An open index of dependabot pull requests across open source projects.

chore: bump github.com/gohugoio/hugo from 0.124.0 to 0.150.1

Open
Number: #704
Type: Pull Request
State: Open
Author: dependabot[bot] dependabot[bot]
Association: Contributor
Comments: 0
Created: September 29, 2025 at 03:02 PM UTC
(28 days ago)
Updated: September 29, 2025 at 03:03 PM UTC
(28 days ago)
Labels:
dependencies go
Description:

Bumps github.com/gohugoio/hugo from 0.124.0 to 0.150.1.

Release notes

Sourced from github.com/gohugoio/hugo's releases.

v0.150.1

What's Changed

  • hugolib: Change duplicate content path warning to an info log 64f40731f @​jmooring
  • hugolib: Restore integration test 1140314be @​jmooring #13991
  • commands: Map --minify CLI flag to the correct configuration key 404fd9e51 @​jmooring #13988
  • snap: Add desktop plug b1b0cdee3 @​maxkapur
  • test(deps): Update setup-ruby action to v1.257.0 3eea08290 @​maxkapur

v0.150.0

The big new feature in this relase is the new version config option on Module imports, which allows you to set the requested module version query directly in your Hugo configuration (e.g. hugo.toml). This is a feature that have been requested by many, and I (@​bep) was reminded about it by this recent thread, which also outlines a common use case for this: Mounting multiple old versions/branches of API documentation into the project.

What's Changed

  • build(deps): bump golang.org/x/mod from 0.27.0 to 0.28.0 d1f6a1dc5 @​dependabot[bot]
  • modules: Add support for direct version module imports in hugo.toml 747cf4ad6 @​bep #13964
  • resources/page: Fix truncated summary logic d8774d7fc @​jmooring #13967 #13968
  • config/security: Add PROGRAMDATA to the osenv allowlist 3b8947d82 @​jmooring

v0.149.1

The main motivation behind this release is the Go 1.25.1 upgrade, which comes with a security fix. Hugo does not use the feature in question, but we understand that many Hugo users like to have a clean security report.

Note

Note that CSS minification now targets CSS3, removing certain optimizations that were specific to CSS2.

What's Changed

v0.149.0

[!NOTE]
If running on Netlify, make sure you have configured your build with their latest build image, see this issue.

Hugo v0.149.0 comes with bug fixes and a set of new features/improvements, notably:

... (truncated)

Commits
  • ce44a8e releaser: Bump versions for release of 0.150.1
  • 64f4073 hugolib: Change duplicate content path warning to an info log
  • 1140314 hugolib: Restore integration test
  • 404fd9e commands: Map --minify CLI flag to the correct configuration key
  • b1b0cde snap: Add desktop plug
  • 3eea082 test(deps): Update setup-ruby action to v1.257.0
  • 0f18cbe releaser: Prepare repository for 0.151.0-DEV
  • 3f5473b releaser: Bump versions for release of 0.150.0
  • d1f6a1d build(deps): bump golang.org/x/mod from 0.27.0 to 0.28.0
  • 747cf4a modules: Add support for direct version module imports in hugo.toml
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Pull Request Statistics
Commits:
1
Files Changed:
2
Additions:
+322
Deletions:
-369
Package Dependencies
Ecosystem:
go
Version Change:
0.124.0 → 0.150.1
Update Type:
Minor
Technical Details
ID: 8723165
UUID: 2871012173
Node ID: PR_kwDOLmBl1M6rICtN
Host: GitHub
Repository: Txim0520/https-github.com-coder-coder
Merge State: Unknown