Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump debug, body-parser, compression, express, mongoose, serve-static, node-pre-gyp, eslint-module-utils and mocha #33

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jan 12, 2023

Bumps debug to 2.6.9 and updates ancestor dependencies debug, body-parser, compression, express, mongoose, serve-static, node-pre-gyp, eslint-module-utils and mocha. These dependencies need to be updated together.

Updates debug from 2.6.1 to 2.6.9

Release notes

Sourced from debug's releases.

2.6.9

Patches

  • Remove ReDoS regexp in %o formatter: #504

Credits

Huge thanks to @​zhuangya for their help!

release 2.6.7

No release notes provided.

release 2.6.6

No release notes provided.

release 2.6.5

No release notes provided.

release 2.6.4

No release notes provided.

release 2.6.3

No release notes provided.

release 2.6.2

No release notes provided.

Changelog

Sourced from debug's changelog.

2.6.9 / 2017-09-22

  • remove ReDoS regexp in %o formatter (#504)

2.6.8 / 2017-05-18

2.6.7 / 2017-05-16

2.6.5 / 2017-04-27

2.6.4 / 2017-04-20

2.6.3 / 2017-03-13

2.6.2 / 2017-03-10

Commits

Updates body-parser from 1.16.1 to 1.20.1

Release notes

Sourced from body-parser's releases.

1.20.0

1.19.2

1.19.1

1.19.0

... (truncated)

Changelog

Sourced from body-parser's changelog.

1.20.1 / 2022-10-06

1.20.0 / 2022-04-02

1.19.2 / 2022-02-15

1.19.1 / 2021-12-10

1.19.0 / 2019-04-25

... (truncated)

Commits

Updates compression from 1.6.2 to 1.7.4

Release notes

Sourced from compression's releases.

1.7.4

  • deps: compressible@~2.0.16
    • Mark text/less as compressible
    • deps: mime-db@'>= 1.38.0 < 2'
  • deps: on-headers@~1.0.2
    • Fix res.writeHead patch missing return value
  • perf: prevent unnecessary buffer copy

1.7.3

  • deps: accepts@~1.3.5
    • deps: mime-types@~2.1.18
  • deps: compressible@~2.0.14
    • Mark all XML-derived types as compressible
    • deps: mime-db@'>= 1.34.0 < 2'
  • deps: [email protected]

1.7.2

  • deps: compressible@~2.0.13
    • deps: mime-db@'>= 1.33.0 < 2'

1.7.1

  • deps: accepts@~1.3.4
    • deps: mime-types@~2.1.16
  • deps: [email protected]
  • deps: compressible@~2.0.11
    • deps: mime-db@'>= 1.29.0 < 2'
  • deps: [email protected]
  • deps: vary@~1.1.2
    • perf: improve header token parsing speed

1.7.0

  • Use safe-buffer for improved Buffer API
  • deps: [email protected]
  • deps: compressible@~2.0.10
    • Fix regex fallback to not override compressible: false in db
    • deps: mime-db@'>= 1.27.0 < 2'
  • deps: [email protected]
    • Allow colors in workers
    • Deprecated DEBUG_FD environment variable set to 3 or higher
    • Fix error when running under React Native
    • Fix DEBUG_MAX_ARRAY_LENGTH
    • Use same color for same namespace
    • deps: [email protected]
  • deps: vary@~1.1.1
    • perf: hoist regular expression
Changelog

Sourced from compression's changelog.

1.7.4 / 2019-03-18

  • deps: compressible@~2.0.16
    • Mark text/less as compressible
    • deps: mime-db@'>= 1.38.0 < 2'
  • deps: on-headers@~1.0.2
    • Fix res.writeHead patch missing return value
  • perf: prevent unnecessary buffer copy

1.7.3 / 2018-07-15

  • deps: accepts@~1.3.5
    • deps: mime-types@~2.1.18
  • deps: compressible@~2.0.14
    • Mark all XML-derived types as compressible
    • deps: mime-db@'>= 1.34.0 < 2'
  • deps: [email protected]

1.7.2 / 2018-02-18

  • deps: compressible@~2.0.13
    • deps: mime-db@'>= 1.33.0 < 2'

1.7.1 / 2017-09-26

  • deps: accepts@~1.3.4
    • deps: mime-types@~2.1.16
  • deps: [email protected]
  • deps: compressible@~2.0.11
    • deps: mime-db@'>= 1.29.0 < 2'
  • deps: [email protected]
  • deps: vary@~1.1.2
    • perf: improve header token parsing speed

1.7.0 / 2017-07-10

  • Use safe-buffer for improved Buffer API
  • deps: [email protected]
  • deps: compressible@~2.0.10
    • Fix regex fallback to not override compressible: false in db
    • deps: mime-db@'>= 1.27.0 < 2'
  • deps: [email protected]
    • Allow colors in workers
    • Deprecated DEBUG_FD environment variable set to 3 or higher
    • Fix error when running under React Native

... (truncated)

Commits

Updates express from 4.14.1 to 4.18.2

Release notes

Sourced from express's releases.

4.18.2

4.18.1

  • Fix hanging on large stack of sync routes

4.18.0

... (truncated)

Changelog

Sourced from express's changelog.

4.18.2 / 2022-10-08

4.18.1 / 2022-04-29

  • Fix hanging on large stack of sync routes

4.18.0 / 2022-04-25

... (truncated)

Commits

Updates mongoose from 4.9.2 to 4.13.21

Changelog

Sourced from mongoose's changelog.

4.13.21 / 2020-07-12

  • fix(query): delete top-level _bsontype property in queries to prevent silent empty queries #8222

5.9.23 / 2020-07-10

  • fix(model): fix syncIndexes() error when db index has a collation but Mongoose index does not #9224 clhuang
  • fix(array): only cast array to proper depth if it contains an non-array value #9217 #9215 cyrilgandon
  • docs(schematype): document the transform option #9211
  • docs(mongoose): fix typo #9212 JNa0

5.9.22 / 2020-07-06

  • fix(schema): treat { type: mongoose.Schema.Types.Array } as equivalent to { type: Array } #9194
  • fix: revert fix for #9107 to avoid issues when calling connect() multiple times #9167
  • fix(update): respect storeSubdocValidationError option with update validators #9172
  • fix: upgrade to safe-buffer 5.2 #9198
  • docs: add a note about SSL validation to migration guide #9147
  • docs(schemas): fix inconsistent header #9196 samtsai15

5.9.21 / 2020-07-01

  • fix: propagate typeKey option to implicitly created schemas from typePojoToMixed #9185 joaoritter
  • fix(populate): handle embedded discriminator refPath with multiple documents #9153
  • fix(populate): handle deselected foreign field with perDocumentLimit and multiple documents #9175
  • fix(document): disallow transform functions that return promises #9176 #9163 AbdelrahmanHafez
  • fix(document): use strict equality when checking mixed paths for modifications #9165
  • docs: add target="_blank" to all edit links #9058

5.9.20 / 2020-06-22

  • fix(populate): handle populating primitive array under document array discriminator #9148
  • fix(connection): make sure to close previous connection when calling openUri() on an already open connection #9107
  • fix(model): fix conflicting $setOnInsert default values with update values in bulkWrite #9160 #9157 AbdelrahmanHafez
  • docs(validation): add note about validateBeforeSave and invalidate #9144 dandv
  • docs: specify the array field syntax for invalidate #9137 dandv
  • docs: fix several typos and broken references #9024 AbdelrahmanHafez
  • docs: fix minor typo #9143 dandv

5.9.19 / 2020-06-15

  • fix: upgrade mongodb driver -> 3.5.9 #9124 AbdelrahmanHafez
  • fix: copy required validator on single nested subdoc correctly when calling Schema#clone() #8819
  • fix(discriminator): handle tiedValue when casting update on nested paths #9108
  • fix(model): allow empty arrays for bulkWrite #9132 #9131 AbdelrahmanHafez
  • fix(schema): correctly set partialFilterExpression for nested schema indexes #9091
  • fix(castArrayFilters): handle casting on all fields of array filter #9122 lafeuil
  • fix(update): handle nested path createdAt when overwriting parent path #9105
  • docs(subdocs): add some notes on the difference between single nested subdocs and nested paths #9085
  • docs(subdocs): improve docs on typePojoToMixed #9085

... (truncated)

Commits
  • f88eb25 fix(query): delete top-level _bsontype property in queries to prevent silen...
  • 1db031c test(schema): clean up messy tests re: #8459
  • 8fa8012 test: test cleanup re: #8459
  • 4a55040 chore: remove problematic mongoose-long dep and use mongodb 3.4 in tests
  • 91f95da chore: run consistent mongod version in tests
  • 0e65e6e chore: release 4.13.20
  • 803090d fix(schema): make aliases handle mongoose-lean-virtuals
  • 6a8b381 chore: add .config.js to gitignore and npmignore
  • f51c4aa chore: release 4.13.19
  • 2aeeaa8 Merge pull request #7950 from cdimitroulas/backport-aggregate-options-bugfix
  • Additional commits viewable in compare view

Updates serve-static from 1.11.2 to 1.15.0

Release notes

Sourced from serve-static's releases.

1.15.0

1.14.2

1.14.1

  • Set stricter CSP header in redirect response
  • deps: [email protected]
    • deps: range-parser@~1.2.1

1.14.0

1.13.2

  • Fix incorrect end tag in redirects
  • deps: encodeurl@~1.0.2
    • Fix encoding % as last character
  • deps: [email protected]
    • deps: depd@~1.1.2
    • deps: encodeurl@~1.0.2
    • deps: statuses@~1.4.0

1.13.1

1.13.0

  • deps: [email protected]
    • Add 70 new types for file extensions
    • Add immutable option
    • Fix missing </html> in default error & redirects
    • Set charset as "UTF-8" for .js and .json
    • Use instance methods on steam to check for listeners

... (truncated)

Changelog

Sourced from serve-static's changelog.

1.15.0 / 2022-03-24

1.14.2 / 2021-12-15

1.14.1 / 2019-05-10

  • Set stricter CSP header in redirect response
  • deps: [email protected]
    • deps: range-parser@~1.2.1

1.14.0 / 2019-05-07

1.13.2 / 2018-02-07

  • Fix incorrect end tag in redirects
  • deps: encodeurl@~1.0.2
    • Fix encoding % as last character
  • deps: [email protected]
    • deps: depd@~1.1.2
    • deps: encodeurl@~1.0.2
    • deps: statuses@~1.4.0

1.13.1 / 2017-09-29

... (truncated)

Commits

Updates node-pre-gyp from 0.6.33 to 0.6.39

Changelog

Sourced from node-pre-gyp's changelog.

0.6.39

  • Support for node v9
  • Support for versioning on {libc} to allow binaries to work on non-glic linux systems like alpine linux

0.6.38

  • Maintaining compatibility (for v0.6.x series) with node v0.10.x

0.6.37

  • Solved one part of #276: now now deduce the node ABI from the major version for node >= 2 even when not stored in the abi_crosswalk.json
  • Fixed docs to avoid mentioning the deprecated and dangerous prepublish in package.json (#291)
  • Add new node versions to crosswalk
  • Ported tests to use tape instead of mocha
  • Got appveyor tests passing by downgrading npm and node-gyp

0.6.36

  • Removed the running of testbinary during install. Because this was regressed for so long, it is too dangerous to re-enable by default. Developers needing validation can call node-pre-gyp testbinary directory.
  • Fixed regression in v0.6.35 for electron installs (now skipping binary validation which is not yet supported for electron)

0.6.35

0.6.34

  • Added new node versions to crosswalk, including v8
  • Upgraded deps to latest versions, started using ^ instead of ~ for all deps.
Commits

Updates eslint-module-utils from 2.0.0 to 2.7.4

Changelog

Sourced from eslint-module-utils's changelog.

Change Log

All notable changes to this project will be documented in this file. This project adheres to Semantic Versioning. This change log adheres to standards from Keep a CHANGELOG.

[Unreleased]

[2.27.2] - 2023-01-11

Fixed

  • [no-duplicates]: do not unconditionally require typescript (#2665)

[2.27.1] - 2023-01-11

Fixed

[2.27.0] - 2023-01-11

Added

Fixed

  • [order]: move nested imports closer to main import entry (#2396, thanks [@​pri1311])
  • [no-restricted-paths]: fix an error message (#2466, thanks [@​AdriAt360])
  • [no-restricted-paths]: use Minimatch.match instead of minimatch to comply with Windows Native paths (#2466, thanks [@​AdriAt360])
  • [order]: require with member expression could not be fixed if alphabetize.order was used (#2490, thanks [@​msvab])
  • [order]: leave more space in rankings for consecutive path groups (#2506, thanks [@​Pearce-Ropion])
  • [no-cycle]: add ExportNamedDeclaration statements to dependencies (#2511, thanks [@​BenoitZugmeyer])
  • [dynamic-import-chunkname]: prevent false report on a valid webpack magic comment (#2330, thanks [@​mhmadhamster])
  • [export]: do not error on TS export overloads (#1590, thanks [@​ljharb])
  • [no-unresolved], [extensions]: ignore type only exports (#2436, thanks [@​Lukas-Kullmann])
  • ExportMap: add missing param to function (#2589, thanks [@​Fdawgs])
  • [no-unused-modules]: checkPkgFieldObject filters boolean fields from checks (#2598, thanks [@​mpint])
  • [no-cycle]: accept Flow typeof imports, just like type (#2608, thanks [@​gnprice])
  • [no-import-module-exports]: avoid a false positive for import variables (#2315, thanks [@​BarryThePenguin])

... (truncated)

Commits
  • d85bc44 utils: v2.7.4
  • e4c90e5 [utils] [patch] mark eslint as an optional peer dep
  • ab8b6d8 [Deps] update is-core-module
  • 7a37f90 [Fix] order: leave more space in rankings for consecutive path groups
  • 5fe9aa4 [readme] clarify eslint-import-resolver-typescript usage
  • 0ef8cba [New] no-anonymous-default-export: add allowNew option
  • d82670c [utils] [refactor] switch to an internal replacement for find-up
  • 53a9d5d [Fix] no-unused-modules: ignore hashbang and BOM while parsing
  • f18b676 [utils] [fix] ignore hashbang and BOM while parsing (#2431)
  • ce037f4 [Fix] order: require with member expression could not be fixed if alphabeti...
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by ljharb, a new releaser for eslint-module-utils since your current version.


Updates mocha from 3.5.3 to 10.2.0

Release notes

Sourced from mocha's releases.

v10.2.0

10.2.0 / 2022-12-11

🎉 Enhancements

  • #4945: API: add possibility to decorate ESM name before import (@​j0tunn)

🐛 Fixes

📖 Documentation

v10.1.0

10.1.0 / 2022-10-16

🎉 Enhancements

🔩 Other

v10.0.0

10.0.0 / 2022-05-01

💥 Breaking Changes

🔩 Other

... (truncated)

Changelog

Sourced from mocha's changelog.

10.2.0 / 2022-12-11

🎉 Enhancements

  • #4945: API: add possibility to decorate ESM name before import (@​j0tunn)

🐛 Fixes

📖 Documentation

10.1.0 / 2022-10-16

🎉 Enhancements

🔩 Other

10.0.0 / 2022-05-01

💥 Breaking Changes

🔩 Other

... (truncated)

Commits
  • 202e9b8 build(v10.2.0): release
  • 6782d6d build(v10.2.0): update CHANGELOG
  • 73bb819 feat(esm): ability to decorate ESM module name before importing it (#4945)
  • fc4ac58 chore(devDeps): remove unused depedencies (#4949)
  • 0a10ddc docs: remove duplicated header (#4944)

…, node-pre-gyp, eslint-module-utils and mocha

Bumps [debug](https://github.com/debug-js/debug) to 2.6.9 and updates ancestor dependencies [debug](https://github.com/debug-js/debug), [body-parser](https://github.com/expressjs/body-parser), [compression](https://github.com/expressjs/compression), [express](https://github.com/expressjs/express), [mongoose](https://github.com/Automattic/mongoose), [serve-static](https://github.com/expressjs/serve-static), [node-pre-gyp](https://github.com/mapbox/node-pre-gyp), [eslint-module-utils](https://github.com/import-js/eslint-plugin-import) and [mocha](https://github.com/mochajs/mocha). These dependencies need to be updated together.


Updates `debug` from 2.6.1 to 2.6.9
- [Release notes](https://github.com/debug-js/debug/releases)
- [Changelog](https://github.com/debug-js/debug/blob/2.6.9/CHANGELOG.md)
- [Commits](debug-js/debug@2.6.1...2.6.9)

Updates `body-parser` from 1.16.1 to 1.20.1
- [Release notes](https://github.com/expressjs/body-parser/releases)
- [Changelog](https://github.com/expressjs/body-parser/blob/master/HISTORY.md)
- [Commits](expressjs/body-parser@1.16.1...1.20.1)

Updates `compression` from 1.6.2 to 1.7.4
- [Release notes](https://github.com/expressjs/compression/releases)
- [Changelog](https://github.com/expressjs/compression/blob/master/HISTORY.md)
- [Commits](expressjs/compression@1.6.2...1.7.4)

Updates `express` from 4.14.1 to 4.18.2
- [Release notes](https://github.com/expressjs/express/releases)
- [Changelog](https://github.com/expressjs/express/blob/master/History.md)
- [Commits](expressjs/express@4.14.1...4.18.2)

Updates `mongoose` from 4.9.2 to 4.13.21
- [Release notes](https://github.com/Automattic/mongoose/releases)
- [Changelog](https://github.com/Automattic/mongoose/blob/master/CHANGELOG.md)
- [Commits](Automattic/mongoose@4.9.2...4.13.21)

Updates `serve-static` from 1.11.2 to 1.15.0
- [Release notes](https://github.com/expressjs/serve-static/releases)
- [Changelog](https://github.com/expressjs/serve-static/blob/master/HISTORY.md)
- [Commits](expressjs/serve-static@v1.11.2...v1.15.0)

Updates `node-pre-gyp` from 0.6.33 to 0.6.39
- [Release notes](https://github.com/mapbox/node-pre-gyp/releases)
- [Changelog](https://github.com/mapbox/node-pre-gyp/blob/master/CHANGELOG.md)
- [Commits](mapbox/node-pre-gyp@v0.6.33...v0.6.39)

Updates `eslint-module-utils` from 2.0.0 to 2.7.4
- [Release notes](https://github.com/import-js/eslint-plugin-import/releases)
- [Changelog](https://github.com/import-js/eslint-plugin-import/blob/main/CHANGELOG.md)
- [Commits](import-js/eslint-plugin-import@v2.0.0...utils/2.7.4)

Updates `mocha` from 3.5.3 to 10.2.0
- [Release notes](https://github.com/mochajs/mocha/releases)
- [Changelog](https://github.com/mochajs/mocha/blob/master/CHANGELOG.md)
- [Commits](mochajs/mocha@v3.5.3...v10.2.0)

---
updated-dependencies:
- dependency-name: debug
  dependency-type: indirect
- dependency-name: body-parser
  dependency-type: direct:production
- dependency-name: compression
  dependency-type: direct:production
- dependency-name: express
  dependency-type: direct:production
- dependency-name: mongoose
  dependency-type: direct:production
- dependency-name: serve-static
  dependency-type: direct:production
- dependency-name: node-pre-gyp
  dependency-type: indirect
- dependency-name: eslint-module-utils
  dependency-type: indirect
- dependency-name: mocha
  dependency-type: direct:development
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Jan 12, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants