Skip to content

Bump middleman and sprockets#250

Open
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/bundler/multi-371cba68c3
Open

Bump middleman and sprockets#250
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/bundler/multi-371cba68c3

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Feb 23, 2026

Bumps middleman and sprockets. These dependencies needed to be updated together.
Updates middleman from 4.5.1 to 4.6.3

Changelog

Sourced from middleman's changelog.

4.6.3

  • Fix errors when using a custom redcarpet renderer (#2855)
  • Fix implicit 1x scale in srcset crashing middleman (#2857)
  • Relax bundler version constraint to allow 4.x (#2883)
  • fix syntax error in kramdown.rb (#2880)

4.6.2

  • Use lowercase headers in preview app, to make it compatible with Rack 3 (#2839)

4.6.1

  • Allow upgrade to thor 1.3 (#2811)
  • Fix regression when visiting sitemap and config page (#2820)

4.6.0

  • Update Rubies matrix support (add: 3.3 and 3.4, remove: 2.5, 2.6)
  • Allow users to use newer versions of Active Support (#2670, #2797)
  • Update Uglifier (#2671)
  • Unlock Contracts version restriction (#2687)
  • Delete unnecessary "backports" runtime dep (#2751)
  • Move runtime deps to middleman-core gem (#2750)
  • Allow to use newer Liquid versions in Ruby 3+ (#2771)
  • Downcase Rack headers (#2706)
  • Support Rack 3 (#2776)
  • Support newer Tilt versions (#2772, #2774, #2775)
  • Support Slim 5 and remove Less support (#2777)
  • Internal clean up (#2749, #2782, #2736, #2742)
Commits

Updates sprockets from 3.7.5 to 4.2.2

Release notes

Sourced from sprockets's releases.

v4.2.2

What's Changed

Full Changelog: rails/sprockets@v4.2.1...v4.2.2

4.2.1

What's Changed

New Contributors

Full Changelog: rails/sprockets@v4.2.0...v4.2.1

4.2.0

What's Changed

New Contributors

Full Changelog: rails/sprockets@v4.1.1...v4.2.0

v4.1.1

  • Fix Sprockets::Server to return response headers to compatible with with Rack::Lint 2.0.

Full Changelog: rails/sprockets@v4.1.0...v4.1.1

v4.1.0

... (truncated)

Changelog

Sourced from sprockets's changelog.

4.2.2

  • Added missing dependency on logger. #813
  • Fix URI::RFC3986_PARSER warnings. #812
  • Removed dependency on base64. #810

4.2.1

  • Fix for precompile issues when multiple extensions map to the same MIME type (eg. .jpeg / .jpg). #781
  • Fix application/css-sourcemap+json charset #764
  • Fix compatibility with Rack 2 applications. #790

4.2.0

  • Rack 3 compatibility. #758
  • Fix thread safety of Sprockets::CachedEnvironment and Sprockets::Cache::MemoryStore. #771
  • Add support for Rack 3.0. Headers set by sprockets will now be lower case. #758
  • Make Sprockets::Utils.module_include thread safe on JRuby. #759
  • Fix typo in asset.rb file. #768

4.1.1

  • Fix Sprockets::Server to return response headers to be compatible with Rack::Lint 2.0.

4.1.0

  • Allow age to be altered in asset:clean rake task.
  • Fix Sprockets::Server to return lower-cased response headers to comply with Rack::Lint 3.0. #744
  • Adding new directive depend_on_directory #668
  • Fix application/js-sourcemap+json charset #669
  • Fix CachedEnvironment caching nil values #723
  • Process *.jst.ejs.erb files with ERBProcessor #674
  • Fix cache key for coffee script processor to be dependent on the filename #670

4.0.3

  • Fix Manifest#find yielding from a Promise causing issue on Ruby 3.1.0-dev. #720
  • Better detect the ERB version to avoid deprecation warnings. #719
  • Allow assets already fingerprinted to be served through Sprockets::Server
  • Do not fingerprint files that already contain a valid digest in their name
  • Remove remaining support for Ruby < 2.4.#672

4.0.2

  • Fix etag and digest path compilation that were generating string with invalid digest since 4.0.1.

4.0.1

  • Fix for Ruby 2.7 keyword arguments warning in base.rb. #660
  • Fix for when x_sprockets_linecount is missing from a source map.

... (truncated)

Commits
  • 4dff018 Release 4.2.2
  • 2fe13f2 Merge pull request #812 from yahonda/uri_rfc3986_parser_escape_and_unescape_a...
  • 19b056c Merge pull request #813 from yahonda/add_logger
  • ceac1ce Merge pull request #811 from yahonda/bump_rake
  • e87e7c6 Add logger as dependency to address warnings against Ruby 3.4.0dev
  • 9386ae4 Address warning: URI::RFC3986_PARSER warnings against ruby 3.4.0dev
  • 8b47cd5 Bump rake version 13 or higher to suppress ostruct warnings
  • 37b8468 Merge pull request #799 from m-nakamura145/update-ci-matrix
  • e4686d5 Merge pull request #810 from tricknotes/drop-base64
  • b8eaeef Drop base64 gem from dependency
  • Additional commits viewable in compare view

Most Recent Ignore Conditions Applied to This Pull Request
Dependency Name Ignore Conditions
sprockets [>= 4.a, < 5]

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [middleman](https://github.com/middleman/middleman) and [sprockets](https://github.com/rails/sprockets). These dependencies needed to be updated together.

Updates `middleman` from 4.5.1 to 4.6.3
- [Changelog](https://github.com/middleman/middleman/blob/main/CHANGELOG.md)
- [Commits](https://github.com/middleman/middleman/commits)

Updates `sprockets` from 3.7.5 to 4.2.2
- [Release notes](https://github.com/rails/sprockets/releases)
- [Changelog](https://github.com/rails/sprockets/blob/main/CHANGELOG.md)
- [Commits](rails/sprockets@v3.7.5...v4.2.2)

---
updated-dependencies:
- dependency-name: middleman
  dependency-version: 4.6.3
  dependency-type: direct:production
  update-type: version-update:semver-minor
- dependency-name: sprockets
  dependency-version: 4.2.2
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code labels Feb 23, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code

Development

Successfully merging this pull request may close these issues.

0 participants