dependabot/npm_and_yarn/npm_and_yarn-281c6dbbaa
main
Bumps the npm_and_yarn group with 22 updates in the / directory:
6.3.0
7.6.3
7.3.7
3.22.8
3.39.0
7.18.2
7.26.4
1.20.0
1.20.3
4.18.1
4.21.2
3.0.2
3.0.3
7.0.3
7.0.6
0.2.0
0.2.2
3.1.8
3.1.10
3.0.4
3.1.2
2.2.2
2.2.3
1.15.1
1.15.9
2.0.6
2.0.7
2.2.1
1.0.1
4.0.5
4.0.8
3.3.4
3.3.8
2.75.6
2.79.2
5.14.1
5.37.0
4.0.0
4.1.4
5.73.0
5.97.1
5.3.3
5.3.4
1.2.3
1.2.5
Updates semver from 6.3.0 to 7.6.3
semver
Sourced from semver's releases.
v7.6.3 7.6.3 (2024-07-16) Bug Fixes 73a3d79 #726 optimize Range parsing and formatting (#726) (@jviide) Documentation 2975ece #719 fix extra backtick typo (#719) (@stdavis) v7.6.2 7.6.2 (2024-05-09) Bug Fixes 6466ba9 #713 lru: use map.delete() directly (#713) (@negezor, @lukekarrys) v7.6.1 7.6.1 (2024-05-04) Bug Fixes c570a34 #704 linting: no-unused-vars (@wraithgar) ad8ff11 #704 use internal cache implementation (@mbtools) ac9b357 #682 typo in compareBuild debug message (#682) (@mbtools) Dependencies 988a8de #709 uninstall lru-cache (#709) 3fabe4d #704 remove lru-cache Chores dd09b60 #705 bump @npmcli/template-oss to 4.22.0 (@lukekarrys) ec49cdc #701 chore: chore: postinstall for dependabot template-oss PR (@lukekarrys) b236c3d #696 add benchmarks (#696) (@H4ad) 692451b #688 various improvements to README (#688) (@mbtools) 5feeb7f #705 postinstall for dependabot template-oss PR (@lukekarrys) 074156f #701 bump @npmcli/template-oss from 4.21.3 to 4.21.4 (@dependabot[bot]) v7.6.0 7.6.0 (2024-01-31) Features a7ab13a #671 preserve pre-release and build parts of a version on coerce (#671) (@madtisa, madtisa, @wraithgar) Chores
73a3d79
@jviide
2975ece
@stdavis
6466ba9
@negezor
@lukekarrys
c570a34
@wraithgar
ad8ff11
@mbtools
ac9b357
988a8de
lru-cache
3fabe4d
dd09b60
@npmcli/template-oss
ec49cdc
b236c3d
@H4ad
692451b
5feeb7f
074156f
@dependabot
a7ab13a
@madtisa
... (truncated)
Sourced from semver's changelog.
7.6.3 (2024-07-16) Bug Fixes 73a3d79 #726 optimize Range parsing and formatting (#726) (@jviide) Documentation 2975ece #719 fix extra backtick typo (#719) (@stdavis) 7.6.2 (2024-05-09) Bug Fixes 6466ba9 #713 lru: use map.delete() directly (#713) (@negezor, @lukekarrys) 7.6.1 (2024-05-04) Bug Fixes c570a34 #704 linting: no-unused-vars (@wraithgar) ad8ff11 #704 use internal cache implementation (@mbtools) ac9b357 #682 typo in compareBuild debug message (#682) (@mbtools) Dependencies 988a8de #709 uninstall lru-cache (#709) 3fabe4d #704 remove lru-cache Chores dd09b60 #705 bump @npmcli/template-oss to 4.22.0 (@lukekarrys) ec49cdc #701 chore: chore: postinstall for dependabot template-oss PR (@lukekarrys) b236c3d #696 add benchmarks (#696) (@H4ad) 692451b #688 various improvements to README (#688) (@mbtools) 5feeb7f #705 postinstall for dependabot template-oss PR (@lukekarrys) 074156f #701 bump @npmcli/template-oss from 4.21.3 to 4.21.4 (@dependabot[bot]) 7.6.0 (2024-01-31) Features a7ab13a #671 preserve pre-release and build parts of a version on coerce (#671) (@madtisa, madtisa, @wraithgar) Chores 816c7b2 #667 postinstall for dependabot template-oss PR (@lukekarrys) 0bd24d9 #667 bump @npmcli/template-oss from 4.21.1 to 4.21.3 (@dependabot[bot]) e521932 #652 postinstall for dependabot template-oss PR (@lukekarrys) 8873991 #652 chore: chore: postinstall for dependabot template-oss PR (@lukekarrys)
816c7b2
0bd24d9
e521932
8873991
0a12d6c
eb1380b
d777418
This version was pushed to npm by npm-cli-ops, a new releaser for semver since your current version.
Updates semver from 7.3.7 to 7.6.3
Updates core-js-compat from 3.22.8 to 3.39.0
core-js-compat
Sourced from core-js-compat's changelog.
3.39.0 - 2024.10.31 Changes v3.38.1...v3.39.0 Iterator helpers proposal: Built-ins: Iterator Iterator.from Iterator.prototype.drop Iterator.prototype.every Iterator.prototype.filter Iterator.prototype.find Iterator.prototype.flatMap Iterator.prototype.forEach Iterator.prototype.map Iterator.prototype.reduce Iterator.prototype.some Iterator.prototype.take Iterator.prototype.toArray Iterator.prototype[@@toStringTag] Moved to stable ES, October 2024 TC39 meeting Added es. namespace modules, /es/ and /stable/ namespaces entries Promise.try: Built-ins: Promise.try Moved to stable ES, October 2024 TC39 meeting Added es. namespace module, /es/ and /stable/ namespaces entries Fixed /actual|full/promise/try entries for the callback arguments support Math.sumPrecise proposal: Built-ins: Math.sumPrecise Moved to stage 3, October 2024 TC39 meeting Added /actual/ namespace entries, unconditional forced replacement changed to feature detection Added Iterator sequencing stage 2.7 proposal: Added built-ins: Iterator.concat Map upsert stage 2 proposal: Updated to the new API following the October 2024 TC39 meeting Added built-ins: Map.prototype.getOrInsert Map.prototype.getOrInsertComputed WeakMap.prototype.getOrInsert WeakMap.prototype.getOrInsertComputed Extractors proposal moved to stage 2, October 2024 TC39 meeting Usage of @@species pattern removed from %TypedArray% and ArrayBuffer methods, tc39/ecma262/3450: Built-ins: %TypedArray%.prototype.filter %TypedArray%.prototype.filterReject %TypedArray%.prototype.map %TypedArray%.prototype.slice %TypedArray%.prototype.subarray ArrayBuffer.prototype.slice
Iterator
Iterator.from
Iterator.prototype.drop
Iterator.prototype.every
Iterator.prototype.filter
Iterator.prototype.find
Iterator.prototype.flatMap
Iterator.prototype.forEach
Iterator.prototype.map
Iterator.prototype.reduce
Iterator.prototype.some
Iterator.prototype.take
Iterator.prototype.toArray
Iterator.prototype[@@toStringTag]
es.
/es/
/stable/
Promise.try
/actual|full/promise/try
Math.sumPrecise
/actual/
Iterator.concat
Map
Map.prototype.getOrInsert
Map.prototype.getOrInsertComputed
WeakMap.prototype.getOrInsert
WeakMap.prototype.getOrInsertComputed
@@species
%TypedArray%
ArrayBuffer
%TypedArray%.prototype.filter
%TypedArray%.prototype.filterReject
%TypedArray%.prototype.map
%TypedArray%.prototype.slice
%TypedArray%.prototype.subarray
ArrayBuffer.prototype.slice
fe6d2d6
751bbae
e3e9f37
6ae6521
4f9a7de
JSON.parse
38ad391
9f3f20d
1940263
fe9bd8b
b8cfb85
Uint8Array
Updates @babel/traverse from 7.18.2 to 7.26.4
@babel/traverse
Sourced from @babel/traverse's releases.
@babel/traverse
v7.26.4 (2024-12-05) ↩️ Revert babel-traverse #17005 Revert "perf: Improve scope information collection performance" (@JLHwung) Committers: 2 Huáng Jùnliàng (@JLHwung) Nicolò Ribaudo (@nicolo-ribaudo) v7.26.3 (2024-12-04) 🐛 Bug Fix babel-generator #16958 [preserveFormat] force semicolons when invalidating ASI (@nicolo-ribaudo) 🏠 Internal babel-helper-builder-binary-assignment-operator-visitor, babel-plugin-transform-exponentiation-operator #16895 Remove helper-builder-binary-assignment-operator-visitor (@nicolo-ribaudo) 🏃♀️ Performance babel-generator #16959 perf: Reduce the use of temporary objects (@liuxingbaoyu) babel-traverse #16923 perf: Improve scope information collection performance (@liuxingbaoyu) #16964 perf: Avoid repeated traversal when creating scope (@liuxingbaoyu) babel-plugin-transform-modules-commonjs #16954 perf: Remove use of simplifyAccess (@liuxingbaoyu) Committers: 4 Babel Bot (@babel-bot) Huáng Jùnliàng (@JLHwung) Nicolò Ribaudo (@nicolo-ribaudo) @liuxingbaoyu v7.26.2 (2024-10-30) 🐛 Bug Fix babel-parser #16903 fix: Parse placeholder for TS namespace (@liuxingbaoyu) #16937 fix: Account for offsets when creating new Position instances (@DylanPiercey) babel-generator #16948 Fix mapping of tokens with generated nodes in between (@nicolo-ribaudo) Committers: 6 Babel Bot (@babel-bot) Dylan Piercey (@DylanPiercey) Huáng Jùnliàng (@JLHwung) Nicolò Ribaudo (@nicolo-ribaudo) @liuxingbaoyu
babel-traverse
@JLHwung
@nicolo-ribaudo
babel-generator
babel-helper-builder-binary-assignment-operator-visitor
babel-plugin-transform-exponentiation-operator
@liuxingbaoyu
babel-plugin-transform-modules-commonjs
simplifyAccess
@babel-bot
babel-parser
@DylanPiercey
Sourced from @babel/traverse's changelog.
v7.26.4 (2024-12-05) ↩️ Revert babel-traverse #17005 Revert "perf: Improve scope information collection performance" (@JLHwung) v7.26.3 (2024-12-04) 🐛 Bug Fix babel-generator #16958 [preserveFormat] force semicolons when invalidating ASI (@nicolo-ribaudo) 🏠 Internal babel-helper-builder-binary-assignment-operator-visitor, babel-plugin-transform-exponentiation-operator #16895 Remove helper-builder-binary-assignment-operator-visitor (@nicolo-ribaudo) 🏃♀️ Performance babel-generator #16959 perf: Reduce the use of temporary objects (@liuxingbaoyu) babel-traverse #16923 perf: Improve scope information collection performance (@liuxingbaoyu) #16964 perf: Avoid repeated traversal when creating scope (@liuxingbaoyu) babel-plugin-transform-modules-commonjs #16954 perf: Remove use of simplifyAccess (@liuxingbaoyu) v7.26.2 (2024-10-30) 🐛 Bug Fix babel-parser #16903 fix: Parse placeholder for TS namespace (@liuxingbaoyu) #16937 fix: Account for offsets when creating new Position instances (@DylanPiercey) babel-generator #16948 Fix mapping of tokens with generated nodes in between (@nicolo-ribaudo) v7.26.1 (2024-10-25) 🐛 Bug Fix babel-parser #16936 fix(parser): offset internal index locations by startIndex (@DylanPiercey) v7.26.0 (2024-10-25) 🚀 New Feature babel-core, babel-generator, babel-parser, babel-plugin-syntax-import-assertions, babel-plugin-syntax-import-attributes, babel-preset-env, babel-standalone, babel-types #16850 Enable import attributes parsing by default (@nicolo-ribaudo) babel-core #16862 feat: support async plugin's pre/post (@timofei-iatsenko) babel-compat-data, babel-plugin-proposal-regexp-modifiers, babel-plugin-transform-regexp-modifiers, babel-preset-env, babel-standalone #16692 Add transform-regexp-modifiers to preset-env (@JLHwung) babel-parser #16849 feat: add startIndex parser option (@DylanPiercey) babel-generator, babel-parser, babel-plugin-syntax-flow #16841 Always enable parsing of Flow enums (@nicolo-ribaudo) babel-helpers, babel-preset-typescript, babel-runtime-corejs3
babel-core
babel-plugin-syntax-import-assertions
babel-plugin-syntax-import-attributes
babel-preset-env
babel-standalone
babel-types
@timofei-iatsenko
babel-compat-data
babel-plugin-proposal-regexp-modifiers
babel-plugin-transform-regexp-modifiers
transform-regexp-modifiers
preset-env
startIndex
babel-plugin-syntax-flow
babel-helpers
babel-preset-typescript
babel-runtime-corejs3
cf7b9cd
f33704a
36ca8fa
ded1571
943bdfe
b07957e
af91759
2533cfb
611d958
TSClassImplements|TSInterfaceHeritage
506bf91
BABEL_TYPES_8_BREAKING
Updates body-parser from 1.20.0 to 1.20.3
body-parser
Sourced from body-parser's releases.
1.20.3 What's Changed Important deps: qs@6.13.0 add depth option to customize the depth level in the parser IMPORTANT: The default depth level for parsing URL-encoded data is now 32 (previously was Infinity). Documentation Other changes chore: add support for OSSF scorecard reporting by @inigomarquinez in expressjs/body-parser#522 ci: fix errors in ci github action for node 8 and 9 by @inigomarquinez in expressjs/body-parser#523 fix: pin to node@22.4.1 by @wesleytodd in expressjs/body-parser#527 deps: qs@6.12.3 by @melikhov-dev in expressjs/body-parser#521 Add OSSF Scorecard badge by @bjohansebas in expressjs/body-parser#531 Linter by @UlisesGascon in expressjs/body-parser#534 Release: 1.20.3 by @UlisesGascon in expressjs/body-parser#535 New Contributors @inigomarquinez made their first contribution in expressjs/body-parser#522 @melikhov-dev made their first contribution in expressjs/body-parser#521 @bjohansebas made their first contribution in expressjs/body-parser#531 @UlisesGascon made their first contribution in expressjs/body-parser#534 Full Changelog: https://github.com/expressjs/body-parser/compare/1.20.2...1.20.3 1.20.2 Fix strict json error message on Node.js 19+ deps: content-type@~1.0.5 perf: skip value escaping when unnecessary deps: raw-body@2.5.2 1.20.1 deps: qs@6.11.0 perf: remove unnecessary object clone
depth
32
Infinity
@inigomarquinez
@wesleytodd
@melikhov-dev
@bjohansebas
@UlisesGascon
Full Changelog: https://github.com/expressjs/body-parser/compare/1.20.2...1.20.3
Sourced from body-parser's changelog.
1.20.3 / 2024-09-10 deps: qs@6.13.0 add depth option to customize the depth level in the parser IMPORTANT: The default depth level for parsing URL-encoded data is now 32 (previously was Infinity) 1.20.2 / 2023-02-21 Fix strict json error message on Node.js 19+ deps: content-type@~1.0.5 perf: skip value escaping when unnecessary deps: raw-body@2.5.2 1.20.1 / 2022-10-06 deps: qs@6.11.0 perf: remove unnecessary object clone
1752951
39744cf
b2695c4
ade0f3f
99a1bd6
9478591
83db46a
9d4e212
ee91374
368a93a
This version was pushed to npm by ulisesgascon, a new releaser for body-parser since your current version.
Updates express from 4.18.1 to 4.21.2
express
Sourced from express's releases.
4.21.2 What's Changed Add funding field (v4) by @bjohansebas in expressjs/express#6065 deps: path-to-regexp@0.1.11 by @blakeembrey in expressjs/express#5956 deps: bump path-to-regexp@0.1.12 by @jonchurch in expressjs/express#6209 Release: 4.21.2 by @UlisesGascon in expressjs/express#6094 Full Changelog: https://github.com/expressjs/express/compare/4.21.1...4.21.2 4.21.1 What's Changed Backport a fix for CVE-2024-47764 to the 4.x branch by @joshbuker in expressjs/express#6029 Release: 4.21.1 by @UlisesGascon in expressjs/express#6031 Full Changelog: https://github.com/expressjs/express/compare/4.21.0...4.21.1 4.21.0 What's Changed Deprecate "back" magic string in redirects by @blakeembrey in expressjs/express#5935 finalhandler@1.3.1 by @wesleytodd in expressjs/express#5954 fix(deps): serve-static@1.16.2 by @wesleytodd in expressjs/express#5951 Upgraded dependency qs to 6.13.0 to match qs in body-parser by @agadzinski93 in expressjs/express#5946 New Contributors @agadzinski93 made their first contribution in expressjs/express#5946 Full Changelog: https://github.com/expressjs/express/compare/4.20.0...4.21.0 4.20.0 What's Changed Important IMPORTANT: The default depth level for parsing URL-encoded data is now 32 (previously was Infinity) Remove link renderization in html while using res.redirect Other Changes 4.19.2 Staging by @wesleytodd in expressjs/express#5561 remove duplicate location test for data uri by @wesleytodd in expressjs/express#5562 feat: document beta releases expectations by @marco-ippolito in expressjs/express#5565 Cut down on duplicated CI runs by @jonchurch in expressjs/express#5564 Add a Threat Model by @UlisesGascon in expressjs/express#5526 Assign captain of encodeurl by @blakeembrey in expressjs/express#5579 Nominate jonchurch as repo captain for http-errors, expressjs.com, morgan, cors, body-parser by @jonchurch in expressjs/express#5587 docs: update Security.md by @inigomarquinez in expressjs/express#5590 docs: update triage nomination policy by @UlisesGascon in expressjs/express#5600 Add CodeQL (SAST) by @UlisesGascon in expressjs/express#5433 docs: add UlisesGascon as triage initiative captain by @UlisesGascon in expressjs/ex... Description has been truncated
@blakeembrey
@jonchurch
Full Changelog: https://github.com/expressjs/express/compare/4.21.1...4.21.2
@joshbuker
Full Changelog: https://github.com/expressjs/express/compare/4.21.0...4.21.1
"back"
@agadzinski93
Full Changelog: https://github.com/expressjs/express/compare/4.20.0...4.21.0
res.redirect
@marco-ippolito
http-errors
expressjs.com
morgan
cors
Description has been truncated
No dependencies set.
The note is not visible to the blocked user.
Bumps the npm_and_yarn group with 22 updates in the / directory:
6.3.07.6.37.3.77.6.33.22.83.39.07.18.27.26.41.20.01.20.34.18.14.21.23.0.23.0.37.0.37.0.60.2.00.2.23.1.83.1.103.0.43.1.22.2.22.2.31.15.11.15.92.0.62.0.72.2.12.2.31.0.12.2.34.0.54.0.83.3.43.3.82.75.62.79.25.14.15.37.04.0.04.1.45.73.05.97.15.3.35.3.41.2.31.2.5Updates
semverfrom 6.3.0 to 7.6.3Release notes
Sourced from semver's releases.
... (truncated)
Changelog
Sourced from semver's changelog.
... (truncated)
Commits
0a12d6cchore: release 7.6.3 (#720)73a3d79fix: optimize Range parsing and formatting (#726)2975ecedocs: fix extra backtick typo (#719)eb1380bchore: release 7.6.2 (#714)6466ba9fix(lru): use map.delete() directly (#713)d777418chore: release 7.6.1 (#706)988a8dedeps: uninstalllru-cache(#709)5feeb7fchore: postinstall for dependabot template-oss PRdd09b60chore: bump@npmcli/template-ossto 4.22.0c570a34fix(linting): no-unused-varsMaintainer changes
This version was pushed to npm by npm-cli-ops, a new releaser for semver since your current version.
Updates
semverfrom 7.3.7 to 7.6.3Release notes
Sourced from semver's releases.
... (truncated)
Changelog
Sourced from semver's changelog.
... (truncated)
Commits
0a12d6cchore: release 7.6.3 (#720)73a3d79fix: optimize Range parsing and formatting (#726)2975ecedocs: fix extra backtick typo (#719)eb1380bchore: release 7.6.2 (#714)6466ba9fix(lru): use map.delete() directly (#713)d777418chore: release 7.6.1 (#706)988a8dedeps: uninstalllru-cache(#709)5feeb7fchore: postinstall for dependabot template-oss PRdd09b60chore: bump@npmcli/template-ossto 4.22.0c570a34fix(linting): no-unused-varsMaintainer changes
This version was pushed to npm by npm-cli-ops, a new releaser for semver since your current version.
Updates
core-js-compatfrom 3.22.8 to 3.39.0Changelog
Sourced from core-js-compat's changelog.
... (truncated)
Commits
fe6d2d6v3.39.0751bbaeaddIteratorsequencing stage 2.7 proposale3e9f37updateMapupsert proposal to the new API6ae6521add a proof4f9a7deJSON.parsesource text access proposal disabled in FF133 Nightly it seems b...38ad391update dependencies9f3f20dupdate Electron 34 compat data mapping1940263markIteratorhelpers proposal methods marked as shipped from Bun 1.1.31fe9bd8badd NodeJS 23.0 compat data mappingb8cfb85markUint8Arrayto / from base64 and hex proposal methods as [shipped from ...Updates
@babel/traversefrom 7.18.2 to 7.26.4Release notes
Sourced from
@babel/traverse's releases.... (truncated)
Changelog
Sourced from
@babel/traverse's changelog.... (truncated)
Commits
cf7b9cdv7.26.4f33704aRevert "perf: Improve scope information collection performance" (#17005)36ca8fav7.26.3ded1571perf: Improve scope information collection performance (#16923)943bdfeperf: Avoid repeated traversal when creating scope (#16964)b07957ev7.25.9af91759fix: Accidentally publishing useless files (#16917)2533cfbv7.25.7611d958[babel 8] CreateTSClassImplements|TSInterfaceHeritagenodes (#16731)506bf91RemoveBABEL_TYPES_8_BREAKINGflag and enable it by default (#16817)Updates
body-parserfrom 1.20.0 to 1.20.3Release notes
Sourced from body-parser's releases.
Changelog
Sourced from body-parser's changelog.
Commits
17529511.20.339744cfchore: linter (#534)b2695c4Merge commit from forkade0f3fadd scorecard to readme (#531)99a1bd6deps: qs@6.12.3 (#521)9478591fix: pin to node@22.4.183db46aci: fix errors in ci github action for node 8 and 9 (#523)9d4e212chore: add support for OSSF scorecard reporting (#522)ee913741.20.2368a93aFix strict json error message on Node.js 19+Maintainer changes
This version was pushed to npm by ulisesgascon, a new releaser for body-parser since your current version.
Updates
expressfrom 4.18.1 to 4.21.2Release notes
Sourced from express's releases.