chore(deps): bump the npm_and_yarn group across 2 directories with 6 updates #3922
+1,542
−769
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the npm_and_yarn group with 5 updates in the / directory:
8.5.1
9.0.0
2.88.12
3.0.7
9.7.0
13.17.0
3.2.0
3.3.0
2.13.5
2.15.3
Bumps the npm_and_yarn group with 1 update in the /test/e2e/oauth2-client directory: jsonwebtoken.
Updates
jsonwebtoken
from 8.5.1 to 9.0.0Changelog
Sourced from jsonwebtoken's changelog.
Commits
e1fa9dc
Merge pull request from GHSA-8cf7-32gw-wr335eaedbf
chore(ci): remove github test actions job (#861)cd4163e
chore(ci): configure Github Actions jobs for Tests & Security Scanning (#856)ecdf6cc
fix!: Prevent accidental use of insecure key sizes & misconfiguration of secr...8345030
fix(sign&verify)!: Remove defaultnone
support fromsign
andverify
met...7e6a86b
Upload OpsLevel YAML (#849)74d5719
docs: update references vercel/ms references (#770)d71e383
docs: document "invalid token" error3765003
docs: fix spelling in README.md: Peak -> Peek (#754)a46097e
docs: make decode impossible to discover before verifyMaintainer changes
This version was pushed to npm by julien.wollscheid, a new releaser for jsonwebtoken since your current version.
Updates
@cypress/request
from 2.88.12 to 3.0.7Release notes
Sourced from
@cypress/request
's releases.... (truncated)
Commits
0e4e875
Merge pull request #81 from cypress-io/renovate/qs-6.x00d1835
fix(deps): update dependency qs to v6.13.152b96dd
Merge pull request #73 from cypress-io/renovate/tough-cookie-5.x65ad82c
fix(deps): update dependency tough-cookie to v5068fc3f
Merge pull request #62 from cypress-io/renovate/nyc-17.x1feb194
Merge pull request #72 from MikeMcC399/circleci-test-image-206d9b946
chore(deps): update circleci test to cimg/node:18.20.46acc813
Merge pull request #69 from cypress-io/renovate/form-data-4.x6b90580
fix(deps): update dependency form-data to v4411a5f4
Merge pull request #67 from cypress-io/renovate/circleci-node-17.xUpdates
cypress
from 9.7.0 to 13.17.0Release notes
Sourced from cypress's releases.
... (truncated)
Commits
a15076f
chore: release 13.17.0 (#30778)a3877a4
chore: Update v8 snapshot cache - windows (#30773)97b404f
chore: Update v8 snapshot cache - darwin (#30772)3303d1e
chore: Update v8 snapshot cache - linux (#30771)d0e8d9b
chore: ignore yarnrc and yarn directory (#30769)0c3c497
feat: add support for chrome for testing browser (#30751)68c5714
chore: Cleanup duplication across tsconfig files in packages (#30764)53d47cf
chore: Update Chrome (beta) to 132.0.6834.46 (#30755)58297dd
chore: Update v8 snapshot cache - windows (#30742)e538359
chore: Update v8 snapshot cache - linux (#30741)Maintainer changes
This version was pushed to npm by cypress-npm-publisher, a new releaser for cypress since your current version.
Updates
path-to-regexp
from 3.2.0 to 3.3.0Release notes
Sourced from path-to-regexp's releases.
Commits
2eb1293
3.3.0d31670a
Add backtrack protection to 3.x release (#321)Updates
@openapitools/openapi-generator-cli
from 2.13.5 to 2.15.3Release notes
Sourced from
@openapitools/openapi-generator-cli
's releases.... (truncated)
Commits
0357c06
fix(deps): update dependency tslib to v2.8.1 (#841)81aab3e
chore(deps): update dependency@types/lodash
to v4.17.13 (#842)9279abb
fix(deps): update dependency@nestjs/axios
to v3.1.1 (#843)14c9ba6
fix(deps): update nest monorepo (#697)275a547
chore(deps): update nrwl monorepo to v20.0.7 (#840)8a5582e
chore(deps): update dependency@types/lodash
to v4.17.12 (#839)9626bc3
chore(deps): update dependency@types/concurrently
to v7.0.3 (#838)407e90f
feat(release): trigger a releasef49899f
chore: update nest js and nx dependencies (#837)f452cc8
fix(http): use proxy agent setup that supports proxy env variables with `no_p...Updates
jsonwebtoken
from 8.5.1 to 9.0.0Changelog
Sourced from jsonwebtoken's changelog.
Commits
e1fa9dc
Merge pull request from GHSA-8cf7-32gw-wr335eaedbf
chore(ci): remove github test actions job (#861)cd4163e
chore(ci): configure Github Actions jobs for Tests & Security Scanning (#856)ecdf6cc
fix!: Prevent accidental use of insecure key sizes & misconfiguration of secr...8345030
fix(sign&verify)!: Remove defaultnone
support fromsign
andverify
met...7e6a86b
Upload OpsLevel YAML (#849)74d5719
docs: update references vercel/ms references (#770)d71e383
docs: document "invalid token" error3765003
docs: fix spelling in README.md: Peak -> Peek (#754)a46097e
docs: make decode impossible to discover before verifyMaintainer changes
This version was pushed to npm by julien.wollscheid, a new releaser for jsonwebtoken since your current version.
Updates
lodash
from 4.17.14 to 4.17.21Commits
f299b52
Bump to v4.17.21c4847eb
Improve performance oftoNumber
,trim
andtrimEnd
on large input strings3469357
Prevent command injection through_.template
'svariable
optionded9bc6
Bump to v4.17.20.63150ef
Documentation fixes.00f0f62
test.js: Remove trailing comma.846e434
Temporarily use a custom fork oflodash-cli
.5d046f3
Re-enable Travis tests on4.17
branch.aa816b3
Remove/npm-package
.d7fbc52
Bump to v4.17.19Maintainer changes
This version was pushed to npm by bnjmnt4n, a new releaser for lodash since your current version.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.