Home

dev / openkara

publicthedavidweng/OpenKara· sync paused
Overview Code History Branches Pull requestsIssuesInsights
main
HomeOverview Code PRsIssues

chore(deps): bump the rust-dependencies group in /src-tauri with 6 updates

open
#468 opened by dependabot[bot]dependabot/cargo/src-tauri/rust-dependencies-8e87e3a6be→main
Conversation1
dependabot[bot]
Commits
0
Files changed…
opened this pull request
Author
· 4 hours ago

Bumps the rust-dependencies group in /src-tauri with 6 updates:

PackageFromTo
thiserror2.0.202.0.21
lofty0.25.20.25.4
rand0.10.20.10.3
tauri2.11.52.11.6
tauri-plugin-single-instance2.4.42.4.5
tauri-plugin-updater2.11.02.12.0

Updates thiserror from 2.0.20 to 2.0.21

Release notes

Sourced from thiserror's releases.

2.0.21

  • Fix parsing of generic unit variants in display expressions (#459)
Commits
  • b1827ee Release 2.0.21
  • 58037b5 Merge pull request #459 from dtolnay/turbofish
  • f82a0cf Keep track of nested turbofish depth
  • 72ea492 Raise required compiler to Rust 1.77
  • 72eea0d Resolve io_other_error clippy lint in tests
  • 07f09a2 Raise required compiler to Rust 1.74
  • 2715388 Update ui test suite to nightly-2026-09-22
  • 5a306c7 Update ui test suite to nightly-2026-09-05
  • ef9383b Update ui test suite to nightly-2026-08-22
  • 8336b84 Update ui tests for version 2.0.20
  • See full diff in compare view

Updates lofty from 0.25.2 to 0.25.4

Release notes

Sourced from lofty's releases.

0.25.4

What's Changed

  • ID3v2: Correct growing WAV and AIFF stream sizes by @​floydnant in Serial-ATA/lofty-rs#725
  • ID3v2: Reduce allocations for prepended tag writes by @​Serial-ATA in Serial-ATA/lofty-rs#726

New Contributors

  • @​floydnant made their first contribution in Serial-ATA/lofty-rs#725

Full Changelog: github.com/Serial-ATA/…/CHANGELOG.md

0.25.3

What's Changed

  • ID3v2: Fix handling of mid-stream fake tags by @​Serial-ATA in Serial-ATA/lofty-rs#722

Full Changelog: github.com/Serial-ATA/…/CHANGELOG.md

Changelog

Sourced from lofty's changelog.

[0.25.4] - 2026-09-20

Added

  • FileLike: FileLike::splice() to replace a range of a file (PR)

Changed

  • ID3v2: Prepended tag writes will no longer read the entire file into memory (PR)
    • Prepended writes will now allocate a single 64KiB buffer to work out of.

Fixed

  • ID3v2: Fixed encoding of stream lengths when growing tags in IFF containers (issue) (PR)

[0.25.3] - 2026-09-19

Fixed

  • ID3v2: Fixed mid-stream fake tags not seeking the writer back to the correct position (issue) (PR)
Commits
  • 618731c 0.25.4
  • bfa3c5a ID3v2: Reduce allocations for prepended tag writes
  • 4bbdb0f Tests: Cover resizes in all supported formats
  • 6576b5a ID3v2: Correct growing WAV and AIFF stream sizes
  • 423ff71 0.25.3
  • 67b9bfc ID3v2: Fix handling of mid-stream fake tags
  • See full diff in compare view

Updates rand from 0.10.2 to 0.10.3

Changelog

Sourced from rand's changelog.

[0.10.3] — 2026-09-20

Fixes

  • Fix WeightedIndex panic when the sum of float weights is infinite; return Error::Overflow instead (#1808)
  • Fix spurious Error::NonFinite from Uniform::new_inclusive on large finite float ranges such as 0.0..=f64::MAX (#1821)
  • Fix possible panic due to sampling a deserialized Uniform<char> (#1831)

Changes

  • Report exact remaining lengths from WeightedIndex::weights() and reduce overhead when reading weights (#1838)

#1808: rust-random/rand#1808 #1821: rust-random/rand#1821 #1831: rust-random/rand#1831 #1838: rust-random/rand#1838

Commits
  • 9e7d328 Prepare rand 0.10.3 (#1840)
  • f73ce74 Optimize WeightedIndex weight lookup and iteration (#1838)
  • ef9e044 Avoid panic from deserialized Uniform\<char> where range == 0 (#1831)
  • c994eb1 docs: fix angle unit in quick start example (#1839)
  • 33dea4f Test that WeightedIndex rejects INFINITY with Error::Overflow (#1822)
  • 94c9078 Fix Uniform::new_inclusive overflow on large finite float ranges (#1821)
  • bb1262f Use Xoshiro256PlusPlus in examples/rayon-monte-carlo.rs (#1805)
  • 521fab6 Stop pinning dependencies (#1820)
  • 3f7c433 Stop pinning dependencies
  • cf4f73e sample_efraimidis_spirakis: error on more than amount non-finite weights (#1814)
  • Additional commits viewable in compare view

Updates tauri from 2.11.5 to 2.11.6

Release notes

Sourced from tauri's releases.

tauri v2.11.6

Fetching advisory database from `https://github.com/RustSec/advisory-db.git`
      Loaded 1251 security advisories (from /home/runner/.cargo/advisory-db)
    Updating crates.io index
    Scanning Cargo.lock for vulnerabilities (1075 crate dependencies)
Crate:     fxhash
Version:   0.2.1
Warning:   unmaintained
Title:     fxhash - no longer maintained
Date:      2025-09-05
ID:        RUSTSEC-2025-0057
URL:       https://rustsec.org/advisories/RUSTSEC-2025-0057

Crate: paste
Version: 1.0.15
Warning: unmaintained
Title: paste - no longer maintained
Date: 2024-10-07
ID: RUSTSEC-2024-0436
URL: rustsec.org/advisories/RUSTSEC-2024-0436

Crate: rustls-pemfile
Version: 1.0.4
Warning: unmaintained
Title: rustls-pemfile is unmaintained
Date: 2025-11-28
ID: RUSTSEC-2025-0134
URL: rustsec.org/advisories/RUSTSEC-2025-0134

Crate: rustls-pemfile
Version: 2.2.0
Warning: unmaintained
Title: rustls-pemfile is unmaintained
Date: 2025-11-28
ID: RUSTSEC-2025-0134
URL: rustsec.org/advisories/RUSTSEC-2025-0134

Crate: rustybuzz
Version: 0.20.1
Warning: unmaintained
Title: rustybuzz is unmaintained
Date: 2026-07-11
ID: RUSTSEC-2026-0206
URL: rustsec.org/advisories/RUSTSEC-2026-0206

Crate: ttf-parser
</tr></table>

... (truncated)

Commits
  • 9452dde fix audit
  • 7c2fe9f run covector version
  • 7d71a8a add publish-hotfix workflow
  • 5a87bab Merge commit from fork
  • e901f1d Merge commit from fork
  • See full diff in compare view

Updates tauri-plugin-single-instance from 2.4.4 to 2.4.5

Commits
  • 6e2e7e4 publish new versions (#3070)
  • 9a2c98f temp: remove updater changefiles
  • 4a2ecb6 chore(deps): update rkyv, closes #3196
  • 31415ef docs(shell): update example to include Encoding usage in Command::spawn (#3...
  • 04b33ea chore(deps): update dependency typescript-eslint to v8.50.1 (#3181)
  • 54e21f1 chore(deps): update dependency rollup to v4.54.0 (#3179)
  • d528c88 chore(deps): update dependency rollup to v4.53.5 (#3172)
  • 69146fa chore(deps): update dependency rollup to v4.53.4 (#3167)
  • 9f68f2d chore(deps): update dependency typescript-eslint to v8.50.0 (#3170)
  • 3d0d2e0 fix(opener): ignore inAppBrowser on desktop (#3163)
  • Additional commits viewable in compare view

Updates tauri-plugin-updater from 2.11.0 to 2.12.0

Commits
  • 5baf71a fix: pnpm audit
  • 2393188 publish new versions (#3591)
  • 1198a52 Merge commit from fork
  • 1308bfa Merge commit from fork
  • 690dcfd Merge commit from fork
  • 67cd25a fix(single-instance): let the first instance come to front on Windows (#3592)
  • 2df3d93 refactor(log): log webview location after double colon (#3574)
  • 4b5c954 chore(deps): update dependency typescript-eslint to v8.70.0 (#3536)
  • 3c5d267 publish new versions (#3567)
  • c050e07 fix(store): apply_pending_auto_save can deadlock (#3572)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting [@dependabot](/dependabot) rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • [@dependabot](/dependabot) rebase will rebase this PR
  • [@dependabot](/dependabot) recreate will recreate this PR, overwriting any edits that have been made to it
  • [@dependabot](/dependabot) show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • [@dependabot](/dependabot) ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • [@dependabot](/dependabot) ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • [@dependabot](/dependabot) ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • [@dependabot](/dependabot) unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • [@dependabot](/dependabot) unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions
coderabbitai[bot]commented· 4 hours ago

[!IMPORTANT]

Review skipped

Bot user detected.

To trigger a single review, invoke the [@coderabbitai](/coderabbitai) review command.

⚙️ Run configuration

Configuration used: Repository: thedavidweng/OpenKara/.coderabbit.yaml

Review profile: CHILL

Plan: Advanced

Run ID: 2ea3020e-0258-49af-8d45-7d2e59fd058a

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share
  • X
  • Mastodon
  • Reddit
  • LinkedIn

Comment [@coderabbitai](/coderabbitai) help to get the list of available commands.

This branch can’t be merged automatically yet
Branch comparison failed — verify branches still exist in storage.
0 approving reviews
None yet
Checks
No checks recorded
Fast-forward
Source must contain the target branch tip
main ← dependabot/cargo/src-tauri/rust-dependencies-8e87e3a6be

Sign in to comment.

Merge readiness

Checking mergeability after the indexing worker computes the current branch state.

Autopilot

Debug

Reviews

Approved0
ReviewersNone yet

Configure an OpenRouter key in repository settings.