Skip to content

chore(deps-dev): bump react-intl from 7.1.14 to 8.1.4#1825

Closed
dependabot[bot] wants to merge 3 commits intomainfrom
dependabot/npm_and_yarn/react-intl-8.1.4
Closed

chore(deps-dev): bump react-intl from 7.1.14 to 8.1.4#1825
dependabot[bot] wants to merge 3 commits intomainfrom
dependabot/npm_and_yarn/react-intl-8.1.4

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Mar 16, 2026

Bumps react-intl from 7.1.14 to 8.1.4.

Release notes

Sourced from react-intl's releases.

[email protected]

8.1.3 (2026-02-03)

Bug Fixes

[email protected]

8.1.0 (2026-01-15)

Features

  • @​formatjs/intl-segmenter: improve Unicode 17.0 Format/Extend transparency and upgrade deps (#5862) (effeb9c), closes #29 - by @​longlho
Commits
  • 3c049bd build: publish
  • 2822426 chore(deps): update dependency aspect_rules_esbuild to v0.25.1 (#6073)
  • 7a3801c chore(deps): update dependency fast-xml-parser to v5.3.8 [security] (#6074)
  • 36dbdb1 chore(deps): update dependency serialize-javascript to v7.0.3 [security] (#6075)
  • 08bb74c feat(eslint-plugin-formatjs): support minimum description length in `enforce-...
  • 63fba3e build(deps): bump diff from 4.0.2 to 4.0.4 in /packages/react-intl/example-sa...
  • d6e4633 build(deps): bump url-parse from 1.4.7 to 1.5.10 in /packages/react-intl/exam...
  • 0268584 build(deps): bump webpack from 5.94.0 to 5.105.0 in /packages/react-intl/exam...
  • 2838ff0 build(deps): bump bn.js in /packages/react-intl/example-sandboxes/rescripts (...
  • 90a21a3 build(deps): bump rollup from 2.79.2 to 2.80.0 in /packages/react-intl/exampl...
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by [GitHub Actions](https://www.npmjs.com/~GitHub Actions), a new releaser for react-intl since your current version.


Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

Bumps [react-intl](https://github.com/formatjs/formatjs) from 7.1.14 to 8.1.4.
- [Release notes](https://github.com/formatjs/formatjs/releases)
- [Commits](https://github.com/formatjs/formatjs/compare/[email protected]@8.1.4)

---
updated-dependencies:
- dependency-name: react-intl
  dependency-version: 8.1.4
  dependency-type: direct:development
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Mar 16, 2026
@cloudflare-workers-and-pages
Copy link
Copy Markdown

cloudflare-workers-and-pages Bot commented Mar 16, 2026

Deploying ant-design-x with  Cloudflare Pages  Cloudflare Pages

Latest commit: f3ba9d4
Status:⚡️  Build in progress...

View logs

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Mar 16, 2026
@github-actions
Copy link
Copy Markdown
Contributor

github-actions Bot commented Mar 16, 2026

Preview failed

@socket-security
Copy link
Copy Markdown

socket-security Bot commented Mar 16, 2026

@codecov
Copy link
Copy Markdown

codecov Bot commented Mar 16, 2026

Bundle Report

Changes will increase total bundle size by 8 bytes (0.0%) ⬆️. This is within the configured threshold ✅

Detailed changes
Bundle name Size Change
antdx-array-push 1.92MB 8 bytes (0.0%) ⬆️

Affected Assets, Files, and Routes:

view changes for bundle: antdx-array-push

Assets Changed:

Asset Name Size Change Total Size Change (%)
antdx.min.js 8 bytes 1.92MB 0.0%

@github-actions
Copy link
Copy Markdown
Contributor

github-actions Bot commented Mar 16, 2026

size-limit report 📦

Path Size
packages/x/dist/antdx.min.js 463.55 KB
packages/x-sdk/dist/x-sdk.min.js 7.68 KB
packages/x-markdown/dist/x-markdown.min.js 32.55 KB
packages/x-markdown/dist/plugins/latex.min.js 61.45 KB

@codecov
Copy link
Copy Markdown

codecov Bot commented Mar 16, 2026

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 97.47%. Comparing base (9dae16e) to head (f3ba9d4).

Additional details and impacted files
@@           Coverage Diff           @@
##             main    #1825   +/-   ##
=======================================
  Coverage   97.47%   97.47%           
=======================================
  Files         158      158           
  Lines        5505     5505           
  Branches     1595     1578   -17     
=======================================
  Hits         5366     5366           
  Misses        137      137           
  Partials        2        2           

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github Apr 6, 2026

A newer version of react-intl exists, but since this PR has been edited by someone other than Dependabot I haven't updated it. You'll get a PR for the updated version as normal once this PR is merged.

@socket-security
Copy link
Copy Markdown

Warning

Review the following alerts detected in dependencies.

According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.

Action Severity Alert  (click "▶" to expand/collapse)
Warn High
Protestware or unwanted behavior: npm es5-ext

Note: The script attempts to run a local post-install script, which could potentially contain malicious code. The error handling suggests that it is designed to fail silently, which is a common tactic in malicious scripts.

From: ?npm/[email protected]

ℹ Read more on: This package | This alert | What is protestware?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at [email protected].

Suggestion: Consider that consuming this package may come along with functionality unrelated to its primary purpose.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/[email protected]. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

View full report

@Div627 Div627 closed this Apr 22, 2026
@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github Apr 22, 2026

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

@dependabot dependabot Bot deleted the dependabot/npm_and_yarn/react-intl-8.1.4 branch April 22, 2026 02:30
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant