eiurur / Mukuu

COM3D2 MOD Search Site.
https://mukuu.herokuapp.com
27 stars 3 forks source link

[Snyk] Upgrade lerna from 3.20.2 to 3.22.0 #42

Closed snyk-bot closed 4 years ago

snyk-bot commented 4 years ago

Snyk has created this PR to upgrade lerna from 3.20.2 to 3.22.0.

merge advice

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


The recommended version fixes:

Severity Issue Exploit Maturity
Prototype Pollution
SNYK-JS-YARGSPARSER-560381
Proof of Concept
Release notes
Package name: lerna
  • 3.22.0 - 2020-05-24

    3.22.0 (2020-05-24)

    Bug Fixes

    • conventional-commits: Support modern config builder functions (#2546) (7ffb297), closes #2138
    • create: Use correct variable name in generated CLI output (#2547) (a1fd622)
    • deps: upgrade octokit/enterprise-rest to v6 (#2464) (b44ea75)
    • import: Support non-ASCII characters in file paths (#2441) (c74ffa4)
    • publish: Avoid errors when files are ignored by git (#2445) (448f2ae), closes #2151
    • publish: Avoid exception when publishing 1st version (#2485) (5d80285)
    • publish: Support --tag-version-prefix in --canary mode (#2435) (611c38e)
    • version: --atomic fallback when GIT_REDIRECT_STDERR is enabled (#2467) (c255d12)

    Features

    • conventional-commits: Preserve major version zero on breaking changes (#2486) (6126e6c)
    • version: add --force-git-tag option (#2594) (00738e9)
  • 3.21.0 - 2020-05-13

    3.21.0 (2020-05-13)

    Bug Fixes

    • publish: Canary releases without previous tags should not explode (c9eb590)

    Features

    • project: Add getPackagesSync() export (068bdd7)
    • version: Ignore private packages completely with --no-private (a9b9f97)
  • 3.20.2 - 2020-01-02

    3.20.2 (2020-01-02)

    Bug Fixes

    • version: Loosen --atomic fallback to catch incompatible CLI versions (6f0e2bb), closes #2400
from lerna GitHub release notes
Commit messages
Package name: lerna
  • 0d45bd5 chore(release): v3.22.0
  • 00738e9 feat(version): add `--force-git-tag` option (#2594)
  • e58e982 docs(version): Fix links in README (#2558)
  • 4a84169 docs: Optimize logo PNG (170kb to 80kb) (#2548)
  • a1fd622 fix(create): Use correct variable name in generated CLI output (#2547)
  • 7ffb297 fix(conventional-commits): Support modern config builder functions (#2546)
  • ef83809 docs(bootstrap): Add note about `--hoist` incompatibility with `file:` specifiers (#2540)
  • 91d9d3e doc(readme): Add note about fixed mode w/major version zero (#2488)
  • 6126e6c feat(conventional-commits): Preserve major version zero on breaking changes (#2486)
  • 5d80285 fix(publish): Avoid exception when publishing 1st version (#2485)
  • c255d12 fix(version): `--atomic` fallback when `GIT_REDIRECT_STDERR` is enabled (#2467)
  • b44ea75 fix(deps): upgrade octokit/enterprise-rest to v6 (#2464)
  • 5bb09d4 docs(readme): Improve phrasing (#2455)
  • 448f2ae fix(publish): Avoid errors when files are ignored by git (#2445)
  • c74ffa4 fix(import): Support non-ASCII characters in file paths (#2441)
  • 611c38e fix(publish): Support `--tag-version-prefix` in `--canary` mode (#2435)
  • a0402e4 docs: Remove managed-root from FAQ.md (#2431)
  • 1e3f9dd docs(version): Alphabetize list of options (#2415)
  • 3367257 chore(release): v3.21.0
  • a49d674 chore: npm audit did something? ugh minimist
  • 28e9941 chore: resolve kind-of 'vulnerability'
  • f280286 chore: resolve acorn 'vulnerability'
  • 068bdd7 feat(project): Add `getPackagesSync()` export
  • 1713635 refactor(project): Inline array flattener
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

πŸ›  Adjust upgrade PR settings

πŸ”• Ignore this dependency or unsubscribe from future upgrade PRs