nodeshift-archived / license-reporter

license-reporter is a tool that gathers licenses for project's dependencies and produces a output in XML, JSON, YAML and HTML format.
Apache License 2.0
13 stars 10 forks source link

[Snyk] Upgrade jest from 27.0.6 to 27.1.0 #398

Closed snyk-bot closed 2 years ago

snyk-bot commented 2 years ago

Snyk has created this PR to upgrade jest from 27.0.6 to 27.1.0.

merge advice :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Regular Expression Denial of Service (ReDoS)
SNYK-JS-TMPL-1583443
554/1000
Why? Proof of Concept exploit, Recently disclosed, CVSS 7.5
Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: jest
  • 27.1.0 - 2021-08-27

    Features

    • [jest-haste-map] Use watchman suffix-set option for faster file indexing. (#11784)
    • [jest-cli] Adds a new config options snapshotFormat which offers a way to override any of the formatting settings which come with pretty-format. (#11654)
    • [jest-reporters] Expose the getSummary util (#11695).
    • [jest-resolver] Support node: prefix when importing Node core modules (#11331)

    Fixes

    • [jest-each] Relaxed the validation to allow multibyte characters in headings (#11575)
    • [jest-environment-jsdom] Add support for userAgent option (#11773)
    • [jest-environment-node] Add Event and EventTarget to node global environment. (#11727)
    • [jest-mock] Fix spyOn to use Object.prototype.hasOwnProperty (#11721)
    • [jest-resolver] Add dependency on jest-haste-map (#11759)
    • [jest-types] Compat with @ types/node v16 (#11645)

    Chore & Maintenance

    • [docs] Correct expects.assertions documentation by adding async/await for asynchronous function.
  • 27.0.6 - 2021-06-28

    Fixes

    • [*] Publish all modules to include the build change in #11569
from jest GitHub release notes
Commit messages
Package name: jest
  • 5ef792e v27.1.0
  • d4b0546 chore: update changelog for release
  • 38558a8 chore(ci): use "latest" version of the OSes on Azure Pipelines (#11793)
  • 554d7d2 feat(resolver): support `node:` prefix when loading core modules (#11331)
  • 499ef4f [jest-each] Relaxed the validation to allow multibyte characters in headings (#11575)
  • d455d2d [jest-haste-map] Use more optimal suffix-set format (#11784)
  • c8b8ce2 chore: fix typo in examples (#11788)
  • 39190ea fix(jest-types): compat with @ types/node v16 (#11645)
  • 321e8d5 chore: fix PnP test by forcing older version of typescript
  • d38156c chore: replace issue templates with forms (#11772)
  • 4f4062b fix: support userAgent option for jsdom environment (#11773)
  • a22ed65 Adds options for configuring the snapshot and inline snapshot serializers (#11654)
  • d99534b Add testExecError to testResultsProcessor docs (#11670)
  • 84b3b03 chore: refresh lockfile (#11760)
  • db4668e chore(deps): bump dessant/lock-threads from 2.1.1 to 2.1.2 (#11762)
  • 396bfd2 docs: update ECMAScript Modules file extension examples (#11615)
  • 8d33ba1 fix(resolver): add dependency on `jest-haste-map` (#11759)
  • 0d399f6 chore: add workspaces yarn plugin
  • f3ae13c fix: spyOn should not rely on hasOwnProperty from the spied object (#11721)
  • cccc155 docs: add partials mocking guide (#11537)
  • e397436 docs: fix broken links to jest documentation (#11582)
  • ee73150 Expose `getSummary` from `jest-reporters.utils` (#11695)
  • e8a274e Fix links to type definition in Jest-Circus README.md (#11711)
  • 43a8ada chore: use builtin dep caching in actions/setup-node (#11747)
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs