Skip to content

Bump the elixir group with 6 updates - #102

Merged
maennchen merged 1 commit into
mainfrom
dependabot/hex/elixir-5d35123327
Oct 1, 2026
Merged

maennchen merged 1 commit into
mainfrom
dependabot/hex/elixir-5d35123327

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 1, 2026

Copy link
Copy Markdown
Contributor

Bumps the elixir group with 6 updates:

Package From To
dialyxir 1.4.7 1.4.8
ex_doc 0.40.3 0.40.4
igniter 0.8.3 0.8.4
oidcc 3.8.0 3.9.0
phoenix 1.8.13 1.8.15
phx_new 1.8.13 1.8.15

Updates dialyxir from 1.4.7 to 1.4.8

Release notes

Sourced from dialyxir's releases.

1.4.8

Added

  • Add support for the OTP 28 warnings :exact_compare, :opaque_compare, and :opaque_union.

Fixed

  • Handle line-and-column locations when matching line-specific warning ignores.

Changed

  • Update ExDoc to 0.40.3 to generate Markdown documentation and llms.txt.

Docs

  • Clarify the output and intended use of the ignore_file and ignore_file_strict formatters.
Changelog

Sourced from dialyxir's changelog.

Unreleased changes post [1.4.8]

[1.4.8] - 2026-09-05

Added

  • Add support for the OTP 28 warnings :exact_compare, :opaque_compare, and :opaque_union.

Fixed

  • Handle line-and-column locations when matching line-specific warning ignores.

Changed

  • Update ExDoc to 0.40.3 to generate Markdown documentation and llms.txt.

Docs

  • Clarify the output and intended use of the ignore_file and ignore_file_strict formatters.
Commits
  • 13bcb7d Release 1.4.8
  • 4a2b6d7 Merge pull request #584 from lud-wj/fix/ignoring-by-line
  • a2a4361 Merge branch 'master' into fix/ignoring-by-line
  • 31a4cd8 Merge pull request #601 from BobbieBarker/docs/exdoc-0.40
  • 6ba7b38 Update ExDoc to 0.40.3
  • 3553678 Add OTP 28 warning support: exact_compare, opaque_compare, opaque_union (#591)
  • 19dd690 Merge pull request #597 from dl-alexandre/codex/clarify-ignore-file-format
  • f12db01 clarify ignore file formatter docs
  • cdcea96 fix: Fixed dialyzer ignore by line for warnings with line/col
  • 9fbbaf5 update changelog
  • See full diff in compare view

Updates ex_doc from 0.40.3 to 0.40.4

Changelog

Sourced from ex_doc's changelog.

v0.40.4 (2026-09-03)

  • Enhancements

    • Add :api_reference_noindex option to keep search engines from indexing api-reference.html
    • Generate reproducible HTML and EPUB output
    • Link HexDocs packages through their per-package subdomains
  • Bug fixes

    • Preserve in-page anchors during Swup navigation and fully reload navigation between ExDoc builds
    • Format Elixir specs consistently regardless of their source line numbers
    • Autolink the Erlang/OTP 29 built-in record/0 type
    • Fix focus outline positioning for top-content heading action icons
Commits
  • 80270f3 Release v0.40.4
  • 934cf54 Reference to missing section (#2264)
  • b5679af Add license information for remixicon font (#2263)
  • 850f709 Bump brace-expansion from 1.1.12 to 1.1.18 in /assets (#2261)
  • 873e03e Bump postcss from 8.5.15 to 8.5.26 in /assets (#2259)
  • 27660d3 Bump js-yaml from 4.2.0 to 4.3.1 in /assets (#2260)
  • ffec214 Bump postcss from 8.5.6 to 8.5.15 in /assets (#2241)
  • 23cbd23 epub: Honor SOURCE_DATE_EPOCH for dcterms:modified and dc:identifier (#2256)
  • a37128a Use a fixed makeup group_prefix for reproducible HTML output (#2255)
  • 01f4763 Update earmark_parser dependency version -> 1.4.46 (#2254)
  • Additional commits viewable in compare view

Updates igniter from 0.8.3 to 0.8.4

Release notes

Sourced from igniter's releases.

v0.8.4

Security

Bug Fixes:

  • strip terminal control sequences from hex install confirmation metadata (CVE-2026-82584)
  • restore application env exactly after evaluating project config (#400)
  • Control rerunning installers for existing packages (#399)
  • unbreak mix igniter.upgrade --git-ci, and positional args after flags (#397)
  • stop boolean flags consuming the following positional arg
  • don't require a package list for igniter.upgrade --git-ci
Changelog

Sourced from igniter's changelog.

v0.8.4 (2026-09-07)

Bug Fixes:

  • strip terminal control sequences from hex install confirmation metadata (CVE-2026-82584) by Zach Daniel

  • restore application env exactly after evaluating project config (#400) by neilberkman

  • Control rerunning installers for existing packages (#399) by mvanhorn

  • unbreak mix igniter.upgrade --git-ci, and positional args after flags (#397) by James Harton

  • stop boolean flags consuming the following positional arg by James Harton

  • don't require a package list for igniter.upgrade --git-ci by James Harton

Commits
  • c6d2b7f chore: release version v0.8.4
  • d492b1a fix: strip terminal control sequences from hex install confirmation metadata
  • 1d9bb60 test: drop unfinished install-rerun tests that never compiled
  • b3fd506 fix: restore application env exactly after evaluating project config (#400)
  • c0379c4 fix: Control rerunning installers for existing packages (#399)
  • aa67bdd build(deps): bump the all-dependencies group with 3 updates (#398)
  • 26608c5 chore: use a single monthly dependabot group
  • 8b0f91c chore: fix tests
  • 31db3a5 fix: unbreak mix igniter.upgrade --git-ci, and positional args after flags ...
  • 64b02a4 build(deps): bump the production-dependencies group with 4 updates (#396)
  • See full diff in compare view

Updates oidcc from 3.8.0 to 3.9.0

Release notes

Sourced from oidcc's releases.

v3.9.0

Security

What's Changed

Software Updates

Full Changelog: erlef/oidcc@v3.8.0...v3.9.0

Commits
  • aa212d5 Release v3.9.0
  • 5f62fbc Merge commit from fork
  • f817be9 Bump the github-actions group with 4 updates (#545)
  • ccc1348 Bump the github-actions group with 5 updates (#544)
  • 071213b Bump the github-actions group with 4 updates (#542)
  • 4e9f843 Derive the at_hash digest from the ID token signing algorithm (#541)
  • 23435d7 Merge branch 'provider-configuration-issuer-validation'
  • 2754e4a Update Expectationf for invalid issuers / Microsoft
  • ccaddd2 Apply suggestions from code review
  • 20b3485 Report what a JWKS refresh fetched (#540)
  • Additional commits viewable in compare view

Updates phoenix from 1.8.13 to 1.8.15

Release notes

Sourced from phoenix's releases.

v1.8.15

Bug fixes

  • [phx.gen.cert] Fix certificate not being accepted by Chromium (#6847)
  • [phoenix.js] Fix asynchronous transport close tearing down the replacement transport (#6852)

Enhancements

  • [phx.new] Update Tailwind version to 4.3.3

v1.8.14

Bug fixes

  • Fix timer leak in LongPoll fetch requests (only used in service or web workers) (#6811)

Enhancements

  • Raise when :router given to use Phoenix.VerifiedRoutes is not a compile time literal (#6806)
  • Align nil host handling in endpoint configuration and transport
  • Unify path validation for static paths, verified routes and redirects
Changelog

Sourced from phoenix's changelog.

v1.8.15 (2026-09-25)

Bug fixes

  • [phx.gen.cert] Fix certificate not being accepted by Chromium (#6847)
  • [phoenix.js] Fix asynchronous transport close tearing down the replacement transport (#6852)

Enhancements

  • [phx.new] Update Tailwind version to 4.3.3

v1.8.14 (2026-09-14)

Bug fixes

  • Fix timer leak in LongPoll fetch requests (only used in service or web workers) (#6811)

Enhancements

  • Raise when :router given to use Phoenix.VerifiedRoutes is not a compile time literal (#6806)
  • Align nil host handling in endpoint configuration and transport
  • Unify path validation for static paths, verified routes and redirects
Commits
  • bd18018 fix version in package.json
  • 762d1a1 Release v1.8.15
  • f735b51 Update assets
  • 405f892 Fix async close leaking to replaced transport (#6854)
  • 968a940 Restore NULL parameters on phx.gen.cert's public key algorithm (#6848)
  • 1d09594 Remove stale test in Socket.TransportTest (#6849)
  • 04e14f1 Bump Tailwind CLI in phx.new templates to 4.3.3 (#6845)
  • d676d61 Clarify potential resource exhaustion with long polling
  • d344b10 docs: remove outdated problem statement from routing guide (#6841)
  • 96085e9 Release v1.8.14
  • Additional commits viewable in compare view

Updates phx_new from 1.8.13 to 1.8.15

Release notes

Sourced from phx_new's releases.

v1.8.15

Bug fixes

  • [phx.gen.cert] Fix certificate not being accepted by Chromium (#6847)
  • [phoenix.js] Fix asynchronous transport close tearing down the replacement transport (#6852)

Enhancements

  • [phx.new] Update Tailwind version to 4.3.3

v1.8.14

Bug fixes

  • Fix timer leak in LongPoll fetch requests (only used in service or web workers) (#6811)

Enhancements

  • Raise when :router given to use Phoenix.VerifiedRoutes is not a compile time literal (#6806)
  • Align nil host handling in endpoint configuration and transport
  • Unify path validation for static paths, verified routes and redirects
Changelog

Sourced from phx_new's changelog.

v1.8.15 (2026-09-25)

Bug fixes

  • [phx.gen.cert] Fix certificate not being accepted by Chromium (#6847)
  • [phoenix.js] Fix asynchronous transport close tearing down the replacement transport (#6852)

Enhancements

  • [phx.new] Update Tailwind version to 4.3.3

v1.8.14 (2026-09-14)

Bug fixes

  • Fix timer leak in LongPoll fetch requests (only used in service or web workers) (#6811)

Enhancements

  • Raise when :router given to use Phoenix.VerifiedRoutes is not a compile time literal (#6806)
  • Align nil host handling in endpoint configuration and transport
  • Unify path validation for static paths, verified routes and redirects
Commits
  • bd18018 fix version in package.json
  • 762d1a1 Release v1.8.15
  • f735b51 Update assets
  • 405f892 Fix async close leaking to replaced transport (#6854)
  • 968a940 Restore NULL parameters on phx.gen.cert's public key algorithm (#6848)
  • 1d09594 Remove stale test in Socket.TransportTest (#6849)
  • 04e14f1 Bump Tailwind CLI in phx.new templates to 4.3.3 (#6845)
  • d676d61 Clarify potential resource exhaustion with long polling
  • d344b10 docs: remove outdated problem statement from routing guide (#6841)
  • 96085e9 Release v1.8.14
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the elixir group with 6 updates:

| Package | From | To |
| --- | --- | --- |
| [dialyxir](https://github.com/jeremyjh/dialyxir) | `1.4.7` | `1.4.8` |
| [ex_doc](https://github.com/elixir-lang/ex_doc) | `0.40.3` | `0.40.4` |
| [igniter](https://github.com/ash-project/igniter) | `0.8.3` | `0.8.4` |
| [oidcc](https://github.com/erlef/oidcc) | `3.8.0` | `3.9.0` |
| [phoenix](https://github.com/phoenixframework/phoenix) | `1.8.13` | `1.8.15` |
| [phx_new](https://github.com/phoenixframework/phoenix) | `1.8.13` | `1.8.15` |


Updates `dialyxir` from 1.4.7 to 1.4.8
- [Release notes](https://github.com/jeremyjh/dialyxir/releases)
- [Changelog](https://github.com/jeremyjh/dialyxir/blob/master/CHANGELOG.md)
- [Commits](jeremyjh/dialyxir@1.4.7...1.4.8)

Updates `ex_doc` from 0.40.3 to 0.40.4
- [Release notes](https://github.com/elixir-lang/ex_doc/releases)
- [Changelog](https://github.com/elixir-lang/ex_doc/blob/main/CHANGELOG.md)
- [Commits](elixir-lang/ex_doc@v0.40.3...v0.40.4)

Updates `igniter` from 0.8.3 to 0.8.4
- [Release notes](https://github.com/ash-project/igniter/releases)
- [Changelog](https://github.com/ash-project/igniter/blob/main/CHANGELOG.md)
- [Commits](ash-project/igniter@v0.8.3...v0.8.4)

Updates `oidcc` from 3.8.0 to 3.9.0
- [Release notes](https://github.com/erlef/oidcc/releases)
- [Commits](erlef/oidcc@v3.8.0...v3.9.0)

Updates `phoenix` from 1.8.13 to 1.8.15
- [Release notes](https://github.com/phoenixframework/phoenix/releases)
- [Changelog](https://github.com/phoenixframework/phoenix/blob/v1.8.15/CHANGELOG.md)
- [Commits](phoenixframework/phoenix@v1.8.13...v1.8.15)

Updates `phx_new` from 1.8.13 to 1.8.15
- [Release notes](https://github.com/phoenixframework/phoenix/releases)
- [Changelog](https://github.com/phoenixframework/phoenix/blob/v1.8.15/CHANGELOG.md)
- [Commits](phoenixframework/phoenix@v1.8.13...v1.8.15)

---
updated-dependencies:
- dependency-name: dialyxir
  dependency-version: 1.4.8
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: elixir
- dependency-name: ex_doc
  dependency-version: 0.40.4
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: elixir
- dependency-name: igniter
  dependency-version: 0.8.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: elixir
- dependency-name: oidcc
  dependency-version: 3.9.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: elixir
- dependency-name: phoenix
  dependency-version: 1.8.15
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: elixir
- dependency-name: phx_new
  dependency-version: 1.8.15
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: elixir
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file elixir Pull requests that update elixir code labels Oct 1, 2026
@coveralls

Copy link
Copy Markdown

Coverage Report for CI Build 7

Warning

Build has drifted: This PR's base is out of sync with its target branch, so coverage data may include unrelated changes.
Quick fix: rebase this PR. Learn more →

Coverage decreased (-0.03%) to 96.729%

Details

  • Coverage decreased (-0.03%) from the base build.
  • Patch coverage: No coverable lines changed in this PR.
  • No coverage regressions found.

Uncovered Changes

No uncovered changes found.

Coverage Regressions

No coverage regressions found.


Coverage Stats

Coverage Status
Relevant Lines: 214
Covered Lines: 207
Line Coverage: 96.73%
Coverage Strength: 18.73 hits per line

💛 - Coveralls

1 similar comment
@coveralls

Copy link
Copy Markdown

Coverage Report for CI Build 7

Warning

Build has drifted: This PR's base is out of sync with its target branch, so coverage data may include unrelated changes.
Quick fix: rebase this PR. Learn more →

Coverage decreased (-0.03%) to 96.729%

Details

  • Coverage decreased (-0.03%) from the base build.
  • Patch coverage: No coverable lines changed in this PR.
  • No coverage regressions found.

Uncovered Changes

No uncovered changes found.

Coverage Regressions

No coverage regressions found.


Coverage Stats

Coverage Status
Relevant Lines: 214
Covered Lines: 207
Line Coverage: 96.73%
Coverage Strength: 18.73 hits per line

💛 - Coveralls

@maennchen
maennchen merged commit 9c55e8a into main Oct 1, 2026
24 of 25 checks passed
@maennchen
maennchen deleted the dependabot/hex/elixir-5d35123327 branch October 1, 2026 22:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file elixir Pull requests that update elixir code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants