-
Notifications
You must be signed in to change notification settings - Fork 17
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Dependabots 21 nov #923
Dependabots 21 nov #923
Conversation
Bumps [actions/dependency-review-action](https://github.com/actions/dependency-review-action) from 4.4.0 to 4.5.0. - [Release notes](https://github.com/actions/dependency-review-action/releases) - [Commits](actions/dependency-review-action@4081bf9...3b139cf) --- updated-dependencies: - dependency-name: actions/dependency-review-action dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.27.0 to 3.27.5. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@6624720...f09c1c0) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps node from `840dad0` to `c65ab33`. --- updated-dependencies: - dependency-name: node dependency-type: direct:production ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps nginx from `28402db` to `bc5eac5`. --- updated-dependencies: - dependency-name: nginx dependency-type: direct:production ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps [vue-router](https://github.com/vuejs/router) from 4.2.4 to 4.4.5. - [Release notes](https://github.com/vuejs/router/releases) - [Commits](vuejs/router@v4.2.4...v4.4.5) --- updated-dependencies: - dependency-name: vue-router dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps [@types/lodash](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/lodash) from 4.14.197 to 4.17.13. - [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases) - [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/lodash) --- updated-dependencies: - dependency-name: "@types/lodash" dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps [sinon](https://github.com/sinonjs/sinon) from 11.1.2 to 19.0.2. - [Release notes](https://github.com/sinonjs/sinon/releases) - [Changelog](https://github.com/sinonjs/sinon/blob/main/docs/changelog.md) - [Commits](sinonjs/sinon@v11.1.2...v19.0.2) --- updated-dependencies: - dependency-name: sinon dependency-type: direct:development update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps [core-js](https://github.com/zloirock/core-js/tree/HEAD/packages/core-js) from 3.32.1 to 3.39.0. - [Release notes](https://github.com/zloirock/core-js/releases) - [Changelog](https://github.com/zloirock/core-js/blob/master/CHANGELOG.md) - [Commits](https://github.com/zloirock/core-js/commits/v3.39.0/packages/core-js) --- updated-dependencies: - dependency-name: core-js dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps [electron](https://github.com/electron/electron) from 24.8.8 to 33.2.0. - [Release notes](https://github.com/electron/electron/releases) - [Changelog](https://github.com/electron/electron/blob/main/docs/breaking-changes.md) - [Commits](electron/electron@v24.8.8...v33.2.0) --- updated-dependencies: - dependency-name: electron dependency-type: direct:development update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <[email protected]>
Dependency ReviewThe following issues were found:
License Issuespackage.json
OpenSSF ScorecardScorecard details
Scanned Files
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM
Pipfile
Outdated
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Why do we need this file?
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Small suggestions about new v3.27.5
of github/codeql-action
Co-authored-by: Anni Piragauta <[email protected]>
f9b20b9
Co-authored-by: Anni Piragauta <[email protected]>
Co-authored-by: Anni Piragauta <[email protected]>
Co-authored-by: Anni Piragauta <[email protected]>
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM
|
build(deps-dev): bump electron from 24.8.8 to 33.2.0 #900 build(deps): bump core-js from 3.32.1 to 3.39.0 #901 build(deps-dev): bump sinon from 11.1.2 to 19.0.2 #902 build(deps): bump @types/lodash from 4.14.197 to 4.17.13 #903 build(deps): bump vue-router from 4.2.4 to 4.4.5 #904 build(deps): bump nginx from
28402db
tobc5eac5
#905 build(deps): bump node from840dad0
to99c5f40
#906 build(deps): bump github/codeql-action from 3.27.0 to 3.27.2 #907 fix: status bar bullets color of light mode #908 build(deps): bump node from840dad0
to49d21f5
#909 build(deps): bump github/codeql-action from 3.27.0 to 3.27.3 #910 build(deps): bump node from840dad0
todb2ab38
#912 build(deps): bump github/codeql-action from 3.27.0 to 3.27.4 #913 build(deps): bump node from840dad0
to11ea380
#914 build(deps): bump node from840dad0
toc65ab33
#916 fix: disable send button while getting quotes #917 build(deps): bump github/codeql-action from 3.27.0 to 3.27.5 #918 fix: create consistent spacing between elements on pegout option card #920 refactor: change generate to derive on pegput native button for BTC addr #921 build(deps): bump actions/dependency-review-action from 4.4.0 to 4.5.0 #922