-
Notifications
You must be signed in to change notification settings - Fork 362
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
chore(deps): Bump the npm_and_yarn group across 1 directory with 35 updates #1068
Closed
dependabot
wants to merge
1
commit into
main
from
dependabot/npm_and_yarn/internal/remediation/fixtures/santatracker/npm_and_yarn-b26f017751
Closed
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
…pdates Bumps the npm_and_yarn group with 30 updates in the /internal/remediation/fixtures/santatracker directory: | Package | From | To | | --- | --- | --- | | [dat.gui](https://github.com/dataarts/dat.gui) | `0.7.3` | `0.7.8` | | [google-closure-library](https://github.com/google/closure-library) | `v20190909.0.0` | `20200315.0.0` | | [jsdom](https://github.com/jsdom/jsdom) | `12.2.0` | `16.5.0` | | [json5](https://github.com/json5/json5) | `2.1.0` | `2.2.2` | | [terser](https://github.com/terser/terser) | `3.10.11` | `4.8.1` | | [semver](https://github.com/npm/node-semver) | `5.5.1` | `5.7.2` | | [@babel/traverse](https://github.com/babel/babel/tree/HEAD/packages/babel-traverse) | `7.6.0` | `7.24.7` | | [@grpc/grpc-js](https://github.com/grpc/grpc-node) | `1.4.2` | `1.10.10` | | [@google-cloud/cloudbuild](https://github.com/googleapis/google-cloud-node/tree/HEAD/packages/google-devtools-cloudbuild) | `2.6.0` | `4.5.0` | | [y18n](https://github.com/yargs/y18n) | `4.0.0` | `4.0.3` | | [yargs-parser](https://github.com/yargs/yargs-parser) | `10.1.0` | `21.1.1` | | [yargs](https://github.com/yargs/yargs) | `12.0.2` | `17.7.2` | | [acorn](https://github.com/acornjs/acorn) | `5.7.3` | `8.12.0` | | [acorn](https://github.com/acornjs/acorn) | `7.1.0` | `8.12.0` | | [acorn](https://github.com/acornjs/acorn) | `6.0.2` | `8.12.0` | | [braces](https://github.com/micromatch/braces) | `3.0.2` | `3.0.3` | | [node-fetch](https://github.com/node-fetch/node-fetch) | `2.6.6` | `2.6.7` | | [firebase](https://github.com/firebase/firebase-js-sdk) | `8.10.0` | `8.10.1` | | [get-func-name](https://github.com/chaijs/get-func-name) | `2.0.0` | `2.0.2` | | [glob-parent](https://github.com/gulpjs/glob-parent) | `5.0.0` | `5.1.2` | | [ws](https://github.com/websockets/ws) | `6.2.1` | `6.2.3` | | [json-schema](https://github.com/kriszyp/json-schema) | `0.2.3` | `0.4.0` | | [jsprim](https://github.com/joyent/node-jsprim) | `1.4.1` | `1.4.2` | | [lodash](https://github.com/lodash/lodash) | `4.17.20` | `4.17.21` | | [minimatch](https://github.com/isaacs/minimatch) | `3.0.4` | `3.1.2` | | [mocha](https://github.com/mochajs/mocha) | `5.2.0` | `10.5.0` | | [mocha-headless-server](https://github.com/samthor/mocha-headless-server) | `0.1.2` | `0.1.4` | | [node-forge](https://github.com/digitalbazaar/forge) | `0.10.0` | `1.3.1` | | [google-p12-pem](https://github.com/googleapis/google-p12-pem) | `3.1.2` | `3.1.4` | | [path-parse](https://github.com/jbgutierrez/path-parse) | `1.0.6` | `1.0.7` | | [pathval](https://github.com/chaijs/pathval) | `1.1.0` | `1.1.1` | | [qs](https://github.com/ljharb/qs) | `6.5.2` | `6.5.3` | Updates `dat.gui` from 0.7.3 to 0.7.8 - [Release notes](https://github.com/dataarts/dat.gui/releases) - [Commits](dataarts/dat.gui@v0.7.3...v0.7.8) Updates `google-closure-library` from v20190909.0.0 to 20200315.0.0 - [Release notes](https://github.com/google/closure-library/releases) - [Commits](google/closure-library@v20190909...v20200315) Updates `jsdom` from 12.2.0 to 16.5.0 - [Release notes](https://github.com/jsdom/jsdom/releases) - [Changelog](https://github.com/jsdom/jsdom/blob/main/Changelog.md) - [Commits](jsdom/jsdom@12.2.0...16.5.0) Updates `json5` from 2.1.0 to 2.2.2 - [Release notes](https://github.com/json5/json5/releases) - [Changelog](https://github.com/json5/json5/blob/main/CHANGELOG.md) - [Commits](json5/json5@v2.1.0...v2.2.2) Updates `terser` from 3.10.11 to 4.8.1 - [Changelog](https://github.com/terser/terser/blob/master/CHANGELOG.md) - [Commits](terser/terser@3.10.11...v4.8.1) Updates `semver` from 5.5.1 to 5.7.2 - [Release notes](https://github.com/npm/node-semver/releases) - [Changelog](https://github.com/npm/node-semver/blob/v5.7.2/CHANGELOG.md) - [Commits](npm/node-semver@v5.5.1...v5.7.2) Updates `@babel/traverse` from 7.6.0 to 7.24.7 - [Release notes](https://github.com/babel/babel/releases) - [Changelog](https://github.com/babel/babel/blob/main/CHANGELOG.md) - [Commits](https://github.com/babel/babel/commits/v7.24.7/packages/babel-traverse) Updates `@grpc/grpc-js` from 1.4.2 to 1.10.10 - [Release notes](https://github.com/grpc/grpc-node/releases) - [Commits](https://github.com/grpc/grpc-node/compare/@grpc/grpc-js@1.4.2...@grpc/grpc-js@1.10.10) Updates `@google-cloud/cloudbuild` from 2.6.0 to 4.5.0 - [Release notes](https://github.com/googleapis/google-cloud-node/releases) - [Changelog](https://github.com/googleapis/google-cloud-node/blob/main/packages/google-devtools-cloudbuild/CHANGELOG.md) - [Commits](https://github.com/googleapis/google-cloud-node/commits/kms-v4.5.0/packages/google-devtools-cloudbuild) Updates `y18n` from 4.0.0 to 4.0.3 - [Release notes](https://github.com/yargs/y18n/releases) - [Changelog](https://github.com/yargs/y18n/blob/y18n-v4.0.3/CHANGELOG.md) - [Commits](yargs/y18n@v4.0.0...y18n-v4.0.3) Updates `yargs-parser` from 10.1.0 to 21.1.1 - [Release notes](https://github.com/yargs/yargs-parser/releases) - [Changelog](https://github.com/yargs/yargs-parser/blob/main/CHANGELOG.md) - [Commits](yargs/yargs-parser@v10.1.0...yargs-parser-v21.1.1) Updates `yargs` from 12.0.2 to 17.7.2 - [Release notes](https://github.com/yargs/yargs/releases) - [Changelog](https://github.com/yargs/yargs/blob/main/CHANGELOG.md) - [Commits](yargs/yargs@v12.0.2...v17.7.2) Updates `acorn` from 5.7.3 to 8.12.0 - [Commits](acornjs/acorn@5.7.3...8.12.0) Updates `acorn` from 7.1.0 to 8.12.0 - [Commits](acornjs/acorn@5.7.3...8.12.0) Updates `acorn` from 6.0.2 to 8.12.0 - [Commits](acornjs/acorn@5.7.3...8.12.0) Updates `ajv` from 5.5.2 to 6.12.6 - [Release notes](https://github.com/ajv-validator/ajv/releases) - [Commits](ajv-validator/ajv@v5.5.2...v6.12.6) Updates `browserslist` from 4.3.2 to 4.7.0 - [Release notes](https://github.com/browserslist/browserslist/releases) - [Changelog](https://github.com/browserslist/browserslist/blob/main/CHANGELOG.md) - [Commits](browserslist/browserslist@4.3.2...4.7.0) Updates `braces` from 3.0.2 to 3.0.3 - [Changelog](https://github.com/micromatch/braces/blob/master/CHANGELOG.md) - [Commits](micromatch/braces@3.0.2...3.0.3) Updates `node-fetch` from 2.6.6 to 2.6.7 - [Release notes](https://github.com/node-fetch/node-fetch/releases) - [Commits](node-fetch/node-fetch@v2.6.6...v2.6.7) Updates `firebase` from 8.10.0 to 8.10.1 - [Release notes](https://github.com/firebase/firebase-js-sdk/releases) - [Changelog](https://github.com/firebase/firebase-js-sdk/blob/master/CHANGELOG.md) - [Commits](https://github.com/firebase/firebase-js-sdk/compare/firebase@8.10.0...firebase@8.10.1) Updates `get-func-name` from 2.0.0 to 2.0.2 - [Release notes](https://github.com/chaijs/get-func-name/releases) - [Commits](https://github.com/chaijs/get-func-name/commits/v2.0.2) Updates `glob-parent` from 5.0.0 to 5.1.2 - [Release notes](https://github.com/gulpjs/glob-parent/releases) - [Changelog](https://github.com/gulpjs/glob-parent/blob/main/CHANGELOG.md) - [Commits](gulpjs/glob-parent@v5.0.0...v5.1.2) Updates `tough-cookie` from 2.4.3 to 2.5.0 - [Release notes](https://github.com/salesforce/tough-cookie/releases) - [Changelog](https://github.com/salesforce/tough-cookie/blob/master/CHANGELOG.md) - [Commits](salesforce/tough-cookie@v2.4.3...v2.5.0) Updates `ws` from 6.2.1 to 6.2.3 - [Release notes](https://github.com/websockets/ws/releases) - [Commits](websockets/ws@6.2.1...6.2.3) Updates `json-schema` from 0.2.3 to 0.4.0 - [Commits](kriszyp/json-schema@v0.2.3...v0.4.0) Updates `jsprim` from 1.4.1 to 1.4.2 - [Changelog](https://github.com/TritonDataCenter/node-jsprim/blob/v1.4.2/CHANGES.md) - [Commits](TritonDataCenter/node-jsprim@v1.4.1...v1.4.2) Updates `lodash` from 4.17.20 to 4.17.21 - [Release notes](https://github.com/lodash/lodash/releases) - [Commits](lodash/lodash@4.17.20...4.17.21) Updates `minimatch` from 3.0.4 to 3.1.2 - [Changelog](https://github.com/isaacs/minimatch/blob/main/changelog.md) - [Commits](isaacs/minimatch@v3.0.4...v3.1.2) Updates `mocha` from 5.2.0 to 10.5.0 - [Release notes](https://github.com/mochajs/mocha/releases) - [Changelog](https://github.com/mochajs/mocha/blob/main/CHANGELOG.md) - [Commits](mochajs/mocha@v5.2.0...v10.5.0) Updates `mocha-headless-server` from 0.1.2 to 0.1.4 - [Commits](https://github.com/samthor/mocha-headless-server/commits) Updates `node-forge` from 0.10.0 to 1.3.1 - [Changelog](https://github.com/digitalbazaar/forge/blob/main/CHANGELOG.md) - [Commits](digitalbazaar/forge@0.10.0...v1.3.1) Updates `google-p12-pem` from 3.1.2 to 3.1.4 - [Release notes](https://github.com/googleapis/google-p12-pem/releases) - [Changelog](https://github.com/googleapis/google-p12-pem/blob/main/CHANGELOG.md) - [Commits](googleapis/google-p12-pem@v3.1.2...v3.1.4) Updates `path-parse` from 1.0.6 to 1.0.7 - [Commits](https://github.com/jbgutierrez/path-parse/commits/v1.0.7) Updates `pathval` from 1.1.0 to 1.1.1 - [Release notes](https://github.com/chaijs/pathval/releases) - [Changelog](https://github.com/chaijs/pathval/blob/master/CHANGELOG.md) - [Commits](chaijs/pathval@v1.1.0...v1.1.1) Updates `protobufjs` from 6.11.2 to 6.11.4 - [Release notes](https://github.com/protobufjs/protobuf.js/releases) - [Changelog](https://github.com/protobufjs/protobuf.js/blob/master/CHANGELOG.md) - [Commits](https://github.com/protobufjs/protobuf.js/commits) Updates `qs` from 6.5.2 to 6.5.3 - [Changelog](https://github.com/ljharb/qs/blob/main/CHANGELOG.md) - [Commits](ljharb/qs@v6.5.2...v6.5.3) Updates `request` from 2.88.0 to 2.88.2 - [Changelog](https://github.com/request/request/blob/master/CHANGELOG.md) - [Commits](https://github.com/request/request/commits) --- updated-dependencies: - dependency-name: dat.gui dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: google-closure-library dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: jsdom dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: json5 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: terser dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: semver dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@babel/traverse" dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@grpc/grpc-js" dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@google-cloud/cloudbuild" dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: y18n dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: yargs-parser dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: yargs dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: acorn dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: acorn dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: acorn dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: ajv dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: browserslist dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: braces dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: node-fetch dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: firebase dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: get-func-name dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: glob-parent dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: tough-cookie dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: ws dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: json-schema dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: jsprim dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: lodash dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: minimatch dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: mocha dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: mocha-headless-server dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: node-forge dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: google-p12-pem dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: path-parse dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: pathval dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: protobufjs dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: qs dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: request dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <support@github.com>
dependabot
bot
added
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
labels
Jun 24, 2024
This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests. To ignore these dependencies, configure ignore rules in dependabot.yml |
dependabot
bot
deleted the
dependabot/npm_and_yarn/internal/remediation/fixtures/santatracker/npm_and_yarn-b26f017751
branch
June 25, 2024 04:30
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the npm_and_yarn group with 30 updates in the /internal/remediation/fixtures/santatracker directory:
0.7.3
0.7.8
v20190909.0.0
20200315.0.0
12.2.0
16.5.0
2.1.0
2.2.2
3.10.11
4.8.1
5.5.1
5.7.2
7.6.0
7.24.7
1.4.2
1.10.10
2.6.0
4.5.0
4.0.0
4.0.3
10.1.0
21.1.1
12.0.2
17.7.2
5.7.3
8.12.0
7.1.0
8.12.0
6.0.2
8.12.0
3.0.2
3.0.3
2.6.6
2.6.7
8.10.0
8.10.1
2.0.0
2.0.2
5.0.0
5.1.2
6.2.1
6.2.3
0.2.3
0.4.0
1.4.1
1.4.2
4.17.20
4.17.21
3.0.4
3.1.2
5.2.0
10.5.0
0.1.2
0.1.4
0.10.0
1.3.1
3.1.2
3.1.4
1.0.6
1.0.7
1.1.0
1.1.1
6.5.2
6.5.3
Updates
dat.gui
from 0.7.3 to 0.7.8Release notes
Sourced from dat.gui's releases.
Commits
6a444cc
0.7.8103be80
Removed CHANGELOG.mdf720c72
Merge pull request #279 from yetingli/master40f4fc1
Remove link to defunct tutorial.1e1aecb
Fix ReDos in CSS_RGB and CSS_RGBA51d1a37
Merge pull request #274 from dataarts/dependabot/npm_and_yarn/lodash-4.17.1928b15c6
Bump lodash from 4.17.15 to 4.17.19071edeb
Use primitive type instead of nullable boxed type92cebb3
Re-lint.b290bf7
Update lint rules.Maintainer changes
This version was pushed to npm by mrdoob, a new releaser for dat.gui since your current version.
Updates
google-closure-library
from v20190909.0.0 to 20200315.0.0Release notes
Sourced from google-closure-library's releases.
... (truncated)
Commits
c6e4fe0
Bump version.2fb2c6d
Migrate goog.forwardDeclare to goog.requireType.ade336a
Migrate goog.forwardDeclare to goog.requireType.964e8f3
RELNOTES[NEW]: Add SafeHtml.comment.a93d568
RELNOTES: Add non-nullable modifier to return type of functions never returni...294fc00
Fix authority parsing in Closure URI parser.49624ab
Add a define to module manager so that we can control module loading behaviors.5845fb1
Removed the legacy buffering-proxy detection (aka test-channel).f4c4443
Add non-nullable modifier to return type of functions never returning null.60f4a9c
Add non-nullable modifier to return type of functions never returning null.Updates
jsdom
from 12.2.0 to 16.5.0Release notes
Sourced from jsdom's releases.
... (truncated)
Changelog
Sourced from jsdom's changelog.
... (truncated)
Commits
2d82763
Version 16.5.09741311
Fix loading of subresources with Unicode filenames5e46553
Use domenic's ESLint config as the base19b35da
Fix the URL of about:blank iframes017568e
Support inputType on InputEvent29f4fdf
Upgrade dependenciese2f7639
Refactor create‑event‑accessor.js to remove code duplicationff69a75
Convert JSDOM to use callback functions19df6bc
Update links in contributing guidelines1e34ff5
Test triageUpdates
json5
from 2.1.0 to 2.2.2Release notes
Sourced from json5's releases.
Changelog
Sourced from json5's changelog.
Commits
14f8cb1
2.2.210cc7ca
docs: update CHANGELOG for v2.2.27774c10
fix: add proto to objects and arraysedde30a
Readme: slight tweak to intro97286f8
Improve example in readmed720b4f
Improve readme (e.g. explain JSON5 better!) (#291)910ce25
docs: fix spelling of Aseem2aab4dd
test: require tap as t in cli tests6d42686
test: remove mocha syntax from tests4798b9d
docs: update installation and usage for modulesUpdates
terser
from 3.10.11 to 4.8.1Changelog
Sourced from terser's changelog.
... (truncated)
Commits
40674a4
update changelog, versiond8cc569
backport fix to potential regexp DDOS504b967
4.8.09f380dc
update changelog7dd0b9d
update assumptionscfad907
Allow yield to be used as property key in generators.283f44f
Make class property assignment pure.ee965e8
Add numeric separators support (#725)ee6b8af
4.7.0807f729
update changelogUpdates
semver
from 5.5.1 to 5.7.2Release notes
Sourced from semver's releases.
Changelog
Sourced from semver's changelog.
Commits
f8cc313
chore: release 5.7.22f8fd41
fix: better handling of whitespace (#585)deb5ad5
chore:@npmcli/template-oss
@4
.16.0c83c18c
5.7.1956e228
Correct typo in README8055dda
5.7.0604e73d
auto-publishing scriptsbed01e2
remove the nomin comments, since we don't minify any more anyway9cb68f1
document parse method38d42ca
5.7 changelogMaintainer changes
This version was pushed to npm by lukekarrys, a new releaser for semver since your current version.
Updates
@babel/traverse
from 7.6.0 to 7.24.7Release notes
Sourced from
@babel/traverse
's releases.... (truncated)
Changelog
Sourced from
@babel/traverse
's changelog.... (truncated)
Commits
bf1e9a3
v7.24.74463aa5
fix: incorrectconstantViolations
with destructuring (#16522)07bd000
ImprovegetBindingIdentifiers
(#16544)17a5502
[Babel 8] Removeextra.shorthand
(#16521)7934963
Usetype: module
in allpackage.json
s (#16535)9630250
v7.24.61f010df
Explicitly defineNodePath.prototype.*
(#16488)6e3539b
[babel 8] Publish.d.ts
files for every package (#16416)e37e64d
Use eslint v9 (#16479)3ff20b9
Statically generate boilerplate for bitfield accessors (#16482)Updates
@grpc/grpc-js
from 1.4.2 to 1.10.10Release notes
Sourced from
@grpc/grpc-js
's releases.... (truncated)
Commits
c934257
Merge pull request #2778 from murgatroid99/grpc-js_1.10.103c55b5b
Merge pull request #2777 from murgatroid99/grpc-js_1.10_backports97c4cda
Merge pull request #2779 from murgatroid99/grpc-js_max_send_message_size_fix42844cf
grpc-js: Re-add client-side max send message size checkingcbab4e5
grpc-js: Bump to 1.10.105ae5514
fix: add decoding for url encoded user credentialse759029
HTTP CONNECT: handle early server packets5c0226d
Merge pull request #2760 from davidfiala/@grpc/grpc-js@1.10.x52fe8e9
Merge pull request #2772 from murgatroid99/grpc-js_cardinality_error_hang674f4e3
Merge pull request from GHSA-7v5v-9h63-cj86Updates
@google-cloud/cloudbuild
from 2.6.0 to 4.5.0Release notes
Sourced from
@google-cloud/cloudbuild
's releases.