Skip to content

chore(deps): bump serialize-javascript and @iobroker/testing#261

Open
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/npm_and_yarn/multi-a5f096186b
Open

chore(deps): bump serialize-javascript and @iobroker/testing#261
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/npm_and_yarn/multi-a5f096186b

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Sep 30, 2025

Bumps serialize-javascript to 6.0.2 and updates ancestor dependency @iobroker/testing. These dependencies need to be updated together.

Updates serialize-javascript from 6.0.0 to 6.0.2

Release notes

Sourced from serialize-javascript's releases.

v6.0.2

  • fix: serialize URL string contents to prevent XSS (#173) f27d65d
  • Bump @​babel/traverse from 7.10.1 to 7.23.7 (#171) 02499c0
  • docs: update readme with URL support (#146) 0d88527
  • chore: update node version and lock file e2a3a91
  • fix typo (#164) 5a1fa64

yahoo/serialize-javascript@v6.0.1...v6.0.2

v6.0.1

What's Changed

New Contributors

Full Changelog: yahoo/serialize-javascript@v6.0.0...v6.0.1

Commits

Updates @iobroker/testing from 2.6.0 to 5.1.1

Changelog

Sourced from @​iobroker/testing's changelog.

5.1.1 (2025-08-31)

  • (@​Apollon77) Downgrades chai-as-promised type dependency to same major as main dependency

5.1.0 (2025-08-24)

  • (mcm1957) type definitions for chai, mocha and sinon have been moved to dependencies to deliver them to adapter repositories
  • NOTE: above change allows removal of chai / mocha / sinon dependencies from adapter package.jsons

5.0.4 (2025-03-24)

  • Corrected the delState method in the adapter mock

5.0.3 (2025-01-23)

  • Packages were updated

5.0.0 (2024-09-14)

  • Types were migrated to '@​iobroker/types' from '@​types/iobroker'

4.1.3 (2024-04-17)

  • Allow (deprecated) HTML as admin UI in package tests, so old adapters using HTML UI can still utilize the rest of the package tests

4.1.2 (2024-04-17)

  • Fix: Use shell to spawn npm on Windows to prevent hanging
  • Fix: Duplicate logging of => false when testing if JS controller is running

4.1.1 (2024-03-05)

  • Add support for the new licenseInformation field in io-package.json
  • Add test for the tier field in io-package.json
  • Honor onlyWWW flag in io-package.json

4.1.0 (2022-08-30)

  • Support for specifying the JS-Controller version in integration tests

4.0.0 (2022-08-28)

  • BREAKING: Dropped support for Node.js 12
  • Allow skipping test suites (suite.skip()) and running single test suites (suite.only())

3.0.2 (2022-05-15)

  • Fix: Replace the harness argument to the suite() function with a getHarness() function to avoid accessing a stale harness.

3.0.1 (2022-05-09)

  • BREAKING: The function signature of defineAdditionalTests in integration tests has changed. All user-defined integration tests must now be grouped in one or more suite blocks. The adapter will now only be started at the beginning of each suite. See the documentation for details.
  • BREAKING: The function signature of harness.startAdapterAndWait has changed. It now accepts a boolean as the first parameter which controls whether to wait for the alive state (false) or the info.connection state (true).
Commits
  • ca59ea9 chore: release v5.1.1
  • 18408ba Downgrades chai-as-promised type dependency (#667)
  • 4b9e112 update deps
  • f115646 chore: release v5.1.0
  • 62facb3 prepare release
  • f78a670 Deliver important types as dependencies to allow removing from adapter reposi...
  • 0db3405 chore(deps): bump debug from 4.4.0 to 4.4.1 (#661)
  • ff43e4c chore(deps-dev): bump @​iobroker/eslint-config from 2.0.1 to 2.0.2 (#659)
  • 7b100b7 chore(deps-dev): bump @​iobroker/types from 7.0.6 to 7.0.7 (#656)
  • e47e26b chore(deps-dev): bump @​tsconfig/node16 from 16.1.3 to 16.1.4 (#655)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [serialize-javascript](https://github.com/yahoo/serialize-javascript) to 6.0.2 and updates ancestor dependency [@iobroker/testing](https://github.com/AlCalzone/testing). These dependencies need to be updated together.


Updates `serialize-javascript` from 6.0.0 to 6.0.2
- [Release notes](https://github.com/yahoo/serialize-javascript/releases)
- [Commits](yahoo/serialize-javascript@v6.0.0...v6.0.2)

Updates `@iobroker/testing` from 2.6.0 to 5.1.1
- [Changelog](https://github.com/ioBroker/testing/blob/master/CHANGELOG.md)
- [Commits](ioBroker/testing@v2.6.0...v5.1.1)

---
updated-dependencies:
- dependency-name: serialize-javascript
  dependency-version: 6.0.2
  dependency-type: indirect
- dependency-name: "@iobroker/testing"
  dependency-version: 5.1.1
  dependency-type: direct:development
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Sep 30, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant