Skip to content

Bump icalendar from 2.11.0 to 2.12.2#694

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/bundler/icalendar-2.12.2
Open

Bump icalendar from 2.11.0 to 2.12.2#694
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/bundler/icalendar-2.12.2

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Apr 13, 2026

Bumps icalendar from 2.11.0 to 2.12.2.

Changelog

Sourced from icalendar's changelog.

2.12.2 - 2026-03-21

  • Fix a potential property injection issue through escaping control characters in URI values - Wes Ring

2.12.1 - 2025-10-19

  • Fix a problem with invalid ics generation for calendars with custom properties that include a tzid parameter.

2.12.0 - 2025-09-26

  • Support timezone lookup by Windows names - Ronak Gothi

2.11.2 - 2025-06-21

  • Deal with more bad value parameter values by falling back to the property default type

2.11.1 - 2025-06-06

  • Gracefully deal with malformed ics files that use spaces in the value parameter instead of hyphens
Commits
  • 7782ac1 Bump version to 2.12.2
  • b8d23b4 Merge commit from fork
  • 8115ffe Percent-encode ASCII control bytes in URI ICS serialization
  • 0aa950a Bump version to 2.12.1
  • f9778d3 Merge pull request #318 from icalendar/fix-tz-store
  • 21379f4 Prevent surprises by not delegating all DowncasedHash methods to Hash
  • c8c08f4 Pass timezone_store in the context instead of params
  • a515e4d Add context to Icalendar::Value for information that should not be output dir...
  • 5844e0a Create parser test for issue #317
  • 57eda75 Bump version to 2.12.0
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code labels Apr 13, 2026
Bumps [icalendar](https://github.com/icalendar/icalendar) from 2.11.0 to 2.12.2.
- [Changelog](https://github.com/icalendar/icalendar/blob/main/CHANGELOG.md)
- [Commits](icalendar/icalendar@v2.11.0...v2.12.2)

---
updated-dependencies:
- dependency-name: icalendar
  dependency-version: 2.12.2
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/bundler/icalendar-2.12.2 branch from efec9a6 to c13cef9 Compare April 14, 2026 07:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants