Skip to content

chore(deps): bump eslint-plugin-turbo from 2.11.3 to 2.11.7 - #482

Open
dependabot[bot] wants to merge 1 commit into
devfrom
dependabot/npm_and_yarn/dev/eslint-plugin-turbo-2.11.7
Open

dependabot[bot] wants to merge 1 commit into
devfrom
dependabot/npm_and_yarn/dev/eslint-plugin-turbo-2.11.7

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 8, 2026 •

Copy link
Copy Markdown
Contributor

Bumps eslint-plugin-turbo from 2.11.3 to 2.11.7.

Release notes

Sourced from eslint-plugin-turbo's releases.

Turborepo v2.11.7

What's Changed

Changelog

Full Changelog: vercel/turborepo@v2.11.6...v2.11.7

Turborepo v2.11.6

What's Changed

Changelog

New Contributors

Full Changelog: vercel/turborepo@v2.11.5...v2.11.6

Turborepo v2.11.5

What's Changed

Changelog

... (truncated)

Commits


Note

Low Risk
Lockfile-only dependency bump for a dev-time ESLint plugin with no application or runtime behavior changes.

Overview
Bumps eslint-plugin-turbo in @query/eslint-config from 2.11.3 to ^2.11.7, with matching lockfile updates in pnpm-lock.yaml.

This is a patch-level dependency refresh for the Turbo ESLint rules used via tooling/eslint/base.js; no local config or rule changes are included in the diff.

Reviewed by Cursor Bugbot for commit 674ffb1. Bugbot is set up for automated code reviews on this repo. Configure here.

@dependabot
dependabot Bot requested a review from aamoghS as a code owner October 8, 2026 12:44
@dependabot dependabot Bot added the dependencies Pull requests that update a dependency file label Oct 8, 2026
@github-actions

github-actions Bot commented Oct 8, 2026

Copy link
Copy Markdown
Contributor

Dependency Review

✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.

OpenSSF Scorecard

PackageVersionScoreDetails
npm/eslint-plugin-turbo 2.11.7 UnknownUnknown
npm/eslint-plugin-turbo ^2.11.7 UnknownUnknown

Scanned Files

  • pnpm-lock.yaml
  • tooling/eslint/package.json

@github-actions
github-actions Bot enabled auto-merge (squash) October 8, 2026 12:45

@cursor cursor Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes using default effort and found 1 potential issue.

Fix All in Cursor

❌ Bugbot Autofix is OFF. To automatically fix reported issues with cloud agents, enable autofix in the Cursor dashboard.

Reviewed by Cursor Bugbot for commit c8a31aa. Configure here.

Comment thread pnpm-lock.yaml
Bumps [eslint-plugin-turbo](https://github.com/vercel/turborepo/tree/HEAD/packages/eslint-plugin-turbo) from 2.11.3 to 2.11.7.
- [Release notes](https://github.com/vercel/turborepo/releases)
- [Changelog](https://github.com/vercel/turborepo/blob/main/RELEASE.md)
- [Commits](https://github.com/vercel/turborepo/commits/v2.11.7/packages/eslint-plugin-turbo)

---
updated-dependencies:
- dependency-name: eslint-plugin-turbo
  dependency-version: 2.11.7
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/dev/eslint-plugin-turbo-2.11.7 branch from c8a31aa to 674ffb1 Compare October 8, 2026 16:19
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant