Skip to content

Bump the npm-minor-and-patch group across 1 directory with 15 updates - #21

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/main/npm-minor-and-patch-f87c9e266f
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/main/npm-minor-and-patch-f87c9e266f

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 3, 2026

Copy link
Copy Markdown

Bumps the npm-minor-and-patch group with 15 updates in the / directory:

Package From To
@tauri-apps/api 2.11.1 2.12.0
@tauri-apps/plugin-dialog 2.7.3 2.8.0
@tauri-apps/plugin-fs 2.5.2 2.6.0
katex 0.18.7 0.18.9
lucide-react 1.45.0 1.49.0
multer 2.3.0 2.4.0
@types/multer 2.2.0 2.3.0
openai 7.15.0 7.25.0
sharp 0.35.4 0.35.5
tsx 4.23.13 4.23.15
zod 4.6.2 4.6.5
@playwright/cli 0.1.19 0.1.22
@tauri-apps/cli 2.11.4 2.12.0
@types/multer 2.2.0 2.3.0
@types/node 26.5.1 26.6.3
vite 8.3.0 8.3.1

Updates @tauri-apps/api from 2.11.1 to 2.12.0

Release notes

Sourced from @​tauri-apps/api's releases.

@​tauri-apps/api v2.12.0

All found vulnerabilities were already reviewed and decided to be ignored
2 ignored: 2 high

[2.12.0]

New Features

  • d8d02ba60 (#14767) Added the exit function to @tauri-apps/api/app, backed by the new plugin:app|exit command (core:app:allow-exit permission), to exit the app without requiring the @tauri-apps/plugin-process plugin.
  • 990f77eb2 (#15961) Added JsImage type alias and documented its relationship to the Rust JsImage
  • 29265557c (#15410) Added noRedirectionBitmap option to the Window and WebviewWindow constructors on Windows.
  • 6edc2f4d4 (#14926) Added Window::set_fullscreen_on_monitor, WebviewWindow::set_fullscreen_on_monitor and the setFullscreenOnMonitor JavaScript API to make a window fullscreen on the monitor containing a given physical position, along with the core:window:allow-set-fullscreen-on-monitor permission.

Enhancements

  • be019795a (#14103) Add ECMAScript Explicit Resource Management to Resource. You can now use the using syntax in supported browsers or with polyfills:

    import { create, BaseDirectory } from "@tauri-apps/plugin-fs"
    ...
    {
      await using file = await create("foo/bar.txt", { baseDir: BaseDirectory.AppConfig });
      await file.write(new TextEncoder().encode("Hello world"));
      // Before `file` goes out of scope, it is disposed by calling `file[Symbol.asyncDispose]()` and awaited.
    }
  • 4a5065653 (#14454) Added Regular and Clear Liquid Glass window effects, and the interactive window effects option (macOS 27.0+) that enables the glass' visual response to user interactions.

Bug Fixes

  • 4fabe2ff1 (#16067) Fix Window.setBackgroundColor, Webview.setBackgroundColor and WebviewWindow.setBackgroundColor sending a color argument while the plugin:window|set_background_color and plugin:webview|set_webview_background_color commands expect label and value. The color was always deserialized as None, so instead of applying the given color the call cleared the background of the calling window/webview.
  • 32efd0232 (#15957) Image.rgba now returns a more specific type Promise<Uint8Array<ArrayBuffer>> instead of the default Promise<Uint8Array<ArrayBufferLike>
$ pnpm build && cd ./dist && pnpm publish --access public --loglevel debug --no-git-checks
$ rollup -c --configPlugin typescript
�[36m
�[1m./src/app.ts, ./src/core.ts, ./src/dpi.ts, ./src/event.ts, ./src/image.ts, ./src/index.ts, ./src/menu.ts, ./src/mocks.ts, ./src/path.ts, ./src/tray.ts, ./src/webview.ts, ./src/webviewWindow.ts, ./src/window.ts�[22m → �[1m./dist, ./dist�[22m...�[39m
�[32mcreated �[1m./dist, ./dist�[22m in �[1m757ms�[22m�[39m
�[36m
</tr></table> 

... (truncated)

Commits
  • 4f46cfc fix(ci): pnpm publish should use "debug" loglevel instead of "silly"
  • 726822c apply version updates (#15634)
  • 9f8922a docs(core): extend app_directories_override documentation (#16139)
  • dc894d4 chore: remove change file for unreleased fix (#16140)
  • 152529e Revert "feat(core): add android activityEmbedding config (#15255)" (#16138)
  • 7456ddd Revert "fix(core): proper unique identifier for menu items on channels store"...
  • 15468de fix(bundler): recognize deb and rpm as self-contained updater targets (#16064)
  • 8e70283 fix(bundler): update linuxdeploy and linuxdeploy-plugin-gtk (#16062)
  • 1b91b7b fix(cli): list all locked crate versions in tauri info (#16102)
  • ff7cd8d fix(cli): harden updater key generation and signing (#16118)
  • Additional commits viewable in compare view

Updates @tauri-apps/plugin-dialog from 2.7.3 to 2.8.0

Release notes

Sourced from @​tauri-apps/plugin-dialog's releases.

http-js v2.8.0

[2.8.0]

npm warn publish npm auto-corrected some errors in your package.json when publishing.  Please run "npm pkg fix" to address these errors.
npm warn publish errors corrected:
npm warn publish "repository" was changed from a string to an object
npm warn publish "repository.url" was normalized to "git+https://github.com/tauri-apps/plugins-workspace.git"
npm notice
npm notice 📦  @tauri-apps/plugin-http@2.8.0
npm notice Tarball Contents
npm notice 888B LICENSE.spdx
npm notice 2.6kB README.md
npm notice 7.7kB dist-js/index.cjs
npm notice 3.4kB dist-js/index.d.ts
npm notice 7.7kB dist-js/index.js
npm notice 655B package.json
npm notice Tarball Details
npm notice name: @tauri-apps/plugin-http
npm notice version: 2.8.0
npm notice filename: tauri-apps-plugin-http-2.8.0.tgz
npm notice package size: 5.5 kB
npm notice unpacked size: 23.0 kB
npm notice shasum: 1cf059a5c97cadea0e5f6a07c22931a118c60ffc
npm notice integrity: sha512-cPvZvfUSaBkqG[...]jyXRPNo6Cky6g==
npm notice total files: 6
npm notice
npm notice npm tokens that bypass 2FA are being restricted for account changes and direct publishing. Learn how to prepare: https://gh.io/npm-gat-bypass2fa-deprecation
npm notice Publishing to https://registry.npmjs.org/ with tag latest and public access
npm notice publish Signed provenance statement with source and build information from GitHub Actions
npm notice publish Provenance statement published to transparency log: https://search.sigstore.dev/?logIndex=3005263804
npm notice Your package is being processed and may take a few minutes to become available.
+ @tauri-apps/plugin-http@2.8.0
Commits
  • 6e2e7e4 publish new versions (#3070)
  • 9a2c98f temp: remove updater changefiles
  • 4a2ecb6 chore(deps): update rkyv, closes #3196
  • 31415ef docs(shell): update example to include Encoding usage in Command::spawn (#3...
  • 04b33ea chore(deps): update dependency typescript-eslint to v8.50.1 (#3181)
  • 54e21f1 chore(deps): update dependency rollup to v4.54.0 (#3179)
  • d528c88 chore(deps): update dependency rollup to v4.53.5 (#3172)
  • 69146fa chore(deps): update dependency rollup to v4.53.4 (#3167)
  • 9f68f2d chore(deps): update dependency typescript-eslint to v8.50.0 (#3170)
  • 3d0d2e0 fix(opener): ignore inAppBrowser on desktop (#3163)
  • Additional commits viewable in compare view

Updates @tauri-apps/plugin-fs from 2.5.2 to 2.6.0

Release notes

Sourced from @​tauri-apps/plugin-fs's releases.

deep-link-js v2.6.0

[2.6.0]

  • ecd3273e (#3480 by @​renovate) Updated windows-rs dependencies:

    • deep-link: updated windows-registry to 0.6 and windows-result to 0.4. The public Error::Windows variant wraps windows_result::Error; applications using this type directly should update their windows-result dependency.
    • opener: updated windows to 0.62. The public Error::Win32Error variant wraps windows::core::Error; applications using this type directly should update their windows dependency.
    • single-instance: updated windows-sys to 0.61
    • updater: updated windows-sys to 0.61
npm warn publish npm auto-corrected some errors in your package.json when publishing.  Please run "npm pkg fix" to address these errors.
npm warn publish errors corrected:
npm warn publish "repository" was changed from a string to an object
npm warn publish "repository.url" was normalized to "git+https://github.com/tauri-apps/plugins-workspace.git"
npm notice
npm notice 📦  @tauri-apps/plugin-deep-link@2.6.0
npm notice Tarball Contents
npm notice 888B LICENSE.spdx
npm notice 6.2kB README.md
npm notice 4.7kB dist-js/index.cjs
npm notice 4.0kB dist-js/index.d.ts
npm notice 4.5kB dist-js/index.js
npm notice 801B package.json
npm notice Tarball Details
npm notice name: @tauri-apps/plugin-deep-link
npm notice version: 2.6.0
npm notice filename: tauri-apps-plugin-deep-link-2.6.0.tgz
npm notice package size: 4.8 kB
npm notice unpacked size: 21.1 kB
npm notice shasum: 42f4e74e87aea6ace90871ad293f4fface5910cc
npm notice integrity: sha512-41rOuYUZjxcEz[...]TsoJQ2R9U5MCA==
npm notice total files: 6
npm notice
npm notice npm tokens that bypass 2FA are being restricted for account changes and direct publishing. Learn how to prepare: https://gh.io/npm-gat-bypass2fa-deprecation
npm notice Publishing to https://registry.npmjs.org/ with tag latest and public access
npm notice publish Signed provenance statement with source and build information from GitHub Actions
npm notice publish Provenance statement published to transparency log: https://search.sigstore.dev/?logIndex=3005261605
npm notice Your package is being processed and may take a few minutes to become available.
+ @tauri-apps/plugin-deep-link@2.6.0

deep-link v2.6.0

[2.6.0]

... (truncated)

Commits

Updates katex from 0.18.7 to 0.18.9

Release notes

Sourced from katex's releases.

v0.18.9

0.18.9 (2026-09-23)

Features

v0.18.8

0.18.8 (2026-09-23)

Bug Fixes

Changelog

Sourced from katex's changelog.

0.18.9 (2026-09-23)

Features

0.18.8 (2026-09-23)

Bug Fixes

Commits
  • 71a7bc0 chore(release): 0.18.9 [ci skip]
  • aafa187 feat(types): add contrib module declarations (#4250)
  • e749fd1 chore(release): 0.18.8 [ci skip]
  • ddfcc29 fix(array): preserve trailing rows in align (#4283)
  • 96e751c chore(deps): bump github/codeql-action from 4.38.0 to 4.38.1 (#4292)
  • 726c2d4 chore(deps): bump github/codeql-action from 4.37.9 to 4.38.0 (#4287)
  • f71045d chore(deps): update dependency js-yaml to v4.3.2 [security] (#4286)
  • See full diff in compare view

Updates lucide-react from 1.45.0 to 1.49.0

Release notes

Sourced from lucide-react's releases.

Version 1.49.0

What's Changed

New Contributors

Full Changelog: lucide-icons/lucide@1.48.0...1.49.0

Version 1.48.0

What's Changed

New Contributors

Full Changelog: lucide-icons/lucide@1.47.0...1.48.0

Version 1.47.0

What's Changed

... (truncated)

Commits
  • e042fec fix(packages): declare @types/react as an optional peer dependency (#4892)
  • f06ac67 chore(typchecking): More typecheck jobs for all packages (#4885)
  • See full diff in compare view

Updates multer from 2.3.0 to 2.4.0

Release notes

Sourced from multer's releases.

v2.4.0

Highlights

multer finally supports Google Cloud Functions and Firebase 🎉

These platforms read the request body before your code runs, so multer's classic req.pipe(busboy) received nothing: empty req.body, empty req.files, and nearly a decade of duplicated issues.

The new streamHandler option closes that gap: you decide how the body reaches the parser, so the pre-read rawBody just works (see image).

const multer = require('multer')
const upload = multer({
storage: multer.memoryStorage(),
streamHandler: (req, busboy) => {
// Cloud Functions / Firebase expose the pre-read body here
if (req.rawBody) busboy.end(req.rawBody)
else req.pipe(busboy)
}
})
app.post('/upload', upload.single('file'), (req, res) => {
res.json({ name: req.file.originalname, size: req.file.size })
})

This landed thanks to community PRs going back to 2017; their authors are credited as co-authors in the release.

Important: Security

What's Changed

... (truncated)

Changelog

Sourced from multer's changelog.

2.4.0

  • Fix CVE-2026-88932 (GHSA-3pph-fpjx-jg34)
  • Add filename to LIMIT_FILE_SIZE and LIMIT_UNEXPECTED_FILE errors (#1416)
  • Accept a function for limits, called with the request, to set limits per request (#1133)
  • Add opt-in flush option to DiskStorage to fsync files before the callback runs (#1458)
  • Expose busboy's defCharset, highWaterMark and fileHwm options (#1465)
  • Add streamHandler option to feed busboy from pre-consumed bodies (Google Cloud Functions, Firebase) (#1466)
  • Allow multer.diskStorage() to be called without options (#1471)
  • Decode WHATWG-escaped characters (%0A, %0D, %22) in field names, matching file.originalname since 2.3.0: req.body keys, file.fieldname and err.field now carry the real name. If you matched the escaped spelling as a workaround, use the real name now (#1473)
  • Report the decoded filename in err.filename on LIMIT_FILE_SIZE errors, matching file.originalname (#1478)
  • Reject non-integer or negative limits values at construction time; a float limit silently disabled the check (#1395, #1335)
  • Accept requests with exactly limits.parts parts; LIMIT_PART_COUNT now fires only when the limit is exceeded. If you set parts one higher to work around this, you can drop the extra one (#1446)
  • Files skipped by fileFilter no longer count towards maxCount (#1426)
  • Change the LIMIT_UNEXPECTED_FILE message to "Unexpected file field" (#426)
  • Remove the concat-stream dependency (#1356)
  • Docs: add JSDoc to the public API and document the storage engine stream contract (#1467, #1468)
  • Docs: add FormData upload examples (#896)
  • Docs: remove the translated READMEs (#1463)
  • Internal: run the test suite on macOS (#1464)
Commits
  • 35979e5 2.4.0 (#1469)
  • b888532 chore(deps): bump github/codeql-action/upload-sarif to 4.37.9 (#1474)
  • e6bcd7d chore(deps): bump github/codeql-action/analyze from 4.37.4 to 4.37.9 (#1475)
  • 00dec43 chore(deps): bump github/codeql-action/init from 4.37.4 to 4.37.9 (#1476)
  • 8d5c3b7 feat: allow diskStorage without options (#1471)
  • 02f6e82 fix: report the decoded filename on LIMIT_FILE_SIZE (#1478)
  • bc3f72d fix: decode escaped field names, not just filenames (#1473)
  • 2661325 docs: add JSDoc to the public API (#1467)
  • 53337f9 fix: remove late-completing uploads aborted before the engine names them
  • 7f2c9ab feat: add streamHandler option to feed busboy from pre-consumed bodies (#1466)
  • Additional commits viewable in compare view

Updates @types/multer from 2.2.0 to 2.3.0

Commits

Updates openai from 7.15.0 to 7.25.0

Release notes

Sourced from openai's releases.

v7.25.0

7.25.0 (2026-09-29)

Features

v7.24.0

7.24.0 (2026-09-29)

Features

  • api: add Agents credential and session options (#2812) (c0edae4)
  • api: add Cyber access programs to Responses (#2804) (51dbefe)
  • api: add GPT-6.1 Sol model identifier (#2836) (6492a63)
  • api: add Realtime Translation client secret creation (#2819) (441f33b)
  • realtime: add dedicated Node translation WebSocket (#2818) (d0616b8)
  • responses: add opt-in WebSocket incremental output snapshots (#2817) (4e4ea69)

Bug Fixes

  • client: preserve base URL queries when joining relative endpoints (#2816) (7ffba2d)
  • deps-dev: bump @​arethetypeswrong/cli from 0.18.3 to 0.18.5 (#2783) (64ba34f)
  • deps-dev: bump @​aws-sdk/credential-provider-node from 3.972.81 to 3.972.83 (#2784) (8e02310)
  • deps-dev: bump @​cloudflare/workers-types from 5.20260906.1 to 5.20260911.1 in /ecosystem-tests/cloudflare-worker (#2780) (648324d)
  • deps-dev: bump publint from 0.3.23 to 0.3.24 (#2781) (b99cab7)
  • deps-dev: bump ultracite from 7.11.0 to 7.11.1 (#2785) (1743718)
  • deps-dev: bump wrangler from 4.129.0 to 4.131.1 in /ecosystem-tests/cloudflare-worker (#2782) (361124c)
  • live: prevent hangs on fractional transcript grouping deadlines (#2814) (82829b6)
  • live: prevent replay of delivery-uncertain queued writes (#2833) (53060b2)
  • responses: preserve supported streamed logprobs and provisional metadata (#2821) (4eabd6d)

Chores

  • api: clarify approximate web search location defaults (#2802) (87a98d4)
  • api: clarify documented API error responses (#2810) (1a17c2c)
  • api: clarify Realtime modality array definitions (#2803) (d454fe1)
  • api: correct fine-tuning bounds and Realtime response reference (#2799) (3ebc06e)
  • api: document batch error responses (#2807) (622f459)
  • api: document files and uploads error responses (#2806) (3e1dfb1)
  • api: document fine-tuning and model errors (#2809) (8e8f581)
  • api: document Responses not-found errors (#2805) (e92a268)
  • api: document stored chat completion errors (#2808) (2a1a629)

Documentation

... (truncated)

Changelog

Sourced from openai's changelog.

7.25.0 (2026-09-29)

Features

7.24.0 (2026-09-29)

Features

  • api: add Agents credential and session options (#2812) (c0edae4)
  • api: add Cyber access programs to Responses (#2804) (51dbefe)
  • api: add GPT-6.1 Sol model identifier (#2836) (6492a63)
  • api: add Realtime Translation client secret creation (#2819) (441f33b)
  • realtime: add dedicated Node translation WebSocket (#2818) (d0616b8)
  • responses: add opt-in WebSocket incremental output snapshots (#2817) (4e4ea69)

Bug Fixes

  • client: preserve base URL queries when joining relative endpoints (#2816) (7ffba2d)
  • deps-dev: bump @​arethetypeswrong/cli from 0.18.3 to 0.18.5 (#2783) (64ba34f)
  • deps-dev: bump @​aws-sdk/credential-provider-node from 3.972.81 to 3.972.83 (#2784) (8e02310)
  • deps-dev: bump @​cloudflare/workers-types from 5.20260906.1 to 5.20260911.1 in /ecosystem-tests/cloudflare-worker (#2780) (648324d)
  • deps-dev: bump publint from 0.3.23 to 0.3.24 (#2781) (b99cab7)
  • deps-dev: bump ultracite from 7.11.0 to 7.11.1 (#2785) (1743718)
  • deps-dev: bump wrangler from 4.129.0 to 4.131.1 in /ecosystem-tests/cloudflare-worker (#2782) (361124c)
  • live: prevent hangs on fractional transcript grouping deadlines (#2814) (82829b6)
  • live: prevent replay of delivery-uncertain queued writes (#2833) (53060b2)
  • responses: preserve supported streamed logprobs and provisional metadata (#2821) (4eabd6d)

Chores

  • api: clarify approximate web search location defaults (#2802) (87a98d4)
  • api: clarify documented API error responses (#2810) (1a17c2c)
  • api: clarify Realtime modality array definitions (#2803) (d454fe1)
  • api: correct fine-tuning bounds and Realtime response reference (#2799) (3ebc06e)
  • api: document batch error responses (#2807) (622f459)
  • api: document files and uploads error responses (#2806) (3e1dfb1)
  • api: document fine-tuning and model errors (#2809) (8e8f581)
  • api: document Responses not-found errors (#2805) (e92a268)
  • api: document stored chat completion errors (#2808) (2a1a629)

Documentation

  • clarify collaborator-only pull request policy (#2797) (764ceed)

... (truncated)

Commits
  • 02f4ef9 release: 7.25.0 (#2838)
  • f982249 feat(api): add computer use to beta agents (#2837)
  • 5256e06 release: 7.24.0 (#2798)
  • 6492a63 feat(api): add GPT-6.1 Sol model identifier (#2836)
  • b3c71cb test(realtime): verify duplex translation and finish immediately after input ...
  • 53060b2 fix(live): prevent replay of delivery-uncertain queued writes (#2833)
  • 0846098 test(realtime): cover beta and GA lifecycle on real Node WebSockets (#2832)
  • 4eabd6d fix(responses): preserve supported streamed logprobs and provisional metadata...
  • f72f6ad test: keep Live socket observers active after grouper disposal (#2820)
  • 441f33b feat(api): add Realtime Translation client secret creation (#2819)
  • Additional commits viewable in compare view

Updates sharp from 0.35.4 to 0.35.5

Release notes

Sourced from sharp's releases.

v0.35.5

https://github.com/lovell/sharp-libvips/releases/tag/v1.3.4

  • Add upper bounds check on length of linear and GIF delay arrays.

  • Improve error handing when WebAssembly fallback also fails. #4593 @​lazerg

  • TypeScript: Allow multi-frame options for JXL output. #4602 @​ramin-010

  • TypeScript: Remove non-existent named export. #4604

  • Increase accepted dimensions when extending an image. #4605

  • Improve gain map support for extract and rotate operations. #4606

  • Tests: Ensure composite tests pass on big endian platforms. #4609

v0.35.5-rc.1

https://github.com/lovell/shar...

Description has been truncated

Bumps the npm-minor-and-patch group with 15 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [@tauri-apps/api](https://github.com/tauri-apps/tauri) | `2.11.1` | `2.12.0` |
| [@tauri-apps/plugin-dialog](https://github.com/tauri-apps/plugins-workspace) | `2.7.3` | `2.8.0` |
| [@tauri-apps/plugin-fs](https://github.com/tauri-apps/plugins-workspace) | `2.5.2` | `2.6.0` |
| [katex](https://github.com/KaTeX/KaTeX) | `0.18.7` | `0.18.9` |
| [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react) | `1.45.0` | `1.49.0` |
| [multer](https://github.com/expressjs/multer) | `2.3.0` | `2.4.0` |
| [@types/multer](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/multer) | `2.2.0` | `2.3.0` |
| [openai](https://github.com/openai/openai-node) | `7.15.0` | `7.25.0` |
| [sharp](https://github.com/lovell/sharp) | `0.35.4` | `0.35.5` |
| [tsx](https://github.com/privatenumber/tsx) | `4.23.13` | `4.23.15` |
| [zod](https://github.com/colinhacks/zod) | `4.6.2` | `4.6.5` |
| [@playwright/cli](https://github.com/microsoft/playwright-cli) | `0.1.19` | `0.1.22` |
| [@tauri-apps/cli](https://github.com/tauri-apps/tauri) | `2.11.4` | `2.12.0` |
| [@types/multer](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/multer) | `2.2.0` | `2.3.0` |
| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `26.5.1` | `26.6.3` |
| [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) | `8.3.0` | `8.3.1` |



Updates `@tauri-apps/api` from 2.11.1 to 2.12.0
- [Release notes](https://github.com/tauri-apps/tauri/releases)
- [Commits](https://github.com/tauri-apps/tauri/compare/@tauri-apps/api-v2.11.1...@tauri-apps/api-v2.12.0)

Updates `@tauri-apps/plugin-dialog` from 2.7.3 to 2.8.0
- [Release notes](https://github.com/tauri-apps/plugins-workspace/releases)
- [Commits](tauri-apps/plugins-workspace@dialog-v2.7.3...log-v2.8.0)

Updates `@tauri-apps/plugin-fs` from 2.5.2 to 2.6.0
- [Release notes](https://github.com/tauri-apps/plugins-workspace/releases)
- [Commits](tauri-apps/plugins-workspace@fs-v2.5.2...fs-v2.6.0)

Updates `katex` from 0.18.7 to 0.18.9
- [Release notes](https://github.com/KaTeX/KaTeX/releases)
- [Changelog](https://github.com/KaTeX/KaTeX/blob/main/CHANGELOG.md)
- [Commits](KaTeX/KaTeX@v0.18.7...v0.18.9)

Updates `lucide-react` from 1.45.0 to 1.49.0
- [Release notes](https://github.com/lucide-icons/lucide/releases)
- [Commits](https://github.com/lucide-icons/lucide/commits/1.49.0/packages/lucide-react)

Updates `multer` from 2.3.0 to 2.4.0
- [Release notes](https://github.com/expressjs/multer/releases)
- [Changelog](https://github.com/expressjs/multer/blob/main/CHANGELOG.md)
- [Commits](expressjs/multer@v2.3.0...v2.4.0)

Updates `@types/multer` from 2.2.0 to 2.3.0
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/multer)

Updates `openai` from 7.15.0 to 7.25.0
- [Release notes](https://github.com/openai/openai-node/releases)
- [Changelog](https://github.com/openai/openai-node/blob/main/CHANGELOG.md)
- [Commits](openai/openai-node@v7.15.0...v7.25.0)

Updates `sharp` from 0.35.4 to 0.35.5
- [Release notes](https://github.com/lovell/sharp/releases)
- [Commits](lovell/sharp@v0.35.4...v0.35.5)

Updates `tsx` from 4.23.13 to 4.23.15
- [Release notes](https://github.com/privatenumber/tsx/releases)
- [Changelog](https://github.com/privatenumber/tsx/blob/master/release.config.cjs)
- [Commits](privatenumber/tsx@v4.23.13...v4.23.15)

Updates `zod` from 4.6.2 to 4.6.5
- [Release notes](https://github.com/colinhacks/zod/releases)
- [Commits](colinhacks/zod@v4.6.2...v4.6.5)

Updates `@playwright/cli` from 0.1.19 to 0.1.22
- [Release notes](https://github.com/microsoft/playwright-cli/releases)
- [Commits](microsoft/playwright-cli@v0.1.19...v0.1.22)

Updates `@tauri-apps/cli` from 2.11.4 to 2.12.0
- [Release notes](https://github.com/tauri-apps/tauri/releases)
- [Commits](https://github.com/tauri-apps/tauri/compare/@tauri-apps/cli-v2.11.4...@tauri-apps/cli-v2.12.0)

Updates `@types/multer` from 2.2.0 to 2.3.0
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/multer)

Updates `@types/node` from 26.5.1 to 26.6.3
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)

Updates `vite` from 8.3.0 to 8.3.1
- [Release notes](https://github.com/vitejs/vite/releases)
- [Changelog](https://github.com/vitejs/vite/blob/main/packages/vite/CHANGELOG.md)
- [Commits](https://github.com/vitejs/vite/commits/v8.3.1/packages/vite)

---
updated-dependencies:
- dependency-name: "@tauri-apps/api"
  dependency-version: 2.12.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@tauri-apps/plugin-dialog"
  dependency-version: 2.8.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@tauri-apps/plugin-fs"
  dependency-version: 2.6.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: katex
  dependency-version: 0.18.9
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: lucide-react
  dependency-version: 1.49.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: multer
  dependency-version: 2.4.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@types/multer"
  dependency-version: 2.3.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: openai
  dependency-version: 7.25.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: sharp
  dependency-version: 0.35.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: tsx
  dependency-version: 4.23.15
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: zod
  dependency-version: 4.6.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@playwright/cli"
  dependency-version: 0.1.22
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@tauri-apps/cli"
  dependency-version: 2.12.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@types/multer"
  dependency-version: 2.3.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@types/node"
  dependency-version: 26.6.3
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: vite
  dependency-version: 8.3.1
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot requested a review from ryusui-hiro as a code owner October 3, 2026 06:45
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Oct 3, 2026

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants