From: Jozef Kruszynski <60214390+jozefKruszynski@users.noreply.github.com>
Date: Mon, 14 Aug 2023 22:36:28 +0000 (+0100)
Subject: Bump orjson from 3.9.3 to 3.9.4 (#833)
X-Git-Url: https://git.kitaultman.com/?a=commitdiff_plain;h=d3cc5a6375b4c91847552661b7237b01de1d086d;p=music-assistant-server.git
Bump orjson from 3.9.3 to 3.9.4 (#833)
Bumps [orjson](https://github.com/ijl/orjson) from 3.9.3 to 3.9.4.
Release notes
Sourced from orjson's
releases.
3.9.4
Fixed
- Fix hash builder using default values.
- Fix non-release builds of orjson copying large deserialization
buffer
from stack to heap. This was introduced in 3.9.3.
Changelog
Sourced from orjson's
changelog.
3.9.4 - 2023-08-07
Fixed
- Fix hash builder using default values.
- Fix non-release builds of orjson copying large deserialization
buffer
from stack to heap. This was introduced in 3.9.3.
Commits
[](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.
[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)
---
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)
---
d3cc5a6375b4c91847552661b7237b01de1d086d