build(deps): bump the npm_and_yarn group across 1 directory with 32 updates#3
Open
dependabot[bot] wants to merge 1 commit into
Open
build(deps): bump the npm_and_yarn group across 1 directory with 32 updates#3dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
…pdates Bumps the npm_and_yarn group with 25 updates in the / directory: | Package | From | To | | --- | --- | --- | | [ansi-regex](https://github.com/chalk/ansi-regex) | `3.0.0` | `3.0.1` | | [chownr](https://github.com/isaacs/chownr) | `1.0.1` | `1.1.0` | | [ini](https://github.com/npm/ini) | `1.3.4` | `1.3.6` | | [npm-user-validate](https://github.com/npm/npm-user-validate) | `1.0.0` | `1.0.1` | | [request](https://github.com/request/request) | `2.81.0` | `2.88.2` | | [ssri](https://github.com/npm/ssri) | `4.1.6` | `6.0.2` | | [tar](https://github.com/isaacs/node-tar) | `4.0.1` | `6.2.1` | | [marked](https://github.com/markedjs/marked) | `0.3.6` | `4.0.10` | | [yargs-parser](https://github.com/yargs/yargs-parser) | `5.0.0` | `15.0.3` | | [libnpx](https://github.com/npm/npx) | `9.6.0` | `10.2.4` | | [nyc](https://github.com/istanbuljs/nyc) | `11.1.0` | `11.9.0` | | [minimist](https://github.com/minimistjs/minimist) | `1.2.0` | `1.2.8` | | [mkdirp](https://github.com/isaacs/node-mkdirp) | `0.5.1` | `0.5.6` | | [tap](https://github.com/tapjs/tapjs) | `10.7.2` | `10.7.3` | | [fstream](https://github.com/npm/fstream) | `1.0.11` | `1.0.12` | | [http-cache-semantics](https://github.com/kornelski/http-cache-semantics) | `3.7.3` | `4.1.1` | | [npm-profile](https://github.com/npm/npm-profile) | `2.0.4` | `9.0.0` | | [pacote](https://github.com/npm/pacote) | `6.0.2` | `17.0.6` | | [bl](https://github.com/rvagg/bl) | `0.9.5` | `removed` | | [nano](https://github.com/apache/couchdb-nano) | `6.4.0` | `10.1.3` | | [hoek](https://github.com/hapijs/hoek) | `2.16.3` | `removed` | | [request](https://github.com/request/request) | `2.81.0` | `2.88.2` | | [nano](https://github.com/apache/couchdb-nano) | `6.4.0` | `10.1.3` | | [tap](https://github.com/tapjs/tapjs) | `10.7.3` | `18.7.2` | | [decode-uri-component](https://github.com/SamVerschueren/decode-uri-component) | `0.2.0` | `0.2.2` | | [shelljs](https://github.com/shelljs/shelljs) | `0.5.3` | `removed` | | [standard](https://github.com/standard/standard) | `6.0.8` | `17.1.0` | | [dot-prop](https://github.com/sindresorhus/dot-prop) | `4.1.1` | `4.2.1` | Updates `ansi-regex` from 3.0.0 to 3.0.1 - [Release notes](https://github.com/chalk/ansi-regex/releases) - [Commits](chalk/ansi-regex@v3.0.0...v3.0.1) Updates `chownr` from 1.0.1 to 1.1.0 - [Commits](isaacs/chownr@v1.0.1...v1.1.0) Updates `ini` from 1.3.4 to 1.3.6 - [Release notes](https://github.com/npm/ini/releases) - [Changelog](https://github.com/npm/ini/blob/main/CHANGELOG.md) - [Commits](npm/ini@v1.3.4...v1.3.6) Updates `npm-user-validate` from 1.0.0 to 1.0.1 - [Release notes](https://github.com/npm/npm-user-validate/releases) - [Changelog](https://github.com/npm/npm-user-validate/blob/main/CHANGELOG.md) - [Commits](npm/npm-user-validate@v1.0.0...v1.0.1) Updates `request` from 2.81.0 to 2.88.2 - [Changelog](https://github.com/request/request/blob/master/CHANGELOG.md) - [Commits](https://github.com/request/request/commits) Updates `ssri` from 4.1.6 to 6.0.2 - [Release notes](https://github.com/npm/ssri/releases) - [Changelog](https://github.com/npm/ssri/blob/v6.0.2/CHANGELOG.md) - [Commits](npm/ssri@v4.1.6...v6.0.2) Updates `tar` from 4.0.1 to 6.2.1 - [Release notes](https://github.com/isaacs/node-tar/releases) - [Changelog](https://github.com/isaacs/node-tar/blob/main/CHANGELOG.md) - [Commits](isaacs/node-tar@v4.0.1...v6.2.1) Updates `marked` from 0.3.6 to 4.0.10 - [Release notes](https://github.com/markedjs/marked/releases) - [Changelog](https://github.com/markedjs/marked/blob/master/.releaserc.json) - [Commits](markedjs/marked@v0.3.6...v4.0.10) Updates `yargs-parser` from 5.0.0 to 15.0.3 - [Release notes](https://github.com/yargs/yargs-parser/releases) - [Changelog](https://github.com/yargs/yargs-parser/blob/yargs-parser-v15.0.3/CHANGELOG.md) - [Commits](yargs/yargs-parser@v5.0.0...yargs-parser-v15.0.3) Updates `libnpx` from 9.6.0 to 10.2.4 - [Changelog](https://github.com/npm/npx/blob/latest/CHANGELOG.md) - [Commits](npm/npx@v9.6.0...v10.2.4) Updates `nyc` from 11.1.0 to 11.9.0 - [Changelog](https://github.com/istanbuljs/nyc/blob/master/CHANGELOG.md) - [Commits](istanbuljs/nyc@v11.1.0...v11.9.0) Updates `minimist` from 1.2.0 to 1.2.8 - [Changelog](https://github.com/minimistjs/minimist/blob/main/CHANGELOG.md) - [Commits](minimistjs/minimist@v1.2.0...v1.2.8) Updates `mkdirp` from 0.5.1 to 0.5.6 - [Changelog](https://github.com/isaacs/node-mkdirp/blob/main/CHANGELOG.md) - [Commits](isaacs/node-mkdirp@0.5.1...v0.5.6) Updates `tap` from 10.7.2 to 10.7.3 - [Release notes](https://github.com/tapjs/tapjs/releases) - [Commits](tapjs/tapjs@v10.7.2...v10.7.3) Updates `fstream` from 1.0.11 to 1.0.12 - [Commits](npm/fstream@v1.0.11...v1.0.12) Updates `http-cache-semantics` from 3.7.3 to 4.1.1 - [Commits](kornelski/http-cache-semantics@v3.7.3...v4.1.1) Updates `npm-profile` from 2.0.4 to 9.0.0 - [Release notes](https://github.com/npm/npm-profile/releases) - [Changelog](https://github.com/npm/npm-profile/blob/main/CHANGELOG.md) - [Commits](npm/npm-profile@npm-profile/v2.0.4...v9.0.0) Updates `pacote` from 6.0.2 to 17.0.6 - [Release notes](https://github.com/npm/pacote/releases) - [Changelog](https://github.com/npm/pacote/blob/main/CHANGELOG.md) - [Commits](npm/pacote@v6.0.2...v17.0.6) Updates `http-proxy-agent` from 2.0.0 to 7.0.2 - [Release notes](https://github.com/TooTallNate/proxy-agents/releases) - [Changelog](https://github.com/TooTallNate/proxy-agents/blob/main/packages/http-proxy-agent/CHANGELOG.md) - [Commits](https://github.com/TooTallNate/proxy-agents/commits/http-proxy-agent@7.0.2/packages/http-proxy-agent) Updates `https-proxy-agent` from 2.1.0 to 7.0.4 - [Release notes](https://github.com/TooTallNate/proxy-agents/releases) - [Changelog](https://github.com/TooTallNate/proxy-agents/blob/main/packages/https-proxy-agent/CHANGELOG.md) - [Commits](https://github.com/TooTallNate/proxy-agents/commits/https-proxy-agent@7.0.4/packages/https-proxy-agent) Removes `bl` Updates `nano` from 6.4.0 to 10.1.3 - [Release notes](https://github.com/apache/couchdb-nano/releases) - [Commits](apache/couchdb-nano@v6.4.0...v10.1.3) Removes `hoek` Updates `request` from 2.81.0 to 2.88.2 - [Changelog](https://github.com/request/request/blob/master/CHANGELOG.md) - [Commits](https://github.com/request/request/commits) Updates `nano` from 6.4.0 to 10.1.3 - [Release notes](https://github.com/apache/couchdb-nano/releases) - [Commits](apache/couchdb-nano@v6.4.0...v10.1.3) Updates `tap` from 10.7.3 to 18.7.2 - [Release notes](https://github.com/tapjs/tapjs/releases) - [Commits](tapjs/tapjs@v10.7.2...v10.7.3) Updates `stringstream` from 0.0.5 to 0.0.6 - [Commits](mhart/StringStream@v0.0.5...v0.0.6) Updates `tough-cookie` from 2.3.2 to 2.3.4 - [Release notes](https://github.com/salesforce/tough-cookie/releases) - [Changelog](https://github.com/salesforce/tough-cookie/blob/master/CHANGELOG.md) - [Commits](salesforce/tough-cookie@v2.3.2...v2.3.4) Updates `underscore` from 1.8.3 to 1.13.6 - [Commits](jashkenas/underscore@1.8.3...1.13.6) Updates `decode-uri-component` from 0.2.0 to 0.2.2 - [Release notes](https://github.com/SamVerschueren/decode-uri-component/releases) - [Commits](SamVerschueren/decode-uri-component@v0.2.0...v0.2.2) Updates `json-schema` from 0.2.3 to 0.4.0 - [Commits](kriszyp/json-schema@v0.2.3...v0.4.0) Updates `js-yaml` from 3.6.1 to 3.8.4 - [Changelog](https://github.com/nodeca/js-yaml/blob/master/CHANGELOG.md) - [Commits](nodeca/js-yaml@3.6.1...3.8.4) Removes `shelljs` Updates `standard` from 6.0.8 to 17.1.0 - [Release notes](https://github.com/standard/standard/releases) - [Changelog](https://github.com/standard/standard/blob/master/CHANGELOG.md) - [Commits](standard/standard@v6.0.8...v17.1.0) Updates `dot-prop` from 4.1.1 to 4.2.1 - [Release notes](https://github.com/sindresorhus/dot-prop/releases) - [Commits](sindresorhus/dot-prop@v4.1.1...v4.2.1) --- updated-dependencies: - dependency-name: ansi-regex dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: chownr dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: ini dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: npm-user-validate dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: request dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: ssri dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: tar dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: marked dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: yargs-parser dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: libnpx dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: nyc dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: minimist dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: mkdirp dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: tap dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: fstream dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: http-cache-semantics dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: npm-profile dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: pacote dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: http-proxy-agent dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: https-proxy-agent dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: bl dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: nano dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: hoek dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: request dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: nano dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: tap dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: stringstream dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: tough-cookie dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: underscore dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: decode-uri-component dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: json-schema dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: js-yaml dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: shelljs dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: standard dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: dot-prop dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <support@github.com>
build(deps): bump the npm_and_yarn group across 1 directory with 32 updates
🚨 Report Summary
For more details view the full report in OpenZeppelin Code Inspector |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the npm_and_yarn group with 25 updates in the / directory:
3.0.03.0.11.0.11.1.01.3.41.3.61.0.01.0.12.81.02.88.24.1.66.0.24.0.16.2.10.3.64.0.105.0.015.0.39.6.010.2.411.1.011.9.01.2.01.2.80.5.10.5.610.7.210.7.31.0.111.0.123.7.34.1.12.0.49.0.06.0.217.0.60.9.5removed6.4.010.1.32.16.3removed2.81.02.88.26.4.010.1.310.7.318.7.20.2.00.2.20.5.3removed6.0.817.1.04.1.14.2.1Updates
ansi-regexfrom 3.0.0 to 3.0.1Commits
f545bdb3.0.1c57d4c2fix a few old XO issues for backport419250fFix potential ReDoS (#37)Updates
chownrfrom 1.0.1 to 1.1.0Commits
76c21fa1.1.0e8f0dc7auto-publish scriptsb196e0eadd tests for old readdir supporte06dd8aAvoid unnecessary stats on node v10.10 and above36a93e3use lchown to address part 1 of TOCTOU issuea631d84use lchown instead of chown, if availablecdd4ce7use modern JavaScriptd548650update tap924de1eupdate travisUpdates
inifrom 1.3.4 to 1.3.6Commits
2da90391.3.6cfea636better git push script, before publish instead of after56d2805do not allow invalid hazardous string as section name738eca5v1.3.5da3e2c4ignore coverage9868eb4package lock6d8b7c8auto-publish scriptsca69873bring test coverage up to 100%2ad741bupdate standard for more standardizationsad2b547Update tap and travisMaintainer changes
This version was pushed to npm by isaacs, a new releaser for ini since your current version.
Updates
npm-user-validatefrom 1.0.0 to 1.0.1Changelog
Sourced from npm-user-validate's changelog.
Commits
5c5471c1.0.1c8a87dafix: update email validationcd75393Publish only the minimum of filesUpdates
requestfrom 2.81.0 to 2.88.2Changelog
Sourced from request's changelog.
Commits
Updates
ssrifrom 4.1.6 to 6.0.2Changelog
Sourced from ssri's changelog.
... (truncated)
Commits
b7c8c7cchore(release): 6.0.2b30dfdbfix: backport regex change from 8.0.1a4337cdchore(release): 6.0.1cf86553fix(opts): use figgy-pudding to specify consumed opts97b032ddeps: npm6ify pkglockd1aa2f7chore(release): 6.0.004b3ef7deps: remove safe-bufferd9bf359meta: drop support for node@4b71ef17fix(docs): minor typo0ae0c23chore(release): 5.3.0Maintainer changes
This version was pushed to npm by nlf, a new releaser for ssri since your current version.
Updates
tarfrom 4.0.1 to 6.2.1Release notes
Sourced from tar's releases.
Changelog
Sourced from tar's changelog.
... (truncated)
Commits
bef7b1e6.2.1fe8cd57prevent extraction in excessively deep subfoldersfe7ebfdremove security.md5bc9d406.2.0fe1ef5echangelog 6.2e483220get rid of npm lint stuff689928aci that works outside of npm orgdb6f539file inference improvements for .tbr and .tgz336fa8frefactor: dry and other pr commentseeba222chore: lint fixesUpdates
markedfrom 0.3.6 to 4.0.10Release notes
Sourced from marked's releases.
... (truncated)
Commits
ae01170chore(release): 4.0.10 [skip ci]fceda57🗜️ build [skip ci]8f80657fix(security): fix redos vulnerabilitiesc4a3ccdMerge pull request from GHSA-rrrm-qjm4-v8hfd7212a6chore(deps-dev): Bump jasmine from 4.0.0 to 4.0.1 (#2352)5a84db5chore(deps-dev): Bump rollup from 2.62.0 to 2.63.0 (#2350)2bc67a5chore(deps-dev): Bump markdown-it from 12.3.0 to 12.3.2 (#2351)98996b8chore(deps-dev): Bump@babel/preset-envfrom 7.16.5 to 7.16.7 (#2353)ebc2c95chore(deps-dev): Bump highlight.js from 11.3.1 to 11.4.0 (#2354)e5171a9chore(release): 4.0.9 [skip ci]Maintainer changes
This version was pushed to npm by tonybrix, a new releaser for marked since your current version.
Updates
yargs-parserfrom 5.0.0 to 15.0.3Release notes
Sourced from yargs-parser's releases.
Changelog
Sourced from yargs-parser's changelog.
Commits
50a7aebchore: release 15.x.x (#402)49ea4effix(build): should use releases_created when using manifest89e2580chore: release 15.x.x (#401)bc387ecfix(perf): address slow parse when using unknown-options-as-args (#400)632b3e0build: setup release please for back-port204e9a7build: configuring v15 for back-ports (#399)c893d30fix: backport proto fixeseab0cb6chore(release): 15.0.0ef771cafeat!: reworkcollect-unknown-optionsintounknown-options-as-args, provi...ac11361chore(release): 14.0.0Maintainer changes
This version was pushed to npm by oss-bot, a new releaser for yargs-parser since your current version.
Updates
libnpxfrom 9.6.0 to 10.2.4Changelog
Sourced from libnpx's changelog.
... (truncated)
Commits
84eeb54chore(release): 10.2.47a03da5test: patch child.js test122ed5cdeps: update yargsfa6a282chore(release): 10.2.37d90a71chore: update project settings, remove weall* stuff26a8394chore(release): 10.2.2e0eb3cbfix: install latest npm on travis for node 6e8b4a7echore: put node 6 back in travis set9a23db1fix: correct Kat's github url3733137fix: Update changelog to fix old issue linksMaintainer changes
This version was pushed to npm by claudiahdz, a new releaser for libnpx since your current version.
Updates
nycfrom 11.1.0 to 11.9.0Changelog
Sourced from nyc's changelog.
... (truncated)
Commits
570a08achore(release): 11.9.01329a3bfeat: add option that allows instrument to exit on error (#850)bc9ffe5chore(release): 11.8.09def3ebfeat: merge together multiple istanbul format reports (#840)43bda0cchore(release): 11.7.3c20f8dasecurity: address all vulnerabilities (#836)4bdd42cchore(release): 11.7.2bd77538test: cache clear was breaking build (#835)a522dd9chore: add Node.js 8 and 10, remove Node.js 4 (#829)99576fbchore: clone only last commit (#831)Updates
minimistfrom 1.2.0 to 1.2.8Changelog
Sourced from minimist's changelog.
... (truncated)
Commits
6901ee2v1.2.8a026794Merge tag 'v0.2.3'c0b2661v0.2.363b8fee[Fix] Fix long option followed by single dash (#17)72239e6[Tests] Remove duplicate test (#12)34b0f1c[eslint] fix indentation3226afa[Dev Deps] add missingnpmignoredev dep098873c[Dev Deps] update@ljharb/eslint-config,aud9ec4d27[Fix] Fix long option followed by single dashba92fe6[actions] Avoid 0.6 tests due to build failuresMaintainer changes
This version was pushed to npm by ljharb, a new releaser for minimist since your current version.
Updates
mkdirpfrom 0.5.1 to 0.5.6Commits
92f086d0.5.62a28125clean up testsc905d65update minimist049cf180.5.5bea6382Remove unnecessary umask calls42a012c0.5.42867920fix infinite loop on windows machinesd784e700.5.3d612c5dadd files list so this package isn't a monsterb2e7ba00.5.2Maintainer changes
This version was pushed to npm by isaacs, a new releaser for mkdirp since your current version.
Updates
tapfrom 10.7.2 to 10.7.3Commits
104728ev10.7.3352878fUpdate deps13f2ca2Fix missing “not” in default message for strictNotSame067dc57node can be called nodejsa335bc4fixed punctuation in readmeUpdates
fstreamfrom 1.0.11 to 1.0.12Commits
42354591.0.126a77d2fClobber a Link if it's in the way of a FileUpdates
http-cache-semanticsfrom 3.7.3 to 4.1.1Commits
2449650Update mocha560b2d8Don't use regex to trim whitespaceb1bdb92Remove linting package zooc20dc7eCache 308ed83aecExplain trust server date1b35980rfc 5861 (stale-if-error, stale-while-revalidate)2c2fac2Drop trustServerDateeb7028fTest names84cc9a8Bumpae5ecd5Add status to testsUpdates
npm-profilefrom 2.0.4 to 9.0.0Release notes
Sourced from npm-profile's releases.
... (truncated)
Changelog
Sourced from npm-profile's changelog.
... (truncated)
Commits
Description has been truncated