forked from louislam/uptime-kuma
-
Notifications
You must be signed in to change notification settings - Fork 0
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Bump the npm_and_yarn group across 1 directory with 19 updates #1
Open
dependabot
wants to merge
1
commit into
master
Choose a base branch
from
dependabot/npm_and_yarn/npm_and_yarn-30a5c87dc7
base: master
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the npm_and_yarn group with 14 updates in the / directory: | Package | From | To | | --- | --- | --- | | [@grpc/grpc-js](https://github.com/grpc/grpc-node) | `1.7.3` | `1.8.22` | | [axios](https://github.com/axios/axios) | `0.28.1` | `0.29.0` | | [express](https://github.com/expressjs/express) | `4.19.2` | `4.20.0` | | [mysql2](https://github.com/sidorares/node-mysql2) | `3.9.7` | `3.9.8` | | [nanoid](https://github.com/ai/nanoid) | `3.3.7` | `3.3.8` | | [dompurify](https://github.com/cure53/DOMPurify) | `3.0.11` | `3.1.3` | | [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) | `5.2.10` | `5.4.14` | | [@azure/identity](https://github.com/Azure/azure-sdk-for-js) | `2.1.0` | `4.6.0` | | [mssql](https://github.com/tediousjs/node-mssql) | `8.1.4` | `11.0.1` | | [braces](https://github.com/micromatch/braces) | `3.0.2` | `3.0.3` | | [cookie](https://github.com/jshttp/cookie) | `0.4.2` | `0.7.1` | | [express](https://github.com/expressjs/express) | `4.20.0` | `4.21.2` | | [socket.io](https://github.com/socketio/socket.io) | `4.6.2` | `4.8.1` | | [cross-spawn](https://github.com/moxystudio/node-cross-spawn) | `7.0.3` | `7.0.6` | | [undici](https://github.com/nodejs/undici) | `5.28.3` | `5.28.5` | Updates `@grpc/grpc-js` from 1.7.3 to 1.8.22 - [Release notes](https://github.com/grpc/grpc-node/releases) - [Commits](https://github.com/grpc/grpc-node/compare/@grpc/[email protected]...@grpc/[email protected]) Updates `axios` from 0.28.1 to 0.29.0 - [Release notes](https://github.com/axios/axios/releases) - [Changelog](https://github.com/axios/axios/blob/v0.29.0/CHANGELOG.md) - [Commits](axios/axios@v0.28.1...v0.29.0) Updates `express` from 4.19.2 to 4.20.0 - [Release notes](https://github.com/expressjs/express/releases) - [Changelog](https://github.com/expressjs/express/blob/master/History.md) - [Commits](expressjs/express@4.19.2...4.20.0) Updates `mysql2` from 3.9.7 to 3.9.8 - [Release notes](https://github.com/sidorares/node-mysql2/releases) - [Changelog](https://github.com/sidorares/node-mysql2/blob/master/Changelog.md) - [Commits](sidorares/node-mysql2@v3.9.7...v3.9.8) Updates `nanoid` from 3.3.7 to 3.3.8 - [Release notes](https://github.com/ai/nanoid/releases) - [Changelog](https://github.com/ai/nanoid/blob/main/CHANGELOG.md) - [Commits](ai/nanoid@3.3.7...3.3.8) Updates `dompurify` from 3.0.11 to 3.1.3 - [Release notes](https://github.com/cure53/DOMPurify/releases) - [Commits](cure53/DOMPurify@3.0.11...3.1.3) Updates `vite` from 5.2.10 to 5.4.14 - [Release notes](https://github.com/vitejs/vite/releases) - [Changelog](https://github.com/vitejs/vite/blob/v5.4.14/packages/vite/CHANGELOG.md) - [Commits](https://github.com/vitejs/vite/commits/v5.4.14/packages/vite) Updates `@azure/identity` from 2.1.0 to 4.6.0 - [Release notes](https://github.com/Azure/azure-sdk-for-js/releases) - [Changelog](https://github.com/Azure/azure-sdk-for-js/blob/main/documentation/Changelog-for-next-generation.md) - [Commits](https://github.com/Azure/azure-sdk-for-js/compare/@azure/identity_2.1.0...@azure/identity_4.6.0) Updates `mssql` from 8.1.4 to 11.0.1 - [Release notes](https://github.com/tediousjs/node-mssql/releases) - [Changelog](https://github.com/tediousjs/node-mssql/blob/master/CHANGELOG.txt) - [Commits](tediousjs/node-mssql@v8.1.4...v11.0.1) Updates `body-parser` from 1.20.2 to 1.20.3 - [Release notes](https://github.com/expressjs/body-parser/releases) - [Changelog](https://github.com/expressjs/body-parser/blob/master/HISTORY.md) - [Commits](expressjs/body-parser@1.20.2...1.20.3) Updates `braces` from 3.0.2 to 3.0.3 - [Changelog](https://github.com/micromatch/braces/blob/master/CHANGELOG.md) - [Commits](micromatch/braces@3.0.2...3.0.3) Updates `cookie` from 0.4.2 to 0.7.1 - [Release notes](https://github.com/jshttp/cookie/releases) - [Commits](jshttp/cookie@v0.4.2...v0.7.1) Updates `express` from 4.20.0 to 4.21.2 - [Release notes](https://github.com/expressjs/express/releases) - [Changelog](https://github.com/expressjs/express/blob/master/History.md) - [Commits](expressjs/express@4.19.2...4.20.0) Updates `socket.io` from 4.6.2 to 4.8.1 - [Release notes](https://github.com/socketio/socket.io/releases) - [Changelog](https://github.com/socketio/socket.io/blob/main/CHANGELOG.md) - [Commits](https://github.com/socketio/socket.io/compare/[email protected]) Updates `cross-spawn` from 7.0.3 to 7.0.6 - [Changelog](https://github.com/moxystudio/node-cross-spawn/blob/master/CHANGELOG.md) - [Commits](moxystudio/node-cross-spawn@v7.0.3...v7.0.6) Updates `path-to-regexp` from 0.1.7 to 0.1.12 - [Release notes](https://github.com/pillarjs/path-to-regexp/releases) - [Changelog](https://github.com/pillarjs/path-to-regexp/blob/master/History.md) - [Commits](pillarjs/path-to-regexp@v0.1.7...v0.1.12) Updates `rollup` from 4.13.0 to 4.31.0 - [Release notes](https://github.com/rollup/rollup/releases) - [Changelog](https://github.com/rollup/rollup/blob/master/CHANGELOG.md) - [Commits](rollup/rollup@v4.13.0...v4.31.0) Updates `send` from 0.18.0 to 0.19.0 - [Release notes](https://github.com/pillarjs/send/releases) - [Changelog](https://github.com/pillarjs/send/blob/master/HISTORY.md) - [Commits](pillarjs/send@0.18.0...0.19.0) Updates `serve-static` from 1.15.0 to 1.16.2 - [Release notes](https://github.com/expressjs/serve-static/releases) - [Changelog](https://github.com/expressjs/serve-static/blob/v1.16.2/HISTORY.md) - [Commits](expressjs/serve-static@v1.15.0...v1.16.2) Updates `undici` from 5.28.3 to 5.28.5 - [Release notes](https://github.com/nodejs/undici/releases) - [Commits](nodejs/undici@v5.28.3...v5.28.5) --- updated-dependencies: - dependency-name: "@grpc/grpc-js" dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: axios dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: express dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: mysql2 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: nanoid dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: dompurify dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: vite dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: "@azure/identity" dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: mssql dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: body-parser dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: braces dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: cookie dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: express dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: socket.io dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: cross-spawn dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: path-to-regexp dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: rollup dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: send dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: serve-static dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: undici dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <[email protected]>
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the npm_and_yarn group with 14 updates in the / directory:
1.7.3
1.8.22
0.28.1
0.29.0
4.19.2
4.20.0
3.9.7
3.9.8
3.3.7
3.3.8
3.0.11
3.1.3
5.2.10
5.4.14
2.1.0
4.6.0
8.1.4
11.0.1
3.0.2
3.0.3
0.4.2
0.7.1
4.20.0
4.21.2
4.6.2
4.8.1
7.0.3
7.0.6
5.28.3
5.28.5
Updates
@grpc/grpc-js
from 1.7.3 to 1.8.22Release notes
Sourced from
@grpc/grpc-js
's releases.... (truncated)
Commits
a8a0203
Merge pull request from GHSA-7v5v-9h63-cj863b110cd
grpc-js: Bump to 1.8.228e62222
grpc-js: Avoid buffering significantly more than max_receive_message_size per...9d83947
Merge pull request #2742 from sergiitk/backport-1.8-psm-interop-common-prod-t...00f348c
Merge pull request #2729 from sergiitk/psm-interop-common-prod-tests36d105b
Merge pull request #2737 from murgatroid99/backport-1.8-grpc-js_linkify-it_fix969e305
Merge pull request #2735 from murgatroid99/grpc-js_linkify-it_fixd78216f
Merge pull request #2715 from sergiitk/backport-1.8-psm-interop-pkg-devf38966a
Merge pull request #2712 from sergiitk/psm-interop-pkg-devffefff2
Merge pull request #2640 from XuanWang-Amos/backport-1.8-psm-interop-shared-b...Updates
axios
from 0.28.1 to 0.29.0Release notes
Sourced from axios's releases.
Changelog
Sourced from axios's changelog.
Commits
7750b8c
chore(release): prep release v0.29.04840cb2
fix: regular expression denial of service issues (#6708)2e36cdb
fix(backport): fix paramsSerializer function validation (#6361)3936f44
Fix: omit nulls in params (#6394)146848f
fix: backported commit #6167 and #6163 (#6402)Updates
express
from 4.19.2 to 4.20.0Release notes
Sourced from express's releases.
Changelog
Sourced from express's changelog.
Commits
21df421
4.20.04c9ddc1
feat: upgrade to [email protected]9ebe5d5
feat: upgrade to [email protected] (#5928)ec4a01b
feat: upgrade to [email protected] (#5926)54271f6
fix: don't render redirect values in anchor href125bb74
[email protected] (#5902)2a980ad
[email protected] (#5781)a3e7e05
docs: specify new instructions forquestion
anddiscuss
c5addb9
deps: [email protected] (#5603)e35380a
docs: add@IamLizu
to the triage team (#5836)Updates
mysql2
from 3.9.7 to 3.9.8Release notes
Sourced from mysql2's releases.
Changelog
Sourced from mysql2's changelog.
Commits
f637d3f
chore(master): release 3.9.8 (#2700)efe3db5
fix(security): sanitize fields and tables when using nestTables (#2702)2e03694
fix: support deno + caching_sha2_password FULL_AUTHENTICATION_PACKET flow (#2...8b5f691
fix(typings): typo fromjonServerPublicKey
toonServerPublicKey
(#2699)5c75802
build(deps-dev): bump tsx from 4.10.5 to 4.11.0 in /website (#2695)179769f
build(deps): bump@easyops-cn/docusaurus-search-local
in /website (#2696)56289e2
build(deps-dev): bump poku from 1.12.1 to 1.13.0 (#2698)b029308
build(deps-dev): bump poku from 1.12.1 to 1.13.0 in /website (#2697)539acb8
build(deps): bump lucide-react from 0.378.0 to 0.379.0 in /website (#2693)dc80580
build(deps-dev): bump@typescript-eslint/eslint-plugin
from 7.9.0 to 7.10.0 i...Updates
nanoid
from 3.3.7 to 3.3.8Changelog
Sourced from nanoid's changelog.
Commits
3044cd5
Release 3.3.8 version4fe3495
Update size limitd643045
Fix pool pollution, infinite loop (#510)Updates
dompurify
from 3.0.11 to 3.1.3Release notes
Sourced from dompurify's releases.
Commits
3fe78d7
chore: Preparing 3.1.3 releaseb20ce99
fix: Added smaller-than-null check for __depth hardening code1e52026
fix: Hardened the depth tracking code against prototype pollution8df72f1
fix: Made the regex for comment scrubbing a bit stricterae517d6
fix: Expanded the comment scrubbing regex matching a bit furtherb6818ce
fix: Added better configurability for new comment behavioraafd7a8
docs: Changed inline comments slightly to be more accuratea377bf8
test: Fixed the testsd1d5d22
fix: Added experiemental comment scrubbing inside attributesdc61232
fix #949Updates
vite
from 5.2.10 to 5.4.14Release notes
Sourced from vite's releases.
... (truncated)
Changelog
Sourced from vite's changelog.
... (truncated)
Commits
e7eb3c5
release: v5.4.147d1699c
fix: allow CORS from loopback addresses by default (#19249)9df6e6b
fix:preview.allowedHosts
with specific values was not respected (#19246)a1824c5
release: v5.4.135946215
fix: try parseserver.origin
URL (#19241)f428aa9
release: v5.4.129da4abc
fix!: check host header to prevent DNS rebinding attacks and introduce `serve...b71a5c8
fix: verify token for HMR WebSocket connectiondfea38f
fix!: defaultserver.cors: false
to disallow fetching from untrusted originsecd2375
chore: add deps update changelogUpdates
@azure/identity
from 2.1.0 to 4.6.0Commits
b244783
port over 5af10dfcf532175409ecce6bbb820ec440ccf1390babd49
fix changelog09391c5
[identity] Update msal-browser to 4.0.1 (#32569)57b8380
feat(playwrighttesting): Added runName in service config (#31379)258b4b1
Sync eng/common directory with azure-sdk-tools for PR 9177 (#31432)97e9849
Handle missing artifacts without exception (#31437)d0b70a8
[ServiceBus] expose omitMessagesBody option under ./experimental subpath (#31...24d7877
Sync .github/workflows directory with azure-sdk-tools for PR 9199 (#31438)20f3c84
Sync eng/common directory with azure-sdk-tools for PR 9202 (#31439)3e11a2e
Sync eng/common directory with azure-sdk-tools for PR 9147 (#31440)Maintainer changes
This version was pushed to npm by microsoft1es, a new releaser for
@azure/identity
since your current version.Updates
mssql
from 8.1.4 to 11.0.1Release notes
Sourced from mssql's releases.
... (truncated)
Changelog
Sourced from mssql's changelog.
... (truncated)
Commits
9e5aef4
Merge pull request #1678 from dhensby/pulls/bigint-inputs0199ae5
test: make sure bigint intputs do not throw8931bcf
Merge pull request #1677 from paulish/bigint_fixb774084
fix: handle bigint types separately to int to avoid TypeError with BigInt parame5205fb
Merge pull request #1676 from tediousjs/dependabot/npm_and_yarn/test-tools-97...b832900
chore(deps-dev): bump mocha in the test-tools group3108080
Merge pull request #1672 from tediousjs/dependabot/github_actions/tediousjs/s...92761a4
Merge pull request #1674 from tediousjs/dependabot/npm_and_yarn/test-tools-e6...1b1fe27
chore(deps-dev): bump mocha in the test-tools group8c9ff5e
chore(deps): bump tediousjs/setup-sqlserver from 1 to 2Updates
body-parser
from 1.20.2 to 1.20.3Release notes
Sourced from body-parser's releases.
Changelog
Sourced from body-parser's changelog.
Commits
1752951
1.20.339744cf
chore: linter (#534)b2695c4
Merge commit from forkade0f3f
add scorecard to readme (#531)99a1bd6
deps: [email protected] (#521)9478591
fix: pin to [email protected]83db46a
ci: fix errors in ci github action for node 8 and 9 (#523)9d4e212
chore: add support for OSSF scorecard reporting (#522)Maintainer changes
This version was pushed to npm by ulisesgascon, a new releaser for body-parser since your current version.
Updates
braces
from 3.0.2 to 3.0.3Commits
74b2db2
3.0.388f1429
update eslint. lint, fix unit tests.415d660
Snyk js braces 6838727 (#40)