Bumps the npm_and_yarn group with 1 update in the /activities-examples directory: axios.
Bumps the npm_and_yarn group with 1 update in the /expense directory: axios.
Bumps the npm_and_yarn group with 2 updates in the /food-delivery/apps/driver directory: next and sharp.
Bumps the npm_and_yarn group with 2 updates in the /food-delivery/apps/menu directory: next and sharp.
Bumps the npm_and_yarn group with 1 update in the /nestjs-exchange-rates directory: @nestjs/core.
Bumps the npm_and_yarn group with 1 update in the /patching-api directory: axios.
Bumps the npm_and_yarn group with 1 update in the /protobufs directory: protobufjs.
Bumps the npm_and_yarn group with 1 update in the /timer-examples directory: axios.
Fix: Properties with the name __proto__ are added to objects and arrays. (#199) This also fixes a prototype pollution vulnerability reported by Jonathan Gregson! (#295). This has been backported to v1. (#298)
Fix: Properties with the name __proto__ are added to objects and arrays.
(#199) This also fixes a prototype pollution vulnerability reported by
Jonathan Gregson! (#295).
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution. You have signed the CLA already but the status is still pending? Let us recheck it.
The dependabot.yml entry that created this PR has been deleted so this PR can't be rebased. Please close the PR so Dependabot can create a new one with the current dependabot.yml.
Bumps the npm_and_yarn group with 7 updates in the / directory:
12.3.1
14.1.3
1.2.1
1.6.0
8.4.7
10.3.3
7.2.5
7.2.6
1.15.2
1.15.6
2.0.0
2.0.1
1.0.1
1.0.2
Bumps the npm_and_yarn group with 1 update in the /activities-examples directory: axios. Bumps the npm_and_yarn group with 1 update in the /expense directory: axios. Bumps the npm_and_yarn group with 2 updates in the /food-delivery/apps/driver directory: next and sharp. Bumps the npm_and_yarn group with 2 updates in the /food-delivery/apps/menu directory: next and sharp. Bumps the npm_and_yarn group with 1 update in the /nestjs-exchange-rates directory: @nestjs/core. Bumps the npm_and_yarn group with 1 update in the /patching-api directory: axios. Bumps the npm_and_yarn group with 1 update in the /protobufs directory: protobufjs. Bumps the npm_and_yarn group with 1 update in the /timer-examples directory: axios.
Updates
next
from 12.3.1 to 14.1.3Release notes
Sourced from next's releases.
... (truncated)
Commits
fc38ee1
v14.1.385a5c4d
fix type4b059bc
Upgrade to latest@edge-runtime
packages (#62955)b10a610
Fix output: export with custom distDir (#62064)960b738
Migrate locale redirect handling to router-server (#62606)2f210d4
update release workflowf564dee
v14.1.2a85519e
Fix sitemap generateSitemaps support for string id (#61088)0a2d775
Fix: generateSitemaps in production giving 404 (#62212)400b57c
Fix redirect under suspense boundary with basePath (#62597)Updates
axios
from 1.2.1 to 1.6.0Release notes
Sourced from axios's releases.
... (truncated)
Changelog
Sourced from axios's changelog.
... (truncated)
Commits
f7adacd
chore(release): v1.6.0 (#6031)9917e67
chore(ci): fix release-it arg; (#6032)96ee232
fix(CSRF): fixed CSRF vulnerability CVE-2023-45857 (#6028)7d45ab2
chore(tests): fixed tests to pass in node v19 and v20 withkeep-alive
enabl...5aaff53
fix(dns): fixed lookup function decorator to work properly in node v20; (#6011)a48a63a
chore(docs): added AxiosHeaders docs; (#5932)a1c8ad0
fix(types): fix AxiosHeaders types; (#5931)2ac731d
chore(docs): update readme.md (#5889)88fb52b
chore(release): v1.5.1 (#5920)e410779
fix(adapters): improved adapters loading logic to have clear error messages; ...Updates
@nestjs/core
from 8.4.7 to 10.3.3Release notes
Sourced from
@nestjs/core
's releases.... (truncated)
Commits
d658942
chore(@nestjs
) publish v10.3.3 release985c5e1
style(common,core): fix formatting441715a
fix(core): when having multiple versions on middleware buildera35938a
chore(@nestjs
) publish v10.3.2 release6c6bc29
Merge pull request #12943 from nestjs/renovate/reflect-metadata-0.x8f4e945
Merge pull request #12955 from josesilveiraa07/master32b0aa8
fix(deps): update dependency reflect-metadata to v0.2.133aae84
refactor(common): ♻️ PR #13000 commentscb6664c
fix(core,common): 🐛 missing registration handling ofSEARCH
http verbc91e21c
chore(@nestjs
) publish v10.3.1 releaseUpdates
postcss
from 8.4.14 to 8.4.31Release notes
Sourced from postcss's releases.
... (truncated)
Changelog
Sourced from postcss's changelog.
... (truncated)
Commits
90208de
Release 8.4.31 version58cc860
Fix carrier return parsing4fff8e4
Improve pnpm test outputcd43ed1
Update dependenciescaa916b
Update dependencies8972f76
Typo11a5286
Typo45c5501
Release 8.4.30 versionbc3c341
Update linterb2be58a
Merge pull request #1881 from romainmenke/improve-sourcemap-performance--phil...Updates
protobufjs
from 7.2.5 to 7.2.6Release notes
Sourced from protobufjs's releases.
Changelog
Sourced from protobufjs's changelog.
Commits
2f846fe
chore: release master (#1962)af3ff83
fix: report missing import properly in loadSync (#1960)Updates
follow-redirects
from 1.15.2 to 1.15.6Commits
35a517c
Release version 1.15.6 of the npm package.c4f847f
Drop Proxy-Authorization across hosts.8526b4a
Use GitHub for disclosure.b1677ce
Release version 1.15.5 of the npm package.d8914f7
Preserve fragment in responseUrl.6585820
Release version 1.15.4 of the npm package.7a6567e
Disallow bracketed hostnames.05629af
Prefer native URL instead of deprecated url.parse.1cba8e8
Prefer native URL instead of legacy url.resolve.72bc2a4
Simplify _processResponse error handling.Updates
ip
from 2.0.0 to 2.0.1Commits
3b0994a
2.0.132f468f
lib: fixed CVE-2023-42282 and added unit testUpdates
json5
from 1.0.1 to 1.0.2Release notes
Sourced from json5's releases.
Changelog
Sourced from json5's changelog.
... (truncated)
Commits
a62db1e
1.0.2e0c23fe
docs: update CHANGELOG for v1.0.262a6540
fix: add proto to objects and arraysUpdates
axios
from 0.26.1 to 1.6.8Release notes
Sourced from axios's releases.
... (truncated)
Changelog
Sourced from axios's changelog.
... (truncated)
Commits
f7adacd
chore(release): v1.6.0 (#6031)9917e67
chore(ci): fix release-it arg; (#6032)96ee232
fix(CSRF): fixed CSRF vulnerability CVE-2023-45857 (#6028)7d45ab2
chore(tests): fixed tests to pass in node v19 and v20 withkeep-alive
enabl...5aaff53
fix(dns): fixed lookup function decorator to work properly in node v20; (#6011)a48a63a
chore(docs): added AxiosHeaders docs; (#5932)a1c8ad0
fix(types): fix AxiosHeaders types; (#5931)2ac731d
chore(docs): update readme.md (#5889)88fb52b
chore(release): v1.5.1 (#5920)e410779
fix(adapters): improved adapters loading logic to have clear error messages; ...Updates
axios
from 0.26.1 to 1.6.8Release notes
Sourced from axios's releases.
... (truncated)
Changelog
Sourced from axios's changelog.
@dependabot rebase
The dependabot.yml entry that created this PR has been deleted so this PR can't be rebased. Please close the PR so Dependabot can create a new one with the current dependabot.yml.
This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.
To ignore these dependencies, configure ignore rules in dependabot.yml