Repository navigation
chore(deps): update all non-major dependencies - #262
Open
renovate[bot] wants to merge 1 commit into
Open
renovate[bot] wants to merge 1 commit into
renovate[bot] wants to merge 1 commit into
Conversation
|
Important Review skippedBot user detected. To trigger a single review, invoke the ⚙️ Run configuration
You can disable this status message by setting the Use the checkbox below for a quick retry:
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
renovate
Bot
force-pushed
the
renovate/all-minor-patch
branch
from
September 26, 2026 14:06
1a7f216 to
46ec7ba
Compare
renovate
Bot
force-pushed
the
renovate/all-minor-patch
branch
10 times, most recently
from
October 4, 2026 00:30
9ff89a6 to
c9bdbec
Compare
renovate
Bot
force-pushed
the
renovate/all-minor-patch
branch
7 times, most recently
from
October 7, 2026 17:53
7e89461 to
a3bdcf5
Compare
renovate
Bot
force-pushed
the
renovate/all-minor-patch
branch
from
October 7, 2026 22:14
a3bdcf5 to
bf7ae36
Compare
This branch has not been deployed
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
^1.2.136→^1.2.140^1.2.97→^1.2.99^4.3.2→^4.3.3^4.11.2→^4.11.3^24.13.6→^24.19.1^5.13.0→^5.14.02.0.1-rc.32→2.0.1^6.37.0→^6.40.0^6.0.1→^6.0.2^4.5.2→^4.6.0^0.70.0→^0.72.0^1.85.0→^1.87.0^8.23.0→^8.23.112.8.1→12.10.1^11.4.12→^11.4.13^3.3.11→^3.3.12Release Notes
nuxt/test-utils (@nuxt/test-utils)
v4.3.3Compare Source
👉 Changelog
compare changes
🔥 Performance
toWebHandlerinstead ofnode-mock-http(abe8ad944)h3from the project (b5d802f03)estree-walkerwithoxc-walker(8e8ca5e8b)local-pkgwithexsolve(38938a879)c12with native dotenv parsing (26c72afa0)destrandsculeusage (e4bfd2ebe)node-fetch-nativepolyfill (6b654de5c)nypmwithpackage-manager-detector(#1828)🩹 Fixes
registerEndpointagainst the projecth3(#1831)🏡 Chore
vueto peer dependencies (e70592ffa)nuxtversions as peer dependency (b473892c9)🤖 CI
0ad46c892)pnpm/setupanddevEngines(#1814)❤️ Contributors
nuxt/ui (@nuxt/ui)
v4.11.3Compare Source
Bug Fixes
dirprop to the provided locale (#6767) (93c40df)method="post"to prevent input leaking via GET before hydration (#7078) (57f7699)aria-labelon icon-only buttons (#7009) (7f0250e)dirtystate (#6545) (8977394)usePrefix(#7074) (77c92de)@custom-variantforlightanddarkvariants (#7023) (584016b)setandsetAtPath(#7077) (4bfd115)nuxt-content/docus (docus)
v5.14.0Compare Source
Features
nuxt-agent-discovery(#1435) (acb72f4)nuxt-schema-organduseCanonical(#1439) (6090b7e)Bug Fixes
markdown/html(#1449) (6881e06)site.urlfor llms.txt domain (#1447) (c229a86)h3js/h3 (h3-next)
v2.0.1Compare Source
compare changes
🚀 Enhancements
redirectwhen the request is already at the target (#1559)🩹 Fixes
headers: falsein RouteRuleConfig (edcc329)//after base (1161eb7)💅 Refactors
📖 Documentation
🌊 Types
🏡 Chore
❤️ Contributors
0020020(@00200200)v2.0.1-rc.33Compare Source
compare changes
🚀 Enhancements
redirectwhen the request is already at the target (#1559)🩹 Fixes
headers: falsein RouteRuleConfig (edcc329)//after base (1161eb7)💅 Refactors
📖 Documentation
🌊 Types
🏡 Chore
❤️ Contributors
0020020(@00200200)webpro-nl/knip (knip)
v6.40.0: Release 6.40.0Compare Source
e667552) - thanks @giaBaoJS!dd02baf)3573749)b86f45f) - thanks @jonathanong!99cac78) - thanks @SwastikTripathi!f0f36df) - thanks @MFA-G!3decd35) - thanks @devYRPauli!79a87d9) - thanks @devYRPauli!4a5ec96) - thanks @devYRPauli!87fea9f) - thanks @DreamLongYT!7c229f4)5bd4626)4e0a343)eaa353b) - thanks @DreamLongYT!e939396) - thanks @DreamLongYT!d95a831)9ed1491) - thanks @SulimanAbdulrazzaq!49c2aae) - thanks @DreamLongYT!b84fdf8) - thanks @DreamLongYT!1af96bc) - thanks @everton-dgn!01cb432) - thanks @everton-dgn!dc3a47e) - thanks @DreamLongYT!989fdad) - thanks @maniflopi!6d44e53) - thanks @everton-dgn!a5f4cfb) - thanks @devYRPauli!8a495d4) - thanks @SwastikTripathi!c4ed619) - thanks @TkDodo!a8bf4bf) - thanks @bytedoe!61f5cc0)7ea33fa)b459d7c)v6.39.0: Release 6.39.0Compare Source
6da5576) - thanks @jonahsnider!8877d3c)b22e275) - thanks @devYRPauli!3a45c80)d912d80) - thanks @bytedoe!af3f42e) - thanks @Cayan!4648aef) - thanks @DreamLongYT!add8799) - thanks @fi3ework!2ad39fc) - thanks @giaBaoJS!7060bb9) - thanks @alokn!1698683) - thanks @devYRPauli!v6.38.0: Release 6.38.0Compare Source
0c33410)617f70d)260dbb9) - thanks @matchai!argsexample to that doc page (50b271b)e49d3db) - thanks @changbaebang!import-x/*settings in ESLint plugin (#2050) (1a34cf8) - thanks @bytedoe!9b5c5f6) - thanks @giaBaoJS!a149a98) - thanks @matthewnitschke-wk!8b0c850) - thanks @vdavid!8a8805e) - thanks @devYRPauli!584e53f)34dbccf) - thanks @gioboa!11e9450)7b58251)25a380c)ai/nanoid (nanoid)
v6.0.2Compare Source
customRandom(by @lost-signals).customRandomon changes size (by @00200200).nuxt/nuxt (nuxt)
v4.6.0Compare Source
📣 Some news
🖥️ Nuxt CLI v4
Alongside the release of Nuxt v4.6, today also brings a new major release of the Nuxt CLI:
@nuxt/cliv4. It ships as a dependency ofnuxt, so you'll get it automatically when you upgrade.Most of what's new is in
nuxt dev:nuxt.configkeys changed, where the time went during a slow start or build, and how long each module took to set upmy-bad(see below), powering things like automatically reloading when a syntax error innuxt.config.tsis fixed.nuxt/, which lets a secondnuxt dev(say, one started by an agent) take over or defer to the one you started, and powers newnuxt curlandnuxt taskcommands that talk to the running serverThere's also a new
nuxt docs "<query>"search, andnuxt preview --takeovercan replace a running preview server. And in generalnuxt/cliis a lot smaller and starts a lot faster:@nuxt/cliinstall size@nuxt/clidependenciesnuxt dev: first paintnuxt dev: port boundnuxt dev: memory at rest (Linux)Although this is a major version, none of the changes should be breaking for Nuxt v4 users: we require Node.js v22.21+, v24.11+ or v26+, we drop
nuxt initand only supportnpm create nuxt@latest, and Nuxt 2 and@nuxt/bridgeare no longer supported.👉 Check out the full Nuxt CLI v4 release notes for everything that's changed.
💡 A server-agnostic Nuxt
The biggest thing about this release is our move towards making Nuxt server-agnostic.
I feel that freedom of choice is very much a fundamental value of the web, and one that unites the whole Nuxt team.
You can use
pages/(with vue-router) or not. You can use Vite, webpack or Rspack to bundle your code. You can pick from dozens of providers to deploy to, pick any image or font provider, choose any database adapter. In every case, the framework is the same.The server side was different.
#appcomposables imported h3 types, server code imported fromh3andnitropack, and every module that touched the server was tied to whichever major version of those packages Nuxt happened to depend on.This has become particularly clear as we have been upgrading to new majors of h3 and nitro, which ship breaking changes with a cascading effect throughout the whole ecosystem.
👉 This release changes that.
Alongside explicitly defining our public API in
nuxt/kit(which now does not refer to external packages), Nuxt now specifies our own types for the request event, route rules and typed$fetch, and we expose an import surface (nuxt/server) for the server utilities that will be needed by most apps.This is the culmination of work we started almost a year ago, making it possible to use any server builder with Nuxt, not just Nitro (#33462).
Of course, under the hood,
nuxt/serveris still powered by Nitro by default - though we are also announcing a second, experimental implementation,@nuxt/vite-server, which allows pure-Vite server builds using the Vite Environment API.🌟 We see a number of key benefits for
nuxt/server.nuxt/serveron 4.6 runs unchanged there, so a module can ship one file for both./appand/server- and the bundler + server that you ultimately want to build your app.... and there are a number of other benefits too, from a single type surface to being able to iterate more quickly on features.
Finally, I want to say a special thank-you to @pi0, whose relentless focus on server agnosticism and work on h3, Nitro and web-standard server primitives over the last few years is what makes a portable
RequestEventpossible at all. Thank you, Pooya. ❤️Almost every feature in this release is already in the Nuxt 5 branch, and most of the remaining Nuxt 5 defaults can be tested today with
future.compatibilityVersion: 5(more details below!).👀 Highlights
🤷 If you've read this far I'm afraid I have bad news for you: there's a lot more still to say! Nuxt 4.6 is one of our biggest minor releases, with over 420 commits since v4.5.2.
... so, you might want to grab a coffee! ☕️
🧩
nuxt/serverIt has been asked for for a long time, and it now exists (#36275)!
nuxt/serveris a new import source for server code: handlers, middleware and utilities - a complement tonuxt/app. Wherenuxt/appis for the part of your application that also runs in the browser,nuxt/serveris for the part that only runs on the server.The utilities use web standards and are typed against a portable
RequestEvent:Under
@nuxt/nitro-serverthey are backed by Nitro and h3, but you never import from either.So the same handler runs under Nitro v2, Nitro v3 or
@nuxt/vite-server, and a module that imports fromnuxt/serverdoesn't need a peer dependency onh3ornitropack.We think this will make a big difference in smoothing out the upgrade to Nuxt v5 and Nitro v3.
There is a typing benefit too. We no longer hoist h3 or Nitro types into your app to type
useRequestEvent,$fetchor route rules, which removes a source of type conflicts when versions differ (#36212, #36214, #36293).The surface is small, and covers what published modules and user code typically need:
defineEventHandler,createError/isNuxtError, request URL, headers, query, body (plain and validated with any Standard Schema library or a function), cookies, redirects, response status,getRouterParam(s),getRequestIP,handleCors,getRouteRules,useRuntimeConfig,useAppConfigand sessions.We encourage you to use web APIs (
event.req.headers, for example), or raise an issue if there's functionality you're missing fromnuxt/server🙏If you do need to step outside
nuxt/serverfor a particular handler, don't worry! Nothing has been taken away: importdefineEventHandlerand the helpers you need fromh3ornitropack/runtimeas before, and that handler works exactly as it did on Nuxt 4.5.A few helpers also behave differently from their h3 v1 namesakes:
sendRedirectreturns the response rather than sending it,createErrortakesstatusandstatusText, and response headers are set throughevent.res.headers. The upgrade guide has a table of the differences.Nothing in this release requires a migration. But if you have server code you'd like to make portable ahead of Nuxt 5, this is the best way.
👉 Read the server imports guide.
🔐
appSecretand sessionsNuxt now has a root application secret:
runtimeConfig.appSecret, set withNUXT_APP_SECRET(#35874, thanks to @onmax). Modules and server features derive purpose-specific secrets from it withderiveSecret(purpose), soNUXT_APP_SECRETis the only secret you need to configure.In development Nuxt generates and persists one if none is configured (and warns the first time a derived secret is used). Builds never generate one.
The first thing to use it is a set of session helpers in
nuxt/server(#36358). Sessions are sealed into a cookie with iron, so there's no server-side storage to configure:🎯 Typed
$fetch, rebuilt$fetchanduseFetchhave been typed from your server routes for a long time. But the types were derived from Nitro'sInternalApiinterface, and past a few hundred routes they hit TypeScript's instantiation limit with the familiarTS2589: Type instantiation is excessively deep and possibly infinite.We've rebuilt typed fetch on top of
fetchdts(#36238). Nuxt compiles your server routes into a route tree with an exact-match table for static paths and accessors specialised to your route set. Resolution cost now scales with call sites, not with route count:TS2589)TS2589)TS2589)Peak memory for the same runs dropped from 946 MB to 140 MB. 🔥
Plus, the route set also carries the
body,queryandheadersa handler validates, so calls are checked more tightly than before:On Nuxt 4 this is opt-in, because there are small changes to type inference, and hand-written
ServerRoutesaugmentations need a small rewrite. It is the default in Nuxt 5.There's also a new
experimental.strictRouteTypesoption to reject calls to paths that don't exist (otherwise these just returnunknown), and an'isomorphic'mode that types your pages asGETroutes too if you want to be able to$fetchfrom the Vue renderer with type safety.👉 Read more in the experimental features docs.
🐛 Better errors in development with
my-badServer-side errors in development used to look like this:
There was no source position or code frame, and the Youch iframe we rendered could not show you the frame in your own source either. Both are now fixed (#36258, nuxt/cli#1518).
Dev SSR stack traces are now mapped before anything reads the error, and the Youch overlay has been replaced with
my-bad. It renders into your app's own error page as an overlay (or as a standalone page when the app can't render one), with the mapped stack trace and a code frame from your source, and the same report is printed in your terminal. We are still working with @atinux, @HugoRCD and @antfu to make these pages nicer still.With Nuxt CLI v4, there is a single live error channel at the CLI level. It survives worker restarts, so (for example) a syntax error in
nuxt.config.tswill live-reload the page once you fix it. Each error is rendered once rather than at every layer it passes through, and the same channel streams build progress and app logs to the dev panel.🎨 A new loading screen, 404 and error pages
@HugoRCD has redrawn the loading screen you see while the dev server starts. It is now a WebGL2 particle field that traces a mountain range behind the Nuxt lockup (#36178), using a single shader and a single draw call. Without WebGL2 it falls back to the static lockup, and with
prefers-reduced-motionthe animation stops. Try hovering over it. 🏔️Hugo also gave the built-in 404 and error pages a neutral palette and lighter type (#36255), and @MirkoJa added a back button to the 404 page (#35688).
⚡️ Vue Vapor support
Nuxt now supports Vue 3.6's Vapor Mode in interop mode (#35759). Your app root stays on the virtual DOM, and you can opt individual components or pages into Vapor by adding the
vaporattribute to<script setup>:Routing,
Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.