-
-
Notifications
You must be signed in to change notification settings - Fork 9
chore(deps): bump the production-dependencies group across 1 directory with 12 updates #253
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Open
dependabot
wants to merge
1
commit into
main
Choose a base branch
from
dependabot/npm_and_yarn/backend/production-dependencies-659835d9ef
base: main
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Open
chore(deps): bump the production-dependencies group across 1 directory with 12 updates #253
dependabot
wants to merge
1
commit into
main
from
dependabot/npm_and_yarn/backend/production-dependencies-659835d9ef
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
…y with 12 updates Bumps the production-dependencies group with 12 updates in the /backend directory: | Package | From | To | | --- | --- | --- | | [@octokit/core](https://github.com/octokit/core.js) | `6.1.4` | `7.0.4` | | [cron](https://github.com/kelektiv/node-cron) | `4.1.3` | `4.3.3` | | [dayjs](https://github.com/iamkun/dayjs) | `1.11.13` | `1.11.18` | | [dotenv](https://github.com/motdotla/dotenv) | `16.4.7` | `17.2.2` | | [eventsource](https://github.com/EventSource/eventsource) | `3.0.6` | `4.0.0` | | [express](https://github.com/expressjs/express) | `4.21.2` | `5.1.0` | | [express-rate-limit](https://github.com/express-rate-limit/express-rate-limit) | `7.5.0` | `8.1.0` | | [mongoose](https://github.com/Automattic/mongoose) | `8.13.2` | `8.18.2` | | [mysql2](https://github.com/sidorares/node-mysql2) | `3.14.0` | `3.15.0` | | [octokit](https://github.com/octokit/octokit.js) | `4.1.2` | `5.0.3` | | [smee-client](https://github.com/probot/smee-client) | `3.1.1` | `4.3.1` | | [validator](https://github.com/validatorjs/validator.js) | `13.15.0` | `13.15.15` | Updates `@octokit/core` from 6.1.4 to 7.0.4 - [Release notes](https://github.com/octokit/core.js/releases) - [Commits](octokit/core.js@v6.1.4...v7.0.4) Updates `cron` from 4.1.3 to 4.3.3 - [Release notes](https://github.com/kelektiv/node-cron/releases) - [Changelog](https://github.com/kelektiv/node-cron/blob/main/CHANGELOG.md) - [Commits](kelektiv/node-cron@v4.1.3...v4.3.3) Updates `dayjs` from 1.11.13 to 1.11.18 - [Release notes](https://github.com/iamkun/dayjs/releases) - [Changelog](https://github.com/iamkun/dayjs/blob/v1.11.18/CHANGELOG.md) - [Commits](iamkun/dayjs@v1.11.13...v1.11.18) Updates `dotenv` from 16.4.7 to 17.2.2 - [Changelog](https://github.com/motdotla/dotenv/blob/master/CHANGELOG.md) - [Commits](motdotla/dotenv@v16.4.7...v17.2.2) Updates `eventsource` from 3.0.6 to 4.0.0 - [Release notes](https://github.com/EventSource/eventsource/releases) - [Changelog](https://github.com/EventSource/eventsource/blob/main/CHANGELOG.md) - [Commits](EventSource/eventsource@v3.0.6...v4.0.0) Updates `express` from 4.21.2 to 5.1.0 - [Release notes](https://github.com/expressjs/express/releases) - [Changelog](https://github.com/expressjs/express/blob/master/History.md) - [Commits](expressjs/express@4.21.2...v5.1.0) Updates `express-rate-limit` from 7.5.0 to 8.1.0 - [Release notes](https://github.com/express-rate-limit/express-rate-limit/releases) - [Commits](express-rate-limit/express-rate-limit@v7.5.0...v8.1.0) Updates `mongoose` from 8.13.2 to 8.18.2 - [Release notes](https://github.com/Automattic/mongoose/releases) - [Changelog](https://github.com/Automattic/mongoose/blob/master/CHANGELOG.md) - [Commits](Automattic/mongoose@8.13.2...8.18.2) Updates `mysql2` from 3.14.0 to 3.15.0 - [Release notes](https://github.com/sidorares/node-mysql2/releases) - [Changelog](https://github.com/sidorares/node-mysql2/blob/master/Changelog.md) - [Commits](sidorares/node-mysql2@v3.14.0...v3.15.0) Updates `octokit` from 4.1.2 to 5.0.3 - [Release notes](https://github.com/octokit/octokit.js/releases) - [Commits](octokit/octokit.js@v4.1.2...v5.0.3) Updates `smee-client` from 3.1.1 to 4.3.1 - [Release notes](https://github.com/probot/smee-client/releases) - [Commits](probot/smee-client@v3.1.1...v4.3.1) Updates `validator` from 13.15.0 to 13.15.15 - [Release notes](https://github.com/validatorjs/validator.js/releases) - [Changelog](https://github.com/validatorjs/validator.js/blob/master/CHANGELOG.md) - [Commits](validatorjs/validator.js@13.15.0...13.15.15) --- updated-dependencies: - dependency-name: "@octokit/core" dependency-version: 7.0.4 dependency-type: direct:production update-type: version-update:semver-major dependency-group: production-dependencies - dependency-name: cron dependency-version: 4.3.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: dayjs dependency-version: 1.11.18 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: dotenv dependency-version: 17.2.2 dependency-type: direct:production update-type: version-update:semver-major dependency-group: production-dependencies - dependency-name: eventsource dependency-version: 4.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: production-dependencies - dependency-name: express dependency-version: 5.1.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: production-dependencies - dependency-name: express-rate-limit dependency-version: 8.1.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: production-dependencies - dependency-name: mongoose dependency-version: 8.18.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: mysql2 dependency-version: 3.15.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: octokit dependency-version: 5.0.3 dependency-type: direct:production update-type: version-update:semver-major dependency-group: production-dependencies - dependency-name: smee-client dependency-version: 4.3.1 dependency-type: direct:production update-type: version-update:semver-major dependency-group: production-dependencies - dependency-name: validator dependency-version: 13.15.15 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies ... Signed-off-by: dependabot[bot] <[email protected]>
Dependency ReviewThe following issues were found:
|
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the production-dependencies group with 12 updates in the /backend directory:
6.1.47.0.44.1.34.3.31.11.131.11.1816.4.717.2.23.0.64.0.04.21.25.1.07.5.08.1.08.13.28.18.23.14.03.15.04.1.25.0.33.1.14.3.113.15.013.15.15Updates
@octokit/corefrom 6.1.4 to 7.0.4Release notes
Sourced from
@octokit/core's releases.... (truncated)
Commits
03b6c28fix(deps): update dependency@octokit/typesto v15 (#748)4951837ci(action): update actions/checkout action to v5 (#745)f576bc8chore(deps): bump vite from 6.3.5 to 6.3.6 (#747)9c425e3chore(deps): update dependency prettier to v3.6.2 (#743)0896c50fix: add createLogger to ensure that pino does not break (#744)629fa4efix(deps): update octokit monorepo (major) (#742)1aba598chore(deps): update dependency undici to v7 (#711)2abf89efix(deps): update dependency before-after-hook to v4 (#739)78747bfci: stop testing against NodeJS v18 (#738)38dd554chore(deps): update dependency undici to v6.21.2 [security] (#741)Updates
cronfrom 4.1.3 to 4.3.3Release notes
Sourced from cron's releases.
... (truncated)
Changelog
Sourced from cron's changelog.
... (truncated)
Commits
6ce81ebRelease v4.3.3 [skip ci]9bd0c4ebuild(deps): update dependency@types/luxonto ~3.7.034130fcchore(deps): lock file maintenance4f3d063chore(deps): update swc monorepob692865chore(deps): update linters91e2402chore(action): update step-security/harden-runner action to v2.13.0bc3fab6chore(deps): update dependency semantic-release to v24.2.708b58cechore(deps): update dependency chai to v5.2.116cdbabchore(deps): update dependency@types/nodeto v22.16.5ceb7a0cchore(action): update marocchino/sticky-pull-request-comment action to v2.9.4Updates
dayjsfrom 1.11.13 to 1.11.18Release notes
Sourced from dayjs's releases.
Changelog
Sourced from dayjs's changelog.
Commits
9beb3f3chore(release): 1.11.18 [skip ci]d72d0cfMerge pull request #2925 from iamkun/dev9be50d5chore: update workflow8cfb313fix: error semantic-release dependencyb9815f9chore: update workflow7fcf939chore(release): 1.11.17 [skip ci]b832babd2m (#2922)1b95ecdfix: [en-AU] locale use the same ordinal as moment (#2878)5465380chore: update .npmignorefcdbc82chore: update workflow debug@semantic-release/githubUpdates
dotenvfrom 16.4.7 to 17.2.2Changelog
Sourced from dotenv's changelog.
... (truncated)
Commits
2ea1a7617.2.20947a83changelog 🪵c8fb4aachangelog 🪵a2b13d2update READMEd92a91eremove37cf55a17.2.1f2d92e9changelog 🪵bd27017Merge pull request #897 from motdotla/adjust-tip-for-click8a9ce45add to tests19e5ad9adjust clickable tipUpdates
eventsourcefrom 3.0.6 to 4.0.0Release notes
Sourced from eventsource's releases.
Changelog
Sourced from eventsource's changelog.
Commits
d4385cbchore(release): 4.0.0 [skip ci]3057f3adocs: update migration guide6786e46fix!: dropFetchLikeInittype. UseEventSourceFetchInitinstead.91a3a48feat!: require node.js v20 or higher54fbb3echore(deps): upgrade dev dependencies to latest versions270e7f2chore(release): 3.0.7 [skip ci]1282872fix: mark fetch init properties required in typingsUpdates
expressfrom 4.21.2 to 5.1.0Release notes
Sourced from express's releases.
... (truncated)
Changelog
Sourced from express's changelog.
... (truncated)
Commits
cd7d4395.1.04c4f3eafix(deps): serve-static@^2.2.0 (#6418)cb4c56efix(docs): remove@mertcanaltinfrom Triagers (#6408)7b44e1dci: use full SHAs for github action versionseb6d125deps: router@^2.2.0 (#6417)f1a2dc8deps: type-is@^2.0.1 (#6420)6b51e8edeps: body-parser@^2.2.0 (#6419)1f311c5build(deps-dev): bump cookie-session from 2.0.0 to 2.1.0 (#6399)9e97144feat(deps): [email protected] (#6373)29d0980build(deps): bump ossf/scorecard-action from 2.4.0 to 2.4.1 (#6397)Updates
express-rate-limitfrom 7.5.0 to 8.1.0Release notes
Sourced from express-rate-limit's releases.
Commits
60619358.1.02f2ed4dAdd validation check for Forwarded header (#549)d0e7c85chore(deps-dev): bump the all group across 1 directory with 5 updates (#554)66aa1b0test: check for renamed Request in types (#543)658c201Document windowMs limit for MemoryStore and warn on invalid values (#550)aa3b291fix: include RateLimit-Reset header when resetSeconds is 0 (#553)1eca1a4Update CI workflow to include pull_request triggerec8a6f9chore: migrate biome config for current version207100echore(deps-dev): bump the all group with 4 updates (#548)471076dchore(deps-dev): bump the all group with 4 updates (#547)Updates
mongoosefrom 8.13.2 to 8.18.2Release notes
Sourced from mongoose's releases.
... (truncated)
Changelog
Sourced from mongoose's changelog.