Skip to content

chore(deps): bump the minor-and-patch group across 1 directory with 4 updates - #71

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/minor-and-patch-a8d87ad9e0
Open

chore(deps): bump the minor-and-patch group across 1 directory with 4 updates#71
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/minor-and-patch-a8d87ad9e0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 3, 2026

Copy link
Copy Markdown
Contributor

Bumps the minor-and-patch group with 4 updates in the / directory: @simplewebauthn/server, bullmq, lucide-react and next.

Updates @simplewebauthn/server from 13.3.2 to 13.3.3

Release notes

Sourced from @​simplewebauthn/server's releases.

v13.3.3

Changes:

  • [server] Updated MDS blob signature verification to support more algorithms (#788)
  • [server] Updated MetadataService to know about the new FIDO MDS blob trust anchor certificate (#789)
Changelog

Sourced from @​simplewebauthn/server's changelog.

v13.3.3

Changes:

  • [server] Updated MDS blob signature verification to support more algorithms (#788)
  • [server] Updated MetadataService to know about the new FIDO MDS blob trust anchor certificate (#789)
Commits

Updates bullmq from 6.2.1 to 6.3.4

Release notes

Sourced from bullmq's releases.

v6.3.4

6.3.4 (2026-09-01)

Bug Fixes

  • deps: update rust crate croner to v4 [security] (#4666) (fd33926)

v6.3.3

6.3.3 (2026-08-31)

Bug Fixes

  • bun: duplicate() and reconnect target the correct server (#4591) (e9b5679)
  • worker: keep blocking client alive when parked in reconnecting (#4586) (8fd4850)

v6.3.2

6.3.2 (2026-08-29)

Bug Fixes

  • deps: upgrade msgpackr to 2.1.0 and uuid to 1.26.0 (rust) (#4621) (74987e9)
  • worker: delegate maximumBlockTimeout to the backend (python) (#4644) (ea4543c)

v6.3.1

6.3.1 (2026-08-27)

Bug Fixes

  • postgres: resolve priv SQL dir at runtime for Mix releases (#4636) (9d737e9)

v6.3.0

6.3.0 (2026-08-26)

Features

  • postgres: forward :ssl option to Postgrex connection (#4631) (elixir) (bb569b8)

v6.2.2

6.2.2 (2026-08-25)

Performance Improvements

  • queue: do not affect rate limit when processing deferred failures (python) (elixir) (rust) (dotnet) (#4607) (ec4be04)
Commits
  • fd33926 fix(deps): update rust crate croner to v4 [security] (#4666)
  • fb016f5 chore(release): 6.3.3 (#4664)
  • fecc8b2 test(stalled): add script integration test [elixir] (#4594)
  • 8fd4850 fix(worker): keep blocking client alive when parked in reconnecting (#4586)
  • e9b5679 fix(bun): duplicate() and reconnect target the correct server (#4591)
  • 7b8741a chore(deps): update dependency phpstan/phpstan to v2.2.10 [security] (#4660)
  • 77c24bb chore(release): vpy3.2.0 (#4661)
  • 903f017 feat(queue): support getDeduplicationJobId method [python] (#4655) ref #4647
  • f4e7d96 chore(deps): lock file maintenance (#4638)
  • fde4a9b chore(release): vrs1.2.8 (#4657)
  • Additional commits viewable in compare view

Updates lucide-react from 1.33.0 to 1.39.0

Release notes

Sourced from lucide-react's releases.

Version 1.39.0

What's Changed

Full Changelog: lucide-icons/lucide@1.38.0...1.39.0

Version 1.38.0

What's Changed

Full Changelog: lucide-icons/lucide@1.36.0...1.38.0

Version 1.37.0

What's Changed

New Contributors

Full Changelog: lucide-icons/lucide@1.35.0...1.37.0

Version 1.36.0

What's Changed

... (truncated)

Commits

Updates next from 16.3.2 to 16.3.4

Release notes

Sourced from next's releases.

v16.3.4

Follow-up release to v16.3.3 re-enabling AVIF Image Optimization (#97949).

The following bug fixes have been backported. It does not include all pending features/changes on canary.

  • testmode: Fix infinite recursion in testmode passthrough fetch (#97691)
  • Fix build error when aliasing typescript to @​typescript/typescript6 (#97997)
  • Fix unset crossOrigin in Turbopack manifests (#97930)

Credits

Huge thanks to @​eps1lon, @​mischnic, and @​timneutkens for helping!

v16.3.3

This release contains security fixes for the following advisories:

Critical:

Commits
  • 299180d v16.3.4
  • 12e173d [16.3.x] Re-enable AVIF image optimization and require sharp 0.35.4 (#97949)
  • 5d9022e [backport] Fix unset crossOrigin in Turbopack manifests (#97930)
  • d8f4560 [16.3.x] Fix build error when aliasing typescript to @​typescript/typescript6 ...
  • 656aebf [16.3] testmode: Fix infinite recursion in testmode passthrough fetch (#97691)
  • f37c1d6 [16.3.x] ci: remove pull_request_stats workflow (#97975)
  • a9a1cb7 v16.3.3
  • 968b9fc [16.3.x] Fix ISR misses with backslashes in segments when deployed on Windows
  • 3a15b4a [16.3.x] [next/image]: disable avif image optimization
  • 7378b51 Backport/docs fixes 16.3 (#97649)
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 3, 2026
@dependabot dependabot Bot changed the title chore(deps): bump the minor-and-patch group with 4 updates chore(deps): bump the minor-and-patch group across 1 directory with 4 updates Sep 5, 2026
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/minor-and-patch-a8d87ad9e0 branch from 3e01395 to 50baf2b Compare September 5, 2026 19:33
… updates

Bumps the minor-and-patch group with 4 updates in the / directory: [@simplewebauthn/server](https://github.com/MasterKale/SimpleWebAuthn/tree/HEAD/packages/server), [bullmq](https://github.com/taskforcesh/bullmq), [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react) and [next](https://github.com/vercel/next.js).


Updates `@simplewebauthn/server` from 13.3.2 to 13.3.3
- [Release notes](https://github.com/MasterKale/SimpleWebAuthn/releases)
- [Changelog](https://github.com/MasterKale/SimpleWebAuthn/blob/master/CHANGELOG.md)
- [Commits](https://github.com/MasterKale/SimpleWebAuthn/commits/v13.3.3/packages/server)

Updates `bullmq` from 6.2.1 to 6.3.4
- [Release notes](https://github.com/taskforcesh/bullmq/releases)
- [Commits](taskforcesh/bullmq@v6.2.1...v6.3.4)

Updates `lucide-react` from 1.33.0 to 1.39.0
- [Release notes](https://github.com/lucide-icons/lucide/releases)
- [Commits](https://github.com/lucide-icons/lucide/commits/1.39.0/packages/lucide-react)

Updates `next` from 16.3.2 to 16.3.4
- [Release notes](https://github.com/vercel/next.js/releases)
- [Commits](vercel/next.js@v16.3.2...v16.3.4)

---
updated-dependencies:
- dependency-name: "@simplewebauthn/server"
  dependency-version: 13.3.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: minor-and-patch
- dependency-name: bullmq
  dependency-version: 6.3.2
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: lucide-react
  dependency-version: 1.38.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: next
  dependency-version: 16.3.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: minor-and-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/minor-and-patch-a8d87ad9e0 branch from 50baf2b to 4e4ce88 Compare September 10, 2026 07:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants