Skip to content

Build(deps): Bump pdfjs-dist from 6.1.200 to 6.2.108 in /docs - #49550

Open
dependabot[bot] wants to merge 2 commits into
mainfrom
dependabot/npm_and_yarn/docs/pdfjs-dist-6.2.108
Open

Build(deps): Bump pdfjs-dist from 6.1.200 to 6.2.108 in /docs#49550
dependabot[bot] wants to merge 2 commits into
mainfrom
dependabot/npm_and_yarn/docs/pdfjs-dist-6.2.108

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 1, 2026

Copy link
Copy Markdown
Contributor

Bumps pdfjs-dist from 6.1.200 to 6.2.108.

Release notes

Sourced from pdfjs-dist's releases.

v6.2.108

This release contains improvements for annotation rendering, annotation editing, font conversion, image conversion, performance, SMask handling and text selection.

Changes since v6.1.200

... (truncated)

Commits
  • 0365cbd Merge pull request #21654 from calixteman/fix/cycles
  • f704f2e Merge pull request #21652 from Snuffleupagus/signatures-async-helpers
  • 01ba4c4 Merge pull request #21646 from calixteman/update/pdf.js.qcms
  • 0299cdc Merge pull request #21653 from Snuffleupagus/jsActions-_getElementsByName-sho...
  • 8c3e101 Merge pull request #21650 from mozilla/dependabot/github_actions/github/codeq...
  • 14afb86 Merge pull request #21649 from mozilla/dependabot/github_actions/github/codeq...
  • 14fc73b Merge pull request #21648 from mozilla/dependabot/github_actions/github/codeq...
  • 257f4c2 Merge pull request #21647 from mozilla/dependabot/github_actions/actions/setu...
  • 93958e4 Merge pull request #21640 from Snuffleupagus/defaultOptions-Map
  • bc6b5b0 Merge pull request #21651 from mozilla/dependabot/github_actions/actions/chec...
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 14.8 AIC · ⌖ 5.87 AIC · ⊞ 8.1K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 20.7 AIC · ⌖ 8.23 AIC · ⊞ 8.1K ·
Comment /souschef to run again

Bumps [pdfjs-dist](https://github.com/mozilla/pdf.js) from 6.1.200 to 6.2.108.
- [Release notes](https://github.com/mozilla/pdf.js/releases)
- [Commits](mozilla/pdf.js@v6.1.200...v6.2.108)

---
updated-dependencies:
- dependency-name: pdfjs-dist
  dependency-version: 6.2.108
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Aug 1, 2026
@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot quick triage for this PR:

  • This PR is currently UNSTABLE; please inspect the latest checks and repair or rerun whatever is blocking merge.
  • Branch refresh: GitHub branch update was requested from this run.
  • Please run the pr-finisher skill before handoff and summarize whether maintainer action is still needed.

Generated by 👨🍳 PR Sous Chef
Comment /souschef to run again

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 14.8 AIC · ⌖ 5.87 AIC · ⊞ 8.1K ·
Comment /souschef to run again

Copilot AI commented Aug 1, 2026

Copy link
Copy Markdown
Contributor

@copilot quick triage for this PR:

  • This PR is currently UNSTABLE; please inspect the latest checks and repair or rerun whatever is blocking merge.
  • Branch refresh: GitHub branch update was reques...

Triage complete. Here's the status:

  • Reviews — No open review threads; nothing to resolve.
  • Checks (local)make fmt and make lint both pass with no errors. No Go code changes in this PR; the only changed files are docs/package.json and docs/package-lock.json.
  • Checks (CI) — The two action_required workflow runs (Doc Build - Deploy and Visual Regression Checker) completed in 0 seconds with no jobs executed. This is GitHub's Dependabot workflow security gate: both workflows require write permissions (pages: write, id-token: write) or protected environment access, so GitHub holds them until a maintainer approves. This is expected behavior for Dependabot PRs — not a code failure.
  • Securitypdfjs-dist 6.2.108 has no known vulnerabilities in the GitHub Advisory Database.
  • Mergeable — Branch is open, non-draft, up to date with main (merge commit already present).

Actions taken: Branch was already refreshed by the prior run. Local validation confirmed the code change is correct and clean.

Hand-off: A maintainer must approve the Dependabot workflow runs (via the GitHub Actions "Approve and run" prompt on the PR) before CI can execute. Once approved, both workflows should pass. No code changes are needed.

Copilot AI requested a review from gh-aw-bot August 1, 2026 10:06
@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot quick triage for this PR:

  • This PR is currently UNSTABLE; please inspect the latest checks and repair or rerun whatever is blocking merge.
  • Branch refresh: GitHub branch update was requested from this run.
  • Please run the pr-finisher skill before handoff and summarize whether maintainer action is still needed.

Generated by 👨🍳 PR Sous Chef
Comment /souschef to run again

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 20.7 AIC · ⌖ 8.23 AIC · ⊞ 8.1K ·
Comment /souschef to run again

Copilot AI commented Aug 1, 2026

Copy link
Copy Markdown
Contributor

@copilot quick triage for this PR:

  • This PR is currently UNSTABLE; please inspect the latest checks and repair or rerun whatever is blocking merge.
  • Branch refresh: GitHub branch update was reques...

Status is unchanged from the prior triage. The two action_required workflow runs (Doc Build - Deploy and Visual Regression Checker) are GitHub's Dependabot workflow security gate — not code failures. Both workflows require elevated permissions (pages: write, id-token: write) that GitHub withholds until a maintainer explicitly approves Dependabot's workflow runs.

No code changes are needed. A maintainer must approve the pending workflow runs via the "Approve and run" prompt in GitHub Actions before CI can execute and this PR can merge.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants