Skip to content

Bump the nuget group with 2 updates - #519

Merged
pengzhengyi merged 3 commits into
mainfrom
dependabot/nuget/dot-config/nuget-cded71e85e
Sep 27, 2026
Merged

pengzhengyi merged 3 commits into
mainfrom
dependabot/nuget/dot-config/nuget-cded71e85e

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 26, 2026 •

Copy link
Copy Markdown
Contributor

Updated docfx from 2.80.1 to 2.81.0.

Release notes

Sourced from docfx's releases.

2.81.0

What's Changed

✨ Features & Platform Support

  • Allow custom templates to override search.min.js in the modern template by @​filzrev in #​10055.
  • Add metadata.sourceLinkExclude to exclude selected source paths from View Source links without removing API documentation by @​vicancy in #​11141.
  • Record the DocFX build version in the docfx_version field of manifest.json by @​vicancy in #​11162.
  • Add a .NET 11 RC target, including support for the .NET 11 Razor source generator, while retaining .NET 8, 9, and 10 targets by @​vicancy and @​filzrev in #​11176 and #​11182.

⚡ Performance & Reliability

  • Reduce JavaScript template processing overhead and memory allocations by reusing parsed scripts and improving model conversion. Add execution limits to prevent runaway scripts from hanging builds by @​lahma in #​11084.
  • Avoid unnecessary exceptions and repeated file reads when loading toc.yml by @​filzrev in #​9974.

🐛 Bug Fixes

  • Restore source links for partial types extended by source generators by @​vicancy in #​11141.
  • Fix local namespace links in managed reference documentation by resolving them through xrefs during site generation by @​vicancy in #​11163.
  • Preserve nested XML blocks when inserting Markdown separators, preventing content from incorrectly rendering as code blocks by @​vicancy in #​11175.
  • Preserve explicit false and 0 values when overwriting nullable properties by @​vicancy in #​11181.

📦 Dependency Updates

Upgrade Notes

Custom JavaScript template preprocessors now enforce a 30-second timeout and a 50-million-statement limit for each getOptions or transform invocation. Long-running custom scripts may need adjustment.

Full Changelog: dotnet/docfx@v2.80.1...v2.81.0

Commits viewable in compare view.

Updated Markdig from 1.3.2 to 1.4.0.

Release notes

Sourced from Markdig's releases.

1.4.0

Changes

✨ New Features

  • Add strict GFM pipe table parsing mode (14cd25c7)

🐛 Bug Fixes

  • Fix heading auto-link hijacking nested link labels (#​668) (PR #​949) by @​dualfroz
  • Fix: keep trailing content out of an unmatched emphasis closer (#​743) (PR #​950) by @​dualfroz
  • Fix indent on first list item (#​482) (PR #​953) by @​boxofyellow
  • Add Normalization Support for PipeTables (GFM) (PR #​954) by @​boxofyellow
  • Fix partially empty pipe table separator regression (PR #​955) by @​vicancy
  • Reject emoji-parsing if the slice ends with ** (PR #​947) by @​bstordrup
  • Fix strict GFM tables against native cmark-gfm (86866b91)

🚀 Enhancements

  • Update 3rd party extensions (PR #​945) by @​Kryptos-FR

🏭 Tests

  • Fix tests warnings (96b024c2)

📦 Dependencies

  • Bump deps (c6b186b4)

🧰 Misc

  • Use NuGet Trusted Publishing via dotnet-releaser (56e9c238)

Full Changelog: 1.3.2...1.4.0

Published with dotnet-releaser

Commits viewable in compare view.

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps docfx from 2.80.1 to 2.81.0
Bumps Markdig from 1.3.2 to 1.4.0

---
updated-dependencies:
- dependency-name: docfx
  dependency-version: 2.81.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: nuget
- dependency-name: Markdig
  dependency-version: 1.4.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: nuget
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added .NET Pull requests that update .NET code dependencies Pull requests that update a dependency file labels Sep 26, 2026
@pengzhengyi
pengzhengyi merged commit b3d3fd0 into main Sep 27, 2026
10 checks passed
@pengzhengyi
pengzhengyi deleted the dependabot/nuget/dot-config/nuget-cded71e85e branch September 27, 2026 16:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file .NET Pull requests that update .NET code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant