Bump the npm_and_yarn group across 1 directory with 12 updates#66
Open
dependabot[bot] wants to merge 1 commit into
Open
Bump the npm_and_yarn group across 1 directory with 12 updates#66dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
49ece6e to
eb10582
Compare
Bumps the npm_and_yarn group with 8 updates in the / directory: | Package | From | To | | --- | --- | --- | | [@okta/oidc-middleware](https://github.com/okta/okta-oidc-middleware) | `4.5.1` | `5.0.0` | | [jsonwebtoken](https://github.com/auth0/node-jsonwebtoken) | `8.5.1` | `9.0.0` | | [redis](https://github.com/redis/node-redis) | `2.8.0` | `5.11.0` | | [json5](https://github.com/json5/json5) | `0.5.1` | `2.2.3` | | [cookie](https://github.com/jshttp/cookie) | `0.4.0` | `0.7.2` | | [node-fetch](https://github.com/node-fetch/node-fetch) | `1.7.3` | `2.7.0` | | [on-headers](https://github.com/jshttp/on-headers) | `1.0.2` | `1.1.0` | | [tmp](https://github.com/raszi/node-tmp) | `0.0.33` | `removed` | Updates `@okta/oidc-middleware` from 4.5.1 to 5.0.0 - [Release notes](https://github.com/okta/okta-oidc-middleware/releases) - [Changelog](https://github.com/okta/okta-oidc-middleware/blob/master/CHANGELOG.md) - [Commits](okta/okta-oidc-middleware@okta-oidc-middleware-4.5.1...okta-oidc-middleware-5.0.0) Updates `jsonwebtoken` from 8.5.1 to 9.0.0 - [Changelog](https://github.com/auth0/node-jsonwebtoken/blob/master/CHANGELOG.md) - [Commits](auth0/node-jsonwebtoken@v8.5.1...v9.0.0) Updates `redis` from 2.8.0 to 5.11.0 - [Release notes](https://github.com/redis/node-redis/releases) - [Changelog](https://github.com/redis/node-redis/blob/master/CHANGELOG.md) - [Commits](https://github.com/redis/node-redis/compare/v.2.8.0...redis@5.11.0) Updates `json5` from 0.5.1 to 2.2.3 - [Release notes](https://github.com/json5/json5/releases) - [Changelog](https://github.com/json5/json5/blob/main/CHANGELOG.md) - [Commits](json5/json5@v0.5.1...v2.2.3) Updates `cookie` from 0.4.0 to 0.7.2 - [Release notes](https://github.com/jshttp/cookie/releases) - [Commits](jshttp/cookie@v0.4.0...v0.7.2) Updates `node-fetch` from 1.7.3 to 2.7.0 - [Release notes](https://github.com/node-fetch/node-fetch/releases) - [Commits](node-fetch/node-fetch@1.7.3...v2.7.0) Updates `yargs-parser` from 9.0.2 to 11.1.1 - [Release notes](https://github.com/yargs/yargs-parser/releases) - [Changelog](https://github.com/yargs/yargs-parser/blob/v11.1.1/CHANGELOG.md) - [Commits](yargs/yargs-parser@v9.0.2...v11.1.1) Updates `jose` from 1.28.2 to 4.15.9 - [Release notes](https://github.com/panva/jose/releases) - [Changelog](https://github.com/panva/jose/blob/v4.15.9/CHANGELOG.md) - [Commits](panva/jose@v1.28.2...v4.15.9) Updates `tough-cookie` from 2.5.0 to 6.0.0 - [Release notes](https://github.com/salesforce/tough-cookie/releases) - [Changelog](https://github.com/salesforce/tough-cookie/blob/master/CHANGELOG.md) - [Commits](salesforce/tough-cookie@v2.5.0...v6.0.0) Updates `on-headers` from 1.0.2 to 1.1.0 - [Release notes](https://github.com/jshttp/on-headers/releases) - [Changelog](https://github.com/jshttp/on-headers/blob/master/HISTORY.md) - [Commits](jshttp/on-headers@v1.0.2...v1.1.0) Updates `passport` from 0.4.1 to 0.7.0 - [Changelog](https://github.com/jaredhanson/passport/blob/master/CHANGELOG.md) - [Commits](jaredhanson/passport@v0.4.1...v0.7.0) Removes `tmp` --- updated-dependencies: - dependency-name: "@okta/oidc-middleware" dependency-version: 5.0.0 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: jsonwebtoken dependency-version: 9.0.0 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: redis dependency-version: 5.11.0 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: json5 dependency-version: 2.2.3 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: cookie dependency-version: 0.7.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: node-fetch dependency-version: 2.7.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: yargs-parser dependency-version: 11.1.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: jose dependency-version: 4.15.9 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: tough-cookie dependency-version: 6.0.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: on-headers dependency-version: 1.1.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: passport dependency-version: 0.7.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: tmp dependency-version: dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <support@github.com>
eb10582 to
bd9ca73
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the npm_and_yarn group with 8 updates in the / directory:
4.5.15.0.08.5.19.0.02.8.05.11.00.5.12.2.30.4.00.7.21.7.32.7.01.0.21.1.00.0.33removedUpdates
@okta/oidc-middlewarefrom 4.5.1 to 5.0.0Release notes
Sourced from
@okta/oidc-middleware's releases.Changelog
Sourced from
@okta/oidc-middleware's changelog.Commits
50c093bchore(deps): upgrade vulnerable dependencies (#54)5d10b3cPrevent open redirects (#53)fe24bfcchore: Update dependenciesebafab4chore: dev dependency upgrades113e1a3chore: updates github issue templatea9b6ad2Merge remote-tracking branch 'origin/4.5' into sw-backport-4.5.194852dfReleng: Revving up to version(s) 4.6.0 for artifact(s) NoneUpdates
jsonwebtokenfrom 8.5.1 to 9.0.0Changelog
Sourced from jsonwebtoken's changelog.
Commits
e1fa9dcMerge pull request from GHSA-8cf7-32gw-wr335eaedbfchore(ci): remove github test actions job (#861)cd4163echore(ci): configure Github Actions jobs for Tests & Security Scanning (#856)ecdf6ccfix!: Prevent accidental use of insecure key sizes & misconfiguration of secr...8345030fix(sign&verify)!: Remove defaultnonesupport fromsignandverifymet...7e6a86bUpload OpsLevel YAML (#849)74d5719docs: update references vercel/ms references (#770)d71e383docs: document "invalid token" error3765003docs: fix spelling in README.md: Peak -> Peek (#754)a46097edocs: make decode impossible to discover before verifyMaintainer changes
This version was pushed to npm by julien.wollscheid, a new releaser for jsonwebtoken since your current version.
Updates
redisfrom 2.8.0 to 5.11.0Release notes
Sourced from redis's releases.
... (truncated)
Changelog
Sourced from redis's changelog.
... (truncated)
Commits
b6ff05fRelease redis@5.11.0c1d1151Release entraid@5.11.0b15ee1cRelease time-series@5.11.0b6df398Release search@5.11.0410490fRelease json@5.11.0f7f2139Release bloom@5.11.027e49d7Release client@5.11.009c2020feat(cluster): smart client handoffs oss (hitless upgrades) (#3142)7f256b0fix: unwrap constructors to primitives in type mapping (#3174)8d07299tests: add mocha multi-reporters and junit reporter support (#3138)Maintainer changes
This version was pushed to npm by dmaier-redislabs, a new releaser for redis since your current version.
Updates
json5from 0.5.1 to 2.2.3Release notes
Sourced from json5's releases.
... (truncated)
Changelog
Sourced from json5's changelog.
... (truncated)
Commits
c3a75242.2.394fd06ddocs: update CHANGELOG for v2.2.33b8cebfdocs(security): use GitHub security advisoriesf0fd9e1docs: publish a security policy6a91a05docs(template): bug -> bug report14f8cb12.2.210cc7cadocs: update CHANGELOG for v2.2.27774c10fix: add proto to objects and arraysedde30aReadme: slight tweak to intro97286f8Improve example in readmeUpdates
cookiefrom 0.4.0 to 0.7.2Release notes
Sourced from cookie's releases.
Commits
d19eaa10.7.2bc38ffdFix object assignment ofhasOwnProperty(#177)cf4658f0.7.16a8b8f5Allow leading dot for domain (#174)58015c0Remove more code and perf wins (#172)ab057d60.7.05f02ca8Migrate history to GitHub releasesa5d591cMigrate history to GitHub releases51968f9Skip isNaN9e7ca51perf(parse): cache length, return early (#144)Maintainer changes
This version was pushed to npm by blakeembrey, a new releaser for cookie since your current version.
Updates
node-fetchfrom 1.7.3 to 2.7.0Release notes
Sourced from node-fetch's releases.
... (truncated)
Commits
9b9d458feat:AbortError(#1744)65ae25afix: Remove the default connection close header (#1765)8bc3a7cfix: socket variable testing for undefined (#1726)afb36f6Revert "fix: handle bom in text and json (#1739)" (#1741)29909d7fix: handle bom in text and json (#1739)70f592dfix: "global is not defined" (#1704)0f1ebb0Prevent error when response is null (#1699)6e9464dci(release): install dependenciesdd2a0baci(release): install dependencies49bef02ci(release): use latest Node LTSMaintainer changes
This version was pushed to npm by node-fetch-bot, a new releaser for node-fetch since your current version.
Install script changes
This version adds
preparescript that runs during installation. Review the package contents before updating.Updates
yargs-parserfrom 9.0.2 to 11.1.1Changelog
Sourced from yargs-parser's changelog.
... (truncated)
Commits
ee122f8chore(release): 11.1.179cda98fix: ensure empty string is added into argv._ (#140)1c5d556test: add test for config object priority (#149)f4a3063revert: make requiresArg work in conjunction with arrays (#136)1eb726bchore(release): 11.1.0f94e536chore: switch to Travis for Windows tests (#147)a849fcefeat: add halt-at-non-option configuration option (#130)ee56e31fix: handling of one char alias (#139)68dd3a1chore(release): 11.0.04b8cfcefeat: array.type can now be provided, supporting coercion (#132)Updates
josefrom 1.28.2 to 4.15.9Release notes
Sourced from jose's releases.
... (truncated)
Changelog
Sourced from jose's changelog.
... (truncated)
Commits
051a18echore(release): 4.15.913b10ddchore(release): 4.15.817eef5ffix: add sideEffects:false to nested ESM package.json files5084808chore(release): 4.15.7122c939chore(release): 4.15.6e36d69efix: add a workerd package.json target765aafdchore(release): 4.15.5b36e45etest: add export check to x509 pem import testse839ecbtest: stop testing JWE RSA1_5 Algorithm1b91d88fix: add a maxOutputLength option to zlib inflateUpdates
tough-cookiefrom 2.5.0 to 6.0.0Release notes
Sourced from tough-cookie's releases.
... (truncated)
Commits
62be1e4Prepare v6 (#538)5e2cf1cSupport publishing of both ESM and CJS (#536)d0c0ee8Bump the dev-dependencies group with 8 updates (#537)98c77266.0.0-rc.1 (#535)c024d1dReverts the check on the Secure attribute when setting a cookie (#534)6d729f9Bump the dev-dependencies group with 12 updates (#531)eb872bfchore(deps): bump tldts in the production-dependencies group (#532)e0a859dBump tldts from 7.0.8 to 7.0.9 in the production-dependencies group (#530)25e3e46Create CONTRIBUTING.md (#526)27582e8Bump tldts from 7.0.5 to 7.0.8 in the production-dependencies group (#524)Maintainer changes
This version was pushed to npm by ccasey, a new releaser for tough-cookie since your current version.
Updates
on-headersfrom 1.0.2 to 1.1.0Release notes
Sourced from on-headers's releases.