Skip to content

chore(deps): bump rollup from 4.59.0 to 4.60.1#1740

Merged
vio merged 1 commit intoupdate-dependenciesfrom
dependabot/npm_and_yarn/update-dependencies/rollup-4.60.1
Apr 13, 2026
Merged

chore(deps): bump rollup from 4.59.0 to 4.60.1#1740
vio merged 1 commit intoupdate-dependenciesfrom
dependabot/npm_and_yarn/update-dependencies/rollup-4.60.1

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot bot commented on behalf of github Mar 30, 2026

Bumps rollup from 4.59.0 to 4.60.1.

Release notes

Sourced from rollup's releases.

v4.60.1

4.60.1

2026-03-30

Bug Fixes

  • Resolve a situation where side effect imports could be dropped due to a caching issue (#6286)

Pull Requests

v4.60.0

4.60.0

2026-03-22

Features

  • Support source phase imports as long as they are external (#6279)

Pull Requests

v4.59.1

4.59.1

2026-03-21

Bug Fixes

  • Fix a crash when using lazy dynamic imports with moduleSideEffects:false (#6306)

Pull Requests

... (truncated)

Changelog

Sourced from rollup's changelog.

4.60.1

2026-03-30

Bug Fixes

  • Resolve a situation where side effect imports could be dropped due to a caching issue (#6286)

Pull Requests

4.60.0

2026-03-22

Features

  • Support source phase imports as long as they are external (#6279)

Pull Requests

4.59.1

2026-03-21

Bug Fixes

  • Fix a crash when using lazy dynamic imports with moduleSideEffects:false (#6306)

Pull Requests

... (truncated)

Commits

@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Mar 30, 2026
@socket-security
Copy link
Copy Markdown

socket-security bot commented Mar 30, 2026

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Addedrollup@​4.60.18810010098100

View full report

@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/update-dependencies/rollup-4.60.1 branch from 8dfe73a to bd767ee Compare March 30, 2026 07:56
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/update-dependencies/rollup-4.60.1 branch from bd767ee to b8f9009 Compare April 13, 2026 20:42
@vio vio force-pushed the update-dependencies branch from 8c7a367 to 6475c3a Compare April 13, 2026 20:47
Bumps [rollup](https://github.com/rollup/rollup) from 4.54.0 to 4.60.1.
- [Release notes](https://github.com/rollup/rollup/releases)
- [Changelog](https://github.com/rollup/rollup/blob/master/CHANGELOG.md)
- [Commits](rollup/rollup@v4.54.0...v4.60.1)

---
updated-dependencies:
- dependency-name: rollup
  dependency-version: 4.60.1
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot changed the title chore(deps): bump rollup from 4.54.0 to 4.60.1 chore(deps): bump rollup from 4.59.0 to 4.60.1 Apr 13, 2026
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/update-dependencies/rollup-4.60.1 branch from b8f9009 to 2b4ab04 Compare April 13, 2026 20:49
@vio vio merged commit d5ba040 into update-dependencies Apr 13, 2026
23 checks passed
@vio vio deleted the dependabot/npm_and_yarn/update-dependencies/rollup-4.60.1 branch April 13, 2026 20:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant