Skip to content

[bundler] Bump minitest from 6.0.4 to 6.0.5 in the monthly group#197

Merged
ahaverbuch merged 2 commits into
mainfrom
dependabot/bundler/monthly-b15b268208
Apr 22, 2026
Merged

[bundler] Bump minitest from 6.0.4 to 6.0.5 in the monthly group#197
ahaverbuch merged 2 commits into
mainfrom
dependabot/bundler/monthly-b15b268208

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Apr 21, 2026

Bumps the monthly group with 1 update: minitest.

Updates minitest from 6.0.4 to 6.0.5

Changelog

Sourced from minitest's changelog.

=== 6.0.5 / 2026-04-20

  • 2 bug fixes:

    • Avoid circular requires in lib/minitest/server_plugin.rb.
    • Raise TypeError if assert_raises is passed anything but modules/classes.
Commits
  • 89c3e62 Branching minitest to version 6.0.5
  • 6790f86 - Raise TypeError if assert_raises is passed anything but modules/classes.
  • 235fa5b - Avoid circular requires in lib/minitest/server_plugin.rb.
  • See full diff in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Note

Low Risk
Lockfile-only dependency patch update to the test framework; low likelihood of production impact, with primary risk being minor test behavior changes.

Overview
Bumps minitest from 6.0.4 to 6.0.5 in Gemfile.lock and the appraisal lockfiles for Rails (gemfiles/rails_7.2.gemfile.lock, gemfiles/rails_8.0.gemfile.lock, gemfiles/rails_8.1.gemfile.lock), updating the recorded checksums accordingly.

Reviewed by Cursor Bugbot for commit a15ca54. Bugbot is set up for automated code reviews on this repo. Configure here.

Bumps the monthly group with 1 update: [minitest](https://github.com/minitest/minitest).


Updates `minitest` from 6.0.4 to 6.0.5
- [Changelog](https://github.com/minitest/minitest/blob/master/History.rdoc)
- [Commits](minitest/minitest@v6.0.4...v6.0.5)

---
updated-dependencies:
- dependency-name: minitest
  dependency-version: 6.0.5
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: monthly
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code labels Apr 21, 2026
@socket-security
Copy link
Copy Markdown

socket-security Bot commented Apr 21, 2026

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updatedminitest@​6.0.4 ⏵ 6.0.591 +1100100100100

View full report

@ahaverbuch ahaverbuch merged commit ed83126 into main Apr 22, 2026
9 checks passed
@ahaverbuch ahaverbuch deleted the dependabot/bundler/monthly-b15b268208 branch April 22, 2026 12:02
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant