Skip to content

refactor: Bump picomatch from 2.3.1 to 2.3.2#10318

Merged
mtrezza merged 1 commit intoalphafrom
dependabot/npm_and_yarn/picomatch-2.3.2
Mar 27, 2026
Merged

refactor: Bump picomatch from 2.3.1 to 2.3.2#10318
mtrezza merged 1 commit intoalphafrom
dependabot/npm_and_yarn/picomatch-2.3.2

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot bot commented on behalf of github Mar 25, 2026

Bumps picomatch from 2.3.1 to 2.3.2.

Release notes

Sourced from picomatch's releases.

2.3.2

This is a security release fixing several security relevant issues.

What's Changed

Full Changelog: micromatch/picomatch@2.3.1...2.3.2

Changelog

Sourced from picomatch's changelog.

Release history

All notable changes to this project will be documented in this file.

The format is based on Keep a Changelog and this project adheres to Semantic Versioning.

  • Changelogs are for humans, not machines.
  • There should be an entry for every single version.
  • The same types of changes should be grouped.
  • Versions and sections should be linkable.
  • The latest version comes first.
  • The release date of each versions is displayed.
  • Mention whether you follow Semantic Versioning.

Changelog entries are classified using the following labels (from keep-a-changelog):

  • Added for new features.
  • Changed for changes in existing functionality.
  • Deprecated for soon-to-be removed features.
  • Removed for now removed features.
  • Fixed for any bug fixes.
  • Security in case of vulnerabilities.

4.0.0 (2024-02-07)

Fixes

Changed

3.0.1

Fixes

... (truncated)

Commits

@dependabot dependabot bot added dependencies Bot label; pull requests that updates a dependency file javascript Pull requests that update javascript code labels Mar 25, 2026
@parse-github-assistant
Copy link
Copy Markdown

I will reformat the title to use the proper commit message syntax.

@parse-github-assistant parse-github-assistant bot changed the title refactor: bump picomatch from 2.3.1 to 2.3.2 refactor: Bump picomatch from 2.3.1 to 2.3.2 Mar 25, 2026
@dependabot dependabot bot mentioned this pull request Mar 25, 2026
@parseplatformorg
Copy link
Copy Markdown
Contributor

parseplatformorg commented Mar 25, 2026

Snyk checks have passed. No issues have been found so far.

Status Scan Engine Critical High Medium Low Total (0)
Open Source Security 0 0 0 0 0 issues

💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse.

@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/picomatch-2.3.2 branch 3 times, most recently from 8613c1f to 4ef491e Compare March 26, 2026 20:42
@dependabot dependabot bot changed the title refactor: Bump picomatch from 2.3.1 to 2.3.2 refactor: bump picomatch from 2.3.1 to 2.3.2 Mar 26, 2026
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/picomatch-2.3.2 branch from 4ef491e to b2bab50 Compare March 26, 2026 23:45
@parse-github-assistant
Copy link
Copy Markdown

I will reformat the title to use the proper commit message syntax.

@parse-github-assistant parse-github-assistant bot changed the title refactor: bump picomatch from 2.3.1 to 2.3.2 refactor: Bump picomatch from 2.3.1 to 2.3.2 Mar 26, 2026
@parse-github-assistant
Copy link
Copy Markdown

I will reformat the title to use the proper commit message syntax.

@dependabot dependabot bot changed the title refactor: Bump picomatch from 2.3.1 to 2.3.2 refactor: bump picomatch from 2.3.1 to 2.3.2 Mar 27, 2026
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/picomatch-2.3.2 branch from b2bab50 to aaf737f Compare March 27, 2026 13:53
@parse-github-assistant
Copy link
Copy Markdown

I will reformat the title to use the proper commit message syntax.

@parse-github-assistant parse-github-assistant bot changed the title refactor: bump picomatch from 2.3.1 to 2.3.2 refactor: Bump picomatch from 2.3.1 to 2.3.2 Mar 27, 2026
@parse-github-assistant
Copy link
Copy Markdown

I will reformat the title to use the proper commit message syntax.

@dependabot dependabot bot changed the title refactor: Bump picomatch from 2.3.1 to 2.3.2 refactor: bump picomatch from 2.3.1 to 2.3.2 Mar 27, 2026
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/picomatch-2.3.2 branch from aaf737f to c47662f Compare March 27, 2026 15:05
@parse-github-assistant
Copy link
Copy Markdown

I will reformat the title to use the proper commit message syntax.

@parse-github-assistant parse-github-assistant bot changed the title refactor: bump picomatch from 2.3.1 to 2.3.2 refactor: Bump picomatch from 2.3.1 to 2.3.2 Mar 27, 2026
@parse-github-assistant
Copy link
Copy Markdown

I will reformat the title to use the proper commit message syntax.

@dependabot dependabot bot changed the title refactor: Bump picomatch from 2.3.1 to 2.3.2 refactor: bump picomatch from 2.3.1 to 2.3.2 Mar 27, 2026
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/picomatch-2.3.2 branch from c47662f to d3d165c Compare March 27, 2026 18:04
@parse-github-assistant
Copy link
Copy Markdown

I will reformat the title to use the proper commit message syntax.

1 similar comment
@parse-github-assistant
Copy link
Copy Markdown

I will reformat the title to use the proper commit message syntax.

@parse-github-assistant parse-github-assistant bot changed the title refactor: bump picomatch from 2.3.1 to 2.3.2 refactor: Bump picomatch from 2.3.1 to 2.3.2 Mar 27, 2026
@dependabot dependabot bot changed the title refactor: Bump picomatch from 2.3.1 to 2.3.2 refactor: bump picomatch from 2.3.1 to 2.3.2 Mar 27, 2026
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/picomatch-2.3.2 branch from d3d165c to 9649208 Compare March 27, 2026 19:24
@parse-github-assistant
Copy link
Copy Markdown

I will reformat the title to use the proper commit message syntax.

@parse-github-assistant parse-github-assistant bot changed the title refactor: bump picomatch from 2.3.1 to 2.3.2 refactor: Bump picomatch from 2.3.1 to 2.3.2 Mar 27, 2026
@parse-github-assistant
Copy link
Copy Markdown

I will reformat the title to use the proper commit message syntax.

Bumps [picomatch](https://github.com/micromatch/picomatch) from 2.3.1 to 2.3.2.
- [Release notes](https://github.com/micromatch/picomatch/releases)
- [Changelog](https://github.com/micromatch/picomatch/blob/master/CHANGELOG.md)
- [Commits](micromatch/picomatch@2.3.1...2.3.2)

---
updated-dependencies:
- dependency-name: picomatch
  dependency-version: 2.3.2
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot changed the title refactor: Bump picomatch from 2.3.1 to 2.3.2 refactor: bump picomatch from 2.3.1 to 2.3.2 Mar 27, 2026
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/picomatch-2.3.2 branch from 9649208 to 48b5be6 Compare March 27, 2026 20:05
@parse-github-assistant
Copy link
Copy Markdown

I will reformat the title to use the proper commit message syntax.

@parse-github-assistant parse-github-assistant bot changed the title refactor: bump picomatch from 2.3.1 to 2.3.2 refactor: Bump picomatch from 2.3.1 to 2.3.2 Mar 27, 2026
@parse-github-assistant
Copy link
Copy Markdown

I will reformat the title to use the proper commit message syntax.

@mtrezza
Copy link
Copy Markdown
Member

mtrezza commented Mar 27, 2026

@coderabbitai review

@coderabbitai
Copy link
Copy Markdown

coderabbitai bot commented Mar 27, 2026

✅ Actions performed

Review triggered.

Note: CodeRabbit is an incremental review system and does not re-review already reviewed commits. This command is applicable only when automatic reviews are paused.

@coderabbitai
Copy link
Copy Markdown

coderabbitai bot commented Mar 27, 2026

Important

Review skipped

Review was skipped due to path filters

⛔ Files ignored due to path filters (1)
  • package-lock.json is excluded by !**/package-lock.json

CodeRabbit blocks several paths by default. You can override this behavior by explicitly including those paths in the path filters. For example, including **/dist/** will override the default block on the dist directory, by removing the pattern from both the lists.

⚙️ Run configuration

Configuration used: Organization UI

Review profile: CHILL

Plan: Pro

Run ID: 336df87d-ec86-4588-97c8-bea84def011e

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review
✨ Finishing Touches
🧪 Generate unit tests (beta)
  • Create PR with unit tests
  • Commit unit tests in branch dependabot/npm_and_yarn/picomatch-2.3.2

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands and usage tips.

@mtrezza mtrezza merged commit faec923 into alpha Mar 27, 2026
21 checks passed
@mtrezza mtrezza deleted the dependabot/npm_and_yarn/picomatch-2.3.2 branch March 27, 2026 20:59
@parseplatformorg
Copy link
Copy Markdown
Contributor

🎉 This change has been released in version 9.7.0-alpha.11

@parseplatformorg parseplatformorg added the state:released-alpha Released as alpha version label Mar 28, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Bot label; pull requests that updates a dependency file javascript Pull requests that update javascript code state:released-alpha Released as alpha version

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants