An open index of dependabot pull requests across open source projects.

build(deps): bump swagger-ui-dist from 5.20.2 to 5.22.0 in /modules/jooby-swagger-ui

Open
Number: #3679
Type: Pull Request
State: Open
Author: dependabot[bot] dependabot[bot]
Association: Contributor
Comments: 0
Created: May 26, 2025 at 12:38 AM UTC
(about 1 year ago)
Updated: May 26, 2025 at 12:38 AM UTC
(about 1 year ago)
Labels:
dependencies javascript
Description:

Bumps swagger-ui-dist from 5.20.2 to 5.22.0.

Release notes

Sourced from swagger-ui-dist's releases.

Swagger UI v5.22.0 Released!

5.22.0 (2025-05-21)

Bug Fixes

  • assure parameter is an immutable map when grouping parameters (#10457) (8577d71)
  • avoid accessing properties of empty Example Objects (#10453) (6a07ac8)
  • docker: address CVE-2025-32414/CVE-2025-32415 (#10461) (01e380e)
  • json-schema-2020-12-samples: generate proper samples for XML atttributes (#10459) (5d346fd)
  • oauth2: avoid processing authorizationUrl when it is not a string (#10452) (119052e)
  • security: update Axios to non-vulnerable 1.9.0 version (#10460) (c85865c)
  • spec: assure operation is an immutable map in operations selectors (#10454) (b6151d4)
  • spec: avoid accessing $ref when path item is not an object (#10456) (581d544)
  • use spec compliant JSON Pointer implementation (#10455) (2f0cbba)

Features

  • observability: allow defining custom uncaught exception handler (#10462) (0a438f2)

Swagger UI v5.21.0 Released!

5.21.0 (2025-04-13)

Bug Fixes

  • align OpenAPI 3.x.y file uploads with specification (#10409) (c29e712), closes #9278
  • json-schema-2020-12: infer type string when contentEncoding or contentMediaType is present (#10411) (22adad3), closes #9278

Features

  • oas31: display file upload input when contentMediaType or contentEncoding keywords are present (#10412) (2696730), closes #9278

Swagger UI v5.20.8 Released!

5.20.8 (2025-04-10)

Bug Fixes

  • docker: address multiple HIGH security vulnerabilities (#10410) (6e0cc0e)

image

Swagger UI v5.20.7 Released!

5.20.7 (2025-04-07)

Bug Fixes

... (truncated)

Commits
  • 4b37bf2 chore(release): cut the v5.22.0 release
  • 0a438f2 feat(observability): allow defining custom uncaught exception handler (#10462)
  • 01e380e fix(docker): address CVE-2025-32414/CVE-2025-32415 (#10461)
  • c85865c fix(security): update Axios to non-vulnerable 1.9.0 version (#10460)
  • 5d346fd fix(json-schema-2020-12-samples): generate proper samples for XML atttributes...
  • 581d544 fix(spec): avoid accessing $ref when path item is not an object (#10456)
  • 8577d71 fix: assure parameter is an immutable map when grouping parameters (#10457)
  • b6151d4 fix(spec): assure operation is an immutable map in operations selectors (#10454)
  • 2f0cbba fix: use spec compliant JSON Pointer implementation (#10455)
  • 119052e fix(oauth2): avoid processing authorizationUrl when it is not a string (#10452)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Pull Request Statistics
Commits:
1
Files Changed:
2
Additions:
+5
Deletions:
-5
Package Dependencies
Ecosystem:
npm
Version Change:
5.20.2 → 5.22.0
Update Type:
Minor
Path:
/modules/jooby-swagger-ui
Technical Details
ID: 1121676
UUID: 2542749427
Node ID: PR_kwDOAYRJs86Xj0bz
Host: GitHub
Repository: jooby-project/jooby
Merge State: Unknown