New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
chore(deps): bump js-yaml from 3.12.2 to 3.13.1 #429
Closed
Closed
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Pull Request Test Coverage Report for Build c08936a4-283e-4c8f-8952-739d47914a16
💛 - Coveralls |
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
2 times, most recently
from
June 12, 2019 10:27
9db9d93
to
e9252a1
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
2 times, most recently
from
July 12, 2019 03:31
88b8a3e
to
e6121ea
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
2 times, most recently
from
July 19, 2019 23:52
84aa5f2
to
2c28195
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
from
August 6, 2019 22:39
2c28195
to
57dcfe9
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
from
August 14, 2019 12:49
57dcfe9
to
8947070
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
from
August 28, 2019 13:44
8947070
to
ac970a1
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
from
September 25, 2019 12:49
ac970a1
to
d583ae3
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
from
October 10, 2019 23:49
d583ae3
to
2fa1660
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
2 times, most recently
from
November 26, 2019 19:23
7cc965c
to
bad81d7
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
from
January 3, 2020 16:39
bad81d7
to
690a758
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
from
June 2, 2020 12:57
690a758
to
92b08c4
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
from
June 16, 2020 11:57
92b08c4
to
728d270
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
from
June 26, 2020 12:21
728d270
to
621f527
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
from
July 5, 2020 14:54
621f527
to
0f73aa1
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
from
July 16, 2020 10:30
0f73aa1
to
0fa43aa
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
2 times, most recently
from
July 28, 2020 15:17
5a3a216
to
1ba55fb
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
2 times, most recently
from
August 4, 2020 15:57
d25e8e3
to
7f69860
Compare
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
from
August 19, 2020 14:45
7f69860
to
fb6bc31
Compare
Bumps [js-yaml](https://github.com/nodeca/js-yaml) from 3.12.2 to 3.13.1. - [Release notes](https://github.com/nodeca/js-yaml/releases) - [Changelog](https://github.com/nodeca/js-yaml/blob/master/CHANGELOG.md) - [Commits](nodeca/js-yaml@3.12.2...3.13.1) Signed-off-by: dependabot[bot] <support@github.com>
dependabot
bot
force-pushed
the
dependabot/npm_and_yarn/js-yaml-3.13.1
branch
from
September 2, 2020 14:32
fb6bc31
to
f12f8c7
Compare
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps js-yaml from 3.12.2 to 3.13.1.
Changelog
Sourced from js-yaml's changelog.
Commits
665aadd
3.13.1 releasedda8ecf2
Browser files rebuildb2f9e88
Merge pull request #480 from nodeca/toStringe18afbf
Fix possible code execution in (already unsafe) load()9d4ce5e
3.13.0 releasedf64c673
Browser files rebuilda567ef3
Restrict data types for object keys59b6e76
Fix test nameDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot ignore this [patch|minor|major] version
will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)@dependabot use these labels
will set the current labels as the default for future PRs for this repo and language@dependabot use these reviewers
will set the current reviewers as the default for future PRs for this repo and language@dependabot use these assignees
will set the current assignees as the default for future PRs for this repo and language@dependabot use this milestone
will set the current milestone as the default for future PRs for this repo and language