snyk / vulncost

Find security vulnerabilities in open source npm packages while you code
https://marketplace.visualstudio.com/items?itemName=snyk-security.vscode-vuln-cost
MIT License
200 stars 34 forks source link

[Snyk] Upgrade htmlparser2 from 4.1.0 to 7.2.0 #67

Open snyk-bot opened 2 years ago

snyk-bot commented 2 years ago

Snyk has created this PR to upgrade htmlparser2 from 4.1.0 to 7.2.0.

merge advice :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


Warning: This is a major version upgrade, and may be a breaking change.

Release notes
Package name: htmlparser2 from htmlparser2 GitHub release notes
Commit messages
Package name: htmlparser2
  • e7cf231 7.2.0
  • 7ccc841 fix(tokenizer): Stringify non-string chunks (#1010)
  • 0338f5d refactor(tokenizer): Emit text before entities once entity is confirmed (#1009)
  • daa0281 fix(tokenizer): Decode entities after < (#1008)
  • 6a1b54d refactor(tokenizer): Introduce sequences & fast forwarding (#1007)
  • 3adc0e7 refactor(tokenizer): Use `Set`s for larger comparisons
  • b172e02 build(deps-dev): Bump @ typescript-eslint/eslint-plugin (#1006)
  • 96d227c build(deps-dev): Bump @ typescript-eslint/parser from 5.3.0 to 5.3.1 (#1005)
  • 43113a2 build(deps-dev): Bump @ types/node from 16.11.6 to 16.11.7 (#1004)
  • eb137c4 build(deps-dev): Bump eslint from 8.1.0 to 8.2.0 (#1003)
  • 4a73009 build(deps-dev): Bump @ typescript-eslint/eslint-plugin (#1000)
  • 89dcb71 build(deps-dev): Bump @ typescript-eslint/parser from 5.2.0 to 5.3.0 (#999)
  • c43ace0 docs(readme): Make `parseDocument()` example clearer (#998)
  • 3ad8d12 build(deps-dev): Bump @ typescript-eslint/eslint-plugin (#994)
  • 8402924 build(deps-dev): Bump @ typescript-eslint/parser from 5.1.0 to 5.2.0 (#996)
  • f251f60 build(deps-dev): Bump @ types/node from 16.11.4 to 16.11.6 (#995)
  • 98e9d2f build(deps-dev): Bump eslint from 8.0.1 to 8.1.0 (#993)
  • 8ee452c build(deps-dev): Bump @ types/node from 16.11.3 to 16.11.4 (#992)
  • 55615f2 build(deps-dev): Bump @ types/node from 16.11.2 to 16.11.3 (#990)
  • a72f711 build(deps-dev): Bump @ types/node from 16.11.1 to 16.11.2 (#989)
  • 3c4a618 build(deps-dev): Bump @ typescript-eslint/parser from 5.0.0 to 5.1.0 (#987)
  • 41eca39 build(deps-dev): Bump jest from 27.3.0 to 27.3.1 (#988)
  • 34f3178 build(deps-dev): Bump @ typescript-eslint/eslint-plugin (#986)
  • 3fe73ed build(deps-dev): Bump @ types/node from 16.11.0 to 16.11.1 (#985)
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs