Skip to content

[Dependabot] Bump vite from 5.4.17 to 5.4.19 - #4604

Merged
tdonohue merged 1 commit into
DSpace:dspace-8_xfrom
DSpace-Labs:dependabot/npm_and_yarn/vite-5.4.19
Jul 30, 2025
Merged

[Dependabot] Bump vite from 5.4.17 to 5.4.19#4604
tdonohue merged 1 commit into
DSpace:dspace-8_xfrom
DSpace-Labs:dependabot/npm_and_yarn/vite-5.4.19

Conversation

@tdonohue

Copy link
Copy Markdown
Member

NOTE: This PR was generated by @dependabot in our https://github.com/DSpace-Labs/dspace-angular-8x repository (see DSpace-Labs#12). It patches a security alert in vite in dspace-8_x.

Bumps vite from 5.4.17 to 5.4.19.


updated-dependencies:

  • dependency-name: vite dependency-version: 5.4.19 dependency-type: indirect ...

Bumps [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) from 5.4.17 to 5.4.19.
- [Release notes](https://github.com/vitejs/vite/releases)
- [Changelog](https://github.com/vitejs/vite/blob/v5.4.19/packages/vite/CHANGELOG.md)
- [Commits](https://github.com/vitejs/vite/commits/v5.4.19/packages/vite)

---
updated-dependencies:
- dependency-name: vite
  dependency-version: 5.4.19
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@tdonohue tdonohue added this to the 8.3 milestone Jul 30, 2025
@tdonohue tdonohue added the dependencies Pull requests that update a dependency file label Jul 30, 2025
@tdonohue tdonohue added the 1 APPROVAL pull request only requires a single approval to merge label Jul 30, 2025

@tdonohue tdonohue left a comment

Copy link
Copy Markdown
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

👍 This is the same version of vite that is already specified on dspace-9_x and main in the package-lock.json for both. Plus, it passes all tests.

@tdonohue
tdonohue merged commit e3284c6 into DSpace:dspace-8_x Jul 30, 2025
15 checks passed
@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/vite-5.4.19 branch July 30, 2025 20:38
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

1 APPROVAL pull request only requires a single approval to merge dependencies Pull requests that update a dependency file

Projects

Development

Successfully merging this pull request may close these issues.

1 participant