Bump dotenv from 17.4.2 to 18.0.0 - #293
Conversation
Bumps [dotenv](https://github.com/motdotla/dotenv) from 17.4.2 to 18.0.0. - [Changelog](https://github.com/motdotla/dotenv/blob/master/CHANGELOG.md) - [Commits](motdotla/dotenv@v17.4.2...v18.0.0) --- updated-dependencies: - dependency-name: dotenv dependency-version: 18.0.0 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com>
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
|
|
Caution Review the following alerts detected in dependencies. According to your organization's Security Policy, you must resolve all "Block" alerts before proceeding. Learn more about Socket for GitHub.
|
Bumps dotenv from 17.4.2 to 18.0.0.
Changelog
Sourced from dotenv's changelog.
Commits
2815fa818.0.0451c6cbadd spacing7c7ed02update README and changelog7454f56Merge pull request #1052 from motdotla/cli-cleanupf5de622.cmd coverage75289b1changelog33bd964spawn for windows2b4cc00update changelogde91a69cli cleanupfa8788eMerge pull request #1049 from webdevelopersrinu/fix-populate-nullDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)