generated from NotKaskus/js-project-template
-
-
Notifications
You must be signed in to change notification settings - Fork 0
fix(deps): update all non-major dependencies #18
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Open
renovate
wants to merge
1
commit into
master
Choose a base branch
from
renovate/all-minor-patch
base: master
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
7b696db to
f819eb5
Compare
c28bae6 to
62eec32
Compare
e7c163a to
9233ee8
Compare
963ab48 to
5df8cc9
Compare
63a076c to
2dae2bd
Compare
cda01b2 to
ad87376
Compare
ac49b14 to
030c143
Compare
302d639 to
1995fa6
Compare
a64cb6d to
ce2865c
Compare
ce2865c to
bd9c1f0
Compare
bd9c1f0 to
b4969dc
Compare
b4969dc to
545f3fc
Compare
6f97d97 to
4b17930
Compare
4b17930 to
93ea2ca
Compare
93ea2ca to
f4f9163
Compare
3792ef4 to
9fd121e
Compare
9fd121e to
baf2558
Compare
baf2558 to
9324ae3
Compare
9324ae3 to
a5acbfe
Compare
ab45572 to
f69b226
Compare
f69b226 to
344dc5d
Compare
344dc5d to
92b9878
Compare
92b9878 to
42fc05e
Compare
42fc05e to
c775c54
Compare
c775c54 to
1e5eec2
Compare
7ed037b to
3a3ca71
Compare
3a3ca71 to
864ce9d
Compare
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
17.4.2→17.8.117.4.2→17.8.115.6.0→15.7.015.6.0→15.7.0^1.20.1→^1.20.4^2.11.0→^2.11.2^16.0.3→^16.6.18.6.0→8.10.24.2.1→4.2.5^4.18.2→^4.22.1^6.0.1→^6.2.0^13.1.0→^13.3.0>=v16.19.0→>=16.20.20.3.3→0.3.52.0.20→2.0.222.8.3→2.8.8^3.1.3→^3.3.1^2.5.0→^2.5.1^0.1.1→^0.1.43.3.1→3.8.7Release Notes
conventional-changelog/commitlint (@commitlint/cli)
v17.8.1Compare Source
Note: Version bump only for package @commitlint/cli
v17.8.0Compare Source
Note: Version bump only for package @commitlint/cli
17.7.2 (2023-09-28)
Note: Version bump only for package @commitlint/cli
17.7.1 (2023-08-10)
Note: Version bump only for package @commitlint/cli
v17.7.2Compare Source
Note: Version bump only for package @commitlint/cli
v17.7.1Compare Source
Note: Version bump only for package @commitlint/cli
v17.7.0Compare Source
Note: Version bump only for package @commitlint/cli
17.6.7 (2023-07-19)
Note: Version bump only for package @commitlint/cli
17.6.6 (2023-06-24)
Note: Version bump only for package @commitlint/cli
17.6.5 (2023-05-30)
Note: Version bump only for package @commitlint/cli
17.6.3 (2023-05-04)
Note: Version bump only for package @commitlint/cli
17.6.1 (2023-04-14)
Note: Version bump only for package @commitlint/cli
v17.6.7Compare Source
Note: Version bump only for package @commitlint/cli
v17.6.6Compare Source
Note: Version bump only for package @commitlint/cli
v17.6.5Compare Source
Note: Version bump only for package @commitlint/cli
v17.6.3Compare Source
Note: Version bump only for package @commitlint/cli
v17.6.1Compare Source
Note: Version bump only for package @commitlint/cli
v17.6.0Compare Source
Note: Version bump only for package @commitlint/cli
17.5.1 (2023-03-28)
Note: Version bump only for package @commitlint/cli
v17.5.1Compare Source
Note: Version bump only for package @commitlint/cli
v17.5.0Compare Source
Note: Version bump only for package @commitlint/cli
17.4.4 (2023-02-17)
Note: Version bump only for package @commitlint/cli
17.4.3 (2023-02-13)
Note: Version bump only for package @commitlint/cli
17.4.2 (2023-01-12)
Note: Version bump only for package @commitlint/cli
17.4.1 (2023-01-09)
Note: Version bump only for package @commitlint/cli
v17.4.4Compare Source
Note: Version bump only for package @commitlint/cli
v17.4.3Compare Source
Note: Version bump only for package @commitlint/cli
conventional-changelog/commitlint (@commitlint/config-conventional)
v17.8.1Compare Source
Note: Version bump only for package @commitlint/config-conventional
v17.8.0Compare Source
Note: Version bump only for package @commitlint/config-conventional
v17.7.0Compare Source
Note: Version bump only for package @commitlint/config-conventional
17.6.7 (2023-07-19)
Note: Version bump only for package @commitlint/config-conventional
17.6.6 (2023-06-24)
Note: Version bump only for package @commitlint/config-conventional
17.6.5 (2023-05-30)
Note: Version bump only for package @commitlint/config-conventional
17.6.3 (2023-05-04)
Note: Version bump only for package @commitlint/config-conventional
17.6.1 (2023-04-14)
Note: Version bump only for package @commitlint/config-conventional
v17.6.7Compare Source
Note: Version bump only for package @commitlint/config-conventional
v17.6.6Compare Source
Note: Version bump only for package @commitlint/config-conventional
v17.6.5Compare Source
Note: Version bump only for package @commitlint/config-conventional
v17.6.3Compare Source
Note: Version bump only for package @commitlint/config-conventional
v17.6.1Compare Source
Note: Version bump only for package @commitlint/config-conventional
v17.6.0Compare Source
Note: Version bump only for package @commitlint/config-conventional
17.4.4 (2023-02-17)
Note: Version bump only for package @commitlint/config-conventional
17.4.3 (2023-02-13)
Note: Version bump only for package @commitlint/config-conventional
17.4.2 (2023-01-12)
Note: Version bump only for package @commitlint/config-conventional
v17.4.4Compare Source
Note: Version bump only for package @commitlint/config-conventional
v17.4.3Compare Source
Note: Version bump only for package @commitlint/config-conventional
wildpeaks/packages-eslint-config (@wildpeaks/eslint-config-commonjs)
v15.7.0: 15.7.0Compare Source
Updated
eslint,@typescript-eslint/eslint-plugin,@typescript-eslint/parser,prettier, and devDependencies.expressjs/body-parser (body-parser)
v1.20.4Compare Source
===================
v1.20.3Compare Source
===================
depthoption to customize the depth level in the parserdepthlevel for parsing URL-encoded data is now32(previously wasInfinity)v1.20.2Compare Source
===================
Automattic/node-canvas (canvas)
v2.11.2Compare Source
==================
Fixed
v2.11.1Compare Source
==================
Fixed
canvasto theCanvasRenderingContext2Dtypeletter-spacingeffectctx.fontnot being restored correctly afterctx.restore()(#1946)motdotla/dotenv (dotenv)
v16.6.1Compare Source
Changed
quietto true – hiding the runtime log message (#874)config({ quiet: true })to suppress.require('dotenv').config()forrequire('@​dotenvx/dotenvx').config().v16.6.0Compare Source
Added
[dotenv@16.6.0] injecting env (1) from .env(#870){ quiet: true }to suppressv16.5.0Compare Source
Added
Changed
_logmethod. Use_debug#862v16.4.7Compare Source
Changed
.tapfolder when publishing. (oops, sorry about that everyone. - @motdotla) #848v16.4.6Compare Source
Changed
v16.4.5Compare Source
Changed
pathoption. return to historical behavior: do not attempt to auto find.envifpathset. (regression was introduced in16.4.3) #814v16.4.4Compare Source
Changed
?.with old school&&(fixing node 12 failures) #812v16.4.3Compare Source
Changed
pathoption. return to historical behavior: do not attempt to auto find.envifpathset. (regression was introduced in16.4.3) #814v16.4.2Compare Source
Changed
dotenvx.comv16.4.1Compare Source
pathoption #797v16.4.0Compare Source
error.codeto error messages around.env.vaultdecryption handling #795.env.vaultfile when filename(s) passed as an array #784v16.3.2Compare Source
Added
Changed
populate#792v16.3.1Compare Source
Added
processEnvandDOTENV_KEYoptions. #756v16.3.0Compare Source
Added
DOTENV_KEYto options rather than relying onprocess.env.DOTENV_KEY. Defaults toprocess.env.DOTENV_KEY#754v16.2.0Compare Source
Added
process.env. Defaults toprocess.env. #753v16.1.4Compare Source
Added
.github/to.npmignore#747v16.1.3Compare Source
Removed
browserkeys forpath,os, andcryptoin package.json. These were set to false incorrectly as of 16.1. Instead, if using dotenv on the front-end make sure to include polyfills forpath,os, andcrypto. node-polyfill-webpack-plugin provides these.v16.1.2Compare Source
Changed
_configDotenvasconfigDotenv. #744v16.1.1Compare Source
Added
decryptfunctionChanged
{crypto: false}inpackageJson.browserv16.1.0Compare Source
Added
populateconvenience method #733npm fundcommand.env.vaultsupport. 🎉 (#730)ℹ️
.env.vaultextends the.envfile format standard with a localized encrypted vault file. Package it securely with your production code deploys. It's cloud agnostic so that you can deploy your secrets anywhere – without risky third-party integrations. read moreChanged
prettier/eslint-config-prettier (eslint-config-prettier)
v8.10.2Compare Source
v8.10.0Compare Source
v8.9.0Compare Source
v8.8.0Compare Source
v8.7.0Compare Source
prettier/eslint-plugin-prettier (eslint-plugin-prettier)
v4.2.5Compare Source
republish the v4 version
Full Changelog: prettier/eslint-plugin-prettier@v4.2.4...v4.2.5
v4.2.4Compare Source
republish the v4 version
Full Changelog: prettier/eslint-plugin-prettier@v4.2.1...v4.2.4
expressjs/express (express)
v4.22.1Compare Source
v4.22.0Compare Source
v4.21.2Compare Source
What's Changed
Full Changelog: expressjs/express@4.21.1...4.21.2
v4.21.1Compare Source
What's Changed
Full Changelog: expressjs/express@4.21.0...4.21.1
v4.21.0Compare Source
What's Changed
"back"magic string in redirects by @blakeembrey in #5935New Contributors
Full Changelog: expressjs/express@4.20.0...4.21.0
v4.20.0Compare Source
==========
depthoption to customize the depth level in the parserdepthlevel for parsing URL-encoded data is now32(previously wasInfinity)res.redirect\,|, and^to align better with URL specoptions.maxAgeandoptions.expirestores.clearCookiev4.19.2Compare Source
==========
v4.19.1Compare Source
==========
v4.19.0Compare Source
==========
v4.18.3Compare Source
==========
partitionedoptionhelmetjs/helmet (helmet)
v6.2.0Compare Source
strictTransportSecurityfor theStrict-Transport-Securityheader, instead ofhsts)v6.1.5Compare Source
Fixed
v6.1.4Compare Source
Fixed
v6.1.3Compare Source
Fixed
v6.1.2Compare Source
Fixed
mainto package to help with some build toolsv6.1.1Compare Source
Fixed
v6.1.0Compare Source
Changed
lint-staged/lint-staged (lint-staged)
v13.3.0Compare Source
Bug Fixes
Features
listr2@​6.6.0(09844ca)v13.2.3Compare Source
Bug Fixes
--diffoption implies--no-stash(66a716d)v13.2.2Compare Source
Bug Fixes
yaml@2.2.2(GHSA-f9xv-q969-pqx4) (#1290) (cf691aa)v13.2.1Compare Source
Bug Fixes
v13.2.0Compare Source
Bug Fixes
colorettewithchalkfor better color support detection (f598725)Features
v13.1.4Compare Source
v13.1.3Compare Source
v13.1.2Compare Source
Bug Fixes
v13.1.1Compare Source
Bug Fixes
--stashwhen using the--diffoption (99390c3)nodejs/node (node)
v16.20.2: 2023-08-09, Version 16.20.2 'Gallium' (LTS), @RafaelGSSCompare Source
This is a security release.
Notable Changes
The following CVEs are fixed in this release:
More detailed information on each of the vulnerabilities can be found in August 2023 Security Releases blog post.
Commits
40c3958a5a] - deps: update archs files for OpenSSL-1.1.1v (RafaelGSS) #49043a9ac9da89a] - deps: fix openssl crypto clean (RafaelGSS) #49043362d4c7494] - deps: upgrade openssl sources to OpenSSL_1_1_1v (RafaelGSS) #49043d8ccfe9ad4] - policy: handle Module.constructor and main.extensions bypass (RafaelGSS) nodejs-private/node-private#445242aaa0caa] - policy: disable process.binding() when enabled (Tobias Nießen) nodejs-private/node-private#459v16.20.1: 2023-06-20, Version 16.20.1 'Gallium' (LTS), @RafaelGSSCompare Source
This is a security release.
Notable Changes
The following CVEs are fixed in this release:
mainModule.__proto__Bypass Experimental Policy Mechanism (High)More detailed information on each of the vulnerabilities can be found in June 2023 Security Releases blog post.
Commits
5a92ea7a3b] - crypto: handle cert with invalid SPKI gracefully (Tobias Nießen)5df04e893a] - deps: setCARES_RANDOM_FILEfor c-ares (Richard Lau) #48156c171cbd124] - deps: update c-ares to 1.19.1 (RafaelGSS) #48115155d3aac02] - deps: update archs files for OpenSSL-1.1.1u+quic (RafaelGSS) #483698d4c8f8ebe] - deps: upgrade openssl sources to OpenSSL_1_1_1u (RafaelGSS) #483691a5c9284eb] - doc,test: clarify behavior of DH generateKeys (Tobias Nießen) nodejs-private/node-private#426e42ff4b018] - http: disable request smuggling via empty headers (Paolo Insogna) nodejs-private/node-private#42910042683c8] - msi: do not createConfiguration
📅 Schedule: Branch creation - "before 12pm on Sunday" (UTC), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.