Skip to content

chore(deps): update all non-major dependencies - #1593

Merged
danielroe merged 1 commit into
mainfrom
renovate/all-minor-patch
Oct 5, 2026
Merged

danielroe merged 1 commit into
mainfrom
renovate/all-minor-patch

Conversation

@renovate

@renovate renovate Bot commented Oct 5, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence Type Update
@nuxt/test-utils ^4.3.2 → ^4.3.3 age confidence devDependencies patch
@types/node (source) ^24.19.0 → ^24.19.1 age confidence devDependencies patch
CodSpeedHQ/action v5.2.1 → v5.4.0 age confidence action minor
danielroe/uppt v0.6.10 → v0.6.11 age confidence action patch
eslint (source) ^10.11.0 → ^10.12.0 age confidence devDependencies minor
exsolve ^1.1.1 → ^1.1.3 age confidence dependencies patch
exsolve ^1.1.1 → ^1.1.3 age confidence devDependencies patch
knip (source) ^6.38.0 → ^6.39.0 age confidence devDependencies minor
nf3 ^0.3.24 → ^0.4.0 age confidence devDependencies minor
std-env ^4.2.0 → ^4.3.0 age confidence dependencies minor
std-env ^4.2.0 → ^4.3.0 age confidence devDependencies minor
vue-tsc (source) ^3.3.11 → ^3.3.12 age confidence devDependencies patch

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

nuxt/test-utils (@​nuxt/test-utils)

v4.3.3

Compare Source

v4.3.3 is the next patch release.

👉 Changelog

compare changes

🔥 Performance
  • use h3's toWebHandler instead of node-mock-http (abe8ad944)
  • resolve h3 from the project (b5d802f03)
  • replace estree-walker with oxc-walker (8e8ca5e8b)
  • replace local-pkg with exsolve (38938a879)
  • replace c12 with native dotenv parsing (26c72afa0)
  • inline destr and scule usage (e4bfd2ebe)
  • drop node-fetch-native polyfill (6b654de5c)
  • replace nypm with package-manager-detector (#​1828)
🩹 Fixes
  • runtime-utils: type registerEndpoint against the project h3 (#​1831)
  • e2e: restore console after use nuxt kit (#​1817)
  • config: exclude aliased mock packages from optimizeDeps in browser mode (#​1816)
  • runtime: setup nuxt once per worker in no-isolate (#​1821)
  • browser: correct render helper options type (#​1822)
🏡 Chore
  • move vue to peer dependencies (e70592ffa)
  • declare supported nuxt versions as peer dependency (b473892c9)
🤖 CI
❤️ Contributors
CodSpeedHQ/action (CodSpeedHQ/action)

v5.4.0

Compare Source

Bumps the CodSpeed runner to v5.4.0, including v5.3.0 and v5.3.1.

The Memory instrument now tracks physical (resident) memory and captures allocation call stacks to build memory flamegraphs. Both are enabled by default and can be turned off with the new disable-memory-track-physical and disable-memory-capture-stack inputs. Serialization is also faster on large memory benchmarks.

The action now exposes the id of the CodSpeed run as a run-id output, and CodSpeed now works on non-Ubuntu/Debian distributions such as Arch Linux.

🚀 Features
  • Track physical memory and capture allocation call stacks for memory flamegraphs, both enabled by default by @​not-matthias in #​529, #​522 and #​553
  • Expose the run id as a GitHub Actions step output by @​moha-bekh in #​551
  • Add an --experimental-disable-pythonmalloc-override flag (CODSPEED_EXPERIMENTAL_DISABLE_PYTHONMALLOC_OVERRIDE) to stop overriding the Python allocator, which can break free-threaded Python in simulation mode, by @​not-matthias in #​539
  • Apply kernel memory tunables before memory-mode runs, and fail early when the kernel has no BTF by @​not-matthias in #​507 and #​524
  • Pause producers under ring buffer pressure in memory mode, and log process stops per reason by @​not-matthias in #​543
  • Log which authentication method the run uses by @​fargito in #​521
🐛 Bug Fixes
⚡ Performance
⚙️ Internals

Full Runner Changelog:
https://github.com/CodSpeedHQ/codspeed/blob/main/CHANGELOG.md

What's Changed

New Contributors

Full Changelog: CodSpeedHQ/action@v5.2.1...v5.4.0

danielroe/uppt (danielroe/uppt)

v0.6.11

Compare Source

compare changes

🚀 Enhancements
  • Add nightly publishing (#​75)
  • Respect hand-edited release pr versions (00ffbe0)
  • pr: Run on pushes to release branches (800be04)
🩹 Fixes
  • publish: Tolerate E403 when republishing nightlies (3934767)
  • pr: Tighten hand-edited version pinning and surface warnings (113eb4c)
  • pr: Paginate open release PR lookups and keep updating PRs with extra commits (6ec2714)
💅 Refactors
  • Sync lockstep release branches via syncReleaseBranch (c777f2b)
❤️ Contributors
eslint/eslint (eslint)

v10.12.0

Compare Source

Features

  • 4618052 feat: handle astral letters in new-cap (#​21357) (sary)
  • 4ec5168 feat: allow SourceCode#getText() to accept tokens and comments (#​21340) (electrohyun)

Bug Fixes

  • bc51eee fix: prefer-arrow-callback false positive in conditional test (#​21373) (Daniel Pinto)
  • bbff86c fix: skip lines with multiple comments in max-lines-per-function (#​21332) (xbinaryx)
  • efc4d6b fix: astral letters in consistent-return, no-eval, no-invalid-this (#​21360) (lumir)
  • 93de066 fix: prefer-exponentiation-operator autofix for async function base (#​21322) (Vladimir Babin)
  • 02e34ff fix: add missing space after else in curly autofix (#​21355) (Pixel)
  • b14b8bc fix: correct id-length message for long private names (#​21348) (Pixel)
  • 69aac01 fix: support TSFunctionType in getFunctionHeadLoc (#​21335) (xbinaryx)
  • 686630e fix: no-loss-of-precision false positive with 0.e5 (#​21337) (sethamus)

Documentation

  • 67eb586 docs: Update README (GitHub Actions Bot)
  • 5370d7e docs: clarify one-var separateRequires matches any require() call (#​21192) (sethamus)
  • 8816c1d docs: Update README (GitHub Actions Bot)
  • 3d2e7ce docs: fix typo in no-unused-expressions documentation (#​21346) (bytedoe)

Chores

  • 152067f chore: update ecosystem plugins (#​21362) (ESLint Bot)
  • b56d58e chore: update github/codeql-action action to v4.38.2 (#​21376) (renovate[bot])
  • bfaea12 perf: cache normalized config globals per languageOptions (#​21364) (James Ross)
  • 322209e ci: avoid Nx cache in ecosystem tests and disable failing test (#​21369) (Francesco Trotta)
  • d166567 chore: update dependency prettier to v3.9.9 (#​21371) (renovate[bot])
  • 29585ce chore: update dependency eslint-plugin-expect-type to ^0.7.0 (#​21359) (renovate[bot])
  • 39d79ba chore: update github/codeql-action action to v4.38.1 (#​21354) (renovate[bot])
  • 182a6e9 chore: update dependency prettier to v3.9.8 (#​21352) (renovate[bot])
  • f995127 chore: remove CLAUDE.md in favor of AGENTS.md (#​21339) (Jarren)
  • b95fb6c chore: update dependency prettier to v3.9.7 (#​21347) (renovate[bot])
  • 3782dd4 chore: update ecosystem plugins (#​21342) (ESLint Bot)
unjs/exsolve (exsolve)

v1.1.3

Compare Source

compare changes

🏡 Chore
❤️ Contributors

v1.1.2

Compare Source

compare changes

🩹 Fixes
  • Don't keep callers alive through cached errors (#​63)
❤️ Contributors
webpro-nl/knip (knip)

v6.39.0: Release 6.39.0

Compare Source

vuejs/language-tools (vue-tsc)

v3.3.12

Compare Source

language-core
  • security: prevent arbitrary code execution via inline @plugins compiler options (GHSA-vgrw-xjpj-wh8r) - Thanks to @​serkodev!
  • feat: infer first parameter type of default factory for defineModel (#​6210) - Thanks to @​KazariEX!
  • feat: report duplicate CSS module names (#​6198) - Thanks to @​serkodev!
  • fix: keep union props when using withDefaults (#​6180) (#​6183) - Thanks to @​xia-chao!
  • fix: keep inference-only props string single-line with block comments (#​6230) - Thanks to @​00200200!
  • fix: support calling template bindings without .value (#​6181)
  • fix: avoid type guards missing from the tsc bundle in template binding analysis (#​6214) - Thanks to @​ValentinYoushkevich!
  • fix: pad directive hook signatures to check short-arity directive bindings (#​6197) - Thanks to @​serkodev!
  • fix: override vueCompilerOptions.plugins instead of merging (#​6208)
  • fix: deduplicate vueCompilerOptions.plugins on resolve (#​6125) - Thanks to @​camonunez!
  • fix: report duplicate non-identifier CSS module names (#​6199) - Thanks to @​serkodev!
  • fix: eliminate synthesized ignore for style scoped classes alias (#​6194) - Thanks to @​serkodev!
  • fix: consume synthesized $event in compound event handlers (#​6193) - Thanks to @​serkodev!
  • fix: eliminate synthesized ignore in codegen (#​6191)
  • fix: use default slot name for bare v-slot (#​6190)
  • fix: eliminate unmapped codegen diagnostics (#​6179)
  • fix: prevent template token boundary double-mapping (#​6178)
  • fix: correct mapping boundary of dot value accesses - Thanks to @​KazariEX!
  • fix: stop typedef jsdoc from leaking into emitted dts - Thanks to @​KazariEX!
  • perf: precompile attribute glob matchers (#​6227) - Thanks to @​Cherry!
component-meta
tsc
typescript-plugin
vscode

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • Between 12:00 AM and 03:59 AM, only on Monday (* 0-3 * * 1)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate
renovate Bot requested a review from danielroe as a code owner October 5, 2026 00:26
@socket-security

socket-security Bot commented Oct 5, 2026 •

Copy link
Copy Markdown

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updated@​nuxt/​test-utils@​4.3.2 ⏵ 4.3.398 +110079 +194 +1100
Updated@​types/​node@​24.19.0 ⏵ 24.19.1100 +110081 +196 +1100
Addedexsolve@​1.1.310010010082100
Addedstd-env@​4.3.01001008889100
Addednf3@​0.4.010010010090100
Updatedvue-tsc@​3.3.11 ⏵ 3.3.121001009195 +3100
Updatedknip@​6.38.0 ⏵ 6.39.099 +110095 +195 -1100
Updatedeslint@​10.11.0 ⏵ 10.12.097 +110010097100

View full report

@codspeed

codspeed Bot commented Oct 5, 2026 •

Copy link
Copy Markdown

Merging this PR will not alter performance

✅ 2 untouched benchmarks


Comparing renovate/all-minor-patch (879ae3c) with main (cf28831)

Open in CodSpeed

@pkg-pr-new

pkg-pr-new Bot commented Oct 5, 2026 •

Copy link
Copy Markdown
  • nuxt-cli-playground

    npm i https://pkg.pr.new/create-nuxt@1593
    
    npm i https://pkg.pr.new/nuxi@1593
    
    npm i https://pkg.pr.new/@nuxt/cli@1593
    

commit: 879ae3c

@github-actions

github-actions Bot commented Oct 5, 2026 •

Copy link
Copy Markdown
Contributor

CLI benchmark

@nuxt/cli v4.0.0-alpha.1 (baseline) vs v4.0.0-alpha.1 (this PR)

Metric baseline v4.0.0-alpha.1 head v4.0.0-alpha.1 Delta
nuxt --version wall time (median) 67 ms 66 ms -1.5%
nuxt --help wall time (median) 137 ms 137 ms +0.2%
nuxt dev --help wall time (median) 103 ms 101 ms -2.1%
nuxt --version modules loaded 35 35 0.0%
nuxt --version built-ins loaded 27 27 0.0%
nuxt --help modules loaded 134 134 0.0%
nuxt --help built-ins loaded 87 87 0.0%
nuxt dev --help modules loaded 63 63 0.0%
nuxt dev --help built-ins loaded 87 87 0.0%
Installed node_modules 2.45 MB 2.45 MB -0.0%
Published tarball (packed) 239.6 kB 239.6 kB +0.0%
Full report

@nuxt/cli v4.0.0-alpha.1 (baseline) vs v4.0.0-alpha.1 (head)

Setting Value
Baseline ref:cf2883182b90a8bc275b1519f73c310c4f869dc5 (v4.0.0-alpha.1)
Head local packages/nuxt-cli at e8030bb (v4.0.0-alpha.1)
Node v24.21.0
OS Linux 6.17.0 (kernel 6.17.0-1022-azure)
CPU AMD EPYC 7763 64-Core Processor x 4
Memory 15.6 GB
Load average at start 0.50, 0.20, 0.07
Run started 2026-10-05T07:23:37.068Z

Cold CLI startup

Median of 15 interleaved runs per command, one warmup discarded.

Command baseline v4.0.0-alpha.1 median head v4.0.0-alpha.1 median Delta baseline v4.0.0-alpha.1 min / p95 head v4.0.0-alpha.1 min / p95
nuxt --version 67 ms 66 ms -1.5% 62 ms / 68 ms 62 ms / 68 ms
nuxt --version (first output byte) 62 ms 62 ms -1.5% 58 ms / 64 ms 58 ms / 63 ms
nuxt --help 137 ms 137 ms +0.2% 134 ms / 139 ms 134 ms / 140 ms
nuxt --help (first output byte) 132 ms 132 ms +0.2% 129 ms / 134 ms 129 ms / 135 ms
nuxt dev --help 103 ms 101 ms -2.1% 100 ms / 106 ms 98 ms / 104 ms
nuxt dev --help (first output byte) 98 ms 96 ms -1.5% 96 ms / 101 ms 93 ms / 100 ms
nuxt <unknown-command> (no-op) 147 ms 146 ms -0.4% 144 ms / 151 ms 144 ms / 149 ms
nuxt <unknown-command> (no-op) (first output byte) 141 ms 140 ms -0.4% 139 ms / 145 ms 138 ms / 144 ms

Module load cost

Counted with a module.registerHooks load hook, compile cache disabled. Counts every JS module actually evaluated on that code path (native addons excluded). Built-ins loaded after bootstrap are counted separately, including the internal modules they load.

Command baseline v4.0.0-alpha.1 modules head v4.0.0-alpha.1 modules Delta baseline v4.0.0-alpha.1 source bytes head v4.0.0-alpha.1 source bytes Delta baseline v4.0.0-alpha.1 built-ins head v4.0.0-alpha.1 built-ins Delta
nuxt --version 35 35 0.0% 297.8 kB 297.8 kB 0.0% 27 27 0.0%
nuxt --help 134 134 0.0% 842.5 kB 842.5 kB 0.0% 87 87 0.0%
nuxt dev --help 63 63 0.0% 453.0 kB 453.0 kB 0.0% 87 87 0.0%

Install footprint and published tarball

Each version installed on its own into an empty project with nothing but @nuxt/cli as a dependency, so the tree is exactly the CLI and its transitive dependencies. npm cache is warm and the registry is only consulted for metadata, so install wall time is indicative, not a network benchmark.

Metric baseline v4.0.0-alpha.1 head v4.0.0-alpha.1 Delta
Direct dependencies of @nuxt/cli 23 23 0.0%
Packages in the installed tree (unique name@version) 39 39 0.0%
Unique package names 39 39 0.0%
Package directories on disk (cross-check) 32 32 0.0%
Installed node_modules on disk 2.45 MB 2.45 MB -0.0%
Installed files 434 434 0.0%
Install wall time (warm npm cache, median of 3) 1.35 s 1.31 s -2.7%
Published tarball (packed) 239.6 kB 239.6 kB +0.0%
Published tarball (unpacked) 775.2 kB 775.2 kB 0.0%
Files in tarball 99 99 0.0%

Interleaved runs on a shared runner: trust the deltas, not the absolute timings. The dev, restart and build suites run locally via pnpm bench:cli.

@danielroe
danielroe added this pull request to the merge queue Oct 5, 2026
@github-merge-queue
github-merge-queue Bot removed this pull request from the merge queue due to a conflict with the base branch Oct 5, 2026
@renovate
renovate Bot force-pushed the renovate/all-minor-patch branch from db78313 to 879ae3c Compare October 5, 2026 07:21
@danielroe
danielroe added this pull request to the merge queue Oct 5, 2026
Merged via the queue into main with commit 7ec8cd2 Oct 5, 2026
24 checks passed
@danielroe
danielroe deleted the renovate/all-minor-patch branch October 5, 2026 07:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant