Skip to content

Bump @mdn/yari from 4.9.1 to 5.0.3#376

Closed
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/npm_and_yarn/mdn/yari-5.0.3
Closed

Bump @mdn/yari from 4.9.1 to 5.0.3#376
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/npm_and_yarn/mdn/yari-5.0.3

Conversation

@dependabot
Copy link

@dependabot dependabot bot commented on behalf of github Aug 13, 2025

Bumps @mdn/yari from 4.9.1 to 5.0.3.

Release notes

Sourced from @​mdn/yari's releases.

v5.0.3

5.0.3 (2025-08-11)

Bug Fixes

  • cloud function: allow main and live samples origin for requests to shared assets (#13353) (0b63838)
  • collections: prevent space-only collection names (#13360) (55e7b2a)

Miscellaneous

  • add prod-cloud-deploy workflow (#13369) (9d8bf45)
  • deps-dev: bump @​swc/core from 1.13.2 to 1.13.3 (#13346) (4c8f380)
  • deps-dev: bump @​types/async from 3.2.24 to 3.2.25 in the types group (#13358) (6038fb0)
  • deps-dev: bump cssnano from 7.0.7 to 7.1.0 (#13302) (271af85)
  • deps-dev: bump mini-css-extract-plugin from 2.9.2 to 2.9.3 (#13364) (20c7528)
  • deps-dev: bump sass from 1.89.2 to 1.90.0 (#13373) (831c749)
  • deps-dev: bump typescript from 5.8.3 to 5.9.2 (#13371) (e3146fd)
  • deps-dev: bump typescript from 5.8.3 to 5.9.2 in /client/pwa (#13352) (3130520)
  • deps-dev: bump typescript-eslint from 8.37.0 to 8.38.0 (#13329) (67920c4)
  • deps-dev: bump typescript-eslint from 8.38.0 to 8.39.0 (#13367) (5f77c9b)
  • deps-dev: bump webpack from 5.100.2 to 5.101.0 (#13341) (d94ec06)
  • deps-dev: bump webpack from 5.100.2 to 5.101.0 in /client/pwa (#13339) (44cf605)
  • deps: bump @​zip.js/zip.js from 2.7.68 to 2.7.69 in /client/pwa (#13338) (f8bb4ed)
  • deps: bump @​zip.js/zip.js from 2.7.69 to 2.7.70 in /client/pwa (#13347) (e26a716)
  • deps: bump @​zip.js/zip.js from 2.7.70 to 2.7.71 in /client/pwa (#13351) (93defa5)
  • deps: bump @​fast-csv/parse from 5.0.2 to 5.0.5 (#13363) (fc671fd)
  • deps: bump @​inquirer/prompts from 7.7.1 to 7.8.0 (#13345) (2c5b9cb)
  • deps: bump @​stripe/stripe-js from 7.5.0 to 7.7.0 (#13343) (1be5589)
  • deps: bump @​stripe/stripe-js from 7.7.0 to 7.8.0 (#13362) (cc135d6)
  • deps: bump chalk from 5.4.1 to 5.5.0 (#13359) (6eed0d1)
  • deps: bump form-data from 2.5.1 to 2.5.5 in /libs/pong (#13324) (4a4bca1)
  • deps: bump mdn-data from 2.22.0 to 2.23.0 (#13322) (9cd7215)
  • deps: bump openai from 5.10.1 to 5.11.0 (#13348) (6f0f4ca)
  • deps: bump openai from 5.11.0 to 5.12.0 (#13374) (f0aebf7)
  • deps: bump openai from 5.12.0 to 5.12.1 (#13377) (10b59b2)
  • deps: bump the react-router group with 2 updates (#13310) (792e3e7)
  • fred: re-enable offline settings (#13378) (f418550)
  • workflows: add nonprod cloud deploy actions (#13355) (f56c9c7)
  • workflows: fix nonprod cloud function actions after testing (#13357) (46cdb12)

v5.0.2

5.0.2 (2025-07-24)

Bug Fixes

... (truncated)

Changelog

Sourced from @​mdn/yari's changelog.

5.0.3 (2025-08-11)

Bug Fixes

  • cloud function: allow main and live samples origin for requests to shared assets (#13353) (0b63838)
  • collections: prevent space-only collection names (#13360) (55e7b2a)

Miscellaneous

  • add prod-cloud-deploy workflow (#13369) (9d8bf45)
  • deps-dev: bump @​swc/core from 1.13.2 to 1.13.3 (#13346) (4c8f380)
  • deps-dev: bump @​types/async from 3.2.24 to 3.2.25 in the types group (#13358) (6038fb0)
  • deps-dev: bump cssnano from 7.0.7 to 7.1.0 (#13302) (271af85)
  • deps-dev: bump mini-css-extract-plugin from 2.9.2 to 2.9.3 (#13364) (20c7528)
  • deps-dev: bump sass from 1.89.2 to 1.90.0 (#13373) (831c749)
  • deps-dev: bump typescript from 5.8.3 to 5.9.2 (#13371) (e3146fd)
  • deps-dev: bump typescript from 5.8.3 to 5.9.2 in /client/pwa (#13352) (3130520)
  • deps-dev: bump typescript-eslint from 8.37.0 to 8.38.0 (#13329) (67920c4)
  • deps-dev: bump typescript-eslint from 8.38.0 to 8.39.0 (#13367) (5f77c9b)
  • deps-dev: bump webpack from 5.100.2 to 5.101.0 (#13341) (d94ec06)
  • deps-dev: bump webpack from 5.100.2 to 5.101.0 in /client/pwa (#13339) (44cf605)
  • deps: bump @​zip.js/zip.js from 2.7.68 to 2.7.69 in /client/pwa (#13338) (f8bb4ed)
  • deps: bump @​zip.js/zip.js from 2.7.69 to 2.7.70 in /client/pwa (#13347) (e26a716)
  • deps: bump @​zip.js/zip.js from 2.7.70 to 2.7.71 in /client/pwa (#13351) (93defa5)
  • deps: bump @​fast-csv/parse from 5.0.2 to 5.0.5 (#13363) (fc671fd)
  • deps: bump @​inquirer/prompts from 7.7.1 to 7.8.0 (#13345) (2c5b9cb)
  • deps: bump @​stripe/stripe-js from 7.5.0 to 7.7.0 (#13343) (1be5589)
  • deps: bump @​stripe/stripe-js from 7.7.0 to 7.8.0 (#13362) (cc135d6)
  • deps: bump chalk from 5.4.1 to 5.5.0 (#13359) (6eed0d1)
  • deps: bump form-data from 2.5.1 to 2.5.5 in /libs/pong (#13324) (4a4bca1)
  • deps: bump mdn-data from 2.22.0 to 2.23.0 (#13322) (9cd7215)
  • deps: bump openai from 5.10.1 to 5.11.0 (#13348) (6f0f4ca)
  • deps: bump openai from 5.11.0 to 5.12.0 (#13374) (f0aebf7)
  • deps: bump openai from 5.12.0 to 5.12.1 (#13377) (10b59b2)
  • deps: bump the react-router group with 2 updates (#13310) (792e3e7)
  • fred: re-enable offline settings (#13378) (f418550)
  • workflows: add nonprod cloud deploy actions (#13355) (f56c9c7)
  • workflows: fix nonprod cloud function actions after testing (#13357) (46cdb12)

5.0.2 (2025-07-24)

Bug Fixes

Miscellaneous

... (truncated)

Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [@mdn/yari](https://github.com/mdn/yari) from 4.9.1 to 5.0.3.
- [Release notes](https://github.com/mdn/yari/releases)
- [Changelog](https://github.com/mdn/yari/blob/main/CHANGELOG.md)
- [Commits](mdn/yari@v4.9.1...v5.0.3)

---
updated-dependencies:
- dependency-name: "@mdn/yari"
  dependency-version: 5.0.3
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot @github
Copy link
Author

dependabot bot commented on behalf of github Aug 13, 2025

Labels

The following labels could not be found: automated pr. Please create it before Dependabot can add it to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Aug 13, 2025
@dependabot @github
Copy link
Author

dependabot bot commented on behalf of github Sep 8, 2025

Superseded by #382.

@dependabot dependabot bot closed this Sep 8, 2025
@dependabot dependabot bot deleted the dependabot/npm_and_yarn/mdn/yari-5.0.3 branch September 8, 2025 19:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants