DrPaulBrewer / single-market-robot-simulator

Runs numerical experiments for a single market populated by robot traders
Other
7 stars 5 forks source link

[Snyk] Upgrade secure-json-parse from 2.4.0 to 2.5.0 #45

Open snyk-bot opened 2 years ago

snyk-bot commented 2 years ago

Snyk has created this PR to upgrade secure-json-parse from 2.4.0 to 2.5.0.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


Release notes
Package name: secure-json-parse from secure-json-parse GitHub release notes
Commit messages
Package name: secure-json-parse
  • 316ad1e Bumped v2.5.0
  • 3938d11 improve performance of safeParse (#81)
  • 5798ff9 Merge pull request #80 from Uzlopak/move-types
  • 1560154 move types to types folder
  • 02b76c4 move tests to test folder, refactor tests to implicitly test scan() (#79)
  • 216eff0 disable package-lock generation (#77)
  • 654b7df ci: revert node version drop (#78)
  • 7020149 remove node 11 and 13 from ci cd pipeline (#76)
  • 397ac6d add safeParse to benchmarks (#73)
  • c4a7d71 Bump tsd from 0.20.0 to 0.22.0 (#70)
  • 6dbf5a2 fix ci/cd pipeline (#75)
  • 7ae337b docs: use `npm install` alias
  • d3c5451 chore(.gitignore): use updated skeleton template (#68)
  • 2cd2f73 Bump standard from 16.0.4 to 17.0.0 (#67)
  • 5d4bd59 Bump tsd from 0.19.1 to 0.20.0 (#66)
  • 110902b Bump actions/checkout from 2 to 3 (#65)
  • 5133bc9 Bump actions/setup-node from 2 to 3 (#64)
  • 1507ad3 Update dependabot.yml (#63)
  • af5c59c chore: upgrade github-action-merge-dependabot to v3 (#62)
  • f86aaee Bump fastify/github-action-merge-dependabot from 2.7.0 to 2.7.1 (#60)
  • 387b196 Bump fastify/github-action-merge-dependabot from 2.6.0 to 2.7.0 (#59)
  • 440bfcb build(dependabot): ignore minor and patch github-actions updates (#57)
  • 706c6c0 Bump actions/setup-node from 2.4.1 to 2.5.0 (#58)
  • 185a0a3 Bump tsd from 0.18.0 to 0.19.0 (#56)
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

šŸ§ View latest project report

šŸ›  Adjust upgrade PR settings

šŸ”• Ignore this dependency or unsubscribe from future upgrade PRs