Skip to content

⬆️ Updates @vercel/node to v21 - #1223

Open
renovate[bot] wants to merge 1 commit into
masterfrom
renovate/vercel-node-21.x
Open

renovate[bot] wants to merge 1 commit into
masterfrom
renovate/vercel-node-21.x

Conversation

@renovate

@renovate renovate Bot commented Oct 5, 2026 •

Copy link
Copy Markdown

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Change Age Confidence
@vercel/node (source) ^1.11.1 → ^21.0.0 age confidence

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

vercel/vercel (@​vercel/node)

v16.0.0

Compare Source

Major Changes
Minor Changes
  • [now update] Change update notification and remove previous Now CLI installation on preinstall: #​2659
  • [now dev] Bundle canary builders for Now CLI canary: #​2661
  • [now dev] Support JSON and HTML error responses: #​2677
Patches
  • [now update] Render the proper tag and improve yarn detection logic: #​2595
  • Remove Buffer() deprecation message: #​2604
  • [now dev] Fix routing catch-all with no slash prefix edge case: #​2626
  • [now dev] Clean up before calling process.exit: #​2629
  • [now dev] Remove accidental test.only(): #​2644
  • Add information when team/user/args parsing fails to Sentry reports: #​2635
  • [now dev] Add server: now response header: #​2646
  • [CircleCI] Run integration tests on multiple versions of Node.js: #​2596
  • [now dev] Improve integration tests for now dev: #​2597
  • [now dev] Prevent recursive function call for handle: "filesystem": #​2630
  • [now deploy] Fix variable name typo: #​2649
  • [now dev] Redirect when request has multiple slashes: #​2645
  • [now dev] Fix aurelia test: #​2660
  • [CircleCI] Add seperate jobs for now dev integration tests: #​2662
  • [now dev] Update outdated dependencies in tests: #​2666
  • [now dev] Update NOW_BUILDER_DEBUG base on --debug flag: #​2655
  • [CircleCI] Add more test suites for macOS support: #​2663
  • Bump yarn to v1.17.3: #​2669
  • [now dev] Bump @now/build-utils to 0.9.6: #​2672
  • [now deploy] Change link for legacy warning: #​2674
  • [now dev] Use a consistent "pod id" for x-now-id: #​2679
  • [preinstall] Adjust the error messages: #​2682
  • Fix routes definition in now-dev-static-routes test fixture: #​2687
  • [now dev] Allow custom 404 pages via routes: #​2689
  • [now dev] Support JSON and HTML redirect responses: #​2690
  • Assert 200 response status on "deploy a dockerfile project" integration test: #​2684
  • Update @now/build-utils to v0.9.8: #​2694
  • [now update] Remove is-installed-globally: #​2700
Credits

Huge thanks to @​sophearak, @​TooTallNate, and @​maxchehab for helping!

v15.0.0

Compare Source

Major Changes
  • Group builds with similar paths together to reduce the output: #​2015
Minor Changes
Patches
  • [now dev] Don't add .gitignore to the ignore list: #​2025
  • [now dev] Centralize error responses logic: #​2026
  • [now dev] Use pcre-to-regexp to match routes: #​2027
  • [now dev] Listen on the next available port when requested port is taken: #​2032
  • Add output to DevServer class: #​2034
  • [now dev] Fix the path provided to lambda invocations: #​2036
  • [now dev] Send the NO_STATUS_CODE_FROM_LAMBDA upon lambda error: #​2037
  • [now dev] Use the Output helper: #​2038
  • [now dev] Send INTERNAL_LAMBDA_NOT_FOUND: #​2039
  • [now dev] Set the Now proxy and response headers: #​2041
  • [now dev] Add build deduping: #​2044
  • [now dev] Use cyan for link color: 9033bcd
  • Update @zeit/fun to v0.6.0: #​2049
  • [now dev] Add support for .env and .env.build file to define Now secrets: #​2048
  • Refine test jobs: #​2028
  • Made aliases clickable after assigning: #​2035
  • Adjusted aliasing error message to match server: #​2030
Credits

Huge thanks to @​AndyBitz, @​amio, and @​TooTallNate for helping!

v14.0.0

Compare Source

Major Changes
Minor Changes
  • "now domains transfer-in" support: #​1767
  • Add ability to import a zone file: #​1851
  • Added transferredAt and transferStartedAt: #​1865
Patches
  • Added default script that will run if now fails to install: #​1832
  • Update legacy note structure: #​1855
  • Add domain transfer in pricing: #​1849
  • Add missing error: InvalidAuthCode: #​1859
  • Add import zonefile copy: #​1860
  • Domain transfer in copy change: #​1861
  • Render validation errors for Now 1.0: #​1862
  • Check the existence of the project before we delete it: #​1837
  • Check if deploymentId exists: #​1857
  • Handle known domains rm errors: #​1868
  • Show builds rate limit message correctly: #​1866
  • Bumped fetch-h2 to latest version: #​1869
  • Added import help info to now-cli (now dns -h): #​1876
  • Update inspect copy: #​1875
  • Catch SourceNotFound error for domains transfer-in: #​1879
  • Handle domain rm attempt for an in progress transfer: #​1880
  • Handle dns add 400 errors properly: #​1867
  • Fix typo in alias command: #​1870
  • Add a hint to an error message about missing token: #​1877
  • Revised the way conflicts are handled when removing a domain: #​1884
Credits

Huge thanks to @​javivelasco, @​mglagola, @​AndyBitz, @​gtsiolis, @​arunoda, @​OlliV, @​sjkaliski, and @​HeeL for helping!

v13.0.2

Compare Source

Patches
  • Made now domains inspect match now inspect: #​1815

v13.0.1

Compare Source

Patches
  • Overhauled now inspect: #​1804
  • Add domain verification error document: #​1806
  • Fixed several errors and removed useless file: #​1807
  • Fixed several errors: #​1811
  • Bumped update-check to latest version: #​1814
Credits

Huge thanks to @​timothyis for helping!

v13.0.0

Major Changes
  • New domains API + Typescript migrations: #​1728
Minor Changes
Patches
  • Use our own @zeit/git-hooks package: #​1748
  • Fix list DNS issue and migrate certs issue to Typescript: #​1747
  • Ran prettier over the entire codebase: #​1749
  • Render better error when source missing: #​1754
  • Domains improvements: #​1795
  • Fix issue when we define aliases in now.json array: #​1757
  • Wait for unhandled rejections to be reported before exiting: #​1760
  • Do not use certs and aliases in now domains rm: #​1761
  • Remove extra request when adding a domain: #​1762
  • Fix now dns ls misalignment when a domain is not found: #​1777
  • Moved docs about publishing a release to Wiki: #​1786
  • Improved performance when creating deployment: #​1787
  • Only run prettier for JS/TS files: #​1791
  • Style fixes for domain and cert commands: #​1796
Credits

Huge thanks to @​javivelasco, @​pranaygp, @​yairhaimo, @​amio, @​nkzawa, and @​OlliV for helping!

v12.0.1

Compare Source

Patch Changes

v12.0.0

Compare Source

Patch Changes

v11.0.0

Compare Source

Patch Changes

v10.0.0

Compare Source

Patch Changes

v9.0.1

Patch Changes
  • aad9541: Run on-disk JavaScript workers with a lazily resolved system Node.js executable in native CLI installations, and install the matching Build Utils preview tarball for dynamically installed Builders.
  • Updated dependencies [aad9541]

v8.1.2

Patch Changes

v8.1.0

Compare Source

Minor Changes
  • 44be84d: Default middleware.[jt]s to the Node.js runtime for projects created on or after 2026-09-01, and warn that the edge runtime is deprecated.

    Outside of vercel dev the new default also requires VERCEL_MIDDLEWARE_DEFAULT_RUNTIME_NODEJS=1, which the platform sets during rollout. An explicit export const config = { runtime: 'edge' } keeps the edge runtime.

Patch Changes

v7.0.0

Compare Source

Patch Changes

v6.0.0

Patch Changes
  • cd6b038: Honor package.json pnpm pins without Corepack, and default new projects to pnpm 11.

    When Corepack is off, devEngines.packageManager is preferred, then a lockfile-compatible packageManager field, then engines.pnpm as a selector. Unpinned lockfile 9.0 projects created on or after 2026-08-19 use pnpm 11 (Node 22+) if /pnpm11 is present in the build image; otherwise they keep pnpm 10.

  • 0d71a61: Declare @vercel/build-utils as a peer dependency provided by Vercel CLI so builders load correctly with strict dependency isolation, including pnpm global installs.

  • Updated dependencies [0b08df6]

  • Updated dependencies [cd6b038]

  • Updated dependencies [96444ba]

v5.10.2

Patch Changes

v5.10.1

Patch Changes
  • b4f09c1: Support selecting Bun 1.4.x as an explicit runtime and build-time package manager, including local Bun servers.
  • Updated dependencies [b4f09c1]

v5.10.0

Minor Changes
  • 852e1a0: Move middleware matcher utils from node builder to general build utils.
Patch Changes

v5.9.9

Patch Changes

v5.9.8

Patch Changes

v5.9.7

Patch Changes

v5.9.6

Patch Changes

v5.9.5

Patch Changes

v5.9.3

Compare Source

Patch Changes

v5.9.2

Compare Source

Patch Changes

v5.9.1

Compare Source

Patch Changes

v5.9.0

Compare Source

Minor Changes
  • 4502520: Support Node.js Routing Middleware entrypoints through proxy.entrypoint, with optional path matching through proxy.matcher. The matcher may be configured in the entrypoint source or vercel.json, but not both.
Patch Changes

v5.8.27

Compare Source

Patch Changes

v5.8.26

Compare Source

Patch Changes

v5.8.25

Compare Source

Patch Changes

v5.8.24

Compare Source

Patch Changes

v5.8.23

Compare Source

Patch Changes

v5.8.22

Compare Source

Patch Changes

v5.8.21

Compare Source

Patch Changes

v5.8.20

Compare Source

Patch Changes

v5.8.19

Compare Source

Patch Changes

v5.8.18

Compare Source

Patch Changes

v5.8.17

Compare Source

Patch Changes

v5.8.16

Compare Source

Patch Changes

v5.8.15

Compare Source

Patch Changes

v5.8.14

Compare Source

Patch Changes

v5.8.13

Compare Source

Patch Changes

v5.8.12

Compare Source

Patch Changes

v5.8.11

Compare Source

Patch Changes

v5.8.10

Compare Source

Patch Changes

v5.8.9

Compare Source

Patch Changes

v5.8.8

Compare Source

Patch Changes
  • ab0e5aa: Bump @​vercel/nft to 1.10.0 and enable moduleSyncCatchall tracing in node, backends, and next builders.

v5.8.7

Compare Source

Patch Changes

v5.8.6

Compare Source

Patch Changes

v5.8.5

Compare Source

Patch Changes

v5.8.4

Compare Source

Patch Changes

v5.8.3

Compare Source

Patch Changes

v5.8.2

Compare Source

Patch Changes

v5.8.1

Compare Source

Patch Changes

v5.8.0

Compare Source

Minor Changes
  • 22f77b9: Add project manifest to node builder.
Patch Changes

v5.7.17

Compare Source

Patch Changes
  • f0d7d32: Disable response streaming for lambdas with awsLambdaHandler set inside getLambdaSupportsStreaming. This closes a gap where non-Node builders (e.g. @vercel/redwood) constructed NodejsLambda with awsLambdaHandler but no explicit supportsResponseStreaming, causing finalizeLambda to silently flip streaming on for AWS custom handlers. With the gate now enforced centrally in finalizeLambda, the equivalent @vercel/node build-time check from #​16266 is consolidated away — all builders go through the same gate.
  • Updated dependencies [f0d7d32]

v5.7.16

Compare Source

Patch Changes

v5.7.15

Compare Source

Patch Changes
  • f7b5377: fix(node): replace deprecated url.parse() with WHATWG URL API to silence DEP0169 deprecation warning on cold starts

v5.7.13

Compare Source

Patch Changes

v5.7.12

Compare Source

Patch Changes

v5.7.11

Compare Source

Patch Changes

v5.7.10

Compare Source

Patch Changes

v5.7.8

Compare Source

Patch Changes

v5.7.7

Compare Source

Patch Changes

v5.7.6

Compare Source

Patch Changes

v5.7.5

Compare Source

Patch Changes

v5.7.4

Compare Source

Patch Changes

v5.7.3

Compare Source

Patch Changes

v5.7.2

Compare Source

Patch Changes

v5.7.1

Compare Source

Patch Changes
  • f0d7d32: Disable response streaming for lambdas with awsLambdaHandler set inside getLambdaSupportsStreaming. This closes a gap where non-Node builders (e.g. @vercel/redwood) constructed NodejsLambda with awsLambdaHandler but no explicit supportsResponseStreaming, causing finalizeLambda to silently flip streaming on for AWS custom handlers. With the gate now enforced centrally in finalizeLambda, the equivalent @vercel/node build-time check from #​16266 is consolidated away — all builders go through the same gate.
  • Updated dependencies [f0d7d32]

v5.7.0

Compare Source

Minor Changes
  • Add experimental bundling to node bundler (#​15691)

v5.6.24

Compare Source

Patch Changes

v5.6.23

Compare Source

Patch Changes

v5.6.22

Compare Source

Patch Changes

v5.6.21

Compare Source

Patch Changes

v5.6.20

Compare Source

Patch Changes

v5.6.18

Compare Source

Patch Changes

v5.6.17

Compare Source

Patch Changes

v5.6.16

Compare Source

Patch Changes

v5.6.15

Compare Source

Patch Changes

v5.6.12

Compare Source

Patch Changes

v5.6.11

Compare Source

Patch Changes

v5.6.10

Compare Source

Patch Changes

v5.6.9

Compare Source

Patch Changes

v5.6.8

Compare Source

Patch Changes

❗ Important

✂ PR body was truncated to here.


Configuration

📅 Schedule: (in timezone Europe/Moscow)

  • Branch creation
    • "after 10pm every weekday,before 5am every weekday,every weekend"
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
@socket-security

Copy link
Copy Markdown

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updatednpm/​@​vercel/​node@​1.15.4 ⏵ 21.0.099 +181007799 +1100

View full report

@github-actions
github-actions Bot requested a review from AlexRogalskiy October 5, 2026 21:45
@github-actions

github-actions Bot commented Oct 5, 2026

Copy link
Copy Markdown

Thanks for the PR!

This section of the codebase is owner by https://github.com/AlexRogalskiy/ - if they write a comment saying "LGTM" then it will be merged.

@github-actions

github-actions Bot commented Oct 5, 2026

Copy link
Copy Markdown

Thanks for opening an issue! Make sure you've followed CONTRIBUTING.md.

@github-actions

github-actions Bot commented Oct 5, 2026

Copy link
Copy Markdown

Hello from PR Helper

Is your PR ready for review and processing? Mark the PR ready by including #pr-ready in a comment.

If you still have work to do, even after marking this ready. Put the PR on hold by including #pr-onhold in a comment.

This branch had an error being deployed

1 failed deployment
Preview — 23a013dc Deployed Oct 5, 2026 by vercel[bot]
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants