Skip to content

chore(deps): bump marked from 17.0.3 to 17.0.4 in the npm-dependencies group#157

Merged
staffbase-actions[bot] merged 1 commit intomainfrom
dependabot/npm_and_yarn/main/npm-dependencies-f9e5e21d62
Mar 12, 2026
Merged

chore(deps): bump marked from 17.0.3 to 17.0.4 in the npm-dependencies group#157
staffbase-actions[bot] merged 1 commit intomainfrom
dependabot/npm_and_yarn/main/npm-dependencies-f9e5e21d62

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Mar 12, 2026

Bumps the npm-dependencies group with 1 update: marked.

Updates marked from 17.0.3 to 17.0.4

Release notes

Sourced from marked's releases.

v17.0.4

17.0.4 (2026-03-04)

Bug Fixes

  • prevent ReDoS in inline link regex title group (#3902) (46fb9b8)
Commits
  • 22f0c55 chore(release): 17.0.4 [skip ci]
  • 46fb9b8 fix: prevent ReDoS in inline link regex title group (#3902)
  • 5b6faee chore(deps-dev): Bump eslint from 10.0.1 to 10.0.2 (#3904)
  • bcdaf6a chore(deps-dev): Bump @​semantic-release/npm from 13.1.4 to 13.1.5 (#3905)
  • baa78a5 docs: Add marked-abc to known extensions list (#3903)
  • 1aed9ac chore(deps-dev): Bump eslint from 10.0.0 to 10.0.1 (#3901)
  • 8045055 chore: rename escape helper function (#3900)
  • See full diff in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the npm-dependencies group with 1 update: [marked](https://github.com/markedjs/marked).


Updates `marked` from 17.0.3 to 17.0.4
- [Release notes](https://github.com/markedjs/marked/releases)
- [Commits](markedjs/marked@v17.0.3...v17.0.4)

---
updated-dependencies:
- dependency-name: marked
  dependency-version: 17.0.4
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added npm dependency patch Pull request with little updates labels Mar 12, 2026
@dependabot dependabot bot requested a review from a team as a code owner March 12, 2026 07:03
@dependabot dependabot bot added npm dependency patch Pull request with little updates labels Mar 12, 2026
@staffbase-actions staffbase-actions bot enabled auto-merge (squash) March 12, 2026 07:03
@staffbase-actions staffbase-actions bot merged commit 9af6dc8 into main Mar 12, 2026
7 checks passed
@staffbase-actions staffbase-actions bot deleted the dependabot/npm_and_yarn/main/npm-dependencies-f9e5e21d62 branch March 12, 2026 07:31
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

npm dependency patch Pull request with little updates

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant