Skip to content

Bump marked from 0.3.12 to 0.7.0#2

Closed
dependabot[bot] wants to merge 7 commits intodecaffeinatefrom
dependabot/npm_and_yarn/marked-0.7.0
Closed

Bump marked from 0.3.12 to 0.7.0#2
dependabot[bot] wants to merge 7 commits intodecaffeinatefrom
dependabot/npm_and_yarn/marked-0.7.0

Conversation

@dependabot
Copy link

@dependabot dependabot bot commented on behalf of github Oct 31, 2019

Bumps marked from 0.3.12 to 0.7.0.

Release notes

Sourced from marked's releases.

0.7.0

Security

  • Sanitize paragraph and text tokens #1504
  • Fix ReDOS for links with backticks (issue #1493) #1515

Breaking Changes

  • Deprecate sanitize and sanitizer options #1504
  • Move fences to CommonMark #1511
  • Move tables to GFM #1511
  • Remove tables option #1511
  • Single backtick in link text needs to be escaped #1515

Fixes

Tests

  • Run tests with correct options #1511

0.6.3

Fixes

Docs

  • add docs for workers #1432
  • Add security policy #1492
  • Update supported spec versions #1491
  • Update test folder descriptions #1506

DevOps

  • Use latest commit for demo master #1457
  • Update tests to commonmark 0.29 #1465
  • Update tests to GFM 0.29 #1470
  • Fix commonmark spec 57 and 40 (headings) #1475

0.6.2

Security

Fixes

... (truncated)
Commits
Maintainer changes

This version was pushed to npm by tonybrix, a new releaser for marked since your current version.


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot ignore this [patch|minor|major] version will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
  • @dependabot use these labels will set the current labels as the default for future PRs for this repo and language
  • @dependabot use these reviewers will set the current reviewers as the default for future PRs for this repo and language
  • @dependabot use these assignees will set the current assignees as the default for future PRs for this repo and language
  • @dependabot use this milestone will set the current milestone as the default for future PRs for this repo and language

You can disable automated security fix PRs for this repo from the Security Alerts page.

@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Oct 31, 2019
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 919399e to b93c6ef Compare November 1, 2019 01:44
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from b93c6ef to dadd2b9 Compare November 2, 2019 01:47
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from dadd2b9 to 57389ff Compare November 3, 2019 01:48
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 57389ff to 273b89e Compare November 4, 2019 01:43
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 273b89e to 9ae0e45 Compare November 5, 2019 01:45
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 9ae0e45 to 54023c1 Compare November 6, 2019 01:45
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 54023c1 to 1e0e844 Compare November 7, 2019 01:46
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 1e0e844 to 16ab1a5 Compare November 8, 2019 01:46
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 16ab1a5 to 3ec0642 Compare November 9, 2019 01:46
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 3ec0642 to 867c87a Compare November 10, 2019 01:46
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 867c87a to 5aa3a8e Compare November 11, 2019 01:46
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 5aa3a8e to a07b929 Compare November 12, 2019 01:46
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from a07b929 to a2ac033 Compare November 13, 2019 01:47
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from a2ac033 to 13e8667 Compare November 14, 2019 01:48
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 41ead38 to 8fdc984 Compare November 24, 2019 01:52
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 8fdc984 to e6c1049 Compare November 25, 2019 01:53
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from e6c1049 to 64d340d Compare November 26, 2019 01:53
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 64d340d to 3c07a0c Compare November 27, 2019 01:54
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 3c07a0c to 84cceaf Compare November 28, 2019 01:54
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 84cceaf to 9285225 Compare November 29, 2019 01:54
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 9285225 to 1a192e5 Compare November 30, 2019 01:55
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 1a192e5 to 981be87 Compare December 1, 2019 01:54
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 981be87 to 1e3f7f8 Compare December 2, 2019 01:55
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from 1e3f7f8 to b47c697 Compare December 3, 2019 01:56
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/marked-0.7.0 branch from b47c697 to 2a660e5 Compare December 4, 2019 02:05
@dependabot @github
Copy link
Author

dependabot bot commented on behalf of github Dec 13, 2019

Superseded by #3.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant