Skip to content

chore(deps): bump the production-minor-patch group across 1 directory with 8 updates - #633

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/app/production-minor-patch-e61cb27959
Open

chore(deps): bump the production-minor-patch group across 1 directory with 8 updates#633
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/app/production-minor-patch-e61cb27959

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 24, 2026

Copy link
Copy Markdown
Contributor

Bumps the production-minor-patch group with 8 updates in the /app directory:

Package From To
@unhead/vue 3.2.3 3.4.0
@vueuse/core 14.3.0 14.4.0
cytoscape 3.34.0 3.34.1
dompurify 3.4.12 3.4.14
pinia 4.0.2 4.0.3
swagger-ui 5.32.11 5.32.14
swagger-ui-dist 5.32.11 5.32.14
vue 3.5.40 3.5.41

Updates @unhead/vue from 3.2.3 to 3.4.0

Release notes

Sourced from @​unhead/vue's releases.

v3.4.0

   🚀 Features

   🐞 Bug Fixes

   🏎 Performance

    View changes on GitHub

v3.3.2

   🐞 Bug Fixes

   🏎 Performance

    View changes on GitHub

v3.3.1

   🐞 Bug Fixes

... (truncated)

Commits
  • 1132b9f chore: release v3.4.0
  • 18a55c1 feat(validate): flag streamed head tags that bots never see (#947)
  • d253b54 feat(stream): render Streamed Body Tags before body close (#960)
  • 791f03d fix(stream): stop wrapStream dropping late head entries (#954)
  • e5f5c38 fix(stream): module mode lost every streamed head tag (#950)
  • ea4d6e2 chore: release v3.3.2
  • cc1e03b chore: release v3.3.1
  • 36dcf31 fix(scripts): support source-less SDK loaders (#858)
  • acae87f chore: release v3.3.0
  • a834ef6 fix(vue): reject ignored server prop resolvers (#876)
  • Additional commits viewable in compare view

Updates @vueuse/core from 14.3.0 to 14.4.0

Release notes

Sourced from @​vueuse/core's releases.

v14.4.0

   🚀 Features

   🐞 Bug Fixes

    View changes on GitHub
Commits
  • 24160f9 chore: release v14.4.0 (#5552)
  • 6aa9d6d fix(useDraggable): end drag on pointercancel (#5550)
  • 5fe4945 fix(useElementSize): prefill size based on box option (#5524)
  • 0f6d55d fix(useVirtualList): recompute range when item size changes (#5533)
  • 8f26673 test(useTransition): widen lower bound for WebKit test (#5540)
  • 2cad765 fix(useEventBus): use tryOnScopeDispose to avoid operating Vue internal API...
  • 653283c fix(useGamepad): keep updating remaining gamepads after one disconnects (#5523)
  • d39699c docs(useTextareaAutosize): restore demo textarea autosizing (#5532)
  • 8442658 fix(useFetch): ignore stale abort error after refetch succeeds (#5525)
  • bccb159 fix: accept array template ref bound to v-for as observer target (#5514)
  • Additional commits viewable in compare view

Updates cytoscape from 3.34.0 to 3.34.1

Release notes

Sourced from cytoscape's releases.

v3.34.1

Release version v3.34.1

Commits
  • 2510141 3.34.1
  • b76d9e1 Build 3.34.1
  • 9ebbac6 Docs: Add 3.34.1 to versions.json
  • 1a0f4de Merge pull request #3498 from Jaybhade/fix/astar-open-set-priority
  • 65e4bb1 test: use single quotes in the weighted A* path assertion
  • 069b464 Resort the A* open set when a queued node gets a lower score
  • f16dd20 Recompute round-polygon corners when node size or corner radius changes
  • e3e421c Cherry pick to main: Merge pull request #3491 from fedarko/fix-scroll-base
  • 39f638e Patch: Pinch-to-zoom throws "Cannot read properties of undefined (reading 'em...
  • See full diff in compare view
Attestation changes

This version has no provenance attestation, while the previous version (3.34.0) was attested. Review the package versions before updating.


Updates dompurify from 3.4.12 to 3.4.14

Release notes

Sourced from dompurify's releases.

DOMPurify 3.4.14

  • Fixed an issue with possible bypasses when risky tags are allow-listed, thanks @​AlirezaRouhbakhsh
  • Fixed a couple of edge cases with mixed document contexts, thanks @​fishjojo1
  • Added the SVG pointer-events and vector-effect presentation attributes to the allow-list, thanks @​Jaybhade
  • Conducted another refactoring run, removed dead branches and duplicated logic, flattened attribute validation
  • Updated the documentation in several spots, README, wiki, etc., thanks @​Akokonunes
  • Updated several development dependencies and CI workflow actions

DOMPurify 3.4.13

  • Fixed an issue with hook removal during IN_PLACE sanitization, thanks @​koyokr
  • Fixed an issue with hooks potentially bypassing the clone guard, thanks @​AkshayjainG
  • Fixed an issue with DOM clobbering via ownerDocument during IN_PLACE, thanks @​AkshayjainG
  • Bumped several dependencies where possible
Commits

Updates pinia from 4.0.2 to 4.0.3

Commits

Updates swagger-ui from 5.32.11 to 5.32.14

Release notes

Sourced from swagger-ui's releases.

v5.32.14

5.32.14 (2026-08-18)

Bug Fixes

  • a11y: add accessible names for buttons (d5a04d5)
  • build: include license and source map in dist (#10979) (7fb32b5), closes #8317
  • dark-mode: indicate dark color-scheme for native browser controls (#10844) (7cf5114)

Huge thanks to our contributors who made this release happen: @​moskvin, @​tstarling, and @​yogeshwaran-c

v5.32.13

5.32.13 (2026-08-11)

Bug Fixes

  • a11y: add aria-labels to copy-to-clipboard buttons (#10842) (e6ce7d8)
  • a11y: add skip-to-operations link, banner and main landmarks (#10849) (92669ea)
  • a11y: close Authorization popup with Escape key and backdrop click (#10987) (311b0d2)
  • a11y: name and state for dark-mode toggle button (#10848) (13a90fa)
  • a11y: restore icon visibility in Windows High Contrast Mode (#10846) (edec467)
  • a11y: topbar logo and dark-mode toggle visible in HCM (#10847) (6beaebd)
  • a11y: use for model titles to convey emphasis semantically (#10876) (b4501b6)
  • ci: bump cycjimmy/semantic-release-action to v6.0.0 (#11001) (9b3eacb)
  • ci: fix Trivy security scan and add dependency vulnerability scan (#10996) (ff221a8)
  • style: reduce padding on inline code blocks in markdown (#7569) (#10789) (a1a6cdc)

Huge thanks to our contributors who made this release happen: @​bmatar, @​yogeshwaran-c, @​jonnyjackson26, @​rkdfx, and @​adrianodpdiaz

v5.32.12

5.32.12 (2026-08-03)

Bug Fixes

Commits
  • 6e8ce24 chore(release): cut the 5.32.14 release
  • fefb1df chore(build): add TypeScript support to toolchain (#11000)
  • 050e996 chore(docs): consolidate swagger-client naming (#11015)
  • 7cf5114 fix(dark-mode): indicate dark color-scheme for native browser controls (#10844)
  • 1b556c9 chore(deps): bump aquasecurity/trivy-action (#11014)
  • be2e4b0 chore(deps): bump swagger-client to 3.38.0 (#11009)
  • 3d9d091 chore(deps-dev): bump cypress, @​pmmmwh/react-refresh-webpack-plugin (#11008)
  • 2e906d5 chore(deps): bump react-redux from 9.2.0 to 9.3.0 (#11005)
  • d5a04d5 fix(a11y): add accessible names for buttons
  • 0828bda chore(deps-dev): bump autoprefixer from 10.4.21 to 10.5.4 (#11004)
  • Additional commits viewable in compare view

Updates swagger-ui-dist from 5.32.11 to 5.32.14

Release notes

Sourced from swagger-ui-dist's releases.

v5.32.14

5.32.14 (2026-08-18)

Bug Fixes

  • a11y: add accessible names for buttons (d5a04d5)
  • build: include license and source map in dist (#10979) (7fb32b5), closes #8317
  • dark-mode: indicate dark color-scheme for native browser controls (#10844) (7cf5114)

Huge thanks to our contributors who made this release happen: @​moskvin, @​tstarling, and @​yogeshwaran-c

v5.32.13

5.32.13 (2026-08-11)

Bug Fixes

  • a11y: add aria-labels to copy-to-clipboard buttons (#10842) (e6ce7d8)
  • a11y: add skip-to-operations link, banner and main landmarks (#10849) (92669ea)
  • a11y: close Authorization popup with Escape key and backdrop click (#10987) (311b0d2)
  • a11y: name and state for dark-mode toggle button (#10848) (13a90fa)
  • a11y: restore icon visibility in Windows High Contrast Mode (#10846) (edec467)
  • a11y: topbar logo and dark-mode toggle visible in HCM (#10847) (6beaebd)
  • a11y: use for model titles to convey emphasis semantically (#10876) (b4501b6)
  • ci: bump cycjimmy/semantic-release-action to v6.0.0 (#11001) (9b3eacb)
  • ci: fix Trivy security scan and add dependency vulnerability scan (#10996) (ff221a8)
  • style: reduce padding on inline code blocks in markdown (#7569) (#10789) (a1a6cdc)

Huge thanks to our contributors who made this release happen: @​bmatar, @​yogeshwaran-c, @​jonnyjackson26, @​rkdfx, and @​adrianodpdiaz

v5.32.12

5.32.12 (2026-08-03)

Bug Fixes

Commits
  • 6e8ce24 chore(release): cut the 5.32.14 release
  • fefb1df chore(build): add TypeScript support to toolchain (#11000)
  • 050e996 chore(docs): consolidate swagger-client naming (#11015)
  • 7cf5114 fix(dark-mode): indicate dark color-scheme for native browser controls (#10844)
  • 1b556c9 chore(deps): bump aquasecurity/trivy-action (#11014)
  • be2e4b0 chore(deps): bump swagger-client to 3.38.0 (#11009)
  • 3d9d091 chore(deps-dev): bump cypress, @​pmmmwh/react-refresh-webpack-plugin (#11008)
  • 2e906d5 chore(deps): bump react-redux from 9.2.0 to 9.3.0 (#11005)
  • d5a04d5 fix(a11y): add accessible names for buttons
  • 0828bda chore(deps-dev): bump autoprefixer from 10.4.21 to 10.5.4 (#11004)
  • Additional commits viewable in compare view

Updates vue from 3.5.40 to 3.5.41

Release notes

Sourced from vue's releases.

v3.5.41

For stable releases, please refer to CHANGELOG.md for details. For pre-releases, please refer to CHANGELOG.md of the minor branch.

Changelog

Sourced from vue's changelog.

3.5.41 (2026-08-05)

Bug Fixes

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

… with 8 updates

Bumps the production-minor-patch group with 8 updates in the /app directory:

| Package | From | To |
| --- | --- | --- |
| [@unhead/vue](https://github.com/unjs/unhead/tree/HEAD/packages/vue) | `3.2.3` | `3.4.0` |
| [@vueuse/core](https://github.com/vueuse/vueuse/tree/HEAD/packages/core) | `14.3.0` | `14.4.0` |
| [cytoscape](https://github.com/cytoscape/cytoscape.js) | `3.34.0` | `3.34.1` |
| [dompurify](https://github.com/cure53/DOMPurify) | `3.4.12` | `3.4.14` |
| [pinia](https://github.com/vuejs/pinia) | `4.0.2` | `4.0.3` |
| [swagger-ui](https://github.com/swagger-api/swagger-ui) | `5.32.11` | `5.32.14` |
| [swagger-ui-dist](https://github.com/swagger-api/swagger-ui) | `5.32.11` | `5.32.14` |
| [vue](https://github.com/vuejs/core) | `3.5.40` | `3.5.41` |



Updates `@unhead/vue` from 3.2.3 to 3.4.0
- [Release notes](https://github.com/unjs/unhead/releases)
- [Commits](https://github.com/unjs/unhead/commits/v3.4.0/packages/vue)

Updates `@vueuse/core` from 14.3.0 to 14.4.0
- [Release notes](https://github.com/vueuse/vueuse/releases)
- [Commits](https://github.com/vueuse/vueuse/commits/v14.4.0/packages/core)

Updates `cytoscape` from 3.34.0 to 3.34.1
- [Release notes](https://github.com/cytoscape/cytoscape.js/releases)
- [Commits](cytoscape/cytoscape.js@v3.34.0...v3.34.1)

Updates `dompurify` from 3.4.12 to 3.4.14
- [Release notes](https://github.com/cure53/DOMPurify/releases)
- [Commits](cure53/DOMPurify@3.4.12...3.4.14)

Updates `pinia` from 4.0.2 to 4.0.3
- [Release notes](https://github.com/vuejs/pinia/releases)
- [Commits](vuejs/pinia@v4.0.2...v4.0.3)

Updates `swagger-ui` from 5.32.11 to 5.32.14
- [Release notes](https://github.com/swagger-api/swagger-ui/releases)
- [Commits](swagger-api/swagger-ui@v5.32.11...v5.32.14)

Updates `swagger-ui-dist` from 5.32.11 to 5.32.14
- [Release notes](https://github.com/swagger-api/swagger-ui/releases)
- [Commits](swagger-api/swagger-ui@v5.32.11...v5.32.14)

Updates `vue` from 3.5.40 to 3.5.41
- [Release notes](https://github.com/vuejs/core/releases)
- [Changelog](https://github.com/vuejs/core/blob/main/CHANGELOG.md)
- [Commits](vuejs/core@v3.5.40...v3.5.41)

---
updated-dependencies:
- dependency-name: "@unhead/vue"
  dependency-version: 3.4.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-minor-patch
- dependency-name: "@vueuse/core"
  dependency-version: 14.4.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-minor-patch
- dependency-name: cytoscape
  dependency-version: 3.34.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-minor-patch
- dependency-name: dompurify
  dependency-version: 3.4.14
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-minor-patch
- dependency-name: pinia
  dependency-version: 4.0.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-minor-patch
- dependency-name: swagger-ui
  dependency-version: 5.32.14
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-minor-patch
- dependency-name: swagger-ui-dist
  dependency-version: 5.32.14
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-minor-patch
- dependency-name: vue
  dependency-version: 3.5.41
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-minor-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot @github

dependabot Bot commented on behalf of github Aug 24, 2026

Copy link
Copy Markdown
Contributor Author

Labels

The following labels could not be found: dependencies, javascript. Please create them before Dependabot can add them to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants