This release contains an emergency fix which replaces colors.js with chalk. See #781 for more info and discussion, and Marak/colors.js#285 for broader discussion about colors.js.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/usnistgov/oar-pdr/network/alerts).
Bumps qs to 6.11.0 and updates ancestor dependencies qs, express, browser-sync, http-server and body-parser. These dependencies need to be updated together.
Updates
qs
from 6.5.2 to 6.11.0Changelog
Sourced from qs's changelog.
... (truncated)
Commits
56763c1
v6.11.0ddd3e29
[readme] fix version badgec313472
[New] [Fix]stringify
: revert 0e903c0; addcommaRoundTrip
option95bc018
v6.10.50e903c0
[Fix]stringify
: witharrayFormat: comma
, properly include an explicit `[...ba9703c
v6.10.44e44019
[Fix]stringify
: witharrayFormat: comma
, include an explicit[]
on a s...113b990
[Dev Deps] updateobject-inspect
c77f38f
[Dev Deps] updateeslint
,@ljharb/eslint-config
,aud
,has-symbol
,tape
2cf45b2
[meta] usenpmignore
to autogenerate an npmignore fileUpdates
express
from 4.17.2 to 4.18.2Release notes
Sourced from express's releases.
... (truncated)
Changelog
Sourced from express's changelog.
... (truncated)
Commits
8368dc1
4.18.261f4049
docs: replace Freenode with Libera Chatbb7907b
build: Node.js@18.10f56ce73
build: supertest@6.3.024b3dc5
deps: qs@6.11.0689d175
deps: body-parser@1.20.1340be0f
build: eslint@8.24.033e8dc3
docs: use Node.js name style644f646
build: supertest@6.2.4ecd7572
build: Node.js@14.20Updates
browser-sync
from 2.27.7 to 2.27.11Release notes
Sourced from browser-sync's releases.
Commits
01caeb3
v2.27.1174873cc
updated deps (#1995)88527a8
Add CodeSee architecture diagram workflow to repository (#1972)f6965a6
v2.27.10e6c7bed
Updated portscanner to 2.2.0 (#1960)6a587ec
fix readme's91258ae
Merge branch 'browser-sync-1946-esbuild'f48d6b4
👋 app veyor30c24dc
Merge pull request #19479d24de5
drop webpack from UIUpdates
http-server
from 0.10.0 to 14.1.1Release notes
Sourced from http-server's releases.
... (truncated)
Commits
af0ac3e
14.1.1e5301d3
update license year318c55f
Merge pull request #794 from http-party/dependabot/npm_and_yarn/follow-redire...284a0b0
Merge pull request #803 from dpassen/patch-CVE-2021-4490617cc8d6
Patch CVE-2021-44906dc2fcf0
Bump follow-redirects from 1.14.4 to 1.14.833a6639
Update SECURITY.md251d4a1
Update support commitments for Jan 2022e16ed1d
14.1.056bdf6e
Merge pull request #785 from zbynek/use-chalkMaintainer changes
This version was pushed to npm by thornjad, a new releaser for http-server since your current version.
Updates
body-parser
from 1.19.1 to 1.20.1Release notes
Sourced from body-parser's releases.
Changelog
Sourced from body-parser's changelog.
Commits
830bdfb
1.20.1ecad1cc
build: eslint@8.24.003b93cf
build: supertest@6.3.02c611fc
build: Node.js@18.10f199e94
perf: remove unnecessary object clone0123e12
build: Node.js@18.9de1e6c2
build: Node.js@16.17477ff13
build: eslint-plugin-import@2.26.040c3fff
deps: qs@6.11.04aa84b7
build: supertest@6.2.4Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/usnistgov/oar-pdr/network/alerts).