GroceriStar / graphql-server

Second generation of groceristar server
GNU General Public License v3.0
1 stars 3 forks source link

Bump snyk from 1.305.0 to 1.663.0 #767

Closed dependabot-preview[bot] closed 3 years ago

dependabot-preview[bot] commented 3 years ago

Bumps snyk from 1.305.0 to 1.663.0.

Release notes

Sourced from snyk's releases.

v1.663.0

1.663.0 (2021-07-18)

Bug Fixes

  • bump docker plugin version with fixes (cb2ecf1)

v1.662.0

1.662.0 (2021-07-15)

Features

  • drop bold formatting based on design feedback. (8166a62)
  • suggest snyk fix for fixable pip & poetry projects (79f8e55)

v1.661.0

1.661.0 (2021-07-14)

Bug Fixes

  • make sure we suggest --all-sub-projects only when appropriate (bb22dcb)

v1.660.0

1.660.0 (2021-07-13)

Features

  • add JSON to the CDN hosting (eb6e147)

v1.659.0

1.659.0 (2021-07-13)

Features

  • Update the bst plugin to 2.11.3 (6a0dd20) This new version of the sbt plugin reports the sbt version used to run the analysis. It also adds a fallback method of determining the project folder. The sbt plugin PR for this version: snyk/snyk-sbt-plugin#98

v1.658.0

1.658.0 (2021-07-09)

... (truncated)

Commits
  • d7f23e0 Merge pull request #2098 from snyk/fix/bump-docker-plugin
  • cb2ecf1 fix: bump docker plugin version with fixes
  • 47d06bc Merge pull request #2089 from snyk/feat/snyk-fix-tip
  • 8166a62 feat: drop bold formatting based on design feedback.
  • 79f8e55 feat: suggest snyk fix for fixable pip & poetry projects
  • 2f1f1af refactor: combine multi scan tips into 1
  • 556db42 Merge pull request #2088 from snyk/refacfactor/display-tips
  • bb22dcb fix: make sure we suggest --all-sub-projects only when appropriate
  • 2c4e030 Merge pull request #2080 from snyk/refactor/move-formatters-to-lib
  • af569b2 Merge pull request #2086 from snyk/chore/tundra-lang-team-as-codeowner
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language - `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com): - Update frequency (including time of day and day of week) - Pull request limits (per update run and/or open at any time) - Automerge options (never/patch/minor, and dev/runtime dependencies) - Out-of-range updates (receive only lockfile updates, if desired) - Security updates (receive only security updates, if desired)
dependabot-preview[bot] commented 3 years ago

Superseded by #770.