Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jan 21, 2026

Bumps graphql from 2.3.22 to 2.5.17.

Changelog

Sourced from graphql's changelog.

2.5.17 (21 Jan 2026)

Bug fixes

  • GraphQL::Dashboard: fix routes compatibility with Devise #5505
  • GraphQL::Dashboard: fix HTML/erb lint issues #5497
  • Parser: improve check for invalid number followed by name #5492 #5492
  • GraphQL::Field: optimize boot memory by removing Field.from_options #5495
  • field, argument: improve API documentation for DSL methods #5491

2.5.16 (10 Dec 2025)

Bug fixes

  • fiber-storage: properly include dependency on Ruby < 3.2 #5484
  • Fix typo in legacy_invalid_empty_selections_on_union_with_type warning #5481

2.5.15 (9 Dec 2025)

New features

  • DetailedTrace: add separate spans for debug-only .inspect calls, support debug: false config #5477
  • required: validator: Raise a developer error when all one_of: options are hidden, support allow_all_hidden: true to allow this case #5474
  • GraphQL::Testing::MockActionCable: added to support testing ActionCableSubscriptions #5482
  • legacy_invalid_empty_selections_on_union_with_type: new method added for better metadata about legacy behavior #5480

Bug fixes

  • Fix typo in date encoding error #5447
  • Fix schema printer bug #5468
  • Ensure data exists for execution errors #5452
  • Improve SDL directive argument coercion #5469
  • Don't require fiber-storage on Ruby 3.2+ #5456
  • Visibility: default to preload: true when Rails.env.staging? #5409

2.5.14 (8 Oct 2025)

Bug fixes

  • Fix error when GraphQL-Batch is used (???) #5444

2.5.13 (22 Sep 2025)

New features

  • Testing helpers: support visibility_profile: ... #5439

Bug fixes

  • Directives: correctly handle schema directive arguments which are lists of input objects #5440

... (truncated)

Commits
  • 53260f8 2.5.17
  • 8298e97 Merge pull request #5505 from rmosolgo/fix-engine-routes
  • 98f0d9e Merge pull request #5508 from duffuniverse/fix-internal-link-ref-in-apollo-su...
  • d650bf8 Fix internal link reference for payload compression
  • f903cb5 Manually include routing helpers
  • 67b94d8 Merge pull request #5506 from duffuniverse/update-stale-docs-link-in-sync-guide
  • 9c3d982 Update Relay Network Layer documentation link
  • 6deb2d9 Lazily define engine routes using routes do ... end
  • 6f21595 Merge pull request #5503 from duffuniverse/fix-docs-link-in-changesets-overvi...
  • 865664f Fix link to the docs in changesets overview guide
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [graphql](https://github.com/rmosolgo/graphql-ruby) from 2.3.22 to 2.5.17.
- [Release notes](https://github.com/rmosolgo/graphql-ruby/releases)
- [Changelog](https://github.com/rmosolgo/graphql-ruby/blob/master/CHANGELOG.md)
- [Commits](rmosolgo/graphql-ruby@v2.3.22...v2.5.17)

---
updated-dependencies:
- dependency-name: graphql
  dependency-version: 2.5.17
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code labels Jan 21, 2026
@github-actions
Copy link

Docker image tag(s) pushed:

ghcr.io/conradwt/zero-to-graphql-using-ruby:gha-21229156082
ghcr.io/conradwt/zero-to-graphql-using-ruby:pr-344 

Labels added to images:

org.opencontainers.image.created=2026-01-21T23:16:25.375Z
org.opencontainers.image.description=The purpose of this example is to provide details as to how one would go about using GraphQL with the Ruby Language.
org.opencontainers.image.licenses=MIT
org.opencontainers.image.revision=22f7f0159074faf19c117fbbbbc4884c906f771c
org.opencontainers.image.source=https://github.com/conradwt/zero-to-graphql-using-ruby
org.opencontainers.image.title=zero-to-graphql-using-ruby
org.opencontainers.image.url=https://github.com/conradwt/zero-to-graphql-using-ruby
org.opencontainers.image.version=gha-21229156082

@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Jan 22, 2026

Superseded by #345.

@dependabot dependabot bot closed this Jan 22, 2026
@dependabot dependabot bot deleted the dependabot/bundler/graphql-2.5.17 branch January 22, 2026 23:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants