Skip to content

chore(deps): bump ajv and @stoplight/spectral in /packages/insomnia-inso#213

Open
dependabot[bot] wants to merge 1 commit intodevelopfrom
dependabot/npm_and_yarn/packages/insomnia-inso/multi-92ee0afef3
Open

chore(deps): bump ajv and @stoplight/spectral in /packages/insomnia-inso#213
dependabot[bot] wants to merge 1 commit intodevelopfrom
dependabot/npm_and_yarn/packages/insomnia-inso/multi-92ee0afef3

Conversation

@dependabot
Copy link

@dependabot dependabot bot commented on behalf of github Feb 23, 2026

Bumps ajv to 6.14.0 and updates ancestor dependency @stoplight/spectral. These dependencies need to be updated together.

Updates ajv from 6.12.2 to 6.14.0

Release notes

Sourced from ajv's releases.

v6.12.6

Fix performance issue of "url" format.

v6.12.5

Fix uri scheme validation (@​ChALkeR). Fix boolean schemas with strictKeywords option (#1270)

v6.12.4

Fix: coercion of one-item arrays to scalar that should fail validation (failing example).

v6.12.3

Pass schema object to processCode function Option for strictNumbers (@​issacgerges, #1128) Fixed vulnerability related to untrusted schemas (CVE-2020-15366)

Commits
  • e3af0a7 6.14.0
  • b552ed6 add regExp option to address $data exploit via a regular expression (CVE-2025...
  • 72f2286 docs: update v7 info
  • 231e52b Merge pull request #1320 from philsturgeon/patch-1
  • d3475fc Add spectral, an AJV util from a sponsor
  • 413afe0 docs: v7.0.0-beta.3
  • 11e997b update readme for v7
  • fe59143 6.12.6
  • d580d3e Merge pull request #1298 from ajv-validator/fix-url
  • fd36389 fix: regular expression for "url" format
  • Additional commits viewable in compare view

Updates @stoplight/spectral from 5.4.0 to 6.5.0

Release notes

Sourced from @​stoplight/spectral's releases.

v6.5.0

What's Changed

Full Changelog: stoplightio/spectral@v6.4.2...v6.5.0

v6.4.2

What's Changed

New Contributors

Full Changelog: stoplightio/spectral@v6.4.1...v6.4.2

v6.4.1

What's Changed

New Contributors

Full Changelog: stoplightio/spectral@v6.4.0...v6.4.1

v6.4.0

What's Changed

New Contributors

... (truncated)

Changelog

Sourced from @​stoplight/spectral's changelog.

Changelog

THIS CHANGELOG IS NO LONGER MAINTAINED

EACH SUB-PACKAGE LISTED UNDER PACKAGES/ HAS ITS OWN CHANGELOG

All notable changes to this project will be documented in this file.

The format is based on Keep a Changelog, and this project adheres to Semantic Versioning.

[6.0.0] - 2021-07-14

Added

  • Ruleset: New alternative ruleset format #1615
  • Ruleset: ESLint-like Overrides #1021
  • Ruleset: Path Aliases #1680
  • Rulesets: OpenAPI (OAS) 3.1 support #1302
  • Functions: schema function uses Ajv v8 under the hood and therefore support newer JSON Schema drafts #1584
  • CLI: implement --stdin-filepath flag #1001
  • Formats: JSON Schema Draft 2020-12 format #1556
  • CLI: added pretty formatter for colored and wrapped cli output #1580
  • Rulesets: Supports x-nullable for OAS2 #1359
  • Rulesets: oas3-unused-component rule which detects all orphaned components #1440

Changed

  • Ruleset validation yields more understandable errors #1637
  • CLI: demand some ruleset to be present #1699
  • CLI: require valid commands and options #1586
  • Core: revise RulesetFunction aka IFunction #1685
  • Core: runtime exceptions are not swallowed #1618
  • Rulesets: Certain oas{2,3}-valid-*-example rules have been merged #1313
  • Rulesets: more consistent linting messages in AsyncAPI & OpenAPI rulesets #1619
  • Rulesets: operation-2xx-response rule has been renamed to operation-success-response and is no longer recommended #1272
  • Rulesets: openapi-tags rule is no longer recommended #1132

Fixed

  • Core: Incorrect range when semicolons are present in a key #1697
  • Core: Empty $refs should not be ignored #1515
  • Rulesets: validate 'default' in schemas #1402

Removed

  • Support for Node 10.x #1542
  • Functions: schemaPath function #1621

... (truncated)

Commits
  • 739140f chore(release): 6.5.0 [skip ci]
  • fb1bbe6 fix(ruleset-bundler): never externalize builtins (#2174)
  • 8315162 feat(core): improve validation (#2026)
  • bb732ae chore(release): 1.11.1 [skip ci]
  • ea26e8a chore(release): 1.6.2 [skip ci]
  • d16b5a6 fix(functions): handle percent encoded in unreferencedReusableObject(#2212)
  • ca6b0c0 chore(release): 1.12.4 [skip ci]
  • a5a4fd3 chore(release): 6.4.2 [skip ci]
  • 157ec59 fix(core): fix 'resolved vs unresolved' json path mapping (#2202)
  • 15d3c69 docs(repo): update custom ruleset with multiple thens example (#2208)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [ajv](https://github.com/ajv-validator/ajv) to 6.14.0 and updates ancestor dependency [@stoplight/spectral](https://github.com/stoplightio/spectral). These dependencies need to be updated together.


Updates `ajv` from 6.12.2 to 6.14.0
- [Release notes](https://github.com/ajv-validator/ajv/releases)
- [Commits](ajv-validator/ajv@v6.12.2...v6.14.0)

Updates `@stoplight/spectral` from 5.4.0 to 6.5.0
- [Release notes](https://github.com/stoplightio/spectral/releases)
- [Changelog](https://github.com/stoplightio/spectral/blob/develop/CHANGELOG.md)
- [Commits](https://github.com/stoplightio/spectral/compare/v5.4.0...@stoplight/spectral-cli-v6.5.0)

---
updated-dependencies:
- dependency-name: ajv
  dependency-version: 6.14.0
  dependency-type: indirect
- dependency-name: "@stoplight/spectral"
  dependency-version: 6.5.0
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Feb 23, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants