Skip to content

deps(npm): bump markdown-it and renovate in /dependencies#7529

Merged
github-actions[bot] merged 1 commit intomainfrom
dependabot/npm_and_yarn/dependencies/multi-6b65f1e358
Feb 14, 2026
Merged

deps(npm): bump markdown-it and renovate in /dependencies#7529
github-actions[bot] merged 1 commit intomainfrom
dependabot/npm_and_yarn/dependencies/multi-6b65f1e358

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Feb 14, 2026

Bumps markdown-it to 14.1.1 and updates ancestor dependency renovate. These dependencies need to be updated together.

Updates markdown-it from 14.1.0 to 14.1.1

Changelog

Sourced from markdown-it's changelog.

[14.1.1] - 2026-01-11

Security

  • Fixed regression from v13 in linkify inline rule. Specific patterns could cause high CPU use. Thanks to @​ltduc147 for report.
Commits

Updates renovate from 43.4.4 to 43.14.1

Release notes

Sourced from renovate's releases.

43.14.1

43.14.1 (2026-02-14)

Bug Fixes

  • deps: update ghcr.io/renovatebot/base-image docker tag to v13.6.1 (main) (#41176) (57c074f)

43.14.0

43.14.0 (2026-02-13)

Features

43.13.0

43.13.0 (2026-02-13)

Features

  • deps: update ghcr.io/renovatebot/base-image docker tag to v13.6.0 (main) (#41172) (52f53ab)
  • presets/monorepos: add k8s.io repos (#41171) (03020a2)

Miscellaneous Chores

  • deps: update containerbase/internal-tools action to v4.1.4 (main) (#41173) (85203eb)

43.12.1

43.12.1 (2026-02-13)

Documentation

Build System

  • deps: update dependency markdown-it to v14.1.1 [security] (main) (#41169) (aeab855)

43.12.0

43.12.0 (2026-02-13)

Features

  • deps: update ghcr.io/renovatebot/base-image docker tag to v13.5.1 (main) (#41166) (9a3fdf7)

Miscellaneous Chores

  • deps: update ghcr.io/containerbase/devcontainer docker tag to v14.1.1 (main) (#41163) (92749a7)

43.11.1

43.11.1 (2026-02-13)

... (truncated)

Commits
  • 57c074f fix(deps): update ghcr.io/renovatebot/base-image docker tag to v13.6.1 (main)...
  • 4b56523 feat(mise): add support for github backend (#40706)
  • 03020a2 feat(presets/monorepos): add k8s.io repos (#41171)
  • 85203eb chore(deps): update containerbase/internal-tools action to v4.1.4 (main) (#41...
  • 52f53ab feat(deps): update ghcr.io/renovatebot/base-image docker tag to v13.6.0 (main...
  • aeab855 build(deps): update dependency markdown-it to v14.1.1 [security] (main) (#41169)
  • 16aa695 docs: mirror the helm-charts/index.yaml to the built docs site (#41160)
  • 9a3fdf7 feat(deps): update ghcr.io/renovatebot/base-image docker tag to v13.5.1 (main...
  • 92749a7 chore(deps): update ghcr.io/containerbase/devcontainer docker tag to v14.1.1 ...
  • 26db162 fix(deps): update ghcr.io/renovatebot/base-image docker tag to v13.4.6 (main)...
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [markdown-it](https://github.com/markdown-it/markdown-it) to 14.1.1 and updates ancestor dependency [renovate](https://github.com/renovatebot/renovate). These dependencies need to be updated together.


Updates `markdown-it` from 14.1.0 to 14.1.1
- [Changelog](https://github.com/markdown-it/markdown-it/blob/master/CHANGELOG.md)
- [Commits](markdown-it/markdown-it@14.1.0...14.1.1)

Updates `renovate` from 43.4.4 to 43.14.1
- [Release notes](https://github.com/renovatebot/renovate/releases)
- [Commits](renovatebot/renovate@43.4.4...43.14.1)

---
updated-dependencies:
- dependency-name: markdown-it
  dependency-version: 14.1.1
  dependency-type: indirect
- dependency-name: renovate
  dependency-version: 43.14.1
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Feb 14, 2026
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Feb 14, 2026
@github-actions github-actions Bot enabled auto-merge February 14, 2026 10:20
@ferrarimarco ferrarimarco added this to the v8.6.0 milestone Feb 14, 2026
@github-actions
Copy link
Copy Markdown
Contributor

Super-linter summary

Language Validation result
BIOME_FORMAT Pass ✅
BIOME_LINT Pass ✅
CHECKOV Pass ✅
EDITORCONFIG Pass ✅
GITLEAKS Pass ✅
GIT_COMMITLINT Pass ✅
GIT_MERGE_CONFLICT_MARKERS Pass ✅
JSCPD Pass ✅
JSON Pass ✅
JSON_PRETTIER Pass ✅
PRE_COMMIT Pass ✅
SPELL_CODESPELL Pass ✅
TRIVY Pass ✅

All files and directories linted successfully

For more information, see the
GitHub Actions workflow run

Powered by Super-linter

3 similar comments
@github-actions
Copy link
Copy Markdown
Contributor

Super-linter summary

Language Validation result
BIOME_FORMAT Pass ✅
BIOME_LINT Pass ✅
CHECKOV Pass ✅
EDITORCONFIG Pass ✅
GITLEAKS Pass ✅
GIT_COMMITLINT Pass ✅
GIT_MERGE_CONFLICT_MARKERS Pass ✅
JSCPD Pass ✅
JSON Pass ✅
JSON_PRETTIER Pass ✅
PRE_COMMIT Pass ✅
SPELL_CODESPELL Pass ✅
TRIVY Pass ✅

All files and directories linted successfully

For more information, see the
GitHub Actions workflow run

Powered by Super-linter

@github-actions
Copy link
Copy Markdown
Contributor

Super-linter summary

Language Validation result
BIOME_FORMAT Pass ✅
BIOME_LINT Pass ✅
CHECKOV Pass ✅
EDITORCONFIG Pass ✅
GITLEAKS Pass ✅
GIT_COMMITLINT Pass ✅
GIT_MERGE_CONFLICT_MARKERS Pass ✅
JSCPD Pass ✅
JSON Pass ✅
JSON_PRETTIER Pass ✅
PRE_COMMIT Pass ✅
SPELL_CODESPELL Pass ✅
TRIVY Pass ✅

All files and directories linted successfully

For more information, see the
GitHub Actions workflow run

Powered by Super-linter

@github-actions
Copy link
Copy Markdown
Contributor

Super-linter summary

Language Validation result
BIOME_FORMAT Pass ✅
BIOME_LINT Pass ✅
CHECKOV Pass ✅
EDITORCONFIG Pass ✅
GITLEAKS Pass ✅
GIT_COMMITLINT Pass ✅
GIT_MERGE_CONFLICT_MARKERS Pass ✅
JSCPD Pass ✅
JSON Pass ✅
JSON_PRETTIER Pass ✅
PRE_COMMIT Pass ✅
SPELL_CODESPELL Pass ✅
TRIVY Pass ✅

All files and directories linted successfully

For more information, see the
GitHub Actions workflow run

Powered by Super-linter

@github-actions github-actions Bot added this pull request to the merge queue Feb 14, 2026
Merged via the queue into main with commit 9b794c2 Feb 14, 2026
231 checks passed
@github-actions github-actions Bot deleted the dependabot/npm_and_yarn/dependencies/multi-6b65f1e358 branch February 14, 2026 11:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant