\u003e@babel/core\u003c/code\u003e, \u003ccode\u003e@babel/preset-env\u003c/code\u003e, \u003ccode\u003e@commitlint/cli\u003c/code\u003e, \u003ccode\u003e@commitlint/config-conventional\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-babel\u003c/code\u003e, \u003ccode\u003e@rollup/plugin-commonjs\u003c/code\u003e, \u003ccode\u003e@vitest/browser\u003c/code\u003e, \u003ccode\u003e@vitest/browser-playwright\u003c/code\u003e, \u003ccode\u003eeslint\u003c/code\u003e, \u003ccode\u003elint-staged\u003c/code\u003e, \u003ccode\u003erollup\u003c/code\u003e, \u003ccode\u003evitest\u003c/code\u003e, and \u003ccode\u003eactions/checkout\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10989\"\u003e#10989\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10996\"\u003e#10996\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10997\"\u003e#10997\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eRelease Metadata:\u003c/strong\u003e Prepared the 1.18.0 release by updating package metadata and the runtime \u003ccode\u003eVERSION\u003c/code\u003e value. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/11003\"\u003e#11003\u003c/a\u003e\u003c/strong\u003e)\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🌟 New Contributors\u003c/h2\u003e\n\u003cp\u003eWe are thrilled to welcome our new contributors. Thank you for helping improve axios:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/drori12\"\u003e\u003ccode\u003e@​drori12\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10984\"\u003e#10984\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/eyupcanakman\"\u003e\u003ccode\u003e@​eyupcanakman\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/Adi-Beker\"\u003e\u003ccode\u003e@​Adi-Beker\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/axios/axios/compare/v1.17.0...v1.18.0\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev1.17.0 — June 1, 2026\u003c/h2\u003e\n\u003cp\u003eThis release adds Node HTTP zstd decompression, hardens config and release workflows, and fixes authentication, header, proxy, and type-handling regressions.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eConfig Hardening:\u003c/strong\u003e Guarded \u003ccode\u003esocketPath\u003c/code\u003e, \u003ccode\u003eparams\u003c/code\u003e, and \u003ccode\u003eparamsSerializer\u003c/code\u003e reads with own-property checks to prevent inherited prototype values from affecting request behavior, including SSRF-sensitive paths. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10901\"\u003e#10901\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10922\"\u003e#10922\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRelease Publishing:\u003c/strong\u003e Switched the publish workflow to npm staged publishing for safer, auditable package releases with provenance. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10926\"\u003e#10926\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🚀 New Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eHTTP Compression:\u003c/strong\u003e Added Node HTTP adapter support for zstd response decompression, with \u003ccode\u003etransitional.advertiseZstdAcceptEncoding\u003c/code\u003e controlling whether \u003ccode\u003ezstd\u003c/code\u003e is advertised in \u003ccode\u003eAccept-Encoding\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/6792\"\u003e#6792\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10920\"\u003e#10920\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eAuthentication Handling:\u003c/strong\u003e Restored Basic auth on same-origin Node redirects while continuing to strip credentials cross-origin, and aligned the fetch adapter with HTTP adapter behavior for URL-embedded Basic auth. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10929\"\u003e#10929\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eProxy TLS:\u003c/strong\u003e Preserved user \u003ccode\u003ehttpsAgent\u003c/code\u003e TLS options when tunneling HTTPS requests through HTTP CONNECT proxies. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10957\"\u003e#10957\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eReact Native FormData:\u003c/strong\u003e Cleared default \u003ccode\u003eContent-Type\u003c/code\u003e for React Native \u003ccode\u003eFormData\u003c/code\u003e so multipart boundaries can be generated correctly. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10898\"\u003e#10898\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/2d06f96e8602c2db13b65a26340ee4a1bbc0b61f\"\u003e\u003ccode\u003e2d06f96\u003c/code\u003e\u003c/a\u003e chore(release): prepare release 1.18.0 (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11003\"\u003e#11003\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/32fc489632377d214db55bfa4e2c48486a7d7ce2\"\u003e\u003ccode\u003e32fc489\u003c/code\u003e\u003c/a\u003e fix: malformed http urls (\u003ca href=\"https://redirect.github.com/axios/axios/issues/11000\"\u003e#11000\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/b40ce498abfa10d90b873b4fd08f520afa5d2545\"\u003e\u003ccode\u003eb40ce49\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump the development_dependencies group with 10 updates (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10\"\u003e#10\u003c/a\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/fe964f960ecb52c3e1155b0daf7be77541956b01\"\u003e\u003ccode\u003efe964f9\u003c/code\u003e\u003c/a\u003e docs: mark proxy config as Node.js only (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10995\"\u003e#10995\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/5f229d2d1f018d1db3dab6bbe034dbf3f9041b99\"\u003e\u003ccode\u003e5f229d2\u003c/code\u003e\u003c/a\u003e chore(deps): bump actions/checkout from 6.0.2 to 6.0.3 in the github-actions ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/fae9d4e7db6a858c407c75e607a071c533c5c4f6\"\u003e\u003ccode\u003efae9d4e\u003c/code\u003e\u003c/a\u003e docs: clarify package update PR policy (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10992\"\u003e#10992\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/28ab2ced820e55192806c53472ab3eb0cbb68dc2\"\u003e\u003ccode\u003e28ab2ce\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump the development_dependencies group with 2 updates (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10989\"\u003e#10989\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/a8e4f13aeecc45a3b8fab3ecfd9ddb5d70fb772b\"\u003e\u003ccode\u003ea8e4f13\u003c/code\u003e\u003c/a\u003e fix(core): keep default validateStatus when request passes undefined (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10899\"\u003e#10899\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/614f4552a17de757d4171ad7c3bd38c9c1025fd8\"\u003e\u003ccode\u003e614f455\u003c/code\u003e\u003c/a\u003e docs: publish v1.17.0 release notes (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10988\"\u003e#10988\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/6bb12c191f5380fad321322fb90216ae0dc36985\"\u003e\u003ccode\u003e6bb12c1\u003c/code\u003e\u003c/a\u003e fix: custom auth headers not stripped on cross-origin redirects (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10892\"\u003e#10892\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/axios/axios/compare/v1.16.1...v1.18.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `js-cookie` from 3.0.5 to 3.0.8\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/js-cookie/js-cookie/releases\"\u003ejs-cookie's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.0.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRestore ES5 compatibility, inadvertently broken in 3.0.7 - \u003ca href=\"https://redirect.github.com/js-cookie/js-cookie/issues/959\"\u003e#959\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eLift Node version restriction, inadvertently restricted to \u0026gt;= 20 in 3.0.7 - \u003ca href=\"https://redirect.github.com/js-cookie/js-cookie/issues/956\"\u003e#956\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev3.0.7\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ePrevent cookie attribute injection: CVE-2026-46625 (eb3c40e)\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003ePartitioned\u003c/code\u003e attribute to readme (b994768)\u003c/li\u003e\n\u003cli\u003ePublish to npm registry via trusted publisher exclusively (4dc71be)\u003c/li\u003e\n\u003cli\u003eEnsure consistent behaviour for \u003ccode\u003eget('name')\u003c/code\u003e + \u003ccode\u003eget()\u003c/code\u003e (1953d30)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/d7a10966e3f2cbcbfa96e34e7544d23aab9e3372\"\u003e\u003ccode\u003ed7a1096\u003c/code\u003e\u003c/a\u003e Craft v3.0.8 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/248e685e20c7aa9553453f0084f14a62173462d2\"\u003e\u003ccode\u003e248e685\u003c/code\u003e\u003c/a\u003e Use existing Chrome with puppeteer\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/fc04269d83cae5536c08fdb71c9fd1d35e148f7a\"\u003e\u003ccode\u003efc04269\u003c/code\u003e\u003c/a\u003e Remove QUnit related workaround in Grunt config\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/265a6853d04eefa6f7a4d8acdd118d3f5c4dddc3\"\u003e\u003ccode\u003e265a685\u003c/code\u003e\u003c/a\u003e Tidy up package lock file\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/478e59129f8f1e5c80fc71fecd37b04cd8ed1575\"\u003e\u003ccode\u003e478e591\u003c/code\u003e\u003c/a\u003e Disable Node deprecation DEP0044 for release workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/331d5240db232da6748abbdde7a35823f681e9a7\"\u003e\u003ccode\u003e331d524\u003c/code\u003e\u003c/a\u003e Fix node version config for E2E test job\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/11d773d413f680a4ccf23a5375e82fa14df1b7a7\"\u003e\u003ccode\u003e11d773d\u003c/code\u003e\u003c/a\u003e Ensure ECMAScript compatibility\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/d78864600f3ee9c3780c3f3d0072342beb722f45\"\u003e\u003ccode\u003ed788646\u003c/code\u003e\u003c/a\u003e Remove \u003ccode\u003eengines\u003c/code\u003e property from package\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/e7d9a4dff0d5ebc51a200819e3ab3a2dbe87979a\"\u003e\u003ccode\u003ee7d9a4d\u003c/code\u003e\u003c/a\u003e Fix typo in test assertion message\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/js-cookie/js-cookie/commit/b5fca24b9bc03b20e8751f7eea6c14c40095f7e8\"\u003e\u003ccode\u003eb5fca24\u003c/code\u003e\u003c/a\u003e Make credentials use explicit in release workflow\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/js-cookie/js-cookie/compare/v3.0.5...v3.0.8\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for js-cookie since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `lucide-react` from 0.468.0 to 0.577.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/lucide-icons/lucide/releases\"\u003elucide-react's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 0.577.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore(deps): bump rollup from 4.53.3 to 4.59.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/lucide-icons/lucide/pull/4106\"\u003elucide-icons/lucide#4106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(repo): correctly ignore docs/releaseMetadata via .gitignore by \u003ca href=\"https://github.com/bhavberi\"\u003e\u003ccode\u003e@​bhavberi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.gi...\n\n_Description has been truncated_","html_url":"https://github.com/colonmbiano/mrtpvrest/pull/103","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/colonmbiano%2Fmrtpvrest/issues/103","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/103/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-06-17T18:32:04.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4686034899","node_id":"PR_kwDOACMMis7nnfED","number":15339,"state":"open","title":"chore(deps): bump the minor-deps-updates-main group across 1 directory with 26 updates","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-06-17T18:32:04.000Z","updated_at":"2026-06-27T00:13:40.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"minor-deps-updates-main","update_count":26,"packages":[{"name":"@aws-sdk/client-cloudfront","old_version":"3.962.0","new_version":"3.1073.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@aws-sdk/client-device-farm","old_version":"3.962.0","new_version":"3.1073.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@aws-sdk/client-s3","old_version":"3.962.0","new_version":"3.1073.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@aws-sdk/lib-storage","old_version":"3.962.0","new_version":"3.1073.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@serenity-js/core","old_version":"3.37.1","new_version":"3.44.0","repository_url":"https://github.com/serenity-js/serenity-js"},{"name":"@stencil/core","old_version":"4.41.0","new_version":"4.43.5","repository_url":"https://github.com/stenciljs/core"},{"name":"cddl","old_version":"0.14.10","new_version":"0.20.1","repository_url":"https://github.com/webdriverio/cddl"},{"name":"cddl2ts","old_version":"0.4.5","new_version":"0.9.1","repository_url":"https://github.com/webdriverio/cddl"},{"name":"cheerio","old_version":"1.1.2","new_version":"1.2.0","repository_url":"https://github.com/cheeriojs/cheerio"},{"name":"tempy","old_version":"3.1.0","new_version":"3.2.0","repository_url":"https://github.com/sindresorhus/tempy"},{"name":"tsx","old_version":"4.21.0","new_version":"4.22.4","repository_url":"https://github.com/privatenumber/tsx"},{"name":"semver","old_version":"7.7.4","new_version":"7.8.5","repository_url":"https://github.com/npm/node-semver"},{"name":"typescript-eslint","old_version":"8.56.1","new_version":"8.61.1","repository_url":"https://github.com/typescript-eslint/typescript-eslint"},{"name":"allure-js-commons","old_version":"3.4.4","new_version":"3.10.0","repository_url":"https://github.com/allure-framework/allure-js"},{"name":"csv-stringify","old_version":"6.6.0","new_version":"6.8.0","repository_url":"https://github.com/adaltas/node-csv"},{"name":"strip-ansi","old_version":"7.1.2","new_version":"7.2.0","repository_url":"https://github.com/chalk/strip-ansi"},{"name":"get-port","old_version":"7.1.0","new_version":"7.2.0","repository_url":"https://github.com/sindresorhus/get-port"},{"name":"expect","old_version":"30.2.0","new_version":"30.4.1","repository_url":"https://github.com/jestjs/jest"},{"name":"safe-stringify","old_version":"1.2.0","new_version":"1.3.0","repository_url":"https://github.com/sindresorhus/safe-stringify"},{"name":"yauzl","old_version":"3.2.1","new_version":"3.4.0","repository_url":"https://github.com/thejoshwolfe/yauzl"},{"name":"@types/yauzl","old_version":"2.10.3","new_version":"3.4.0","repository_url":"https://github.com/DefinitelyTyped/DefinitelyTyped"},{"name":"dotenv","old_version":"17.2.3","new_version":"17.4.2","repository_url":"https://github.com/motdotla/dotenv"},{"name":"jiti","old_version":"2.6.1","new_version":"2.7.0","repository_url":"https://github.com/unjs/jiti"},{"name":"safe-regex2","old_version":"5.0.0","new_version":"5.1.1","repository_url":"https://github.com/fastify/safe-regex2"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"ws","old_version":"8.20.1","new_version":"8.21.0","repository_url":"https://github.com/websockets/ws"}],"path":null,"ecosystem":"npm"},"body":"Bumps the minor-deps-updates-main group with 26 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@aws-sdk/client-cloudfront](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-cloudfront) | `3.962.0` | `3.1073.0` |\n| [@aws-sdk/client-device-farm](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-device-farm) | `3.962.0` | `3.1073.0` |\n| [@aws-sdk/client-s3](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3) | `3.962.0` | `3.1073.0` |\n| [@aws-sdk/lib-storage](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/lib/lib-storage) | `3.962.0` | `3.1073.0` |\n| [@serenity-js/core](https://github.com/serenity-js/serenity-js/tree/HEAD/packages/core) | `3.37.1` | `3.44.0` |\n| [@stencil/core](https://github.com/stenciljs/core) | `4.41.0` | `4.43.5` |\n| [cddl](https://github.com/webdriverio/cddl) | `0.14.10` | `0.20.1` |\n| [cddl2ts](https://github.com/webdriverio/cddl) | `0.4.5` | `0.9.1` |\n| [cheerio](https://github.com/cheeriojs/cheerio) | `1.1.2` | `1.2.0` |\n| [tempy](https://github.com/sindresorhus/tempy) | `3.1.0` | `3.2.0` |\n| [tsx](https://github.com/privatenumber/tsx) | `4.21.0` | `4.22.4` |\n| [semver](https://github.com/npm/node-semver) | `7.7.4` | `7.8.5` |\n| [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint) | `8.56.1` | `8.61.1` |\n| [allure-js-commons](https://github.com/allure-framework/allure-js/tree/HEAD/packages/allure-js-commons) | `3.4.4` | `3.10.0` |\n| [csv-stringify](https://github.com/adaltas/node-csv/tree/HEAD/packages/csv-stringify) | `6.6.0` | `6.8.0` |\n| [strip-ansi](https://github.com/chalk/strip-ansi) | `7.1.2` | `7.2.0` |\n| [get-port](https://github.com/sindresorhus/get-port) | `7.1.0` | `7.2.0` |\n| [expect](https://github.com/jestjs/jest/tree/HEAD/packages/expect) | `30.2.0` | `30.4.1` |\n| [safe-stringify](https://github.com/sindresorhus/safe-stringify) | `1.2.0` | `1.3.0` |\n| [yauzl](https://github.com/thejoshwolfe/yauzl) | `3.2.1` | `3.4.0` |\n| [@types/yauzl](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/yauzl) | `2.10.3` | `3.4.0` |\n| [dotenv](https://github.com/motdotla/dotenv) | `17.2.3` | `17.4.2` |\n| [jiti](https://github.com/unjs/jiti) | `2.6.1` | `2.7.0` |\n| [safe-regex2](https://github.com/fastify/safe-regex2) | `5.0.0` | `5.1.1` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [ws](https://github.com/websockets/ws) | `8.20.1` | `8.21.0` |\n\n\nUpdates `@aws-sdk/client-cloudfront` from 3.962.0 to 3.1073.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/client-cloudfront's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1073.0\u003c/h2\u003e\n\u003ch4\u003e3.1073.0(2026-06-19)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-glue:\u003c/strong\u003e  Adds the SearchAssets operation for discovering assets in the AWS Glue Data Catalog using full-text search and filters. Minor naming refinements across the Glossary Terms and Attachment APIs for consistency. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ef204650ce46482b8b2bfeeb9c539244b59a848e\"\u003eef204650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-connect:\u003c/strong\u003e  This is the release for point based scoring system and the evaluation form validation project (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b19c162a2e22094c09d77d484ba0dfcfd3a5ecff\"\u003eb19c162a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent:\u003c/strong\u003e  Add support for metadata-only retrieval on GetFlow, GetFlowVersion, and GetPrompt APIs. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c9d5fb3378ba0d1c7ab7d3fe7bec0296491c6bbc\"\u003ec9d5fb33\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-appstream:\u003c/strong\u003e  Amazon WorkSpaces Agent Access now supports domain-joined fleets for enterprise identity integration, real-time agent observation with instant stop controls, and MCP tool forwarding for lower-latency, cost-effective desktop tool access. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d9c25f0b3f641fdc1999f0d4377140c0f3476ede\"\u003ed9c25f0b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-opensearch:\u003c/strong\u003e  This release introduces data source attachment APIs, enabling users to attach and detach Amazon OpenSearch Service domains and Amazon OpenSearch Serverless collections to an OpenSearch application. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6cce3d69dc550fb64245fa1eae1b4e74d6d23607\"\u003e6cce3d69\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1073.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1072.0\u003c/h2\u003e\n\u003ch4\u003e3.1072.0(2026-06-18)\u003c/h4\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ec2:\u003c/strong\u003e  Documentation updates clarifying CancelCapacityReservation cancellable states (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e3723ba73e2f2d307254d49ec73c5b3d91b8d892\"\u003ee3723ba7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer:\u003c/strong\u003e  This release surfaces two new metrics Volume IOPS Exceeded and Volume Throughput Exceeded into EBS volume rightsizing recommendations. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ded6618d5249ab413bd90b26d4cea91d5f4b9b8f\"\u003eded6618d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-application-auto-scaling:\u003c/strong\u003e  Adds support for ECS high-resolution predefined scaling metrics (ECSServiceAverageCPUUtilizationHighResolution, ECSServiceAverageMemoryUtilizationHighResolution) enabling 20-second metric periods for faster scaling (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/95b3513a224a678fb92dc623f149d24adb96ae7b\"\u003e95b3513a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cognito-identity-provider:\u003c/strong\u003e  In order to support the new TLS Self-Service feature, this change adds SecurityPolicyType to CustomDomainConfigType. During CreateUserPoolDomain and UpdateUserPoolDomain this is used to select a custom domain's TLS enforcement, and for DescribeUserPoolDomain it informs users about the current TLS. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e89377876aa392ea403636b6821cdb3df253648b\"\u003ee8937787\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-sagemaker:\u003c/strong\u003e  Adds support for automatic AMI patching on HyperPod clusters. Customers can configure patching strategies to automatically apply security patch with zero job termination. Customers can also specify an AMI version at instance group level and update cluster software to a certain AMI version. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/fd33a5e46ca314f064b9149900abe4e451661b5e\"\u003efd33a5e4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Amazon ECS services now support high resolution (20 second) CloudWatch metrics for CPUUtilization and MemoryUtilization. Use these metrics for faster service auto scaling. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93055ac93bffca3e2957b2d67cb24ecdc784457a\"\u003e93055ac9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-healthlake:\u003c/strong\u003e  Adding New Configurations to the FHIR Create Datastore. The new configurations include NLP Configuration, AnalyticsConfiguration, ProfileConfiguration (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/494fa59f48705e23ab79da259046966831183c71\"\u003e494fa59f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-gamelift:\u003c/strong\u003e  Amazon GameLift Servers has launched support for customizing Linux capabilities in container fleets. You can now specify additional Linux capabilities for containers in a container group definition, giving you finer control over the default Docker capabilities available to your containers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93cefd905d4fc0c649b1d7ed69f4c8f0d79d3371\"\u003e93cefd90\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eks:\u003c/strong\u003e  Adds support for configurable control plane egress routing in Amazon EKS, allowing you to route control plane egress traffic through your VPC and control how the control plane reaches resources in your network such as webhook servers and OIDC providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/693db62958c6818b4cb847887b8e36a66347c119\"\u003e693db629\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda:\u003c/strong\u003e  Converging and fixing existing documentation gaps in Lambda SDK (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6555a565348a308dad7a51c85457c2bcee87feb8\"\u003e6555a565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-synthetics:\u003c/strong\u003e  CloudWatch Synthetics adds support for multi-location canaries. Customers can now monitor their endpoints from multiple locations with centralized management from a primary location. The SDK includes new parameters for configuring multiple locations and tracking their state. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/f2c8b480812b5ba2d1e173a8a074df6d72654239\"\u003ef2c8b480\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch-logs:\u003c/strong\u003e  Added optional startFromHead parameter to FilterLogEvents enabling descending timestamp order (newest first) when set to false. Default true preserves existing ascending order. Reverse sorting requires a startTime on or after Jan 1, 2024. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/1be63ed942af46df978e55df4bec6fb6c9d16e60\"\u003e1be63ed9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-batch:\u003c/strong\u003e  Adds Support for ordered allocation strategies- BEST-FIT-PROGRESSIVE-ORDERED or SPOT-CAPACITY-OPTIMIZED-PRIORITIZED (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0e57e53b1e0914a03b5b7c7d346245a1e6b6da11\"\u003e0e57e53b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1072.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1071.0\u003c/h2\u003e\n\u003ch4\u003e3.1071.0(2026-06-17)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-partnercentral-selling:\u003c/strong\u003e  Cosell Resonate AND Prospecing API Launch with ARN correction (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7e8c98abe070924fbbd1ea2abc183f0715f80945\"\u003e7e8c98ab\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer-automation:\u003c/strong\u003e  This launch adds IfExists comparison operators to Compute Optimizer Automation rule criteria, so a rule can include recommended actions whose specified attribute isn't present. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ab2c616d167a0796fba91e44d1118a6a8baee60d\"\u003eab2c616d\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-cloudfront/CHANGELOG.md\"\u003e@​aws-sdk/client-cloudfront's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1072.0...v3.1073.0\"\u003e3.1073.0\u003c/a\u003e (2026-06-19)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-cloudfront\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1071.0...v3.1072.0\"\u003e3.1072.0\u003c/a\u003e (2026-06-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-cloudfront\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1070.0...v3.1071.0\"\u003e3.1071.0\u003c/a\u003e (2026-06-17)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-cloudfront\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1069.0...v3.1070.0\"\u003e3.1070.0\u003c/a\u003e (2026-06-16)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-cloudfront\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1068.0...v3.1069.0\"\u003e3.1069.0\u003c/a\u003e (2026-06-15)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-cloudfront\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1067.0...v3.1068.0\"\u003e3.1068.0\u003c/a\u003e (2026-06-12)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-cloudfront\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1066.0...v3.1067.0\"\u003e3.1067.0\u003c/a\u003e (2026-06-11)\u003c/h1\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ee71adc9663fc2ebaabae455981fd169fd6e97b2\"\u003e\u003ccode\u003eee71adc\u003c/code\u003e\u003c/a\u003e Publish v3.1073.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/501cd332619533ae96f154d7c226dc2f7bf8d615\"\u003e\u003ccode\u003e501cd33\u003c/code\u003e\u003c/a\u003e Publish v3.1072.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3ce820aa54c953459eb58abe4f06e28ba4ceb87d\"\u003e\u003ccode\u003e3ce820a\u003c/code\u003e\u003c/a\u003e Publish v3.1071.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4f2cfe1cfc420d0b5bfa226ae6619dd67de73ccc\"\u003e\u003ccode\u003e4f2cfe1\u003c/code\u003e\u003c/a\u003e Publish v3.1070.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7058d13814795c6ff06a960077269458520bf161\"\u003e\u003ccode\u003e7058d13\u003c/code\u003e\u003c/a\u003e Publish v3.1069.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/67981c5a65d6dd797a065df034a8d0fcdaa9b7bd\"\u003e\u003ccode\u003e67981c5\u003c/code\u003e\u003c/a\u003e chore(scripts): tuning the build graph (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-cloudfront/issues/8095\"\u003e#8095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0632f6dc8842caaa916c5f43a5043342ff9ba6bb\"\u003e\u003ccode\u003e0632f6d\u003c/code\u003e\u003c/a\u003e Publish v3.1068.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0a3246f174335af55a6981b4891f0f4c10dfe4c4\"\u003e\u003ccode\u003e0a3246f\u003c/code\u003e\u003c/a\u003e Publish v3.1067.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4b11912aef8adc845f81b7e9922bd180c5cf1d90\"\u003e\u003ccode\u003e4b11912\u003c/code\u003e\u003c/a\u003e Publish v3.1066.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e4ef6c57d8fd97d15e0a7a27a24396990d704307\"\u003e\u003ccode\u003ee4ef6c5\u003c/code\u003e\u003c/a\u003e test: use crypto.randomUUID for resource names in e2e tests (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-cloudfront/issues/8091\"\u003e#8091\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1073.0/clients/client-cloudfront\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@aws-sdk/client-device-farm` from 3.962.0 to 3.1073.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/client-device-farm's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1073.0\u003c/h2\u003e\n\u003ch4\u003e3.1073.0(2026-06-19)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-glue:\u003c/strong\u003e  Adds the SearchAssets operation for discovering assets in the AWS Glue Data Catalog using full-text search and filters. Minor naming refinements across the Glossary Terms and Attachment APIs for consistency. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ef204650ce46482b8b2bfeeb9c539244b59a848e\"\u003eef204650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-connect:\u003c/strong\u003e  This is the release for point based scoring system and the evaluation form validation project (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b19c162a2e22094c09d77d484ba0dfcfd3a5ecff\"\u003eb19c162a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent:\u003c/strong\u003e  Add support for metadata-only retrieval on GetFlow, GetFlowVersion, and GetPrompt APIs. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c9d5fb3378ba0d1c7ab7d3fe7bec0296491c6bbc\"\u003ec9d5fb33\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-appstream:\u003c/strong\u003e  Amazon WorkSpaces Agent Access now supports domain-joined fleets for enterprise identity integration, real-time agent observation with instant stop controls, and MCP tool forwarding for lower-latency, cost-effective desktop tool access. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d9c25f0b3f641fdc1999f0d4377140c0f3476ede\"\u003ed9c25f0b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-opensearch:\u003c/strong\u003e  This release introduces data source attachment APIs, enabling users to attach and detach Amazon OpenSearch Service domains and Amazon OpenSearch Serverless collections to an OpenSearch application. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6cce3d69dc550fb64245fa1eae1b4e74d6d23607\"\u003e6cce3d69\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1073.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1072.0\u003c/h2\u003e\n\u003ch4\u003e3.1072.0(2026-06-18)\u003c/h4\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ec2:\u003c/strong\u003e  Documentation updates clarifying CancelCapacityReservation cancellable states (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e3723ba73e2f2d307254d49ec73c5b3d91b8d892\"\u003ee3723ba7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer:\u003c/strong\u003e  This release surfaces two new metrics Volume IOPS Exceeded and Volume Throughput Exceeded into EBS volume rightsizing recommendations. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ded6618d5249ab413bd90b26d4cea91d5f4b9b8f\"\u003eded6618d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-application-auto-scaling:\u003c/strong\u003e  Adds support for ECS high-resolution predefined scaling metrics (ECSServiceAverageCPUUtilizationHighResolution, ECSServiceAverageMemoryUtilizationHighResolution) enabling 20-second metric periods for faster scaling (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/95b3513a224a678fb92dc623f149d24adb96ae7b\"\u003e95b3513a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cognito-identity-provider:\u003c/strong\u003e  In order to support the new TLS Self-Service feature, this change adds SecurityPolicyType to CustomDomainConfigType. During CreateUserPoolDomain and UpdateUserPoolDomain this is used to select a custom domain's TLS enforcement, and for DescribeUserPoolDomain it informs users about the current TLS. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e89377876aa392ea403636b6821cdb3df253648b\"\u003ee8937787\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-sagemaker:\u003c/strong\u003e  Adds support for automatic AMI patching on HyperPod clusters. Customers can configure patching strategies to automatically apply security patch with zero job termination. Customers can also specify an AMI version at instance group level and update cluster software to a certain AMI version. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/fd33a5e46ca314f064b9149900abe4e451661b5e\"\u003efd33a5e4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Amazon ECS services now support high resolution (20 second) CloudWatch metrics for CPUUtilization and MemoryUtilization. Use these metrics for faster service auto scaling. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93055ac93bffca3e2957b2d67cb24ecdc784457a\"\u003e93055ac9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-healthlake:\u003c/strong\u003e  Adding New Configurations to the FHIR Create Datastore. The new configurations include NLP Configuration, AnalyticsConfiguration, ProfileConfiguration (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/494fa59f48705e23ab79da259046966831183c71\"\u003e494fa59f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-gamelift:\u003c/strong\u003e  Amazon GameLift Servers has launched support for customizing Linux capabilities in container fleets. You can now specify additional Linux capabilities for containers in a container group definition, giving you finer control over the default Docker capabilities available to your containers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93cefd905d4fc0c649b1d7ed69f4c8f0d79d3371\"\u003e93cefd90\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eks:\u003c/strong\u003e  Adds support for configurable control plane egress routing in Amazon EKS, allowing you to route control plane egress traffic through your VPC and control how the control plane reaches resources in your network such as webhook servers and OIDC providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/693db62958c6818b4cb847887b8e36a66347c119\"\u003e693db629\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda:\u003c/strong\u003e  Converging and fixing existing documentation gaps in Lambda SDK (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6555a565348a308dad7a51c85457c2bcee87feb8\"\u003e6555a565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-synthetics:\u003c/strong\u003e  CloudWatch Synthetics adds support for multi-location canaries. Customers can now monitor their endpoints from multiple locations with centralized management from a primary location. The SDK includes new parameters for configuring multiple locations and tracking their state. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/f2c8b480812b5ba2d1e173a8a074df6d72654239\"\u003ef2c8b480\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch-logs:\u003c/strong\u003e  Added optional startFromHead parameter to FilterLogEvents enabling descending timestamp order (newest first) when set to false. Default true preserves existing ascending order. Reverse sorting requires a startTime on or after Jan 1, 2024. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/1be63ed942af46df978e55df4bec6fb6c9d16e60\"\u003e1be63ed9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-batch:\u003c/strong\u003e  Adds Support for ordered allocation strategies- BEST-FIT-PROGRESSIVE-ORDERED or SPOT-CAPACITY-OPTIMIZED-PRIORITIZED (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0e57e53b1e0914a03b5b7c7d346245a1e6b6da11\"\u003e0e57e53b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1072.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1071.0\u003c/h2\u003e\n\u003ch4\u003e3.1071.0(2026-06-17)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-partnercentral-selling:\u003c/strong\u003e  Cosell Resonate AND Prospecing API Launch with ARN correction (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7e8c98abe070924fbbd1ea2abc183f0715f80945\"\u003e7e8c98ab\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer-automation:\u003c/strong\u003e  This launch adds IfExists comparison operators to Compute Optimizer Automation rule criteria, so a rule can include recommended actions whose specified attribute isn't present. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ab2c616d167a0796fba91e44d1118a6a8baee60d\"\u003eab2c616d\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-device-farm/CHANGELOG.md\"\u003e@​aws-sdk/client-device-farm's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1072.0...v3.1073.0\"\u003e3.1073.0\u003c/a\u003e (2026-06-19)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-device-farm\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1071.0...v3.1072.0\"\u003e3.1072.0\u003c/a\u003e (2026-06-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-device-farm\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1070.0...v3.1071.0\"\u003e3.1071.0\u003c/a\u003e (2026-06-17)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-device-farm\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1069.0...v3.1070.0\"\u003e3.1070.0\u003c/a\u003e (2026-06-16)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-device-farm\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1068.0...v3.1069.0\"\u003e3.1069.0\u003c/a\u003e (2026-06-15)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-device-farm\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1067.0...v3.1068.0\"\u003e3.1068.0\u003c/a\u003e (2026-06-12)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-device-farm\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1066.0...v3.1067.0\"\u003e3.1067.0\u003c/a\u003e (2026-06-11)\u003c/h1\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ee71adc9663fc2ebaabae455981fd169fd6e97b2\"\u003e\u003ccode\u003eee71adc\u003c/code\u003e\u003c/a\u003e Publish v3.1073.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/501cd332619533ae96f154d7c226dc2f7bf8d615\"\u003e\u003ccode\u003e501cd33\u003c/code\u003e\u003c/a\u003e Publish v3.1072.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3ce820aa54c953459eb58abe4f06e28ba4ceb87d\"\u003e\u003ccode\u003e3ce820a\u003c/code\u003e\u003c/a\u003e Publish v3.1071.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4f2cfe1cfc420d0b5bfa226ae6619dd67de73ccc\"\u003e\u003ccode\u003e4f2cfe1\u003c/code\u003e\u003c/a\u003e Publish v3.1070.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7058d13814795c6ff06a960077269458520bf161\"\u003e\u003ccode\u003e7058d13\u003c/code\u003e\u003c/a\u003e Publish v3.1069.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/67981c5a65d6dd797a065df034a8d0fcdaa9b7bd\"\u003e\u003ccode\u003e67981c5\u003c/code\u003e\u003c/a\u003e chore(scripts): tuning the build graph (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-device-farm/issues/8095\"\u003e#8095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0632f6dc8842caaa916c5f43a5043342ff9ba6bb\"\u003e\u003ccode\u003e0632f6d\u003c/code\u003e\u003c/a\u003e Publish v3.1068.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0a3246f174335af55a6981b4891f0f4c10dfe4c4\"\u003e\u003ccode\u003e0a3246f\u003c/code\u003e\u003c/a\u003e Publish v3.1067.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4b11912aef8adc845f81b7e9922bd180c5cf1d90\"\u003e\u003ccode\u003e4b11912\u003c/code\u003e\u003c/a\u003e Publish v3.1066.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/62daf07c545b1fbac5753c554e2c8298ae6b820f\"\u003e\u003ccode\u003e62daf07\u003c/code\u003e\u003c/a\u003e Publish v3.1065.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1073.0/clients/client-device-farm\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@aws-sdk/client-s3` from 3.962.0 to 3.1073.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/client-s3's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1073.0\u003c/h2\u003e\n\u003ch4\u003e3.1073.0(2026-06-19)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-glue:\u003c/strong\u003e  Adds the SearchAssets operation for discovering assets in the AWS Glue Data Catalog using full-text search and filters. Minor naming refinements across the Glossary Terms and Attachment APIs for consistency. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ef204650ce46482b8b2bfeeb9c539244b59a848e\"\u003eef204650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-connect:\u003c/strong\u003e  This is the release for point based scoring system and the evaluation form validation project (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b19c162a2e22094c09d77d484ba0dfcfd3a5ecff\"\u003eb19c162a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent:\u003c/strong\u003e  Add support for metadata-only retrieval on GetFlow, GetFlowVersion, and GetPrompt APIs. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c9d5fb3378ba0d1c7ab7d3fe7bec0296491c6bbc\"\u003ec9d5fb33\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-appstream:\u003c/strong\u003e  Amazon WorkSpaces Agent Access now supports domain-joined fleets for enterprise identity integration, real-time agent observation with instant stop controls, and MCP tool forwarding for lower-latency, cost-effective desktop tool access. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d9c25f0b3f641fdc1999f0d4377140c0f3476ede\"\u003ed9c25f0b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-opensearch:\u003c/strong\u003e  This release introduces data source attachment APIs, enabling users to attach and detach Amazon OpenSearch Service domains and Amazon OpenSearch Serverless collections to an OpenSearch application. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6cce3d69dc550fb64245fa1eae1b4e74d6d23607\"\u003e6cce3d69\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1073.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1072.0\u003c/h2\u003e\n\u003ch4\u003e3.1072.0(2026-06-18)\u003c/h4\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ec2:\u003c/strong\u003e  Documentation updates clarifying CancelCapacityReservation cancellable states (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e3723ba73e2f2d307254d49ec73c5b3d91b8d892\"\u003ee3723ba7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer:\u003c/strong\u003e  This release surfaces two new metrics Volume IOPS Exceeded and Volume Throughput Exceeded into EBS volume rightsizing recommendations. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ded6618d5249ab413bd90b26d4cea91d5f4b9b8f\"\u003eded6618d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-application-auto-scaling:\u003c/strong\u003e  Adds support for ECS high-resolution predefined scaling metrics (ECSServiceAverageCPUUtilizationHighResolution, ECSServiceAverageMemoryUtilizationHighResolution) enabling 20-second metric periods for faster scaling (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/95b3513a224a678fb92dc623f149d24adb96ae7b\"\u003e95b3513a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cognito-identity-provider:\u003c/strong\u003e  In order to support the new TLS Self-Service feature, this change adds SecurityPolicyType to CustomDomainConfigType. During CreateUserPoolDomain and UpdateUserPoolDomain this is used to select a custom domain's TLS enforcement, and for DescribeUserPoolDomain it informs users about the current TLS. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e89377876aa392ea403636b6821cdb3df253648b\"\u003ee8937787\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-sagemaker:\u003c/strong\u003e  Adds support for automatic AMI patching on HyperPod clusters. Customers can configure patching strategies to automatically apply security patch with zero job termination. Customers can also specify an AMI version at instance group level and update cluster software to a certain AMI version. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/fd33a5e46ca314f064b9149900abe4e451661b5e\"\u003efd33a5e4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Amazon ECS services now support high resolution (20 second) CloudWatch metrics for CPUUtilization and MemoryUtilization. Use these metrics for faster service auto scaling. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93055ac93bffca3e2957b2d67cb24ecdc784457a\"\u003e93055ac9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-healthlake:\u003c/strong\u003e  Adding New Configurations to the FHIR Create Datastore. The new configurations include NLP Configuration, AnalyticsConfiguration, ProfileConfiguration (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/494fa59f48705e23ab79da259046966831183c71\"\u003e494fa59f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-gamelift:\u003c/strong\u003e  Amazon GameLift Servers has launched support for customizing Linux capabilities in container fleets. You can now specify additional Linux capabilities for containers in a container group definition, giving you finer control over the default Docker capabilities available to your containers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93cefd905d4fc0c649b1d7ed69f4c8f0d79d3371\"\u003e93cefd90\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eks:\u003c/strong\u003e  Adds support for configurable control plane egress routing in Amazon EKS, allowing you to route control plane egress traffic through your VPC and control how the control plane reaches resources in your network such as webhook servers and OIDC providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/693db62958c6818b4cb847887b8e36a66347c119\"\u003e693db629\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda:\u003c/strong\u003e  Converging and fixing existing documentation gaps in Lambda SDK (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6555a565348a308dad7a51c85457c2bcee87feb8\"\u003e6555a565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-synthetics:\u003c/strong\u003e  CloudWatch Synthetics adds support for multi-location canaries. Customers can now monitor their endpoints from multiple locations with centralized management from a primary location. The SDK includes new parameters for configuring multiple locations and tracking their state. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/f2c8b480812b5ba2d1e173a8a074df6d72654239\"\u003ef2c8b480\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch-logs:\u003c/strong\u003e  Added optional startFromHead parameter to FilterLogEvents enabling descending timestamp order (newest first) when set to false. Default true preserves existing ascending order. Reverse sorting requires a startTime on or after Jan 1, 2024. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/1be63ed942af46df978e55df4bec6fb6c9d16e60\"\u003e1be63ed9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-batch:\u003c/strong\u003e  Adds Support for ordered allocation strategies- BEST-FIT-PROGRESSIVE-ORDERED or SPOT-CAPACITY-OPTIMIZED-PRIORITIZED (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0e57e53b1e0914a03b5b7c7d346245a1e6b6da11\"\u003e0e57e53b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1072.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1071.0\u003c/h2\u003e\n\u003ch4\u003e3.1071.0(2026-06-17)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-partnercentral-selling:\u003c/strong\u003e  Cosell Resonate AND Prospecing API Launch with ARN correction (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7e8c98abe070924fbbd1ea2abc183f0715f80945\"\u003e7e8c98ab\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer-automation:\u003c/strong\u003e  This launch adds IfExists comparison operators to Compute Optimizer Automation rule criteria, so a rule can include recommended actions whose specified attribute isn't present. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ab2c616d167a0796fba91e44d1118a6a8baee60d\"\u003eab2c616d\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-s3/CHANGELOG.md\"\u003e@​aws-sdk/client-s3's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1072.0...v3.1073.0\"\u003e3.1073.0\u003c/a\u003e (2026-06-19)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1071.0...v3.1072.0\"\u003e3.1072.0\u003c/a\u003e (2026-06-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1070.0...v3.1071.0\"\u003e3.1071.0\u003c/a\u003e (2026-06-17)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1069.0...v3.1070.0\"\u003e3.1070.0\u003c/a\u003e (2026-06-16)\u003c/h1\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-s3:\u003c/strong\u003e Added support for annotations. You can now attach up to 1000 annotations (up to 1 MB each) directly to objects and create, retrieve, list, and delete them using new annotation APIs. Also added support for configuring an annotation table in S3 Metadata. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c555874690846b81904a2c0c1e96130bd03bbeaa\"\u003ec555874\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1068.0...v3.1069.0\"\u003e3.1069.0\u003c/a\u003e (2026-06-15)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1067.0...v3.1068.0\"\u003e3.1068.0\u003c/a\u003e (2026-06-12)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ee71adc9663fc2ebaabae455981fd169fd6e97b2\"\u003e\u003ccode\u003eee71adc\u003c/code\u003e\u003c/a\u003e Publish v3.1073.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/501cd332619533ae96f154d7c226dc2f7bf8d615\"\u003e\u003ccode\u003e501cd33\u003c/code\u003e\u003c/a\u003e Publish v3.1072.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3ce820aa54c953459eb58abe4f06e28ba4ceb87d\"\u003e\u003ccode\u003e3ce820a\u003c/code\u003e\u003c/a\u003e Publish v3.1071.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4f2cfe1cfc420d0b5bfa226ae6619dd67de73ccc\"\u003e\u003ccode\u003e4f2cfe1\u003c/code\u003e\u003c/a\u003e Publish v3.1070.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c555874690846b81904a2c0c1e96130bd03bbeaa\"\u003e\u003ccode\u003ec555874\u003c/code\u003e\u003c/a\u003e feat(client-s3): Added support for annotations. You can now attach up to 1000...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7058d13814795c6ff06a960077269458520bf161\"\u003e\u003ccode\u003e7058d13\u003c/code\u003e\u003c/a\u003e Publish v3.1069.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/67981c5a65d6dd797a065df034a8d0fcdaa9b7bd\"\u003e\u003ccode\u003e67981c5\u003c/code\u003e\u003c/a\u003e chore(scripts): tuning the build graph (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3/issues/8095\"\u003e#8095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0632f6dc8842caaa916c5f43a5043342ff9ba6bb\"\u003e\u003ccode\u003e0632f6d\u003c/code\u003e\u003c/a\u003e Publish v3.1068.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0a3246f174335af55a6981b4891f0f4c10dfe4c4\"\u003e\u003ccode\u003e0a3246f\u003c/code\u003e\u003c/a\u003e Publish v3.1067.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4b11912aef8adc845f81b7e9922bd180c5cf1d90\"\u003e\u003ccode\u003e4b11912\u003c/code\u003e\u003c/a\u003e Publish v3.1066.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1073.0/clients/client-s3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@aws-sdk/lib-storage` from 3.962.0 to 3.1073.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/lib-storage's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1073.0\u003c/h2\u003e\n\u003ch4\u003e3.1073.0(2026-06-19)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-glue:\u003c/strong\u003e  Adds the SearchAssets operation for discovering assets in the AWS Glue Data Catalog using full-text search and filters. Minor naming refinements across the Glossary Terms and Attachment APIs for consistency. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ef204650ce46482b8b2bfeeb9c539244b59a848e\"\u003eef204650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-connect:\u003c/strong\u003e  This is the release for point based scoring system and the evaluation form validation project (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b19c162a2e22094c09d77d484ba0dfcfd3a5ecff\"\u003eb19c162a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent:\u003c/strong\u003e  Add support for metadata-only retrieval on GetFlow, GetFlowVersion, and GetPrompt APIs. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c9d5fb3378ba0d1c7ab7d3fe7bec0296491c6bbc\"\u003ec9d5fb33\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-appstream:\u003c/strong\u003e  Amazon WorkSpaces Agent Access now supports domain-joined fleets for enterprise identity integration, real-time agent observation with instant stop controls, and MCP tool forwarding for lower-latency, cost-effective desktop tool access. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/d9c25f0b3f641fdc1999f0d4377140c0f3476ede\"\u003ed9c25f0b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-opensearch:\u003c/strong\u003e  This release introduces data source attachment APIs, enabling users to attach and detach Amazon OpenSearch Service domains and Amazon OpenSearch Serverless collections to an OpenSearch application. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6cce3d69dc550fb64245fa1eae1b4e74d6d23607\"\u003e6cce3d69\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1073.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1072.0\u003c/h2\u003e\n\u003ch4\u003e3.1072.0(2026-06-18)\u003c/h4\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ec2:\u003c/strong\u003e  Documentation updates clarifying CancelCapacityReservation cancellable states (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e3723ba73e2f2d307254d49ec73c5b3d91b8d892\"\u003ee3723ba7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer:\u003c/strong\u003e  This release surfaces two new metrics Volume IOPS Exceeded and Volume Throughput Exceeded into EBS volume rightsizing recommendations. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ded6618d5249ab413bd90b26d4cea91d5f4b9b8f\"\u003eded6618d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-application-auto-scaling:\u003c/strong\u003e  Adds support for ECS high-resolution predefined scaling metrics (ECSServiceAverageCPUUtilizationHighResolution, ECSServiceAverageMemoryUtilizationHighResolution) enabling 20-second metric periods for faster scaling (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/95b3513a224a678fb92dc623f149d24adb96ae7b\"\u003e95b3513a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cognito-identity-provider:\u003c/strong\u003e  In order to support the new TLS Self-Service feature, this change adds SecurityPolicyType to CustomDomainConfigType. During CreateUserPoolDomain and UpdateUserPoolDomain this is used to select a custom domain's TLS enforcement, and for DescribeUserPoolDomain it informs users about the current TLS. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e89377876aa392ea403636b6821cdb3df253648b\"\u003ee8937787\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-sagemaker:\u003c/strong\u003e  Adds support for automatic AMI patching on HyperPod clusters. Customers can configure patching strategies to automatically apply security patch with zero job termination. Customers can also specify an AMI version at instance group level and update cluster software to a certain AMI version. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/fd33a5e46ca314f064b9149900abe4e451661b5e\"\u003efd33a5e4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Amazon ECS services now support high resolution (20 second) CloudWatch metrics for CPUUtilization and MemoryUtilization. Use these metrics for faster service auto scaling. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93055ac93bffca3e2957b2d67cb24ecdc784457a\"\u003e93055ac9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-healthlake:\u003c/strong\u003e  Adding New Configurations to the FHIR Create Datastore. The new configurations include NLP Configuration, AnalyticsConfiguration, ProfileConfiguration (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/494fa59f48705e23ab79da259046966831183c71\"\u003e494fa59f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-gamelift:\u003c/strong\u003e  Amazon GameLift Servers has launched support for customizing Linux capabilities in container fleets. You can now specify additional Linux capabilities for containers in a container group definition, giving you finer control over the default Docker capabilities available to your containers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93cefd905d4fc0c649b1d7ed69f4c8f0d79d3371\"\u003e93cefd90\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eks:\u003c/strong\u003e  Adds support for configurable control plane egress routing in Amazon EKS, allowing you to route control plane egress traffic through your VPC and control how the control plane reaches resources in your network such as webhook servers and OIDC providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/693db62958c6818b4cb847887b8e36a66347c119\"\u003e693db629\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda:\u003c/strong\u003e  Converging and fixing existing documentation gaps in Lambda SDK (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6555a565348a308dad7a51c85457c2bcee87feb8\"\u003e6555a565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-synthetics:\u003c/strong\u003e  CloudWatch Synthetics adds support for multi-location canaries. Customers can now monitor their endpoints from multiple locations with centralized management from a primary location. The SDK includes new parameters for configuring multiple locations and tracking their state. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/f2c8b480812b5ba2d1e173a8a074df6d72654239\"\u003ef2c8b480\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch-logs:\u003c/strong\u003e  Added optional startFromHead parameter to FilterLogEvents enabling descending timestamp order (newest first) when set to false. Default true preserves existing ascending order. Reverse sorting requires a startTime on or after Jan 1, 2024. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/1be63ed942af46df978e55df4bec6fb6c9d16e60\"\u003e1be63ed9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-batch:\u003c/strong\u003e  Adds Support for ordered allocation strategies- BEST-FIT-PROGRESSIVE-ORDERED or SPOT-CAPACITY-OPTIMIZED-PRIORITIZED (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0e57e53b1e0914a03b5b7c7d346245a1e6b6da11\"\u003e0e57e53b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1072.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1071.0\u003c/h2\u003e\n\u003ch4\u003e3.1071.0(2026-06-17)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-partnercentral-selling:\u003c/strong\u003e  Cosell Resonate AND Prospecing API Launch with ARN correction (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7e8c98abe070924fbbd1ea2abc183f0715f80945\"\u003e7e8c98ab\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer-automation:\u003c/strong\u003e  This launch adds IfExists comparison operators to Compute Optimizer Automation rule criteria, so a rule can include recommended actions whose specified attribute isn't present. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ab2c616d167a0796fba91e44d1118a6a8baee60d\"\u003eab2c616d\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/lib/lib-storage/CHANGELOG.md\"\u003e@​aws-sdk/lib-storage's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1072.0...v3.1073.0\"\u003e3.1073.0\u003c/a\u003e (2026-06-19)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/lib-storage\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1071.0...v3.1072.0\"\u003e3.1072.0\u003c/a\u003e (2026-06-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/lib-storage\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1070.0...v3.1071.0\"\u003e3.1071.0\u003c/a\u003e (2026-06-17)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/lib-storage\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1069.0...v3.1070.0\"\u003e3.1070.0\u003c/a\u003e (2026-06-16)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/lib-storage\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1068.0...v3.1069.0\"\u003e3.1069.0\u003c/a\u003e (2026-06-15)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/lib-storage\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1067.0...v3.1068.0\"\u003e3.1068.0\u003c/a\u003e (2026-06-12)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/lib-storage\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1066.0...v3.1067.0\"\u003e3.1067.0\u003c/a\u003e (2026-06-11)\u003c/h1\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ee71adc9663fc2ebaabae455981fd169fd6e97b2\"\u003e\u003ccode\u003eee71adc\u003c/code\u003e\u003c/a\u003e Publish v3.1073.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/501cd332619533ae96f154d7c226dc2f7bf8d615\"\u003e\u003ccode\u003e501cd33\u003c/code\u003e\u003c/a\u003e Publish v3.1072.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3ce820aa54c953459eb58abe4f06e28ba4ceb87d\"\u003e\u003ccode\u003e3ce820a\u003c/code\u003e\u003c/a\u003e Publish v3.1071.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4f2cfe1cfc420d0b5bfa226ae6619dd67de73ccc\"\u003e\u003ccode\u003e4f2cfe1\u003c/code\u003e\u003c/a\u003e Publish v3.1070.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7058d13814795c6ff06a960077269458520bf161\"\u003e\u003ccode\u003e7058d13\u003c/code\u003e\u003c/a\u003e Publish v3.1069.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/67981c5a65d6dd797a065df034a8d0fcdaa9b7bd\"\u003e\u003ccode\u003e67981c5\u003c/code\u003e\u003c/a\u003e chore(scripts): tuning the build graph (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/lib/lib-storage/issues/8095\"\u003e#8095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0632f6dc8842caaa916c5f43a5043342ff9ba6bb\"\u003e\u003ccode\u003e0632f6d\u003c/code\u003e\u003c/a\u003e Publish v3.1068.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0a3246f174335af55a6981b4891f0f4c10dfe4c4\"\u003e\u003ccode\u003e0a3246f\u003c/code\u003e\u003c/a\u003e Publish v3.1067.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4b11912aef8adc845f81b7e9922bd180c5cf1d90\"\u003e\u003ccode\u003e4b11912\u003c/code\u003e\u003c/a\u003e Publish v3.1066.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/62daf07c545b1fbac5753c554e2c8298ae6b820f\"\u003e\u003ccode\u003e62daf07\u003c/code\u003e\u003c/a\u003e Publish v3.1065.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1073.0/lib/lib-storage\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@serenity-js/core` from 3.37.1 to 3.44.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/serenity-js/serenity-js/releases\"\u003e@​serenity-js/core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.44.0\u003c/h2\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.4...v3.44.0\"\u003e3.44.0\u003c/a\u003e (2026-06-13)\u003c/h1\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecucumber:\u003c/strong\u003e handle Cucumber 13 behavioral changes (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/f53449309f1c246334c87ca0133852d052fbb3d5\"\u003ef534493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecucumber:\u003c/strong\u003e reconstruct ambiguous step error message from support code library (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/b0bd8ce65bd556035c459ea7c5c606125c957bbd\"\u003eb0bd8ce\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update webdriverio dependencies to ^9.28.0 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/966ddfc9f33edc99bb42688215ef01a1cb52014b\"\u003e966ddfc\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint:\u003c/strong\u003e add skip_hook.ts to unicorn/filename-case ignore list (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/d3ca1713fc0b367248e68a2c59feb23546657cf8\"\u003ed3ca171\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecucumber:\u003c/strong\u003e add support for Cucumber 13 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/830236632eb05e0228e89658ee1f4e7e20fb5863\"\u003e8302366\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev3.43.4\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.3...v3.43.4\"\u003e3.43.4\u003c/a\u003e (2026-06-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency proxy to v4.1.0 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/d35ab151a4ffc52da772ed613cd40c96b5c94fb3\"\u003ed35ab15\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency semver to v7.8.4 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/7ae8f25cd458ab74d4036d643ce2f6120b55367e\"\u003e7ae8f25\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update jasmine dependencies to v6.3.0 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/f129f6b4025037a7b56882f5d65649292d34964e\"\u003ef129f6b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eeslint:\u003c/strong\u003e ignore step_definitions directories in unicorn/filename-case (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/324e4c7fb75a6bc220d4b79d7fdde477ffab24aa\"\u003e324e4c7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev3.43.3\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.2...v3.43.3\"\u003e3.43.3\u003c/a\u003e (2026-06-06)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecore:\u003c/strong\u003e drop Node 20 support, require Node \u0026gt;=22.12 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/08cbd88ab545402b7c439178fd83152183f741e8\"\u003e08cbd88\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency \u003ccode\u003e@​cucumber/cucumber\u003c/code\u003e to v12.9.0 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/fd86a42816097896a4c78b2e381d44e9c368fd48\"\u003efd86a42\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency morgan to v1.11.0 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/36e05b62cc375ca6b8e3bb90c0f49ed1b32eb374\"\u003e36e05b6\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency semver to v7.8.2 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/d29555a17741ef945dc4938651091b291a1dc8f1\"\u003ed29555a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update react monorepo (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/b8306c4e781b518d37a1bce9df8053e3bf6810bc\"\u003eb8306c4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update rest dependencies (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/5fbd5505fb11a2cc7536b8933ddc0d70efcf0a64\"\u003e5fbd550\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update webdriverio dependencies to ^9.27.2 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/96284015f6d5021b48347091ec3dcd867c030343\"\u003e9628401\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ewebdriverio:\u003c/strong\u003e correced reporter name (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/ab56667e889f799118ea7f221b627f4acc3bd211\"\u003eab56667\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev3.43.2\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.1...v3.43.2\"\u003e3.43.2\u003c/a\u003e (2026-05-13)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update playwright dependencies to v1.60.0 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/e0fab633109ebe5abcd978ed9db0b2c21480f912\"\u003ee0fab63\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update webdriverio 8 dependencies (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/c55ebfd824fb9592c70fcb2fcbd366a86f0499ed\"\u003ec55ebfd\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/serenity-js/serenity-js/blob/main/packages/core/CHANGELOG.md\"\u003e@​serenity-js/core's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.4...v3.44.0\"\u003e3.44.0\u003c/a\u003e (2026-06-13)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​serenity-js/core\u003c/code\u003e\u003c/p\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.3...v3.43.4\"\u003e3.43.4\u003c/a\u003e (2026-06-10)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency semver to v7.8.4 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/7ae8f25cd458ab74d4036d643ce2f6120b55367e\"\u003e7ae8f25\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.2...v3.43.3\"\u003e3.43.3\u003c/a\u003e (2026-06-06)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecore:\u003c/strong\u003e drop Node 20 support, require Node \u0026gt;=22.12 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/08cbd88ab545402b7c439178fd83152183f741e8\"\u003e08cbd88\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edeps:\u003c/strong\u003e update dependency semver to v7.8.2 (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/d29555a17741ef945dc4938651091b291a1dc8f1\"\u003ed29555a\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.1...v3.43.2\"\u003e3.43.2\u003c/a\u003e (2026-05-13)\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​serenity-js/core\u003c/code\u003e\u003c/p\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/compare/v3.43.0...v3.43.1\"\u003e3.43.1\u003c/a\u003e (2026-05-11)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecore:\u003c/strong\u003e updated API docs (\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/38b86f4190b5d3c6a64fd0042c87ac187f847f89\"\u003e38b86f4\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/305069c9630749755dda748ee0463371657adf1a\"\u003e\u003ccode\u003e305069c\u003c/code\u003e\u003c/a\u003e chore(release): v3.44.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/c5426b8313c0123bf7020e9c0e4f3205a37ddbfd\"\u003e\u003ccode\u003ec5426b8\u003c/code\u003e\u003c/a\u003e chore(deps): update dependency memfs to v4.57.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/338ec74a0e938591e00954c6a296c97149c2b5a4\"\u003e\u003ccode\u003e338ec74\u003c/code\u003e\u003c/a\u003e chore(release): v3.43.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/7ae8f25cd458ab74d4036d643ce2f6120b55367e\"\u003e\u003ccode\u003e7ae8f25\u003c/code\u003e\u003c/a\u003e fix(deps): update dependency semver to v7.8.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/e7fd7793656c2ef48ceae7b81587a8a6c0252696\"\u003e\u003ccode\u003ee7fd779\u003c/code\u003e\u003c/a\u003e chore(release): v3.43.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/69d26b311b9baba7c085017177c7c1e37084f146\"\u003e\u003ccode\u003e69d26b3\u003c/code\u003e\u003c/a\u003e Merge branch 'renovate/semver-7.x'\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/b79e2639c79ff12578b09a992f6f86fd22450305\"\u003e\u003ccode\u003eb79e263\u003c/code\u003e\u003c/a\u003e Merge branch 'renovate/memfs-4.x'\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/bf4fae4575c81f0f4da9d320a7ee11e55400ba44\"\u003e\u003ccode\u003ebf4fae4\u003c/code\u003e\u003c/a\u003e Merge branch 'renovate/mocha-11.x'\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/08cbd88ab545402b7c439178fd83152183f741e8\"\u003e\u003ccode\u003e08cbd88\u003c/code\u003e\u003c/a\u003e fix(core): drop Node 20 support, require Node \u0026gt;=22.12\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/serenity-js/serenity-js/commit/d29555a17741ef945dc4938651091b291a1dc8f1\"\u003e\u003ccode\u003ed29555a\u003c/code\u003e\u003c/a\u003e fix(deps): update dependency semver to v7.8.2\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/serenity-js/serenity-js/commits/v3.44.0/packages/core\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@stencil/core` from 4.41.0 to 4.43.5\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/stenciljs/core/releases\"\u003e@​stencil/core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e🍐 4.43.5 (2026-05-28)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e resolve \u003ca href=\"https://github.com/Prop\"\u003e\u003ccode\u003e@​Prop\u003c/code\u003e\u003c/a\u003e variable defaults to literal values in docs output (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6728\"\u003e#6728\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/6cdcec725c07ccda5c256e43e89d8aeef2e9c34a\"\u003e6cdcec7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e silence INVALID_ANNOTATION and SOURCEMAP_BROKEN warnings from workerPlugin (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6718\"\u003e#6718\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/ef79a49cabda21e040d09b102512a18e97bd949b\"\u003eef79a49\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etypes:\u003c/strong\u003e add referrerPolicy to ImgHTMLAttributes (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6694\"\u003e#6694\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/3ed82f1abbfa46edf4e26e631cd568f4fa92a1d7\"\u003e3ed82f1\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6692\"\u003e#6692\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/civing\"\u003e\u003ccode\u003e@​civing\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/stenciljs/core/pull/6694\"\u003estenciljs/core#6694\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Scan0815\"\u003e\u003ccode\u003e@​Scan0815\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/stenciljs/core/pull/6718\"\u003estenciljs/core#6718\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/stenciljs/core/compare/v4.43.4...v4.43.5\"\u003ehttps://github.com/stenciljs/core/compare/v4.43.4...v4.43.5\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e🏝 4.43.4 (2026-04-13)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ecache host refs in public render() method (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6674\"\u003e#6674\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/7dd8ea7a7d93aef6386705438b0b8160d601bbd8\"\u003e7dd8ea7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e set log file path when writeLog is enabled (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6655\"\u003e#6655\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/3d95083d919b4ba64eb11687a9f665c460fd7a72\"\u003e3d95083\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6632\"\u003e#6632\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eruntime:\u003c/strong\u003e normalize legacy watcher metadata for backward compatibility (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6676\"\u003e#6676\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/db26aba5153a7c2276872212edf0b1666f92a0e9\"\u003edb26aba\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eruntime:\u003c/strong\u003e skip setter when removing reflected bool attr (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6673\"\u003e#6673\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/6c8a3b639145cccf1490433b9629b303502b2a6f\"\u003e6c8a3b6\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6672\"\u003e#6672\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eutils:\u003c/strong\u003e handle Unicode characters in serializeProperty (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6654\"\u003e#6654\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/000ddb98da06d37acf32d61509d6935f403dce24\"\u003e000ddb9\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6643\"\u003e#6643\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cyphercodes\"\u003e\u003ccode\u003e@​cyphercodes\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/stenciljs/core/pull/6654\"\u003estenciljs/core#6654\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/AlyssonT\"\u003e\u003ccode\u003e@​AlyssonT\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/stenciljs/core/pull/6673\"\u003estenciljs/core#6673\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/stenciljs/core/compare/v4.43.3...v4.43.4\"\u003ehttps://github.com/stenciljs/core/compare/v4.43.3...v4.43.4\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e🐕 4.43.3 (2026-03-19)\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(testing): deprecate all integrated testing options by \u003ca href=\"https://github.com/johnjenkins\"\u003e\u003ccode\u003e@​johnjenkins\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/stenciljs/core/pull/6642\"\u003estenciljs/core#6642\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(mock-doc): updated node.prepend to work even if there are no existing children  by \u003ca href=\"https://github.com/kyleMessnerLillyContractor\"\u003e\u003ccode\u003e@​kyleMessnerLillyContractor\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/stenciljs/core/pull/6640\"\u003estenciljs/core#6640\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/kyleMessnerLillyContractor\"\u003e\u003ccode\u003e@​kyleMessnerLillyContractor\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/stenciljs/core/pull/6640\"\u003estenciljs/core#6640\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/stenciljs/core/compare/v4.43.2...v4.43.3\"\u003ehttps://github.com/stenciljs/core/compare/v4.43.2...v4.43.3\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e🌙 4.43.2 (2026-02-27)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e mixin jsx processing (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6615\"\u003e#6615\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/ccda746e50ae90b10ad11b8d56182f59537ff598\"\u003eccda746\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e proper discovery and processing of external mixins / classes (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6620\"\u003e#6620\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/0ee951eca3b21facfd48afd90bd16ed5ef7877b0\"\u003e0ee951e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003edist-custom-elements:\u003c/strong\u003e stop \u003ccode\u003erender\u003c/code\u003e function being stripped from imports (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6623\"\u003e#6623\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/cd33ccb270761be9a3e2f9f4668231ff53bb42f7\"\u003ecd33ccb\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003emock-doc:\u003c/strong\u003e add missing \u003ccode\u003epart\u003c/code\u003e setter to MockElement (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6612\"\u003e#6612\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/abfdd57e04d0422a12ad189f2066090315265e02\"\u003eabfdd57\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eruntime:\u003c/strong\u003e init prop reactivity when ele.prop === instance.prop (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6614\"\u003e#6614\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/ad6a344cbe7145f8e810c322c608ed422d17a8b4\"\u003ead6a344\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eruntime:\u003c/strong\u003e mixin get / set \u003ccode\u003e@Prop\u003c/code\u003e infinite loop (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6618\"\u003e#6618\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/11201b5565b6122e6b9ad38014b21004d27904c1\"\u003e11201b5\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etypes:\u003c/strong\u003e provide warnings for ts 4094; anon classes may not be private or protected (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6613\"\u003e#6613\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/3fbc441849f82d6b2b88c3c79883f3a2a704d0a0\"\u003e3fbc441\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etypes:\u003c/strong\u003e raise typescript errors even without \u003ccode\u003ecomponents.d.ts\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6616\"\u003e#6616\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/827d0d6a61a90f288310070deae12c2a50e149a3\"\u003e827d0d6\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/stenciljs/core/blob/main/CHANGELOG.md\"\u003e@​stencil/core's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e🍐 \u003ca href=\"https://github.com/stenciljs/core/compare/v4.43.4...v4.43.5\"\u003e4.43.5\u003c/a\u003e (2026-05-28)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e resolve \u003ca href=\"https://github.com/Prop\"\u003e\u003ccode\u003e@​Prop\u003c/code\u003e\u003c/a\u003e variable defaults to literal values in docs output (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6728\"\u003e#6728\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/6cdcec725c07ccda5c256e43e89d8aeef2e9c34a\"\u003e6cdcec7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e silence INVALID_ANNOTATION and SOURCEMAP_BROKEN warnings from workerPlugin (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6718\"\u003e#6718\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/ef79a49cabda21e040d09b102512a18e97bd949b\"\u003eef79a49\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etypes:\u003c/strong\u003e add referrerPolicy to ImgHTMLAttributes (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6694\"\u003e#6694\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/3ed82f1abbfa46edf4e26e631cd568f4fa92a1d7\"\u003e3ed82f1\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6692\"\u003e#6692\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🏝 \u003ca href=\"https://github.com/stenciljs/core/compare/v4.43.3...v4.43.4\"\u003e4.43.4\u003c/a\u003e (2026-04-13)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ecache host refs in public render() method (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6674\"\u003e#6674\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/7dd8ea7a7d93aef6386705438b0b8160d601bbd8\"\u003e7dd8ea7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ecompiler:\u003c/strong\u003e set log file path when writeLog is enabled (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6655\"\u003e#6655\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/3d95083d919b4ba64eb11687a9f665c460fd7a72\"\u003e3d95083\u003c/a\u003e), closes \u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6632\"\u003e#6632\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eruntime:\u003c/strong\u003e normalize legacy watcher metadata for backward compatibility (\u003ca href=\"https://redirect.github.com/stenciljs/core/issues/6676\"\u003e#6676\u003c/a\u003e) (\u003ca href=\"https://github.com/stenciljs/core/commit/db26aba5153a7c2276872212edf0b1666f92a0e9\"\u003edb26aba\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eruntime:\u003c/strong\u003e skip setter when removing reflected bool attr (\u003ca href=\"https://redirect.github.com/stenci...\n\n_Description has been truncated_","html_url":"https://github.com/webdriverio/webdriverio/pull/15339","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/webdriverio%2Fwebdriverio/issues/15339","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/15339/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-06-17T14:12:26.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4684076238","node_id":"PR_kwDOQ54IGs7ng8bQ","number":8,"state":"closed","title":"build(deps): bump morgan from 1.10.1 to 1.11.0","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-06-18T20:53:37.000Z","author_association":null,"state_reason":null,"created_at":"2026-06-17T14:12:26.000Z","updated_at":"2026-06-18T20:53:39.000Z","time_to_close":110471,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":null,"ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n","html_url":"https://github.com/jaimemartinez/wordjs/pull/8","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/jaimemartinez%2Fwordjs/issues/8","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/8/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-06-16T06:08:58.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4671546796","node_id":"PR_kwDOQR8Hk87m3f-P","number":118,"state":"closed","title":"chore(deps)(deps): bump the backend-minor-patch group across 1 directory with 40 updates","user":"dependabot[bot]","labels":[],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-06-20T00:25:50.000Z","author_association":null,"state_reason":null,"created_at":"2026-06-16T06:08:58.000Z","updated_at":"2026-06-20T00:25:52.000Z","time_to_close":325012,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)(deps): bump","group_name":"backend-minor-patch","update_count":40,"packages":[{"name":"@ai-sdk/langchain","old_version":"2.0.174","new_version":"2.0.216","repository_url":"https://github.com/vercel/ai"},{"name":"@ai-sdk/openai","old_version":"3.0.53","new_version":"3.0.73","repository_url":"https://github.com/vercel/ai"},{"name":"@ai-sdk/react","old_version":"3.0.170","new_version":"3.0.210","repository_url":"https://github.com/vercel/ai"},{"name":"@anthropic-ai/sdk","old_version":"0.92.0","new_version":"0.105.0","repository_url":"https://github.com/anthropics/anthropic-sdk-typescript"},{"name":"@aws-sdk/client-s3","old_version":"3.1050.0","new_version":"3.1072.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@aws-sdk/s3-request-presigner","old_version":"3.1050.0","new_version":"3.1072.0","repository_url":"https://github.com/aws/aws-sdk-js-v3"},{"name":"@elevenlabs/elevenlabs-js","old_version":"2.49.1","new_version":"2.53.1","repository_url":"https://github.com/elevenlabs/elevenlabs-js"},{"name":"@fal-ai/client","old_version":"1.7.0","new_version":"1.10.1","repository_url":"https://github.com/fal-ai/fal-js"},{"name":"@langchain/langgraph","old_version":"1.2.9","new_version":"1.4.4","repository_url":"https://github.com/langchain-ai/langgraphjs"},{"name":"@langchain/openai","old_version":"1.4.4","new_version":"1.5.1","repository_url":"https://github.com/langchain-ai/langchainjs"},{"name":"@langfuse/langchain","old_version":"5.3.0","new_version":"5.5.3","repository_url":"https://github.com/langfuse/langfuse-js"},{"name":"@opentelemetry/auto-instrumentations-node","old_version":"0.76.0","new_version":"0.77.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js-contrib"},{"name":"@opentelemetry/exporter-trace-otlp-http","old_version":"0.218.0","new_version":"0.219.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"@opentelemetry/resources","old_version":"2.7.1","new_version":"2.8.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"@opentelemetry/sdk-node","old_version":"0.218.0","new_version":"0.219.0","repository_url":"https://github.com/open-telemetry/opentelemetry-js"},{"name":"@sentry/node","old_version":"10.51.0","new_version":"10.58.0","repository_url":"https://github.com/getsentry/sentry-javascript"},{"name":"@sentry/profiling-node","old_version":"10.53.1","new_version":"10.58.0","repository_url":"https://github.com/getsentry/sentry-javascript"},{"name":"ai","old_version":"6.0.168","new_version":"6.0.208","repository_url":"https://github.com/vercel/ai"},{"name":"axios","old_version":"1.16.1","new_version":"1.18.0","repository_url":"https://github.com/axios/axios"},{"name":"bcryptjs","old_version":"3.0.2","new_version":"3.0.3","repository_url":"https://github.com/dcodeIO/bcrypt.js"},{"name":"bullmq","old_version":"5.76.10","new_version":"5.79.0","repository_url":"https://github.com/taskforcesh/bullmq"},{"name":"cors","old_version":"2.8.5","new_version":"2.8.6","repository_url":"https://github.com/expressjs/cors"},{"name":"docx","old_version":"9.5.1","new_version":"9.7.1","repository_url":"https://github.com/dolanmiu/docx"},{"name":"docxtemplater","old_version":"3.67.1","new_version":"3.69.0","repository_url":"https://github.com/open-xml-templating/docxtemplater"},{"name":"express-session","old_version":"1.18.2","new_version":"1.19.0","repository_url":"https://github.com/expressjs/session"},{"name":"express-validator","old_version":"7.3.0","new_version":"7.3.2","repository_url":"https://github.com/express-validator/express-validator"},{"name":"fast-xml-parser","old_version":"5.7.3","new_version":"5.9.2","repository_url":"https://github.com/NaturalIntelligence/fast-xml-parser"},{"name":"google-auth-library","old_version":"10.5.0","new_version":"10.7.0","repository_url":"https://github.com/googleapis/google-cloud-node-core"},{"name":"ioredis","old_version":"5.10.1","new_version":"5.11.1","repository_url":"https://github.com/luin/ioredis"},{"name":"jsonwebtoken","old_version":"9.0.2","new_version":"9.0.3","repository_url":"https://github.com/auth0/node-jsonwebtoken"},{"name":"langchain","old_version":"1.3.4","new_version":"1.5.0","repository_url":"https://github.com/langchain-ai/langchainjs"},{"name":"langsmith","old_version":"0.7.3","new_version":"0.7.10","repository_url":"https://github.com/langchain-ai/langsmith-sdk"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"multer","old_version":"2.1.1","new_version":"2.2.0","repository_url":"https://github.com/expressjs/multer"},{"name":"pdfkit","old_version":"0.17.2","new_version":"0.19.1","repository_url":"https://github.com/foliojs/pdfkit"},{"name":"playwright","old_version":"1.56.1","new_version":"1.61.0","repository_url":"https://github.com/microsoft/playwright"},{"name":"sharp","old_version":"0.34.4","new_version":"0.35.1","repository_url":"https://github.com/lovell/sharp"},{"name":"tsx","old_version":"4.22.3","new_version":"4.22.4","repository_url":"https://github.com/privatenumber/tsx"},{"name":"user-agents","old_version":"2.1.42","new_version":"2.1.95","repository_url":"https://github.com/intoli/user-agents"},{"name":"nodemon","old_version":"3.1.10","new_version":"3.1.14","repository_url":"https://github.com/remy/nodemon"}],"path":null,"ecosystem":"npm"},"body":"Bumps the backend-minor-patch group with 40 updates in the /backend directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@ai-sdk/langchain](https://github.com/vercel/ai/tree/HEAD/packages/langchain) | `2.0.174` | `2.0.216` |\n| [@ai-sdk/openai](https://github.com/vercel/ai/tree/HEAD/packages/openai) | `3.0.53` | `3.0.73` |\n| [@ai-sdk/react](https://github.com/vercel/ai/tree/HEAD/packages/react) | `3.0.170` | `3.0.210` |\n| [@anthropic-ai/sdk](https://github.com/anthropics/anthropic-sdk-typescript) | `0.92.0` | `0.105.0` |\n| [@aws-sdk/client-s3](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3) | `3.1050.0` | `3.1072.0` |\n| [@aws-sdk/s3-request-presigner](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/packages/s3-request-presigner) | `3.1050.0` | `3.1072.0` |\n| [@elevenlabs/elevenlabs-js](https://github.com/elevenlabs/elevenlabs-js) | `2.49.1` | `2.53.1` |\n| [@fal-ai/client](https://github.com/fal-ai/fal-js/tree/HEAD/libs/client) | `1.7.0` | `1.10.1` |\n| [@langchain/langgraph](https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core) | `1.2.9` | `1.4.4` |\n| [@langchain/openai](https://github.com/langchain-ai/langchainjs) | `1.4.4` | `1.5.1` |\n| [@langfuse/langchain](https://github.com/langfuse/langfuse-js/tree/HEAD/packages/langchain) | `5.3.0` | `5.5.3` |\n| [@opentelemetry/auto-instrumentations-node](https://github.com/open-telemetry/opentelemetry-js-contrib/tree/HEAD/packages/auto-instrumentations-node) | `0.76.0` | `0.77.0` |\n| [@opentelemetry/exporter-trace-otlp-http](https://github.com/open-telemetry/opentelemetry-js) | `0.218.0` | `0.219.0` |\n| [@opentelemetry/resources](https://github.com/open-telemetry/opentelemetry-js) | `2.7.1` | `2.8.0` |\n| [@opentelemetry/sdk-node](https://github.com/open-telemetry/opentelemetry-js) | `0.218.0` | `0.219.0` |\n| [@sentry/node](https://github.com/getsentry/sentry-javascript) | `10.51.0` | `10.58.0` |\n| [@sentry/profiling-node](https://github.com/getsentry/sentry-javascript) | `10.53.1` | `10.58.0` |\n| [ai](https://github.com/vercel/ai/tree/HEAD/packages/ai) | `6.0.168` | `6.0.208` |\n| [axios](https://github.com/axios/axios) | `1.16.1` | `1.18.0` |\n| [bcryptjs](https://github.com/dcodeIO/bcrypt.js) | `3.0.2` | `3.0.3` |\n| [bullmq](https://github.com/taskforcesh/bullmq) | `5.76.10` | `5.79.0` |\n| [cors](https://github.com/expressjs/cors) | `2.8.5` | `2.8.6` |\n| [docx](https://github.com/dolanmiu/docx) | `9.5.1` | `9.7.1` |\n| [docxtemplater](https://github.com/open-xml-templating/docxtemplater) | `3.67.1` | `3.69.0` |\n| [express-session](https://github.com/expressjs/session) | `1.18.2` | `1.19.0` |\n| [express-validator](https://github.com/express-validator/express-validator) | `7.3.0` | `7.3.2` |\n| [fast-xml-parser](https://github.com/NaturalIntelligence/fast-xml-parser) | `5.7.3` | `5.9.2` |\n| [google-auth-library](https://github.com/googleapis/google-cloud-node-core/tree/HEAD/packages/google-auth-library-nodejs) | `10.5.0` | `10.7.0` |\n| [ioredis](https://github.com/luin/ioredis) | `5.10.1` | `5.11.1` |\n| [jsonwebtoken](https://github.com/auth0/node-jsonwebtoken) | `9.0.2` | `9.0.3` |\n| [langchain](https://github.com/langchain-ai/langchainjs) | `1.3.4` | `1.5.0` |\n| [langsmith](https://github.com/langchain-ai/langsmith-sdk) | `0.7.3` | `0.7.10` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [multer](https://github.com/expressjs/multer) | `2.1.1` | `2.2.0` |\n| [pdfkit](https://github.com/foliojs/pdfkit) | `0.17.2` | `0.19.1` |\n| [playwright](https://github.com/microsoft/playwright) | `1.56.1` | `1.61.0` |\n| [sharp](https://github.com/lovell/sharp) | `0.34.4` | `0.35.1` |\n| [tsx](https://github.com/privatenumber/tsx) | `4.22.3` | `4.22.4` |\n| [user-agents](https://github.com/intoli/user-agents) | `2.1.42` | `2.1.95` |\n| [nodemon](https://github.com/remy/nodemon) | `3.1.10` | `3.1.14` |\n\n\nUpdates `@ai-sdk/langchain` from 2.0.174 to 2.0.216\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/ai/releases\"\u003e@​ai-sdk/langchain's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​ai-sdk/langchain\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.0.216\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [8261640]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f994df3]\n\u003cul\u003e\n\u003cli\u003eai@6.0.208\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​ai-sdk/langchain\u003c/code\u003e\u003ca href=\"https://github.com/2\"\u003e\u003ccode\u003e@​2\u003c/code\u003e\u003c/a\u003e.0.215\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003edff49ee: Surface LangChain citation annotations as spec-compliant \u003ccode\u003esource-url\u003c/code\u003e / \u003ccode\u003esource-document\u003c/code\u003e UI message parts. Previously, citations attached to text content blocks (e.g. from web search or RAG) were dropped entirely instead of being emitted as AI SDK source parts. Citation metadata (\u003ccode\u003ecitedText\u003c/code\u003e, \u003ccode\u003estartIndex\u003c/code\u003e, \u003ccode\u003eendIndex\u003c/code\u003e, \u003ccode\u003esource\u003c/code\u003e) is preserved under \u003ccode\u003eproviderMetadata.langchain\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/ai/blob/@ai-sdk/langchain@2.0.216/packages/langchain/CHANGELOG.md\"\u003e@​ai-sdk/langchain's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.0.216\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [8261640]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f994df3]\n\u003cul\u003e\n\u003cli\u003eai@6.0.208\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.0.215\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003edff49ee: Surface LangChain citation annotations as spec-compliant \u003ccode\u003esource-url\u003c/code\u003e / \u003ccode\u003esource-document\u003c/code\u003e UI message parts. Previously, citations attached to text content blocks (e.g. from web search or RAG) were dropped entirely instead of being emitted as AI SDK source parts. Citation metadata (\u003ccode\u003ecitedText\u003c/code\u003e, \u003ccode\u003estartIndex\u003c/code\u003e, \u003ccode\u003eendIndex\u003c/code\u003e, \u003ccode\u003esource\u003c/code\u003e) is preserved under \u003ccode\u003eproviderMetadata.langchain\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.0.214\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [779f5cd]\n\u003cul\u003e\n\u003cli\u003eai@6.0.207\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.0.213\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eai@6.0.206\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.0.212\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eai@6.0.205\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.0.211\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eb51014f: fix(langchain): prevent polluting global object.prototype\n\u003cul\u003e\n\u003cli\u003eai@6.0.204\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.0.210\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [f42aa79]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [5291f7e]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [b4b575a]\n\u003cul\u003e\n\u003cli\u003eai@6.0.203\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.0.209\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/3270146267b1d82f07972bc40f09e9b4ee8bb9d3\"\u003e\u003ccode\u003e3270146\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16243\"\u003e#16243\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/a7e3263e8e4d34c13c4a2eb0da46c0a474727d6d\"\u003e\u003ccode\u003ea7e3263\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16225\"\u003e#16225\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/dff49ee9c79a263919301bd53bf673f97e1f6031\"\u003e\u003ccode\u003edff49ee\u003c/code\u003e\u003c/a\u003e Backport: feat(langchain): emit source-url/source-document parts from citatio...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/caebb44016dbd084e5bf7b7f4ab5194fd2c7c045\"\u003e\u003ccode\u003ecaebb44\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16157\"\u003e#16157\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/562311796cd23e0518c8c8a74f1db35815a9287a\"\u003e\u003ccode\u003e5623117\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16134\"\u003e#16134\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/55486720c5be0238b9d477a778b0428e5e48d9d4\"\u003e\u003ccode\u003e5548672\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16097\"\u003e#16097\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/63b3f6081df232ff3b2a84b27cc3eda33f215586\"\u003e\u003ccode\u003e63b3f60\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16086\"\u003e#16086\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/b51014f9e346f1c9b4be5e9c7085cce1eec48314\"\u003e\u003ccode\u003eb51014f\u003c/code\u003e\u003c/a\u003e Backport: fix(langchain): prevent polluting global object.prototype (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16085\"\u003e#16085\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/bae9babb22e195e74a9a0c0e26a5e52c8ba8e7f2\"\u003e\u003ccode\u003ebae9bab\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/16026\"\u003e#16026\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/9ef2c3cfadfc4a469e9eec6a6e8a0ac0fc80a1e5\"\u003e\u003ccode\u003e9ef2c3c\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/langchain/issues/15998\"\u003e#15998\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vercel/ai/commits/@ai-sdk/langchain@2.0.216/packages/langchain\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​ai-sdk/langchain\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@ai-sdk/openai` from 3.0.53 to 3.0.73\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/ai/releases\"\u003e@​ai-sdk/openai's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​ai-sdk/openai\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.73\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e1274c07: fix(provider/openai): send client-executed tool calls as full function_call items in the Responses API so they pair with their function_call_output by call_id\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/ai/blob/@ai-sdk/openai@3.0.73/packages/openai/CHANGELOG.md\"\u003e@​ai-sdk/openai's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.0.73\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e1274c07: fix(provider/openai): send client-executed tool calls as full function_call items in the Responses API so they pair with their function_call_output by call_id\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.72\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [779f5cd]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​ai-sdk/provider-utils\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.30\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.71\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [bfa5864]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f42aa79]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​ai-sdk/provider-utils\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.29\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.70\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [942f2f8]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​ai-sdk/provider-utils\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.28\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.69\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e9a55f6d: feat(openai): add namespaces for tool definitions\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.68\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003ec65c952: fix(openai): round-trip \u003ccode\u003enamespace\u003c/code\u003e on function_call input items\u003c/p\u003e\n\u003cp\u003eWhen \u003ccode\u003etool_search\u003c/code\u003e dispatches a deferred tool, the resulting \u003ccode\u003efunction_call\u003c/code\u003e carries a \u003ccode\u003enamespace\u003c/code\u003e field identifying which deferred-tool group the model picked. \u003ccode\u003e[#14789](https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/14789)\u003c/code\u003e preserved this on the read side (\u003ccode\u003eproviderMetadata.openai.namespace\u003c/code\u003e), but the write side still serialized \u003ccode\u003efunction_call\u003c/code\u003e input items without \u003ccode\u003enamespace\u003c/code\u003e. Multi-step / multi-turn conversations then failed with \u003ccode\u003eMissing namespace for function_call '\u0026lt;name\u0026gt;'. ... Round-trip the model's function_call item with its namespace field included.\u003c/code\u003e\u003c/p\u003e\n\u003cp\u003e\u003ccode\u003econvert-to-openai-responses-input.ts\u003c/code\u003e now reads \u003ccode\u003enamespace\u003c/code\u003e from \u003ccode\u003eproviderOptions.openai.namespace\u003c/code\u003e (or \u003ccode\u003eproviderMetadata.openai.namespace\u003c/code\u003e) on \u003ccode\u003etool-call\u003c/code\u003e parts and includes it on the serialized \u003ccode\u003efunction_call\u003c/code\u003e item, mirroring how \u003ccode\u003eitemId\u003c/code\u003e is round-tripped.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.67\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003ec679fec: feat(provider/azure):web search tool in the Azure OpenAI Responses API.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/cc38fceda391b38ce8597ce3acf09e8297af929b\"\u003e\u003ccode\u003ecc38fce\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/16229\"\u003e#16229\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/1274c070f149e518a441b48ee94ccb1e6a0e821b\"\u003e\u003ccode\u003e1274c07\u003c/code\u003e\u003c/a\u003e Backport: fix(openai): send client-executed tool calls as full function_call ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/caebb44016dbd084e5bf7b7f4ab5194fd2c7c045\"\u003e\u003ccode\u003ecaebb44\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/16157\"\u003e#16157\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/bae9babb22e195e74a9a0c0e26a5e52c8ba8e7f2\"\u003e\u003ccode\u003ebae9bab\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/16026\"\u003e#16026\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/9ef2c3cfadfc4a469e9eec6a6e8a0ac0fc80a1e5\"\u003e\u003ccode\u003e9ef2c3c\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/15998\"\u003e#15998\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/f6e588173713842794c619f9554a4b341c6e97f5\"\u003e\u003ccode\u003ef6e5881\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/15902\"\u003e#15902\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/9a55f6d3664399b243f68506b615ed87aab79454\"\u003e\u003ccode\u003e9a55f6d\u003c/code\u003e\u003c/a\u003e Backport: feat(openai): add namespaces for tool definitions (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/15910\"\u003e#15910\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/de852ab79aac88345c8a9ae54003fb206e1a64b4\"\u003e\u003ccode\u003ede852ab\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/15821\"\u003e#15821\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/c65c95231508df82fc85149a873047908e71b3c3\"\u003e\u003ccode\u003ec65c952\u003c/code\u003e\u003c/a\u003e Backport: fix(openai): round-trip namespace on function_call input items (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/openai/issues/15\"\u003e#15\u003c/a\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/7aca1fc2004800171233ae16c2456ef297552441\"\u003e\u003ccode\u003e7aca1fc\u003c/code\u003e\u003c/a\u003e backport: chore: update TypeScript references and fix `pnpm update-references...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vercel/ai/commits/@ai-sdk/openai@3.0.73/packages/openai\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​ai-sdk/openai\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@ai-sdk/react` from 3.0.170 to 3.0.210\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/ai/releases\"\u003e@​ai-sdk/react's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​ai-sdk/react\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.210\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [8261640]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f994df3]\n\u003cul\u003e\n\u003cli\u003eai@6.0.208\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​ai-sdk/react\u003c/code\u003e\u003ca href=\"https://github.com/3\"\u003e\u003ccode\u003e@​3\u003c/code\u003e\u003c/a\u003e.0.209\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [779f5cd]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​ai-sdk/provider-utils\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.30\u003c/li\u003e\n\u003cli\u003eai@6.0.207\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/vercel/ai/blob/@ai-sdk/react@3.0.210/packages/react/CHANGELOG.md\"\u003e@​ai-sdk/react's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.0.210\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [8261640]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f994df3]\n\u003cul\u003e\n\u003cli\u003eai@6.0.208\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.209\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [779f5cd]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​ai-sdk/provider-utils\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.30\u003c/li\u003e\n\u003cli\u003eai@6.0.207\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.208\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eai@6.0.206\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.207\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eai@6.0.205\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.206\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eai@6.0.204\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.205\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [bfa5864]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [f42aa79]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [5291f7e]\u003c/li\u003e\n\u003cli\u003eUpdated dependencies [b4b575a]\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​ai-sdk/provider-utils\u003c/code\u003e\u003ca href=\"https://github.com/4\"\u003e\u003ccode\u003e@​4\u003c/code\u003e\u003c/a\u003e.0.29\u003c/li\u003e\n\u003cli\u003eai@6.0.203\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.0.204\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies [942f2f8]\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/3270146267b1d82f07972bc40f09e9b4ee8bb9d3\"\u003e\u003ccode\u003e3270146\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/16243\"\u003e#16243\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/caebb44016dbd084e5bf7b7f4ab5194fd2c7c045\"\u003e\u003ccode\u003ecaebb44\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/16157\"\u003e#16157\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/562311796cd23e0518c8c8a74f1db35815a9287a\"\u003e\u003ccode\u003e5623117\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/16134\"\u003e#16134\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/55486720c5be0238b9d477a778b0428e5e48d9d4\"\u003e\u003ccode\u003e5548672\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/16097\"\u003e#16097\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/63b3f6081df232ff3b2a84b27cc3eda33f215586\"\u003e\u003ccode\u003e63b3f60\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/16086\"\u003e#16086\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/bae9babb22e195e74a9a0c0e26a5e52c8ba8e7f2\"\u003e\u003ccode\u003ebae9bab\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/16026\"\u003e#16026\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/9ef2c3cfadfc4a469e9eec6a6e8a0ac0fc80a1e5\"\u003e\u003ccode\u003e9ef2c3c\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/15998\"\u003e#15998\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/dca8c38b09acba1a5eebf354b532833ab055413a\"\u003e\u003ccode\u003edca8c38\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/15992\"\u003e#15992\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/a340536d4cd232c42757bf04c3ec35f589f6fe35\"\u003e\u003ccode\u003ea340536\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/15965\"\u003e#15965\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vercel/ai/commit/f6e588173713842794c619f9554a4b341c6e97f5\"\u003e\u003ccode\u003ef6e5881\u003c/code\u003e\u003c/a\u003e Version Packages (\u003ca href=\"https://github.com/vercel/ai/tree/HEAD/packages/react/issues/15902\"\u003e#15902\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/vercel/ai/commits/@ai-sdk/react@3.0.210/packages/react\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​ai-sdk/react\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@anthropic-ai/sdk` from 0.92.0 to 0.105.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/releases\"\u003e@​anthropic-ai/sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003esdk: v0.105.0\u003c/h2\u003e\n\u003ch2\u003e0.105.0 (2026-06-18)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.104.2...sdk-v0.105.0\"\u003esdk-v0.104.2...sdk-v0.105.0\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e add support for new code_execution_20260120 tool (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/8dc2b54ee9f19cfc0a8f5cb49d0e1b93f4a4cadd\"\u003e8dc2b54\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estream:\u003c/strong\u003e lazily parse partial tool json input (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/99\"\u003e#99\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/e55ceee5e3053ada96a7fe008b1fd6ebc0e42544\"\u003ee55ceee\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003einternal/deps:\u003c/strong\u003e bump swc to 1.15.40 (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/97\"\u003e#97\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/a1d4d7549251f88100f44b0350f6123c9cbea5ec\"\u003ea1d4d75\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003einternal:\u003c/strong\u003e use are the types wrong directly (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/94\"\u003e#94\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/3d362afd0aade3d18f10e61a5e4809c0bd495768\"\u003e3d362af\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etests:\u003c/strong\u003e stop using deprecated models (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/98\"\u003e#98\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/65ae1afee1bb76179c58e1758a48d668e3fcf7b3\"\u003e65ae1af\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esdk: v0.104.2\u003c/h2\u003e\n\u003ch2\u003e0.104.2 (2026-06-15)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.104.1...sdk-v0.104.2\"\u003esdk-v0.104.1...sdk-v0.104.2\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e remove retired models from API and SDKs (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/a94287690a383ba34aa0d2ad9e0262eeb9241bd3\"\u003ea942876\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esdk: v0.104.1\u003c/h2\u003e\n\u003ch2\u003e0.104.1 (2026-06-09)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.104.0...sdk-v0.104.1\"\u003esdk-v0.104.0...sdk-v0.104.1\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e add \u003ccode\u003efrontier_llm\u003c/code\u003e refusal category (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/465e6866d66952c0a0a9eb2c465b2e4389da58f1\"\u003e465e686\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esdk: v0.104.0\u003c/h2\u003e\n\u003ch2\u003e0.104.0 (2026-06-09)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.103.0...sdk-v0.104.0\"\u003esdk-v0.103.0...sdk-v0.104.0\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e add support for Managed Agents deployments and environment variable credentials (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/d01e38b5b6f62400450b727d9724ea00a6b1eaf5\"\u003ed01e38b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003esdk: v0.103.0\u003c/h2\u003e\n\u003ch2\u003e0.103.0 (2026-06-09)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.102.0...sdk-v0.103.0\"\u003esdk-v0.102.0...sdk-v0.103.0\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/blob/main/CHANGELOG.md\"\u003e@​anthropic-ai/sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e0.105.0 (2026-06-18)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.104.2...sdk-v0.105.0\"\u003esdk-v0.104.2...sdk-v0.105.0\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e add support for new code_execution_20260120 tool (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/8dc2b54ee9f19cfc0a8f5cb49d0e1b93f4a4cadd\"\u003e8dc2b54\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003estream:\u003c/strong\u003e lazily parse partial tool json input (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/99\"\u003e#99\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/e55ceee5e3053ada96a7fe008b1fd6ebc0e42544\"\u003ee55ceee\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003einternal/deps:\u003c/strong\u003e bump swc to 1.15.40 (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/97\"\u003e#97\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/a1d4d7549251f88100f44b0350f6123c9cbea5ec\"\u003ea1d4d75\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003einternal:\u003c/strong\u003e use are the types wrong directly (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/94\"\u003e#94\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/3d362afd0aade3d18f10e61a5e4809c0bd495768\"\u003e3d362af\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003etests:\u003c/strong\u003e stop using deprecated models (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/98\"\u003e#98\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/65ae1afee1bb76179c58e1758a48d668e3fcf7b3\"\u003e65ae1af\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e0.104.2 (2026-06-15)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.104.1...sdk-v0.104.2\"\u003esdk-v0.104.1...sdk-v0.104.2\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eChores\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e remove retired models from API and SDKs (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/a94287690a383ba34aa0d2ad9e0262eeb9241bd3\"\u003ea942876\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e0.104.1 (2026-06-09)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.104.0...sdk-v0.104.1\"\u003esdk-v0.104.0...sdk-v0.104.1\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e add \u003ccode\u003efrontier_llm\u003c/code\u003e refusal category (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/465e6866d66952c0a0a9eb2c465b2e4389da58f1\"\u003e465e686\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e0.104.0 (2026-06-09)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.103.0...sdk-v0.104.0\"\u003esdk-v0.103.0...sdk-v0.104.0\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e add support for Managed Agents deployments and environment variable credentials (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/d01e38b5b6f62400450b727d9724ea00a6b1eaf5\"\u003ed01e38b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e0.103.0 (2026-06-09)\u003c/h2\u003e\n\u003cp\u003eFull Changelog: \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.102.0...sdk-v0.103.0\"\u003esdk-v0.102.0...sdk-v0.103.0\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eapi:\u003c/strong\u003e add support for claude-mythos-5 and claude-fable-5, with support for server-side fallbacks on refusal (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/cc337f72dcf22d2ffd92f511918330f37ffab652\"\u003ecc337f7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient:\u003c/strong\u003e adds client-side fallbacks middleware for API providers that do not support server-side fallbacks (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/cc337f72dcf22d2ffd92f511918330f37ffab652\"\u003ecc337f7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003emiddleware:\u003c/strong\u003e add ctx.logger (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/55\"\u003e#55\u003c/a\u003e) (\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/edd14544173cf60ee2a2bf01acbf14e50bcfdaaa\"\u003eedd1454\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/ab700dc013e735b80dead115fcae52fba83f1aeb\"\u003e\u003ccode\u003eab700dc\u003c/code\u003e\u003c/a\u003e chore: release main\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/a3225175d067110fc0e9152ed2699540455aa4ce\"\u003e\u003ccode\u003ea322517\u003c/code\u003e\u003c/a\u003e feat(api): add support for new code_execution_20260120 tool\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/65a01068857f521d27d8963152cd3e66cbe232ad\"\u003e\u003ccode\u003e65a0106\u003c/code\u003e\u003c/a\u003e feat(stream): lazily parse partial tool json input (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/99\"\u003e#99\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/384ab5179b6120fa6c3fdc37fabb1baba23a1d73\"\u003e\u003ccode\u003e384ab51\u003c/code\u003e\u003c/a\u003e chore(tests): stop using deprecated models (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/98\"\u003e#98\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/a49a19143ae0b13fc5312058c008c5a39250cd96\"\u003e\u003ccode\u003ea49a191\u003c/code\u003e\u003c/a\u003e chore(internal/deps): bump swc to 1.15.40 (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/97\"\u003e#97\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/7ac63f3b566c898fa9ce3eaced546da5cf0e3014\"\u003e\u003ccode\u003e7ac63f3\u003c/code\u003e\u003c/a\u003e chore(internal): use are the types wrong directly (\u003ca href=\"https://redirect.github.com/anthropics/anthropic-sdk-typescript/issues/94\"\u003e#94\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/fbee0d149ce08532885d766d9b1dc99133181d8e\"\u003e\u003ccode\u003efbee0d1\u003c/code\u003e\u003c/a\u003e chore: release main\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/e984ba4942d0e9660690910c4a7c7325b1fe3607\"\u003e\u003ccode\u003ee984ba4\u003c/code\u003e\u003c/a\u003e chore(api): remove retired models from API and SDKs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/9a0442d88eebd1861e595bed7c57d309a609c3a5\"\u003e\u003ccode\u003e9a0442d\u003c/code\u003e\u003c/a\u003e chore: release main\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/commit/1ccd4012e7931dd41c94c8bc02c05ebe9a1c5282\"\u003e\u003ccode\u003e1ccd401\u003c/code\u003e\u003c/a\u003e fix(api): add \u003ccode\u003efrontier_llm\u003c/code\u003e refusal category\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/anthropics/anthropic-sdk-typescript/compare/sdk-v0.92.0...sdk-v0.105.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for \u003ccode\u003e@​anthropic-ai/sdk\u003c/code\u003e since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@aws-sdk/client-s3` from 3.1050.0 to 3.1072.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/client-s3's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1072.0\u003c/h2\u003e\n\u003ch4\u003e3.1072.0(2026-06-18)\u003c/h4\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ec2:\u003c/strong\u003e  Documentation updates clarifying CancelCapacityReservation cancellable states (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e3723ba73e2f2d307254d49ec73c5b3d91b8d892\"\u003ee3723ba7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer:\u003c/strong\u003e  This release surfaces two new metrics Volume IOPS Exceeded and Volume Throughput Exceeded into EBS volume rightsizing recommendations. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ded6618d5249ab413bd90b26d4cea91d5f4b9b8f\"\u003eded6618d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-application-auto-scaling:\u003c/strong\u003e  Adds support for ECS high-resolution predefined scaling metrics (ECSServiceAverageCPUUtilizationHighResolution, ECSServiceAverageMemoryUtilizationHighResolution) enabling 20-second metric periods for faster scaling (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/95b3513a224a678fb92dc623f149d24adb96ae7b\"\u003e95b3513a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cognito-identity-provider:\u003c/strong\u003e  In order to support the new TLS Self-Service feature, this change adds SecurityPolicyType to CustomDomainConfigType. During CreateUserPoolDomain and UpdateUserPoolDomain this is used to select a custom domain's TLS enforcement, and for DescribeUserPoolDomain it informs users about the current TLS. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e89377876aa392ea403636b6821cdb3df253648b\"\u003ee8937787\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-sagemaker:\u003c/strong\u003e  Adds support for automatic AMI patching on HyperPod clusters. Customers can configure patching strategies to automatically apply security patch with zero job termination. Customers can also specify an AMI version at instance group level and update cluster software to a certain AMI version. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/fd33a5e46ca314f064b9149900abe4e451661b5e\"\u003efd33a5e4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Amazon ECS services now support high resolution (20 second) CloudWatch metrics for CPUUtilization and MemoryUtilization. Use these metrics for faster service auto scaling. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93055ac93bffca3e2957b2d67cb24ecdc784457a\"\u003e93055ac9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-healthlake:\u003c/strong\u003e  Adding New Configurations to the FHIR Create Datastore. The new configurations include NLP Configuration, AnalyticsConfiguration, ProfileConfiguration (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/494fa59f48705e23ab79da259046966831183c71\"\u003e494fa59f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-gamelift:\u003c/strong\u003e  Amazon GameLift Servers has launched support for customizing Linux capabilities in container fleets. You can now specify additional Linux capabilities for containers in a container group definition, giving you finer control over the default Docker capabilities available to your containers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93cefd905d4fc0c649b1d7ed69f4c8f0d79d3371\"\u003e93cefd90\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eks:\u003c/strong\u003e  Adds support for configurable control plane egress routing in Amazon EKS, allowing you to route control plane egress traffic through your VPC and control how the control plane reaches resources in your network such as webhook servers and OIDC providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/693db62958c6818b4cb847887b8e36a66347c119\"\u003e693db629\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda:\u003c/strong\u003e  Converging and fixing existing documentation gaps in Lambda SDK (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6555a565348a308dad7a51c85457c2bcee87feb8\"\u003e6555a565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-synthetics:\u003c/strong\u003e  CloudWatch Synthetics adds support for multi-location canaries. Customers can now monitor their endpoints from multiple locations with centralized management from a primary location. The SDK includes new parameters for configuring multiple locations and tracking their state. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/f2c8b480812b5ba2d1e173a8a074df6d72654239\"\u003ef2c8b480\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch-logs:\u003c/strong\u003e  Added optional startFromHead parameter to FilterLogEvents enabling descending timestamp order (newest first) when set to false. Default true preserves existing ascending order. Reverse sorting requires a startTime on or after Jan 1, 2024. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/1be63ed942af46df978e55df4bec6fb6c9d16e60\"\u003e1be63ed9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-batch:\u003c/strong\u003e  Adds Support for ordered allocation strategies- BEST-FIT-PROGRESSIVE-ORDERED or SPOT-CAPACITY-OPTIMIZED-PRIORITIZED (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0e57e53b1e0914a03b5b7c7d346245a1e6b6da11\"\u003e0e57e53b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1072.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1071.0\u003c/h2\u003e\n\u003ch4\u003e3.1071.0(2026-06-17)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-partnercentral-selling:\u003c/strong\u003e  Cosell Resonate AND Prospecing API Launch with ARN correction (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7e8c98abe070924fbbd1ea2abc183f0715f80945\"\u003e7e8c98ab\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer-automation:\u003c/strong\u003e  This launch adds IfExists comparison operators to Compute Optimizer Automation rule criteria, so a rule can include recommended actions whose specified attribute isn't present. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ab2c616d167a0796fba91e44d1118a6a8baee60d\"\u003eab2c616d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent:\u003c/strong\u003e  Launching Bedrock Managed Knowledge Bases. Added support for resource-based policies on Knowledge Base resources, enabling cross-account access for Managed Knowledge Bases. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/de0affe4ad738b7f07d91574e2b2cfd83a447d44\"\u003ede0affe4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-securityagent:\u003c/strong\u003e  Updated AWS Security Agent SDK model with new APIs for threat modeling, code review, security requirements, and additional integration providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/9c3d3351842902b1ea1e8be52c4e7f40b868daae\"\u003e9c3d3351\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-opensearch:\u003c/strong\u003e  Adds support for configuring IAM Identity Center options on existing OpenSearch applications via the UpdateApplication API. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/94f06a20a15ab75302088d5f3c31d708a8256e5c\"\u003e94f06a20\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-glue:\u003c/strong\u003e  This release adds support for Search and Discovery in AWS Glue, letting you and your applications search Data Catalog assets such as table and enrich them with business context and glossary terms. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b394fc0b39c814d5f72593dfc4db5ff5c2cbe643\"\u003eb394fc0b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agentcore-control:\u003c/strong\u003e  AgentCore Gateway now supports inference targets to LLM providers (direct config or built-in connectors), HTTP passthrough targets with session stickiness, runtime target API schemas, AWS WAF web ACL association with configurable fail-open or fail-close modes, and interceptor payload filtering. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/75f1d588d526de04060ebd653ca1a96e7ea75ff6\"\u003e75f1d588\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-devops-agent:\u003c/strong\u003e  Adds support for Remote A2A (Agent-to-Agent) agent registration and management. Adds new Release Readiness Review and Release Testing capabilities. Adds support for Git managed skills in AWS DevOps Agent. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ebc040e1f3fc292d3eee1a9b146c972338e14807\"\u003eebc040e1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agentcore:\u003c/strong\u003e  AgentCore Harness service will be Generally Available at NYS 2026 with this Treb release. Harness will support invoking specific endpoints via the qualifier parameter, AWS Skills for pre-built agent capabilities, and improved validation for skill git source URLs. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/5bf9fcccc3b4cc204df57caea2adcf254c5d3846\"\u003e5bf9fccc\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Releasing the ability to bring-your-own task-definition for CreateExpressGatewayService and UpdateGatewayExpressService (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b7b9cb4f46a34c4ab0fedf2138a9a5ba17bdd731\"\u003eb7b9cb4f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-mq:\u003c/strong\u003e  This release adds private networking support for Amazon MQ for RabbitMQ. You can now associate AWS RAM resource shares with your broker and retrieve shared resource details using the new DescribeSharedResources API. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e96af4503bfea9a6f211bc905b8e949af6cc38d7\"\u003ee96af450\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent-runtime:\u003c/strong\u003e  Adds new AgenticRetrieveStream API for managed knowledge bases to use conversation history and autonomously plan for multi-hop multi-KB reasoning with built-in evaluation and access-control. Updates Retrieve API for access-control-based filtering for managed knowledge bases. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/557f7b3246fb6530fb8dcb481f1035d7827d2a1e\"\u003e557f7b32\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eTests\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecore:\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eprebuild before integration and e2e (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8111\"\u003e#8111\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/363f3fb7165d327e3ca24b3d7beffb19cc528c31\"\u003e363f3fb7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eprebuild core before unit tests (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8108\"\u003e#8108\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/5f789e7fe2089eacff868a6e1d0b6c2c11313bbc\"\u003e5f789e7f\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-s3/CHANGELOG.md\"\u003e@​aws-sdk/client-s3's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1071.0...v3.1072.0\"\u003e3.1072.0\u003c/a\u003e (2026-06-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1070.0...v3.1071.0\"\u003e3.1071.0\u003c/a\u003e (2026-06-17)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1069.0...v3.1070.0\"\u003e3.1070.0\u003c/a\u003e (2026-06-16)\u003c/h1\u003e\n\u003ch3\u003eFeatures\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-s3:\u003c/strong\u003e Added support for annotations. You can now attach up to 1000 annotations (up to 1 MB each) directly to objects and create, retrieve, list, and delete them using new annotation APIs. Also added support for configuring an annotation table in S3 Metadata. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c555874690846b81904a2c0c1e96130bd03bbeaa\"\u003ec555874\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1068.0...v3.1069.0\"\u003e3.1069.0\u003c/a\u003e (2026-06-15)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1067.0...v3.1068.0\"\u003e3.1068.0\u003c/a\u003e (2026-06-12)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1066.0...v3.1067.0\"\u003e3.1067.0\u003c/a\u003e (2026-06-11)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/client-s3\u003c/code\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/501cd332619533ae96f154d7c226dc2f7bf8d615\"\u003e\u003ccode\u003e501cd33\u003c/code\u003e\u003c/a\u003e Publish v3.1072.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3ce820aa54c953459eb58abe4f06e28ba4ceb87d\"\u003e\u003ccode\u003e3ce820a\u003c/code\u003e\u003c/a\u003e Publish v3.1071.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4f2cfe1cfc420d0b5bfa226ae6619dd67de73ccc\"\u003e\u003ccode\u003e4f2cfe1\u003c/code\u003e\u003c/a\u003e Publish v3.1070.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/c555874690846b81904a2c0c1e96130bd03bbeaa\"\u003e\u003ccode\u003ec555874\u003c/code\u003e\u003c/a\u003e feat(client-s3): Added support for annotations. You can now attach up to 1000...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7058d13814795c6ff06a960077269458520bf161\"\u003e\u003ccode\u003e7058d13\u003c/code\u003e\u003c/a\u003e Publish v3.1069.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/67981c5a65d6dd797a065df034a8d0fcdaa9b7bd\"\u003e\u003ccode\u003e67981c5\u003c/code\u003e\u003c/a\u003e chore(scripts): tuning the build graph (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3/issues/8095\"\u003e#8095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0632f6dc8842caaa916c5f43a5043342ff9ba6bb\"\u003e\u003ccode\u003e0632f6d\u003c/code\u003e\u003c/a\u003e Publish v3.1068.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0a3246f174335af55a6981b4891f0f4c10dfe4c4\"\u003e\u003ccode\u003e0a3246f\u003c/code\u003e\u003c/a\u003e Publish v3.1067.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4b11912aef8adc845f81b7e9922bd180c5cf1d90\"\u003e\u003ccode\u003e4b11912\u003c/code\u003e\u003c/a\u003e Publish v3.1066.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e4ef6c57d8fd97d15e0a7a27a24396990d704307\"\u003e\u003ccode\u003ee4ef6c5\u003c/code\u003e\u003c/a\u003e test: use crypto.randomUUID for resource names in e2e tests (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3/issues/8091\"\u003e#8091\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1072.0/clients/client-s3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@aws-sdk/s3-request-presigner` from 3.1050.0 to 3.1072.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/releases\"\u003e@​aws-sdk/s3-request-presigner's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.1072.0\u003c/h2\u003e\n\u003ch4\u003e3.1072.0(2026-06-18)\u003c/h4\u003e\n\u003ch5\u003eDocumentation Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ec2:\u003c/strong\u003e  Documentation updates clarifying CancelCapacityReservation cancellable states (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e3723ba73e2f2d307254d49ec73c5b3d91b8d892\"\u003ee3723ba7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer:\u003c/strong\u003e  This release surfaces two new metrics Volume IOPS Exceeded and Volume Throughput Exceeded into EBS volume rightsizing recommendations. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ded6618d5249ab413bd90b26d4cea91d5f4b9b8f\"\u003eded6618d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-application-auto-scaling:\u003c/strong\u003e  Adds support for ECS high-resolution predefined scaling metrics (ECSServiceAverageCPUUtilizationHighResolution, ECSServiceAverageMemoryUtilizationHighResolution) enabling 20-second metric periods for faster scaling (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/95b3513a224a678fb92dc623f149d24adb96ae7b\"\u003e95b3513a\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cognito-identity-provider:\u003c/strong\u003e  In order to support the new TLS Self-Service feature, this change adds SecurityPolicyType to CustomDomainConfigType. During CreateUserPoolDomain and UpdateUserPoolDomain this is used to select a custom domain's TLS enforcement, and for DescribeUserPoolDomain it informs users about the current TLS. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e89377876aa392ea403636b6821cdb3df253648b\"\u003ee8937787\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-sagemaker:\u003c/strong\u003e  Adds support for automatic AMI patching on HyperPod clusters. Customers can configure patching strategies to automatically apply security patch with zero job termination. Customers can also specify an AMI version at instance group level and update cluster software to a certain AMI version. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/fd33a5e46ca314f064b9149900abe4e451661b5e\"\u003efd33a5e4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Amazon ECS services now support high resolution (20 second) CloudWatch metrics for CPUUtilization and MemoryUtilization. Use these metrics for faster service auto scaling. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93055ac93bffca3e2957b2d67cb24ecdc784457a\"\u003e93055ac9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-healthlake:\u003c/strong\u003e  Adding New Configurations to the FHIR Create Datastore. The new configurations include NLP Configuration, AnalyticsConfiguration, ProfileConfiguration (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/494fa59f48705e23ab79da259046966831183c71\"\u003e494fa59f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-gamelift:\u003c/strong\u003e  Amazon GameLift Servers has launched support for customizing Linux capabilities in container fleets. You can now specify additional Linux capabilities for containers in a container group definition, giving you finer control over the default Docker capabilities available to your containers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/93cefd905d4fc0c649b1d7ed69f4c8f0d79d3371\"\u003e93cefd90\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-eks:\u003c/strong\u003e  Adds support for configurable control plane egress routing in Amazon EKS, allowing you to route control plane egress traffic through your VPC and control how the control plane reaches resources in your network such as webhook servers and OIDC providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/693db62958c6818b4cb847887b8e36a66347c119\"\u003e693db629\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-lambda:\u003c/strong\u003e  Converging and fixing existing documentation gaps in Lambda SDK (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/6555a565348a308dad7a51c85457c2bcee87feb8\"\u003e6555a565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-synthetics:\u003c/strong\u003e  CloudWatch Synthetics adds support for multi-location canaries. Customers can now monitor their endpoints from multiple locations with centralized management from a primary location. The SDK includes new parameters for configuring multiple locations and tracking their state. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/f2c8b480812b5ba2d1e173a8a074df6d72654239\"\u003ef2c8b480\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-cloudwatch-logs:\u003c/strong\u003e  Added optional startFromHead parameter to FilterLogEvents enabling descending timestamp order (newest first) when set to false. Default true preserves existing ascending order. Reverse sorting requires a startTime on or after Jan 1, 2024. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/1be63ed942af46df978e55df4bec6fb6c9d16e60\"\u003e1be63ed9\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-batch:\u003c/strong\u003e  Adds Support for ordered allocation strategies- BEST-FIT-PROGRESSIVE-ORDERED or SPOT-CAPACITY-OPTIMIZED-PRIORITIZED (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0e57e53b1e0914a03b5b7c7d346245a1e6b6da11\"\u003e0e57e53b\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003chr /\u003e\n\u003cp\u003eFor list of updated packages, view \u003cstrong\u003eupdated-packages.md\u003c/strong\u003e in \u003cstrong\u003eassets-3.1072.0.zip\u003c/strong\u003e\u003c/p\u003e\n\u003ch2\u003ev3.1071.0\u003c/h2\u003e\n\u003ch4\u003e3.1071.0(2026-06-17)\u003c/h4\u003e\n\u003ch5\u003eNew Features\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eclient-partnercentral-selling:\u003c/strong\u003e  Cosell Resonate AND Prospecing API Launch with ARN correction (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7e8c98abe070924fbbd1ea2abc183f0715f80945\"\u003e7e8c98ab\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-compute-optimizer-automation:\u003c/strong\u003e  This launch adds IfExists comparison operators to Compute Optimizer Automation rule criteria, so a rule can include recommended actions whose specified attribute isn't present. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ab2c616d167a0796fba91e44d1118a6a8baee60d\"\u003eab2c616d\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent:\u003c/strong\u003e  Launching Bedrock Managed Knowledge Bases. Added support for resource-based policies on Knowledge Base resources, enabling cross-account access for Managed Knowledge Bases. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/de0affe4ad738b7f07d91574e2b2cfd83a447d44\"\u003ede0affe4\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-securityagent:\u003c/strong\u003e  Updated AWS Security Agent SDK model with new APIs for threat modeling, code review, security requirements, and additional integration providers. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/9c3d3351842902b1ea1e8be52c4e7f40b868daae\"\u003e9c3d3351\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-opensearch:\u003c/strong\u003e  Adds support for configuring IAM Identity Center options on existing OpenSearch applications via the UpdateApplication API. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/94f06a20a15ab75302088d5f3c31d708a8256e5c\"\u003e94f06a20\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-glue:\u003c/strong\u003e  This release adds support for Search and Discovery in AWS Glue, letting you and your applications search Data Catalog assets such as table and enrich them with business context and glossary terms. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b394fc0b39c814d5f72593dfc4db5ff5c2cbe643\"\u003eb394fc0b\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agentcore-control:\u003c/strong\u003e  AgentCore Gateway now supports inference targets to LLM providers (direct config or built-in connectors), HTTP passthrough targets with session stickiness, runtime target API schemas, AWS WAF web ACL association with configurable fail-open or fail-close modes, and interceptor payload filtering. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/75f1d588d526de04060ebd653ca1a96e7ea75ff6\"\u003e75f1d588\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-devops-agent:\u003c/strong\u003e  Adds support for Remote A2A (Agent-to-Agent) agent registration and management. Adds new Release Readiness Review and Release Testing capabilities. Adds support for Git managed skills in AWS DevOps Agent. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/ebc040e1f3fc292d3eee1a9b146c972338e14807\"\u003eebc040e1\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agentcore:\u003c/strong\u003e  AgentCore Harness service will be Generally Available at NYS 2026 with this Treb release. Harness will support invoking specific endpoints via the qualifier parameter, AWS Skills for pre-built agent capabilities, and improved validation for skill git source URLs. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/5bf9fcccc3b4cc204df57caea2adcf254c5d3846\"\u003e5bf9fccc\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-ecs:\u003c/strong\u003e  Releasing the ability to bring-your-own task-definition for CreateExpressGatewayService and UpdateGatewayExpressService (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/b7b9cb4f46a34c4ab0fedf2138a9a5ba17bdd731\"\u003eb7b9cb4f\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-mq:\u003c/strong\u003e  This release adds private networking support for Amazon MQ for RabbitMQ. You can now associate AWS RAM resource shares with your broker and retrieve shared resource details using the new DescribeSharedResources API. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/e96af4503bfea9a6f211bc905b8e949af6cc38d7\"\u003ee96af450\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eclient-bedrock-agent-runtime:\u003c/strong\u003e  Adds new AgenticRetrieveStream API for managed knowledge bases to use conversation history and autonomously plan for multi-hop multi-KB reasoning with built-in evaluation and access-control. Updates Retrieve API for access-control-based filtering for managed knowledge bases. (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/557f7b3246fb6530fb8dcb481f1035d7827d2a1e\"\u003e557f7b32\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eTests\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecore:\u003c/strong\u003e\n\u003cul\u003e\n\u003cli\u003eprebuild before integration and e2e (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8111\"\u003e#8111\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/363f3fb7165d327e3ca24b3d7beffb19cc528c31\"\u003e363f3fb7\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eprebuild core before unit tests (\u003ca href=\"https://redirect.github.com/aws/aws-sdk-js-v3/pull/8108\"\u003e#8108\u003c/a\u003e) (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/5f789e7fe2089eacff868a6e1d0b6c2c11313bbc\"\u003e5f789e7f\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/blob/main/packages/s3-request-presigner/CHANGELOG.md\"\u003e@​aws-sdk/s3-request-presigner's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1071.0...v3.1072.0\"\u003e3.1072.0\u003c/a\u003e (2026-06-18)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/s3-request-presigner\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1070.0...v3.1071.0\"\u003e3.1071.0\u003c/a\u003e (2026-06-17)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/s3-request-presigner\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1069.0...v3.1070.0\"\u003e3.1070.0\u003c/a\u003e (2026-06-16)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/s3-request-presigner\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1068.0...v3.1069.0\"\u003e3.1069.0\u003c/a\u003e (2026-06-15)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/s3-request-presigner\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1067.0...v3.1068.0\"\u003e3.1068.0\u003c/a\u003e (2026-06-12)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/s3-request-presigner\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1066.0...v3.1067.0\"\u003e3.1067.0\u003c/a\u003e (2026-06-11)\u003c/h1\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e Version bump only for package \u003ccode\u003e@​aws-sdk/s3-request-presigner\u003c/code\u003e\u003c/p\u003e\n\u003ch1\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/compare/v3.1065.0...v3.1066.0\"\u003e3.1066.0\u003c/a\u003e (2026-06-10)\u003c/h1\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/501cd332619533ae96f154d7c226dc2f7bf8d615\"\u003e\u003ccode\u003e501cd33\u003c/code\u003e\u003c/a\u003e Publish v3.1072.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/3ce820aa54c953459eb58abe4f06e28ba4ceb87d\"\u003e\u003ccode\u003e3ce820a\u003c/code\u003e\u003c/a\u003e Publish v3.1071.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4f2cfe1cfc420d0b5bfa226ae6619dd67de73ccc\"\u003e\u003ccode\u003e4f2cfe1\u003c/code\u003e\u003c/a\u003e Publish v3.1070.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/7058d13814795c6ff06a960077269458520bf161\"\u003e\u003ccode\u003e7058d13\u003c/code\u003e\u003c/a\u003e Publish v3.1069.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/67981c5a65d6dd797a065df034a8d0fcdaa9b7bd\"\u003e\u003ccode\u003e67981c5\u003c/code\u003e\u003c/a\u003e chore(scripts): tuning the build graph (\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/tree/HEAD/packages/s3-request-presigner/issues/8095\"\u003e#8095\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0632f6dc8842caaa916c5f43a5043342ff9ba6bb\"\u003e\u003ccode\u003e0632f6d\u003c/code\u003e\u003c/a\u003e Publish v3.1068.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/0a3246f174335af55a6981b4891f0f4c10dfe4c4\"\u003e\u003ccode\u003e0a3246f\u003c/code\u003e\u003c/a\u003e Publish v3.1067.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/4b11912aef8adc845f81b7e9922bd180c5cf1d90\"\u003e\u003ccode\u003e4b11912\u003c/code\u003e\u003c/a\u003e Publish v3.1066.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/62daf07c545b1fbac5753c554e2c8298ae6b820f\"\u003e\u003ccode\u003e62daf07\u003c/code\u003e\u003c/a\u003e Publish v3.1065.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commit/bac71756a62d28fb08dce3e219176b365118eae4\"\u003e\u003ccode\u003ebac7175\u003c/code\u003e\u003c/a\u003e Publish v3.1064.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-sdk-js-v3/commits/v3.1072.0/packages/s3-request-presigner\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@elevenlabs/elevenlabs-js` from 2.49.1 to 2.53.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/releases\"\u003e@​elevenlabs/elevenlabs-js's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.53.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e[fix] Restore optional values in DynamicVariablesConfig records (2.53.1) by \u003ca href=\"https://github.com/PaulAsjes\"\u003e\u003ccode\u003e@​PaulAsjes\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/pull/411\"\u003eelevenlabs/elevenlabs-js#411\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/compare/v2.53.0...v2.53.1\"\u003ehttps://github.com/elevenlabs/elevenlabs-js/compare/v2.53.0...v2.53.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.53.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSDK regeneration by \u003ca href=\"https://github.com/fern-api\"\u003e\u003ccode\u003e@​fern-api\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/pull/410\"\u003eelevenlabs/elevenlabs-js#410\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/compare/v2.52.0...v2.53.0\"\u003ehttps://github.com/elevenlabs/elevenlabs-js/compare/v2.52.0...v2.53.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.52.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSDK regeneration by \u003ca href=\"https://github.com/fern-api\"\u003e\u003ccode\u003e@​fern-api\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/pull/406\"\u003eelevenlabs/elevenlabs-js#406\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/compare/v2.51.0...v2.52.0\"\u003ehttps://github.com/elevenlabs/elevenlabs-js/compare/v2.51.0...v2.52.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.51.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSDK regeneration by \u003ca href=\"https://github.com/fern-api\"\u003e\u003ccode\u003e@​fern-api\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/pull/403\"\u003eelevenlabs/elevenlabs-js#403\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/compare/v2.50.0...v2.51.0\"\u003ehttps://github.com/elevenlabs/elevenlabs-js/compare/v2.50.0...v2.51.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003ev2.50.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e[Music] Add missing methods and test by \u003ca href=\"https://github.com/PaulAsjes\"\u003e\u003ccode\u003e@​PaulAsjes\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/pull/399\"\u003eelevenlabs/elevenlabs-js#399\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSDK regeneration by \u003ca href=\"https://github.com/fern-api\"\u003e\u003ccode\u003e@​fern-api\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/pull/401\"\u003eelevenlabs/elevenlabs-js#401\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/compare/v2.49.1...v2.50.0\"\u003ehttps://github.com/elevenlabs/elevenlabs-js/compare/v2.49.1...v2.50.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/commit/5e8b62bbdffe9a99d3772e7fa78f51e047ece96e\"\u003e\u003ccode\u003e5e8b62b\u003c/code\u003e\u003c/a\u003e Restore optional values in DynamicVariablesConfig records (2.53.1) (\u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/issues/411\"\u003e#411\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/commit/d4eea0709bf4a9f1f99ce9d2e47b6682473a6d63\"\u003e\u003ccode\u003ed4eea07\u003c/code\u003e\u003c/a\u003e SDK regeneration (\u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/issues/410\"\u003e#410\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/commit/4ad8ddefd65c3eba1320609b37d09b358b2d36f7\"\u003e\u003ccode\u003e4ad8dde\u003c/code\u003e\u003c/a\u003e SDK regeneration (\u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/issues/406\"\u003e#406\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/commit/b1fd204ffee36dc2a1adb0ad86336636f32b4545\"\u003e\u003ccode\u003eb1fd204\u003c/code\u003e\u003c/a\u003e SDK regeneration (\u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/issues/403\"\u003e#403\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/commit/3cd176fe18c9eaab75d16979e3de21597afb9c5b\"\u003e\u003ccode\u003e3cd176f\u003c/code\u003e\u003c/a\u003e SDK regeneration (\u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/issues/401\"\u003e#401\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/commit/f50f1558f741e331dd3949ded57771c012ef27ab\"\u003e\u003ccode\u003ef50f155\u003c/code\u003e\u003c/a\u003e Add missing methods and test (\u003ca href=\"https://redirect.github.com/elevenlabs/elevenlabs-js/issues/399\"\u003e#399\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/elevenlabs/elevenlabs-js/compare/v2.49.1...v2.53.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `@fal-ai/client` from 1.7.0 to 1.10.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/fal-ai/fal-js/releases\"\u003e@​fal-ai/client's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eclient-v1.10.1\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(client): retry Node-level transport errors in subscribe/dispatch by \u003ca href=\"https://github.com/efiop\"\u003e\u003ccode\u003e@​efiop\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/211\"\u003efal-ai/fal-js#211\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/fal-ai/fal-js/compare/client-v1.10.0...client-v1.10.1\"\u003ehttps://github.com/fal-ai/fal-js/compare/client-v1.10.0...client-v1.10.1\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eclient-v1.10.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat(client): allow proxy middleware in non-browser runtimes by \u003ca href=\"https://github.com/drochetti\"\u003e\u003ccode\u003e@​drochetti\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/209\"\u003efal-ai/fal-js#209\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/fal-ai/fal-js/compare/client-v1.9.6...client-v1.10.0\"\u003ehttps://github.com/fal-ai/fal-js/compare/client-v1.9.6...client-v1.10.0\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eclient-v1.9.6\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(realtime): connection closed transition expires token by \u003ca href=\"https://github.com/noahgsolomon\"\u003e\u003ccode\u003e@​noahgsolomon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/201\"\u003efal-ai/fal-js#201\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ecleanup realtime state machine and support live references by \u003ca href=\"https://github.com/noahgsolomon\"\u003e\u003ccode\u003e@​noahgsolomon\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/202\"\u003efal-ai/fal-js#202\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: supply chain security, enforce minimum age for node dependencies by \u003ca href=\"https://github.com/wennergr\"\u003e\u003ccode\u003e@​wennergr\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/205\"\u003efal-ai/fal-js#205\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore: update endpoint types by \u003ca href=\"https://github.com/aykutkardas\"\u003e\u003ccode\u003e@​aykutkardas\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/192\"\u003efal-ai/fal-js#192\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efeat(client): expose lifecycle ACL options in storage settings by \u003ca href=\"https://github.com/efiop\"\u003e\u003ccode\u003e@​efiop\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/208\"\u003efal-ai/fal-js#208\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eci: pin GitHub Actions to full commit SHAs by \u003ca href=\"https://github.com/wennergr\"\u003e\u003ccode\u003e@​wennergr\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/207\"\u003efal-ai/fal-js#207\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/wennergr\"\u003e\u003ccode\u003e@​wennergr\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/fal-ai/fal-js/pull/205\"\u003efal-ai/fal-js#205\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/fal-ai/fal-js/compare/client-v1.9.4...client-v1.9.6\"\u003ehttps://github.com/fal-ai/fal-js/compare/client-v1.9.4...client-v1.9.6\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eclient-v1.9.5\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efix(realtime): connection closed transition expires ...\n\n_Description has been truncated_","html_url":"https://github.com/SiraGPT-ORg/siraGPT/pull/118","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/SiraGPT-ORg%2FsiraGPT/issues/118","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/118/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-06-11T01:18:43.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4636343634","node_id":"PR_kwDORP8u4c7lHFc_","number":9,"state":"open","title":"chore(deps): bump morgan from 1.10.1 to 1.11.0","user":"dependabot[bot]","labels":["dependencies","javascript"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-06-11T01:18:43.000Z","updated_at":"2026-06-11T01:18:46.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":null,"ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/mulkymalikuldhrs/pase-fx/pull/9","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/mulkymalikuldhrs%2Fpase-fx/issues/9","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/9/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":"/superset-websocket/utils/client-ws-app","pr_created_at":"2026-06-10T04:04:14.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4627849786","node_id":"PR_kwDOBBkQZs7krOpR","number":4173,"state":"closed","title":"chore(deps): bump morgan from 1.10.1 to 1.11.0 in /superset-websocket/utils/client-ws-app","user":"dependabot[bot]","labels":[],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-06-11T01:37:47.000Z","author_association":null,"state_reason":null,"created_at":"2026-06-10T04:04:14.000Z","updated_at":"2026-06-11T01:37:49.000Z","time_to_close":77613,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"}],"path":"/superset-websocket/utils/client-ws-app","ecosystem":"npm"},"body":"Bumps [morgan](https://github.com/expressjs/morgan) from 1.10.1 to 1.11.0.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=morgan\u0026package-manager=npm_and_yarn\u0026previous-version=1.10.1\u0026new-version=1.11.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/aliavni/incubator-superset/pull/4173","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/aliavni%2Fincubator-superset/issues/4173","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/4173/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-06-08T13:11:11.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4613165584","node_id":"PR_kwDOPUR0Hc7j6pXK","number":32,"state":"closed","title":"chore(deps): bump the patches group with 5 updates","user":"dependabot[bot]","labels":["dependencies"],"assignees":[],"locked":false,"comments_count":3,"pull_request":true,"closed_at":"2026-06-08T13:19:15.000Z","author_association":null,"state_reason":null,"created_at":"2026-06-08T13:11:11.000Z","updated_at":"2026-06-08T13:19:24.000Z","time_to_close":484,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"patches","update_count":5,"packages":[{"name":"@langchain/langgraph","old_version":"1.3.3","new_version":"1.3.6","repository_url":"https://github.com/langchain-ai/langgraphjs"},{"name":"ioredis","old_version":"5.11.0","new_version":"5.11.1","repository_url":"https://github.com/luin/ioredis"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"posthog-node","old_version":"5.35.11","new_version":"5.36.4","repository_url":"https://github.com/PostHog/posthog-js"},{"name":"axios","old_version":"1.16.1","new_version":"1.17.0","repository_url":"https://github.com/axios/axios"}],"path":null,"ecosystem":"npm"},"body":"Bumps the patches group with 5 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@langchain/langgraph](https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core) | `1.3.3` | `1.3.6` |\n| [ioredis](https://github.com/luin/ioredis) | `5.11.0` | `5.11.1` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [posthog-node](https://github.com/PostHog/posthog-js/tree/HEAD/packages/node) | `5.35.11` | `5.36.4` |\n| [axios](https://github.com/axios/axios) | `1.16.1` | `1.17.0` |\n\nUpdates `@langchain/langgraph` from 1.3.3 to 1.3.6\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/langchain-ai/langgraphjs/releases\"\u003e@​langchain/langgraph's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/langgraph\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.3.6\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/658a076d5b50af9f5b96ab99f26ed629da6e182f\"\u003e\u003ccode\u003e658a076\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/christian-bromann\"\u003e\u003ccode\u003e@​christian-bromann\u003c/code\u003e\u003c/a\u003e! - fix(langgraph): forward named custom stream channels consistently\u003c/p\u003e\n\u003cp\u003eForward remote \u003ccode\u003eStreamChannel\u003c/code\u003e emissions as \u003ccode\u003ecustom:\u0026lt;name\u0026gt;\u003c/code\u003e protocol events and normalize them back to custom-channel payloads in the API session. This aligns JavaScript stream-channel forwarding with the protocol subscription shape used by remote clients, so \u003ccode\u003ecustom:\u0026lt;name\u0026gt;\u003c/code\u003e subscriptions receive extension channel data consistently.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/0a0e04e9ff7e82fd08411cc0094e1f94729a1e1e\"\u003e\u003ccode\u003e0a0e04e\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/658a076d5b50af9f5b96ab99f26ed629da6e182f\"\u003e\u003ccode\u003e658a076\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/a9aa8d6a9b23f5f7d4c56889fa68697b1e076b31\"\u003e\u003ccode\u003ea9aa8d6\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​langchain/langgraph-sdk\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.9.17\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/langgraph\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.3.5\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langgraphjs/pull/2489\"\u003e#2489\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/e3a1933a8825a515d847b38b24a0743f4d418646\"\u003e\u003ccode\u003ee3a1933\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/christian-bromann\"\u003e\u003ccode\u003e@​christian-bromann\u003c/code\u003e\u003c/a\u003e! - fix(core): keep stream chunks as three-element tuples\u003c/p\u003e\n\u003cp\u003eEmit lightweight checkpoint envelopes as separate\n\u003ccode\u003e[namespace, \u0026quot;checkpoints\u0026quot;, envelope]\u003c/code\u003e chunks before paired \u003ccode\u003evalues\u003c/code\u003e chunks.\nPublic \u003ccode\u003estream()\u003c/code\u003e always yields \u003ccode\u003e[namespace, mode, payload]\u003c/code\u003e; the v3\nprotocol path surfaces envelopes via \u003ccode\u003econvertToProtocolEvent\u003c/code\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/244c24eaccff4009df7d83e4320e51a4b310b15f\"\u003e\u003ccode\u003e244c24e\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​langchain/langgraph-sdk\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.9.16\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ccode\u003e@​langchain/langgraph\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.3.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langgraphjs/pull/2035\"\u003e#2035\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/7c3a98b23af29fee0d9f064942abb71044ed0e51\"\u003e\u003ccode\u003e7c3a98b\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/JadenKim-dev\"\u003e\u003ccode\u003e@​JadenKim-dev\u003c/code\u003e\u003c/a\u003e! - fix(core): prevent Zod schema defaults from overwriting checkpoint state in Command.update\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/04915347128e40fc9617647cadba6b472a357d36\"\u003e\u003ccode\u003e0491534\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​langchain/langgraph-sdk\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.9.12\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/langchain-ai/langgraphjs/blob/main/libs/langgraph-core/CHANGELOG.md\"\u003e@​langchain/langgraph's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.3.6\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/658a076d5b50af9f5b96ab99f26ed629da6e182f\"\u003e\u003ccode\u003e658a076\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/christian-bromann\"\u003e\u003ccode\u003e@​christian-bromann\u003c/code\u003e\u003c/a\u003e! - fix(langgraph): forward named custom stream channels consistently\u003c/p\u003e\n\u003cp\u003eForward remote \u003ccode\u003eStreamChannel\u003c/code\u003e emissions as \u003ccode\u003ecustom:\u0026lt;name\u0026gt;\u003c/code\u003e protocol events and normalize them back to custom-channel payloads in the API session. This aligns JavaScript stream-channel forwarding with the protocol subscription shape used by remote clients, so \u003ccode\u003ecustom:\u0026lt;name\u0026gt;\u003c/code\u003e subscriptions receive extension channel data consistently.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/0a0e04e9ff7e82fd08411cc0094e1f94729a1e1e\"\u003e\u003ccode\u003e0a0e04e\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/658a076d5b50af9f5b96ab99f26ed629da6e182f\"\u003e\u003ccode\u003e658a076\u003c/code\u003e\u003c/a\u003e, \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/a9aa8d6a9b23f5f7d4c56889fa68697b1e076b31\"\u003e\u003ccode\u003ea9aa8d6\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​langchain/langgraph-sdk\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.9.17\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e1.3.5\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langgraphjs/pull/2489\"\u003e#2489\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/e3a1933a8825a515d847b38b24a0743f4d418646\"\u003e\u003ccode\u003ee3a1933\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/christian-bromann\"\u003e\u003ccode\u003e@​christian-bromann\u003c/code\u003e\u003c/a\u003e! - fix(core): keep stream chunks as three-element tuples\u003c/p\u003e\n\u003cp\u003eEmit lightweight checkpoint envelopes as separate\n\u003ccode\u003e[namespace, \u0026quot;checkpoints\u0026quot;, envelope]\u003c/code\u003e chunks before paired \u003ccode\u003evalues\u003c/code\u003e chunks.\nPublic \u003ccode\u003estream()\u003c/code\u003e always yields \u003ccode\u003e[namespace, mode, payload]\u003c/code\u003e; the v3\nprotocol path surfaces envelopes via \u003ccode\u003econvertToProtocolEvent\u003c/code\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/244c24eaccff4009df7d83e4320e51a4b310b15f\"\u003e\u003ccode\u003e244c24e\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​langchain/langgraph-sdk\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.9.16\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e1.3.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/langchain-ai/langgraphjs/pull/2035\"\u003e#2035\u003c/a\u003e \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/7c3a98b23af29fee0d9f064942abb71044ed0e51\"\u003e\u003ccode\u003e7c3a98b\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/JadenKim-dev\"\u003e\u003ccode\u003e@​JadenKim-dev\u003c/code\u003e\u003c/a\u003e! - fix(core): prevent Zod schema defaults from overwriting checkpoint state in Command.update\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated dependencies [\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/04915347128e40fc9617647cadba6b472a357d36\"\u003e\u003ccode\u003e0491534\u003c/code\u003e\u003c/a\u003e]:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​langchain/langgraph-sdk\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.9.12\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/c41878187014ff58a4ee8371fa8361edc97b2e84\"\u003e\u003ccode\u003ec418781\u003c/code\u003e\u003c/a\u003e chore: version packages (\u003ca href=\"https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core/issues/2495\"\u003e#2495\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/a9aa8d6a9b23f5f7d4c56889fa68697b1e076b31\"\u003e\u003ccode\u003ea9aa8d6\u003c/code\u003e\u003c/a\u003e fix(sdk): reconcile subagents and subgraphs on thread reconnect (\u003ca href=\"https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core/issues/2497\"\u003e#2497\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/28fbf1dc4e4cfd8045d4ac8175bf2c9619ca1884\"\u003e\u003ccode\u003e28fbf1d\u003c/code\u003e\u003c/a\u003e chore: version packages (\u003ca href=\"https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core/issues/2490\"\u003e#2490\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/c6528b2ff42cea138910aecdf3b73907b751fb10\"\u003e\u003ccode\u003ec6528b2\u003c/code\u003e\u003c/a\u003e chore(sdk): update vitest browser dependency (\u003ca href=\"https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core/issues/2493\"\u003e#2493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/e3a1933a8825a515d847b38b24a0743f4d418646\"\u003e\u003ccode\u003ee3a1933\u003c/code\u003e\u003c/a\u003e fix(core): keep stream() on 3-tuple shape (\u003ca href=\"https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core/issues/2489\"\u003e#2489\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/a4919b667ed297dc89634e3471336aaaefbdea53\"\u003e\u003ccode\u003ea4919b6\u003c/code\u003e\u003c/a\u003e chore(deps): bump the langchain group across 1 directory with 8 updates (\u003ca href=\"https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core/issues/2476\"\u003e#2476\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/c6b29fb040963e3dcedb7e98ee3a3e3a728e5f82\"\u003e\u003ccode\u003ec6b29fb\u003c/code\u003e\u003c/a\u003e chore: version packages (\u003ca href=\"https://github.com/langchain-ai/langgraphjs/tree/HEAD/libs/langgraph-core/issues/2465\"\u003e#2465\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/langchain-ai/langgraphjs/commit/7c3a98b23af29fee0d9f064942abb71044ed0e51\"\u003e\u003ccode\u003e7c3a98b\u003c/code\u003e\u003c/a\u003e fix(core): prevent Zod schema defaults from overwriting checkpoint state in C...\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/langchain-ai/langgraphjs/commits/@langchain/langgraph@1.3.6/libs/langgraph-core\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ioredis` from 5.11.0 to 5.11.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/luin/ioredis/releases\"\u003eioredis's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev5.11.1\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/luin/ioredis/compare/v5.11.0...v5.11.1\"\u003e5.11.1\u003c/a\u003e (2026-06-04)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecluster:\u003c/strong\u003e reconnect to nodes that restart without slot changes (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2096\"\u003e#2096\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/c84b2ee97fd7b25d8f6ef8b509c228a602f47cca\"\u003ec84b2ee\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse protocol-relative Redis URLs as TCP connections (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2125\"\u003e#2125\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/131ee24173380b986e62ecc428ddde82be12bc40\"\u003e131ee24\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/redis/ioredis/blob/main/CHANGELOG.md\"\u003eioredis's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/luin/ioredis/compare/v5.11.0...v5.11.1\"\u003e5.11.1\u003c/a\u003e (2026-06-04)\u003c/h2\u003e\n\u003ch3\u003eBug Fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003ecluster:\u003c/strong\u003e reconnect to nodes that restart without slot changes (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2096\"\u003e#2096\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/c84b2ee97fd7b25d8f6ef8b509c228a602f47cca\"\u003ec84b2ee\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eparse protocol-relative Redis URLs as TCP connections (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2125\"\u003e#2125\u003c/a\u003e) (\u003ca href=\"https://github.com/luin/ioredis/commit/131ee24173380b986e62ecc428ddde82be12bc40\"\u003e131ee24\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/redis/ioredis/commit/fb224a7609b6d25959e06e31fdab2460d1f75691\"\u003e\u003ccode\u003efb224a7\u003c/code\u003e\u003c/a\u003e chore(release): 5.11.1 [skip ci]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/redis/ioredis/commit/131ee24173380b986e62ecc428ddde82be12bc40\"\u003e\u003ccode\u003e131ee24\u003c/code\u003e\u003c/a\u003e fix: parse protocol-relative Redis URLs as TCP connections (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2125\"\u003e#2125\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/redis/ioredis/commit/c84b2ee97fd7b25d8f6ef8b509c228a602f47cca\"\u003e\u003ccode\u003ec84b2ee\u003c/code\u003e\u003c/a\u003e fix(cluster): reconnect to nodes that restart without slot changes (\u003ca href=\"https://redirect.github.com/luin/ioredis/issues/2096\"\u003e#2096\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/luin/ioredis/compare/v5.11.0...v5.11.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `morgan` from 1.10.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `posthog-node` from 5.35.11 to 5.36.4\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/PostHog/posthog-js/releases\"\u003eposthog-node's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eposthog-node@5.36.4\u003c/h2\u003e\n\u003ch2\u003e5.36.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.10\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eposthog-node@5.36.3\u003c/h2\u003e\n\u003ch2\u003e5.36.3\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.9\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eposthog-node@5.36.2\u003c/h2\u003e\n\u003ch2\u003e5.36.2\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.8\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eposthog-node@5.36.1\u003c/h2\u003e\n\u003ch2\u003e5.36.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.7\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eposthog-node@5.36.0\u003c/h2\u003e\n\u003ch2\u003e5.36.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/PostHog/posthog-js/pull/3728\"\u003e#3728\u003c/a\u003e \u003ca href=\"https://github.com/PostHog/posthog-js/commit/9287c87b7d4cf00160269d0cc648074f27c0847a\"\u003e\u003ccode\u003e9287c87\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/turnipdabeets\"\u003e\u003ccode\u003e@​turnipdabeets\u003c/code\u003e\u003c/a\u003e! - Add a configurable \u003ccode\u003e$is_server\u003c/code\u003e event property (default \u003ccode\u003etrue\u003c/code\u003e) so PostHog can identify server-side events. Set \u003ccode\u003eisServer: false\u003c/code\u003e when using the SDK as a client/CLI so the device OS is attributed normally.\n(2026-06-04)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eposthog-node@5.35.15\u003c/h2\u003e\n\u003ch2\u003e5.35.15\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.6\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eposthog-node@5.35.14\u003c/h2\u003e\n\u003ch2\u003e5.35.14\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/PostHog/posthog-js/blob/main/packages/node/CHANGELOG.md\"\u003eposthog-node's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.36.4\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.10\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.36.3\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.9\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.36.2\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.8\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.36.1\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.7\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.36.0\u003c/h2\u003e\n\u003ch3\u003eMinor Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/PostHog/posthog-js/pull/3728\"\u003e#3728\u003c/a\u003e \u003ca href=\"https://github.com/PostHog/posthog-js/commit/9287c87b7d4cf00160269d0cc648074f27c0847a\"\u003e\u003ccode\u003e9287c87\u003c/code\u003e\u003c/a\u003e Thanks \u003ca href=\"https://github.com/turnipdabeets\"\u003e\u003ccode\u003e@​turnipdabeets\u003c/code\u003e\u003c/a\u003e! - Add a configurable \u003ccode\u003e$is_server\u003c/code\u003e event property (default \u003ccode\u003etrue\u003c/code\u003e) so PostHog can identify server-side events. Set \u003ccode\u003eisServer: false\u003c/code\u003e when using the SDK as a client/CLI so the device OS is attributed normally.\n(2026-06-04)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.35.15\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.6\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.35.14\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies []:\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003e@​posthog/core\u003c/code\u003e\u003ca href=\"https://github.com/1\"\u003e\u003ccode\u003e@​1\u003c/code\u003e\u003c/a\u003e.30.5\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e5.35.13\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/d46f0b9b8015c336103dccab12dadd8e071e895f\"\u003e\u003ccode\u003ed46f0b9\u003c/code\u003e\u003c/a\u003e chore: update versions and lockfile [version bump]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/e0ebad51a12ea6276f9fda7ecd6cb57a6ff8f3a1\"\u003e\u003ccode\u003ee0ebad5\u003c/code\u003e\u003c/a\u003e chore: update versions and lockfile [version bump]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/a8fd22825d9e9203ed88084d2c07b7b31e585f2f\"\u003e\u003ccode\u003ea8fd228\u003c/code\u003e\u003c/a\u003e chore: update versions and lockfile [version bump]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/287ad9fcbb0990f770ab8e0a4311e8fcde6855be\"\u003e\u003ccode\u003e287ad9f\u003c/code\u003e\u003c/a\u003e chore: update versions and lockfile [version bump]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/dc1e1935b1e9e6f26b184e6adb19d68f44a5682e\"\u003e\u003ccode\u003edc1e193\u003c/code\u003e\u003c/a\u003e chore: update versions and lockfile [version bump]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/9287c87b7d4cf00160269d0cc648074f27c0847a\"\u003e\u003ccode\u003e9287c87\u003c/code\u003e\u003c/a\u003e feat: emit $is_server property on captured events (\u003ca href=\"https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/3728\"\u003e#3728\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/b539fcbe64515945a18190b6c973a1bd727b75f1\"\u003e\u003ccode\u003eb539fcb\u003c/code\u003e\u003c/a\u003e chore: update versions and lockfile [version bump]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/79de44145333bd1c18b6c240fef35baf25dba37d\"\u003e\u003ccode\u003e79de441\u003c/code\u003e\u003c/a\u003e chore: update versions and lockfile [version bump]\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/4a8cacc72ea1f8a371b06e9e92f1d2671190e48a\"\u003e\u003ccode\u003e4a8cacc\u003c/code\u003e\u003c/a\u003e chore: add Sentry attribution comments (\u003ca href=\"https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/3738\"\u003e#3738\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/PostHog/posthog-js/commit/d385e2a28b4f540620ba8afb0d5ae87839d745ce\"\u003e\u003ccode\u003ed385e2a\u003c/code\u003e\u003c/a\u003e chore: clarify error tracking comments (\u003ca href=\"https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/3735\"\u003e#3735\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/PostHog/posthog-js/commits/posthog-node@5.36.4/packages/node\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `axios` from 1.16.1 to 1.17.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/releases\"\u003eaxios's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.17.0 — June 1, 2026\u003c/h2\u003e\n\u003cp\u003eThis release adds Node HTTP zstd decompression, hardens config and release workflows, and fixes authentication, header, proxy, and type-handling regressions.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eConfig Hardening:\u003c/strong\u003e Guarded \u003ccode\u003esocketPath\u003c/code\u003e, \u003ccode\u003eparams\u003c/code\u003e, and \u003ccode\u003eparamsSerializer\u003c/code\u003e reads with own-property checks to prevent inherited prototype values from affecting request behavior, including SSRF-sensitive paths. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10901\"\u003e#10901\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10922\"\u003e#10922\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRelease Publishing:\u003c/strong\u003e Switched the publish workflow to npm staged publishing for safer, auditable package releases with provenance. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10926\"\u003e#10926\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🚀 New Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eHTTP Compression:\u003c/strong\u003e Added Node HTTP adapter support for zstd response decompression, with \u003ccode\u003etransitional.advertiseZstdAcceptEncoding\u003c/code\u003e controlling whether \u003ccode\u003ezstd\u003c/code\u003e is advertised in \u003ccode\u003eAccept-Encoding\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/6792\"\u003e#6792\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10920\"\u003e#10920\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eAuthentication Handling:\u003c/strong\u003e Restored Basic auth on same-origin Node redirects while continuing to strip credentials cross-origin, and aligned the fetch adapter with HTTP adapter behavior for URL-embedded Basic auth. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10929\"\u003e#10929\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eProxy TLS:\u003c/strong\u003e Preserved user \u003ccode\u003ehttpsAgent\u003c/code\u003e TLS options when tunneling HTTPS requests through HTTP CONNECT proxies. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10957\"\u003e#10957\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eReact Native FormData:\u003c/strong\u003e Cleared default \u003ccode\u003eContent-Type\u003c/code\u003e for React Native \u003ccode\u003eFormData\u003c/code\u003e so multipart boundaries can be generated correctly. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10898\"\u003e#10898\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eHeaders:\u003c/strong\u003e Silently skipped empty or whitespace-only header names instead of throwing, matching parsed-header behavior and avoiding React Native response crashes. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10875\"\u003e#10875\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRequest Data Merging:\u003c/strong\u003e Preserved enumerable symbol keys when cloning plain request data through axios merge logic. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10812\"\u003e#10812\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eBundler Compatibility:\u003c/strong\u003e Converted \u003ccode\u003eresolveConfig\u003c/code\u003e from an arrow default export to a named function export to avoid webpack and Babel transform interop failures. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10891\"\u003e#10891\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eTypes:\u003c/strong\u003e Corrected \u003ccode\u003eAxiosHeaders.toJSON()\u003c/code\u003e return types and updated CommonJS \u003ccode\u003eisCancel\u003c/code\u003e typings to narrow to \u003ccode\u003eCanceledError\u0026lt;T\u0026gt;\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10956\"\u003e#10956\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10952\"\u003e#10952\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eBuild Tooling:\u003c/strong\u003e Avoided emitting a null \u003ccode\u003eAuthorization\u003c/code\u003e header from the GitHub build helper when \u003ccode\u003eGITHUB_TOKEN\u003c/code\u003e is unset. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10931\"\u003e#10931\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eHTTP/2 Internals:\u003c/strong\u003e Extracted \u003ccode\u003eHttp2Sessions\u003c/code\u003e into its own helper module and added direct unit coverage for session pooling, timeout, and cleanup behavior. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10861\"\u003e#10861\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ePackage Publishing:\u003c/strong\u003e Reduced published package size by switching to a \u003ccode\u003efiles\u003c/code\u003e allowlist and dropping unneeded unminified bundle source maps. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10939\"\u003e#10939\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eCI and Release Automation:\u003c/strong\u003e Added bundle-size reporting, moved reports to the job summary, fixed bundle-size comparison coverage, added Node 26 to the matrix, pinned npm for staged publishing, and prepared the 1.17.0 release. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10907\"\u003e#10907\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10911\"\u003e#10911\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10916\"\u003e#10916\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10927\"\u003e#10927\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10935\"\u003e#10935\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10983\"\u003e#10983\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eDeveloper Workflow:\u003c/strong\u003e Added a dev container and iterated on OpenSpec workflow files before removing them from the release branch. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10925\"\u003e#10925\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10914\"\u003e#10914\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10958\"\u003e#10958\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eDocumentation and Policy:\u003c/strong\u003e Updated disclosure, contributor, collaboration, threat-model, advanced docs, README badges, release notes, moderator configuration, and project metadata. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10890\"\u003e#10890\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10889\"\u003e#10889\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10921\"\u003e#10921\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10945\"\u003e#10945\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10905\"\u003e#10905\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10933\"\u003e#10933\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10915\"\u003e#10915\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10887\"\u003e#10887\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10955\"\u003e#10955\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eDependencies:\u003c/strong\u003e Bumped Babel tooling, Commitlint, ESLint, Rollup, Globals, Vitest, Playwright, \u003ccode\u003efs-extra\u003c/code\u003e, \u003ccode\u003eqs\u003c/code\u003e, docs dependencies, and GitHub Actions dependencies including \u003ccode\u003eactions/dependency-review-action\u003c/code\u003e and \u003ccode\u003ezizmorcore/zizmor-action\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10871\"\u003e#10871\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10879\"\u003e#10879\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10918\"\u003e#10918\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10919\"\u003e#10919\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10934\"\u003e#10934\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10947\"\u003e#10947\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10954\"\u003e#10954\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10960\"\u003e#10960\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🌟 New Contributors\u003c/h2\u003e\n\u003cp\u003eWe are thrilled to welcome our new contributors. Thank you for helping improve axios:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/BasixKOR\"\u003e\u003ccode\u003e@​BasixKOR\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/6792\"\u003e#6792\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/carladams1299-lab\"\u003e\u003ccode\u003e@​carladams1299-lab\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10861\"\u003e#10861\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/LaplaceYoung\"\u003e\u003ccode\u003e@​LaplaceYoung\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10812\"\u003e#10812\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/JamieMagee\"\u003e\u003ccode\u003e@​JamieMagee\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10939\"\u003e#10939\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/RonGamzu\"\u003e\u003ccode\u003e@​RonGamzu\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10905\"\u003e#10905\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/sapirbaruch\"\u003e\u003ccode\u003e@​sapirbaruch\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10891\"\u003e#10891\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/nezukoagent\"\u003e\u003ccode\u003e@​nezukoagent\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10901\"\u003e#10901\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/devareddy05\"\u003e\u003ccode\u003e@​devareddy05\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10929\"\u003e#10929\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/Mohammad-Faiz-Cloud-Engineer\"\u003e\u003ccode\u003e@​Mohammad-Faiz-Cloud-Engineer\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10922\"\u003e#10922\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/azandabot\"\u003e\u003ccode\u003e@​azandabot\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10931\"\u003e#10931\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/niksy\"\u003e\u003ccode\u003e@​niksy\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/axios/axios/compare/v1.16.1...v1.17.0\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/axios/axios/blob/v1.x/CHANGELOG.md\"\u003eaxios's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.17.0 — June 1, 2026\u003c/h2\u003e\n\u003cp\u003eThis release adds Node HTTP zstd decompression, hardens config and release workflows, and fixes authentication, header, proxy, and type-handling regressions.\u003c/p\u003e\n\u003ch2\u003e🔒 Security Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eConfig Hardening:\u003c/strong\u003e Guarded \u003ccode\u003esocketPath\u003c/code\u003e, \u003ccode\u003eparams\u003c/code\u003e, and \u003ccode\u003eparamsSerializer\u003c/code\u003e reads with own-property checks to prevent inherited prototype values from affecting request behavior, including SSRF-sensitive paths. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10901\"\u003e#10901\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10922\"\u003e#10922\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRelease Publishing:\u003c/strong\u003e Switched the publish workflow to npm staged publishing for safer, auditable package releases with provenance. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10926\"\u003e#10926\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🚀 New Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eHTTP Compression:\u003c/strong\u003e Added Node HTTP adapter support for zstd response decompression, with \u003ccode\u003etransitional.advertiseZstdAcceptEncoding\u003c/code\u003e controlling whether \u003ccode\u003ezstd\u003c/code\u003e is advertised in \u003ccode\u003eAccept-Encoding\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/6792\"\u003e#6792\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10920\"\u003e#10920\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eAuthentication Handling:\u003c/strong\u003e Restored Basic auth on same-origin Node redirects while continuing to strip credentials cross-origin, and aligned the fetch adapter with HTTP adapter behavior for URL-embedded Basic auth. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10929\"\u003e#10929\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eProxy TLS:\u003c/strong\u003e Preserved user \u003ccode\u003ehttpsAgent\u003c/code\u003e TLS options when tunneling HTTPS requests through HTTP CONNECT proxies. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10957\"\u003e#10957\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eReact Native FormData:\u003c/strong\u003e Cleared default \u003ccode\u003eContent-Type\u003c/code\u003e for React Native \u003ccode\u003eFormData\u003c/code\u003e so multipart boundaries can be generated correctly. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10898\"\u003e#10898\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eHeaders:\u003c/strong\u003e Silently skipped empty or whitespace-only header names instead of throwing, matching parsed-header behavior and avoiding React Native response crashes. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10875\"\u003e#10875\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eRequest Data Merging:\u003c/strong\u003e Preserved enumerable symbol keys when cloning plain request data through axios merge logic. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10812\"\u003e#10812\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eBundler Compatibility:\u003c/strong\u003e Converted \u003ccode\u003eresolveConfig\u003c/code\u003e from an arrow default export to a named function export to avoid webpack and Babel transform interop failures. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10891\"\u003e#10891\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eTypes:\u003c/strong\u003e Corrected \u003ccode\u003eAxiosHeaders.toJSON()\u003c/code\u003e return types and updated CommonJS \u003ccode\u003eisCancel\u003c/code\u003e typings to narrow to \u003ccode\u003eCanceledError\u0026lt;T\u0026gt;\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10956\"\u003e#10956\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10952\"\u003e#10952\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eBuild Tooling:\u003c/strong\u003e Avoided emitting a null \u003ccode\u003eAuthorization\u003c/code\u003e header from the GitHub build helper when \u003ccode\u003eGITHUB_TOKEN\u003c/code\u003e is unset. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10931\"\u003e#10931\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Maintenance \u0026amp; Chores\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eHTTP/2 Internals:\u003c/strong\u003e Extracted \u003ccode\u003eHttp2Sessions\u003c/code\u003e into its own helper module and added direct unit coverage for session pooling, timeout, and cleanup behavior. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10861\"\u003e#10861\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003ePackage Publishing:\u003c/strong\u003e Reduced published package size by switching to a \u003ccode\u003efiles\u003c/code\u003e allowlist and dropping unneeded unminified bundle source maps. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10939\"\u003e#10939\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eCI and Release Automation:\u003c/strong\u003e Added bundle-size reporting, moved reports to the job summary, fixed bundle-size comparison coverage, added Node 26 to the matrix, pinned npm for staged publishing, and prepared the 1.17.0 release. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10907\"\u003e#10907\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10911\"\u003e#10911\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10916\"\u003e#10916\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10927\"\u003e#10927\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10935\"\u003e#10935\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10983\"\u003e#10983\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eDeveloper Workflow:\u003c/strong\u003e Added a dev container and iterated on OpenSpec workflow files before removing them from the release branch. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10925\"\u003e#10925\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10914\"\u003e#10914\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10958\"\u003e#10958\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eDocumentation and Policy:\u003c/strong\u003e Updated disclosure, contributor, collaboration, threat-model, advanced docs, README badges, release notes, moderator configuration, and project metadata. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10890\"\u003e#10890\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10889\"\u003e#10889\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10921\"\u003e#10921\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10945\"\u003e#10945\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10905\"\u003e#10905\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10933\"\u003e#10933\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10915\"\u003e#10915\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10887\"\u003e#10887\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10955\"\u003e#10955\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003eDependencies:\u003c/strong\u003e Bumped Babel tooling, Commitlint, ESLint, Rollup, Globals, Vitest, Playwright, \u003ccode\u003efs-extra\u003c/code\u003e, \u003ccode\u003eqs\u003c/code\u003e, docs dependencies, and GitHub Actions dependencies including \u003ccode\u003eactions/dependency-review-action\u003c/code\u003e and \u003ccode\u003ezizmorcore/zizmor-action\u003c/code\u003e. (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10871\"\u003e#10871\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10879\"\u003e#10879\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10918\"\u003e#10918\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10919\"\u003e#10919\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10934\"\u003e#10934\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10947\"\u003e#10947\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10954\"\u003e#10954\u003c/a\u003e\u003c/strong\u003e, \u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10960\"\u003e#10960\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🌟 New Contributors\u003c/h2\u003e\n\u003cp\u003eWe are thrilled to welcome our new contributors. Thank you for helping improve axios:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/BasixKOR\"\u003e\u003ccode\u003e@​BasixKOR\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/6792\"\u003e#6792\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/carladams1299-lab\"\u003e\u003ccode\u003e@​carladams1299-lab\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10861\"\u003e#10861\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/LaplaceYoung\"\u003e\u003ccode\u003e@​LaplaceYoung\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10812\"\u003e#10812\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/JamieMagee\"\u003e\u003ccode\u003e@​JamieMagee\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10939\"\u003e#10939\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/RonGamzu\"\u003e\u003ccode\u003e@​RonGamzu\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10905\"\u003e#10905\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/sapirbaruch\"\u003e\u003ccode\u003e@​sapirbaruch\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10891\"\u003e#10891\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/nezukoagent\"\u003e\u003ccode\u003e@​nezukoagent\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10901\"\u003e#10901\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/devareddy05\"\u003e\u003ccode\u003e@​devareddy05\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10929\"\u003e#10929\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/Mohammad-Faiz-Cloud-Engineer\"\u003e\u003ccode\u003e@​Mohammad-Faiz-Cloud-Engineer\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10922\"\u003e#10922\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/azandabot\"\u003e\u003ccode\u003e@​azandabot\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10931\"\u003e#10931\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003cli\u003e\u003cstrong\u003e\u003ca href=\"https://github.com/niksy\"\u003e\u003ccode\u003e@​niksy\u003c/code\u003e\u003c/a\u003e\u003c/strong\u003e (\u003cstrong\u003e\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e\u003c/strong\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/axios/axios/compare/v1.16.1...v1.17.0\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/4306df21e84332fc576e98c2de549347c06bfb76\"\u003e\u003ccode\u003e4306df2\u003c/code\u003e\u003c/a\u003e chore: add fun 88 sponsorship\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/931cc8f0106db4c9885403f85364b9e09ae1f6dc\"\u003e\u003ccode\u003e931cc8f\u003c/code\u003e\u003c/a\u003e chore(release): prepare release 1.17.0 (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10983\"\u003e#10983\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/38ba1b3d2b0aa5ada0463a37a548feb83a84dfa1\"\u003e\u003ccode\u003e38ba1b3\u003c/code\u003e\u003c/a\u003e fix(fetch): support basic auth from URL (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10896\"\u003e#10896\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/32e2515f1e09b649723e4acd89d920df13eee77e\"\u003e\u003ccode\u003e32e2515\u003c/code\u003e\u003c/a\u003e fix: replace ternary side effect in script (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10931\"\u003e#10931\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/030e7223831b0f562af3eb7501b24242c8a4c5ba\"\u003e\u003ccode\u003e030e722\u003c/code\u003e\u003c/a\u003e chore(deps): bump axios from 1.15.2 to 1.16.1 in /docs (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10960\"\u003e#10960\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/ec63164ac6b7a1fcd6b742a8628d3fffe23ce001\"\u003e\u003ccode\u003eec63164\u003c/code\u003e\u003c/a\u003e chore: remove openspec (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10958\"\u003e#10958\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/3dec28f94ce29d396d5f2d9718805b47428dc7ab\"\u003e\u003ccode\u003e3dec28f\u003c/code\u003e\u003c/a\u003e fix(http): preserve TLS options for proxy tunnels (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10957\"\u003e#10957\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/a2390a5c059342bcac2a5297728181dd9939f562\"\u003e\u003ccode\u003ea2390a5\u003c/code\u003e\u003c/a\u003e fix: correct isCancel type to narrow to CanceledError\u0026lt;T\u0026gt; (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10952\"\u003e#10952\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/fa01b9255d71e72599826428bc6c60f34994c6ce\"\u003e\u003ccode\u003efa01b92\u003c/code\u003e\u003c/a\u003e chore(deps-dev): bump tmp from 0.2.5 to 0.2.7 in /docs (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10954\"\u003e#10954\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/axios/axios/commit/2d2314a1ac29ce6723eb53e130b4a36617fd201c\"\u003e\u003ccode\u003e2d2314a\u003c/code\u003e\u003c/a\u003e fix: AxiosHeaders \u003ccode\u003etoJSON()\u003c/code\u003e return types (\u003ca href=\"https://redirect.github.com/axios/axios/issues/10956\"\u003e#10956\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/axios/axios/compare/v1.16.1...v1.17.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n\u003c/details\u003e","html_url":"https://github.com/forbiddenlink/stancestream/pull/32","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/forbiddenlink%2Fstancestream/issues/32","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/32/packages"}},{"old_version":"1.10.1","new_version":"1.11.0","update_type":"minor","path":null,"pr_created_at":"2026-06-08T04:18:39.000Z","version_change":"1.10.1 → 1.11.0","issue":{"uuid":"4609981405","node_id":"PR_kwDOQhyNV87jwJaJ","number":20,"state":"open","title":"chore(deps): bump the prod-minor-patch group across 1 directory with 8 updates","user":"dependabot[bot]","labels":[],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-06-08T04:18:39.000Z","updated_at":"2026-06-08T04:18:39.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"prod-minor-patch","update_count":8,"packages":[{"name":"@simplewebauthn/server","old_version":"13.3.0","new_version":"13.3.1","repository_url":"https://github.com/MasterKale/SimpleWebAuthn"},{"name":"date-fns","old_version":"4.1.0","new_version":"4.4.0","repository_url":"https://github.com/date-fns/date-fns"},{"name":"dompurify","old_version":"3.4.4","new_version":"3.4.8","repository_url":"https://github.com/cure53/DOMPurify"},{"name":"helmet","old_version":"8.1.0","new_version":"8.2.0","repository_url":"https://github.com/helmetjs/helmet"},{"name":"morgan","old_version":"1.10.1","new_version":"1.11.0","repository_url":"https://github.com/expressjs/morgan"},{"name":"react","old_version":"19.2.6","new_version":"19.2.7","repository_url":"https://github.com/facebook/react"},{"name":"react-dom","old_version":"19.2.6","new_version":"19.2.7","repository_url":"https://github.com/facebook/react"},{"name":"react-router-dom","old_version":"7.15.1","new_version":"7.17.0","repository_url":"https://github.com/remix-run/react-router"}],"path":null,"ecosystem":"npm"},"body":"Bumps the prod-minor-patch group with 8 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [@simplewebauthn/server](https://github.com/MasterKale/SimpleWebAuthn/tree/HEAD/packages/server) | `13.3.0` | `13.3.1` |\n| [date-fns](https://github.com/date-fns/date-fns) | `4.1.0` | `4.4.0` |\n| [dompurify](https://github.com/cure53/DOMPurify) | `3.4.4` | `3.4.8` |\n| [helmet](https://github.com/helmetjs/helmet) | `8.1.0` | `8.2.0` |\n| [morgan](https://github.com/expressjs/morgan) | `1.10.1` | `1.11.0` |\n| [react](https://github.com/facebook/react/tree/HEAD/packages/react) | `19.2.6` | `19.2.7` |\n| [react-dom](https://github.com/facebook/react/tree/HEAD/packages/react-dom) | `19.2.6` | `19.2.7` |\n| [react-router-dom](https://github.com/remix-run/react-router/tree/HEAD/packages/react-router-dom) | `7.15.1` | `7.17.0` |\n\n\nUpdates `@simplewebauthn/server` from 13.3.0 to 13.3.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/MasterKale/SimpleWebAuthn/releases\"\u003e@​simplewebauthn/server's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev13.3.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eChanges:\u003c/strong\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003e[server]\u003c/strong\u003e Fixed an issue with \u003ccode\u003everifyRegistrationResponse()\u003c/code\u003e failing to verify some Packed and SafetyNet statements (\u003ca href=\"https://redirect.github.com/MasterKale/SimpleWebAuthn/pull/767\"\u003e#767\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/MasterKale/SimpleWebAuthn/blob/master/CHANGELOG.md\"\u003e@​simplewebauthn/server's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev13.3.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eChanges:\u003c/strong\u003e\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003e[server]\u003c/strong\u003e Fixed an issue with \u003ccode\u003everifyRegistrationResponse()\u003c/code\u003e failing to verify some Packed and\nSafetyNet statements (\u003ca href=\"https://redirect.github.com/MasterKale/SimpleWebAuthn/pull/767\"\u003e#767\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/MasterKale/SimpleWebAuthn/commit/615538fb1a80d95f9cbb5790a670e5ae1146d455\"\u003e\u003ccode\u003e615538f\u003c/code\u003e\u003c/a\u003e Update version to 13.3.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/MasterKale/SimpleWebAuthn/commit/61601dd1b665aef19ff611f271beebe226673d71\"\u003e\u003ccode\u003e61601dd\u003c/code\u003e\u003c/a\u003e Ignore E2E test for now\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/MasterKale/SimpleWebAuthn/commit/6c43af766a6432d4e4ab65495bda9427e1650bfd\"\u003e\u003ccode\u003e6c43af7\u003c/code\u003e\u003c/a\u003e Use attStmt.alg in Safety Net and Packed Full\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/MasterKale/SimpleWebAuthn/commits/v13.3.1/packages/server\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `date-fns` from 4.1.0 to 4.4.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/date-fns/date-fns/releases\"\u003edate-fns's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.4.0\u003c/h2\u003e\n\u003cp\u003eThis release revisits the approach to CDN usage and introduces a new package, \u003ccode\u003e@date-fns/cdn\u003c/code\u003e and deprecates the \u003ccode\u003edate-fns\u003c/code\u003e CDN scripts. It allowed reducing the zipped package size from \u003ccode\u003e5.83 MB\u003c/code\u003e down to \u003ccode\u003e3.96 MB\u003c/code\u003e without introducing any breaking changes.\u003c/p\u003e\n\u003cp\u003eIn \u003ccode\u003ev5.0.0-alpha.0\u003c/code\u003e where CDN scripts are completely removed from \u003ccode\u003edate-fns\u003c/code\u003e the change is more significant and brings the zipped package size down to \u003ccode\u003e2.89 MB\u003c/code\u003e.\u003c/p\u003e\n\u003cp\u003eIt is just the first step in optimizing the package size. Expect further size reduction in the future v4 and v5 versions.\u003c/p\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003e\u003cstrong\u003eDEPRECATED\u003c/strong\u003e: The \u003ccode\u003edate-fns\u003c/code\u003e CDN scripts are now deprecated and will be removed in the next major release. Please switch to the new \u003ccode\u003e@date-fns/cdn\u003c/code\u003e package for CDN usage.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eRemoved CDN source maps to reduce the package size. If you rely on them, please switch to the new \u003ccode\u003e@date-fns/cdn\u003c/code\u003e package that still includes them.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.3.0\u003c/h2\u003e\n\u003cp\u003eKudos to \u003ca href=\"https://github.com/ImRodry\"\u003e\u003ccode\u003e@​ImRodry\u003c/code\u003e\u003c/a\u003e and \u003ca href=\"https://github.com/puneetdixit200\"\u003e\u003ccode\u003e@​puneetdixit200\u003c/code\u003e\u003c/a\u003e for their contributions.\u003c/p\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eFixed missing modularized optimization fallback (\u003ca href=\"https://x.com/kossnocorp/status/1731181274579325260\"\u003efor Next.js and others\u003c/a\u003e). See \u003ca href=\"https://x.com/kossnocorp/status/1731181274579325260\"\u003e#4193\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eFixed \u003ccode\u003ept\u003c/code\u003e locale first day of week to be Sunday. See \u003ca href=\"https://redirect.github.com/date-fns/date-fns/pull/4195\"\u003e#4195\u003c/a\u003e by \u003ca href=\"https://github.com/ImRodry\"\u003e\u003ccode\u003e@​ImRodry\u003c/code\u003e\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eFixed \u003ccode\u003ezh-CN\u003c/code\u003e, \u003ccode\u003ezh-HK\u003c/code\u003e, and \u003ccode\u003ezh-TW\u003c/code\u003e locale month parsing for October, November, and December. See \u003ca href=\"https://redirect.github.com/date-fns/date-fns/pull/4194\"\u003e#4194\u003c/a\u003e by \u003ca href=\"https://github.com/puneetdixit200\"\u003e\u003ccode\u003e@​puneetdixit200\u003c/code\u003e\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.2.1\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFixed type definitions missing in v4.2.0 due to TypeScript misconfiguration.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev4.2.0\u003c/h2\u003e\n\u003cp\u003eThis is a minor release in all senses, it only includes documentation updates (first of many) that points to the new \u003ca href=\"https://date-fns.org/you-dont-need-date-fns\"\u003eYou Don't Need date-fns*\u003c/a\u003e page.\u003c/p\u003e\n\u003cp\u003e* Not really\u003c/p\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAdded Temporal API references to the JSDoc annotations of \u003ccode\u003eadd\u003c/code\u003e, \u003ccode\u003eaddBusinessDays\u003c/code\u003e, and \u003ccode\u003eaddDays\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/cd53d2538cfa318404eff7ade6449b49bf34562e\"\u003e\u003ccode\u003ecd53d25\u003c/code\u003e\u003c/a\u003e Promote to v4.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/d948ec151d395096de8a45fbcd9b1e79c26fda25\"\u003e\u003ccode\u003ed948ec1\u003c/code\u003e\u003c/a\u003e Preserve but deprecate CDN versions for v4, set up v5 with polyfills\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/ee65753cfc5d73cc9acd43aaa8012b3b233ddf32\"\u003e\u003ccode\u003eee65753\u003c/code\u003e\u003c/a\u003e Add root \u003ccode\u003emise :format\u003c/code\u003e task\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/9f5bdf5d5a944772aa9668c4fa6567d89ca01fa9\"\u003e\u003ccode\u003e9f5bdf5\u003c/code\u003e\u003c/a\u003e Add positional argument to \u003ccode\u003etest/smoke.sh\u003c/code\u003e script\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/651ead6faf331515814803faf457f5b9db7c9729\"\u003e\u003ccode\u003e651ead6\u003c/code\u003e\u003c/a\u003e Split CDN bundles into separate \u003ccode\u003e@​date-fns/cdn\u003c/code\u003e package\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/224c1a209967dad359a2c2adc9a5b0ef72e4fe7b\"\u003e\u003ccode\u003e224c1a2\u003c/code\u003e\u003c/a\u003e Deprecate type tests as attw hangs on date-fns package\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/7bb2842dac3d579f84b2de62f015335fb3ac734a\"\u003e\u003ccode\u003e7bb2842\u003c/code\u003e\u003c/a\u003e Switch \u003ccode\u003ePACKAGE_OUTPUT_PATH\u003c/code\u003e to \u003ccode\u003e--dist\u003c/code\u003e flag in the package build script\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/b6ad5acc5ab0b40777a2695ec074c2ffcd982763\"\u003e\u003ccode\u003eb6ad5ac\u003c/code\u003e\u003c/a\u003e Add flags to control package build script\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/424a783de1fd974bcdbe907c9c5eb5154e9db29f\"\u003e\u003ccode\u003e424a783\u003c/code\u003e\u003c/a\u003e Fix docs release after moving to monorepo setup\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/date-fns/date-fns/commit/f95bcf18b53e6832b2c575c24c98654a24f52699\"\u003e\u003ccode\u003ef95bcf1\u003c/code\u003e\u003c/a\u003e (docs): Add missing \u003ccode\u003etsx\u003c/code\u003e dependency\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/date-fns/date-fns/compare/v4.1.0...v4.4.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `dompurify` from 3.4.4 to 3.4.8\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cure53/DOMPurify/releases\"\u003edompurify's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eDOMPurify 3.4.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eCleaned up the repository root, renamed some and removed unneeded files\u003c/li\u003e\n\u003cli\u003eFixed an issue with handling of Trusted Types policies, thanks \u003ca href=\"https://github.com/fulstadev\"\u003e\u003ccode\u003e@​fulstadev\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFixed the node iterator for better template scrubbing, thanks \u003ca href=\"https://github.com/IamLeandrooooo\"\u003e\u003ccode\u003e@​IamLeandrooooo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIncluded formerly missing LICENSE-MPL in published npm package, thanks \u003ca href=\"https://github.com/asamuzaK\"\u003e\u003ccode\u003e@​asamuzaK\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBumped several dependencies where possible\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eDOMPurify 3.4.7\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eHardened the handling of Shadow Roots when using \u003ccode\u003eIN_PLACE\u003c/code\u003e, thanks \u003ca href=\"https://github.com/GameZoneHacker\"\u003e\u003ccode\u003e@​GameZoneHacker\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemoved a problem leading to permanent hook pollution, thanks \u003ca href=\"https://github.com/offset\"\u003e\u003ccode\u003e@​offset\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactored the test suite and expanded test coverage significantly\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eDOMPurify 3.4.6\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed several issues with DOM Clobbering in \u003ccode\u003eIN_PLACE\u003c/code\u003e mode, thanks \u003ca href=\"https://github.com/offset\"\u003e\u003ccode\u003e@​offset\u003c/code\u003e\u003c/a\u003e \u0026amp; \u003ca href=\"https://github.com/Bankde\"\u003e\u003ccode\u003e@​Bankde\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHardened the checks for cross-realm \u003ccode\u003eIN_PLACE\u003c/code\u003e and Shadow DOM sanitization, thanks \u003ca href=\"https://github.com/offset\"\u003e\u003ccode\u003e@​offset\u003c/code\u003e\u003c/a\u003e \u0026amp; \u003ca href=\"https://github.com/Bankde\"\u003e\u003ccode\u003e@​Bankde\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdded more test coverage for \u003ccode\u003eIN_PLACE\u003c/code\u003e and general DOM Clobbering attacks\u003c/li\u003e\n\u003cli\u003eBumped several dependencies where possible\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eDOMPurify 3.4.5\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed a bypass caused by the new HTML element \u003ccode\u003eselectedcontent\u003c/code\u003e added in 3.4.4, thanks \u003ca href=\"https://github.com/KabirAcharya\"\u003e\u003ccode\u003e@​KabirAcharya\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eNote that this is a security release for an issue introduced in 3.4.4 and should be upgraded to immediately.\u003c/strong\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cure53/DOMPurify/commit/bcdd8285412dc9c4c149652aed2d712e790d6ccf\"\u003e\u003ccode\u003ebcdd828\u003c/code\u003e\u003c/a\u003e release: 3.4.8 (\u003ca href=\"https://redirect.github.com/cure53/DOMPurify/issues/1439\"\u003e#1439\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cure53/DOMPurify/commit/ca30f070c360df162a3e3848e80e6fd3c9e74bff\"\u003e\u003ccode\u003eca30f07\u003c/code\u003e\u003c/a\u003e release: 3.4.7 (\u003ca href=\"https://redirect.github.com/cure53/DOMPurify/issues/1414\"\u003e#1414\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cure53/DOMPurify/commit/bb7739e5bccec7e1ab3dae3f3e42d02db3acaaae\"\u003e\u003ccode\u003ebb7739e\u003c/code\u003e\u003c/a\u003e release: 3.4.6 (\u003ca href=\"https://redirect.github.com/cure53/DOMPurify/issues/1394\"\u003e#1394\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cure53/DOMPurify/commit/011b0c78f2a0f57ee54f5fcccb697a46ca6e63ea\"\u003e\u003ccode\u003e011b0c7\u003c/code\u003e\u003c/a\u003e release: 3.4.5 (\u003ca href=\"https://redirect.github.com/cure53/DOMPurify/issues/1382\"\u003e#1382\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/cure53/DOMPurify/compare/3.4.4...3.4.8\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eInstall script changes\u003c/summary\u003e\n\u003cp\u003eThis version adds \u003ccode\u003eprepare\u003c/code\u003e script that runs during installation. Review the package contents before updating.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `helmet` from 8.1.0 to 8.2.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/helmetjs/helmet/blob/main/CHANGELOG.md\"\u003ehelmet's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.2.0 - 2026-05-21\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ccode\u003eCross-Origin-Opener-Policy\u003c/code\u003e: support \u003ccode\u003enoopener-allow-popups\u003c/code\u003e. See \u003ca href=\"https://redirect.github.com/helmetjs/helmet/pull/522\"\u003e#522\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove error message when passing duplicate options\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/638e43becc81d970778b0bae31703193e295816d\"\u003e\u003ccode\u003e638e43b\u003c/code\u003e\u003c/a\u003e 8.2.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/fdf25a882da3cf0cd89343a6debdae725ec82515\"\u003e\u003ccode\u003efdf25a8\u003c/code\u003e\u003c/a\u003e Update changelog for 8.2.0 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/bd293b74d1bbf67e3eb17b1330f3339acca5d12c\"\u003e\u003ccode\u003ebd293b7\u003c/code\u003e\u003c/a\u003e Update devDependencies to latest versions\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/81ce5cc33ddc8ff1ad621d0d62ab0d10528a1f05\"\u003e\u003ccode\u003e81ce5cc\u003c/code\u003e\u003c/a\u003e Test supported Node versions on CI\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/807a888ded818a1857da5ada274c184cea05ef9e\"\u003e\u003ccode\u003e807a888\u003c/code\u003e\u003c/a\u003e Update to new URL\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/d4e0128652a05e99d1dc66df9c32a00e0db31597\"\u003e\u003ccode\u003ed4e0128\u003c/code\u003e\u003c/a\u003e Add direct link to FAQ\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/437d2eb81363ecb57633e5717e81e4055a431e3e\"\u003e\u003ccode\u003e437d2eb\u003c/code\u003e\u003c/a\u003e Bump actions/setup-node from 6.3.0 to 6.4.0 (\u003ca href=\"https://redirect.github.com/helmetjs/helmet/issues/537\"\u003e#537\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/a6bd779566f3c23b92b287b9df0c6305c80885e8\"\u003e\u003ccode\u003ea6bd779\u003c/code\u003e\u003c/a\u003e Upgrade actions/setup-node to 6.3.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/1e09f5fd8aee6a02dd871712049e31cec3e6fc45\"\u003e\u003ccode\u003e1e09f5f\u003c/code\u003e\u003c/a\u003e Fix changelog typo\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/helmetjs/helmet/commit/d526f5c04578e8905b6a4c3e147b069927bad349\"\u003e\u003ccode\u003ed526f5c\u003c/code\u003e\u003c/a\u003e Bump Picomatch dev sub-dependency\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/helmetjs/helmet/compare/v8.1.0...v8.2.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `morgan` from 1.10.1 to 1.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/releases\"\u003emorgan's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.11.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003efeat: add :pid token by \u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/inigomarquinez\"\u003e\u003ccode\u003e@​inigomarquinez\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/291\"\u003eexpressjs/morgan#291\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jonchurch\"\u003e\u003ccode\u003e@​jonchurch\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/299\"\u003eexpressjs/morgan#299\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjohansebas\"\u003e\u003ccode\u003e@​bjohansebas\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/301\"\u003eexpressjs/morgan#301\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/UlisesGascon\"\u003e\u003ccode\u003e@​UlisesGascon\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/300\"\u003eexpressjs/morgan#300\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ctcpip\"\u003e\u003ccode\u003e@​ctcpip\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/319\"\u003eexpressjs/morgan#319\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ganesh3367\"\u003e\u003ccode\u003e@​ganesh3367\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/expressjs/morgan/pull/329\"\u003eexpressjs/morgan#329\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.0...1.11.0\"\u003ehttps://github.com/expressjs/morgan/compare/1.10.0...1.11.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/expressjs/morgan/blob/master/HISTORY.md\"\u003emorgan's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e1.11.0 / 2026-06-02\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eadd \u003ccode\u003e:pid\u003c/code\u003e token\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSecurity Fix:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eEscape control characters in \u003ccode\u003e:remote-user\u003c/code\u003e token to prevent log injection\n\u003cul\u003e\n\u003cli\u003eFixes \u003ca href=\"https://www.cve.org/CVERecord?id=CVE-2026-5078\"\u003eCVE-2026-5078\u003c/a\u003e \u003ca href=\"https://github.com/expressjs/morgan/security/advisories/GHSA-4vj7-5mj6-jm8m\"\u003eGHSA-4vj7-5mj6-jm8m\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/e0e6f17574db56396f8e60ebb03bb7aaaeb9cc6f\"\u003e\u003ccode\u003ee0e6f17\u003c/code\u003e\u003c/a\u003e Release 1.11.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/350\"\u003e#350\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/b3f5d9bdb388690dfae9c06ab966328f49b7982b\"\u003e\u003ccode\u003eb3f5d9b\u003c/code\u003e\u003c/a\u003e Merge commit from fork\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/203c75852adadcc5e3a9ba23b0ef07a8e81c5af7\"\u003e\u003ccode\u003e203c758\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 4.32.4 to 4.35.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/346\"\u003e#346\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/002bc81f47a7641d86b7e16ee0f343e5eed81a6a\"\u003e\u003ccode\u003e002bc81\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/561b0d70bf4486245b311a02259d32ae45756331\"\u003e\u003ccode\u003e561b0d7\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 5.0.0 to 7.0.0 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/2db705ecf05eed5a2990da4be8731a1d7051692c\"\u003e\u003ccode\u003e2db705e\u003c/code\u003e\u003c/a\u003e build(deps): bump github/codeql-action from 3.29.7 to 4.32.4 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/337\"\u003e#337\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/a373c5f25df88c7f31b4abb36306d7e025edcc8c\"\u003e\u003ccode\u003ea373c5f\u003c/code\u003e\u003c/a\u003e build(deps): bump ossf/scorecard-action from 2.3.1 to 2.4.3 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/327\"\u003e#327\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/c8e72fa73c7e54a00f0e28db1bc6edbeb83dbbc0\"\u003e\u003ccode\u003ec8e72fa\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/checkout from 4.1.1 to 6.0.1 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/324\"\u003e#324\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/023300e37da5e2a3394a50171d07a0bb6860eab5\"\u003e\u003ccode\u003e023300e\u003c/code\u003e\u003c/a\u003e build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/307\"\u003e#307\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/expressjs/morgan/commit/9d8d6c099765b1d4722aadfb68dbf0a227ff8e64\"\u003e\u003ccode\u003e9d8d6c0\u003c/code\u003e\u003c/a\u003e build(deps): bump coverallsapp/github-action from 1.2.5 to 2.3.6 (\u003ca href=\"https://redirect.github.com/expressjs/morgan/issues/306\"\u003e#306\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/expressjs/morgan/compare/1.10.1...1.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `react` from 19.2.6 to 19.2.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/facebook/react/releases\"\u003ereact's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e19.2.7 (June 1st, 2026)\u003c/h2\u003e\n\u003ch2\u003eReact Server Components\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed missing \u003ccode\u003eFormData\u003c/code\u003e entries in Server Actions which regressed in 19.2.6\n(\u003ca href=\"https://redirect.github.com/facebook/react/pull/36566\"\u003e#36566\u003c/a\u003e by \u003ca href=\"https://github.com/unstubbable\"\u003e\u003ccode\u003e@​unstubbable\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/facebook/react/commit/6117d7cca4906492c51fe6a03381e35adfd86e7d\"\u003e\u003ccode\u003e6117d7c\u003c/code\u003e\u003c/a\u003e Version 19.2.7 (\u003ca href=\"https://github.com/facebook/react/tree/HEAD/packages/react/issues/36591\"\u003e#36591\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/facebook/react/commits/v19.2.7/packages/react\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for react since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `react-dom` from 19.2.6 to 19.2.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/facebook/react/releases\"\u003ereact-dom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e19.2.7 (June 1st, 2026)\u003c/h2\u003e\n\u003ch2\u003eReact Server Components\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFixed missing \u003ccode\u003eFormData\u003c/code\u003e entries in Server Actions which regressed in 19.2.6\n(\u003ca href=\"https://redirect.github.com/facebook/react/pull/36566\"\u003e#36566\u003c/a\u003e by \u003ca href=\"https://github.com/unstubbable\"\u003e\u003ccode\u003e@​unstubbable\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/facebook/react/commit/6117d7cca4906492c51fe6a03381e35adfd86e7d\"\u003e\u003ccode\u003e6117d7c\u003c/code\u003e\u003c/a\u003e Version 19.2.7 (\u003ca href=\"https://github.com/facebook/react/tree/HEAD/packages/react-dom/issues/36591\"\u003e#36591\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/facebook/react/commits/v19.2.7/packages/react-dom\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eMaintainer changes\u003c/summary\u003e\n\u003cp\u003eThis version was pushed to npm by \u003ca href=\"https://www.npmjs.com/~GitHub%20Actions\"\u003eGitHub Actions\u003c/a\u003e, a new releaser for react-dom since your current version.\u003c/p\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `react-router-dom` from 7.15.1 to 7.17.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/remix-run/react-router/blob/main/packages/react-router-dom/CHANGELOG.md\"\u003ereact-router-dom's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.17.0\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdated dependencies:\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/remix-run/react-router/releases/tag/react-router@7.17.0\"\u003e\u003ccode\u003ereact-router@7.17.0\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev7.16.0\u003c/h2\u003e\n\u003ch3\u003ePatch Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eRemove stale/invalid \u003ccode\u003eunpkg\u003c/code\u003e field from \u003ccode\u003epackage.json\u003c/code\u003e. This was removed from other packages with the release of v7 but missed in the \u003ccode\u003ereact-router-dom\u003c/code\u003e re-export package (\u003ca href=\"https://redirect.github.com/remix-run/react-router/pull/15075\"\u003e#15075\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUpdated dependencies:\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/remix-run/react-router/releases/tag/react-router@7.16.0\"\u003e\u003ccode\u003ereact-router@7.16.0\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/remix-run/react-router/commit/195a0d03c1417127ccee73853058c8521beb4fce\"\u003e\u003ccode\u003e195a0d0\u003c/code\u003e\u003c/a\u003e Release v7.17.0 (\u003ca href=\"https://github.com/remix-run/react-router/tree/HEAD/packages/react-router-dom/issues/15145\"\u003e#15145\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/remix-run/react-router/commit/8984d23f86ca7ae5655711744b77816090bda4e6\"\u003e\u003ccode\u003e8984d23\u003c/code\u003e\u003c/a\u003e Release v7.16.0 (\u003ca href=\"https://github.com/remix-run/react-router/tree/HEAD/packages/react-router-dom/issues/15105\"\u003e#15105\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/remix-run/react-router/commit/3ed77afcde0ad9aea79f1afe5f05a700b201f289\"\u003e\u003ccode\u003e3ed77af\u003c/code\u003e\u003c/a\u003e chore: format\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/remix-run/react-router/commit/e96962bc6159a2290632849b55872a3878753342\"\u003e\u003ccode\u003ee96962b\u003c/code\u003e\u003c/a\u003e fix: remove stale unpkg field from react-router-dom (\u003ca href=\"https://github.com/remix-run/react-router/tree/HEAD/packages/react-router-dom/issues/15075\"\u003e#15075\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/remix-run/react-router/commits/react-router-dom@7.17.0/packages/react-router-dom\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n\u003c/details\u003e","html_url":"https://github.com/JaavLex/HERMES/pull/20","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/JaavLex%2FHERMES/issues/20","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/20/packages"}}]}