Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade axios from 1.3.6 to 1.4.0 #2686

Merged
merged 1 commit into from
May 20, 2023

Conversation

snyk-bot
Copy link
Contributor

Snyk has created this PR to upgrade axios from 1.3.6 to 1.4.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 1 version ahead of your current version.
  • The recommended version was released 21 days ago, on 2023-04-27.
Release notes
Package name: axios from axios GitHub release notes
Commit messages
Package name: axios
  • 21a5ad3 chore(release): v1.4.0 (#5683)
  • d627610 chore(utils): refactored isAsyncFn util to avoid inlining additional Babel helpers to the build; (#5684)
  • e18fdd8 refactor: remove deprecated url-search-params polyfill for URLSearchParams (#5670)
  • 726f1c8 feat(types): export `AxiosHeaderValue` type. (#5525)
  • 2701911 feat(dns): added support for a custom lookup function; (#5339)
  • e6f7053 perf(merge-config): optimize mergeConfig performance by avoiding duplicate key visits; (#5679)
  • bbb61e7 fix(formdata): add `multipart/form-data` content type for FormData payload on custom client environments; (#5678)
  • df38c94 fix(package): export package internals with unsafe path prefix; (#5677)

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

@CLAassistant
Copy link

CLA assistant check
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution.
You have signed the CLA already but the status is still pending? Let us recheck it.

@scudette scudette merged commit 6aee0c2 into master May 20, 2023
1 check passed
@scudette scudette deleted the snyk-upgrade-c2168772cce5dad7aa9b62d7f938f45d branch May 20, 2023 13:45
scudette pushed a commit that referenced this pull request May 23, 2023
<h3>Snyk has created this PR to upgrade axios from 1.3.6 to 1.4.0.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.
<hr/>

- The recommended version is **1 version** ahead of your current
version.
- The recommended version was released **21 days ago**, on 2023-04-27.


<details>
<summary><b>Release notes</b></summary>
<br/>
  <details>
    <summary>Package name: <b>axios</b></summary>
    <ul>
      <li>
<b>1.4.0</b> - <a
href="https://snyk.io/redirect/github/axios/axios/releases/tag/v1.4.0">2023-04-27</a></br><h2>Release
notes:</h2>
<h3>Bug Fixes</h3>
<ul>
<li><strong>formdata:</strong> add <code>multipart/form-data</code>
content type for FormData payload on custom client environments; (<a
href="https://snyk.io/redirect/github/axios/axios/issues/5678"
data-hovercard-type="pull_request"
data-hovercard-url="/axios/axios/pull/5678/hovercard">#5678</a>) (<a
href="https://snyk.io/redirect/github/axios/axios/commit/bbb61e70cb1185adfb1cbbb86eaf6652c48d89d1">bbb61e7</a>)</li>
<li><strong>package:</strong> export package internals with unsafe path
prefix; (<a
href="https://snyk.io/redirect/github/axios/axios/issues/5677"
data-hovercard-type="pull_request"
data-hovercard-url="/axios/axios/pull/5677/hovercard">#5677</a>) (<a
href="https://snyk.io/redirect/github/axios/axios/commit/df38c949f26414d88ba29ec1e353c4d4f97eaf09">df38c94</a>)</li>
</ul>
<h3>Features</h3>
<ul>
<li><strong>dns:</strong> added support for a custom lookup function;
(<a href="https://snyk.io/redirect/github/axios/axios/issues/5339"
data-hovercard-type="pull_request"
data-hovercard-url="/axios/axios/pull/5339/hovercard">#5339</a>) (<a
href="https://snyk.io/redirect/github/axios/axios/commit/2701911260a1faa5cc5e1afe437121b330a3b7bb">2701911</a>)</li>
<li><strong>types:</strong> export <code>AxiosHeaderValue</code> type.
(<a href="https://snyk.io/redirect/github/axios/axios/issues/5525"
data-hovercard-type="pull_request"
data-hovercard-url="/axios/axios/pull/5525/hovercard">#5525</a>) (<a
href="https://snyk.io/redirect/github/axios/axios/commit/726f1c8e00cffa0461a8813a9bdcb8f8b9d762cf">726f1c8</a>)</li>
</ul>
<h3>Performance Improvements</h3>
<ul>
<li><strong>merge-config:</strong> optimize mergeConfig performance by
avoiding duplicate key visits; (<a
href="https://snyk.io/redirect/github/axios/axios/issues/5679"
data-hovercard-type="pull_request"
data-hovercard-url="/axios/axios/pull/5679/hovercard">#5679</a>) (<a
href="https://snyk.io/redirect/github/axios/axios/commit/e6f7053bf1a3e87cf1f9da8677e12e3fe829d68e">e6f7053</a>)</li>
</ul>
<h3>Contributors to this release</h3>
<ul>
<li><a target="_blank" rel="noopener noreferrer nofollow"
href="https://avatars.githubusercontent.com/u/12586868?v=4&amp;s=18"><img
src="https://avatars.githubusercontent.com/u/12586868?v=4&amp;s=18"
alt="avatar" width="18" style="max-width: 100%;"></a> <a
href="https://snyk.io/redirect/github/DigitalBrainJS" title="+151/-16
(#5684 #5339 #5679 #5678 #5677 )">Dmitriy Mozgovoy</a></li>
<li><a target="_blank" rel="noopener noreferrer nofollow"
href="https://avatars.githubusercontent.com/u/47537704?v=4&amp;s=18"><img
src="https://avatars.githubusercontent.com/u/47537704?v=4&amp;s=18"
alt="avatar" width="18" style="max-width: 100%;"></a> <a
href="https://snyk.io/redirect/github/arthurfiorette" title="+19/-19
(#5525 )">Arthur Fiorette</a></li>
<li><a target="_blank" rel="noopener noreferrer nofollow"
href="https://avatars.githubusercontent.com/u/43876655?v=4&amp;s=18"><img
src="https://avatars.githubusercontent.com/u/43876655?v=4&amp;s=18"
alt="avatar" width="18" style="max-width: 100%;"></a> <a
href="https://snyk.io/redirect/github/npiyush97" title="+2/-18 (#5670
)">PIYUSH NEGI</a></li>
</ul>
      </li>
      <li>
<b>1.3.6</b> - <a
href="https://snyk.io/redirect/github/axios/axios/releases/tag/v1.3.6">2023-04-19</a></br><h2>Release
notes:</h2>
<h3>Bug Fixes</h3>
<ul>
<li><strong>types:</strong> added transport to RawAxiosRequestConfig (<a
href="https://snyk.io/redirect/github/axios/axios/issues/5445"
data-hovercard-type="pull_request"
data-hovercard-url="/axios/axios/pull/5445/hovercard">#5445</a>) (<a
href="https://snyk.io/redirect/github/axios/axios/commit/6f360a2531d8d70363fd9becef6a45a323f170e2">6f360a2</a>)</li>
<li><strong>utils:</strong> make isFormData detection logic stricter to
avoid unnecessary calling of the <code>toString</code> method on the
target; (<a
href="https://snyk.io/redirect/github/axios/axios/issues/5661"
data-hovercard-type="pull_request"
data-hovercard-url="/axios/axios/pull/5661/hovercard">#5661</a>) (<a
href="https://snyk.io/redirect/github/axios/axios/commit/aa372f7306295dfd1100c1c2c77ce95c95808e76">aa372f7</a>)</li>
</ul>
<h3>Contributors to this release</h3>
<ul>
<li><a target="_blank" rel="noopener noreferrer nofollow"
href="https://avatars.githubusercontent.com/u/12586868?v=4&amp;s=18"><img
src="https://avatars.githubusercontent.com/u/12586868?v=4&amp;s=18"
alt="avatar" width="18" style="max-width: 100%;"></a> <a
href="https://snyk.io/redirect/github/DigitalBrainJS" title="+48/-10
(#5665 #5661 #5663 )">Dmitriy Mozgovoy</a></li>
<li><a target="_blank" rel="noopener noreferrer nofollow"
href="https://avatars.githubusercontent.com/u/5492927?v=4&amp;s=18"><img
src="https://avatars.githubusercontent.com/u/5492927?v=4&amp;s=18"
alt="avatar" width="18" style="max-width: 100%;"></a> <a
href="https://snyk.io/redirect/github/Cadienvan" title="+2/-0 (#5445
)">Michael Di Prisco</a></li>
</ul>
      </li>
    </ul>
from <a
href="https://snyk.io/redirect/github/axios/axios/releases">axios GitHub
release notes</a>
  </details>
</details>


<details>
  <summary><b>Commit messages</b></summary>
  </br>
  <details>
    <summary>Package name: <b>axios</b></summary>
    <ul>
<li><a
href="https://snyk.io/redirect/github/axios/axios/commit/21a5ad34c4a5956d81d338059ac0dd34a19ed094">21a5ad3</a>
chore(release): v1.4.0 (#5683)</li>
<li><a
href="https://snyk.io/redirect/github/axios/axios/commit/d627610d0c427de57c10618b36fa97814e2a75f0">d627610</a>
chore(utils): refactored isAsyncFn util to avoid inlining additional
Babel helpers to the build; (#5684)</li>
<li><a
href="https://snyk.io/redirect/github/axios/axios/commit/e18fdd893dfc67630c33fb6744d1b99d72857d92">e18fdd8</a>
refactor: remove deprecated url-search-params polyfill for
URLSearchParams (#5670)</li>
<li><a
href="https://snyk.io/redirect/github/axios/axios/commit/726f1c8e00cffa0461a8813a9bdcb8f8b9d762cf">726f1c8</a>
feat(types): export &#x60;AxiosHeaderValue&#x60; type. (#5525)</li>
<li><a
href="https://snyk.io/redirect/github/axios/axios/commit/2701911260a1faa5cc5e1afe437121b330a3b7bb">2701911</a>
feat(dns): added support for a custom lookup function; (#5339)</li>
<li><a
href="https://snyk.io/redirect/github/axios/axios/commit/e6f7053bf1a3e87cf1f9da8677e12e3fe829d68e">e6f7053</a>
perf(merge-config): optimize mergeConfig performance by avoiding
duplicate key visits; (#5679)</li>
<li><a
href="https://snyk.io/redirect/github/axios/axios/commit/bbb61e70cb1185adfb1cbbb86eaf6652c48d89d1">bbb61e7</a>
fix(formdata): add &#x60;multipart/form-data&#x60; content type for
FormData payload on custom client environments; (#5678)</li>
<li><a
href="https://snyk.io/redirect/github/axios/axios/commit/df38c949f26414d88ba29ec1e353c4d4f97eaf09">df38c94</a>
fix(package): export package internals with unsafe path prefix;
(#5677)</li>
    </ul>

<a
href="https://snyk.io/redirect/github/axios/axios/compare/59eb99183546d822bc27e881f5dcd748daa04173...21a5ad34c4a5956d81d338059ac0dd34a19ed094">Compare</a>
  </details>
</details>
<hr/>

**Note:** *You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs.*

For more information: <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiJkNDUwZjU5Zi0zNDY5LTQxYWQtOTcwOC03ZDRhZDViMDJiNGIiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6ImQ0NTBmNTlmLTM0NjktNDFhZC05NzA4LTdkNGFkNWIwMmI0YiJ9fQ=="
width="0" height="0"/>

🧐 [View latest project
report](https://app.snyk.io/org/scudette/project/76f4d127-566b-42ef-86f4-bdcbc92b90b4?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)

🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/scudette/project/76f4d127-566b-42ef-86f4-bdcbc92b90b4/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)

🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/scudette/project/76f4d127-566b-42ef-86f4-bdcbc92b90b4/settings/integration?pkg&#x3D;axios&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

<!---
(snyk:metadata:{"prId":"d450f59f-3469-41ad-9708-7d4ad5b02b4b","prPublicId":"d450f59f-3469-41ad-9708-7d4ad5b02b4b","dependencies":[{"name":"axios","from":"1.3.6","to":"1.4.0"}],"packageManager":"npm","type":"auto","projectUrl":"https://app.snyk.io/org/scudette/project/76f4d127-566b-42ef-86f4-bdcbc92b90b4?utm_source=github&utm_medium=referral&page=upgrade-pr","projectPublicId":"76f4d127-566b-42ef-86f4-bdcbc92b90b4","env":"prod","prType":"upgrade","vulns":[],"issuesToFix":[],"upgrade":[],"upgradeInfo":{"versionsDiff":1,"publishedDate":"2023-04-27T23:05:52.716Z"},"templateVariants":[],"hasFixes":false,"isMajorUpgrade":false,"isBreakingChange":false,"priorityScoreList":[]})
--->
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants