Skip to content
This repository has been archived by the owner on Feb 8, 2024. It is now read-only.

fix(deps): update all non-major dependencies (minor) #452

Merged
merged 1 commit into from
Feb 20, 2021

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Feb 20, 2021

WhiteSource Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
@sentry/browser ^5.29.2 -> ^5.30.0 age adoption passing confidence
@sentry/integrations ^5.29.2 -> ^5.30.0 age adoption passing confidence
@sentry/node ^5.29.2 -> ^5.30.0 age adoption passing confidence
@socialgouv/kosko-charts ^4.7.11 -> ^4.8.2 age adoption passing confidence
eslint (source) ^7.15.0 -> ^7.20.0 age adoption passing confidence
graphql ^15.4.0 -> ^15.5.0 age adoption passing confidence
graphql-request ^3.3.0 -> ^3.4.0 age adoption passing confidence
node 14.13.1-alpine3.12 -> 14.15.5-alpine3.12 age adoption passing confidence
react-bootstrap (source) ^1.4.3 -> ^1.5.0 age adoption passing confidence
sentry-testkit (source) ^3.2.4 -> ^3.3.0 age adoption passing confidence

Release Notes

getsentry/sentry-javascript

v5.30.0

Compare Source

  • [node] fix: esbuild warning dynamic require (#​3164)
  • [tracing] ref: Expose required things for React Native auto tracing (#​3144)
  • [ember] fix: rootURL breaking route recognition (#​3166)
  • [serverless] feat: Zip serverless dependencies for AWS Lambda (#​3110)
  • [build] feat: Target to deploy on AWS Lambda (#​3165)
  • [build] ref: Remove TravisCI (#​3149)
  • [build] ref: Upgrade action-prepare-release to latest version
SocialGouv/kosko-charts

v4.8.2

Compare Source

Bug Fixes

v4.8.1

Compare Source

Bug Fixes

v4.8.0

Compare Source

Features
  • deps: update registry.gitlab.factory.social.gouv.fr/socialgouv/docker/wait-for-http docker tag to v4 (#​416) (b702ed1)

4.7.11 (2021-02-14)

Bug Fixes

4.7.10 (2021-02-12)

Bug Fixes

4.7.9 (2021-02-12)

Bug Fixes

4.7.8 (2021-02-10)

Bug Fixes

4.7.7 (2021-02-09)

Bug Fixes

4.7.6 (2021-02-07)

Bug Fixes

4.7.5 (2021-02-05)

Bug Fixes

4.7.4 (2021-02-04)

Bug Fixes

4.7.3 (2021-02-04)

Bug Fixes

4.7.2 (2021-02-03)

Bug Fixes

4.7.1 (2021-01-31)

Bug Fixes
eslint/eslint

v7.20.0

Compare Source

v7.19.0

Compare Source

v7.18.0

Compare Source

  • e3264b2 Upgrade: @​eslint/eslintrc to improve error message for invalid extends (#​14009) (Milos Djermanovic)
  • f17c3c3 Update: check logical assignment operators in the complexity rule (#​13979) (Milos Djermanovic)
  • 672deb0 Docs: fix no-invalid-regexp docs regarding ecmaVersion (#​13991) (Milos Djermanovic)
  • 179a910 Fix: --init crash on question to upgrade/downgrade ESLint (fixes #​13978) (#​13995) (Milos Djermanovic)
  • 292b1c0 Fix: no-extra-parens false positive with let identifier in for-loop (#​13981) (Milos Djermanovic)
  • de61f94 Sponsors: Sync README with website (ESLint Jenkins)
  • 9250d16 Upgrade: Bump lodash to fix security issue (#​13993) (Frederik Prijck)
  • 75fea9b Sponsors: Sync README with website (ESLint Jenkins)
  • f2687e7 Docs: update space-in-parens related rules (#​13985) (Chris Brody)
  • 4a38bbe Docs: space-in-parens examples with no arguments etc. (#​13987) (Chris Brody)
  • 3e49169 Sponsors: Sync README with website (ESLint Jenkins)
  • c5bf1f2 Sponsors: Sync README with website (ESLint Jenkins)
  • 98a729c Sponsors: Sync README with website (ESLint Jenkins)
  • e83a696 Sponsors: Sync README with website (ESLint Jenkins)
  • 78cb483 Chore: test foo( ) with space-in-parens option "always" (#​13986) (Chris Brody)
  • f6948f6 Docs: Update semantic versioning policy (#​13970) (Nicholas C. Zakas)
  • 0688212 Sponsors: Sync README with website (ESLint Jenkins)
  • aeba5e5 Chore: fix typo (#​13975) (Nitin Kumar)
  • 4ee1134 Sponsors: Sync README with website (ESLint Jenkins)

v7.17.0

Compare Source

  • e128e77 Update: check logical assignment in no-constant-condition (#​13946) (Milos Djermanovic)
  • cc48713 Chore: refactor calculating range and loc in no-useless-escape (#​13964) (Milos Djermanovic)
  • 535fe47 Update: use regexpp's default ecmaVersion in no-control-regex (#​13969) (Milos Djermanovic)
  • 83e98cd Fix: use regexpp's default ecmaVersion in no-invalid-regexp (#​13968) (Milos Djermanovic)
  • 7297363 Docs: fix examples for no-multi-str (#​13966) (Milos Djermanovic)
  • 0649871 Update: add autofix to rule multiline-ternary (#​13958) (薛定谔的猫)
  • f6e7e32 Fix: no-useless-escape wrong loc and fix with CRLF in template elements (#​13953) (Milos Djermanovic)
  • 19c69c0 Fix: one-var shouldn't split declaration if it isn't in a statement list (#​13959) (Milos Djermanovic)
  • e451b96 Docs: update build tool for webpack (#​13962) (Sam Chen)
  • c3e9acc Chore: fix typos (#​13960) (YeonJuan)
  • 7289ecf Sponsors: Sync README with website (ESLint Jenkins)

v7.16.0

Compare Source

graphql/graphql-js

v15.5.0

Compare Source

v15.5.0 (2021-01-26)

Bug Fix 🐞
Docs 📝
Polish 💅
7 PRs were merged
Internal 🏠
7 PRs were merged
Dependency 📦
5 PRs were merged
Committers: 3
prisma/graphql-request

v3.4.0

Compare Source

Features
Chores
nodejs/node

v14.15.5

Compare Source

Notable Changes
Commits

v14.15.4

Compare Source

This is a security release.

Notable Changes

Vulnerabilities fixed:

  • CVE-2020-1971: OpenSSL - EDIPARTYNAME NULL pointer de-reference (High)

  • CVE-2020-8265: use-after-free in TLSWrap (High)

    • Affected Node.js versions are vulnerable to a use-after-free bug in
      its TLS implementation. When writing to a TLS enabled socket,
      node::StreamBase::Write calls node::TLSWrap::DoWrite with a freshly
      allocated WriteWrap object as first argument. If the DoWrite method
      does not return an error, this object is passed back to the caller as
      part of a StreamWriteResult structure. This may be exploited to
      corrupt memory leading to a Denial of Service or potentially other
      exploits.
  • CVE-2020-8287: HTTP Request Smuggling in nodejs (Low)

    • Affected versions of Node.js allow two copies of a header field in
      a http request. For example, two Transfer-Encoding header fields. In
      this case Node.js identifies the first header field and ignores the
      second. This can lead to HTTP Request Smuggling
      (https://cwe.mitre.org/data/definitions/444.html).
Commits

v14.15.3

Compare Source

Notable Changes

Node.js v14.15.2 included a commit that has caused reported breakages when cloning request objects. This release reverts the commit that introduced the behaviour change. See #​36550 for more details.

Commits

v14.15.2

Compare Source

Notable Changes
  • deps:
    • upgrade npm to 6.14.9 (Myles Borins) #​36450
    • update acorn to v8.0.4 (Michaël Zasso) #​35791
  • doc: add release key for Danielle Adams (Danielle Adams) #​35545
  • http2: check write not scheduled in scope destructor (David Halls) #​36241
  • stream: fix regression on duplex end (Momtchil Momtchev) #​35941
Commits

Renovate configuration

📅 Schedule: "before 3am on the first day of the month" in timezone Europe/Paris.

🚦 Automerge: Enabled.

♻️ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by WhiteSource Renovate. View repository job log here.

@revolunet revolunet merged commit 57a6700 into master Feb 20, 2021
@revolunet revolunet deleted the renovate/all-minor-patch branch February 20, 2021 03:27
SocialGroovyBot added a commit that referenced this pull request Feb 20, 2021
## [2.2.4](v2.2.3...v2.2.4) (2021-02-20)

### Bug Fixes

* **deps:** update all non-major dependencies ([#452](#452)) ([57a6700](57a6700))
@SocialGroovyBot
Copy link
Member

🎉 This PR is included in version 2.2.4 🎉

The release is available on GitHub release

Your semantic-release bot 📦🚀

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants