nodeshift / npcheck

"Node Package Checker" - A tool to run various checks on npm modules
16 stars 6 forks source link

[Snyk] Upgrade eslint from 7.32.0 to 8.40.0 #165

Closed lholmquist closed 1 year ago

lholmquist commented 1 year ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade eslint from 7.32.0 to 8.40.0.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
*Warning:* This is a major version upgrade, and may be a breaking change. - The recommended version is **48 versions** ahead of your current version. - The recommended version was released **24 days ago**, on 2023-05-05. The recommended version fixes: Severity | Issue | PriorityScore (*) | Exploit Maturity | :-------------------------:|:-------------------------|-------------------------|:------------------------- | Regular Expression Denial of Service (ReDoS)
[SNYK-JS-MINIMATCH-3050818](https://snyk.io/vuln/SNYK-JS-MINIMATCH-3050818) | **265/1000**
**Why?** CVSS 5.3 | No Known Exploit (*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: eslint
  • 8.40.0 - 2023-05-05

    Features

    • 5db7808 feat: improve flat config errors for invalid rule options and severities (#17140) (Josh Goldberg )
    • f5574dc feat: Add findConfigFile() method to FlatESLint (#17142) (Nicholas C. Zakas)
    • e52b98b feat: add sourceCode property to the rule context (#17107) (Nitin Kumar)
    • 1468f5b feat: add physicalFilename property to the rule context (#17111) (Nitin Kumar)
    • 0df4d4f feat: add cwd to rule context (#17106) (Nitin Kumar)
    • 52018f2 feat: add filename property to the rule context (#17108) (Nitin Kumar)
    • 559ff4e feat: add new omitLastInOneLineClassBody option to the semi rule (#17105) (Nitin Kumar)

    Bug Fixes

    • f076e54 fix: Ensure FlatESLint#findConfigFile() doesn't throw. (#17151) (Nicholas C. Zakas)

    Documentation

    • e980bf3 docs: Update README (GitHub Actions Bot)
    • e92a6fc docs: Update README (GitHub Actions Bot)
    • af5fe64 docs: Fix custom rule schema docs (#17115) (Adam Jones)
    • 4a352a9 docs: explain how to include predefined globals (#17114) (Marcus Wyatt)
    • 5ea15d9 docs: add mastodon link in readme (#17110) (唯然)

    Chores

    • 4053004 chore: upgrade @ eslint/js@8.40.0 (#17156) (Milos Djermanovic)
    • 50fed1d chore: package.json update for @ eslint/js release (ESLint Jenkins)
    • 4c7a170 chore: upgrade @ eslint/eslintrc@2.0.3 (#17155) (Milos Djermanovic)
    • e80b7cc chore: upgrade espree@9.5.2 (#17154) (Milos Djermanovic)
    • ce3ac91 chore: upgrade eslint-visitor-keys@3.4.1 (#17153) (Milos Djermanovic)
    • 9094d79 chore: add latest/ to meta.docs.url in all core rules (#17136) (Milos Djermanovic)
    • d85efad perf: don't use grapheme-splitter on ASCII strings in key-spacing rule (#17122) (Milos Djermanovic)
  • 8.39.0 - 2023-04-21

    Features

    • 3f7af9f feat: Implement SourceCode#markVariableAsUsed() (#17086) (Nicholas C. Zakas)

    Documentation

    • 6987dc5 docs: Fix formatting in Custom Rules docs (#17097) (Milos Djermanovic)
    • 4ee92e5 docs: Update README (GitHub Actions Bot)
    • d8e9887 docs: Custom Rules cleanup/expansion (#16906) (Ben Perlmutter)
    • 1fea279 docs: Clarify how to add to tsc agenda (#17084) (Nicholas C. Zakas)
    • 970ef1c docs: Update triage board location (Nicholas C. Zakas)
    • 6d8bffd docs: Update README (GitHub Actions Bot)

    Chores

    • 60a6f26 chore: upgrade @ eslint/js@8.39.0 (#17102) (Milos Djermanovic)
    • d5ba5c0 chore: package.json update for @ eslint/js release (ESLint Jenkins)
    • f57eff2 ci: run tests on Node.js v20 (#17093) (Nitin Kumar)
    • 9d1b8fc perf: Binary search in token store utils.search (#17066) (Francesco Trotta)
    • 07a4435 chore: Add request for minimal repro to bug report (#17081) (Nicholas C. Zakas)
    • eac4943 refactor: remove unnecessary use of SourceCode#getAncestors in rules (#17075) (Milos Djermanovic)
    • 0a7b60a chore: update description of SourceCode#getDeclaredVariables (#17072) (Milos Djermanovic)
    • 6e2df71 chore: remove unnecessary references to the LICENSE file (#17071) (Milos Djermanovic)
  • 8.38.0 - 2023-04-07

    Features

    • a1d561d feat: Move getDeclaredVariables and getAncestors to SourceCode (#17059) (Nicholas C. Zakas)

    Bug Fixes

    • 1c1ece2 fix: do not report on RegExp(...args) in require-unicode-regexp (#17037) (Francesco Trotta)

    Documentation

    • 7162d34 docs: Mention new config system is complete (#17068) (Nicholas C. Zakas)
    • 0fd6bb2 docs: Update README (GitHub Actions Bot)
    • c83531c docs: Update/remove external links, eg. point to eslint-community (#17061) (Pelle Wessman)
    • a3aa6f5 docs: Clarify no-div-regex rule docs (#17051) (Francesco Trotta)
    • b0f11cf docs: Update README (GitHub Actions Bot)
    • da8d52a docs: Update the second object instance for the "no-new" rule (#17020) (Ahmadou Waly NDIAYE)
    • 518130a docs: switch language based on current path (#16687) (Percy Ma)
    • 24206c4 docs: Update README (GitHub Actions Bot)

    Chores

    • 59ed060 chore: upgrade @ eslint/js@8.38.0 (#17069) (Milos Djermanovic)
    • 88c0898 chore: package.json update for @ eslint/js release (ESLint Jenkins)
    • cf682d2 refactor: simplify new-parens rule schema (#17060) (MHO)
    • 0dde022 ci: bump actions/add-to-project from 0.4.1 to 0.5.0 (#17055) (dependabot[bot])
  • 8.37.0 - 2023-03-28
    Read more
  • 8.36.0 - 2023-03-10
    Read more
  • 8.35.0 - 2023-02-26
    Read more
  • 8.34.0 - 2023-02-10
    Read more
  • 8.33.0 - 2023-01-28
    Read more
  • 8.32.0 - 2023-01-15
    Read more
  • 8.31.0 - 2022-12-31
    Read more
  • 8.30.0 - 2022-12-16
  • 8.29.0 - 2022-12-02
  • 8.28.0 - 2022-11-18
  • 8.27.0 - 2022-11-06
  • 8.26.0 - 2022-10-21
  • 8.25.0 - 2022-10-07
  • 8.24.0 - 2022-09-23
  • 8.23.1 - 2022-09-12
  • 8.23.0 - 2022-08-26
  • 8.22.0 - 2022-08-14
  • 8.21.0 - 2022-08-01
  • 8.20.0 - 2022-07-16
  • 8.19.0 - 2022-07-02
  • 8.18.0 - 2022-06-17
  • 8.17.0 - 2022-06-03
  • 8.16.0 - 2022-05-20
  • 8.15.0 - 2022-05-06
  • 8.14.0 - 2022-04-22
  • 8.13.0 - 2022-04-08
  • 8.12.0 - 2022-03-25
  • 8.11.0 - 2022-03-11
  • 8.10.0 - 2022-02-25
  • 8.9.0 - 2022-02-12
  • 8.8.0 - 2022-01-28
  • 8.7.0 - 2022-01-16
  • 8.6.0 - 2021-12-31
  • 8.5.0 - 2021-12-17
  • 8.4.1 - 2021-12-07
  • 8.4.0 - 2021-12-04
  • 8.3.0 - 2021-11-21
  • 8.2.0 - 2021-11-05
  • 8.1.0 - 2021-10-22
  • 8.0.1 - 2021-10-14
  • 8.0.0 - 2021-10-09
  • 8.0.0-rc.0 - 2021-09-24
  • 8.0.0-beta.2 - 2021-09-10
  • 8.0.0-beta.1 - 2021-08-27
  • 8.0.0-beta.0 - 2021-08-15
  • 7.32.0 - 2021-07-30
from eslint GitHub release notes
Commit messages
Package name: eslint
  • 69a19c8 8.40.0
  • 9ef73ea Build: changelog update for 8.40.0
  • 4053004 chore: upgrade @ eslint/js@8.40.0 (#17156)
  • 50fed1d chore: package.json update for @ eslint/js release
  • f076e54 fix: Ensure FlatESLint#findConfigFile() doesn't throw. (#17151)
  • 4c7a170 chore: upgrade @ eslint/eslintrc@2.0.3 (#17155)
  • e80b7cc chore: upgrade espree@9.5.2 (#17154)
  • ce3ac91 chore: upgrade eslint-visitor-keys@3.4.1 (#17153)
  • 5db7808 feat: improve flat config errors for invalid rule options and severities (#17140)
  • f5574dc feat: Add findConfigFile() method to FlatESLint (#17142)
  • e52b98b feat: add `sourceCode` property to the rule context (#17107)
  • e980bf3 docs: Update README
  • 9094d79 chore: add `latest/` to `meta.docs.url` in all core rules (#17136)
  • 1468f5b feat: add `physicalFilename` property to the rule context (#17111)
  • 0df4d4f feat: add `cwd` to rule context (#17106)
  • 52018f2 feat: add `filename` property to the rule context (#17108)
  • 559ff4e feat: add new `omitLastInOneLineClassBody` option to the `semi` rule (#17105)
  • e92a6fc docs: Update README
  • d85efad perf: don't use `grapheme-splitter` on ASCII strings in key-spacing rule (#17122)
  • af5fe64 docs: Fix custom rule schema docs (#17115)
  • 4a352a9 docs: explain how to include predefined globals (#17114)
  • 5ea15d9 docs: add mastodon link in readme (#17110)
  • 560e812 8.39.0
  • 94ff9eb Build: changelog update for 8.39.0
Compare

**Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.* For more information: 🧐 [View latest project report](https://app.snyk.io/org/nodeshift-agg/project/64979d5f-8f51-42cf-84c4-6c7388aff995?utm_source=github&utm_medium=referral&page=upgrade-pr) 🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/nodeshift-agg/project/64979d5f-8f51-42cf-84c4-6c7388aff995/settings/integration?utm_source=github&utm_medium=referral&page=upgrade-pr) 🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/nodeshift-agg/project/64979d5f-8f51-42cf-84c4-6c7388aff995/settings/integration?pkg=eslint&utm_source=github&utm_medium=referral&page=upgrade-pr#auto-dep-upgrades)