GluuFederation / gluu-passport

Gluu interface to Passport.js to support social login and inbound identity.
Apache License 2.0
6 stars 17 forks source link

build(deps): bump express-rate-limit from 5.5.1 to 7.4.1 #572

Open dependabot[bot] opened 9 hours ago

dependabot[bot] commented 9 hours ago

Bumps express-rate-limit from 5.5.1 to 7.4.1.

Release notes

Sourced from express-rate-limit's releases.

v7.4.1

You can view the changelog here.

v7.4.0

You can view the changelog here.

v7.3.1

Fixed

  • Changed error displayed for the creationStack validation check when a store with localKeys set to false is used.
  • Improved documentation for the creationStack check.

You can view the full changelog here.

v7.3.0

Added

  • Added a new unsharedStore validation check that identifies cases where a single store instance is shared across multiple limiters.

You can view the full changelog here.

v7.2.0

Added

  • Added a new creationStack validation check that looks for instances created in a request handler.

You can view the full changelog here.

v7.1.5

Fixed

  • Enable async requestWasSuccessful methods to work as documented.

You can view the full changelog here.

v7.1.4

Fixed

  • Ensure header values are strings rather than numbers, for compatibility with

... (truncated)

Commits
  • eaea95b 7.4.1
  • 3a2fdba fix: return after calling next() when passOnStoreError is used (#482)
  • 53f3aac build(deps): bump body-parser and express (#480)
  • f18932c build(deps-dev): bump axios from 1.6.2 to 1.7.5 (#477)
  • 00458ea build(deps-dev): bump webpack from 5.76.3 to 5.94.0 (#476)
  • 9d7c8cf build(deps): bump ws, engine.io and socket.io-adapter (#474)
  • 68e0dcc 7.4.0
  • 7c654f3 feat: Added passOnStoreError to skip rate limitter if the store is not availa...
  • f40165b docs: use local link for proxy troubleshooting guide
  • ff3702e docs: correct description of max setting in WRN_ERL_MAX_ZERO (#472)
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)