Skip to content

Bump @angular/common from 17.3.12 to 19.2.16 in the npm_and_yarn group across 1 directory#143

Closed
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/npm_and_yarn/npm_and_yarn-361e6ec5b6
Closed

Bump @angular/common from 17.3.12 to 19.2.16 in the npm_and_yarn group across 1 directory#143
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/npm_and_yarn/npm_and_yarn-361e6ec5b6

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Nov 27, 2025

Bumps the npm_and_yarn group with 1 update in the / directory: @angular/common.

Updates @angular/common from 17.3.12 to 19.2.16

Release notes

Sourced from @​angular/common's releases.

19.2.16

http

Commit Description
fix - 05fe6686a9 prevent XSRF token leakage to protocol-relative URLs

19.2.15

core

Commit Description
fix - 70d0639bc1 introduce BootstrapContext for improved server bootstrapping (#63639)

Breaking Changes

core

  • The server-side bootstrapping process has been changed to eliminate the reliance on a global platform injector.

    Before:

    const bootstrap = () => bootstrapApplication(AppComponent, config);

    After:

    const bootstrap = (context: BootstrapContext) =>
      bootstrapApplication(AppComponent, config, context);

    A schematic is provided to automatically update main.server.ts files to pass the BootstrapContext to the bootstrapApplication call.

    In addition, getPlatform() and destroyPlatform() will now return null and be a no-op respectively when running in a server environment.

For more information please see: GHSA-68x2-mx4q-78m7

19.2.14

compiler

Commit Description
fix - 24bab55f0c lexer support for template literals in object literals (#61601)

migrations

Commit Description
fix - 9e1cd49662 preserve comments when removing unused imports (#61674)

19.2.13

common

Commit Description
fix - 2c876b4fc5 avoid injecting ApplicationRef in FetchBackend (#61649)

service-worker

| Commit | Description |

... (truncated)

Changelog

Sourced from @​angular/common's changelog.

19.2.16 (2025-11-26)

http

Commit Type Description
05fe6686a9 fix prevent XSRF token leakage to protocol-relative URLs

21.1.0-next.0 (2025-11-25)

platform-browser

Commit Type Description
ec9dc94cee feat add context to createApplication
ab67988d2e feat resolve JIT resources in createApplication

router

Commit Type Description
a03c82564d feat Add scroll behavior controls on router navigation
c25d749d85 feat Execute RunGuardsAndResolvers function in injection context
c84d372778 feat Support wildcard params with segments trailing (#64737)

20.3.14 (2025-11-25)

http

Commit Type Description
0276479e7d fix prevent XSRF token leakage to protocol-relative URLs

21.0.1 (2025-11-25)

compiler-cli

| Commit | Type | Description |

... (truncated)

Commits
  • 05fe668 fix(http): prevent XSRF token leakage to protocol-relative URLs
  • 12e2302 build: update common's locales to use rules_js (#61630)
  • 9701047 test(common): Add circular deps test to 19.2.x (#61651)
  • 2c876b4 fix(common): avoid injecting ApplicationRef in FetchBackend (#61649)
  • 8e54b57 build: move private testing helpers outside platform-browser/testing (#61571)
  • 2b1b14f fix(core): cleanup rxResource abort listener (#58306)
  • 126efc9 fix(common): cancel reader when app is destroyed (#61528)
  • efda872 fix(common): prevent reading chunks if app is destroyed (#61354)
  • c43fd3a build: migrate common to use rules_js based toolchain (#61434)
  • 185b780 build: migrate packages/core/schematics to ts_project (#61420)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps the npm_and_yarn group with 1 update in the / directory: [@angular/common](https://github.com/angular/angular/tree/HEAD/packages/common).


Updates `@angular/common` from 17.3.12 to 19.2.16
- [Release notes](https://github.com/angular/angular/releases)
- [Changelog](https://github.com/angular/angular/blob/main/CHANGELOG.md)
- [Commits](https://github.com/angular/angular/commits/19.2.16/packages/common)

---
updated-dependencies:
- dependency-name: "@angular/common"
  dependency-version: 19.2.16
  dependency-type: direct:production
  dependency-group: npm_and_yarn
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Nov 27, 2025
@github-actions
Copy link
Copy Markdown

PR: #143
Mode: squash
Topic: GH-portal-ng-ui-143
Change-Ids:
I2ac6adcaf40e8c72f5b30f0bdc61aecb2ccfef31
Digest: c8e740b0f0a0
GitHub-Hash: ddf526ccbf2e82ba

@github-actions
Copy link
Copy Markdown

Change raised in Gerrit by GitHub2Gerrit: https://gerrit.onap.org/r/c/portal-ng/ui/+/142573

@github-actions
Copy link
Copy Markdown

Auto-closing pull request

@github-actions github-actions Bot closed this Nov 27, 2025
@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github Nov 27, 2025

This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.

To ignore these dependencies, configure ignore rules in dependabot.yml

@dependabot dependabot Bot deleted the dependabot/npm_and_yarn/npm_and_yarn-361e6ec5b6 branch November 27, 2025 18:04
onap-github pushed a commit that referenced this pull request Mar 10, 2026
## Release notes

Sourced from lfreleng-actions/github2gerrit-action's releases.

v1.0.8
New Features

Feat: Implement fallback missing change creation @​ModeSevenIndustrialSolutions (#145)

Maintenance

Chore: pre-commit autoupdate @pre-commit-ci[bot] (#150)
Chore: Bump ruff from 0.15.2 to 0.15.4 @dependabot[bot] (#149)
Chore: Bump actions/upload-artifact from 6.0.0 to 7.0.0 @dependabot[bot] (#148)
Chore: Bump astral-sh/setup-uv from 7.3.0 to 7.3.1 @dependabot[bot] (#147)
Chore: Bump actions/download-artifact from 7.0.0 to 8.0.0 @dependabot[bot] (#146)

Links

Submit bugs/feature requests

v1.0.7
New Features

Feat: Improve CI workflows, PR trigger support, and test reliability @​ModeSevenIndustrialSolutions (#144)

Maintenance

Chore: Bump typer from 0.24.0 to 0.24.1 @dependabot[bot] (#139)
Chore: pre-commit autoupdate @pre-commit-ci[bot] (#140)
Chore: Bump lfreleng-actions/pypi-publish-action from 0.1.4 to 0.1.5 @dependabot[bot] (#141)
Chore: Bump step-security/harden-runner from 2.14.2 to 2.15.0 @dependabot[bot] (#142)
Chore: Bump hatchling from 1.28.0 to 1.29.0 @dependabot[bot] (#143)

Links

Submit bugs/feature requests

v1.0.6
Bug Fixes

Fix: Add shallow clone deepening fallback for git merge --squash @​ModeSevenIndustrialSolutions (#134)

Maintenance

Chore: Bump step-security/harden-runner from 2.14.1 to 2.14.2 @dependabot[bot] (#124)
Chore: Bump lfreleng-actions/python-build-action from 1.0.2 to 1.0.3 @dependabot[bot] (#128)
Chore: Bump astral-sh/setup-uv from 7.2.1 to 7.3.0 @dependabot[bot] (#126)
Chore: Bump anchore/scan-action from 7.3.1 to 7.3.2 @dependabot[bot] (#125)
Chore: Bump ruff from 0.14.14 to 0.15.0 @dependabot[bot] (#127)
Chore: pre-commit autoupdate @pre-commit-ci[bot] (#129)
Chore: pre-commit autoupdate @pre-commit-ci[bot] (#132)
Chore: Bump typer from 0.21.1 to 0.23.1 @dependabot[bot] (#130)
Chore: Bump ruff from 0.15.0 to 0.15.1 @dependabot[bot] (#131)
Chore: Bump responses from 0.25.8 to 0.26.0 @dependabot[bot] (#138)
Chore: Bump ruff from 0.15.1 to 0.15.2 @dependabot[bot] (#137)

... (truncated)

## Commits

de84770 Merge pull request #145 from modeseven-lfreleng-actions/implement-keyword-com
dbc56c4 Fix: Respect CLI flag precedence and correct match ordering
7c645ad Fix: Add missing negation flags for boolean CLI options
ef32b3c Fix: SSH back-reference comments and shallow clone warning
01aa460 Chore: Fix emoji rendering in terminal progress output
f09be43 Merge pull request #146 from lfreleng-actions/dependabot/github_actions/actio
7aaa866 Merge pull request #147 from lfreleng-actions/dependabot/github_actions/astra
ffe24a2 Merge pull request #148 from lfreleng-actions/dependabot/github_actions/actio
cc4fc6d Merge pull request #149 from lfreleng-actions/dependabot/uv/ruff-0.15.4
1f9db2a Merge pull request #150 from lfreleng-actions/pre-commit-ci-update-config
Additional commits viewable in compare view

![Dependabot compatibility score](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Issue-ID: CIMAN-33
Signed-off-by: dependabot[bot] <support@github.com>
Change-Id: I40c890ac825105edb5259800a58298d48d40ada2
GitHub-PR: #168
GitHub-Hash: 148d333d2b3a91d2
Signed-off-by: onap.gh2gerrit <releng+onap-gh2gerrit@linuxfoundation.org>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code

Development

Successfully merging this pull request may close these issues.

0 participants