Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore: Bump helmet from 4.6.0 to 6.1.5 in /server #4126

Closed

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Apr 16, 2023

Bumps helmet from 4.6.0 to 6.1.5.

Changelog

Sourced from helmet's changelog.

6.1.5 - 2023-04-11

Fixed

  • Fixed yet another issue with TypeScript exports. See #420

6.1.4 - 2023-04-10

Fixed

  • Fix another issue with TypeScript default exports. See #418

6.1.3 - 2023-04-10

Fixed

  • Fix issue with TypeScript default exports. See #417

6.1.2 - 2023-04-09

Fixed

  • Retored main to package to help with some build tools

6.1.1 - 2023-04-08

Fixed

  • Fixed missing package metadata

6.1.0 - 2023-04-08

Changed

  • Improve support for various TypeScript setups, including "nodenext". See #405

6.0.1 - 2022-11-29

Fixed

  • crossOriginEmbedderPolicy did not accept options at the top level. See #390

6.0.0 - 2022-08-26

Changed

  • Breaking: helmet.contentSecurityPolicy no longer sets block-all-mixed-content directive by default
  • Breaking: helmet.expectCt is no longer set by default. It can, however, be explicitly enabled. It will be removed in Helmet 7. See #310
  • Breaking: Increase TypeScript strictness around some arguments. Only affects TypeScript users, and may not require any code changes. See #369
  • helmet.frameguard no longer offers a specific error when trying to use ALLOW-FROM; it just says that it is unsupported. Only the error message has changed

... (truncated)

Commits
  • 2be2373 6.1.5
  • 260dfa6 Update changelog for 6.1.5 release
  • f8ae480 Fix yet another issue with TypeScript exports
  • 68202a8 6.1.4
  • 3d0121d Update changelog for 6.1.4 release
  • b61e4ef Add my contact info to contributing and security docs
  • 96b959b Update devDependencies to latest versions
  • 1179da9 Fix another issue with TypeScript default exports
  • 04b2d77 6.1.3
  • 8066ee5 Update changelog for 6.1.3 release
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from d9170f2 to d9bee98 Compare April 26, 2023 14:41
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from d9bee98 to 2d25339 Compare April 26, 2023 14:44
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 2d25339 to 2df934f Compare April 26, 2023 14:46
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 2df934f to 5003629 Compare April 26, 2023 14:49
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 5003629 to 8798e4f Compare April 26, 2023 14:51
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 8798e4f to 701a9a2 Compare April 26, 2023 14:53
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 701a9a2 to 840ce77 Compare April 26, 2023 15:41
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 840ce77 to e015e83 Compare April 26, 2023 15:44
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from e015e83 to 6d98df0 Compare April 26, 2023 15:47
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 6d98df0 to 8ac4e67 Compare April 26, 2023 15:50
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 8ac4e67 to d9a3fb2 Compare April 26, 2023 15:53
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from d9a3fb2 to 1320dd5 Compare April 26, 2023 15:56
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 1320dd5 to 860b547 Compare April 26, 2023 15:59
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 860b547 to 082348c Compare April 26, 2023 16:02
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 082348c to c31227f Compare April 26, 2023 20:24
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from c31227f to 1ffce25 Compare April 26, 2023 20:27
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 1ffce25 to d840f31 Compare April 27, 2023 09:51
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from d840f31 to 8b718fa Compare April 30, 2023 01:00
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 8b718fa to 34b06c1 Compare April 30, 2023 01:04
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 34b06c1 to 25fe7ed Compare April 30, 2023 01:06
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 25fe7ed to 71d70d7 Compare April 30, 2023 01:10
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 71d70d7 to 7f2116a Compare April 30, 2023 01:13
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 7f2116a to ce879fb Compare April 30, 2023 01:16
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from ce879fb to 1de9c76 Compare April 30, 2023 01:19
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 1de9c76 to 432b1b4 Compare May 2, 2023 15:12
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 432b1b4 to 2989345 Compare May 2, 2023 15:16
Bumps [helmet](https://github.com/helmetjs/helmet) from 4.6.0 to 6.1.5.
- [Release notes](https://github.com/helmetjs/helmet/releases)
- [Changelog](https://github.com/helmetjs/helmet/blob/main/CHANGELOG.md)
- [Commits](helmetjs/helmet@v4.6.0...v6.1.5)

---
updated-dependencies:
- dependency-name: helmet
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/server/helmet-6.1.5 branch from 2989345 to 5bbc516 Compare May 2, 2023 15:19
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github May 7, 2023

Superseded by #4173.

@dependabot dependabot bot closed this May 7, 2023
@dependabot dependabot bot deleted the dependabot/npm_and_yarn/server/helmet-6.1.5 branch May 7, 2023 00:58
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant