dependabot[bot] opened a new pull request, #1649:
URL: https://github.com/apache/camel-karavan/pull/1649

   Bumps [axios](https://github.com/axios/axios) from 1.19.0 to 1.20.0.
   <details>
   <summary>Release notes</summary>
   <p><em>Sourced from <a 
href="https://github.com/axios/axios/releases";>axios's releases</a>.</em></p>
   <blockquote>
   <h2>v1.20.0 — August 19, 2026</h2>
   <p>This release hardens runtime option handling, adds RFC 9110 status-code 
aliases, fixes Node.js and XHR reliability issues, and refreshes project 
tooling and documentation.</p>
   <h2>⚠️ Breaking Changes &amp; Deprecations</h2>
   <ul>
   <li>HTTP Status Naming: Added ContentTooLarge (413) and UnprocessableContent 
(422), while retaining PayloadTooLarge and UnprocessableEntity as 
backward-compatible deprecated aliases. (<a 
href="https://redirect.github.com/axios/axios/issues/11082";>#11082</a>)</li>
   </ul>
   <h2>🔒 Security Fixes</h2>
   <ul>
   <li>Runtime Option Handling: Hardened behavioral configuration reads against 
shared and foreign prototype pollution and normalized unsafe interceptor 
replacement objects. This also clarifies Fetch redirect and custom 
implementation behavior, HTTP/2 DNS and proxy handling, CIDR-based NO_PROXY 
matching, and malformed data URI rejection; see the PR for documented 
compatibility effects. (<a 
href="https://redirect.github.com/axios/axios/issues/11141";>#11141</a>)</li>
   </ul>
   <h2>🐛 Bug Fixes</h2>
   <ul>
   <li>Interceptor Lifecycle: Prevented unbounded handler-array growth by 
trimming trailing ejected interceptors without changing iteration semantics, 
and kept interceptor operations safe when the public handlers field is nullish. 
(<a href="https://redirect.github.com/axios/axios/issues/11087";>#11087</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11118";>#11118</a>)</li>
   <li>Request Error Preservation: Prevented custom Error.prepareStackTrace 
implementations that return non-string values from replacing the original 
request failure with an unrelated TypeError. (<a 
href="https://redirect.github.com/axios/axios/issues/11109";>#11109</a>)</li>
   <li>XHR Reliability: Navigation-canceled requests now reject with 
ECONNABORTED instead of resolving with status 0, while successful downloads 
flush their final progress callback during the live loadend dispatch. (<a 
href="https://redirect.github.com/axios/axios/issues/11094";>#11094</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11121";>#11121</a>)</li>
   <li>Node.js Socket Memory: Removed request-context retention from per-socket 
error listeners, preventing completed response data from being pinned for the 
lifetime of pooled keep-alive sockets. (<a 
href="https://redirect.github.com/axios/axios/issues/11091";>#11091</a>)</li>
   <li>Core Methods and HTTP Errors: Prevented structural method-header buckets 
from leaking into outgoing headers, standardized invalid DNS lookup and 
httpVersion failures as AxiosError.ERR_BAD_OPTION_VALUE, and corrected the 
timeoutErrorMessage merge strategy. (<a 
href="https://redirect.github.com/axios/axios/issues/11096";>#11096</a>)</li>
   </ul>
   <h2>🔧 Maintenance &amp; Chores</h2>
   <ul>
   <li>Dependencies: Updated fast-uri, postcss, js-yaml, mocha, 
development-tooling groups, and GitHub Actions dependencies. (<a 
href="https://redirect.github.com/axios/axios/issues/11092";>#11092</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11098";>#11098</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11099";>#11099</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11106";>#11106</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11107";>#11107</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11122";>#11122</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11123";>#11123</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11126";>#11126</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11127";>#11127</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11133";>#11133</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11140";>#11140</a>, <a 
href="https://redirect.github.com/axios/axio
 s/issues/11143">#11143</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11144";>#11144</a>)</li>
   <li>Documentation: Applied the v1.19.0 documentation updates, added the 
missing fs import to the README stream example, introduced localized global 
search, and repaired the interceptor test link. (<a 
href="https://redirect.github.com/axios/axios/issues/11101";>#11101</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11113";>#11113</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11097";>#11097</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11119";>#11119</a>)</li>
   <li>Sponsorship: Updated sponsorship links and data and added ScrapingBee as 
a sponsor. (<a 
href="https://redirect.github.com/axios/axios/issues/11124";>#11124</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11136";>#11136</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11137";>#11137</a>)</li>
   <li>CI and Release: Switched ESM smoke tests to locked dependencies and 
synchronized package and runtime version metadata for v1.20.0. (<a 
href="https://redirect.github.com/axios/axios/issues/11128";>#11128</a>, <a 
href="https://redirect.github.com/axios/axios/issues/11152";>#11152</a>)</li>
   </ul>
   <h2>🌟 New Contributors</h2>
   <p>We are thrilled to welcome our new contributors. Thank you for helping 
improve axios:</p>
   <ul>
   <li><a href="https://github.com/yens1";><code>@​yens1</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11109";>#11109</a>)</li>
   <li><a 
href="https://github.com/Sasireddy001";><code>@​Sasireddy001</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11113";>#11113</a>)</li>
   <li><a 
href="https://github.com/ari-token-security";><code>@​ari-token-security</code></a>
 (<a 
href="https://redirect.github.com/axios/axios/issues/11094";>#11094</a>)</li>
   <li><a 
href="https://github.com/timothyokooboh";><code>@​timothyokooboh</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11097";>#11097</a>)</li>
   <li><a 
href="https://github.com/gi9439041-png";><code>@​gi9439041-png</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11119";>#11119</a>)</li>
   <li><a 
href="https://github.com/Hashim1999164";><code>@​Hashim1999164</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11082";>#11082</a>)</li>
   <li><a href="https://github.com/v-dev-cl";><code>@​v-dev-cl</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11091";>#11091</a>)</li>
   <li><a href="https://github.com/r0h1tb";><code>@​r0h1tb</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11118";>#11118</a>)</li>
   <li><a href="https://github.com/ostapondo";><code>@​ostapondo</code></a> (<a 
href="https://redirect.github.com/axios/axios/issues/11121";>#11121</a>)</li>
   </ul>
   <p>Full Changelog (<a 
href="https://github.com/axios/axios/compare/v1.19.0...v1.20.0";>https://github.com/axios/axios/compare/v1.19.0...v1.20.0</a>)</p>
   </blockquote>
   </details>
   <details>
   <summary>Changelog</summary>
   <p><em>Sourced from <a 
href="https://github.com/axios/axios/blob/v1.x/CHANGELOG.md";>axios's 
changelog</a>.</em></p>
   <blockquote>
   <h1>Changelog</h1>
   </blockquote>
   </details>
   <details>
   <summary>Commits</summary>
   <ul>
   <li><a 
href="https://github.com/axios/axios/commit/84a9f3b9a4f3244b8c8e818f557d64c7b964fb25";><code>84a9f3b</code></a>
 chore(release): prepare release 1.20.0 (<a 
href="https://redirect.github.com/axios/axios/issues/11152";>#11152</a>)</li>
   <li><a 
href="https://github.com/axios/axios/commit/e6824eec5fcf9da467a9792724396badc490c469";><code>e6824ee</code></a>
 fix: core methodList, HTTP adapter errors, and add tests (<a 
href="https://redirect.github.com/axios/axios/issues/11096";>#11096</a>)</li>
   <li><a 
href="https://github.com/axios/axios/commit/d8a919fd81403d59058c0e9dbefc540407dee83f";><code>d8a919f</code></a>
 fix(xhr): flush final progress during the live loadend dispatch (<a 
href="https://redirect.github.com/axios/axios/issues/11121";>#11121</a>)</li>
   <li><a 
href="https://github.com/axios/axios/commit/2d2a21af8a433089474a2149781799c93acbcf3c";><code>2d2a21a</code></a>
 fix(interceptors): tolerate nullish handlers in syncHandlerEntries (<a 
href="https://redirect.github.com/axios/axios/issues/11118";>#11118</a>)</li>
   <li><a 
href="https://github.com/axios/axios/commit/d19040bda7a8be2f82c3c6e1a5bc03917daee39a";><code>d19040b</code></a>
 fix: harden runtime option handling (<a 
href="https://redirect.github.com/axios/axios/issues/11141";>#11141</a>)</li>
   <li><a 
href="https://github.com/axios/axios/commit/e0a02dd16671deabe2b809334d4c2ebede29a233";><code>e0a02dd</code></a>
 chore(deps): bump zizmorcore/zizmor-action from 0.6.1 to 0.6.2 in the 
github-...</li>
   <li><a 
href="https://github.com/axios/axios/commit/d10cb3aa3cda1d78721ddf96be590478df26cd81";><code>d10cb3a</code></a>
 chore(deps-dev): bump the development_dependencies group with 4 updates (<a 
href="https://redirect.github.com/axios/axios/issues/11143";>#11143</a>)</li>
   <li><a 
href="https://github.com/axios/axios/commit/2c94646eb7cb7ab9dcb2aefdb04ab1b040c28e16";><code>2c94646</code></a>
 chore(deps): bump js-yaml and mocha in /tests/smoke/cjs (<a 
href="https://redirect.github.com/axios/axios/issues/11133";>#11133</a>)</li>
   <li><a 
href="https://github.com/axios/axios/commit/76c12bce5a4fe9a45bef9a5bf2baaf599d7d382e";><code>76c12bc</code></a>
 chore(deps-dev): bump js-yaml from 4.3.0 to 4.3.1 (<a 
href="https://redirect.github.com/axios/axios/issues/11140";>#11140</a>)</li>
   <li><a 
href="https://github.com/axios/axios/commit/ba98559a7f5a18e531b5762387e5957bd281af3d";><code>ba98559</code></a>
 docs: add ScrapingBee sponsor (<a 
href="https://redirect.github.com/axios/axios/issues/11137";>#11137</a>)</li>
   <li>Additional commits viewable in <a 
href="https://github.com/axios/axios/compare/v1.19.0...v1.20.0";>compare 
view</a></li>
   </ul>
   </details>
   <br />
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=axios&package-manager=npm_and_yarn&previous-version=1.19.0&new-version=1.20.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   <details>
   <summary>Dependabot commands and options</summary>
   <br />
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot show <dependency name> ignore conditions` will show all of 
the ignore conditions of the specified dependency
   - `@dependabot ignore this major version` will close this PR and stop 
Dependabot creating any more for this major version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this minor version` will close this PR and stop 
Dependabot creating any more for this minor version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this dependency` will close this PR and stop 
Dependabot creating any more for this dependency (unless you reopen the PR or 
upgrade to it yourself)
   You can disable automated security fix PRs for this repo from the [Security 
Alerts page](https://github.com/apache/camel-karavan/network/alerts).
   
   </details>


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to