-
Notifications
You must be signed in to change notification settings - Fork 3
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Bump the npm_and_yarn group across 1 directory with 14 updates #2
Open
dependabot
wants to merge
1
commit into
master
Choose a base branch
from
dependabot/npm_and_yarn/npm_and_yarn-security-group-dc566a8939
base: master
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Open
Bump the npm_and_yarn group across 1 directory with 14 updates #2
dependabot
wants to merge
1
commit into
master
from
dependabot/npm_and_yarn/npm_and_yarn-security-group-dc566a8939
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the npm_and_yarn group with 11 updates in the / directory: | Package | From | To | | --- | --- | --- | | [bootstrap](https://github.com/twbs/bootstrap) | `4.0.0` | `4.3.1` | | [hoek](https://github.com/hapijs/hoek) | `5.0.3` | `6.1.3` | | [debug](https://github.com/debug-js/debug) | `2.6.8` | `2.6.9` | | [browser-sync](https://github.com/BrowserSync/browser-sync) | `2.24.5` | `2.29.3` | | [es5-ext](https://github.com/medikoo/es5-ext) | `0.10.23` | `0.10.64` | | [lodash](https://github.com/lodash/lodash) | `4.17.10` | `4.17.21` | | [gulp](https://github.com/gulpjs/gulp) | `3.9.1` | `4.0.2` | | [semver](https://github.com/npm/node-semver) | `5.4.1` | `5.7.2` | | [gulp-imagemin](https://github.com/sindresorhus/gulp-imagemin) | `4.1.0` | `9.0.0` | | [tough-cookie](https://github.com/salesforce/tough-cookie) | `2.3.2` | `` | | [gulp-sass](https://github.com/dlmanning/gulp-sass) | `4.0.1` | `5.1.0` | Updates `bootstrap` from 4.0.0 to 4.3.1 - [Release notes](https://github.com/twbs/bootstrap/releases) - [Commits](twbs/bootstrap@v4.0.0...v4.3.1) Updates `hoek` from 5.0.3 to 6.1.3 - [Release notes](https://github.com/hapijs/hoek/releases) - [Commits](hapijs/hoek@v5.0.3...v6.1.3) Updates `debug` from 2.6.8 to 2.6.9 - [Release notes](https://github.com/debug-js/debug/releases) - [Changelog](https://github.com/debug-js/debug/blob/2.6.9/CHANGELOG.md) - [Commits](debug-js/debug@2.6.8...2.6.9) Updates `browser-sync` from 2.24.5 to 2.29.3 - [Release notes](https://github.com/BrowserSync/browser-sync/releases) - [Changelog](https://github.com/BrowserSync/browser-sync/blob/master/CHANGELOG.md) - [Commits](BrowserSync/browser-sync@v2.24.5...v2.29.3) Updates `es5-ext` from 0.10.23 to 0.10.64 - [Release notes](https://github.com/medikoo/es5-ext/releases) - [Changelog](https://github.com/medikoo/es5-ext/blob/main/CHANGELOG.md) - [Commits](medikoo/es5-ext@v0.10.23...v0.10.64) Updates `follow-redirects` from 1.5.0 to 1.15.6 - [Release notes](https://github.com/follow-redirects/follow-redirects/releases) - [Commits](follow-redirects/follow-redirects@v1.5.0...v1.15.6) Updates `fsevents` from 1.1.1 to 2.3.3 - [Release notes](https://github.com/fsevents/fsevents/releases) - [Commits](fsevents/fsevents@v1.1.1...v2.3.3) Updates `lodash` from 4.17.10 to 4.17.21 - [Release notes](https://github.com/lodash/lodash/releases) - [Commits](lodash/lodash@4.17.10...4.17.21) Updates `gulp` from 3.9.1 to 4.0.2 - [Release notes](https://github.com/gulpjs/gulp/releases) - [Changelog](https://github.com/gulpjs/gulp/blob/master/CHANGELOG.md) - [Commits](gulpjs/gulp@v3.9.1...v4.0.2) Updates `qs` from 6.2.3 to 6.3.2 - [Changelog](https://github.com/ljharb/qs/blob/main/CHANGELOG.md) - [Commits](ljharb/qs@v6.2.3...v6.3.2) Updates `semver` from 5.4.1 to 5.7.2 - [Release notes](https://github.com/npm/node-semver/releases) - [Changelog](https://github.com/npm/node-semver/blob/v5.7.2/CHANGELOG.md) - [Commits](npm/node-semver@v5.4.1...v5.7.2) Updates `gulp-imagemin` from 4.1.0 to 9.0.0 - [Release notes](https://github.com/sindresorhus/gulp-imagemin/releases) - [Commits](sindresorhus/gulp-imagemin@v4.1.0...v9.0.0) Removes `tough-cookie` Updates `gulp-sass` from 4.0.1 to 5.1.0 - [Release notes](https://github.com/dlmanning/gulp-sass/releases) - [Changelog](https://github.com/dlmanning/gulp-sass/blob/master/CHANGELOG.md) - [Commits](dlmanning/gulp-sass@v4.0.1...v5.1.0) --- updated-dependencies: - dependency-name: bootstrap dependency-type: direct:production dependency-group: npm_and_yarn-security-group - dependency-name: hoek dependency-type: direct:production dependency-group: npm_and_yarn-security-group - dependency-name: debug dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: browser-sync dependency-type: direct:development dependency-group: npm_and_yarn-security-group - dependency-name: es5-ext dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: follow-redirects dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: fsevents dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: lodash dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: gulp dependency-type: direct:development dependency-group: npm_and_yarn-security-group - dependency-name: qs dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: semver dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: gulp-imagemin dependency-type: direct:development dependency-group: npm_and_yarn-security-group - dependency-name: tough-cookie dependency-type: indirect dependency-group: npm_and_yarn-security-group - dependency-name: gulp-sass dependency-type: direct:development dependency-group: npm_and_yarn-security-group ... Signed-off-by: dependabot[bot] <[email protected]>
dependabot
bot
added
the
dependencies
Pull requests that update a dependency file
label
Mar 17, 2024
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the npm_and_yarn group with 11 updates in the / directory:
4.0.0
4.3.1
5.0.3
6.1.3
2.6.8
2.6.9
2.24.5
2.29.3
0.10.23
0.10.64
4.17.10
4.17.21
3.9.1
4.0.2
5.4.1
5.7.2
4.1.0
9.0.0
2.3.2
4.0.1
5.1.0
Updates
bootstrap
from 4.0.0 to 4.3.1Release notes
Sourced from bootstrap's releases.
... (truncated)
Commits
8fa0d30
Release v4.3.1. (#28252)dae20da
Remove unneeded glob. (#28249)10b97f6
Fix npm package contents7bc4d2e
Add sanitize template option for tooltip/popover plugins.bf2515a
Update RFS to v8.0.1 (#28245)45ced60
Update font size (#28232)1ded0d6
Release v4.3.0 (#28228)3aa0770
docs snippets: a few more minor tweaks (#28225)adf16da
toasts.md: Remove uselessdiv
s.2bfe581
Remove stray parameter from capture.Maintainer changes
This version was pushed to npm by xhmikosr, a new releaser for bootstrap since your current version.
Updates
hoek
from 5.0.3 to 6.1.3Commits
47d6306
6.1.3eef9740
cleanupfc934af
Cleanupf2eb7fd
Clone without prototype. Closes #2905bfe5b6
6.1.217fe9a1
Revert all symbol handlings to false by default. Closes #283542939b
6.1.1947a326
Ignore symbols in deepEqual() by default. Closes #28127ac630
6.1.0b3b5134
Merge pull request #281 from kanongil/symbol-supportUpdates
debug
from 2.6.8 to 2.6.9Release notes
Sourced from debug's releases.
Changelog
Sourced from debug's changelog.
Commits
13abeae
Release 2.6.9f53962e
remove ReDoS regexp in %o formatter (#504)Updates
browser-sync
from 2.24.5 to 2.29.3Release notes
Sourced from browser-sync's releases.
... (truncated)
Commits
02efdff
v2.29.362d906e
fix: append to head if body not present yet - fixes #2031 (#2041)f91440e
v2.29.2d0c50e0
deps: drop qs (#2040)6ffc212
v2.29.17b07798
v2.29.1-alpha.0497f216
remove client depsbed04d4
v2.29.087421b5
fix: ie11 support (#2024)59eb01a
v2.28.3Updates
es5-ext
from 0.10.23 to 0.10.64Release notes
Sourced from es5-ext's releases.
... (truncated)
Changelog
Sourced from es5-ext's changelog.
... (truncated)
Commits
f76b03d
chore: Release v0.10.642881acd
chore: Bump dependenciesc2e2bb9
fix: Revert update meant to fix Powershell issue, as it's a regression16f2b72
docs: Fix date in the changelogde4e03c
chore: Release v0.10.633fd53b7
chore: Upgradelint-staged
to v13bf8ed79
chore: Ensure postinstall script does not crash on Windows2cbbb07
chore: Bump dependencies22d0416
chore: Bump LICENSE yeara52e957
fix: Support ES2015+ function definitions infunction#toStringTokens()
Updates
follow-redirects
from 1.5.0 to 1.15.6Commits
35a517c
Release version 1.15.6 of the npm package.c4f847f
Drop Proxy-Authorization across hosts.8526b4a
Use GitHub for disclosure.b1677ce
Release version 1.15.5 of the npm package.d8914f7
Preserve fragment in responseUrl.6585820
Release version 1.15.4 of the npm package.7a6567e
Disallow bracketed hostnames.05629af
Prefer native URL instead of deprecated url.parse.1cba8e8
Prefer native URL instead of legacy url.resolve.72bc2a4
Simplify _processResponse error handling.Updates
fsevents
from 1.1.1 to 2.3.3Release notes
Sourced from fsevents's releases.
... (truncated)
Commits
2db891e
Release v2.3.38ec87bf
Update nodejs.yml (#392)c20c3af
readme63709df
Merge pull request #384 from aleksanb/subdirsa77340f
Handle MustScanSubDirs for large projects66be519
Update README.md (#371)2f2a858
Update README.md (#364)a7f5d00
Release v2.3.2fab136a
fix: issue #355 (#356)328ae39
Release v2.3.1Maintainer changes
This version was pushed to npm by pipobscure, a new releaser for fsevents since your current version.
Updates
lodash
from 4.17.10 to 4.17.21Commits
f299b52
Bump to v4.17.21c4847eb
Improve performance oftoNumber
,trim
andtrimEnd
on large input strings3469357
Prevent command injection through_.template
'svariable
optionded9bc6
Bump to v4.17.20.63150ef
Documentation fixes.00f0f62
test.js: Remove trailing comma.846e434
Temporarily use a custom fork oflodash-cli
.5d046f3
Re-enable Travis tests on4.17
branch.aa816b3
Remove/npm-package
.d7fbc52
Bump to v4.17.19Maintainer changes
This version was pushed to npm by bnjmnt4n, a new releaser for lodash since your current version.
Updates
gulp
from 3.9.1 to 4.0.2Release notes
Sourced from gulp's releases.
... (truncated)
Changelog
Sourced from gulp's changelog.
Commits
069350a
Release: 4.0.2b4b5a68
Build: Add node 12 to Travis & Azure5667666
Fix: Bind src/dest/symlink to the gulp instance to support esm exports (ref s...4091bd3
Docs: Add notes about esm support (closes #2278)3c66d95
Docs: Fix the Negative Globs section & examples (closes #2297)1693a11
Docs: Remove next tag from recipes (closes #2277)d916276
Docs: Add default task wrappers to Watching Files examples to make runnable (...ea52a92
Docs: Fix syntax error in lastRun API docs (closes #2315)5d81f42
Docs: Fix typo in Explaining Globs (#2326)ea3bba4
Release: 4.0.1Updates
qs
from 6.2.3 to 6.3.2Changelog
Sourced from qs's changelog.
Commits
9ee5612
v6.3.20a63fc8
[Tests] up tonode
v7.7
,v6.10
,v4.8
; disable osx builds since they b...8e1f3e7
[Fix] support keys starting with brackets.febe81a
[Fix] chmod a-xe54c5ec
[Dev Deps] updateeslint
8e2af08
[Fix] followallowPrototypes
option during merge153ce84
v6.3.1d73b7a6
[Dev Deps] updateeslint
,@ljharb/eslint-config
,browserify
beade02
[Fix] ensure thatallowPrototypes: false
does not ever shadow Object.protot...8bd4c6c
Document allowDots option for stringifyUpdates
semver
from 5.4.1 to 5.7.2Release notes
Sourced from semver's releases.
Changelog
Sourced from semver's changelog.
Commits
f8cc313
chore: release 5.7.22f8fd41
fix: better handling of whitespace (#585)deb5ad5
chore:@npmcli/template-oss
@4
.16.0c83c18c
5.7.1956e228
Correct typo in README8055dda
5.7.0604e73d
auto-publishing scriptsbed01e2
remove the nomin comments, since we don't minify any more anyway9cb68f1
document parse method38d42ca
5.7 changelogMaintainer changes
This version was pushed to npm by lukekarrys, a new releaser for semver since your current version.
Updates
gulp-imagemin
from 4.1.0 to 9.0.0Release notes
Sourced from gulp-imagemin's releases.
... (truncated)
Commits
7e6fcb0
9.0.070e07e8
Require Node.js 182f7ecc9
8.0.01b4baf6
Require Node.js 12.20 and move to ESMed39463
Move to GitHub Actions (#351)8b40da0
Update readme lossless note (#346)1cbb7c5
7.1.067cceb3
Updateimagemin-gifsicle
optional dependency97432ea
7.0.0aacca91
Require Node.js 10Removes
tough-cookie
Updates
gulp-sass
from 4.0.1 to 5.1.0Release notes
Sourced from gulp-sass's releases.