Skip to content

Bump lodash from 4.17.10 to 4.17.11 - #1

Closed
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/lodash-4.17.11
Closed

Bump lodash from 4.17.10 to 4.17.11#1
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/lodash-4.17.11

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github May 23, 2019

Copy link
Copy Markdown

Bumps lodash from 4.17.10 to 4.17.11.

Commits
  • 0843bd4 Bump to v4.17.11.
  • 3ac4b26 Rebuild lodash and docs.
  • eaa9f36 Commit package-lock.json.
  • 552f94a Lint nits.
  • d8ddc1a Add test for indirectly merging Object properties.
  • e5f9af5 Remove prototype property check in safeGet().
  • 2de676f Ensure placeholder properties are set for fp.convert() results. [closes #3440]
  • 278c6dd Cleanup _.merge tests for function properties.
  • 79b9d20 Fix inconsistent merging of multiple sources to function property
  • 6e62e1e Cleanup ReDoS test.
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot ignore this [patch|minor|major] version will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
  • @dependabot use these labels will set the current labels as the default for future PRs for this repo and language
  • @dependabot use these reviewers will set the current reviewers as the default for future PRs for this repo and language
  • @dependabot use these assignees will set the current assignees as the default for future PRs for this repo and language
  • @dependabot use this milestone will set the current milestone as the default for future PRs for this repo and language

@dependabot dependabot Bot added the dependencies Pull requests that update a dependency file label May 23, 2019
@codecov-io

codecov-io commented May 23, 2019

Copy link
Copy Markdown

Codecov Report

❗ No coverage uploaded for pull request base (master@b80a8a7). Click here to learn what that means.
The diff coverage is n/a.

Impacted file tree graph

@@            Coverage Diff            @@
##             master       #1   +/-   ##
=========================================
  Coverage          ?   97.22%           
=========================================
  Files             ?        1           
  Lines             ?      108           
  Branches          ?        0           
=========================================
  Hits              ?      105           
  Misses            ?        3           
  Partials          ?        0

Continue to review full report at Codecov.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update b80a8a7...3899a41. Read the comment docs.

@dependabot @github

dependabot Bot commented on behalf of github Mar 11, 2020

Copy link
Copy Markdown
Author

Superseded by #10.

@dependabot dependabot Bot closed this Mar 11, 2020
@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/lodash-4.17.11 branch March 11, 2020 14:21
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant