Skip to content

Commit

Permalink
fix: LSDV-5249: Dependabot updates (HumanSignal#4335)
Browse files Browse the repository at this point in the history
* [submodules] Build static heartexlabs/label-studio-frontend

* chore(deps): bump ejs and hexo-renderer-ejs in /docs

Bumps [ejs](https://github.com/mde/ejs) to 3.1.9 and updates ancestor dependency [hexo-renderer-ejs](https://github.com/hexojs/hexo-renderer-ejs). These dependencies need to be updated together.


Updates `ejs` from 2.7.1 to 3.1.9
- [Release notes](https://github.com/mde/ejs/releases)
- [Commits](mde/ejs@v2.7.1...v3.1.9)

Updates `hexo-renderer-ejs` from 0.3.1 to 2.0.0
- [Release notes](https://github.com/hexojs/hexo-renderer-ejs/releases)
- [Commits](hexojs/hexo-renderer-ejs@0.3.1...2.0.0)

---
updated-dependencies:
- dependency-name: ejs
  dependency-type: indirect
- dependency-name: hexo-renderer-ejs
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>

* chore(deps): bump setuptools from 60.0.3 to 65.5.1 in /deploy

Bumps [setuptools](https://github.com/pypa/setuptools) from 60.0.3 to 65.5.1.
- [Release notes](https://github.com/pypa/setuptools/releases)
- [Changelog](https://github.com/pypa/setuptools/blob/main/CHANGES.rst)
- [Commits](pypa/setuptools@v60.0.3...v65.5.1)

---
updated-dependencies:
- dependency-name: setuptools
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>

* chore(deps): bump decode-uri-component from 0.2.0 to 0.2.2 in /docs

Bumps [decode-uri-component](https://github.com/SamVerschueren/decode-uri-component) from 0.2.0 to 0.2.2.
- [Release notes](https://github.com/SamVerschueren/decode-uri-component/releases)
- [Commits](SamVerschueren/decode-uri-component@v0.2.0...v0.2.2)

---
updated-dependencies:
- dependency-name: decode-uri-component
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>

* chore(deps): bump minimatch from 3.0.4 to 3.1.2 in /docs

Bumps [minimatch](https://github.com/isaacs/minimatch) from 3.0.4 to 3.1.2.
- [Changelog](https://github.com/isaacs/minimatch/blob/main/changelog.md)
- [Commits](isaacs/minimatch@v3.0.4...v3.1.2)

---
updated-dependencies:
- dependency-name: minimatch
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>

* chore(deps): bump async from 2.6.3 to 2.6.4 in /docs

Bumps [async](https://github.com/caolan/async) from 2.6.3 to 2.6.4.
- [Release notes](https://github.com/caolan/async/releases)
- [Changelog](https://github.com/caolan/async/blob/v2.6.4/CHANGELOG.md)
- [Commits](caolan/async@v2.6.3...v2.6.4)

---
updated-dependencies:
- dependency-name: async
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>

* chore(deps): bump prismjs from 1.24.1 to 1.29.0 in /docs

Bumps [prismjs](https://github.com/PrismJS/prism) from 1.24.1 to 1.29.0.
- [Release notes](https://github.com/PrismJS/prism/releases)
- [Changelog](https://github.com/PrismJS/prism/blob/master/CHANGELOG.md)
- [Commits](PrismJS/prism@v1.24.1...v1.29.0)

---
updated-dependencies:
- dependency-name: prismjs
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>

* chore(deps): bump marked and hexo-renderer-marked in /docs

Bumps [marked](https://github.com/markedjs/marked) to 4.3.0 and updates ancestor dependency [hexo-renderer-marked](https://github.com/hexojs/hexo-renderer-marked). These dependencies need to be updated together.

Updates `marked` from 2.1.3 to 4.3.0
- [Release notes](https://github.com/markedjs/marked/releases)
- [Changelog](https://github.com/markedjs/marked/blob/master/.releaserc.json)
- [Commits](markedjs/marked@v2.1.3...v4.3.0)

Updates `hexo-renderer-marked` from 4.1.0 to 6.0.0
- [Release notes](https://github.com/hexojs/hexo-renderer-marked/releases)
- [Commits](hexojs/hexo-renderer-marked@v4.1.0...v6.0.0)

---
updated-dependencies:
- dependency-name: marked
  dependency-type: indirect
- dependency-name: hexo-renderer-marked
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>

* chore(deps): bump marked and hexo-renderer-marked in /docs

Bumps [marked](https://github.com/markedjs/marked) to 4.3.0 and updates ancestor dependency [hexo-renderer-marked](https://github.com/hexojs/hexo-renderer-marked). These dependencies need to be updated together.

Updates `marked` from 2.1.3 to 4.3.0
- [Release notes](https://github.com/markedjs/marked/releases)
- [Changelog](https://github.com/markedjs/marked/blob/master/.releaserc.json)
- [Commits](markedjs/marked@v2.1.3...v4.3.0)

Updates `hexo-renderer-marked` from 4.1.0 to 6.0.0
- [Release notes](https://github.com/hexojs/hexo-renderer-marked/releases)
- [Commits](hexojs/hexo-renderer-marked@v4.1.0...v6.0.0)

---
updated-dependencies:
- dependency-name: marked
  dependency-type: indirect
- dependency-name: hexo-renderer-marked
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>

* [submodules] Build static heartexlabs/dm2

* [submodules] Build static heartexlabs/dm2

* [submodules] Build static heartexlabs/dm2

* [submodules] Build static heartexlabs/dm2

* fix security issues related to hexo

* Revert "fix security issues related to hexo"

This reverts commit e269e33.

* [submodules] Build static heartexlabs/label-studio-frontend

* [submodules] Build static heartexlabs/dm2

* update to latest submodules

* resolve merge error

* restore sourcemaps

* Trigger PR

---------

Signed-off-by: dependabot[bot] <[email protected]>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Julio Sgarbi <[email protected]>
Co-authored-by: hlomzik <[email protected]>
  • Loading branch information
4 people authored Jun 7, 2023
1 parent 67e52d0 commit 6da8a78
Show file tree
Hide file tree
Showing 3 changed files with 542 additions and 539 deletions.
2 changes: 1 addition & 1 deletion deploy/requirements-mw.txt
Original file line number Diff line number Diff line change
@@ -1,2 +1,2 @@
pip==21.3.1
setuptools==60.0.3
setuptools==65.5.1
Loading

0 comments on commit 6da8a78

Please sign in to comment.