-
Notifications
You must be signed in to change notification settings - Fork 90
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
build(deps): bump the xterm group with 2 updates #1427
Conversation
ba46358
to
af5fffc
Compare
Bumps the xterm group with 2 updates: [xterm](https://github.com/xtermjs/xterm.js) and [xterm-addon-canvas](https://github.com/xtermjs/xterm.js). Updates `xterm` from 5.1.0 to 5.3.0 - [Release notes](https://github.com/xtermjs/xterm.js/releases) - [Commits](xtermjs/xterm.js@5.1.0...5.3.0) Updates `xterm-addon-canvas` from 0.4.0 to 0.5.0 - [Release notes](https://github.com/xtermjs/xterm.js/releases) - [Commits](xtermjs/xterm.js@0.4...0.5) --- updated-dependencies: - dependency-name: xterm dependency-type: direct:production update-type: version-update:semver-minor dependency-group: xterm - dependency-name: xterm-addon-canvas dependency-type: direct:production update-type: version-update:semver-minor dependency-group: xterm ... Signed-off-by: dependabot[bot] <[email protected]>
af5fffc
to
e6f2e75
Compare
I get a CSP violation, this seems to happen on main as well?
Cockpit uses the same version, so this should imo just work (tm). |
I can't reproduce this without running the test, so I assume it has something to do with our resize handling or calling something when the terminal is hidden. |
Digging into it, where it goes wrong is:
We call it with This is a bug in xterm.js xtermjs/xterm.js#4757 it has been fixed but no new release has been made. |
Thanks @jelly for debugging! AFAIR, just closing this PR should ignore this version 5.3.0 in dependabot, but it'll create a new PR as soon as the next release happens. Let's try? |
This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests. |
I think it doesn't, but it seems for groups it does! |
Bumps the xterm group with 2 updates: xterm and xterm-addon-canvas.
Updates
xterm
from 5.1.0 to 5.3.0Release notes
Sourced from xterm's releases.
... (truncated)
Commits
2e02c37
Merge pull request #4756 from Tyriar/tyriar/5_3__271ee3c7
Disable image addon publishing009add2
Merge pull request #4755 from Tyriar/tyriar/5_3fb4b662
v5.3.0 and bump all addons7b52b8e
Merge pull request #4754 from tisilent/DomRenderer-Focus-Cursorc03cb2b
When DomRenderer focus,render the cursor line.29dd30a
Merge pull request #4735 from Tyriar/playwright68c5723
Remove debugger statement5e628d7
Use arrow functions93aae67
Readme explaining test/apiUpdates
xterm-addon-canvas
from 0.4.0 to 0.5.0Commits
e572734
Syntax fixDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions