Skip to content

Bump path-to-regexp from 8.3.0 to 8.4.0#352

Merged
srieger1 merged 1 commit into
masterfrom
dependabot/npm_and_yarn/path-to-regexp-8.4.0
Jun 6, 2026
Merged

Bump path-to-regexp from 8.3.0 to 8.4.0#352
srieger1 merged 1 commit into
masterfrom
dependabot/npm_and_yarn/path-to-regexp-8.4.0

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Mar 30, 2026

Bumps path-to-regexp from 8.3.0 to 8.4.0.

Release notes

Sourced from path-to-regexp's releases.

v8.4.0

Important

Fixed

Changed

  • Dedupes regex prefixes (pillarjs/path-to-regexp#422)
    • This will result in shorter regular expressions for some cases using optional groups
  • Rejects large optional route combinations (pillarjs/path-to-regexp#424)
    • When using groups such as /users{/delete} it will restrict the number of generated combinations to < 256, equivalent to 8 top-level optional groups and unlikely to occur in a real world application, but avoids exploding the regex size for applications that accept user created routes
Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Mar 30, 2026
@srieger1
Copy link
Copy Markdown
Collaborator

srieger1 commented Jun 6, 2026

@dependabot rebase

Bumps [path-to-regexp](https://github.com/pillarjs/path-to-regexp) from 8.3.0 to 8.4.0.
- [Release notes](https://github.com/pillarjs/path-to-regexp/releases)
- [Changelog](https://github.com/pillarjs/path-to-regexp/blob/master/History.md)
- [Commits](pillarjs/path-to-regexp@v8.3.0...v8.4.0)

---
updated-dependencies:
- dependency-name: path-to-regexp
  dependency-version: 8.4.0
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/path-to-regexp-8.4.0 branch from 4d1cf79 to 713abd4 Compare June 6, 2026 09:45
@srieger1 srieger1 merged commit e48efc3 into master Jun 6, 2026
6 checks passed
@dependabot dependabot Bot deleted the dependabot/npm_and_yarn/path-to-regexp-8.4.0 branch June 6, 2026 18:21
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant