Skip to content

Bump tmp, nest-commander and @inquirer/editor#520

Open
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/npm_and_yarn/multi-baf178f42f
Open

Bump tmp, nest-commander and @inquirer/editor#520
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/npm_and_yarn/multi-baf178f42f

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot bot commented on behalf of github Sep 24, 2025

Removes tmp. It's no longer used after updating ancestor dependencies tmp, nest-commander and @inquirer/editor. These dependencies need to be updated together.

Removes tmp

Updates nest-commander from 3.17.0 to 3.20.0

Release notes

Sourced from nest-commander's releases.

nest-commander@3.20.0

Minor Changes

  • 68e43ac: Bump @​golevelup/nestjs-discovery from v4 to v5 (for real this time)

nest-commander@3.19.1

Patch Changes

  • 7b489e6: Make helpConfiguration typing Partial

nest-commander@3.19.0

Minor Changes

  • 1ba3506: Update dependencies to get rid of CVE in inquirer's dependencies

nest-commander@3.18.0

Minor Changes

  • ca7ee4b: Bump @​golevelup/nestjs-discovery from v4 to v5
Commits

Updates @inquirer/editor from 4.2.13 to 4.2.20

Commits
  • 8300fe3 Publish
  • b85cbe2 chore: Speed up linting CI stage
  • 8fc86fe feat: Introduce @​inquirer/core/ansi export
  • dcca892 chore(@​inquirer/testing): Remove unnecessary ansi code filtering logic
  • daef4f5 chore: Bump yarn + yarn dedupe
  • 62045dc Publish
  • 7e75de6 Publish
  • b8361c5 fix(@​inquirer/rawlist): Properly handle specified numeric keys (previously wo...
  • e3aed9c Chore(deps): Bump actions/setup-node from 4 to 5 (#1832)
  • 93c7750 Chore(deps-dev): Bump the linting group with 6 updates (#1831)
  • Additional commits viewable in compare view

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 24, 2025
@vercel
Copy link
Copy Markdown

vercel bot commented Sep 24, 2025

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Preview Comments Updated (UTC)
ririko-bot Ready Ready Preview Comment Sep 27, 2025 3:27pm

@codecov
Copy link
Copy Markdown

codecov bot commented Sep 24, 2025

Codecov Report

✅ All modified and coverable lines are covered by tests.
see 1 file with indirect coverage changes

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

Removes [tmp](https://github.com/raszi/node-tmp). It's no longer used after updating ancestor dependencies [tmp](https://github.com/raszi/node-tmp), [nest-commander](https://github.com/jmcdo29/nest-commander/tree/HEAD/pacakges/nest-commander) and [@inquirer/editor](https://github.com/SBoudrias/Inquirer.js). These dependencies need to be updated together.


Removes `tmp`

Updates `nest-commander` from 3.17.0 to 3.20.0
- [Release notes](https://github.com/jmcdo29/nest-commander/releases)
- [Commits](https://github.com/jmcdo29/nest-commander/commits/nest-commander@3.20.0/pacakges/nest-commander)

Updates `@inquirer/editor` from 4.2.13 to 4.2.20
- [Release notes](https://github.com/SBoudrias/Inquirer.js/releases)
- [Commits](https://github.com/SBoudrias/Inquirer.js/compare/@inquirer/editor@4.2.13...@inquirer/editor@4.2.20)

---
updated-dependencies:
- dependency-name: tmp
  dependency-version: 
  dependency-type: indirect
- dependency-name: nest-commander
  dependency-version: 3.20.0
  dependency-type: direct:production
- dependency-name: "@inquirer/editor"
  dependency-version: 4.2.20
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants