forked from parse-community/parse-server
-
Notifications
You must be signed in to change notification settings - Fork 0
Bump the npm_and_yarn group across 1 directory with 51 updates #5
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Open
dependabot
wants to merge
1
commit into
master
Choose a base branch
from
dependabot/npm_and_yarn/npm_and_yarn-2f50dede0a
base: master
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the npm_and_yarn group with 43 updates in the / directory: | Package | From | To | | --- | --- | --- | | [body-parser](https://github.com/expressjs/body-parser) | `1.19.0` | `1.20.3` | | [express](https://github.com/expressjs/express) | `4.17.1` | `4.21.2` | | [follow-redirects](https://github.com/follow-redirects/follow-redirects) | `1.11.0` | `1.15.6` | | [jsonwebtoken](https://github.com/auth0/node-jsonwebtoken) | `8.5.1` | `9.0.2` | | [@parse/push-adapter](https://github.com/parse-community/parse-server-push-adapter) | `3.2.0` | `6.11.0` | | [jwks-rsa](https://github.com/auth0/node-jwks-rsa) | `1.8.0` | `3.2.0` | | [lodash](https://github.com/lodash/lodash) | `4.17.15` | `4.17.21` | | [pg-promise](https://github.com/vitaly-t/pg-promise) | `10.5.2` | `11.5.5` | | [redis](https://github.com/redis/node-redis) | `3.0.2` | `3.1.1` | | [semver](https://github.com/npm/node-semver) | `5.7.1` | `5.7.2` | | [semver](https://github.com/npm/node-semver) | `7.3.2` | `7.7.2` | | [semver](https://github.com/npm/node-semver) | `6.3.0` | `6.3.1` | | [core-js-compat](https://github.com/zloirock/core-js/tree/HEAD/packages/core-js-compat) | `3.6.5` | `3.45.1` | | [ws](https://github.com/websockets/ws) | `7.2.5` | `7.5.10` | | [form-data](https://github.com/form-data/form-data) | `3.0.0` | `3.0.4` | | [node-fetch](https://github.com/node-fetch/node-fetch) | `2.6.0` | `2.7.0` | | [ajv](https://github.com/ajv-validator/ajv) | `6.10.2` | `6.12.6` | | [apollo-server-core](https://github.com/apollographql/apollo-server/tree/HEAD/packages/apollo-server-core) | `2.12.0` | `2.26.2` | | [async](https://github.com/caolan/async) | `2.6.3` | `2.6.4` | | [async](https://github.com/caolan/async) | `3.1.0` | `3.2.6` | | [aws-sdk](https://github.com/aws/aws-sdk-js) | `2.59.0` | `2.907.0` | | [@parse/s3-files-adapter](https://github.com/parse-community/parse-server-s3-adapter) | `1.4.0` | `1.6.3` | | [qs](https://github.com/ljharb/qs) | `6.5.2` | `6.5.3` | | [bson](https://github.com/mongodb/js-bson) | `1.1.3` | `1.1.6` | | [color-string](https://github.com/Qix-/color-string) | `1.5.3` | `1.9.1` | | [crypto-js](https://github.com/brix/crypto-js) | `4.0.0` | `4.2.0` | | [parse](https://github.com/parse-community/Parse-SDK-JS) | `2.13.0` | `6.1.1` | | [decode-uri-component](https://github.com/SamVerschueren/decode-uri-component) | `0.2.0` | `0.2.2` | | [ini](https://github.com/npm/ini) | `1.3.5` | `1.3.8` | | [minimist](https://github.com/minimistjs/minimist) | `1.2.5` | `1.2.8` | | [mongodb-runner](https://github.com/mongodb-js/devtools-shared) | `4.8.0` | `5.9.2` | | [tar](https://github.com/isaacs/node-tar) | `4.4.13` | `removed` | | [@parse/s3-files-adapter](https://github.com/parse-community/parse-server-s3-adapter) | `1.6.3` | `4.2.0` | | [bcrypt](https://github.com/kelektiv/node.bcrypt.js) | `4.0.1` | `6.0.0` | | [fsevents](https://github.com/fsevents/fsevents) | `1.2.11` | `1.2.13` | | [ip](https://github.com/indutny/node-ip) | `1.1.5` | `removed` | | [@parse/simple-mailgun-adapter](https://github.com/parse-community/parse-server-simple-mailgun-adapter) | `1.1.0` | `2.0.0` | | [json-schema](https://github.com/kriszyp/json-schema) | `0.2.3` | `0.4.0` | | [jsprim](https://github.com/joyent/node-jsprim) | `1.4.1` | `1.4.2` | | [json5](https://github.com/json5/json5) | `2.1.3` | `2.2.3` | | [moment](https://github.com/moment/moment) | `2.24.0` | `2.30.1` | | [object-path](https://github.com/mariocasciaro/object-path) | `0.11.4` | `0.11.8` | | [tmp](https://github.com/raszi/node-tmp) | `0.0.33` | `removed` | | [eslint](https://github.com/eslint/eslint) | `6.8.0` | `9.34.0` | | [underscore](https://github.com/jashkenas/underscore) | `1.9.1` | `1.13.7` | | [jsdoc](https://github.com/jsdoc/jsdoc) | `3.6.3` | `3.6.11` | | [y18n](https://github.com/yargs/y18n) | `4.0.0` | `4.0.3` | Updates `body-parser` from 1.19.0 to 1.20.3 - [Release notes](https://github.com/expressjs/body-parser/releases) - [Changelog](https://github.com/expressjs/body-parser/blob/master/HISTORY.md) - [Commits](expressjs/body-parser@1.19.0...1.20.3) Updates `express` from 4.17.1 to 4.21.2 - [Release notes](https://github.com/expressjs/express/releases) - [Changelog](https://github.com/expressjs/express/blob/4.21.2/History.md) - [Commits](expressjs/express@4.17.1...4.21.2) Updates `follow-redirects` from 1.11.0 to 1.15.6 - [Release notes](https://github.com/follow-redirects/follow-redirects/releases) - [Commits](follow-redirects/follow-redirects@v1.11.0...v1.15.6) Updates `jsonwebtoken` from 8.5.1 to 9.0.2 - [Changelog](https://github.com/auth0/node-jsonwebtoken/blob/master/CHANGELOG.md) - [Commits](auth0/node-jsonwebtoken@v8.5.1...v9.0.2) Updates `@parse/push-adapter` from 3.2.0 to 6.11.0 - [Release notes](https://github.com/parse-community/parse-server-push-adapter/releases) - [Changelog](https://github.com/parse-community/parse-server-push-adapter/blob/master/CHANGELOG.md) - [Commits](parse-community/parse-server-push-adapter@3.2.0...6.11.0) Updates `jwks-rsa` from 1.8.0 to 3.2.0 - [Release notes](https://github.com/auth0/node-jwks-rsa/releases) - [Changelog](https://github.com/auth0/node-jwks-rsa/blob/master/CHANGELOG.md) - [Commits](auth0/node-jwks-rsa@v1.8.0...v3.2.0) Updates `lodash` from 4.17.15 to 4.17.21 - [Release notes](https://github.com/lodash/lodash/releases) - [Commits](lodash/lodash@4.17.15...4.17.21) Updates `pg-promise` from 10.5.2 to 11.5.5 - [Release notes](https://github.com/vitaly-t/pg-promise/releases) - [Commits](vitaly-t/pg-promise@10.5.2...11.5.5) Updates `redis` from 3.0.2 to 3.1.1 - [Release notes](https://github.com/redis/node-redis/releases) - [Changelog](https://github.com/redis/node-redis/blob/master/CHANGELOG.md) - [Commits](redis/node-redis@v3.0.2...v3.1.1) Updates `semver` from 5.7.1 to 5.7.2 - [Release notes](https://github.com/npm/node-semver/releases) - [Changelog](https://github.com/npm/node-semver/blob/v5.7.2/CHANGELOG.md) - [Commits](npm/node-semver@v5.7.1...v5.7.2) Updates `semver` from 7.3.2 to 7.7.2 - [Release notes](https://github.com/npm/node-semver/releases) - [Changelog](https://github.com/npm/node-semver/blob/v5.7.2/CHANGELOG.md) - [Commits](npm/node-semver@v5.7.1...v5.7.2) Updates `semver` from 6.3.0 to 6.3.1 - [Release notes](https://github.com/npm/node-semver/releases) - [Changelog](https://github.com/npm/node-semver/blob/v5.7.2/CHANGELOG.md) - [Commits](npm/node-semver@v5.7.1...v5.7.2) Updates `core-js-compat` from 3.6.5 to 3.45.1 - [Release notes](https://github.com/zloirock/core-js/releases) - [Changelog](https://github.com/zloirock/core-js/blob/master/CHANGELOG.md) - [Commits](https://github.com/zloirock/core-js/commits/v3.45.1/packages/core-js-compat) Updates `ws` from 7.2.5 to 7.5.10 - [Release notes](https://github.com/websockets/ws/releases) - [Commits](websockets/ws@7.2.5...7.5.10) Updates `form-data` from 3.0.0 to 3.0.4 - [Release notes](https://github.com/form-data/form-data/releases) - [Changelog](https://github.com/form-data/form-data/blob/v3.0.4/CHANGELOG.md) - [Commits](form-data/form-data@v3.0.0...v3.0.4) Updates `node-fetch` from 2.6.0 to 2.7.0 - [Release notes](https://github.com/node-fetch/node-fetch/releases) - [Commits](node-fetch/node-fetch@v2.6.0...v2.7.0) Updates `@babel/runtime-corejs3` from 7.6.3 to 7.7.4 - [Release notes](https://github.com/babel/babel/releases) - [Changelog](https://github.com/babel/babel/blob/main/CHANGELOG.md) - [Commits](https://github.com/babel/babel/commits/v7.7.4/packages/babel-runtime-corejs3) Updates `ajv` from 6.10.2 to 6.12.6 - [Release notes](https://github.com/ajv-validator/ajv/releases) - [Commits](ajv-validator/ajv@v6.10.2...v6.12.6) Updates `apollo-server-core` from 2.12.0 to 2.26.2 - [Release notes](https://github.com/apollographql/apollo-server/releases) - [Commits](https://github.com/apollographql/apollo-server/commits/apollo-server-core@2.26.2/packages/apollo-server-core) Updates `async` from 2.6.3 to 2.6.4 - [Release notes](https://github.com/caolan/async/releases) - [Changelog](https://github.com/caolan/async/blob/v2.6.4/CHANGELOG.md) - [Commits](caolan/async@v2.6.3...v2.6.4) Updates `async` from 3.1.0 to 3.2.6 - [Release notes](https://github.com/caolan/async/releases) - [Changelog](https://github.com/caolan/async/blob/v2.6.4/CHANGELOG.md) - [Commits](caolan/async@v2.6.3...v2.6.4) Updates `aws-sdk` from 2.59.0 to 2.907.0 - [Release notes](https://github.com/aws/aws-sdk-js/releases) - [Changelog](https://github.com/aws/aws-sdk-js/blob/v2.907.0/CHANGELOG.md) - [Commits](aws/aws-sdk-js@v2.59.0...v2.907.0) Updates `@parse/s3-files-adapter` from 1.4.0 to 1.6.3 - [Release notes](https://github.com/parse-community/parse-server-s3-adapter/releases) - [Changelog](https://github.com/parse-community/parse-server-s3-adapter/blob/master/CHANGELOG.md) - [Commits](parse-community/parse-server-s3-adapter@1.4.0...1.6.3) Updates `qs` from 6.5.2 to 6.5.3 - [Changelog](https://github.com/ljharb/qs/blob/main/CHANGELOG.md) - [Commits](ljharb/qs@v6.5.2...v6.5.3) Updates `bson` from 1.1.3 to 1.1.6 - [Release notes](https://github.com/mongodb/js-bson/releases) - [Changelog](https://github.com/mongodb/js-bson/blob/v1.1.6/HISTORY.md) - [Commits](mongodb/js-bson@v1.1.3...v1.1.6) Updates `color-string` from 1.5.3 to 1.9.1 - [Release notes](https://github.com/Qix-/color-string/releases) - [Changelog](https://github.com/Qix-/color-string/blob/master/CHANGELOG.md) - [Commits](https://github.com/Qix-/color-string/commits/1.9.1) Updates `cookie` from 0.4.0 to 0.7.1 - [Release notes](https://github.com/jshttp/cookie/releases) - [Commits](jshttp/cookie@v0.4.0...v0.7.1) Updates `crypto-js` from 4.0.0 to 4.2.0 - [Commits](brix/crypto-js@4.0.0...4.2.0) Updates `parse` from 2.13.0 to 6.1.1 - [Release notes](https://github.com/parse-community/Parse-SDK-JS/releases) - [Changelog](https://github.com/parse-community/Parse-SDK-JS/blob/alpha/CHANGELOG.md) - [Commits](parse-community/Parse-SDK-JS@2.13.0...6.1.1) Updates `decode-uri-component` from 0.2.0 to 0.2.2 - [Release notes](https://github.com/SamVerschueren/decode-uri-component/releases) - [Commits](SamVerschueren/decode-uri-component@v0.2.0...v0.2.2) Updates `ini` from 1.3.5 to 1.3.8 - [Release notes](https://github.com/npm/ini/releases) - [Changelog](https://github.com/npm/ini/blob/main/CHANGELOG.md) - [Commits](npm/ini@v1.3.5...v1.3.8) Updates `minimist` from 1.2.5 to 1.2.8 - [Changelog](https://github.com/minimistjs/minimist/blob/main/CHANGELOG.md) - [Commits](minimistjs/minimist@v1.2.5...v1.2.8) Updates `mongodb-runner` from 4.8.0 to 5.9.2 - [Commits](https://github.com/mongodb-js/devtools-shared/commits/mongodb-runner@5.9.2) Removes `tar` Updates `@parse/s3-files-adapter` from 1.6.3 to 4.2.0 - [Release notes](https://github.com/parse-community/parse-server-s3-adapter/releases) - [Changelog](https://github.com/parse-community/parse-server-s3-adapter/blob/master/CHANGELOG.md) - [Commits](parse-community/parse-server-s3-adapter@1.4.0...1.6.3) Updates `bcrypt` from 4.0.1 to 6.0.0 - [Release notes](https://github.com/kelektiv/node.bcrypt.js/releases) - [Changelog](https://github.com/kelektiv/node.bcrypt.js/blob/master/CHANGELOG.md) - [Commits](kelektiv/node.bcrypt.js@v4.0.1...v6.0.0) Updates `fsevents` from 1.2.11 to 1.2.13 - [Release notes](https://github.com/fsevents/fsevents/releases) - [Commits](fsevents/fsevents@v1.2.11...v1.2.13) Removes `ip` Updates `@parse/simple-mailgun-adapter` from 1.1.0 to 2.0.0 - [Release notes](https://github.com/parse-community/parse-server-simple-mailgun-adapter/releases) - [Changelog](https://github.com/parse-community/parse-server-simple-mailgun-adapter/blob/master/CHANGELOG.md) - [Commits](parse-community/parse-server-simple-mailgun-adapter@v1.1.0...2.0.0) Updates `json-schema` from 0.2.3 to 0.4.0 - [Commits](kriszyp/json-schema@v0.2.3...v0.4.0) Updates `jsprim` from 1.4.1 to 1.4.2 - [Changelog](https://github.com/TritonDataCenter/node-jsprim/blob/v1.4.2/CHANGES.md) - [Commits](TritonDataCenter/node-jsprim@v1.4.1...v1.4.2) Updates `json5` from 2.1.3 to 2.2.3 - [Release notes](https://github.com/json5/json5/releases) - [Changelog](https://github.com/json5/json5/blob/main/CHANGELOG.md) - [Commits](json5/json5@v2.1.3...v2.2.3) Updates `moment` from 2.24.0 to 2.30.1 - [Changelog](https://github.com/moment/moment/blob/develop/CHANGELOG.md) - [Commits](moment/moment@2.24.0...2.30.1) Updates `node-forge` from 0.7.6 to 1.3.1 - [Changelog](https://github.com/digitalbazaar/forge/blob/main/CHANGELOG.md) - [Commits](digitalbazaar/forge@0.7.6...v1.3.1) Updates `object-path` from 0.11.4 to 0.11.8 - [Commits](https://github.com/mariocasciaro/object-path/commits/v0.11.8) Updates `path-to-regexp` from 0.1.7 to 0.1.12 - [Release notes](https://github.com/pillarjs/path-to-regexp/releases) - [Changelog](https://github.com/pillarjs/path-to-regexp/blob/master/History.md) - [Commits](pillarjs/path-to-regexp@v0.1.7...v0.1.12) Updates `send` from 0.17.1 to 0.19.0 - [Release notes](https://github.com/pillarjs/send/releases) - [Changelog](https://github.com/pillarjs/send/blob/master/HISTORY.md) - [Commits](pillarjs/send@0.17.1...0.19.0) Updates `serve-static` from 1.14.1 to 1.16.2 - [Release notes](https://github.com/expressjs/serve-static/releases) - [Changelog](https://github.com/expressjs/serve-static/blob/v1.16.2/HISTORY.md) - [Commits](expressjs/serve-static@v1.14.1...v1.16.2) Updates `sha.js` from 2.4.11 to 2.4.12 - [Changelog](https://github.com/browserify/sha.js/blob/master/CHANGELOG.md) - [Commits](browserify/sha.js@v2.4.11...v2.4.12) Removes `tmp` Updates `eslint` from 6.8.0 to 9.34.0 - [Release notes](https://github.com/eslint/eslint/releases) - [Changelog](https://github.com/eslint/eslint/blob/main/CHANGELOG.md) - [Commits](eslint/eslint@v6.8.0...v9.34.0) Updates `underscore` from 1.9.1 to 1.13.7 - [Commits](jashkenas/underscore@1.9.1...1.13.7) Updates `jsdoc` from 3.6.3 to 3.6.11 - [Release notes](https://github.com/jsdoc/jsdoc/releases) - [Changelog](https://github.com/jsdoc/jsdoc/blob/main/CHANGES.md) - [Commits](jsdoc/jsdoc@3.6.3...3.6.11) Updates `word-wrap` from 1.2.3 to 1.2.5 - [Release notes](https://github.com/jonschlinkert/word-wrap/releases) - [Commits](jonschlinkert/word-wrap@1.2.3...1.2.5) Updates `y18n` from 4.0.0 to 4.0.3 - [Release notes](https://github.com/yargs/y18n/releases) - [Changelog](https://github.com/yargs/y18n/blob/y18n-v4.0.3/CHANGELOG.md) - [Commits](yargs/y18n@v4.0.0...y18n-v4.0.3) --- updated-dependencies: - dependency-name: body-parser dependency-version: 1.20.3 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: express dependency-version: 4.21.2 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: follow-redirects dependency-version: 1.15.6 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: jsonwebtoken dependency-version: 9.0.2 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: "@parse/push-adapter" dependency-version: 6.11.0 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: jwks-rsa dependency-version: 3.2.0 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: lodash dependency-version: 4.17.21 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: pg-promise dependency-version: 11.5.5 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: redis dependency-version: 3.1.1 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: semver dependency-version: 5.7.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: semver dependency-version: 7.7.2 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: semver dependency-version: 6.3.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: core-js-compat dependency-version: 3.45.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: ws dependency-version: 7.5.10 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: form-data dependency-version: 3.0.4 dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: node-fetch dependency-version: 2.7.0 dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: "@babel/runtime-corejs3" dependency-version: 7.7.4 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: ajv dependency-version: 6.12.6 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: apollo-server-core dependency-version: 2.26.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: async dependency-version: 2.6.4 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: async dependency-version: 3.2.6 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: aws-sdk dependency-version: 2.907.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@parse/s3-files-adapter" dependency-version: 1.6.3 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: qs dependency-version: 6.5.3 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: bson dependency-version: 1.1.6 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: color-string dependency-version: 1.9.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: cookie dependency-version: 0.7.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: crypto-js dependency-version: 4.2.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: parse dependency-version: 6.1.1 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: decode-uri-component dependency-version: 0.2.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: ini dependency-version: 1.3.8 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: minimist dependency-version: 1.2.8 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: mongodb-runner dependency-version: 5.9.2 dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: tar dependency-version: dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@parse/s3-files-adapter" dependency-version: 4.2.0 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: bcrypt dependency-version: 6.0.0 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: fsevents dependency-version: 1.2.13 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: ip dependency-version: dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@parse/simple-mailgun-adapter" dependency-version: 2.0.0 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: json-schema dependency-version: 0.4.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: jsprim dependency-version: 1.4.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: json5 dependency-version: 2.2.3 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: moment dependency-version: 2.30.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: node-forge dependency-version: 1.3.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: object-path dependency-version: 0.11.8 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: path-to-regexp dependency-version: 0.1.12 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: send dependency-version: 0.19.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: serve-static dependency-version: 1.16.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: sha.js dependency-version: 2.4.12 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: tmp dependency-version: dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: eslint dependency-version: 9.34.0 dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: underscore dependency-version: 1.13.7 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: jsdoc dependency-version: 3.6.11 dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: word-wrap dependency-version: 1.2.5 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: y18n dependency-version: 4.0.3 dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <support@github.com>
This was referenced Sep 3, 2025
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update javascript code
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the npm_and_yarn group with 43 updates in the / directory:
1.19.01.20.34.17.14.21.21.11.01.15.68.5.19.0.23.2.06.11.01.8.03.2.04.17.154.17.2110.5.211.5.53.0.23.1.15.7.15.7.27.3.27.7.26.3.06.3.13.6.53.45.17.2.57.5.103.0.03.0.42.6.02.7.06.10.26.12.62.12.02.26.22.6.32.6.43.1.03.2.62.59.02.907.01.4.01.6.36.5.26.5.31.1.31.1.61.5.31.9.14.0.04.2.02.13.06.1.10.2.00.2.21.3.51.3.81.2.51.2.84.8.05.9.24.4.13removed1.6.34.2.04.0.16.0.01.2.111.2.131.1.5removed1.1.02.0.00.2.30.4.01.4.11.4.22.1.32.2.32.24.02.30.10.11.40.11.80.0.33removed6.8.09.34.01.9.11.13.73.6.33.6.114.0.04.0.3Updates
body-parserfrom 1.19.0 to 1.20.3Release notes
Sourced from body-parser's releases.
... (truncated)
Changelog
Sourced from body-parser's changelog.
... (truncated)
Commits
17529511.20.339744cfchore: linter (#534)b2695c4Merge commit from forkade0f3fadd scorecard to readme (#531)99a1bd6deps: qs@6.12.3 (#521)9478591fix: pin to node@22.4.183db46aci: fix errors in ci github action for node 8 and 9 (#523)9d4e212chore: add support for OSSF scorecard reporting (#522)ee913741.20.2368a93aFix strict json error message on Node.js 19+Maintainer changes
This version was pushed to npm by ulisesgascon, a new releaser for body-parser since your current version.
Updates
expressfrom 4.17.1 to 4.21.2Release notes
Sourced from express's releases.
... (truncated)
Changelog
Sourced from express's changelog.
... (truncated)
Commits
1faf2284.21.22e0fb64deps: bump path-to-regexp@0.1.12 (#6209)59fc270deps: path-to-regexp@0.1.11 (#5956)51fc39cdocs: add funding (#6065)8e229f94.21.1a024c8afix(deps): cookie@0.7.17e562c64.21.01bcde96fix(deps): qs@6.13.0 (#5946)7d36477fix(deps): serve-static@1.16.2 (#5951)40d2d8ffix(deps): finalhandler@1.3.1Maintainer changes
This version was pushed to npm by jonchurch, a new releaser for express since your current version.
Updates
follow-redirectsfrom 1.11.0 to 1.15.6Commits
35a517cRelease version 1.15.6 of the npm package.c4f847fDrop Proxy-Authorization across hosts.8526b4aUse GitHub for disclosure.b1677ceRelease version 1.15.5 of the npm package.d8914f7Preserve fragment in responseUrl.6585820Release version 1.15.4 of the npm package.7a6567eDisallow bracketed hostnames.05629afPrefer native URL instead of deprecated url.parse.1cba8e8Prefer native URL instead of legacy url.resolve.72bc2a4Simplify _processResponse error handling.Updates
jsonwebtokenfrom 8.5.1 to 9.0.2Changelog
Sourced from jsonwebtoken's changelog.
Commits
bc28861Release 9.0.2 (#935)96b8906refactor: use specific lodash packages (#933)ed35062security: Updating semver to 7.5.4 to resolve CVE-2022-25883 (#932)84539b2Updating package version to 9.0.1 (#920)a99fd4bfix(stubs): allow decode method to be stubbed (#876)e1fa9dcMerge pull request from GHSA-8cf7-32gw-wr335eaedbfchore(ci): remove github test actions job (#861)cd4163echore(ci): configure Github Actions jobs for Tests & Security Scanning (#856)ecdf6ccfix!: Prevent accidental use of insecure key sizes & misconfiguration of secr...8345030fix(sign&verify)!: Remove defaultnonesupport fromsignandverifymet...Maintainer changes
This version was pushed to npm by charlesrea, a new releaser for jsonwebtoken since your current version.
Updates
@parse/push-adapterfrom 3.2.0 to 6.11.0Release notes
Sourced from
@parse/push-adapter's releases.... (truncated)
Changelog
Sourced from
@parse/push-adapter's changelog.... (truncated)
Commits
a27865fchore(release): 6.11.0 [skip ci]a4a1c6dci: Fix auto-release (#384)6c26629refactor: Bump eslint from 9.21.0 to 9.22.0 (#380)3995754feat: Bump@parse/node-apnfrom 6.4.3 to 6.5.0 (#382)16efdb3refactor: Bump parse from 5.3.0 to 6.0.0 (#378)10c1c85refactor: Bump firebase-admin from 13.1.0 to 13.2.0 (#379)17748f4refactor: Bump@eslint/jsfrom 9.20.0 to 9.21.0 (#375)ce753d8refactor: Bump eslint from 9.20.1 to 9.21.0 (#376)4bd2c53refactor: Bump semantic-release from 24.2.2 to 24.2.3 (#374)3776b77refactor: Bump@parse/node-apnfrom 6.4.0 to 6.4.3 (#372)Maintainer changes
This version was pushed to npm by parseadmin, a new releaser for
@parse/push-adaptersince your current version.Updates
jwks-rsafrom 1.8.0 to 3.2.0Release notes
Sourced from jwks-rsa's releases.
... (truncated)
Changelog
Sourced from jwks-rsa's changelog.
... (truncated)
Commits
8cb4bd9Release v3.2.0 (#437)c4767cdci: changed pull_request_target to pull_request and removed the authorize ste...b2ec8a8Update codeowner file with new GitHub team name (#414)3a4ffb6Update codeowner file with new GitHub team nameb83da97[Fix] Change type of unused req param to unknown to resolve type conflicts (#...cb0d808Merge branch 'master' into mastere056e51fix(compat): ensure WebCryptoAPI runtime imported keys are re-exportable (#409)dbe0804Merge branch 'master' into compat-2aff09baBump express from 4.18.2 to 4.19.2 (#408)44ae692Bump express from 4.18.2 to 4.19.2Maintainer changes
This version was pushed to npm by auth0-oss, a new releaser for jwks-rsa since your current version.
Updates
lodashfrom 4.17.15 to 4.17.21Commits
f299b52Bump to v4.17.21c4847ebImprove performance oftoNumber,trimandtrimEndon large input strings3469357Prevent command injection through_.template'svariableoptionded9bc6Bump to v4.17.20.63150efDocumentation fixes.00f0f62test.js: Remove trailing comma.846e434Temporarily use a custom fork oflodash-cli.5d046f3Re-enable Travis tests on4.17branch.aa816b3Remove/npm-package.d7fbc52Bump to v4.17.19Maintainer changes
This version was pushed to npm by bnjmnt4n, a new releaser for lodash since your current version.
Updates
pg-promisefrom 10.5.2 to 11.5.5Release notes
Sourced from pg-promise's releases.
... (truncated)
Commits
1a4dfe6Fixing issue Vulnerability: SQL Injection via Line Comment Creation vitaly-t/pg-promise#911 (comment)...79199d4update the package8f30428Fix node-postgres.com/apis/... links (#912)8343d4bupdate deps00cd486updating depse86ef61update node ver40311c3add version checkab150f2add pg11 testsb58bfccdowngrade supported pg to v107b71768Update README.mdUpdates
redisfrom 3.0.2 to 3.1.1Changelog
Sourced from redis's changelog.
... (truncated)
Commits
fc28860Bump version to 3.1.1 (#1597)2d11b6dfix #1569 - improve monitor_regex (#1595)7e77de8Add Chat (#1594)5d3e995Merge branch 'master' of https://github.com/NodeRedis/node-redisb797cf2add user to README.md79f34c2Bump version to 3.1.0 (#1590)7fdc54efix for 428e1c8a7b2322c2650294638cb1663ac5692728 - fix auth retry when redis ...09f0fe8"fix" tests428e1c8Add support for Redis 6auth pass [user](#1508)bb208d0Add codeclimate badge (#1572)Maintainer changes
This version was pushed to npm by leibale, a new releaser for redis since your current version.
Updates
semverfrom 5.7.1 to 5.7.2Release notes
Sourced from semver's releases.