-
Notifications
You must be signed in to change notification settings - Fork 58
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Bump the npm_and_yarn group across 1 directory with 17 updates #611
Closed
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the npm_and_yarn group with 13 updates in the / directory: | Package | From | To | | --- | --- | --- | | [marked](https://github.com/markedjs/marked) | `1.2.9` | `4.0.10` | | [postcss](https://github.com/postcss/postcss) | `7.0.39` | `8.4.31` | | [@cypress/request](https://github.com/cypress-io/request) | `2.88.12` | `3.0.1` | | [cypress](https://github.com/cypress-io/cypress) | `4.12.1` | `13.7.3` | | [tough-cookie](https://github.com/salesforce/tough-cookie) | `2.5.0` | `removed` | | [favicons](https://github.com/itgalaxy/favicons) | `6.2.2` | `7.2.0` | | [favicons-webpack-plugin](https://github.com/jantimon/favicons-webpack-plugin) | `4.2.0` | `6.0.1` | | [jest](https://github.com/jestjs/jest/tree/HEAD/packages/jest) | `24.9.0` | `29.7.0` | | [express](https://github.com/expressjs/express) | `4.18.2` | `4.19.2` | | [ip](https://github.com/indutny/node-ip) | `1.1.5` | `1.1.9` | | [node-forge](https://github.com/digitalbazaar/forge) | `0.10.0` | `1.3.1` | | [webpack-dev-server](https://github.com/webpack/webpack-dev-server) | `3.11.3` | `5.0.4` | | [tar](https://github.com/isaacs/node-tar) | `6.2.0` | `6.2.1` | Updates `marked` from 1.2.9 to 4.0.10 - [Release notes](https://github.com/markedjs/marked/releases) - [Changelog](https://github.com/markedjs/marked/blob/master/.releaserc.json) - [Commits](markedjs/marked@v1.2.9...v4.0.10) Updates `postcss` from 7.0.39 to 8.4.31 - [Release notes](https://github.com/postcss/postcss/releases) - [Changelog](https://github.com/postcss/postcss/blob/main/CHANGELOG.md) - [Commits](postcss/postcss@7.0.39...8.4.31) Updates `@cypress/request` from 2.88.12 to 3.0.1 - [Release notes](https://github.com/cypress-io/request/releases) - [Changelog](https://github.com/cypress-io/request/blob/master/CHANGELOG.md) - [Commits](cypress-io/request@v2.88.12...v3.0.1) Updates `cypress` from 4.12.1 to 13.7.3 - [Release notes](https://github.com/cypress-io/cypress/releases) - [Changelog](https://github.com/cypress-io/cypress/blob/develop/CHANGELOG.md) - [Commits](cypress-io/cypress@v4.12.1...v13.7.3) Removes `tough-cookie` Updates `favicons` from 6.2.2 to 7.2.0 - [Release notes](https://github.com/itgalaxy/favicons/releases) - [Commits](itgalaxy/favicons@v6.2.2...v7.2.0) Updates `favicons-webpack-plugin` from 4.2.0 to 6.0.1 - [Changelog](https://github.com/jantimon/favicons-webpack-plugin/blob/main/CHANGELOG.md) - [Commits](jantimon/favicons-webpack-plugin@v4.2.0...v6.0.1) Updates `jest` from 24.9.0 to 29.7.0 - [Release notes](https://github.com/jestjs/jest/releases) - [Changelog](https://github.com/jestjs/jest/blob/main/CHANGELOG.md) - [Commits](https://github.com/jestjs/jest/commits/v29.7.0/packages/jest) Updates `express` from 4.18.2 to 4.19.2 - [Release notes](https://github.com/expressjs/express/releases) - [Changelog](https://github.com/expressjs/express/blob/master/History.md) - [Commits](expressjs/express@4.18.2...4.19.2) Updates `ip` from 1.1.5 to 1.1.9 - [Commits](indutny/node-ip@v1.1.5...v1.1.9) Updates `minimist` from 0.0.8 to 1.2.8 - [Changelog](https://github.com/minimistjs/minimist/blob/main/CHANGELOG.md) - [Commits](minimistjs/minimist@v0.0.8...v1.2.8) Updates `node-forge` from 0.10.0 to 1.3.1 - [Changelog](https://github.com/digitalbazaar/forge/blob/main/CHANGELOG.md) - [Commits](digitalbazaar/forge@0.10.0...v1.3.1) Updates `webpack-dev-server` from 3.11.3 to 5.0.4 - [Release notes](https://github.com/webpack/webpack-dev-server/releases) - [Changelog](https://github.com/webpack/webpack-dev-server/blob/master/CHANGELOG.md) - [Commits](webpack/webpack-dev-server@v3.11.3...v5.0.4) Updates `sharp` from 0.28.3 to 0.33.3 - [Release notes](https://github.com/lovell/sharp/releases) - [Changelog](https://github.com/lovell/sharp/blob/main/docs/changelog.md) - [Commits](lovell/sharp@v0.28.3...v0.33.3) Updates `tar` from 6.2.0 to 6.2.1 - [Release notes](https://github.com/isaacs/node-tar/releases) - [Changelog](https://github.com/isaacs/node-tar/blob/main/CHANGELOG.md) - [Commits](isaacs/node-tar@v6.2.0...v6.2.1) Updates `webpack-dev-middleware` from 3.7.2 to 7.2.1 - [Release notes](https://github.com/webpack/webpack-dev-middleware/releases) - [Changelog](https://github.com/webpack/webpack-dev-middleware/blob/master/CHANGELOG.md) - [Commits](webpack/webpack-dev-middleware@v3.7.2...v7.2.1) Updates `xml2js` from 0.4.23 to 0.6.2 - [Commits](https://github.com/Leonidas-from-XIV/node-xml2js/commits/0.6.2) --- updated-dependencies: - dependency-name: marked dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: postcss dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: "@cypress/request" dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: cypress dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: tough-cookie dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: favicons dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: favicons-webpack-plugin dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: jest dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: express dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: ip dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: minimist dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: node-forge dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: webpack-dev-server dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: sharp dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: tar dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: webpack-dev-middleware dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: xml2js dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <[email protected]>
dependabot
bot
added
the
dependencies
Pull requests that update a dependency file
label
Apr 11, 2024
Superseded by #612. |
dependabot
bot
deleted the
dependabot/npm_and_yarn/npm_and_yarn-0d34a401be
branch
April 23, 2024 00:26
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the npm_and_yarn group with 13 updates in the / directory:
1.2.9
4.0.10
7.0.39
8.4.31
2.88.12
3.0.1
4.12.1
13.7.3
2.5.0
removed
6.2.2
7.2.0
4.2.0
6.0.1
24.9.0
29.7.0
4.18.2
4.19.2
1.1.5
1.1.9
0.10.0
1.3.1
3.11.3
5.0.4
6.2.0
6.2.1
Updates
marked
from 1.2.9 to 4.0.10Release notes
Sourced from marked's releases.
... (truncated)
Commits
ae01170
chore(release): 4.0.10 [skip ci]fceda57
🗜️ build [skip ci]8f80657
fix(security): fix redos vulnerabilitiesc4a3ccd
Merge pull request from GHSA-rrrm-qjm4-v8hfd7212a6
chore(deps-dev): Bump jasmine from 4.0.0 to 4.0.1 (#2352)5a84db5
chore(deps-dev): Bump rollup from 2.62.0 to 2.63.0 (#2350)2bc67a5
chore(deps-dev): Bump markdown-it from 12.3.0 to 12.3.2 (#2351)98996b8
chore(deps-dev): Bump@babel/preset-env
from 7.16.5 to 7.16.7 (#2353)ebc2c95
chore(deps-dev): Bump highlight.js from 11.3.1 to 11.4.0 (#2354)e5171a9
chore(release): 4.0.9 [skip ci]Updates
postcss
from 7.0.39 to 8.4.31Release notes
Sourced from postcss's releases.
... (truncated)
Changelog
Sourced from postcss's changelog.
... (truncated)
Commits
90208de
Release 8.4.31 version58cc860
Fix carrier return parsing4fff8e4
Improve pnpm test outputcd43ed1
Update dependenciescaa916b
Update dependencies8972f76
Typo11a5286
Typo45c5501
Release 8.4.30 versionbc3c341
Update linterb2be58a
Merge pull request #1881 from romainmenke/improve-sourcemap-performance--phil...Updates
@cypress/request
from 2.88.12 to 3.0.1Release notes
Sourced from
@cypress/request
's releases.Changelog
Sourced from
@cypress/request
's changelog.... (truncated)
Commits
ca62f3a
Merge pull request #44 from MikeMcC399/peg/qsfb9f625
fix(deps): peg qs to 6.10.499338c8
chore: updates related to release process (#41)c5bcf21
feat: Add allowInsecureRedirect optionUpdates
cypress
from 4.12.1 to 13.7.3Release notes
Sourced from cypress's releases.
... (truncated)
Commits
94aad9a
chore: release 13.7.3 (#29310)1fa3e7f
fix: Fix issue with display of assertions when using custom messages (#29243)96b14c3
misc: suppress benign vulkan warnings (#29278)5251d2b
fix: launch args with multiple values inside quotes (#29077)1114ff4
chore: Update v8 snapshot cache (#29286)00ea3de
test: temporarily disable beforeEach assertion in issue 1244 regression test ...7410909
chore: update kitchensink to latest (2.0.6) (#29252)d794f93
docs: Add link to chromeWebSecurity read more (#29146)5a88dc1
chore: Update v8 snapshot cache (#29254)bfac3ba
misc: disable enhanced ad privacy dialog in chrome (#29250)Maintainer changes
This version was pushed to npm by atofstryker, a new releaser for cypress since your current version.
Removes
tough-cookie
Updates
favicons
from 6.2.2 to 7.2.0Release notes
Sourced from favicons's releases.
... (truncated)
Commits
c0591a3
7.2.0837cd1c
Added new snapshot images6da7153
Added support for latest Apple Splash-Screens1b7ecf5
Fix repository urla3e5e7c
7.1.5d86748c
Make unit tests ES modules3bd8436
Update minor dependencies702be9f
Update Sharp to 0.33606fe94
chore(deps): bump sharp from 0.32.4 to 0.32.6cdaa232
chore(deps-dev): bump@babel/traverse
from 7.22.8 to 7.23.2Maintainer changes
This version was pushed to npm by andy128k, a new releaser for favicons since your current version.
Updates
favicons-webpack-plugin
from 4.2.0 to 6.0.1Changelog
Sourced from favicons-webpack-plugin's changelog.
... (truncated)
Commits
4751ab1
Version 6.0.1a353147
Update dependencies92d9e1b
Update CI and minimal supported version of NodeJS41004ae
Use async-await syntax in runCached7879498
Generate test coverage report in HTML format tood8567b6
Hide private methods. Regenerate type declarations.3a800f0
Extract findHtmlWebpackPlugin function7d52c5f
Replace tapAsync with tapPromise6331e91
Lift common code1179c1b
Update dependenciesMaintainer changes
This version was pushed to npm by andy128k, a new releaser for favicons-webpack-plugin since your current version.
Updates
jest
from 24.9.0 to 29.7.0Release notes
Sourced from jest's releases.
... (truncated)
Changelog
Sourced from jest's changelog.
... (truncated)
Commits
4e56991
v29.7.055cd6a0
v29.6.4fb7d95c
v29.6.349bacb9
chore: update jest repo organisation in urls (#14413)0fd5b1c
v29.6.21f019af
v29.6.1c1e5b8a
v29.6.06ffa48d
chore: upgrade TypeScript to v5 (#14155)a95eeb6
chore: update tsd runner (#14020)39f3bed
v29.5.0Maintainer changes
This version was pushed to npm by simenb, a new releaser for jest since your current version.
Updates
express
from 4.18.2 to 4.19.2Release notes
Sourced from express's releases.
... (truncated)
Changelog
Sourced from express's changelog.
Commits
04bc627
4.19.2da4d763
Improved fix for open redirect allow list bypass4f0f6cc
4.19.1a003cfa
Allow passing non-strings to res.location with new encoding handling checks f...a1fa90f
fixed un-edited version in history.md for 4.19.011f2b1d
build: fix build due to inconsistent supertest behavior in older versions084e365
4.19.00867302
Prevent open redirect allow list bypass due to encodeurl567c9c6
Add note on how to update docs for new release (#5541)69a4cf2
deps: [email protected]Maintainer changes
This version was pushed to npm by wesleytodd, a new releaser for express since your current version.
Updates
ip
from 1.1.5 to 1.1.9Commits
1ecbf2f
1.1.96a3ada9
lib: fixed CVE-2023-42282 and added unit test5dc3b2f
1.1.88e6f28b
lib: even better node 6 support088c9e5
1.1.71a4ca35
lib: add back support for Node.js 6af82ef4
1.1.6dba19f6
package: exclude test folder from publishing7cd7f30
ci: use github workflows4de50ae
lib: node 18 supportUpdates
minimist
from 0.0.8 to 1.2.8Changelog
Sourced from minimist's changelog.