Skip to content

build(deps): bump the most-gems group with 14 updates#983

Closed
dependabot[bot] wants to merge 2 commits intomainfrom
dependabot/bundler/most-gems-6b1df57cc7
Closed

build(deps): bump the most-gems group with 14 updates#983
dependabot[bot] wants to merge 2 commits intomainfrom
dependabot/bundler/most-gems-6b1df57cc7

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jan 19, 2026

Bumps the most-gems group with 14 updates:

Package From To
aws-sdk-lambda 1.173.0 1.174.0
aws-sdk-sqs 1.109.0 1.110.0
aws-sdk-cloudwatch 1.128.0 1.129.0
aws-sdk-s3 1.211.0 1.212.0
async 2.35.2 2.35.3
aws-partitions 1.1203.0 1.1206.0
aws-sdk-core 3.241.3 3.241.4
aws-sdk-kms 1.120.0 1.121.0
bigdecimal 3.3.1 4.0.1
kramdown 2.5.1 2.5.2
listen 3.9.0 3.10.0
parser 3.3.10.0 3.3.10.1
ttfunk 1.8.0 1.7.0
typhoeus 1.4.1 1.5.0

Updates aws-sdk-lambda from 1.173.0 to 1.174.0

Changelog

Sourced from aws-sdk-lambda's changelog.

1.174.0 (2026-01-16)

  • Feature - Code Generated Changes, see ./build_tools or aws-sdk-core's CHANGELOG.md for details.
Commits

Updates aws-sdk-sqs from 1.109.0 to 1.110.0

Changelog

Sourced from aws-sdk-sqs's changelog.

1.110.0 (2026-01-16)

  • Feature - Code Generated Changes, see ./build_tools or aws-sdk-core's CHANGELOG.md for details.
Commits

Updates aws-sdk-cloudwatch from 1.128.0 to 1.129.0

Changelog

Sourced from aws-sdk-cloudwatch's changelog.

1.129.0 (2026-01-16)

  • Feature - Code Generated Changes, see ./build_tools or aws-sdk-core's CHANGELOG.md for details.
Commits

Updates aws-sdk-s3 from 1.211.0 to 1.212.0

Changelog

Sourced from aws-sdk-s3's changelog.

1.212.0 (2026-01-16)

  • Feature - Code Generated Changes, see ./build_tools or aws-sdk-core's CHANGELOG.md for details.
Commits

Updates async from 2.35.2 to 2.35.3

Changelog

Sourced from async's changelog.

v2.35.3

  • Async::Clock now implements #as_json and #to_json for nicer log formatting.
Commits

Updates aws-partitions from 1.1203.0 to 1.1206.0

Changelog

Sourced from aws-partitions's changelog.

1.1206.0 (2026-01-16)

  • Feature - Updated the partitions source data the determines the AWS service regions and endpoints.

1.1205.0 (2026-01-15)

  • Feature - Updated the partitions source data the determines the AWS service regions and endpoints.

1.1204.0 (2026-01-14)

  • Feature - Updated the partitions source data the determines the AWS service regions and endpoints.
Commits

Updates aws-sdk-core from 3.241.3 to 3.241.4

Changelog

Sourced from aws-sdk-core's changelog.

3.241.4 (2026-01-16)

  • Issue - Rewind IO during initialization for AwsChunkedTrailerDigestIO.
Commits

Updates aws-sdk-kms from 1.120.0 to 1.121.0

Changelog

Sourced from aws-sdk-kms's changelog.

1.121.0 (2026-01-16)

  • Feature - Code Generated Changes, see ./build_tools or aws-sdk-core's CHANGELOG.md for details.
Commits

Updates bigdecimal from 3.3.1 to 4.0.1

Release notes

Sourced from bigdecimal's releases.

v4.0.1

What's Changed

Full Changelog: ruby/bigdecimal@v4.0.0...v4.0.1

v4.0.0

What's Changed

New Contributors

Full Changelog: ruby/bigdecimal@v3.3.1...v4.0.0

Changelog

Sourced from bigdecimal's changelog.

4.0.1

4.0.0

Commits
  • 6d01c36 Bump version to v4.0.1 (#477)
  • 4914cc3 Remove "Which version should you select" section (#476)
  • 4120325 Remove unused variable (and add test for it) (#475)
  • f0bf63f Merge pull request #474 from ruby/exclude-dependabot-update
  • d93ef2b Exclude dependabot updates from release note
  • d9914c9 Bump version to v4.0.0 (#472)
  • 45d203a Deprecate ludcmp, jacobian and newton (#471)
  • 8146336 Remove deprecated method BigDecimal#precs (#470)
  • b7e93bf Better rounding of BigMath.atan(nearly_one, prec) (#469)
  • cef76eb Merge pull request #468 from ruby/dependabot/github_actions/step-security/har...
  • Additional commits viewable in compare view

Updates kramdown from 2.5.1 to 2.5.2

Commits

Updates listen from 3.9.0 to 3.10.0

Release notes

Sourced from listen's releases.

v3.10.0

What's Changed

New Contributors

Full Changelog: guard/listen@v3.9.0...v3.10.0

Commits
  • 2fa1a74 Bump VERSION to 3.10.0
  • 7c6d39e Merge pull request #596 from y-yagi/ci_against_ruby40
  • 62255c0 CI against Ruby 4.0
  • 43cb09c Merge pull request #595 from y-yagi/mention_memory_allocation_about_max_user_...
  • 030aff8 Merge pull request #594 from y-yagi/remove_unused_require
  • 4317b21 Mention the relation with fs.inotify.max_user_watches and the memory alloc...
  • 5883c5e Remove unused require
  • cde3720 Merge pull request #592 from y-yagi/fix_rubocop
  • 8e93885 Merge pull request #593 from y-yagi/remove_link_to_travis
  • 2f07a81 Remove link to Travis CI
  • Additional commits viewable in compare view

Updates parser from 3.3.10.0 to 3.3.10.1

Changelog

Sourced from parser's changelog.

v3.3.10.1 (2026-01-15)

API modifications:

  • Bump maintenance branches to 3.2.10 (#1085) (Koichi ITO)
Commits

Updates ttfunk from 1.8.0 to 1.7.0

Changelog

Sourced from ttfunk's changelog.

[1.8.0][] - 2024-03-05

Fixed

  • Corrupted CFF index data

    there was a subtle bug in cff index implementation that resulted in a data corruption. in certain circumstances some items didn't get properly encoded. this happened when items were not previously accessed.

    this resulted, for instance, in missing glyphs. but only sometimes because indexes might've still contain data that shouldn't've been there. in combination with incorrect encoding (see further) this resulted in some glyphs still being rendered, sometimes even correctly.

    along with the fix a rather large api change landed. this resulted in quite a big diff.

    Alexander Mankuta

  • Incorrect CFF encoding in subsets

    TTFunk used to reuse encoding from the original font. This mapping was incorrect for subset fonts which used not just a subset of glyphs but also a different encoding.

    A separate issue was that some fonts have empty CFF encoding. This incorrect mapping resulted in encoding that mapped all codes to glyph 0.

    This had impact on Prawn in particular. PDF spec explicitly says that CFF encoding is not to be used in OpenType fonts. cmap table should directly index charstrings in the CFF table. Despite this PDF renderers still use CFF encoding to retrieve glyphs. So TTFunk has to discard the original CFF encoding and supply its own.

    Alexander Mankuta

  • maxp table

    The table is now correctly parsed and encoded for both TrueType and CFF-based OpenType fonts.

    Cameron Dutro, Alexander Mankuta

  • Files are closed sooner

    Files were garbage collected but could stay open for longer than necessary.

    Jon Burgess

... (truncated)

Commits

Updates typhoeus from 1.4.1 to 1.5.0

Changelog

Sourced from typhoeus's changelog.

1.5.0

Full Changelog

Commits
  • a529f7e Merge pull request #735 from typhoeus/prepare-for-v1.5.0-release
  • 1e2dd54 update changelog
  • db9cddb bump version
  • 4d18f16 Merge pull request #734 from felipedmesquita/update-gemspec
  • 51bbd3d add gem metadata
  • 225da04 remove extra files from the bundled gem
  • aa76dc5 Merge pull request #733 from felipedmesquita/require-ruby-26
  • 3891e62 simplify gemfile for ruby 2.6+ requirement
  • a4a9058 require ruby 2.6
  • 05ab789 Merge pull request #732 from slowbro/issue-662
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the most-gems group with 14 updates:

| Package | From | To |
| --- | --- | --- |
| [aws-sdk-lambda](https://github.com/aws/aws-sdk-ruby) | `1.173.0` | `1.174.0` |
| [aws-sdk-sqs](https://github.com/aws/aws-sdk-ruby) | `1.109.0` | `1.110.0` |
| [aws-sdk-cloudwatch](https://github.com/aws/aws-sdk-ruby) | `1.128.0` | `1.129.0` |
| [aws-sdk-s3](https://github.com/aws/aws-sdk-ruby) | `1.211.0` | `1.212.0` |
| [async](https://github.com/socketry/async) | `2.35.2` | `2.35.3` |
| [aws-partitions](https://github.com/aws/aws-sdk-ruby) | `1.1203.0` | `1.1206.0` |
| [aws-sdk-core](https://github.com/aws/aws-sdk-ruby) | `3.241.3` | `3.241.4` |
| [aws-sdk-kms](https://github.com/aws/aws-sdk-ruby) | `1.120.0` | `1.121.0` |
| [bigdecimal](https://github.com/ruby/bigdecimal) | `3.3.1` | `4.0.1` |
| [kramdown](https://github.com/gettalong/kramdown) | `2.5.1` | `2.5.2` |
| [listen](https://github.com/guard/listen) | `3.9.0` | `3.10.0` |
| [parser](https://github.com/whitequark/parser) | `3.3.10.0` | `3.3.10.1` |
| [ttfunk](https://github.com/prawnpdf/ttfunk) | `1.8.0` | `1.7.0` |
| [typhoeus](https://github.com/typhoeus/typhoeus) | `1.4.1` | `1.5.0` |


Updates `aws-sdk-lambda` from 1.173.0 to 1.174.0
- [Release notes](https://github.com/aws/aws-sdk-ruby/releases)
- [Changelog](https://github.com/aws/aws-sdk-ruby/blob/version-3/gems/aws-sdk-lambda/CHANGELOG.md)
- [Commits](https://github.com/aws/aws-sdk-ruby/commits)

Updates `aws-sdk-sqs` from 1.109.0 to 1.110.0
- [Release notes](https://github.com/aws/aws-sdk-ruby/releases)
- [Changelog](https://github.com/aws/aws-sdk-ruby/blob/version-3/gems/aws-sdk-sqs/CHANGELOG.md)
- [Commits](https://github.com/aws/aws-sdk-ruby/commits)

Updates `aws-sdk-cloudwatch` from 1.128.0 to 1.129.0
- [Release notes](https://github.com/aws/aws-sdk-ruby/releases)
- [Changelog](https://github.com/aws/aws-sdk-ruby/blob/version-3/gems/aws-sdk-cloudwatch/CHANGELOG.md)
- [Commits](https://github.com/aws/aws-sdk-ruby/commits)

Updates `aws-sdk-s3` from 1.211.0 to 1.212.0
- [Release notes](https://github.com/aws/aws-sdk-ruby/releases)
- [Changelog](https://github.com/aws/aws-sdk-ruby/blob/version-3/gems/aws-sdk-s3/CHANGELOG.md)
- [Commits](https://github.com/aws/aws-sdk-ruby/commits)

Updates `async` from 2.35.2 to 2.35.3
- [Release notes](https://github.com/socketry/async/releases)
- [Changelog](https://github.com/socketry/async/blob/main/releases.md)
- [Commits](socketry/async@v2.35.2...v2.35.3)

Updates `aws-partitions` from 1.1203.0 to 1.1206.0
- [Release notes](https://github.com/aws/aws-sdk-ruby/releases)
- [Changelog](https://github.com/aws/aws-sdk-ruby/blob/version-3/gems/aws-partitions/CHANGELOG.md)
- [Commits](https://github.com/aws/aws-sdk-ruby/commits)

Updates `aws-sdk-core` from 3.241.3 to 3.241.4
- [Release notes](https://github.com/aws/aws-sdk-ruby/releases)
- [Changelog](https://github.com/aws/aws-sdk-ruby/blob/version-3/gems/aws-sdk-core/CHANGELOG.md)
- [Commits](https://github.com/aws/aws-sdk-ruby/commits)

Updates `aws-sdk-kms` from 1.120.0 to 1.121.0
- [Release notes](https://github.com/aws/aws-sdk-ruby/releases)
- [Changelog](https://github.com/aws/aws-sdk-ruby/blob/version-3/gems/aws-sdk-kms/CHANGELOG.md)
- [Commits](https://github.com/aws/aws-sdk-ruby/commits)

Updates `bigdecimal` from 3.3.1 to 4.0.1
- [Release notes](https://github.com/ruby/bigdecimal/releases)
- [Changelog](https://github.com/ruby/bigdecimal/blob/master/CHANGES.md)
- [Commits](ruby/bigdecimal@v3.3.1...v4.0.1)

Updates `kramdown` from 2.5.1 to 2.5.2
- [Release notes](https://github.com/gettalong/kramdown/releases)
- [Changelog](https://github.com/gettalong/kramdown/blob/master/doc/news.page)
- [Commits](https://github.com/gettalong/kramdown/commits)

Updates `listen` from 3.9.0 to 3.10.0
- [Release notes](https://github.com/guard/listen/releases)
- [Commits](guard/listen@v3.9.0...v3.10.0)

Updates `parser` from 3.3.10.0 to 3.3.10.1
- [Changelog](https://github.com/whitequark/parser/blob/master/CHANGELOG.md)
- [Commits](whitequark/parser@v3.3.10.0...v3.3.10.1)

Updates `ttfunk` from 1.8.0 to 1.7.0
- [Release notes](https://github.com/prawnpdf/ttfunk/releases)
- [Changelog](https://github.com/prawnpdf/ttfunk/blob/master/CHANGELOG.md)
- [Commits](prawnpdf/ttfunk@1.8.0...1.7.0)

Updates `typhoeus` from 1.4.1 to 1.5.0
- [Changelog](https://github.com/typhoeus/typhoeus/blob/master/CHANGELOG.md)
- [Commits](typhoeus/typhoeus@v1.4.1...v1.5.0)

---
updated-dependencies:
- dependency-name: aws-sdk-lambda
  dependency-version: 1.174.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: most-gems
- dependency-name: aws-sdk-sqs
  dependency-version: 1.110.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: most-gems
- dependency-name: aws-sdk-cloudwatch
  dependency-version: 1.129.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: most-gems
- dependency-name: aws-sdk-s3
  dependency-version: 1.212.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: most-gems
- dependency-name: async
  dependency-version: 2.35.3
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: most-gems
- dependency-name: aws-partitions
  dependency-version: 1.1206.0
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: most-gems
- dependency-name: aws-sdk-core
  dependency-version: 3.241.4
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: most-gems
- dependency-name: aws-sdk-kms
  dependency-version: 1.121.0
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: most-gems
- dependency-name: bigdecimal
  dependency-version: 4.0.1
  dependency-type: indirect
  update-type: version-update:semver-major
  dependency-group: most-gems
- dependency-name: kramdown
  dependency-version: 2.5.2
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: most-gems
- dependency-name: listen
  dependency-version: 3.10.0
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: most-gems
- dependency-name: parser
  dependency-version: 3.3.10.1
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: most-gems
- dependency-name: ttfunk
  dependency-version: 1.7.0
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: most-gems
- dependency-name: typhoeus
  dependency-version: 1.5.0
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: most-gems
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code labels Jan 19, 2026
@dependabot dependabot bot requested a review from ayousufi as a code owner January 19, 2026 23:33
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Jan 19, 2026
@dependabot dependabot bot added the ruby Pull requests that update Ruby code label Jan 19, 2026
@myronmarston
Copy link
Collaborator

@dependabot recreate

@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Jan 21, 2026

Looks like these dependencies are updatable in another way, so this is no longer needed.

@dependabot dependabot bot closed this Jan 21, 2026
@dependabot dependabot bot deleted the dependabot/bundler/most-gems-6b1df57cc7 branch January 21, 2026 00:29
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant