Skip to content

chore(deps-dev): bump @venusprotocol/oracle from 2.14.0 to 2.16.0#5711

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/venusprotocol/oracle-2.16.0
Open

chore(deps-dev): bump @venusprotocol/oracle from 2.14.0 to 2.16.0#5711
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/venusprotocol/oracle-2.16.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 21, 2026

Copy link
Copy Markdown
Contributor

Bumps @venusprotocol/oracle from 2.14.0 to 2.16.0.

Changelog

Sourced from @​venusprotocol/oracle's changelog.

2.16.0-dev.2 (2026-07-03)

  • Merge branch 'develop' into fix/vpd-1241-certik-audit (3094df0)
  • Merge pull request #315 from VenusProtocol/fix/vpd-1241-certik-audit (b78a721), closes #315
  • chore: update yarn.lock (c1f924a)
  • revert: undo yarn.lock oracle npm 2.15.0 fix commits (5d84dec)
  • revert: yarn.lock changes (e234339)
  • fix: [VLC-32] document OneJumpOracle.INTERMEDIATE_ORACLE ratio precondition (007a6f2)
  • fix: [VLC-47] document that updateAssetPrice() success doesn't guarantee snapshot advancement (165b7c5)
  • fix: [VLC-49] Documented same-transaction price-freshness guarantee not upheld by the cache logic in (ddbf66d)
  • fix: [VLC-56] CorrelatedTokenOracle.setSnapshot() lacks input validation, allowing silent cap-disabl (de41efd)
  • fix: regenerate yarn.lock to resolve oracle workspace aliasing (e91edb6)
  • fix: test validate max-rate and timestamp in setSnapshot() (39ba374)
  • fix: update yarn.lock with oracle npm 2.15.0 split entry (742dd0e)
  • docs: add Certik Core pool re-audit report (2026-06-16) (76f1d8f)

2.16.0-dev.1 (2026-06-17)

  • Merge pull request #313 from VenusProtocol/main (aed5f33), closes #313
  • Merge pull request #316 from VenusProtocol/feat/vpd-1341 (1198bc6), closes #316
  • feat: deploy atlas oracle on bsctestnet (f374607)
  • feat: updating deployment files (d569da0)
  • chore: update yarn lock (adf1a07)

2.15.0 (2026-05-07)

  • add certik and hashdit audit report (495c2cc)
  • add quantstampm audit report (af99820)
  • Merge pull request #291 from VenusProtocol/fix/etherscan-verify (218740e), closes #291
  • Merge pull request #295 from VenusProtocol/main (be45d94), closes #295
  • Merge pull request #296 from VenusProtocol/chore/fix-release (fb4cc0d), closes #296
  • Merge pull request #298 from VenusProtocol/feat/wbeth-oracle (a359efb), closes #298
  • Merge pull request #300 from VenusProtocol/feat/usdt-chainlink-oracle-deployment (85ac7ac), closes #300
  • Merge pull request #301 from VenusProtocol/chore/slim-package (0d32fd1), closes #301
  • Merge pull request #303 from VenusProtocol/feat/VPD-418 (c0012d9), closes #303
  • Merge pull request #304 from VenusProtocol/feat/vpd-404 (006092f), closes #304
  • Merge pull request #306 from VenusProtocol/feat/vpd-893-bounded-price-oracle (5a1870c), closes #306
  • Merge pull request #307 from VenusProtocol/feat/vpd-995 (adfcddd), closes #307
  • Merge pull request #308 from VenusProtocol/fix/vpd-893-hashdit (cce417b), closes #308
  • Merge pull request #310 from VenusProtocol/fix/vpd-893-Certik (556bd5e), closes #310
  • Merge pull request #311 from VenusProtocol/fix/vpd-893-quantstamp (8e4dccb), closes #311
  • Merge pull request #312 from VenusProtocol/develop (94cf294), closes #312
  • chore: add DeviationBoundedOracle bscmainnet deployment artifacts (7b046f1)
  • chore: add DeviationBoundedOracle bsctestnet deployments (00ea1c6)
  • chore: minor cleanups (7a18054)
  • chore(release): 2.14.1-dev.1 [skip ci] (ed9fcd0)
  • chore(release): 2.15.0-dev.1 [skip ci] (da9d5cc)
  • chore(release): 2.15.0-dev.2 [skip ci] (1c4b0e5)
  • chore(release): 2.15.0-dev.3 [skip ci] (2c89472)
  • chore(release): 2.15.0-dev.4 [skip ci] (2df94aa)

... (truncated)

Commits
  • d40a413 chore(release): 2.16.0 [skip ci]
  • 6a5c51d Merge pull request #317 from VenusProtocol/develop
  • 970cf42 chore(release): 2.16.0-dev.2 [skip ci]
  • b78a721 Merge pull request #315 from VenusProtocol/fix/vpd-1241-certik-audit
  • c1f924a chore: update yarn.lock
  • 3094df0 Merge branch 'develop' into fix/vpd-1241-certik-audit
  • 5d84dec revert: undo yarn.lock oracle npm 2.15.0 fix commits
  • 742dd0e fix: update yarn.lock with oracle npm 2.15.0 split entry
  • e91edb6 fix: regenerate yarn.lock to resolve oracle workspace aliasing
  • e234339 revert: yarn.lock changes
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by GitHub Actions, a new releaser for @​venusprotocol/oracle since your current version.


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [@venusprotocol/oracle](https://github.com/VenusProtocol/oracle) from 2.14.0 to 2.16.0.
- [Changelog](https://github.com/VenusProtocol/oracle/blob/develop/CHANGELOG.md)
- [Commits](VenusProtocol/oracle@v2.14.0...v2.16.0)

---
updated-dependencies:
- dependency-name: "@venusprotocol/oracle"
  dependency-version: 2.16.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Jul 21, 2026
@greptile-apps

greptile-apps Bot commented Jul 21, 2026

Copy link
Copy Markdown

PR author is in the excluded authors list.

@changeset-bot

changeset-bot Bot commented Jul 21, 2026

Copy link
Copy Markdown

⚠️ No Changeset found

Latest commit: 28107bf

Merging this PR will not cause a version bump for any packages. If these changes should not result in a new version, you're good to go. If these changes should result in a version bump, you need to add a changeset.

This PR includes no changesets

When changesets are added to this PR, you'll see the packages that this PR includes changesets for and the associated semver types

Click here to learn what changesets are, and how to add one.

Click here if you're a maintainer who wants to add a changeset to this PR

@vercel

vercel Bot commented Jul 21, 2026

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated (UTC)
dapp-preview Error Error Jul 21, 2026 8:09pm
dapp-testnet Error Error Jul 21, 2026 8:09pm
venus.io Error Error Jul 21, 2026 8:09pm

Request Review

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants