Snyk has created this PR to upgrade express-rate-limit from 5.4.1 to 6.5.1.
:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
Warning: This is a major version upgrade, and may be a breaking change.
The recommended version is 14 versions ahead of your current version.
The recommended version was released 21 days ago, on 2022-07-23.
Export the MemoryStore, so it can now be imported as a named import
(import { MemoryStore } from 'express-rate-limit').
Fixed
Deprecate the onLimitReached option (this was supposed to be deprecated in
v6.0.0 itself); developers should use a custom handler function that checks if
the rate limit has been exceeded instead.
Bumped minimum Node version from 12.9 to 14.5 because the transpiled output uses the nullish coalescing operator (??), which isn't supported in Node prior to 14.x.
Snyk has created this PR to upgrade express-rate-limit from 5.4.1 to 6.5.1.
:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
Warning: This is a major version upgrade, and may be a breaking change.
Release notes
Package name: express-rate-limit
Changed
Added
5.0.0-beta.1
) as a supported peer dependency (#304)Changed
Changed
es2019
so that ESBuild outputs code that can run with Node 12.Fixed
undefined
is passed to the ratelimiter.
Added
MemoryStore
, so it can now be imported as a named import(
import { MemoryStore } from 'express-rate-limit'
).Fixed
onLimitReached
option (this was supposed to be deprecated inv6.0.0 itself); developers should use a custom handler function that checks if
the rate limit has been exceeded instead.
Added
rateLimit
in case the default import does not work.Fixed
default
, so Typescript CommonJS developers can default-import the library (import rateLimit from 'express-rate-limit'
).Fixed
esModuleInterop
flag in their Typescript compiler configuration.Fixed
.tgz
to GitHub releases.Changed
main
andmodule
fields topackage.json
. This helps tools such as ESLint that do not yet support theexports
field.package-lock.json
to matchpackage.json
Changed
??
), which isn't supported in Node prior to 14.x.Fixed
Added
js-cjs
,js-esm
,ts-cjs
,ts-esm
environments.redis
,mongo
,memcached
,precise
).Changed
esbuild
to generate ESM and CJS output. This reduces the size of the built package from 138 kb to 13kb and build time to 4 ms!dts-bundle-generator
to generate a single Typescript declaration file.Commit messages
Package name: express-rate-limit
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:
🧐 View latest project report
🛠 Adjust upgrade PR settings
🔕 Ignore this dependency or unsubscribe from future upgrade PRs