dependabot[bot] opened a new pull request, #71025:
URL: https://github.com/apache/airflow/pull/71025

   Bumps the auth-ui-package-updates group with 6 updates in the 
/airflow-core/src/airflow/api_fastapi/auth/managers/simple/ui directory:
   
   | Package | From | To |
   | --- | --- | --- |
   | [axios](https://github.com/axios/axios) | `1.18.1` | `1.19.0` |
   | 
[react-router-dom](https://github.com/remix-run/react-router/tree/HEAD/packages/react-router-dom)
 | `7.18.1` | `7.18.2` |
   | 
[@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react)
 | `19.2.17` | `19.2.18` |
   | 
[@types/react-dom](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-dom)
 | `19.2.3` | `19.2.4` |
   | 
[@vitejs/plugin-react-swc](https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react-swc)
 | `4.3.2` | `4.3.3` |
   | [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) | `8.1.5` | 
`8.2.0` |
   
   
   Updates `axios` from 1.18.1 to 1.19.0
   <details>
   <summary>Release notes</summary>
   <p><em>Sourced from <a 
href="https://github.com/axios/axios/releases";>axios's releases</a>.</em></p>
   <blockquote>
   <h2>v1.19.0 - July 22, 2026</h2>
   <p>This release raises the form-data security floor, adds configuration and 
type-system capabilities, and fixes NO_PROXY matching, interceptor errors, 
progress reporting, and serialization edge cases.</p>
   <h2>🔒 Security Fixes</h2>
   <ul>
   <li>Multipart Form Data: Raised the form-data dependency floor to ^4.0.6, 
preventing fresh installations from resolving versions affected by the CRLF 
injection vulnerability GHSA-hmw2-7cc7-3qxx (<a 
href="https://github.com/advisories/GHSA-hmw2-7cc7-3qxx";>https://github.com/advisories/GHSA-hmw2-7cc7-3qxx</a>).
 (<a 
href="https://redirect.github.com/axios/axios/issues/11028";>#11028</a>)</li>
   </ul>
   <h2>🚀 New Features</h2>
   <ul>
   <li>Configuration Extensibility: Preserved own-enumerable symbol-keyed 
fields through mergeConfig and added a generic params type across public 
TypeScript declarations, responses, errors,
   adapters, and serializers. (<a 
href="https://redirect.github.com/axios/axios/issues/11043";>#11043</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11081";>#11081</a>)</li>
   <li>Header Parameter Parsing: Added the opt-in 
AxiosHeaders.parseParameters() parser for quote-aware, RFC-style HTTP parameter 
parsing while preserving legacy parsing behavior. (<a 
href="https://redirect.github.com/axios/axios/issues/11051";>#11051</a>)</li>
   <li>HTTP Status Codes: Added the missing Cloudflare 520 
WebServerReturnsAnUnknownError status and matching ESM/CJS declarations. (<a 
href="https://redirect.github.com/axios/axios/issues/11067";>#11067</a>)</li>
   </ul>
   <h2>🐛 Bug Fixes</h2>
   <ul>
   <li>Form Data Conversion: Limited formDataToJSON path splitting to dot and 
bracket notation, preserving literal punctuation in keys, and removed 
browser-facing Buffer.from usage from toFormData to avoid unnecessary 
polyfills. (<a 
href="https://redirect.github.com/axios/axios/issues/11006";>#11006</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11018";>#11018</a>)</li>
   <li>Proxy Bypass: Canonicalized IPv4 shorthand, octal, and hexadecimal forms 
during NO_PROXY matching and honored * entries within comma- or space-separated 
bypass lists. (<a 
href="https://redirect.github.com/axios/axios/issues/11029";>#11029</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11053";>#11053</a>)</li>
   <li>Cancellation: Propagated already-aborted input signals immediately when 
composing abort signals. (<a 
href="https://redirect.github.com/axios/axios/issues/11035";>#11035</a>)</li>
   <li>Header Handling: Preserved empty first values for duplicate singleton 
headers and made AxiosHeaders#getSetCookie() consistently return arrays for 
present values. (<a 
href="https://redirect.github.com/axios/axios/issues/11036";>#11036</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11037";>#11037</a>)</li>
   <li>URL Handling: Included normalized, safely redacted offending URLs in 
malformed-protocol errors and removed repeated trailing slashes when combining 
base URLs. (<a 
href="https://redirect.github.com/axios/axios/issues/11024";>#11024</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11038";>#11038</a>)</li>
   <li>Progress Events: Clamped malformed negative progress values to zero and 
ensured final Node.js download progress events are delivered before streamed 
responses close. (<a 
href="https://redirect.github.com/axios/axios/issues/11039";>#11039</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11040";>#11040</a>)</li>
   <li>Error and JSON Serialization: Serialized Set values as arrays in 
JSON-compatible snapshots and synthesized useful AxiosError messages from 
otherwise-empty AggregateError instances. (<a 
href="https://redirect.github.com/axios/axios/issues/11044";>#11044</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11059";>#11059</a>)</li>
   <li>Content-Length Enforcement: Corrected base64 data: URL size estimation 
so maxContentLength is enforced consistently by the HTTP and Fetch adapters. 
(<a href="https://redirect.github.com/axios/axios/issues/11061";>#11061</a>)</li>
   <li>Synchronous Interceptors: Prevented requests from being dispatched after 
synchronous request interceptors fail unless their paired rejection handler 
resolves successfully. (<a 
href="https://redirect.github.com/axios/axios/issues/11071";>#11071</a>)</li>
   </ul>
   <h2>🔧 Maintenance &amp; Chores</h2>
   <ul>
   <li>Dependencies: Updated development and test tooling, the docs fixture's 
Axios version, and GitHub Actions integrations including Checkout, Setup Node, 
Setup Deno, and Zizmor. (<a 
href="https://redirect.github.com/axios/axios/issues/11031";>#11031</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11055";>#11055</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11056";>#11056</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11058";>#11058</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11079";>#11079</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11080";>#11080</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11088";>#11088</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11089";>#11089</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11090";>#11090</a>)</li>
   <li>Build Outputs: Limited sourcemap generation to published minified 
bundles, removing broken map references from non-minified builds. (<a 
href="https://redirect.github.com/axios/axios/issues/11054";>#11054</a>)</li>
   <li>Form Data Internals: Centralized FormData header handling and made the 
Node.js adapter tolerate getHeaders() returning undefined under the 
content-only policy. (<a 
href="https://redirect.github.com/axios/axios/issues/11062";>#11062</a>)</li>
   <li>Developer Experience: Ignored common local AI-tooling directories and 
fixed a constant-reassignment crash when the development sandbox serves its 
root path. (<a 
href="https://redirect.github.com/axios/axios/issues/11032";>#11032</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11073";>#11073</a>)</li>
   <li>Documentation: Updated sponsor information, clarified that baseURL is 
not a path-security boundary, scoped provenance claims to attested releases, 
and corrected the configuration-defaults documentation. (<a 
href="https://redirect.github.com/axios/axios/issues/11041";>#11041</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11068";>#11068</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11076";>#11076</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11078";>#11078</a>)</li>
   <li>Publishing: Simplified v1 publishing to use the npm version bundled with 
Node.js 26 and updated package metadata for the 1.19.0 release. (<a 
href="https://redirect.github.com/axios/axios/issues/11083";>#11083</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11095";>#11095</a>)</li>
   </ul>
   <h2>🌟 New Contributors</h2>
   <p>We are thrilled to welcome our new contributors. Thank you for helping 
improve Axios:</p>
   <ul>
   <li><a 
href="https://github.com/afonsojramos";><code>@​afonsojramos</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11028";>#11028</a>)</li>
   <li><a href="https://github.com/MahinAnowar";><code>@​MahinAnowar</code></a> 
(<a href="https://redirect.github.com/axios/axios/issues/11006";>#11006</a>)</li>
   <li><a 
href="https://github.com/yassertawfik4";><code>@​yassertawfik4</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11024";>#11024</a>)</li>
   <li><a href="https://github.com/AnandSundar";><code>@​AnandSundar</code></a> 
(<a href="https://redirect.github.com/axios/axios/issues/11029";>#11029</a>)</li>
   <li><a 
href="https://github.com/lin-hongkuan";><code>@​lin-hongkuan</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11035";>#11035</a>)</li>
   <li><a href="https://github.com/Wali007-lab";><code>@​Wali007-lab</code></a> 
(<a href="https://redirect.github.com/axios/axios/issues/11054";>#11054</a>)</li>
   <li><a href="https://github.com/magicdawn";><code>@​magicdawn</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11043";>#11043</a>)</li>
   <li><a 
href="https://github.com/andrewkernel";><code>@​andrewkernel</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11053";>#11053</a>)</li>
   <li><a 
href="https://github.com/Sagargupta16";><code>@​Sagargupta16</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11059";>#11059</a>)</li>
   <li><a href="https://github.com/Rpaudel379";><code>@​Rpaudel379</code></a> 
(<a href="https://redirect.github.com/axios/axios/issues/11078";>#11078</a>)</li>
   </ul>
   <!-- raw HTML omitted -->
   </blockquote>
   <p>... (truncated)</p>
   </details>
   <details>
   <summary>Changelog</summary>
   <p><em>Sourced from <a 
href="https://github.com/axios/axios/blob/v1.x/CHANGELOG.md";>axios's 
changelog</a>.</em></p>
   <blockquote>
   <h2>v1.19.0 — July 22, 2026</h2>
   <p>This release raises the form-data security floor, adds configuration and 
type-system capabilities, and fixes NO_PROXY matching, interceptor errors, 
progress reporting, and serialization edge cases.</p>
   <h2>🔒 Security Fixes</h2>
   <ul>
   <li>Multipart Form Data: Raised the form-data dependency floor to ^4.0.6, 
preventing fresh installations from resolving versions affected by the CRLF 
injection vulnerability GHSA-hmw2-7cc7-3qxx (<a 
href="https://github.com/advisories/GHSA-hmw2-7cc7-3qxx";>https://github.com/advisories/GHSA-hmw2-7cc7-3qxx</a>).
 (<a 
href="https://redirect.github.com/axios/axios/issues/11028";>#11028</a>)</li>
   </ul>
   <h2>🚀 New Features</h2>
   <ul>
   <li>Configuration Extensibility: Preserved own-enumerable symbol-keyed 
fields through mergeConfig and added a generic params type across public 
TypeScript declarations, responses, errors,
   adapters, and serializers. (<a 
href="https://redirect.github.com/axios/axios/issues/11043";>#11043</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11081";>#11081</a>)</li>
   <li>Header Parameter Parsing: Added the opt-in 
AxiosHeaders.parseParameters() parser for quote-aware, RFC-style HTTP parameter 
parsing while preserving legacy parsing behavior. (<a 
href="https://redirect.github.com/axios/axios/issues/11051";>#11051</a>)</li>
   <li>HTTP Status Codes: Added the missing Cloudflare 520 
WebServerReturnsAnUnknownError status and matching ESM/CJS declarations. (<a 
href="https://redirect.github.com/axios/axios/issues/11067";>#11067</a>)</li>
   </ul>
   <h2>🐛 Bug Fixes</h2>
   <ul>
   <li>
   <p>Form Data Conversion: Limited formDataToJSON path splitting to dot and 
bracket notation, preserving literal punctuation in keys, and removed 
browser-facing Buffer.from usage from toFormData to avoid unnecessary 
polyfills. (<a 
href="https://redirect.github.com/axios/axios/issues/11006";>#11006</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11018";>#11018</a>)</p>
   </li>
   <li>
   <p>Proxy Bypass: Canonicalized IPv4 shorthand, octal, and hexadecimal forms 
during NO_PROXY matching and honored * entries within comma- or space-separated 
bypass lists. (<a 
href="https://redirect.github.com/axios/axios/issues/11029";>#11029</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11053";>#11053</a>)</p>
   </li>
   <li>
   <p>Cancellation: Propagated already-aborted input signals immediately when 
composing abort signals. (<a 
href="https://redirect.github.com/axios/axios/issues/11035";>#11035</a>)</p>
   </li>
   <li>
   <p>Header Handling: Preserved empty first values for duplicate singleton 
headers and made AxiosHeaders#getSetCookie() consistently return arrays for 
present values. (<a 
href="https://redirect.github.com/axios/axios/issues/11036";>#11036</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11037";>#11037</a>)</p>
   </li>
   <li>
   <p>URL Handling: Included normalized, safely redacted offending URLs in 
malformed-protocol errors and removed repeated trailing slashes when combining 
base URLs. (<a 
href="https://redirect.github.com/axios/axios/issues/11008";>#11008</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11038";>#11038</a>)</p>
   </li>
   <li>
   <p>Progress Events: Clamped malformed negative progress values to zero and 
ensured final Node.js download progress events are delivered before streamed 
responses close. (<a 
href="https://redirect.github.com/axios/axios/issues/11039";>#11039</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11040";>#11040</a>)</p>
   </li>
   <li>
   <p>Error and JSON Serialization: Serialized Set values as arrays in 
JSON-compatible snapshots and synthesized useful AxiosError messages from 
otherwise-empty AggregateError instances. (<a 
href="https://redirect.github.com/axios/axios/issues/11044";>#11044</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11059";>#11059</a>)</p>
   </li>
   <li>
   <p>Content-Length Enforcement: Corrected base64 data: URL size estimation so 
maxContentLength is enforced consistently by the HTTP and Fetch adapters. (<a 
href="https://redirect.github.com/axios/axios/issues/11061";>#11061</a>)</p>
   </li>
   <li>
   <p>Synchronous Interceptors: Prevented requests from being dispatched after 
synchronous request interceptors fail unless their paired rejection handler 
resolves successfully. (<a 
href="https://redirect.github.com/axios/axios/issues/11071";>#11071</a>)</p>
   </li>
   </ul>
   <h2>🔧 Maintenance &amp; Chores</h2>
   <ul>
   <li>Dependencies: Updated development and test tooling, the docs fixture's 
Axios version, and GitHub Actions integrations including Checkout, Setup Node, 
Setup Deno, and Zizmor. (<a 
href="https://redirect.github.com/axios/axios/issues/11031";>#11031</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11055";>#11055</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11056";>#11056</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11058";>#11058</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11079";>#11079</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11080";>#11080</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11088";>#11088</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11089";>#11089</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11090";>#11090</a>)</li>
   <li>Build Outputs: Limited sourcemap generation to published minified 
bundles, removing broken map references from non-minified builds. (<a 
href="https://redirect.github.com/axios/axios/issues/11054";>#11054</a>)</li>
   <li>Form Data Internals: Centralized FormData header handling and made the 
Node.js adapter tolerate getHeaders() returning undefined under the 
content-only policy. (<a 
href="https://redirect.github.com/axios/axios/issues/11062";>#11062</a>)</li>
   <li>Developer Experience: Ignored common local AI-tooling directories and 
fixed a constant-reassignment crash when the development sandbox serves its 
root path. (<a 
href="https://redirect.github.com/axios/axios/issues/11032";>#11032</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11073";>#11073</a>)</li>
   <li>Documentation: Updated sponsor information, clarified that baseURL is 
not a path-security boundary, scoped provenance claims to attested releases, 
and corrected the configuration-defaults documentation. (<a 
href="https://redirect.github.com/axios/axios/issues/11041";>#11041</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11068";>#11068</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11076";>#11076</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11078";>#11078</a>)</li>
   <li>Publishing: Simplified v1 publishing to use the npm version bundled with 
Node.js 26 and updated package metadata for the 1.19.0 release. (<a 
href="https://redirect.github.com/axios/axios/issues/11083";>#11083</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11095";>#11095</a>)</li>
   </ul>
   <h2>🌟 New Contributors</h2>
   <p>We are thrilled to welcome our new contributors. Thank you for helping 
improve Axios:</p>
   <ul>
   <li><a 
href="https://github.com/afonsojramos";><code>@​afonsojramos</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11028";>#11028</a>)</li>
   <li><a href="https://github.com/MahinAnowar";><code>@​MahinAnowar</code></a> 
(<a href="https://redirect.github.com/axios/axios/issues/11006";>#11006</a>)</li>
   <li><a 
href="https://github.com/yassertawfik4";><code>@​yassertawfik4</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11024";>#11024</a>)</li>
   <li><a href="https://github.com/AnandSundar";><code>@​AnandSundar</code></a> 
(<a href="https://redirect.github.com/axios/axios/issues/11029";>#11029</a>)</li>
   <li><a 
href="https://github.com/lin-hongkuan";><code>@​lin-hongkuan</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11035";>#11035</a>)</li>
   <li><a href="https://github.com/Wali007-lab";><code>@​Wali007-lab</code></a> 
(<a href="https://redirect.github.com/axios/axios/issues/11054";>#11054</a>)</li>
   <li><a href="https://github.com/magicdawn";><code>@​magicdawn</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11043";>#11043</a>)</li>
   <li><a 
href="https://github.com/andrewkernel";><code>@​andrewkernel</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11053";>#11053</a>)</li>
   <li><a 
href="https://github.com/Sagargupta16";><code>@​Sagargupta16</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11059";>#11059</a>)</li>
   </ul>
   <!-- raw HTML omitted -->
   </blockquote>
   <p>... (truncated)</p>
   </details>
   <details>
   <summary>Commits</summary>
   <ul>
   <li><a 
href="https://github.com/axios/axios/commit/311fcc5c8d989b7248f05d390bb83bfbfb009977";><code>311fcc5</code></a>
 chore(release): prepare release 1.19.0 (<a 
href="https://redirect.github.com/axios/axios/issues/11095";>#11095</a>)</li>
   <li><a 
href="https://github.com/axios/axios/commit/cb4fd743abd1c595761c8eda25d1323fc62a3b93";><code>cb4fd74</code></a>
 chore(deps): bump axios from 1.16.1 to 1.18.1 in /docs (<a 
href="https://redirect.github.com/axios/axios/issues/11088";>#11088</a>)</li>
   <li><a 
href="https://github.com/axios/axios/commit/004c93a9d2acd0561c498eff7bb4431c6bad78af";><code>004c93a</code></a>
 chore(deps): bump actions/setup-node from 6.4.0 to 7.0.0 in the 
github-action...</li>
   <li><a 
href="https://github.com/axios/axios/commit/122edde91b1183572f4ba399b5b6bc4e3b989718";><code>122edde</code></a>
 chore(deps-dev): bump the development_dependencies group with 3 updates (<a 
href="https://redirect.github.com/axios/axios/issues/11089";>#11089</a>)</li>
   <li><a 
href="https://github.com/axios/axios/commit/c44f8d0a910df99486da9175584b99f56a94a73b";><code>c44f8d0</code></a>
 ci: use bundled npm for v1 publish (<a 
href="https://redirect.github.com/axios/axios/issues/11083";>#11083</a>)</li>
   <li><a 
href="https://github.com/axios/axios/commit/878bb29de570765b0d4c0970e30400d9ea9399f7";><code>878bb29</code></a>
 fix(sandbox): resolve TypeError on constant variable path assignment (<a 
href="https://redirect.github.com/axios/axios/issues/11073";>#11073</a>)</li>
   <li><a 
href="https://github.com/axios/axios/commit/a092bae50d1884782151b2fcea12974d6da6e376";><code>a092bae</code></a>
 fix(core): synchronous interceptors swallow errors and proceed with request 
(...</li>
   <li><a 
href="https://github.com/axios/axios/commit/3041b8fd1daf17404d1bad1f9d94026ea5ab400b";><code>3041b8f</code></a>
 feat(HttpStatusCode): add missing 520 status code (<a 
href="https://redirect.github.com/axios/axios/issues/11067";>#11067</a>)</li>
   <li><a 
href="https://github.com/axios/axios/commit/58b16c88f0bddf1fadb321aed58ba3f49a90481b";><code>58b16c8</code></a>
 refactor(helpers): extract duplicated setFormDataHeaders into a shared 
helper...</li>
   <li><a 
href="https://github.com/axios/axios/commit/3077e62097726d22ba30f1cb847d7a07050e339a";><code>3077e62</code></a>
 feat(types): Allow the Params property to be typed, instead of 
<code>any</code> (<a 
href="https://redirect.github.com/axios/axios/issues/11081";>#11081</a>)</li>
   <li>Additional commits viewable in <a 
href="https://github.com/axios/axios/compare/v1.18.1...v1.19.0";>compare 
view</a></li>
   </ul>
   </details>
   <br />
   
   Updates `react-router-dom` from 7.18.1 to 7.18.2
   <details>
   <summary>Changelog</summary>
   <p><em>Sourced from <a 
href="https://github.com/remix-run/react-router/blob/[email protected]/packages/react-router-dom/CHANGELOG.md";>react-router-dom's
 changelog</a>.</em></p>
   <blockquote>
   <h2>v7.18.2</h2>
   <h3>Patch Changes</h3>
   <ul>
   <li>Updated dependencies:
   <ul>
   <li><a 
href="https://github.com/remix-run/react-router/releases/tag/[email protected]";><code>[email protected]</code></a></li>
   </ul>
   </li>
   </ul>
   </blockquote>
   </details>
   <details>
   <summary>Commits</summary>
   <ul>
   <li><a 
href="https://github.com/remix-run/react-router/commit/69a653ee6ab1ac95b13c917ec56c5f3dc17ca9c1";><code>69a653e</code></a>
 Release v7.18.2 (<a 
href="https://github.com/remix-run/react-router/tree/HEAD/packages/react-router-dom/issues/15354";>#15354</a>)</li>
   <li>See full diff in <a 
href="https://github.com/remix-run/react-router/commits/[email protected]/packages/react-router-dom";>compare
 view</a></li>
   </ul>
   </details>
   <br />
   
   Updates `@types/react` from 19.2.17 to 19.2.18
   <details>
   <summary>Commits</summary>
   <ul>
   <li>See full diff in <a 
href="https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/react";>compare
 view</a></li>
   </ul>
   </details>
   <br />
   
   Updates `@types/react-dom` from 19.2.3 to 19.2.4
   <details>
   <summary>Commits</summary>
   <ul>
   <li>See full diff in <a 
href="https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/react-dom";>compare
 view</a></li>
   </ul>
   </details>
   <br />
   
   Updates `@vitejs/plugin-react-swc` from 4.3.2 to 4.3.3
   <details>
   <summary>Release notes</summary>
   <p><em>Sourced from <a 
href="https://github.com/vitejs/vite-plugin-react/releases";>@​vitejs/plugin-react-swc's
 releases</a>.</em></p>
   <blockquote>
   <h2>[email protected]</h2>
   <h3>Add a patch for bundled-dev mode compat <a 
href="https://redirect.github.com/vitejs/vite-plugin-react/pull/1352";>#1352</a></h3>
   <p>Added a patch so that this plugin works with <a 
href="https://vite.dev/blog/announcing-vite8-1#experimental-bundled-dev-mode";>the
 experimental bundled dev mode</a>. Note that because this Vite feature is 
experimental, compatibility in future Vite releases is not guaranteed.</p>
   </blockquote>
   </details>
   <details>
   <summary>Changelog</summary>
   <p><em>Sourced from <a 
href="https://github.com/vitejs/vite-plugin-react/blob/main/packages/plugin-react-swc/CHANGELOG.md";>@​vitejs/plugin-react-swc's
 changelog</a>.</em></p>
   <blockquote>
   <h2>4.3.3 (2026-07-30)</h2>
   <h3>Add a patch for bundled-dev mode compat <a 
href="https://redirect.github.com/vitejs/vite-plugin-react/pull/1352";>#1352</a></h3>
   <p>Added a patch so that this plugin works with <a 
href="https://vite.dev/blog/announcing-vite8-1#experimental-bundled-dev-mode";>the
 experimental bundled dev mode</a>. Note that because this Vite feature is 
experimental, compatibility in future Vite releases is not guaranteed.</p>
   </blockquote>
   </details>
   <details>
   <summary>Commits</summary>
   <ul>
   <li>See full diff in <a 
href="https://github.com/vitejs/vite-plugin-react/commits/v4.3.3/packages/plugin-react-swc";>compare
 view</a></li>
   </ul>
   </details>
   <br />
   
   Updates `vite` from 8.1.5 to 8.2.0
   <details>
   <summary>Release notes</summary>
   <p><em>Sourced from <a href="https://github.com/vitejs/vite/releases";>vite's 
releases</a>.</em></p>
   <blockquote>
   <h2>[email protected]</h2>
   <p>Please refer to <a 
href="https://github.com/vitejs/vite/blob/[email protected]/packages/create-vite/CHANGELOG.md";>CHANGELOG.md</a>
 for details.</p>
   <h2>[email protected]</h2>
   <p>Please refer to <a 
href="https://github.com/vitejs/vite/blob/[email protected]/packages/plugin-legacy/CHANGELOG.md";>CHANGELOG.md</a>
 for details.</p>
   <h2>v8.2.0</h2>
   <p>Please refer to <a 
href="https://github.com/vitejs/vite/blob/v8.2.0/packages/vite/CHANGELOG.md";>CHANGELOG.md</a>
 for details.</p>
   <h2>v8.2.0-beta.0</h2>
   <p>Please refer to <a 
href="https://github.com/vitejs/vite/blob/v8.2.0-beta.0/packages/vite/CHANGELOG.md";>CHANGELOG.md</a>
 for details.</p>
   </blockquote>
   </details>
   <details>
   <summary>Changelog</summary>
   <p><em>Sourced from <a 
href="https://github.com/vitejs/vite/blob/main/packages/vite/CHANGELOG.md";>vite's
 changelog</a>.</em></p>
   <blockquote>
   <h2><a 
href="https://github.com/vitejs/vite/compare/v8.2.0-beta.0...v8.2.0";>8.2.0</a> 
(2026-07-30)</h2>
   <h3>Features</h3>
   <ul>
   <li>add <code>input</code> to <code>server.fs.allow</code> (<a 
href="https://redirect.github.com/vitejs/vite/issues/23035";>#23035</a>) (<a 
href="https://github.com/vitejs/vite/commit/95a3cdab83e1125b03d2e8dd942fb6b64209e5fa";>95a3cda</a>)</li>
   <li><strong>bundled-dev:</strong> reload once after rebuild instead of via 
the fallback page (<a 
href="https://redirect.github.com/vitejs/vite/issues/23106";>#23106</a>) (<a 
href="https://github.com/vitejs/vite/commit/b24381d741941b9ce2b1c07db62cc5f4d7bad981";>b24381d</a>)</li>
   <li><strong>bundled-dev:</strong> support worker file update accepted by HMR 
(<a href="https://redirect.github.com/vitejs/vite/issues/23068";>#23068</a>) (<a 
href="https://github.com/vitejs/vite/commit/0d04351fdc12258c75b9f1cda5780fdb836ed0ef";>0d04351</a>)</li>
   <li><strong>config:</strong> include column in config incompatibility 
location (<a 
href="https://redirect.github.com/vitejs/vite/issues/23064";>#23064</a>) (<a 
href="https://github.com/vitejs/vite/commit/8a245726944ed29225920d49be77c33c6e03afc8";>8a24572</a>)</li>
   <li><strong>dev:</strong> resolve interface name for explicit host in 
network URLs (<a 
href="https://redirect.github.com/vitejs/vite/issues/22965";>#22965</a>) (<a 
href="https://github.com/vitejs/vite/commit/3ac77d9dd742968961af38a5a91ed6b061ceda7d";>3ac77d9</a>)</li>
   </ul>
   <h3>Bug Fixes</h3>
   <ul>
   <li><strong>bundledDev:</strong> print build errors to the terminal when an 
HMR update fails (<a 
href="https://redirect.github.com/vitejs/vite/issues/23024";>#23024</a>) (<a 
href="https://github.com/vitejs/vite/commit/41c465896e8b11b1eb9c5fbdafbdcc528e189a2c";>41c4658</a>)</li>
   <li><strong>deps:</strong> update all non-major dependencies (<a 
href="https://redirect.github.com/vitejs/vite/issues/23069";>#23069</a>) (<a 
href="https://github.com/vitejs/vite/commit/4c07b74416f859d7e8bdace13409ef2d080edf76";>4c07b74</a>)</li>
   <li><strong>hmr:</strong> preserve environment snapshot during server 
restart (<a 
href="https://redirect.github.com/vitejs/vite/issues/22992";>#22992</a>) (<a 
href="https://github.com/vitejs/vite/commit/b1186c36d06bb94941c58e8272fc4acb8512c93b";>b1186c3</a>)</li>
   <li><strong>importAnalysis:</strong> interop imports injected into optimized 
dep files by plugins (<a 
href="https://redirect.github.com/vitejs/vite/issues/23029";>#23029</a>) (<a 
href="https://github.com/vitejs/vite/commit/8c2a87d41fb24536e59643351758084cde4d0dd7";>8c2a87d</a>)</li>
   <li><strong>module-runner:</strong> keep stack trace interception working 
when <code>Object.prototype</code> is frozen (<a 
href="https://redirect.github.com/vitejs/vite/issues/23073";>#23073</a>) (<a 
href="https://github.com/vitejs/vite/commit/599c5b02a8b6879b05ede988020f1331e877aaea";>599c5b0</a>)</li>
   <li><strong>server:</strong> strip base in indexHtml module graph lookup (<a 
href="https://redirect.github.com/vitejs/vite/issues/22932";>#22932</a>) (<a 
href="https://github.com/vitejs/vite/commit/fa005d19af5d847931c6dbefc63841c137383e6c";>fa005d1</a>)</li>
   <li>support resolving top-level input option with plugins (<a 
href="https://redirect.github.com/vitejs/vite/issues/23101";>#23101</a>) (<a 
href="https://github.com/vitejs/vite/commit/41df81a6a4c3eef08f7a9a8ac9530cd136c0eafa";>41df81a</a>)</li>
   </ul>
   <h3>Documentation</h3>
   <ul>
   <li><strong>config:</strong> correct cacheDir default fallback description 
(<a href="https://redirect.github.com/vitejs/vite/issues/23060";>#23060</a>) (<a 
href="https://github.com/vitejs/vite/commit/aafa103af5d71fb59d7c3dd617d0cbef3b222f1f";>aafa103</a>)</li>
   </ul>
   <h3>Tests</h3>
   <ul>
   <li>config CJS module vars in ESM case (<a 
href="https://redirect.github.com/vitejs/vite/issues/23010";>#23010</a>) (<a 
href="https://github.com/vitejs/vite/commit/d8cd38830251b95fd7dddcd0eee0ce94cc61c2f4";>d8cd388</a>)</li>
   </ul>
   <h2><a 
href="https://github.com/vitejs/vite/compare/v8.1.5...v8.2.0-beta.0";>8.2.0-beta.0</a>
 (2026-07-22)</h2>
   <h3>Features</h3>
   <ul>
   <li>add <code>input</code> option (<a 
href="https://redirect.github.com/vitejs/vite/issues/22642";>#22642</a>) (<a 
href="https://github.com/vitejs/vite/commit/9beae37d7221b25463a011feb40b0303ca328d87";>9beae37</a>)</li>
   <li><strong>config:</strong> warn features incompatible with native loader 
in bundle loader (<a 
href="https://redirect.github.com/vitejs/vite/issues/22850";>#22850</a>) (<a 
href="https://github.com/vitejs/vite/commit/05302b07267f6b4f9dbeac5b1d73fcc3dc06d730";>05302b0</a>)</li>
   <li><strong>css:</strong> export PostCSS config type for type-safe configs 
(<a href="https://redirect.github.com/vitejs/vite/issues/22792";>#22792</a>) (<a 
href="https://github.com/vitejs/vite/commit/302c755a8125b9a26214e3b413922b5513e41981";>302c755</a>)</li>
   <li><strong>dev:</strong> label network URLs with their interface name (<a 
href="https://redirect.github.com/vitejs/vite/issues/22830";>#22830</a>) (<a 
href="https://github.com/vitejs/vite/commit/78accc42a5b8887d9df624f7d4a934d3ead677d1";>78accc4</a>)</li>
   <li><strong>optimizer:</strong> support aube lockfile (<a 
href="https://redirect.github.com/vitejs/vite/issues/22813";>#22813</a>) (<a 
href="https://github.com/vitejs/vite/commit/6319827116c5be2a19c1b91c84ba3d38ad26a41c";>6319827</a>)</li>
   <li><strong>optimizer:</strong> support nub lockfile (<a 
href="https://redirect.github.com/vitejs/vite/issues/22891";>#22891</a>) (<a 
href="https://github.com/vitejs/vite/commit/65d3604f6fdbfcf6e86244d7fe3c1ca86acae701";>65d3604</a>)</li>
   <li>update rolldown-related dependencies and use client-side HMR in 
bundled-dev (<a 
href="https://redirect.github.com/vitejs/vite/issues/22961";>#22961</a>) (<a 
href="https://github.com/vitejs/vite/commit/960e9efbc1372000caac46cc2f123cef4824e2bb";>960e9ef</a>)</li>
   <li><strong>wasm:</strong> expand test suite, unwrap WebAssembly.Global and 
enable js-string builtins (<a 
href="https://redirect.github.com/vitejs/vite/issues/22674";>#22674</a>) (<a 
href="https://github.com/vitejs/vite/commit/9e79b51579457a9af4fa623b68a0bfabbf38010b";>9e79b51</a>)</li>
   </ul>
   <h3>Bug Fixes</h3>
   <ul>
   <li><strong>build:</strong> map CSS chunks in chunk import maps (fix <a 
href="https://redirect.github.com/vitejs/vite/issues/22946";>#22946</a>) (<a 
href="https://redirect.github.com/vitejs/vite/issues/22947";>#22947</a>) (<a 
href="https://github.com/vitejs/vite/commit/e16ff3a1199293ac9cdfa6132c08fdea162215f3";>e16ff3a</a>)</li>
   <li><strong>config:</strong> exclude virtual modules from native config 
compat check (<a 
href="https://redirect.github.com/vitejs/vite/issues/22979";>#22979</a>) (<a 
href="https://github.com/vitejs/vite/commit/2ced1fe4e4e480ed78cb7aa5c78319e57bfa7783";>2ced1fe</a>)</li>
   <li><strong>css:</strong> rewrite urls in OnceExit-injected content (<a 
href="https://redirect.github.com/vitejs/vite/issues/22983";>#22983</a>) (<a 
href="https://github.com/vitejs/vite/commit/abb793e18c92592c21fbb8e1f3fc450b5839f04f";>abb793e</a>)</li>
   <li><strong>deps:</strong> update all non-major dependencies (<a 
href="https://redirect.github.com/vitejs/vite/issues/22985";>#22985</a>) (<a 
href="https://github.com/vitejs/vite/commit/04f345b37064cd0bba6447eb5c32be5c22162f3d";>04f345b</a>)</li>
   <li><strong>deps:</strong> update dependency magic-string to v1 (<a 
href="https://redirect.github.com/vitejs/vite/issues/22998";>#22998</a>) (<a 
href="https://github.com/vitejs/vite/commit/c60b4d7cdb85b7d4f78671cdcfb863e5f8b66bb7";>c60b4d7</a>)</li>
   <li><strong>hmr:</strong> remove hot data after prune (<a 
href="https://redirect.github.com/vitejs/vite/issues/23002";>#23002</a>) (<a 
href="https://github.com/vitejs/vite/commit/be9631658f5191ee5c5665e780239d42a330280a";>be96316</a>)</li>
   <li>resolve root to real path (<a 
href="https://redirect.github.com/vitejs/vite/issues/22832";>#22832</a>) (<a 
href="https://github.com/vitejs/vite/commit/55bba7bbd9de40d031360e4408fe91bff5b29ec9";>55bba7b</a>)</li>
   </ul>
   <h3>Performance Improvements</h3>
   <!-- raw HTML omitted -->
   </blockquote>
   <p>... (truncated)</p>
   </details>
   <details>
   <summary>Commits</summary>
   <ul>
   <li><a 
href="https://github.com/vitejs/vite/commit/24a611f1c83a976d32262628d42f683609746635";><code>24a611f</code></a>
 release: v7.2.4</li>
   <li><a 
href="https://github.com/vitejs/vite/commit/2d66b7b14aa6dfd62f3d6a59ee8382ed5ca6fd32";><code>2d66b7b</code></a>
 fix: revert &quot;perf(deps): replace debug with obug (<a 
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/21107";>#21107</a>)&quot;</li>
   <li><a 
href="https://github.com/vitejs/vite/commit/a668014dba377c2b82a32d8124f1761e9ea74f82";><code>a668014</code></a>
 release: v7.2.3</li>
   <li><a 
href="https://github.com/vitejs/vite/commit/acfe939e1f7c303c34b0b39b883cc302da767fa2";><code>acfe939</code></a>
 perf(deps): replace debug with obug (<a 
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/21107";>#21107</a>)</li>
   <li><a 
href="https://github.com/vitejs/vite/commit/4f8171eb3046bd70c83964689897dab4c6b58bc0";><code>4f8171e</code></a>
 fix(deps): update all non-major dependencies (<a 
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/21128";>#21128</a>)</li>
   <li><a 
href="https://github.com/vitejs/vite/commit/50297208452241061cb44d09a4bbdf77a11ac01e";><code>5029720</code></a>
 chore(deps): update rolldown-related dependencies (<a 
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/21127";>#21127</a>)</li>
   <li><a 
href="https://github.com/vitejs/vite/commit/5909efd8fbfd1bf1eab65427aea0613124b2797a";><code>5909efd</code></a>
 fix: allow multiple <code>bindCLIShortcuts</code> calls with shortcut merging 
(<a 
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/21103";>#21103</a>)</li>
   <li><a 
href="https://github.com/vitejs/vite/commit/39a0a15fd24ed37257c48b795097a3794e54d255";><code>39a0a15</code></a>
 chore(deps): update rolldown-related dependencies (<a 
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/21095";>#21095</a>)</li>
   <li><a 
href="https://github.com/vitejs/vite/commit/6a34ac3422686e7cf7cc9a25d299cb8e5a8d92a0";><code>6a34ac3</code></a>
 fix(deps): update all non-major dependencies (<a 
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/21096";>#21096</a>)</li>
   <li><a 
href="https://github.com/vitejs/vite/commit/02ceaec45e17bef19159188a28d9196fed1761be";><code>02ceaec</code></a>
 chore(deps): update dependency <code>@​rollup/plugin-commonjs</code> to v29 
(<a 
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/21099";>#21099</a>)</li>
   <li>Additional commits viewable in <a 
href="https://github.com/vitejs/vite/commits/[email protected]/packages/vite";>compare
 view</a></li>
   </ul>
   </details>
   <br />
   
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   <details>
   <summary>Dependabot commands and options</summary>
   <br />
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot show <dependency name> ignore conditions` will show all of 
the ignore conditions of the specified dependency
   - `@dependabot ignore <dependency name> major version` will close this group 
update PR and stop Dependabot creating any more for the specific dependency's 
major version (unless you unignore this specific dependency's major version or 
upgrade to it yourself)
   - `@dependabot ignore <dependency name> minor version` will close this group 
update PR and stop Dependabot creating any more for the specific dependency's 
minor version (unless you unignore this specific dependency's minor version or 
upgrade to it yourself)
   - `@dependabot ignore <dependency name>` will close this group update PR and 
stop Dependabot creating any more for the specific dependency (unless you 
unignore this specific dependency or upgrade to it yourself)
   - `@dependabot unignore <dependency name>` will remove all of the ignore 
conditions of the specified dependency
   - `@dependabot unignore <dependency name> <ignore condition>` will remove 
the ignore condition of the specified dependency and ignore conditions
   
   
   </details>


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to