cloudfoundry / stratos

Stratos: Web-based Management UI for Cloud Foundry and Kubernetes
Apache License 2.0
244 stars 131 forks source link

Bump socket.io-parser and karma #5019

Open dependabot[bot] opened 1 year ago

dependabot[bot] commented 1 year ago

Bumps socket.io-parser to 3.4.1 and updates ancestor dependency karma. These dependencies need to be updated together.

Updates socket.io-parser from 3.2.0 to 3.4.1

Release notes

Sourced from socket.io-parser's releases.

3.4.1

Bug Fixes

  • prevent DoS (OOM) via massive packets (#95) (dcb942d)

Links

3.4.0

This release mostly contains a bump of the debug package.

Links

3.3.2

Bug Fixes

  • prevent DoS (OOM) via massive packets (#95) (89197a0)

Links

3.3.1

Links

3.3.0

Bug Fixes

  • remove any reference to the global variable (b47efb2)

Links

Changelog

Sourced from socket.io-parser's changelog.

3.4.1 (2020-05-13)

Bug Fixes

  • prevent DoS (OOM) via massive packets (#95) (dcb942d)
Commits
  • a8130ce chore: release 3.4.1
  • dcb942d fix: prevent DoS (OOM) via massive packets (#95)
  • a5d0435 test: transpile to es5 with babelify
  • 652402a [chore] Release 3.4.0
  • 9b3572e [chore] Bump debug to version 4.1.0 (#92)
  • de1fd36 [docs] Fix incorrect socket.io-protocol version in Readme (#89)
  • 0de72b9 [chore] Release 3.3.0
  • b47efb2 [fix] Remove any reference to the global variable
  • d95e38f [chore] Update the Makefile
  • b57e063 [test] Update travis configuration
  • Additional commits viewable in compare view


Updates karma from 5.0.1 to 5.0.9

Release notes

Sourced from karma's releases.

v5.0.9

5.0.9 (2020-05-19)

Bug Fixes

v5.0.8

5.0.8 (2020-05-18)

Bug Fixes

  • dependencies: update and unlock socket.io dependency (#3513) (b60391f)
  • dependencies: update to latest log4js major (#3514) (47f1cb2)

v5.0.7

5.0.7 (2020-05-16)

Bug Fixes

  • detect type for URLs with query parameter or fragment identifier (#3509) (f399063), closes #3497

v5.0.6

5.0.6 (2020-05-16)

Bug Fixes

  • dependencies: update production dependencies (#3512) (0cd696f)

v5.0.5

5.0.5 (2020-05-07)

Bug Fixes

v5.0.4

5.0.4 (2020-04-30)

Bug Fixes

  • browser: make sure that empty results array is still recognized (#3486) (fa95fa3)

v5.0.3

... (truncated)

Changelog

Sourced from karma's changelog.

5.0.9 (2020-05-19)

Bug Fixes

5.0.8 (2020-05-18)

Bug Fixes

  • dependencies: update and unlock socket.io dependency (#3513) (b60391f)
  • dependencies: update to latest log4js major (#3514) (47f1cb2)

5.0.7 (2020-05-16)

Bug Fixes

  • detect type for URLs with query parameter or fragment identifier (#3509) (f399063), closes #3497

5.0.6 (2020-05-16)

Bug Fixes

  • dependencies: update production dependencies (#3512) (0cd696f)

5.0.5 (2020-05-07)

Bug Fixes

5.0.4 (2020-04-30)

Bug Fixes

  • browser: make sure that empty results array is still recognized (#3486) (fa95fa3)

5.0.3 (2020-04-29)

Bug Fixes

... (truncated)

Commits
  • 1c09f1c chore(release): 5.0.9 [skip ci]
  • 4d7d924 chore(docs): add semantic-release badge (#3522)
  • 00347bb fix(dependencies): update to safe version of http-proxy (#3519)
  • 9d66192 chore: increase step timeout to prevent flakiness (#3518)
  • 16010eb chore(release): 5.0.8 [skip ci]
  • a409696 chore: remove unused grunt lint command (#3515)
  • 47f1cb2 fix(dependencies): update to latest log4js major (#3514)
  • b60391f fix(dependencies): update and unlock socket.io dependency (#3513)
  • 4d49948 chore(release): 5.0.7 [skip ci]
  • f399063 fix: detect type for URLs with query parameter or fragment identifier (#3509)
  • Additional commits viewable in compare view


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/cloudfoundry/stratos/network/alerts).