Closed dependabot[bot] closed 2 months ago
Looks like these dependencies are no longer updatable, so this is no longer needed.
@dependabot recreate
Looks like this PR is closed. If you re-open it I'll rebase it as long as no-one else has edited it (you can use @dependabot reopen
if the branch has been deleted).
@dependabot reopen
@dependabot recreate
Looks like these dependencies are no longer updatable, so this is no longer needed.
Bumps the npm_and_yarn group with 6 updates in the / directory:
4.18.2
4.19.2
9.5.2
9.6.0
3.0.2
3.0.3
1.1.9
removed
7.0.0
7.0.1
2.7.1
2.8.3
Updates
express
from 4.18.2 to 4.19.2Release notes
Sourced from express's releases.
... (truncated)
Changelog
Sourced from express's changelog.
Commits
04bc627
4.19.2da4d763
Improved fix for open redirect allow list bypass4f0f6cc
4.19.1a003cfa
Allow passing non-strings to res.location with new encoding handling checks f...a1fa90f
fixed un-edited version in history.md for 4.19.011f2b1d
build: fix build due to inconsistent supertest behavior in older versions084e365
4.19.00867302
Prevent open redirect allow list bypass due to encodeurl567c9c6
Add note on how to update docs for new release (#5541)69a4cf2
deps: cookie@0.6.0Maintainer changes
This version was pushed to npm by wesleytodd, a new releaser for express since your current version.
Updates
@appium/base-driver
from 9.5.2 to 9.6.0Changelog
Sourced from
@appium/base-driver
's changelog.Commits
6344d14
chore: publish77d2ef7
chore(bass-driver): Improve capability deprecation warning (#20019)8cf3efd
feat(base-driver): Add onDownload handler to the configureApp helper (#20015)407706c
chore: publish9f655f6
fix: do not print deprecation errors for non-provided caps (#19986)d44e669
chore: publishb8368bb
fix(base-driver): update dependency path-to-regexp to v6.2.2 (#19979)d5af68e
chore(base-driver): Drop the obsolete es6-error import (#19974)7cb1621
fix(base-driver): update dependency express to v4.19.2a74132c
fix(base-driver): update dependency express to v4.19.1Updates
braces
from 3.0.2 to 3.0.3Commits
74b2db2
3.0.388f1429
update eslint. lint, fix unit tests.415d660
Snyk js braces 6838727 (#40)190510f
fix tests, skip 1 test in test/braces.expand716eb9f
readme bumpa5851e5
Merge pull request #37 from coderaiser/fix/vulnerability2092bd1
feature: braces: add maxSymbols (https://github.com/micromatch/braces/issues/...9f5b4cf
fix: vulnerability (https://security.snyk.io/vuln/SNYK-JS-BRACES-6838727)98414f9
remove funding file665ab5d
update keepEscaping doc (#27)Removes
ip
Updates
pac-resolver
from 7.0.0 to 7.0.1Release notes
Sourced from pac-resolver's releases.
Changelog
Sourced from pac-resolver's changelog.
Commits
d4d3cd0
Version Packages (#271)a954da3
[pac-resolver] Removeip
dependency (#281)aaebfa4
Prettier5923589
Moved licenses to separate files (#251)Updates
socks
from 2.7.1 to 2.8.3Release notes
Sourced from socks's releases.
Commits
a2a06d9
2.8.3992b002
Fix bug with ipv6 conversion in ipToBuffer (#101)99633ae
v280 (#98)89d8c07
Fix package lock for 2.7.x (#97)66b7f73
remove ip package (#94)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show