This release fixes the MitM vulnerability reported via HackerOne. It is a breaking change because Node 4, 5, and 7 are no longer tested in CI (note that Node 6 is still supported).
This version was pushed to npm by sentry-bot, a new releaser for @sentry/node since your current version.
You can trigger a rebase of this PR by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/threadheap/serverless-ide-vscode/network/alerts).
Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.
Bumps https-proxy-agent to 5.0.1 and updates ancestor dependency @sentry/node. These dependencies need to be updated together.
Updates
https-proxy-agent
from 2.2.1 to 5.0.1Release notes
Sourced from https-proxy-agent's releases.
... (truncated)
Commits
d0d80cc
5.0.1c30a9dc
Fix compatibility with Node.js 14 (#104)3d2981c
Removeservername
check8fdb1a5
5.0.00379e01
Refactor to TypeScript (#95)176d4b4
4.0.0451edbb
Prettier829905f
Uselocalhost
instead of127.0.0.1
in testsc846a68
Update dependencies0e98671
Updatedebug
to v4.0.0 (#82)Updates
@sentry/node
from 5.5.0 to 5.30.0Changelog
Sourced from
@sentry/node
's changelog.... (truncated)
Commits
6de2dd4
release: 5.30.084feb48
misc: 5.30.0 changelog5cad5f7
fix(ember): Fix rootURL breaking route recognition (#3166)674eddf
feat: Expose required things for React Native auto tracing (#3144)d14d109
feat: Target to deploy on AWS Lambdaab2cf3c
chore(deps): bump ini from 1.3.5 to 1.3.8 (#3125)80aca67
fix: esbuild warning dynamic require (#3164)58d2d78
chore(various): Small fixes (#3150)78db3d7
upgrade(@google-cloud/storage
): ^5.7.0 (#3146)a833f0e
chore(ci): Make job names nicer (#3158)Maintainer changes
This version was pushed to npm by sentry-bot, a new releaser for
@sentry/node
since your current version.You can trigger a rebase of this PR by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/threadheap/serverless-ide-vscode/network/alerts).