-
Notifications
You must be signed in to change notification settings - Fork 0
Bump the npm_and_yarn group across 1 directory with 21 updates #4
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Open
dependabot
wants to merge
1
commit into
main
Choose a base branch
from
dependabot/npm_and_yarn/npm_and_yarn-ca31198060
base: main
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the npm_and_yarn group with 14 updates in the / directory: | Package | From | To | | --- | --- | --- | | [axios](https://github.com/axios/axios) | `0.21.1` | `0.28.0` | | [@firebase/util](https://github.com/firebase/firebase-js-sdk/tree/HEAD/packages/util) | `0.3.2` | `1.9.6` | | [firebase](https://github.com/firebase/firebase-js-sdk) | `7.24.0` | `10.12.2` | | [node-fetch](https://github.com/node-fetch/node-fetch) | `2.6.1` | `2.7.0` | | [y18n](https://github.com/yargs/y18n) | `4.0.0` | `4.0.3` | | [debug](https://github.com/debug-js/debug) | `4.2.0` | `4.3.5` | | [minimist](https://github.com/minimistjs/minimist) | `1.2.5` | `1.2.6` | | [qs](https://github.com/ljharb/qs) | `6.9.4` | `6.11.0` | | [qs](https://github.com/ljharb/qs) | `6.7.0` | `6.11.0` | | [express](https://github.com/expressjs/express) | `4.17.1` | `4.19.2` | | [body-parser](https://github.com/expressjs/body-parser) | `1.19.0` | `1.20.2` | | [postcss](https://github.com/postcss/postcss) | `6.0.23` | `8.4.38` | | [@quasar/app](https://github.com/quasarframework/quasar) | `2.4.4` | `3.3.3` | | [cookiejar](https://github.com/bmeck/node-cookiejar) | `2.1.2` | `2.1.4` | | [lodash](https://github.com/lodash/lodash) | `4.17.20` | `4.17.21` | Updates `axios` from 0.21.1 to 0.28.0 - [Release notes](https://github.com/axios/axios/releases) - [Changelog](https://github.com/axios/axios/blob/v0.28.0/CHANGELOG.md) - [Commits](axios/axios@v0.21.1...v0.28.0) Updates `@firebase/util` from 0.3.2 to 1.9.6 - [Release notes](https://github.com/firebase/firebase-js-sdk/releases) - [Changelog](https://github.com/firebase/firebase-js-sdk/blob/master/packages/util/CHANGELOG.md) - [Commits](https://github.com/firebase/firebase-js-sdk/commits/@firebase/util@1.9.6/packages/util) Updates `firebase` from 7.24.0 to 10.12.2 - [Release notes](https://github.com/firebase/firebase-js-sdk/releases) - [Changelog](https://github.com/firebase/firebase-js-sdk/blob/master/CHANGELOG.md) - [Commits](https://github.com/firebase/firebase-js-sdk/compare/firebase@7.24.0...firebase@10.12.2) Updates `node-fetch` from 2.6.1 to 2.7.0 - [Release notes](https://github.com/node-fetch/node-fetch/releases) - [Commits](node-fetch/node-fetch@v2.6.1...v2.7.0) Updates `@grpc/grpc-js` from 1.8.22 to 1.9.15 - [Release notes](https://github.com/grpc/grpc-node/releases) - [Commits](https://github.com/grpc/grpc-node/compare/@grpc/grpc-js@1.8.22...@grpc/grpc-js@1.9.15) Updates `protobufjs` from 6.10.1 to 7.3.0 - [Release notes](https://github.com/protobufjs/protobuf.js/releases) - [Changelog](https://github.com/protobufjs/protobuf.js/blob/master/CHANGELOG.md) - [Commits](protobufjs/protobuf.js@v6.10.1...protobufjs-v7.3.0) Updates `y18n` from 4.0.0 to 4.0.3 - [Release notes](https://github.com/yargs/y18n/releases) - [Changelog](https://github.com/yargs/y18n/blob/y18n-v4.0.3/CHANGELOG.md) - [Commits](yargs/y18n@v4.0.0...y18n-v4.0.3) Updates `debug` from 4.2.0 to 4.3.5 - [Release notes](https://github.com/debug-js/debug/releases) - [Commits](debug-js/debug@4.2.0...4.3.5) Updates `minimist` from 1.2.5 to 1.2.6 - [Changelog](https://github.com/minimistjs/minimist/blob/main/CHANGELOG.md) - [Commits](minimistjs/minimist@v1.2.5...v1.2.6) Updates `qs` from 6.9.4 to 6.11.0 - [Changelog](https://github.com/ljharb/qs/blob/main/CHANGELOG.md) - [Commits](ljharb/qs@v6.9.4...v6.11.0) Updates `qs` from 6.7.0 to 6.11.0 - [Changelog](https://github.com/ljharb/qs/blob/main/CHANGELOG.md) - [Commits](ljharb/qs@v6.9.4...v6.11.0) Updates `express` from 4.17.1 to 4.19.2 - [Release notes](https://github.com/expressjs/express/releases) - [Changelog](https://github.com/expressjs/express/blob/master/History.md) - [Commits](expressjs/express@4.17.1...4.19.2) Updates `body-parser` from 1.19.0 to 1.20.2 - [Release notes](https://github.com/expressjs/body-parser/releases) - [Changelog](https://github.com/expressjs/body-parser/blob/master/HISTORY.md) - [Commits](expressjs/body-parser@1.19.0...1.20.2) Updates `postcss` from 6.0.23 to 8.4.38 - [Release notes](https://github.com/postcss/postcss/releases) - [Changelog](https://github.com/postcss/postcss/blob/main/CHANGELOG.md) - [Commits](postcss/postcss@6.0.23...8.4.38) Updates `@quasar/app` from 2.4.4 to 3.3.3 - [Release notes](https://github.com/quasarframework/quasar/releases) - [Commits](https://github.com/quasarframework/quasar/compare/quasar-v2.4.4...@quasar/app-v3.3.3) Updates `follow-redirects` from 1.13.1 to 1.15.6 - [Release notes](https://github.com/follow-redirects/follow-redirects/releases) - [Commits](follow-redirects/follow-redirects@v1.13.1...v1.15.6) Updates `braces` from 2.3.2 to 3.0.2 - [Changelog](https://github.com/micromatch/braces/blob/master/CHANGELOG.md) - [Commits](https://github.com/micromatch/braces/commits/3.0.2) Updates `cookiejar` from 2.1.2 to 2.1.4 - [Commits](https://github.com/bmeck/node-cookiejar/commits) Updates `lodash` from 4.17.20 to 4.17.21 - [Release notes](https://github.com/lodash/lodash/releases) - [Commits](lodash/lodash@4.17.20...4.17.21) Updates `node-forge` from 0.10.0 to 1.3.1 - [Changelog](https://github.com/digitalbazaar/forge/blob/main/CHANGELOG.md) - [Commits](digitalbazaar/forge@0.10.0...v1.3.1) Updates `webpack-dev-middleware` from 3.7.3 to 5.3.4 - [Release notes](https://github.com/webpack/webpack-dev-middleware/releases) - [Changelog](https://github.com/webpack/webpack-dev-middleware/blob/v5.3.4/CHANGELOG.md) - [Commits](webpack/webpack-dev-middleware@v3.7.3...v5.3.4) Updates `ws` from 6.2.2 to 7.4.1 - [Release notes](https://github.com/websockets/ws/releases) - [Commits](websockets/ws@6.2.2...7.4.1) --- updated-dependencies: - dependency-name: axios dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: "@firebase/util" dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: firebase dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: node-fetch dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@grpc/grpc-js" dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: protobufjs dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: y18n dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: debug dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: minimist dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: qs dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: qs dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: express dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: body-parser dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: postcss dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@quasar/app" dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: follow-redirects dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: braces dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: cookiejar dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: lodash dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: node-forge dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: webpack-dev-middleware dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: ws dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <support@github.com>
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the npm_and_yarn group with 14 updates in the / directory:
0.21.10.28.00.3.21.9.67.24.010.12.22.6.12.7.04.0.04.0.34.2.04.3.51.2.51.2.66.9.46.11.06.7.06.11.04.17.14.19.21.19.01.20.26.0.238.4.382.4.43.3.32.1.22.1.44.17.204.17.21Updates
axiosfrom 0.21.1 to 0.28.0Release notes
Sourced from axios's releases.
... (truncated)
Changelog
Sourced from axios's changelog.
... (truncated)
Commits
3b7635a[Release] v0.28.0 (#6211)27c0076feat(backport): added ability for paramsSerializer to handle function; (#6227)80c3d74chore(ci): backported publish action; (#6224)2755df5fix(security): fixed CVE-2023-45857 by backportingwithXSRFTokenoption to ...880b42edocs: Fix a typo in READMEc4bf0a4Allow null indexes on formSerializer and paramsSerializer v0.x (#4961)1e2679ffix: [Types] Type of header in AxiosRequestConfig / for Axios.create is incor...80b546cfix: loosing request header (#4858) (#4871)6acb5effeat: brower platform add data protocol. (#4814)bbb2264fix(typing): axios response headers can be undefined (#4813)Maintainer changes
This version was pushed to npm by jasonsaayman, a new releaser for axios since your current version.
Updates
@firebase/utilfrom 0.3.2 to 1.9.6Changelog
Sourced from
@firebase/util's changelog.... (truncated)
Commits
8fb372aVersion Packages (#8236)13762a4Version Packages (#8101)0c51501Run npm pkg fix on all packages (#8079)9fa0e9fVersion Packages (#7995)434f841Fix isSafari() throwing on React Native (fixes #7962) (#7963)ebc694aComment changes for OSS (#7778)2be12d7[CI] update chrome install steps for Auth builds. (#7602)2e7e548Version Packages (#7069)c59f537Improve decodeBase64() to throw on invalid input rather than silently accept ...3d605f8Version Packages (#7008)Updates
firebasefrom 7.24.0 to 10.12.2Release notes
Sourced from firebase's releases.
... (truncated)
Commits
d92d01eVersion Packages (#8264)a8bdda6Merge master into release52d6266Add vertex preview token to canary deploy workflow. (#8262)0af23e0Generate dts rollups for auth webextension and cordova (#8251)370b6c8Add toc (#8257)aa060a7More robust clean up after unexpected docgen process exits. (#8260)3883133Fix typings issue (#8256)7381f21Version Packages (#8254)ff65c13Merge master into release43a8d99Add job to create a GitHub release (#8248)Updates
node-fetchfrom 2.6.1 to 2.7.0Release notes
Sourced from node-fetch's releases.
... (truncated)
Commits
9b9d458feat:AbortError(#1744)65ae25afix: Remove the default connection close header (#1765)8bc3a7cfix: socket variable testing for undefined (#1726)afb36f6Revert "fix: handle bom in text and json (#1739)" (#1741)29909d7fix: handle bom in text and json (#1739)70f592dfix: "global is not defined" (#1704)0f1ebb0Prevent error when response is null (#1699)6e9464dci(release): install dependenciesdd2a0baci(release): install dependencies49bef02ci(release): use latest Node LTSMaintainer changes
This version was pushed to npm by node-fetch-bot, a new releaser for node-fetch since your current version.
Updates
@grpc/grpc-jsfrom 1.8.22 to 1.9.15Release notes
Sourced from
@grpc/grpc-js's releases.... (truncated)
Commits
08b0422Merge pull request from GHSA-7v5v-9h63-cj86c75e048grpc-js: Bump to 1.9.15d5d62b4grpc-js: Avoid buffering significantly more than max_receive_message_size per...02d0344Merge pull request #2741 from sergiitk/backport-1.9-psm-interop-common-prod-t...cf14020Merge pull request #2729 from sergiitk/psm-interop-common-prod-testsda44229Merge pull request #2738 from murgatroid99/backport-1.9-grpc-js_linkify-it_fix5ae7c8cMerge pull request #2735 from murgatroid99/grpc-js_linkify-it_fixeed21baMerge pull request #2714 from sergiitk/backport-1.9-psm-interop-pkg-dev63763a4Merge pull request #2712 from sergiitk/psm-interop-pkg-dev5be83ddMerge pull request #2643 from murgatroid99/grpc-js_idle_timer_fixUpdates
protobufjsfrom 6.10.1 to 7.3.0Release notes
Sourced from protobufjs's releases.
... (truncated)
Changelog
Sourced from protobufjs's changelog.
... (truncated)
Commits
722b635chore: release master (#1991)2d58011feat: add handling for extension range options (#1990)2f846fechore: release master (#1962)af3ff83fix: report missing import properly in loadSync (#1960)4436cc7chore: release master (#1925)e93286efix: deprecation warning for new Buffer (#1905)eaf9f0afix: crash in comment parsing (#1890)f2a8620fix: possible infinite loop when parsing option (#1923)42e5a9cchore: release master (#1900)e66379ffix: do not let setProperty change the prototype (#1899)Updates
y18nfrom 4.0.0 to 4.0.3Changelog
Sourced from y18n's changelog.
Commits
0aa97c5chore: release 4.x.x (#128)a8e7f04build(release-please): configure branch properly (#127)1e21a53fix(release): 4.x.x should not enforce Node 10 (#126)8dc7580docs: update CHANGELOG7de58cafix: address prototype pollution issueMaintainer changes
This version was pushed to npm by oss-bot, a new releaser for y18n since your current version.
Updates
debugfrom 4.2.0 to 4.3.5Release notes
Sourced from debug's releases.
... (truncated)
Commits
5464bdd4.3.5f244adaupdate authorship contact infocac39b1Fix/debug depth (#926)f66cb2dremove .github folder (and the outdated issue templates)d161662Update ISSUE_TEMPLATE.md12c1ad0Update ISSUE_TEMPLATE.mdda66c864.3.49b33412replace deprecated String.prototype.substr() (#876)c0805ccadd section about configuring JS console to show debug messages (#866)043d3cd4.3.3Maintainer changes
This version was pushed to npm by qix, a new releaser for debug since your current version.
Updates
minimistfrom 1.2.5 to 1.2.6Changelog
Sourced from minimist's changelog.
Commits
7efb22a1.2.6ef88b93security notice for additional prototype pollution issuec2b9819isConstructorOrProto adapted from PRbc8eceetest from prototype pollution PRUpdates
qsfrom 6.9.4 to 6.11.0Changelog
Sourced from qs's changelog.