Skip to content

Chore(deps): Bump the production-dependencies group across 1 directory with 29 updates - #874

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/production-dependencies-4ee91bcb0f
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/production-dependencies-4ee91bcb0f

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 29, 2026 •

Copy link
Copy Markdown

Bumps the production-dependencies group with 29 updates in the / directory:

Package From To
@codemirror/autocomplete 6.20.1 6.20.3
@codemirror/commands 6.10.3 6.11.1
@codemirror/lang-markdown 6.5.0 6.5.2
@codemirror/language 6.12.3 6.12.4
@codemirror/search 6.6.0 6.7.2
@codemirror/state 6.7.1 6.7.6
@codemirror/view 6.43.8 6.43.13
@lezer/highlight 1.2.3 1.2.5
@modelcontextprotocol/sdk 1.31.0 1.32.0
@replit/codemirror-vim 6.3.0 6.4.0
@xyflow/react 12.11.2 12.12.0
chokidar 4.0.3 5.0.0
docx 9.7.1 9.8.1
dompurify 3.4.14 3.4.16
font-list 2.0.2 2.1.0
function-plot 1.25.3 1.25.4
harper.js 2.7.0 2.10.0
highlight.js 11.11.1 11.12.0
jsxgraph 1.12.2 1.13.3
katex 0.16.47 0.19.0
mermaid 11.17.0 12.1.0
prettier 3.8.3 3.9.9
react 18.3.1 19.3.0
react-dom 18.3.1 19.3.0
smol-toml 1.8.0 1.9.0
ws 8.21.3 8.22.0
zustand 5.0.12 5.0.15
@codemirror/lang-html 6.4.11 6.4.12
@lezer/common 1.5.2 1.5.3

Updates @codemirror/autocomplete from 6.20.1 to 6.20.3

Commits

Updates @codemirror/commands from 6.10.3 to 6.11.1

Commits

Updates @codemirror/lang-markdown from 6.5.0 to 6.5.2

Commits

Updates @codemirror/language from 6.12.3 to 6.12.4

Commits

Updates @codemirror/search from 6.6.0 to 6.7.2

Commits

Updates @codemirror/state from 6.7.1 to 6.7.6

Commits

Updates @codemirror/view from 6.43.8 to 6.43.13

Commits

Updates @lezer/highlight from 1.2.3 to 1.2.5

Commits

Updates @modelcontextprotocol/sdk from 1.31.0 to 1.32.0

Release notes

Sourced from @​modelcontextprotocol/sdk's releases.

1.32.0

Upgrade notes

  • Redirects: the HTTP client transports now follow a redirect only when it stays on the same origin (same scheme, host and port; http to https on the same host is allowed). A deployment whose endpoint redirects to another host or port either configures the final URL or sets redirectPolicy: 'follow' on StreamableHTTPClientTransport or SSEClientTransport. In browsers, a redirected request fails unless that option is set.
  • New options, both off unless you set them: maxToolInputElements on McpServer limits the number of array elements and object members in a tool call's arguments. expectedResource on requireBearerAuth accepts only tokens issued for this server (the token's audience).

What's Changed

New Contributors

Full Changelog: modelcontextprotocol/typescript-sdk@1.31.0...1.32.0

Commits
  • 32549b0 chore: bump version to 1.32.0 (#2935)
  • 588d51d [v1.x] test(e2e): cover tools/call and prompts/get without arguments (#2931)
  • 5a0724d [v1.x] feat(auth): add expectedResource to requireBearerAuth (#2930)
  • 0ca0b62 [v1.x] fix(server): accept tools/call and prompts/get requests that omit argu...
  • fd26801 [v1.x] feat(server): add maxToolInputElements option to limit the number of e...
  • 727075b [v1.x] fix(tasks): keep tasks of the in-memory task store within the session ...
  • 0ff6377 [v1.x] examples: close idle sessions and cap the session map (#2914)
  • c2ce003 docs: point SECURITY.md at GitHub Security Advisories (v1.x) (#2910)
  • 30bfe51 [v1.x] fix(client): follow redirects only within the endpoint's origin (#2902)
  • See full diff in compare view

Updates @replit/codemirror-vim from 6.3.0 to 6.4.0

Changelog

Sourced from @​replit/codemirror-vim's changelog.

[@​replit/codemirror-vim@​6.4.0] - 2026-07-28

Added

Fixed

  • gj clipping at the end of the document (c912733, #258)
  • Ex commands with mark and cursor line ranges such as :'a,.y (d19062a, #257)
  • , (repeat character search in reverse) in visual mode (cc81e48, #256)
  • :sort with a pattern and the r flag (66332dd, #253)
  • Status bar display of visual line mode (71919db, #236)
Commits
Maintainer changes

This version was pushed to npm by GitHub Actions, a new releaser for @​replit/codemirror-vim since your current version.


Updates @xyflow/react from 12.11.2 to 12.12.0

Release notes

Sourced from @​xyflow/react's releases.

@​xyflow/react@​12.12.0

Minor Changes

  • #5998 91a4adf - Always fire onResizeEnd after onResizeStart

Patch Changes

@​xyflow/react@​12.11.6

Patch Changes

  • #5994 2350158 - Reset all properties in provider store when unmounting flow

  • #5997 0117cc9 - Prevent attribution warning when pane is not rendered either

  • Updated dependencies [0117cc9]:

    • @​xyflow/system@​0.0.82

@​xyflow/react@​12.11.5

Patch Changes

  • Updated dependencies [22e0be2]:
    • @​xyflow/system@​0.0.81

@​xyflow/react@​12.11.4

Patch Changes

  • #5974 8c42922 - Minimap still works after ReactFlow remounts

  • #5962 cbf40b9 - Show log if user hides attribution in development

  • #5976 3319ef4 - Fix the MiniMap zooming out to include the origin when every node is hidden.

  • #5955 965ca70 - Fix MiniMap calling useCallback conditionally for onNodeClick.

@​xyflow/react@​12.11.3

Patch Changes

  • #5902 393d951 - Allow middle-mouse viewport panning to start from a selection rectangle.

  • #5889 ff126a0 - Fix extent: 'parent' not immediately resolving when parent has width or initialWidth.

... (truncated)

Changelog

Sourced from @​xyflow/react's changelog.

12.12.0

Minor Changes

  • #5998 91a4adf - Always fire onResizeEnd after onResizeStart

Patch Changes

12.11.6

Patch Changes

  • #5994 2350158 - Reset all properties in provider store when unmounting flow

  • #5997 0117cc9 - Prevent attribution warning when pane is not rendered either

  • Updated dependencies [0117cc9]:

    • @​xyflow/system@​0.0.82

12.11.5

Patch Changes

  • Updated dependencies [22e0be2]:
    • @​xyflow/system@​0.0.81

12.11.4

Patch Changes

  • #5974 8c42922 - Minimap still works after ReactFlow remounts

  • #5962 cbf40b9 - Show log if user hides attribution in development

... (truncated)

Commits
  • 8716946 chore(packages): bump
  • 9fd41fd chore(packages): bump
  • 19f9c2a fix(react/store): reset defaultEdgeOptions
  • 2acefb5 fix(react/store): reset functions #5991
  • 8f0a5d6 chore(packages): bump
  • 286816c chore(packages): bump
  • 3319ef4 fix(react): keep minimap bounds at the viewport when all nodes are hidden
  • b7186f3 fix(react): minimap still works after reactflow remounts #5971
  • d8edc77 Merge pull request #5955 from Jian-Zhang08/fix/minimap-onnodeclick-conditiona...
  • 59b1a60 Simplify node click handling in MiniMap component
  • Additional commits viewable in compare view

Updates chokidar from 4.0.3 to 5.0.0

Release notes

Sourced from chokidar's releases.

5.0.0

  • Make the package ESM-only. Reduces on-disk package size from ~150kb to ~80kb
  • Increase minimum node.js version to v20.19. The versions starting from it support loading esm files from cjs
  • fix: Make types more precise paulmillr/chokidar#1424
  • perf: re-use double slash regex paulmillr/chokidar#1435
  • Update readdirp to ESM-only v5
  • Lots of minor improvements in tests
  • Increase security of NPM releases. Switch to token-less Trusted Publishing, with help of jsbt
  • Switch compilation mode to isolatedDeclaration-based typescript for simplified auto-generated docs

New Contributors

Full Changelog: paulmillr/chokidar@4.0.3...5.0.0

Changelog

Sourced from chokidar's changelog.

5.0.0 (2025-11-25)

  • Made the package ESM-only, reducing on-disk size from ~150 KB to ~80 KB.
  • Required Node.js 20.19 or later, which can load ESM from CommonJS.
  • Updated readdirp to the ESM-only v5.
  • Made matcher types more precise, contributed by @​43081j in [pull request #1424](paulmillr/chokidar#1424).
  • Reused the double-slash regex, contributed by @​43081j in [pull request #1435](paulmillr/chokidar#1435).
  • Switched npm releases to token-less Trusted Publishing with jsbt.
  • Switched compilation to isolatedDeclarations-based TypeScript for simpler auto-generated docs.
  • Improved tests.

New contributors

Commits
Maintainer changes

This version was pushed to npm by GitHub Actions, a new releaser for chokidar since your current version.


Updates docx from 9.7.1 to 9.8.1

Release notes

Sourced from docx's releases.

9.8.1 adds math from LaTeX to docx/math, and makes every example in the docs live.

latexToMath turns LaTeX math into equations that Word shows and edits as its own. It reads the math that LaTeX, MathJax and KaTeX write, including fractions, roots, scripts, sums and integrals, \left … \right, accents, braces, fonts, \text, and environments such as matrix, cases and align, where \tag numbers a row. It returns components, so you can mix LaTeX with math you build by hand. Anything it can't read throws an error that says what and where. See Math from LaTeX.

LaTeX needed six new components, and you can use them by hand too: MathLargeOperator, MathAccent, MathBar, MathBrace, MathBox and MathPhantom. MathRun gains style, script and literal. MathFraction gains type (stacked, skewed, linear or no bar), and MathSum and MathIntegral gain limits.

The docs' examples now run in the page with this version of docx and draw the document next to the code. You can edit the code, with completions and type errors, and download the .docx. Running all 443 examples found docs that were wrong, and they're fixed: landscape pages, custom properties, comments, and APIs that no longer exist. The sidebar also stops listing every chart page, and shows a page's child pages only once you open it.

The empty WORKAROUND2, WORKAROUND3 and WORKAROUND4 exports are gone. They were only there for awesome-typescript-loader, which docx stopped using in 2021.

What's Changed

Full Changelog: dolanmiu/docx@9.8.0...9.8.1

9.8.0 is one of the biggest releases of docx yet. It adds charts, shapes and watermarks, and a lot more math. Each has its own entry point (docx/charts, docx/shapes, docx/watermarks and docx/math), so your bundle only includes the ones you import.

Charts are native Word charts, not pictures. Word draws them from their data in the document's theme, and Edit Data opens that data in Excel. You can make column, bar, line, area, pie, doughnut, pie of pie, bar of pie, radar, scatter, bubble, stock and combo charts, with trendlines, error bars, categories in groups and more. Charts also work in templates. patchDocument can put a new ChartRun where a placeholder is, and ChartDataPatch gives new data to a chart made and styled in Word while keeping its look.

Shapes cover Word's preset shapes (rectangles, ellipses, arrows, callouts, flowchart symbols and the rest), plus custom shapes drawn from SVG paths. You can group shapes with ShapeGroupRun, or join them with connectors on a ShapeCanvasRun and let automatic layout place them, which is how you'd build flowcharts, org charts and swimlane diagrams. Math gains matrices, cases, equations lined up with numbers, and brackets made of any characters. Math you already import from docx keeps working there. Watermarks are text or pictures behind every page, and Word recognises them in its own Design > Watermark menu.

Every document now has a theme, and you can set its colours and fonts with the theme option. Text, underlines, borders, shading, shapes and the page background can use theme colours, and text can use the theme's heading or body font, so they all change when the theme is changed in Word. patchDocument works out theme colours from the template's own theme.

Every demo's document is now checked with the Open XML SDK validator in CI, and this release fixes everything it found. Thank you to everyone who contributed, and welcome to our five new contributors: @​slmnsh added image cropping, @​theunal watermarks, @​holm run properties on ImageRun, and @​omartuhintvs and @​fushanbobfan fixes to tables and the patcher.

What's Changed

... (truncated)

Commits
  • 0e8ff7a chore: Version bump to 9.8.1 (#3572)
  • 71b11d6 chore: remove the awesome-typescript-loader WORKAROUND exports (#3571)
  • eb20651 feat: math from LaTeX in docx/math, with accents, bars, braces, boxes, phanto...
  • 5213b31 chore: Add evaluate PR skill
  • 1044859 build(deps-dev): bump typescript-eslint from 8.70.0 to 8.70.1 (#3565)
  • d152b80 chore: remove @​types/inquirer, since inquirer ships its own types (#3569)
  • 70bca29 build(deps-dev): bump jsdom from 30.1.0 to 30.1.1 (#3564)
  • 42caf4a build(deps-dev): bump @​typescript-eslint/parser from 8.70.0 to 8.70.1 (#3567)
  • 98d404c build(deps-dev): bump cspell from 10.0.0 to 10.3.4 (#3568)
  • a56f383 build(deps-dev): bump eslint-plugin-functional from 9.0.5 to 10.0.1 (#3562)
  • Additional commits viewable in compare view

Updates dompurify from 3.4.14 to 3.4.16

Release notes

Sourced from dompurify's releases.

DOMPurify 3.4.16

  • Fixed a problem with IN_PLACE node removal when working with hooks, thanks @​manus-pi
  • Fixed a problem with IN_PLACE sanitization and raw-text roots, thanks @​h-t-m
  • Fixed a problem with ESM default exports landing in CommonJS declarations, thanks @​ssi02014
  • Migrated from rollup to rolldown because performance, thanks @​ssi02014
  • Bumped several dependencies where possible

DOMPurify 3.4.15

  • Added better clobbering hardening when XML content is involved, thanks @​gnyselcuk
  • Added several smaller hardening and edge-case improvements, thanks @​leechristensen
  • Bumped several dependencies where possible
Commits

Updates font-list from 2.0.2 to 2.1.0

Commits

Updates function-plot from 1.25.3 to 1.25.4

Release notes

Sourced from function-plot's releases.

v1.25.4

  • chore: bump dependencies 58a7830

mauriciopoppe/function-plot@v1.25.3...v1.25.4

Commits

Updates harper.js from 2.7.0 to 2.10.0

Release notes

Sourced from harper.js's releases.

v2.10.0

What's Changed

... (truncated)

Commits

Updates highlight.js from 11.11.1 to 11.12.0

Release notes

Sourced from highlight.js's releases.

v11.12.0 - Summer, hot and rainy.

Parser Engine:

  • fix(parser) count named capture groups when rewriting backreferences [spokodev][]

New Grammars:

  • add FreeDesktop config file (.desktop / systemd) grammar [gg582][]
  • added 3rd party Cedar grammar to SUPPORTED_LANGUAGES [Dhruv Maniya][]
  • added 3rd party DAX and M (Power Query) grammars to SUPPORTED_LANGUAGES [jiaopengzi][]
  • added 3rd party Djot grammar to SUPPORTED_LANGUAGES [Mark Scherer][]
  • added 3rd party Igor Pro grammar to SUPPORTED_LANGUAGES [Ryne Andal][]
  • added 3rd party Jaiva grammar to SUPPORTED_LANGUAGES [Lehlogonolo Poole][]
  • added 3rd party Liquidsoap grammar to SUPPORTED_LANGUAGES [Romain Beauxis][]
  • added 3rd party MoonBit grammar to SUPPORTED_LANGUAGES [Kaida-Amethyst][]
  • added 3rd party Pkl grammar to SUPPORTED_LANGUAGES [Dan Chao][]
  • added 3rd party RAScript grammar to SUPPORTED_LANGUAGES [Joshua Raphael][]
  • added 3rd party Veryl grammar to SUPPORTED_LANGUAGES [Naoya Hatta][]
  • added 3rd party Why3 grammar to SUPPORTED_LANGUAGES [JGalego][]
  • added 3rd party Xojo grammar to SUPPORTED_LANGUAGES [patricksalo][]
  • referenced existing 3rd party ES|QL grammar in SUPPORTED_LANGUAGES [Styx0x6][]

Core Grammars:

  • fix(c) only match real atomic_* type names, not C11 atomic functions, issue #3837 [Mark Xian][]
  • fix(c, cpp) bound the run of type tokens in front of a function name (ReDoS), issue #4362 [Jayesh Bhade][]
  • fix(c, cpp) scope angle-bracket header string to #include, issue #3505 [Pablo][]
  • fix(c, cpp) stop a raw string's closing delimiter from swallowing quotes, issue #3585 [David Pavlovschii][]
  • enh(cmake) add block and endblock keywords [Anonymous Maarten][]
  • fix(cmake) only highlight standalone numbers, not digits that begin an identifier (e.g. 3rdparty), issue #4170 [Mark Xian][]
  • fix(cpp) require a word boundary before numeric literals so digits inside identifiers aren't highlighted as numbers, issue #4231 [Mark Xian][]
  • fix(crystal) stop treating integer division // as a regex literal [Zain Asif][]
  • enh(csharp) support digit separators in binary literals and numeric type suffixes, and stop highlighting the leading _ of an identifier, issue #4258 [Sarath Francis][]
  • enh(css) add corner-shape properties [Hama Tanveer][]
  • enh(css) support six-digit unicode-range values [Konstantin Baltsat][]
  • enh(dart) add highlighting for class and function names [guuido][]
  • enh(dns) highlight registered CAA property tags, issue #4475 [Joey Huang][]
  • enh(dns) improve grammar: character strings, TXT, classes, escapes, addresses [Checconio][]
  • enh(dos) add batch as an alias, issue #4395 [Hashim Khan][]
  • enh(gherkin) update keyword list [Hirse][]
  • enh(gherkin) variables can't contain whitespace [Hirse][]
  • enh(gherkin) docstrings can use backticks [Hirse][]
  • enh(go) recognize binary integer literals [spokodev][]
  • enh(groovy) support underscores in numeric literals [greymoth][]
  • fix(haskell) highlight where in GADT and closed type-family declarations, issue #3753 [Konstantin Baltsat][]
  • enh(java) improve detection of types, including generic and array types [Hannes Wallnoefer][]
  • enh(javascript) add self to built-in variables [Dsaquel][]
  • enh(kotlin) add ktm and ktx aliases [DarkMatter-999][]
  • fix(leaf) fix bug in Leaf keyword highlighting [Francesco Paolo Severino][]
  • fix(lisp) preserve highlighting after quoted multiplication expressions [arturict][]

... (truncated)

Changelog

Sourced from highlight.js's changelog.

Version 11.12.0

Parser Engine:

  • fix(parser) count named capture groups when rewriting backreferences [spokodev][]

New Grammars:

  • add FreeDesktop config file (.desktop / systemd) grammar [gg582][]
  • added 3rd party Cedar grammar to SUPPORTED_LANGUAGES [Dhruv Maniya][]
  • added 3rd party DAX and M (Power Query) grammars to SUPPORTED_LANGUAGES [jiaopengzi][]
  • added 3rd party Djot grammar to SUPPORTED_LANGUAGES [Mark Scherer][]
  • added 3rd party Igor Pro grammar to SUPPORTED_LANGUAGES [Ryne Andal][]
  • added 3rd party Jaiva grammar to SUPPORTED_LANGUAGES [Lehlogonolo Poole][]
  • added 3rd party Liquidsoap grammar to SUPPORTED_LANGUAGES [Romain Beauxis][]
  • added 3rd party MoonBit grammar to SUPPORTED_LANGUAGES [Kaida-Amethyst][]
  • added 3rd party Pkl grammar to SUPPORTED_LANGUAGES [Dan Chao][]
  • added 3rd party RAScript grammar to SUPPORTED_LANGUAGES [Joshua Raphael][]
  • added 3rd party Ve...

    Description has been truncated

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 29, 2026
@dependabot
dependabot Bot requested a review from adibhanna as a code owner September 29, 2026 17:17
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 29, 2026
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/production-dependencies-4ee91bcb0f branch 8 times, most recently from 68c5909 to dff16d6 Compare October 5, 2026 22:06
…y with 29 updates

Bumps the production-dependencies group with 29 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [@codemirror/autocomplete](https://github.com/codemirror/autocomplete) | `6.20.1` | `6.20.3` |
| [@codemirror/commands](https://github.com/codemirror/commands) | `6.10.3` | `6.11.1` |
| [@codemirror/lang-markdown](https://github.com/codemirror/lang-markdown) | `6.5.0` | `6.5.2` |
| [@codemirror/language](https://github.com/codemirror/language) | `6.12.3` | `6.12.4` |
| [@codemirror/search](https://github.com/codemirror/search) | `6.6.0` | `6.7.2` |
| [@codemirror/state](https://github.com/codemirror/state) | `6.7.1` | `6.7.6` |
| [@codemirror/view](https://github.com/codemirror/view) | `6.43.8` | `6.43.13` |
| [@lezer/highlight](https://github.com/lezer-parser/highlight) | `1.2.3` | `1.2.5` |
| [@modelcontextprotocol/sdk](https://github.com/modelcontextprotocol/typescript-sdk) | `1.31.0` | `1.32.0` |
| [@replit/codemirror-vim](https://github.com/replit/codemirror-vim/tree/HEAD/packages/codemirror-vim) | `6.3.0` | `6.4.0` |
| [@xyflow/react](https://github.com/xyflow/xyflow/tree/HEAD/packages/react) | `12.11.2` | `12.12.0` |
| [chokidar](https://github.com/paulmillr/chokidar) | `4.0.3` | `5.0.0` |
| [docx](https://github.com/dolanmiu/docx) | `9.7.1` | `9.8.1` |
| [dompurify](https://github.com/cure53/DOMPurify) | `3.4.14` | `3.4.16` |
| [font-list](https://github.com/oldj/node-font-list) | `2.0.2` | `2.1.0` |
| [function-plot](https://github.com/mauriciopoppe/function-plot) | `1.25.3` | `1.25.4` |
| [harper.js](https://github.com/automattic/harper/tree/HEAD/packages/harper.js) | `2.7.0` | `2.10.0` |
| [highlight.js](https://github.com/highlightjs/highlight.js) | `11.11.1` | `11.12.0` |
| [jsxgraph](https://github.com/jsxgraph/jsxgraph) | `1.12.2` | `1.13.3` |
| [katex](https://github.com/KaTeX/KaTeX) | `0.16.47` | `0.19.0` |
| [mermaid](https://github.com/mermaid-js/mermaid) | `11.17.0` | `12.1.0` |
| [prettier](https://github.com/prettier/prettier) | `3.8.3` | `3.9.9` |
| [react](https://github.com/react/react/tree/HEAD/packages/react) | `18.3.1` | `19.3.0` |
| [react-dom](https://github.com/react/react/tree/HEAD/packages/react-dom) | `18.3.1` | `19.3.0` |
| [smol-toml](https://github.com/squirrelchat/smol-toml) | `1.8.0` | `1.9.0` |
| [ws](https://github.com/websockets/ws) | `8.21.3` | `8.22.0` |
| [zustand](https://github.com/pmndrs/zustand) | `5.0.12` | `5.0.15` |
| [@codemirror/lang-html](https://github.com/codemirror/lang-html) | `6.4.11` | `6.4.12` |
| [@lezer/common](https://github.com/lezer-parser/common) | `1.5.2` | `1.5.3` |



Updates `@codemirror/autocomplete` from 6.20.1 to 6.20.3
- [Changelog](https://github.com/codemirror/autocomplete/blob/main/CHANGELOG.md)
- [Commits](https://github.com/codemirror/autocomplete/commits)

Updates `@codemirror/commands` from 6.10.3 to 6.11.1
- [Changelog](https://github.com/codemirror/commands/blob/main/CHANGELOG.md)
- [Commits](https://github.com/codemirror/commands/commits)

Updates `@codemirror/lang-markdown` from 6.5.0 to 6.5.2
- [Changelog](https://github.com/codemirror/lang-markdown/blob/main/CHANGELOG.md)
- [Commits](https://github.com/codemirror/lang-markdown/commits)

Updates `@codemirror/language` from 6.12.3 to 6.12.4
- [Changelog](https://github.com/codemirror/language/blob/main/CHANGELOG.md)
- [Commits](https://github.com/codemirror/language/commits)

Updates `@codemirror/search` from 6.6.0 to 6.7.2
- [Changelog](https://github.com/codemirror/search/blob/main/CHANGELOG.md)
- [Commits](https://github.com/codemirror/search/commits)

Updates `@codemirror/state` from 6.7.1 to 6.7.6
- [Changelog](https://github.com/codemirror/state/blob/main/CHANGELOG.md)
- [Commits](https://github.com/codemirror/state/commits)

Updates `@codemirror/view` from 6.43.8 to 6.43.13
- [Changelog](https://github.com/codemirror/view/blob/main/CHANGELOG.md)
- [Commits](https://github.com/codemirror/view/commits)

Updates `@lezer/highlight` from 1.2.3 to 1.2.5
- [Changelog](https://github.com/lezer-parser/highlight/blob/main/CHANGELOG.md)
- [Commits](https://github.com/lezer-parser/highlight/commits)

Updates `@modelcontextprotocol/sdk` from 1.31.0 to 1.32.0
- [Release notes](https://github.com/modelcontextprotocol/typescript-sdk/releases)
- [Commits](modelcontextprotocol/typescript-sdk@1.31.0...1.32.0)

Updates `@replit/codemirror-vim` from 6.3.0 to 6.4.0
- [Changelog](https://github.com/replit/codemirror-vim/blob/master/packages/codemirror-vim/CHANGELOG.md)
- [Commits](https://github.com/replit/codemirror-vim/commits/v6.4.0/packages/codemirror-vim)

Updates `@xyflow/react` from 12.11.2 to 12.12.0
- [Release notes](https://github.com/xyflow/xyflow/releases)
- [Changelog](https://github.com/xyflow/xyflow/blob/main/packages/react/CHANGELOG.md)
- [Commits](https://github.com/xyflow/xyflow/commits/@xyflow/react@12.12.0/packages/react)

Updates `chokidar` from 4.0.3 to 5.0.0
- [Release notes](https://github.com/paulmillr/chokidar/releases)
- [Changelog](https://github.com/paulmillr/chokidar/blob/main/CHANGELOG.md)
- [Commits](paulmillr/chokidar@4.0.3...5.0.0)

Updates `docx` from 9.7.1 to 9.8.1
- [Release notes](https://github.com/dolanmiu/docx/releases)
- [Commits](dolanmiu/docx@9.7.1...9.8.1)

Updates `dompurify` from 3.4.14 to 3.4.16
- [Release notes](https://github.com/cure53/DOMPurify/releases)
- [Commits](cure53/DOMPurify@3.4.14...3.4.16)

Updates `font-list` from 2.0.2 to 2.1.0
- [Commits](https://github.com/oldj/node-font-list/commits)

Updates `function-plot` from 1.25.3 to 1.25.4
- [Release notes](https://github.com/mauriciopoppe/function-plot/releases)
- [Commits](mauriciopoppe/function-plot@v1.25.3...v1.25.4)

Updates `harper.js` from 2.7.0 to 2.10.0
- [Release notes](https://github.com/automattic/harper/releases)
- [Commits](https://github.com/automattic/harper/commits/v2.10.0/packages/harper.js)

Updates `highlight.js` from 11.11.1 to 11.12.0
- [Release notes](https://github.com/highlightjs/highlight.js/releases)
- [Changelog](https://github.com/highlightjs/highlight.js/blob/main/CHANGES.md)
- [Commits](highlightjs/highlight.js@11.11.1...11.12.0)

Updates `jsxgraph` from 1.12.2 to 1.13.3
- [Release notes](https://github.com/jsxgraph/jsxgraph/releases)
- [Changelog](https://github.com/jsxgraph/jsxgraph/blob/main/CHANGELOG.md)
- [Commits](jsxgraph/jsxgraph@v1.12.2...v1.13.3)

Updates `katex` from 0.16.47 to 0.19.0
- [Release notes](https://github.com/KaTeX/KaTeX/releases)
- [Changelog](https://github.com/KaTeX/KaTeX/blob/main/CHANGELOG.md)
- [Commits](KaTeX/KaTeX@v0.16.47...v0.19.0)

Updates `mermaid` from 11.17.0 to 12.1.0
- [Release notes](https://github.com/mermaid-js/mermaid/releases)
- [Commits](https://github.com/mermaid-js/mermaid/compare/mermaid@11.17.0...mermaid@12.1.0)

Updates `prettier` from 3.8.3 to 3.9.9
- [Release notes](https://github.com/prettier/prettier/releases)
- [Changelog](https://github.com/prettier/prettier/blob/main/CHANGELOG.md)
- [Commits](prettier/prettier@3.8.3...3.9.9)

Updates `react` from 18.3.1 to 19.3.0
- [Release notes](https://github.com/react/react/releases)
- [Changelog](https://github.com/react/react/blob/main/CHANGELOG.md)
- [Commits](https://github.com/react/react/commits/v19.3.0/packages/react)

Updates `react-dom` from 18.3.1 to 19.3.0
- [Release notes](https://github.com/react/react/releases)
- [Changelog](https://github.com/react/react/blob/main/CHANGELOG.md)
- [Commits](https://github.com/react/react/commits/v19.3.0/packages/react-dom)

Updates `smol-toml` from 1.8.0 to 1.9.0
- [Release notes](https://github.com/squirrelchat/smol-toml/releases)
- [Commits](squirrelchat/smol-toml@v1.8.0...v1.9.0)

Updates `ws` from 8.21.3 to 8.22.0
- [Release notes](https://github.com/websockets/ws/releases)
- [Commits](websockets/ws@8.21.3...8.22.0)

Updates `zustand` from 5.0.12 to 5.0.15
- [Release notes](https://github.com/pmndrs/zustand/releases)
- [Commits](pmndrs/zustand@v5.0.12...v5.0.15)

Updates `@codemirror/lang-html` from 6.4.11 to 6.4.12
- [Changelog](https://github.com/codemirror/lang-html/blob/main/CHANGELOG.md)
- [Commits](https://github.com/codemirror/lang-html/commits)

Updates `@lezer/common` from 1.5.2 to 1.5.3
- [Changelog](https://github.com/lezer-parser/common/blob/main/CHANGELOG.md)
- [Commits](https://github.com/lezer-parser/common/commits)

---
updated-dependencies:
- dependency-name: "@codemirror/autocomplete"
  dependency-version: 6.20.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: "@codemirror/commands"
  dependency-version: 6.11.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: "@codemirror/lang-html"
  dependency-version: 6.4.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: "@codemirror/lang-markdown"
  dependency-version: 6.5.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: "@codemirror/language"
  dependency-version: 6.12.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: "@codemirror/search"
  dependency-version: 6.7.2
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: "@codemirror/state"
  dependency-version: 6.7.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: "@codemirror/view"
  dependency-version: 6.43.13
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: "@lezer/common"
  dependency-version: 1.5.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: "@lezer/highlight"
  dependency-version: 1.2.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: "@modelcontextprotocol/sdk"
  dependency-version: 1.30.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: "@replit/codemirror-vim"
  dependency-version: 6.4.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: "@xyflow/react"
  dependency-version: 12.12.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: chokidar
  dependency-version: 5.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: production-dependencies
- dependency-name: docx
  dependency-version: 9.7.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: dompurify
  dependency-version: 3.4.16
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: font-list
  dependency-version: 2.1.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: function-plot
  dependency-version: 1.25.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: harper.js
  dependency-version: 2.10.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: highlight.js
  dependency-version: 11.12.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: jsxgraph
  dependency-version: 1.13.3
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: katex
  dependency-version: 0.18.9
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: mermaid
  dependency-version: 12.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: production-dependencies
- dependency-name: prettier
  dependency-version: 3.9.9
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: react
  dependency-version: 19.3.0
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: production-dependencies
- dependency-name: react-dom
  dependency-version: 19.3.0
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: production-dependencies
- dependency-name: smol-toml
  dependency-version: 1.9.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: ws
  dependency-version: 8.22.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: zustand
  dependency-version: 5.0.15
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/production-dependencies-4ee91bcb0f branch from dff16d6 to d3a6d5a Compare October 6, 2026 21:43

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants