iterative / cml

♾️ CML - Continuous Machine Learning | CI/CD for ML
http://cml.dev
Apache License 2.0
4k stars 338 forks source link

[Snyk] Upgrade exponential-backoff from 3.1.0 to 3.1.1 #1417

Closed 0x2b3bfa0 closed 4 months ago

0x2b3bfa0 commented 1 year ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade exponential-backoff from 3.1.0 to 3.1.1.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is **1 version** ahead of your current version. - The recommended version was released **6 months ago**, on 2023-02-20.
Release notes
Package name: exponential-backoff
  • 3.1.1 - 2023-02-20

    3.1.1

      </li>
      <li>
        <b>3.1.0</b> - <a href="https://snyk.io/redirect/github/coveooss/exponential-backoff/releases/tag/v3.1.0">2020-08-06</a></br><p>3.1.0</p>
      </li>
    </ul>
    from <a href="https://snyk.io/redirect/github/coveo/exponential-backoff/releases">exponential-backoff GitHub release notes</a>

Commit messages
Package name: exponential-backoff
  • 47b552a 3.1.1
  • f7ea10a npm audit
  • f711248 publish
  • 5c132c4 add if condition
  • 97dac13 update lockfile
  • a936649 add extra line
  • f54b418 add npmrc
  • c70e6e4 simplify to one job
  • ab2ce05 readd build step
  • 084bd89 fix env syntax
  • da51968 test token
  • 98cbbb5 add release job
  • 79b1847 add ci.yml instead of travis; specify files instead of .npmignore
  • 5800912 adjust README to reflect optional options; export new interface (#52)
  • 08a74b1 Bump json5 from 2.1.0 to 2.2.3 (#50)
  • 615ac7a Bump qs from 6.5.2 to 6.5.3 (#49)
  • 08492b4 Bump set-value and union-value (#48)
  • e572a9f Bump minimist and mkdirp (#46)
  • 2e00a0f Bump minimatch from 3.0.4 to 3.1.2 (#45)
  • 60a19cc Bump json-schema and jsprim (#44)
  • 53e8911 Bump decode-uri-component from 0.2.0 to 0.2.2 (#43)
  • 2801b39 Bump ajv from 6.10.2 to 6.12.6 (#42)
  • a96679f Bump tmpl from 1.0.4 to 1.0.5 (#40)
  • 0d19745 Bump path-parse from 1.0.6 to 1.0.7 (#38)
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

github-actions[bot] commented 1 year ago

Test Comment

github-actions[bot] commented 1 year ago

Test Comment