build(deps): bump getsentry/craft from 2.25.2 to 2.25.4
Open
Number: #6096
Type: Pull Request
State: Open
Type: Pull Request
State: Open
Author:
dependabot[bot]
Association: Unknown
Comments: 2
Association: Unknown
Comments: 2
Created:
April 20, 2026 at 03:53 AM UTC
(3 months ago)
(3 months ago)
Updated:
April 20, 2026 at 03:59 AM UTC
(3 months ago)
(3 months ago)
Labels:
Dependencies github_actions
Dependencies github_actions
Description:
Bumps getsentry/craft from 2.25.2 to 2.25.4.
Release notes
Sourced from getsentry/craft's releases.
2.25.4
Bug Fixes 🐛
- (publish) Replace CRAFT_NEW_VERSION with CRAFT_RELEASED_VERSION in post-release env by
@BYKin #7932.25.3
Bug Fixes 🐛
Changelog
Sourced from getsentry/craft's changelog.
Changelog
2.25.4
Bug Fixes 🐛
- (publish) Replace CRAFT_NEW_VERSION with CRAFT_RELEASED_VERSION in post-release env by
@BYKin #7932.25.3
Bug Fixes 🐛
- (deps) Address security vulnerabilities in vite, picomatch, and defu by
@BYKin #791- (publish) Distinguish auth failures from merge conflicts in post-publish merge by
@BYKin #7882.25.2
Bug Fixes 🐛
- Preserve HTML blocks (e.g.,
<img>tags from GitHub image uploads) in custom## Changelog EntryPR sections instead of silently dropping them. by@BYKin #786- (deps) Bump brace-expansion from 5.0.4 to 5.0.5 by
@BYKin #787- Upgrade GitHub Actions to Node.js 24 compatible versions by
@BYKin #784Internal Changes 🔧
- (deps) Bump astro from 5.16.11 to 5.18.1 in /docs by
@dependabotin #7852.25.1
Bug Fixes 🐛
- (deps) Address smol-toml DoS vulnerability (GHSA-v3rj-xjv7-4jmq) by
@BYKin #783- Commit changelog even when preReleaseCommand returns false by
@BYKin #781Internal Changes 🔧
2.25.0
New Features ✨
Bug Fixes 🐛
- (deps) Address security advisories for fast-xml-parser, h3, and flatted by
@BYKin #780- (publish) Make post-publish merge failure non-fatal with resolve strategy retry by
@BYKin #778Internal Changes 🔧
... (truncated)
Commits
97d0c42release: 2.25.46e59f3bfix(publish): replace CRAFT_NEW_VERSION with CRAFT_RELEASED_VERSION in post-r...885f168meta: Bump new development version6903199Merge branch 'release/2.25.3'9a8e27arelease: 2.25.36ba86bcfix(deps): address security vulnerabilities in vite, picomatch, and defu (#791)f081abefix(publish): distinguish auth failures from merge conflicts in post-publish ...dab9468meta: Bump new development version3c9e16fMerge branch 'release/2.25.2'- See full diff in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Package Dependencies
Technical Details
| ID: | 15412751 |
| UUID: | 4292976311 |
| Node ID: | PR_kwDOCDbi-87Tz2CT |
| Host: | GitHub |
| Repository: | getsentry/sentry-python |