JoinColony / colonyDapp

Colony dApp client
49 stars 19 forks source link

Bump shell-quote and react-styleguidist #4200

Open dependabot[bot] opened 1 year ago

dependabot[bot] commented 1 year ago

Bumps shell-quote to 1.8.0 and updates ancestor dependency react-styleguidist. These dependencies need to be updated together.

Updates shell-quote from 1.7.2 to 1.8.0

Changelog

Sourced from shell-quote's changelog.

v1.8.0 - 2023-01-30

Commits

  • [New] extract parse and quote to their own deep imports 553fdfc
  • [Tests] add nyc coverage fd7ddcd
  • [New] Add support for here strings (<<<) 9802fb3
  • [New] parse: Add syntax support for duplicating input file descriptors 216b198
  • [Dev Deps] update @ljharb/eslint-config, aud, tape 85f8e31
  • [Tests] add evalmd c5549fc
  • [actions] update checkout action 62e9b49

v1.7.4 - 2022-10-12

Merged

Commits

  • [eslint] fix indentation and whitespace aaa9d1f
  • [eslint] additional cleanup 397cb62
  • [meta] add auto-changelog 497fca5
  • [actions] add reusable workflows 4763c36
  • [eslint] add eslint 6ee1437
  • [readme] rename, add badges 7eb5134
  • [meta] update URLs 67381b6
  • [meta] create FUNDING.yml; add funding in package.json 8641572
  • [meta] use npmignore to autogenerate an npmignore file 2e2007a
  • Only apps should have lockfiles f97411e
  • [Dev Deps] update tape 051f608
  • [meta] add safe-publish-latest 18cadf9
  • [Tests] add aud in posttest dc1cc12

1.7.3

  • Fix a security issue where the regex for windows drive letters allowed some shell meta-characters to escape the quoting rules. (CVE-2021-42740)
Commits
  • 508e2f9 v1.8.0
  • fd7ddcd [Tests] add nyc coverage
  • 9802fb3 [New] Add support for here strings (<<<)
  • 216b198 [New] parse: Add syntax support for duplicating input file descriptors
  • c5549fc [Tests] add evalmd
  • 553fdfc [New] extract parse and quote to their own deep imports
  • 85f8e31 [Dev Deps] update @ljharb/eslint-config, aud, tape
  • 62e9b49 [actions] update checkout action
  • 5409e72 v1.7.4
  • 4763c36 [actions] add reusable workflows
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by ljharb, a new releaser for shell-quote since your current version.


Updates react-styleguidist from 11.0.5 to 11.2.0

Release notes

Sourced from react-styleguidist's releases.

v11.2.0

11.2.0 (2022-01-27)

Features

v11.1.8

11.1.8 (2022-01-10)

Bug Fixes

  • Remove is-directory, use fs module directly (#1897) (77a2a2e)

v11.1.7

11.1.7 (2021-06-02)

Bug Fixes

v11.1.6

11.1.6 (2021-03-18)

Bug Fixes

  • generate typings directly in lib instead of lib/src (#1756) (c3cd564)

v11.1.5

11.1.5 (2020-12-04)

Bug Fixes

v11.1.4

11.1.4 (2020-11-24)

Bug Fixes

v11.1.3

... (truncated)

Commits
  • 92518df feat: Webpack 5 support (#1903)
  • 6415cb6 Build(deps): Bump url-parse from 1.4.7 to 1.5.3 (#1896)
  • 6ca3c4c chore: Add npm 'cache' to 'release' workflow (#1899)
  • 7d62618 chore: Add npm 'cache' to 'danger' workflow (#1900)
  • 9114b4a docs: Fix code block formatting in Maintenance.md (#1908)
  • 54be33b chore: Add npm 'cache' to 'release' workflow (#1901)
  • 48e98b8 chore: Add npm 'cache' to Node.js workflow (#1898)
  • 77a2a2e fix: Remove is-directory, use fs module directly (#1897)
  • 0a477a6 docs: Add more funding options
  • 33b6796 Build(deps): Bump prismjs from 1.24.0 to 1.25.0 in /examples/webpack (#1892)
  • Additional commits viewable in compare view


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/JoinColony/colonyDapp/network/alerts).