Bump the npm_and_yarn group across 1 directory with 34 updates#1
Open
dependabot[bot] wants to merge 1 commit intomasterfrom
Open
Bump the npm_and_yarn group across 1 directory with 34 updates#1dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot[bot] wants to merge 1 commit intomasterfrom
Conversation
Bumps the npm_and_yarn group with 21 updates in the / directory: | Package | From | To | | --- | --- | --- | | [@feathersjs/socketio](https://github.com/feathersjs/feathers/tree/HEAD/packages/socketio) | `4.5.11` | `4.5.18` | | [mongodb](https://github.com/mongodb/node-mongodb-native) | `4.1.0` | `4.17.0` | | [mongoose](https://github.com/Automattic/mongoose) | `5.13.7` | `9.1.2` | | [axios](https://github.com/axios/axios) | `0.21.1` | `0.30.2` | | [serverless-offline](https://github.com/dherault/serverless-offline) | `8.0.0` | `8.1.0` | | [semver](https://github.com/npm/node-semver) | `5.7.1` | `5.7.2` | | [@babel/traverse](https://github.com/babel/babel/tree/HEAD/packages/babel-traverse) | `7.15.0` | `7.28.5` | | [async](https://github.com/caolan/async) | `3.2.1` | `3.2.6` | | [async](https://github.com/caolan/async) | `2.6.3` | `2.6.4` | | [body-parser](https://github.com/expressjs/body-parser) | `1.19.0` | `1.20.4` | | [express](https://github.com/expressjs/express) | `4.17.1` | `4.22.1` | | [engine.io](https://github.com/socketio/socket.io) | `3.5.0` | `3.6.2` | | [socket.io](https://github.com/socketio/socket.io) | `2.4.1` | `2.5.1` | | [form-data](https://github.com/form-data/form-data) | `3.0.1` | `3.0.4` | | [got](https://github.com/sindresorhus/got) | `9.6.0` | `11.8.6` | | [js-yaml](https://github.com/nodeca/js-yaml) | `3.14.1` | `3.14.2` | | [json5](https://github.com/json5/json5) | `2.2.0` | `2.2.3` | | [jsonpath-plus](https://github.com/s3u/JSONPath) | `5.1.0` | `10.3.0` | | [on-headers](https://github.com/jshttp/on-headers) | `1.0.2` | `1.1.0` | | [parseuri](https://github.com/slevithan/parseuri) | `0.0.6` | `removed` | | [tough-cookie](https://github.com/salesforce/tough-cookie) | `4.0.0` | `4.1.4` | | [ws](https://github.com/websockets/ws) | `7.4.6` | `7.5.10` | Updates `@feathersjs/socketio` from 4.5.11 to 4.5.18 - [Release notes](https://github.com/feathersjs/feathers/releases) - [Changelog](https://github.com/feathersjs/feathers/blob/v4.5.18/packages/socketio/CHANGELOG.md) - [Commits](https://github.com/feathersjs/feathers/commits/v4.5.18/packages/socketio) Updates `mongodb` from 4.1.0 to 4.17.0 - [Release notes](https://github.com/mongodb/node-mongodb-native/releases) - [Changelog](https://github.com/mongodb/node-mongodb-native/blob/v4.17.0/HISTORY.md) - [Commits](mongodb/node-mongodb-native@v4.1.0...v4.17.0) Updates `mongoose` from 5.13.7 to 9.1.2 - [Release notes](https://github.com/Automattic/mongoose/releases) - [Changelog](https://github.com/Automattic/mongoose/blob/master/CHANGELOG.md) - [Commits](Automattic/mongoose@5.13.7...9.1.2) Updates `axios` from 0.21.1 to 0.30.2 - [Release notes](https://github.com/axios/axios/releases) - [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md) - [Commits](axios/axios@v0.21.1...v0.30.2) Updates `serverless-offline` from 8.0.0 to 8.1.0 - [Release notes](https://github.com/dherault/serverless-offline/releases) - [Changelog](https://github.com/dherault/serverless-offline/blob/master/CHANGELOG.md) - [Commits](dherault/serverless-offline@v8.0.0...v8.1.0) Updates `semver` from 5.7.1 to 5.7.2 - [Release notes](https://github.com/npm/node-semver/releases) - [Changelog](https://github.com/npm/node-semver/blob/v5.7.2/CHANGELOG.md) - [Commits](npm/node-semver@v5.7.1...v5.7.2) Updates `@babel/traverse` from 7.15.0 to 7.28.5 - [Release notes](https://github.com/babel/babel/releases) - [Changelog](https://github.com/babel/babel/blob/main/CHANGELOG.md) - [Commits](https://github.com/babel/babel/commits/v7.28.5/packages/babel-traverse) Updates `ansi-regex` from 4.1.0 to 2.1.1 - [Release notes](https://github.com/chalk/ansi-regex/releases) - [Commits](chalk/ansi-regex@v4.1.0...2.1.1) Updates `async` from 3.2.1 to 3.2.6 - [Release notes](https://github.com/caolan/async/releases) - [Changelog](https://github.com/caolan/async/blob/master/CHANGELOG.md) - [Commits](caolan/async@v3.2.1...v3.2.6) Updates `async` from 2.6.3 to 2.6.4 - [Release notes](https://github.com/caolan/async/releases) - [Changelog](https://github.com/caolan/async/blob/master/CHANGELOG.md) - [Commits](caolan/async@v3.2.1...v3.2.6) Updates `body-parser` from 1.19.0 to 1.20.4 - [Release notes](https://github.com/expressjs/body-parser/releases) - [Changelog](https://github.com/expressjs/body-parser/blob/master/HISTORY.md) - [Commits](expressjs/body-parser@1.19.0...1.20.4) Updates `express` from 4.17.1 to 4.22.1 - [Release notes](https://github.com/expressjs/express/releases) - [Changelog](https://github.com/expressjs/express/blob/v4.22.1/History.md) - [Commits](expressjs/express@4.17.1...v4.22.1) Updates `braces` from 3.0.2 to 3.0.3 - [Changelog](https://github.com/micromatch/braces/blob/master/CHANGELOG.md) - [Commits](micromatch/braces@3.0.2...3.0.3) Updates `cookie` from 0.4.0 to 0.4.1 - [Release notes](https://github.com/jshttp/cookie/releases) - [Changelog](https://github.com/jshttp/cookie/blob/v0.4.1/HISTORY.md) - [Commits](jshttp/cookie@v0.4.0...v0.4.1) Updates `engine.io` from 3.5.0 to 3.6.2 - [Release notes](https://github.com/socketio/socket.io/releases) - [Changelog](https://github.com/socketio/socket.io/blob/main/CHANGELOG.md) - [Commits](https://github.com/socketio/socket.io/commits) Updates `socket.io` from 2.4.1 to 2.5.1 - [Release notes](https://github.com/socketio/socket.io/releases) - [Changelog](https://github.com/socketio/socket.io/blob/2.5.1/CHANGELOG.md) - [Commits](socketio/socket.io@2.4.1...2.5.1) Updates `express` from 4.17.1 to 4.22.1 - [Release notes](https://github.com/expressjs/express/releases) - [Changelog](https://github.com/expressjs/express/blob/v4.22.1/History.md) - [Commits](expressjs/express@4.17.1...v4.22.1) Updates `follow-redirects` from 1.14.2 to 1.15.11 - [Release notes](https://github.com/follow-redirects/follow-redirects/releases) - [Commits](follow-redirects/follow-redirects@v1.14.2...v1.15.11) Updates `form-data` from 3.0.1 to 3.0.4 - [Release notes](https://github.com/form-data/form-data/releases) - [Changelog](https://github.com/form-data/form-data/blob/master/CHANGELOG.md) - [Commits](form-data/form-data@v3.0.1...v3.0.4) Updates `got` from 9.6.0 to 11.8.6 - [Release notes](https://github.com/sindresorhus/got/releases) - [Commits](sindresorhus/got@v9.6.0...v11.8.6) Updates `js-yaml` from 3.14.1 to 3.14.2 - [Changelog](https://github.com/nodeca/js-yaml/blob/master/CHANGELOG.md) - [Commits](nodeca/js-yaml@3.14.1...3.14.2) Updates `json5` from 2.2.0 to 2.2.3 - [Release notes](https://github.com/json5/json5/releases) - [Changelog](https://github.com/json5/json5/blob/main/CHANGELOG.md) - [Commits](json5/json5@v2.2.0...v2.2.3) Updates `jsonpath-plus` from 5.1.0 to 10.3.0 - [Release notes](https://github.com/s3u/JSONPath/releases) - [Changelog](https://github.com/JSONPath-Plus/JSONPath/blob/main/CHANGES.md) - [Commits](JSONPath-Plus/JSONPath@v5.1.0...v10.3.0) Updates `jszip` from 3.7.1 to 3.10.1 - [Changelog](https://github.com/Stuk/jszip/blob/main/CHANGES.md) - [Commits](Stuk/jszip@v3.7.1...v3.10.1) Updates `mpath` from 0.8.3 to 0.9.0 - [Changelog](https://github.com/mongoosejs/mpath/blob/master/History.md) - [Commits](https://github.com/aheckmann/mpath/commits) Updates `node-fetch` from 2.6.1 to 3.3.2 - [Release notes](https://github.com/node-fetch/node-fetch/releases) - [Commits](node-fetch/node-fetch@v2.6.1...v3.3.2) Updates `on-headers` from 1.0.2 to 1.1.0 - [Release notes](https://github.com/jshttp/on-headers/releases) - [Changelog](https://github.com/jshttp/on-headers/blob/master/HISTORY.md) - [Commits](jshttp/on-headers@v1.0.2...v1.1.0) Removes `parseuri` Updates `path-to-regexp` from 0.1.7 to 0.1.12 - [Release notes](https://github.com/pillarjs/path-to-regexp/releases) - [Changelog](https://github.com/pillarjs/path-to-regexp/blob/master/History.md) - [Commits](pillarjs/path-to-regexp@v0.1.7...v0.1.12) Updates `qs` from 6.7.0 to 6.14.1 - [Changelog](https://github.com/ljharb/qs/blob/main/CHANGELOG.md) - [Commits](ljharb/qs@v6.7.0...v6.14.1) Updates `send` from 0.17.1 to 0.19.2 - [Release notes](https://github.com/pillarjs/send/releases) - [Changelog](https://github.com/pillarjs/send/blob/master/HISTORY.md) - [Commits](pillarjs/send@0.17.1...0.19.2) Updates `serve-static` from 1.14.1 to 1.16.3 - [Release notes](https://github.com/expressjs/serve-static/releases) - [Changelog](https://github.com/expressjs/serve-static/blob/master/HISTORY.md) - [Commits](expressjs/serve-static@v1.14.1...v1.16.3) Updates `socket.io` from 2.4.1 to 4.8.3 - [Release notes](https://github.com/socketio/socket.io/releases) - [Changelog](https://github.com/socketio/socket.io/blob/2.5.1/CHANGELOG.md) - [Commits](socketio/socket.io@2.4.1...2.5.1) Updates `socket.io-parser` from 3.3.2 to 4.2.5 - [Release notes](https://github.com/socketio/socket.io/releases) - [Changelog](https://github.com/socketio/socket.io/blob/main/CHANGELOG.md) - [Commits](https://github.com/socketio/socket.io/commits/socket.io-parser@4.2.5) Updates `tough-cookie` from 4.0.0 to 4.1.4 - [Release notes](https://github.com/salesforce/tough-cookie/releases) - [Changelog](https://github.com/salesforce/tough-cookie/blob/master/CHANGELOG.md) - [Commits](salesforce/tough-cookie@v4.0.0...v4.1.4) Updates `ws` from 7.4.6 to 7.5.10 - [Release notes](https://github.com/websockets/ws/releases) - [Commits](websockets/ws@7.4.6...7.5.10) Updates `xml2js` from 0.4.19 to 0.6.2 - [Commits](Leonidas-from-XIV/node-xml2js@0.4.19...0.6.2) --- updated-dependencies: - dependency-name: "@feathersjs/socketio" dependency-version: 4.5.18 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: mongodb dependency-version: 4.17.0 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: mongoose dependency-version: 9.1.2 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: axios dependency-version: 0.30.2 dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: serverless-offline dependency-version: 8.1.0 dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: semver dependency-version: 5.7.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@babel/traverse" dependency-version: 7.28.5 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: ansi-regex dependency-version: 2.1.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: async dependency-version: 3.2.6 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: async dependency-version: 2.6.4 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: body-parser dependency-version: 1.20.4 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: express dependency-version: 4.22.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: braces dependency-version: 3.0.3 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: cookie dependency-version: 0.4.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: engine.io dependency-version: 3.6.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: socket.io dependency-version: 2.5.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: express dependency-version: 4.22.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: follow-redirects dependency-version: 1.15.11 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: form-data dependency-version: 3.0.4 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: got dependency-version: 11.8.6 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: js-yaml dependency-version: 3.14.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: json5 dependency-version: 2.2.3 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: jsonpath-plus dependency-version: 10.3.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: jszip dependency-version: 3.10.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: mpath dependency-version: 0.9.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: node-fetch dependency-version: 3.3.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: on-headers dependency-version: 1.1.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: parseuri dependency-version: dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: path-to-regexp dependency-version: 0.1.12 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: qs dependency-version: 6.14.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: send dependency-version: 0.19.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: serve-static dependency-version: 1.16.3 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: socket.io dependency-version: 4.8.3 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: socket.io-parser dependency-version: 4.2.5 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: tough-cookie dependency-version: 4.1.4 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: ws dependency-version: 7.5.10 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: xml2js dependency-version: 0.6.2 dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the npm_and_yarn group with 21 updates in the / directory:
4.5.114.5.184.1.04.17.05.13.79.1.20.21.10.30.28.0.08.1.05.7.15.7.27.15.07.28.53.2.13.2.62.6.32.6.41.19.01.20.44.17.14.22.13.5.03.6.22.4.12.5.13.0.13.0.49.6.011.8.63.14.13.14.22.2.02.2.35.1.010.3.01.0.21.1.00.0.6removed4.0.04.1.47.4.67.5.10Updates
@feathersjs/socketiofrom 4.5.11 to 4.5.18Release notes
Sourced from
@feathersjs/socketio's releases.... (truncated)
Changelog
Sourced from
@feathersjs/socketio's changelog.... (truncated)
Commits
2d3671dchore(release): publish v4.5.18022a407chore(release): publish v4.5.1718872c0chore(release): publish v4.5.161774fe0chore: Update changelogd0e9600chore(release): publish v4.5.1525b6fb5chore(release): publish v4.5.14b5e94c4chore(release): publish v4.5.1332356a5fix: Fix socket.io type dependency (#2526)8697eccchore(release): publish v4.5.121c63e6bfix: Update all dependencies for crow release (#2520)Updates
mongodbfrom 4.1.0 to 4.17.0Release notes
Sourced from mongodb's releases.
... (truncated)
Changelog
Sourced from mongodb's changelog.
... (truncated)
Commits
c83a801chore(4.x): release 4.17.0 [skip-ci] (#3763)1b59955chore: update release automation scripts 4.x (#3824)5244711feat(NODE-5398): use mongodb-js/saslprep instead of saslprep (#3820)2910dcafix(NODE-5536): remove credentials from ConnectionPoolCreatedEvent options (#...0c1b654chore(NODE-5400): add@octokit/coreas a devDep (#3750)4adff37chore(NODE-5382): backport release automation scripts (#3747)2d028affix(NODE-5356): prevent scram auth from throwing TypeError if saslprep is not...0e1afc0ci(Node 5335): clean up instance profile from instance after CI runs (#3719)7f5b334ci(NODE-5334): install npm to node_artifacts directory in CI (#3709)e13038dfix(NODE-5316): prevent parallel topology creation in MongoClient.connect (#3...Maintainer changes
This version was pushed to npm by dbx-node, a new releaser for mongodb since your current version.
Updates
mongoosefrom 5.13.7 to 9.1.2Release notes
Sourced from mongoose's releases.
... (truncated)
Changelog
Sourced from mongoose's changelog.
... (truncated)
Commits
cdcc308chore: release 9.1.218fc24cMerge pull request #15937 from Automattic/dependabot/npm_and_yarn/master/sino...25bee06Merge pull request #15936 from Automattic/dependabot/npm_and_yarn/master/esli...b1d02f4Merge pull request #15935 from Automattic/dependabot/npm_and_yarn/master/mark...f715d44Merge pull request #15934 from Automattic/dependabot/github_actions/master/ac...36260d8fix markdown lint3bfb91aMerge pull request #15933 from Automattic/dependabot/npm_and_yarn/master/mong...5a8522dMerge pull request #15932 from Automattic/dependabot/github_actions/master/ac...54e2e2achore(deps): bump actions/checkout from 6.0.0 to 6.0.1d36de4eMerge pull request #15931 from Automattic/dependabot/npm_and_yarn/master/ark/...Updates
axiosfrom 0.21.1 to 0.30.2Release notes
Sourced from axios's releases.
... (truncated)
Commits
2fcb4ecchore: v0.30.2153f483chore: preversionee548fffix: tests failinga1b1d3ffix: backportmaxContentLengthvulnerability fix to v0.x (#7034)b17c4dechore: build latest versionad6b82achore: build latest versionda447d5chore(deps): bump form-data from 4.0.0 to 4.0.4 (#6978)6e922e4chore: added build artifactsa06ed1echore: added pre-release artifactsc010622feat: add type for allowAbsoluteUrls (#6849)Maintainer changes
This version was pushed to npm by jasonsaayman, a new releaser for axios since your current version.
Updates
serverless-offlinefrom 8.0.0 to 8.1.0Release notes
Sourced from serverless-offline's releases.
Commits
77b3659chore: Release v8.1.0c9b4f9efeat: Add support for Python 3.9 runtime (#1267)Updates
semverfrom 5.7.1 to 5.7.2Release notes
Sourced from semver's releases.
Changelog
Sourced from semver's changelog.
Commits
f8cc313chore: release 5.7.22f8fd41fix: better handling of whitespace (#585)deb5ad5chore:@npmcli/template-oss@4.16.0Maintainer changes
This version was pushed to npm by lukekarrys, a new releaser for semver since your current version.
Updates
@babel/traversefrom 7.15.0 to 7.28.5Release notes
Sourced from
@babel/traverse's releases.... (truncated)
Changelog
Sourced from
@babel/traverse's changelog.... (truncated)
Commits
61647aev7.28.5e579cb0EnablestrictNullChecksfortraverse(#17499)7385eae[Babel 8] Improve scope information collection performance (#17043)26bc651[Babel 8] Better node type definitions forcomputed(#17500)e626523FixJSXIdentifierhandling inisReferencedIdentifier(#17503)19c9126fix: ensure scope.push register in anonymous fn (#17504)Description has been truncated