-
Notifications
You must be signed in to change notification settings - Fork 25
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Bump the npm_and_yarn group across 1 directory with 14 updates #131
Open
dependabot
wants to merge
1
commit into
master
Choose a base branch
from
dependabot/npm_and_yarn/npm_and_yarn-security-group-ed03e604be
base: master
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Open
Bump the npm_and_yarn group across 1 directory with 14 updates #131
dependabot
wants to merge
1
commit into
master
from
dependabot/npm_and_yarn/npm_and_yarn-security-group-ed03e604be
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the npm_and_yarn group with 8 updates in the / directory: | Package | From | To | | --- | --- | --- | | [gatsby](https://github.com/gatsbyjs/gatsby) | `2.20.25` | `4.25.7` | | [gatsby-plugin-sharp](https://github.com/gatsbyjs/gatsby/tree/HEAD/packages/gatsby-plugin-sharp) | `2.5.6` | `4.25.1` | | [gatsby-transformer-remark](https://github.com/gatsbyjs/gatsby/tree/HEAD/packages/gatsby-transformer-remark) | `2.7.3` | `5.25.1` | | [decode-uri-component](https://github.com/SamVerschueren/decode-uri-component) | `0.2.0` | `0.2.2` | | [minimist](https://github.com/minimistjs/minimist) | `0.2.1` | `0.2.4` | | [qs](https://github.com/ljharb/qs) | `6.5.2` | `6.5.3` | | [simple-git](https://github.com/steveukx/git-js/tree/HEAD/simple-git) | `2.6.0` | `` | | [graphql-tools](https://github.com/ardatan/graphql-tools/tree/HEAD/packages/graphql-tools) | `6.0.10` | `6.2.6` | Updates `gatsby` from 2.20.25 to 4.25.7 - [Release notes](https://github.com/gatsbyjs/gatsby/releases) - [Changelog](https://github.com/gatsbyjs/gatsby/blob/master/CHANGELOG.md) - [Commits](https://github.com/gatsbyjs/gatsby/compare/gatsby@2.20.25...gatsby@4.25.7) Updates `gatsby-plugin-sharp` from 2.5.6 to 4.25.1 - [Release notes](https://github.com/gatsbyjs/gatsby/releases) - [Changelog](https://github.com/gatsbyjs/gatsby/blob/master/packages/gatsby-plugin-sharp/CHANGELOG.md) - [Commits](https://github.com/gatsbyjs/gatsby/commits/gatsby-plugin-sharp@4.25.1/packages/gatsby-plugin-sharp) Updates `gatsby-transformer-remark` from 2.7.3 to 5.25.1 - [Release notes](https://github.com/gatsbyjs/gatsby/releases) - [Changelog](https://github.com/gatsbyjs/gatsby/blob/master/packages/gatsby-transformer-remark/CHANGELOG.md) - [Commits](https://github.com/gatsbyjs/gatsby/commits/gatsby-transformer-remark@5.25.1/packages/gatsby-transformer-remark) Updates `decode-uri-component` from 0.2.0 to 0.2.2 - [Release notes](https://github.com/SamVerschueren/decode-uri-component/releases) - [Commits](SamVerschueren/decode-uri-component@v0.2.0...v0.2.2) Updates `engine.io` from 3.4.1 to 6.2.1 - [Release notes](https://github.com/socketio/engine.io/releases) - [Changelog](https://github.com/socketio/engine.io/blob/main/CHANGELOG.md) - [Commits](socketio/engine.io@3.4.1...6.2.1) Updates `flat` from 4.1.0 to 5.0.2 - [Release notes](https://github.com/hughsk/flat/releases) - [Commits](hughsk/flat@4.1.0...5.0.2) Updates `minimatch` from 3.0.3 to 3.0.4 - [Changelog](https://github.com/isaacs/minimatch/blob/main/changelog.md) - [Commits](isaacs/minimatch@v3.0.3...v3.0.4) Updates `minimist` from 0.2.1 to 0.2.4 - [Changelog](https://github.com/minimistjs/minimist/blob/main/CHANGELOG.md) - [Commits](minimistjs/minimist@v0.2.1...v0.2.4) Updates `http-cache-semantics` from 3.8.1 to 4.1.0 - [Commits](kornelski/http-cache-semantics@v3.8.1...v4.1.0) Updates `qs` from 6.5.2 to 6.5.3 - [Changelog](https://github.com/ljharb/qs/blob/main/CHANGELOG.md) - [Commits](ljharb/qs@v6.5.2...v6.5.3) Removes `simple-git` Updates `graphql-tools` from 6.0.10 to 6.2.6 - [Release notes](https://github.com/ardatan/graphql-tools/releases) - [Changelog](https://github.com/ardatan/graphql-tools/blob/master/packages/graphql-tools/CHANGELOG.md) - [Commits](https://github.com/ardatan/graphql-tools/commits/graphql-tools@6.2.6/packages/graphql-tools) Updates `socket.io-parser` from 3.3.0 to 4.2.4 - [Release notes](https://github.com/socketio/socket.io-parser/releases) - [Changelog](https://github.com/socketio/socket.io-parser/blob/main/CHANGELOG.md) - [Commits](socketio/socket.io-parser@3.3.0...4.2.4) Updates `ua-parser-js` from 0.7.21 to 1.0.37 - [Release notes](https://github.com/faisalman/ua-parser-js/releases) - [Changelog](https://github.com/faisalman/ua-parser-js/blob/1.0.37/changelog.md) - [Commits](faisalman/ua-parser-js@0.7.21...1.0.37) --- updated-dependencies: - dependency-name: gatsby dependency-type: direct:production dependency-group: npm_and_yarn-security-group - dependency-name: gatsby-plugin-sharp dependency-type: direct:production dependency-group: npm_and_yarn-security-group - dependency-name: gatsby-transformer-remark dependency-type: direct:production dependency-group: npm_and_yarn-security-group - dependency-name: decode-uri-component dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: engine.io dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: flat dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: minimatch dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: minimist dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: http-cache-semantics dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: qs dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: simple-git dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: graphql-tools dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: socket.io-parser dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: ua-parser-js dependency-type: indirect dependency-group: npm_and_yarn-security-group ... Signed-off-by: dependabot[bot] <support@github.com>
dependabot
bot
added
the
dependencies
Pull requests that update a dependency file
label
Mar 28, 2024
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the npm_and_yarn group with 8 updates in the / directory:
2.20.25
4.25.7
2.5.6
4.25.1
2.7.3
5.25.1
0.2.0
0.2.2
0.2.1
0.2.4
6.5.2
6.5.3
2.6.0
6.0.10
6.2.6
Updates
gatsby
from 2.20.25 to 4.25.7Release notes
Sourced from gatsby's releases.
... (truncated)
Commits
db5eb18
chore(release): Publishfc22f4b
fix(gatsby): don't serve codeframes for files outside of compilation (#38059)...8889bfe
chore(release): Publishd3d5fd0
fix(gatsby-source-wordpress): prevent inconsistent schema customization (#377...5bdef4a
fix(gatsby): don't block event loop during inference (#37780) (#37801)50e3f94
chore(release): Publish3f8477d
chore: Update get-unowned-packages script to use npm 9 syntaxdcf88ed
fix(gatsby-plugin-sharp): don't serve static assets that are not result of cu...3be4a80
chore(release): Publish98c4d27
feat(gatsby): add initial webhook body env var to bootstrap context (#37478) ...Updates
gatsby-plugin-sharp
from 2.5.6 to 4.25.1Release notes
Sourced from gatsby-plugin-sharp's releases.
... (truncated)
Changelog
Sourced from gatsby-plugin-sharp's changelog.
... (truncated)
Commits
50e3f94
chore(release): Publishdcf88ed
fix(gatsby-plugin-sharp): don't serve static assets that are not result of cu...5e72a5d
chore(release): Publish2dc715d
chore: remove tracedSVG (#37093) (#37127)9f4c0b9
chore(release): Publish87f280a
chore(release): Publish nextea00e12
chore(release): Publish next6815536
chore(release): Publish next53a4e5a
chore(changelogs): update changelogs (#36605)ba43263
chore(release): Publish next pre-minorUpdates
gatsby-transformer-remark
from 2.7.3 to 5.25.1Release notes
Sourced from gatsby-transformer-remark's releases.
... (truncated)
Changelog
Sourced from gatsby-transformer-remark's changelog.
... (truncated)
Commits
4dcca80
chore(release): Publish59076c8
fix(gatsby-transformer-remark): Disallow JS frontmatter by default (#37244) (...5e72a5d
chore(release): Publish9f4c0b9
chore(release): Publish87f280a
chore(release): Publish nextea00e12
chore(release): Publish next53a4e5a
chore(changelogs): update changelogs (#36605)ba43263
chore(release): Publish next pre-minor3bc957b
chore(changelogs): update changelogs (#36501)232d3b6
chore(release): Publish nextUpdates
decode-uri-component
from 0.2.0 to 0.2.2Release notes
Sourced from decode-uri-component's releases.
Commits
a0eea46
0.2.2980e0bf
Prevent overwriting previously decoded tokens3c8a373
0.2.176abc93
Switch to GitHub workflows746ca5d
Fix issue where decode throws - fixes #6486d7e2
Update license (#1)a650457
Tidelift tasks66e1c28
Meta tweaksUpdates
engine.io
from 3.4.1 to 6.2.1Release notes
Sourced from engine.io's releases.
... (truncated)
Changelog
Sourced from engine.io's changelog.
... (truncated)
Commits
24b847b
chore(release): 6.2.1425e833
fix: catch errors when destroying invalid upgrades (#658)99adb00
chore(deps): bump xmlhttprequest-ssl and engine.io-client in /examples/latenc...d196f6a
chore(deps): bump minimatch from 3.0.4 to 3.1.2 (#660)7c1270f
chore(deps): bump nanoid from 3.1.25 to 3.3.1 (#659)535a01d
ci: add Node.js 18 in the test matrix1b71a6f
docs: remove "Vanilla JS" highlight from README (#656)917d1d2
refactor: replace deprecatedString.prototype.substr()
(#646)020801a
chore: add changelog for version 3.6.0ed1d6f9
test: make test script work on Windows (#643)Updates
flat
from 4.1.0 to 5.0.2Commits
e5ffd66
Release 5.0.2fdb79d5
Update dependencies, refresh lockfile, format with standard.e52185d
Test against node 14 in CI.0189cb1
Avoid arrow function syntax.f25d3a1
Release 5.0.154cc7ad
use standard formatting779816e
drop dependencies2eea6d3
Bump lodash from 4.17.15 to 4.17.19a61a554
Bump acorn from 7.1.0 to 7.4.020ef0ef
Fix prototype pollution on unflattenMaintainer changes
This version was pushed to npm by timoxley, a new releaser for flat since your current version.
Updates
minimatch
from 3.0.3 to 3.0.4Commits
e46989a
v3.0.4ddfacbd
update brace-expansion55ed736
update package scripts and depsUpdates
minimist
from 0.2.1 to 0.2.4Changelog
Sourced from minimist's changelog.
Commits
8c6be48
v0.2.4d031f9b
[Dev Deps] updatetape
3dbebff
[Tests] check side-effects of pollution protection34e20b8
[Robustness] rework isConstructorOrProtoc0b2661
v0.2.363b8fee
[Fix] Fix long option followed by single dash (#17)72239e6
[Tests] Remove duplicate test (#12)34b0f1c
[eslint] fix indentation3226afa
[Dev Deps] add missingnpmignore
dev dep098873c
[Dev Deps] update@ljharb/eslint-config
,aud
Maintainer changes
This version was pushed to npm by ljharb, a new releaser for minimist since your current version.
Updates
http-cache-semantics
from 3.8.1 to 4.1.0Commits
ed83aec
Explain trust server date1b35980
rfc 5861 (stale-if-error, stale-while-revalidate)2c2fac2
Drop trustServerDateeb7028f
Test names84cc9a8
Bumpae5ecd5
Add status to tests385b5d3
Minor storable bug8ff37cb
Fix test1988c3f
Rename var7160146
Merge pull request #24 from non-binary/nb/fix-validators-typoUpdates
qs
from 6.5.2 to 6.5.3Changelog
Sourced from qs's changelog.
Commits
298bfa5
v6.5.3ed0f5dc
[Fix]parse
: ignore__proto__
keys (#428)691e739
[Robustness]stringify
: avoid relying on a globalundefined
(#427)1072d57
[readme] remove travis badge; add github actions/codecov badges; update URLs12ac1c4
[meta] fix README.md (#399)0338716
[actions] backport actions from main5639c20
Clean up license text so it’s properly detected as BSD-3-Clause51b8a0b
add FUNDING.yml45f6759
[Fix] fix for an impossible situation: when the formatter is called with a no...f814a7f
[Dev Deps] backport from mainRemoves
simple-git
Updates
graphql-tools
from 6.0.10 to 6.2.6Changelog
Sourced from graphql-tools's changelog.
... (truncated)
Commits
69d8499
chore(release): update monorepo packages versions (#2132)96a7555
fix(release): don't transitively update to v7 (#2131)9468a46
chore(release): update monorepo packages versions (#2129)be1a157
v7 (#1935)6ba5acc
chore(release): update monorepo packages versions (#2077)533d6d5
introducechangesets
to manage release and canary flows (#2008)3aa8565
v6.2.363a176d
v6.2.242a11d9
v6.2.1427093b
Add an additional ES5-compatible bundle (#1909)Updates
socket.io-parser
from 3.3.0 to 4.2.4Release notes
Sourced from socket.io-parser's releases.
... (truncated)
Changelog
Sourced from socket.io-parser's changelog.
... (truncated)
Commits
164ba2a
chore(release): 4.2.4b0e6400
fix: properly detect plain objectsd9db473
fix: ensure reserved events cannot be used as event names6a5a004
docs(changelog): include changelog for release 3.4.3b6c824f
chore(release): 4.2.3dcc70d9
refactor: export typescript declarations for the commonjs build3b78117
fix: check the format of the event name0841bd5
chore: bump ua-parser-js from 1.0.32 to 1.0.33 (#121)28dd668
chore(release): 4.2.222c42e3
fix: calling destroy() should clear all internal stateUpdates `ua-pa...
Description has been truncated