Skip to content

chore(deps): bump iconv-lite from 0.6.3 to 0.7.3 - #1902

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/iconv-lite-0.7.3
Open

chore(deps): bump iconv-lite from 0.6.3 to 0.7.3#1902
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/iconv-lite-0.7.3

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 6, 2026

Copy link
Copy Markdown
Contributor

Bumps iconv-lite from 0.6.3 to 0.7.3.

Release notes

Sourced from iconv-lite's releases.

0.7.3

🚀 Improvements

🐞 Bug fixes

  • Fix UTF-32 streaming across chunk boundaries - by @​spokodev and @​bjohansebas in #393

    When decoding a UTF-32 stream, a 4-byte code unit split across a chunk boundary was decoded incorrectly, and a truncated trailing unit is now replaced with U+FFFD instead of being dropped. When encoding, a surrogate held over between chunks no longer throws. Whole-buffer decode/encode were unaffected.

New Contributors

Full Changelog: pillarjs/iconv-lite@v0.7.2...v0.7.3

v0.7.2

🐞 Bug fixes

  • Correction of CommonJS exports in TypeScript definitions - by @​plbstl in #366

    Fixed the TypeScript definitions to correctly represent the CommonJS exports of the library. This resolves issues where consumers using TypeScript would encounter errors due to incorrect type definitions that did not align with the actual module exports.

Other changes

Full Changelog: pillarjs/iconv-lite@v0.7.1...v0.7.2

v0.7.1

What's Changed

🚀 Improvements

Other changes

... (truncated)

Changelog

Sourced from iconv-lite's changelog.

0.7.3

🚀 Improvements

🐞 Bug fixes

  • Fix UTF-32 streaming across chunk boundaries - by @​spokodev and @​bjohansebas in #393

    When decoding a UTF-32 stream, a 4-byte code unit split across a chunk boundary was decoded incorrectly, and a truncated trailing unit is now replaced with U+FFFD instead of being dropped. When encoding, a surrogate held over between chunks no longer throws. Whole-buffer decode/encode were unaffected.

0.7.2

🐞 Bug fixes

  • Correction of CommonJS exports in TypeScript definitions - by @​plbstl in #366

    Fixed the TypeScript definitions to correctly represent the CommonJS exports of the library. This resolves issues where consumers using TypeScript would encounter errors due to incorrect type definitions that did not align with the actual module exports.

0.7.1

🚀 Improvements

0.7.0

🐞 Bug fixes

  • Handle split surrogate pairs when encoding utf8 - by @​yosion-p and @​ashtuchkin in #282:

    Handle a case where streaming utf8 encoder (converting js strings -> buffers) encounters surrogate pairs split between chunks (last character of one chunk is high surrogate and first character of the next chunk is a low surrogate).

  • Avoid false positives in encodingExists by using objects without a prototype - by @​bjohansebas in #328

    The encodingExists method could return incorrect results if the lookup matched properties inherited from the prototype of the object that stores the encodings, such as constructor and others. This change replaces that object with one that has no prototype, ensuring that only explicitly defined valid encodings in the library are considered. In addition, the fix is applied to the internal cache system to avoid the same kind of false positives

🚀 Improvements

  • Make explicit that decode() method supports Uint8Array input - by @​jardicc in #271
  • Remove compatibility check for StringDecoder.end method - by @​bjohansebas in #331
Commits
  • 43694e2 release: 0.7.3 (#411)
  • 11e96b5 fix(utf32): reassemble split codepoint from overflow buffer, not source index...
  • b52b9d3 feat: support iso-8859-8-i and iso-8859-8-e charset labels (#394)
  • 2bfa5ab ci: fix workflow configuration for v0.x branch (#404)
  • 6cf4f08 release: 0.7.2 (#379)
  • 7dff5ce fix: correction of CommonJS exports in TypeScript definitions (#366)
  • 61dd902 Bump actions/download-artifact from 6 to 7 (#376)
  • eda7530 Bump actions/upload-artifact from 4 to 6 (#377)
  • 4b4e4b6 Bump github/codeql-action from 4.31.2 to 4.31.9 (#375)
  • 25c8d11 chore: use files field in package.json instead of .npmignore (#372)
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by bsebas, a new releaser for iconv-lite since your current version.


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [iconv-lite](https://github.com/pillarjs/iconv-lite) from 0.6.3 to 0.7.3.
- [Release notes](https://github.com/pillarjs/iconv-lite/releases)
- [Changelog](https://github.com/pillarjs/iconv-lite/blob/v0.7.3/Changelog.md)
- [Commits](pillarjs/iconv-lite@v0.6.3...v0.7.3)

---
updated-dependencies:
- dependency-name: iconv-lite
  dependency-version: 0.7.3
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Aug 6, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants