Skip to content

⬆️ Bump lodash from 4.17.21 to 4.17.23#28

Merged
Sumolari merged 2 commits intomainfrom
dependabot/npm_and_yarn/lodash-4.17.23
Jan 22, 2026
Merged

⬆️ Bump lodash from 4.17.21 to 4.17.23#28
Sumolari merged 2 commits intomainfrom
dependabot/npm_and_yarn/lodash-4.17.23

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jan 22, 2026

Bumps lodash from 4.17.21 to 4.17.23.

Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Note

Shifts coverage reporting to Codecov and updates a dependency.

  • CI: Replace Code Climate test reporter with codecov/codecov-action@v5; run yarn coverage and upload coverage/lcov.info with token
  • Docs: Swap README badges to Codecov; remove Code Climate badges
  • Deps: Upgrade lodash in yarn.lock from 4.17.21 to 4.17.23

Written by Cursor Bugbot for commit 2c51a6a. This will update automatically on new commits. Configure here.

Bumps [lodash](https://github.com/lodash/lodash) from 4.17.21 to 4.17.23.
- [Release notes](https://github.com/lodash/lodash/releases)
- [Commits](lodash/lodash@4.17.21...4.17.23)

---
updated-dependencies:
- dependency-name: lodash
  dependency-version: 4.17.23
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Jan 22, 2026
* fix(ci): replace Code Climate (cc-reporter error) with Codecov

Co-authored-by: sumolari+cursor <sumolari+cursor@gmail.com>

* Remove unneeded env var

---------

Co-authored-by: Cursor Agent <cursoragent@cursor.com>
Co-authored-by: sumolari+cursor <sumolari+cursor@gmail.com>
@codecov-commenter
Copy link

Welcome to Codecov 🎉

Once you merge this PR into your default branch, you're all set! Codecov will compare coverage reports and display results in all future pull requests.

Thanks for integrating Codecov - We've got you covered ☂️

@Sumolari Sumolari merged commit 0f532b9 into main Jan 22, 2026
4 checks passed
@dependabot dependabot bot deleted the dependabot/npm_and_yarn/lodash-4.17.23 branch January 22, 2026 07:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants