build(deps-dev): Bump @openzeppelin/contracts from 5.1.0 to 5.6.1 - #18
build(deps-dev): Bump @openzeppelin/contracts from 5.1.0 to 5.6.1#18dependabot[bot] wants to merge 1 commit into
Conversation
Bumps [@openzeppelin/contracts](https://github.com/OpenZeppelin/openzeppelin-contracts) from 5.1.0 to 5.6.1. - [Release notes](https://github.com/OpenZeppelin/openzeppelin-contracts/releases) - [Changelog](https://github.com/OpenZeppelin/openzeppelin-contracts/blob/master/CHANGELOG.md) - [Commits](OpenZeppelin/openzeppelin-contracts@v5.1.0...v5.6.1) --- updated-dependencies: - dependency-name: "@openzeppelin/contracts" dependency-version: 5.6.1 dependency-type: direct:development update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
|
Closing: this package is an advisory canary for the vendored submodule (see CONTRIBUTING.md), not a compiled dependency, and no published OpenZeppelin advisory affects v5.1.0. Moving to a newer release is a deliberate submodule upgrade with the storage-slot and upgrade tests re-run, not a version bump. Version updates for these packages are now ignored in dependabot.yml; security updates still come through. |
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
Bumps @openzeppelin/contracts from 5.1.0 to 5.6.1.
Release notes
Sourced from @openzeppelin/contracts's releases.
... (truncated)
Changelog
Sourced from @openzeppelin/contracts's changelog.
... (truncated)
Commits
5fd1781Release v5.6.1 (#6377)82cad37Fix support for very large inputs in InteroperableAddress (#6372)56a3de2Release v5.6.0 (#6340)6ec651dExit release candidate4c10cbeAdd support for inline extension nodes in TrieProof (#6351)aa110abFix typos and documentation for the 5.6 audit. (#6330)27dddf8Escape control characters in Strings.escapeJSON (#6344)f5cd8d8Reject interoperable addresses whith both chain reference and addresses empty...44d016cCheck that slice are in the reserved space in Accumulator push and shift (#6302)cbaf3a4Remove Memory.asPointer and Memory.asBytes32 + add warning about setting the ...Maintainer changes
This version was pushed to npm by GitHub Actions, a new releaser for
@openzeppelin/contractssince your current version.Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)