Skip to content

chore(studio-deps)(deps): bump the security-critical group in /studio with 5 updates#3076

Merged
mergify[bot] merged 1 commit intomainfrom
dependabot/npm_and_yarn/studio/main/security-critical-7934cfa28c
Dec 29, 2025
Merged

chore(studio-deps)(deps): bump the security-critical group in /studio with 5 updates#3076
mergify[bot] merged 1 commit intomainfrom
dependabot/npm_and_yarn/studio/main/security-critical-7934cfa28c

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Dec 28, 2025

Bumps the security-critical group in /studio with 5 updates:

Package From To
datatables.net 2.3.5 2.3.6
datatables.net-bs5 2.3.5 2.3.6
datatables.net-buttons 3.2.5 3.2.6
datatables.net-buttons-bs5 3.2.5 3.2.6
sweetalert2 11.26.12 11.26.17

Updates datatables.net from 2.3.5 to 2.3.6

Commits
  • c111486 Sync tag release - 2.3.6
  • d51ac35 b10fe2c01fe4f23b89984419d769cb44ae5482b3 Release 2.3.6
  • d7946fd 8ac26da4545515302a3bf4c7b5217d4508d3f4b7 Dev: Well that was disappointing. Fo...
  • 1483d96 137230d3689fa4021da4fdc2ab0bdc9a6b46e26e Dev: Make test case insensitive
  • 8d551f2 0b56dbf0d83f2457aaa105ebd7a7de32b2d09ee3 Fix: When calculation column widths,...
  • ba1021c a0664009d791cea3a4c05e7f9cbc60df4c71fe88 New: columnTitleTag option which c...
  • 7f2c13e 0edfb72ce5e8dcf9307b69e31fd3bb50350091d8 Fix: Table child elements should con...
  • 672684e 8eb9c48f82247932525460c6affa96d7f014be1f Fix: Encoded entities could cause co...
  • dfabbeb 7ff4bc952993e6570672390cc86be7bcf09e7ec6 Fix: Improving auto column width cal...
  • 38ab2b0 d16598760a91867a274b918c17a027eccbef1bf3 Fix: Bootstrap 5 with a `table-respo...
  • Additional commits viewable in compare view

Updates datatables.net-bs5 from 2.3.5 to 2.3.6

Commits
  • 60c9a1a Sync tag release - 2.3.6
  • 3b6b349 b10fe2c01fe4f23b89984419d769cb44ae5482b3 Release 2.3.6
  • 63530de 8ac26da4545515302a3bf4c7b5217d4508d3f4b7 Dev: Well that was disappointing. Fo...
  • e854908 137230d3689fa4021da4fdc2ab0bdc9a6b46e26e Dev: Make test case insensitive
  • 3593c71 0b56dbf0d83f2457aaa105ebd7a7de32b2d09ee3 Fix: When calculation column widths,...
  • 4a7e0ea a0664009d791cea3a4c05e7f9cbc60df4c71fe88 New: columnTitleTag option which c...
  • 0582182 0edfb72ce5e8dcf9307b69e31fd3bb50350091d8 Fix: Table child elements should con...
  • 7a6258b 8eb9c48f82247932525460c6affa96d7f014be1f Fix: Encoded entities could cause co...
  • ffff571 7ff4bc952993e6570672390cc86be7bcf09e7ec6 Fix: Improving auto column width cal...
  • 5163d89 d16598760a91867a274b918c17a027eccbef1bf3 Fix: Bootstrap 5 with a `table-respo...
  • Additional commits viewable in compare view

Updates datatables.net-buttons from 3.2.5 to 3.2.6

Release notes

Sourced from datatables.net-buttons's releases.

3.2.6

Buttons 3.2.6

Commits
  • 69c8457 Sync tag release - 3.2.6
  • 5b20398 b4916a4c6f75652961cd0009eb057ed9b7f709d6 Release 3.2.6
  • 3e53554 f77cdc03b840585c888de8408ed865948d1e55f3 Fix: Using a popover would cause all...
  • d2e27a4 60aeb97304546bdfa5cacab72b01fb2671bc80d5 Update: SCSS updates for Dart SASS c...
  • 2b7438e Sync tag release - 3.2.5
  • b0efb3d 2ff898f8380790519bf30383dd381f4a72f81689 Release 3.2.5
  • e606b03 f8bc4cf6631141b18d3e93212218be6636fcd84d Fix: Correct return for `button().ad...
  • cd974be 08be23318d636f1085efdf6e43776d5a3fc3fff6 Test: Update how the sleep / wait wo...
  • 9f89e4e 050771b275360ecc64fe90936598e379783e1800 Docs: message option is deprecated...
  • See full diff in compare view

Updates datatables.net-buttons-bs5 from 3.2.5 to 3.2.6

Release notes

Sourced from datatables.net-buttons-bs5's releases.

3.2.6

Buttons Bootstrap5 3.2.6

Commits

Updates sweetalert2 from 11.26.12 to 11.26.17

Release notes

Sourced from sweetalert2's releases.

v11.26.17

11.26.17 (2025-12-22)

Bug Fixes

  • add last strict type and enable TypeScript strict mode (#2904) (201c0f6)

v11.26.16

11.26.16 (2025-12-21)

Bug Fixes

v11.26.15

11.26.15 (2025-12-21)

Bug Fixes

v11.26.14

11.26.14 (2025-12-21)

Bug Fixes

  • strict types in DOM and template utilities (#2901) (71167cd)

v11.26.13

11.26.13 (2025-12-21)

Bug Fixes

Changelog

Sourced from sweetalert2's changelog.

11.26.17 (2025-12-22)

Bug Fixes

  • add last strict type and enable TypeScript strict mode (#2904) (201c0f6)

11.26.16 (2025-12-21)

Bug Fixes

11.26.15 (2025-12-21)

Bug Fixes

11.26.14 (2025-12-21)

Bug Fixes

  • strict types in DOM and template utilities (#2901) (71167cd)

11.26.13 (2025-12-21)

Bug Fixes

Commits
  • d6d3cfe chore(release): 11.26.17 [skip ci]
  • 201c0f6 fix: add last strict type and enable TypeScript strict mode (#2904)
  • 5b62033 chore(release): 11.26.16 [skip ci]
  • 330e879 fix: strict types in 6 core files (#2903)
  • c98fc22 chore(release): 11.26.15 [skip ci]
  • a43f5f9 fix: strict types in core modules (#2902)
  • 31061db chore(release): 11.26.14 [skip ci]
  • 71167cd fix: strict types in DOM and template utilities (#2901)
  • 4d6b29b chore(release): 11.26.13 [skip ci]
  • 0b279a3 fix: strict types in renderInput.js (#2900)
  • See full diff in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the security-critical group in /studio with 5 updates:

| Package | From | To |
| --- | --- | --- |
| [datatables.net](https://github.com/DataTables/Dist-DataTables) | `2.3.5` | `2.3.6` |
| [datatables.net-bs5](https://github.com/DataTables/Dist-DataTables-Bootstrap5) | `2.3.5` | `2.3.6` |
| [datatables.net-buttons](https://github.com/DataTables/Dist-DataTables-Buttons) | `3.2.5` | `3.2.6` |
| [datatables.net-buttons-bs5](https://github.com/DataTables/Dist-DataTables-Buttons-Bootstrap5) | `3.2.5` | `3.2.6` |
| [sweetalert2](https://github.com/sweetalert2/sweetalert2) | `11.26.12` | `11.26.17` |


Updates `datatables.net` from 2.3.5 to 2.3.6
- [Release notes](https://github.com/DataTables/Dist-DataTables/releases)
- [Commits](DataTables/Dist-DataTables@2.3.5...2.3.6)

Updates `datatables.net-bs5` from 2.3.5 to 2.3.6
- [Release notes](https://github.com/DataTables/Dist-DataTables-Bootstrap5/releases)
- [Commits](DataTables/Dist-DataTables-Bootstrap5@2.3.5...2.3.6)

Updates `datatables.net-buttons` from 3.2.5 to 3.2.6
- [Release notes](https://github.com/DataTables/Dist-DataTables-Buttons/releases)
- [Commits](DataTables/Dist-DataTables-Buttons@3.2.5...3.2.6)

Updates `datatables.net-buttons-bs5` from 3.2.5 to 3.2.6
- [Release notes](https://github.com/DataTables/Dist-DataTables-Buttons-Bootstrap5/releases)
- [Commits](DataTables/Dist-DataTables-Buttons-Bootstrap5@3.2.5...3.2.6)

Updates `sweetalert2` from 11.26.12 to 11.26.17
- [Release notes](https://github.com/sweetalert2/sweetalert2/releases)
- [Changelog](https://github.com/sweetalert2/sweetalert2/blob/main/CHANGELOG.md)
- [Commits](sweetalert2/sweetalert2@v11.26.12...v11.26.17)

---
updated-dependencies:
- dependency-name: datatables.net
  dependency-version: 2.3.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: security-critical
- dependency-name: datatables.net-bs5
  dependency-version: 2.3.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: security-critical
- dependency-name: datatables.net-buttons
  dependency-version: 3.2.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: security-critical
- dependency-name: datatables.net-buttons-bs5
  dependency-version: 3.2.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: security-critical
- dependency-name: sweetalert2
  dependency-version: 11.26.17
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: security-critical
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file frontend security labels Dec 28, 2025
@mergify
Copy link
Contributor

mergify bot commented Dec 28, 2025

🧪 CI Insights

Here's what we observed from your CI run for b7ff018.

🟢 All jobs passed!

But CI Insights is watching 👀

@mergify mergify bot merged commit 1f6b6d9 into main Dec 29, 2025
13 of 18 checks passed
@dependabot dependabot bot deleted the dependabot/npm_and_yarn/studio/main/security-critical-7934cfa28c branch December 29, 2025 08:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file security

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant