Skip to content

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jul 23, 2025

Bumps graphql from 2.3.4 to 2.3.21.

Changelog

Sourced from graphql's changelog.

Changelog

Versioning guidelines

Breaking changes

Deprecations

New features

Bug fixes

2.5.11 (9 Jul 2025)

Bug fixes

  • Dataloader: improve compatibility when objects are loaded by GraphQL-Batch but .authorized? uses Dataloader #5400

2.5.10 (3 Jul 2025)

New features

  • Schema: Add .freeze_schema for minimal Ractor support #5370

Bug fixes

  • Schema: inherit validation configurations #5382
  • Visibility: fix inheriting visibility with preload: true #5386
  • Improve error messages with interfaces from SDL #5372
  • Remove needless counter in execution code #5392
  • Reduce execution overhead in schemas built from SDL #5393
  • RequiredValidator: remove hidden definitions from error message #5396
  • .possible_types: don't return interfaces in this list #5395
  • dataload_association: fix loading associations with different scopes on the same object #5398

2.5.9 (6 Jun 2025)

New features

  • Improve metadata on Scalar coercion errors #5375

Bug fixes

  • Directives: fix validation of Ruby values on definition directive arguments #5377
  • loads:: fix typechecking of Interface loads: values #5379

2.5.8 (28 May 2025)

New features

... (truncated)

Commits
  • f20c5c3 2.3.21
  • e3b33ac Merge commit from fork
  • 9785ff7 2.3.21
  • 0050011 Fix cherry-pick
  • 902befd Fix method generation
  • fa47f92 Disable development NoEvalCop for load-time eval calls
  • 758da20 Update benchmark to use input objects and measure retained memory
  • 1e7ad73 Add a cop to catch _eval usage, update all block calls to use _exec instead
  • 074c4d9 Apply NameValidator to fields and arguments
  • 252cac0 2.3.20
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [graphql](https://github.com/rmosolgo/graphql-ruby) from 2.3.4 to 2.3.21.
- [Release notes](https://github.com/rmosolgo/graphql-ruby/releases)
- [Changelog](https://github.com/rmosolgo/graphql-ruby/blob/master/CHANGELOG.md)
- [Commits](rmosolgo/graphql-ruby@v2.3.4...v2.3.21)

---
updated-dependencies:
- dependency-name: graphql
  dependency-version: 2.3.21
  dependency-type: direct:development
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file ruby Pull requests that update ruby code labels Jul 23, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file ruby Pull requests that update ruby code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants