Skip to content

Bump ajv from 6.10.0 to 6.15.0 - #13

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/ajv-6.12.6
Open

Bump ajv from 6.10.0 to 6.15.0#13
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/ajv-6.12.6

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Feb 12, 2022

Copy link
Copy Markdown
Contributor

Bumps ajv from 6.10.0 to 6.15.0.

Release notes

Sourced from ajv's releases.

v6.12.6

Fix performance issue of "url" format.

v6.12.5

Fix uri scheme validation (@​ChALkeR). Fix boolean schemas with strictKeywords option (#1270)

v6.12.4

Fix: coercion of one-item arrays to scalar that should fail validation (failing example).

v6.12.3

Pass schema object to processCode function Option for strictNumbers (@​issacgerges, #1128) Fixed vulnerability related to untrusted schemas (CVE-2020-15366)

v6.12.2

Removed post-install script

v6.12.1

Docs and dependency updates

v6.12.0

Improved hostname validation (@​sambauers, #1143) Option keywords to add custom keywords (@​franciscomorais, #1137) Types fixes (@​boenrobot, @​MattiAstedrone) Docs:

v6.11.0

Time formats support two digit and colon-less variants of timezone offset (#1061 , @​cjpillsbury) Docs: RegExp related security considerations Tests: Disabled failing typescript test

v6.10.2

Fix: the unknown keywords were ignored with the option strictKeywords: true (instead of failing compilation) in some sub-schemas (e.g. anyOf), when the sub-schema didn't have known keywords.

v6.10.1

Fix types Fix addSchema (#1001) Update dependencies

Commits

@dependabot dependabot Bot added the dependencies Pull requests that update a dependency file label Feb 12, 2022
@zachmckenzie

Copy link
Copy Markdown

@dependabot rebase

Bumps [ajv](https://github.com/ajv-validator/ajv) from 6.10.0 to 6.15.0.
- [Release notes](https://github.com/ajv-validator/ajv/releases)
- [Commits](ajv-validator/ajv@v6.10.0...v6.15.0)

---
updated-dependencies:
- dependency-name: ajv
  dependency-version: 6.12.6
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot changed the title Bump ajv from 6.10.0 to 6.12.6 Bump ajv from 6.10.0 to 6.15.0 Aug 3, 2026
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/ajv-6.12.6 branch from 894a221 to 889a845 Compare August 3, 2026 23:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant