cmv / cmv-app

CMV - The Configurable Map Viewer - A community supported open source mapping framework built with the Esri JavaScript API and the Dojo Toolkit
https://demo.cmv.io/
MIT License
323 stars 278 forks source link

[Snyk] Upgrade body-parser from 1.19.2 to 1.20.0 #999

Open tmcgee opened 2 years ago

tmcgee commented 2 years ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade body-parser from 1.19.2 to 1.20.0.

![merge advice](https://app.snyk.io/badges/merge-advice/?package_manager=npm&package_name=body-parser&from_version=1.19.2&to_version=1.20.0&pr_id=29e0bf06-270f-45ed-92b3-80bc8dae509b&visibility=true&has_feature_flag=false) :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is **1 version** ahead of your current version. - The recommended version was released **24 days ago**, on 2022-04-03.
Release notes
Package name: body-parser
  • 1.20.0 - 2022-04-03
    • Fix error message for json parse whitespace in strict
    • Fix internal error when inflated body exceeds limit
    • Prevent loss of async hooks context
    • Prevent hanging when request already read
    • deps: depd@2.0.0
      • Replace internal eval usage with Function constructor
      • Use instance methods on process to check for listeners
    • deps: http-errors@2.0.0
      • deps: depd@2.0.0
      • deps: statuses@2.0.1
    • deps: on-finished@2.4.1
    • deps: qs@6.10.3
    • deps: raw-body@2.5.1
      • deps: http-errors@2.0.0
  • 1.19.2 - 2022-02-16
    • deps: bytes@3.1.2
    • deps: qs@6.9.7
      • Fix handling of __proto__ keys
    • deps: raw-body@2.4.3
      • deps: bytes@3.1.2
from body-parser GitHub release notes
Commit messages
Package name: body-parser
  • 1f6f58e 1.20.0
  • 7861a00 docs: update CI badge link
  • 601a076 docs: add security policy
  • 77bcc0e deps: qs@6.10.3
  • eac5f22 build: Node.js@17.8
  • 8611539 build: mocha@9.2.2
  • 2a2f471 Fix internal error when inflated body exceeds limit
  • 9db582d Fix error message for json parse whitespace in strict
  • bd702d2 lint: remove deprecated String.prototype.substr
  • 96df60f deps: depd@2.0.0
  • 1040c7e deps: http-errors@2.0.0
  • b9f9acb deps: on-finished@2.4.1
  • db3949f deps: raw-body@2.5.1
  • 0eb981a build: mocha@9.2.1
  • 87c55af build: Node.js@17.6
  • 6a557fd tests: assert err.type on most tests
Compare

**Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.* For more information: 🧐 [View latest project report](https://app.snyk.io/org/cmv/project/08d23464-b120-4f43-ae97-d0ebe4cee9a9?utm_source=github&utm_medium=referral&page=upgrade-pr) 🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/cmv/project/08d23464-b120-4f43-ae97-d0ebe4cee9a9/settings/integration?utm_source=github&utm_medium=referral&page=upgrade-pr) 🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/cmv/project/08d23464-b120-4f43-ae97-d0ebe4cee9a9/settings/integration?pkg=body-parser&utm_source=github&utm_medium=referral&page=upgrade-pr#auto-dep-upgrades)