Skip to content

Bump fast-uri from 2.4.4 to 2.4.7 in /packages/cli - #136

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/packages/cli/fast-uri-2.4.6
Closed

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/packages/cli/fast-uri-2.4.6

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 2, 2026

Copy link
Copy Markdown
Contributor

Bumps fast-uri from 2.4.4 to 2.4.7.

Release notes

Sourced from fast-uri's releases.

v2.4.7

⚠️ Security Warning

This security release fixes the following medium-severity security advisory:

Users of the v2.x release line should upgrade to v2.4.7.

Full Changelog: fastify/fast-uri@v2.4.6...v2.4.7

v2.4.6

⚠️ Security Warning

This is a security release that fixes the following high-severity security advisories:

Users of the v2.x release line should upgrade to v2.4.6.

Full Changelog: fastify/fast-uri@v2.4.5...v2.4.6

v2.4.5

⚠️ Security Warning

This release addresses the following high-severity security advisories:

Users of the v2.x release line should upgrade to v2.4.5.

Full Changelog: fastify/fast-uri@v2.4.4...v2.4.5

Commits
  • 871c650 Bumped v2.4.7
  • 4d99048 fix: normalize decoded reg-name case
  • ccd1f8d Bumped v2.4.6
  • 812bd8e fix: backport port and IP-literal validation to v2.x (#215)
  • 134064e fix: treat unterminated bracket hosts as reg-names again (#214)
  • 21e274e Bumped v2.4.5
  • c04a58d fix: never run IDN canonicalization on bracketed IP literals
  • 10ab491 fix(ci): declare tape in devDependencies
  • a941e62 Merge commit from fork
  • 9161ede Merge commit from fork
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Sep 2, 2026
Bumps [fast-uri](https://github.com/fastify/fast-uri) from 2.4.4 to 2.4.7.
- [Release notes](https://github.com/fastify/fast-uri/releases)
- [Commits](fastify/fast-uri@v2.4.4...v2.4.7)

---
updated-dependencies:
- dependency-name: fast-uri
  dependency-version: 2.4.6
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot changed the title Bump fast-uri from 2.4.4 to 2.4.6 in /packages/cli Bump fast-uri from 2.4.4 to 2.4.7 in /packages/cli Sep 19, 2026
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/packages/cli/fast-uri-2.4.6 branch from 40fbfd5 to 75642ae Compare September 19, 2026 11:15
@dependabot @github

dependabot Bot commented on behalf of github Sep 19, 2026

Copy link
Copy Markdown
Contributor Author

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

@webstackdev
webstackdev deleted the dependabot/npm_and_yarn/packages/cli/fast-uri-2.4.6 branch September 19, 2026 11:17
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant