-
Notifications
You must be signed in to change notification settings - Fork 0
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Bump the npm_and_yarn group across 1 directory with 39 updates #9
Open
dependabot
wants to merge
1
commit into
master
Choose a base branch
from
dependabot/npm_and_yarn/npm_and_yarn-05792ade72
base: master
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the npm_and_yarn group with 17 updates in the / directory: | Package | From | To | | --- | --- | --- | | [karma](https://github.com/karma-runner/karma) | `6.3.4` | `6.3.16` | | [@babel/traverse](https://github.com/babel/babel/tree/HEAD/packages/babel-traverse) | `7.15.0` | `7.25.7` | | [@cypress/request](https://github.com/cypress-io/request) | `2.88.5` | `3.0.5` | | [cypress](https://github.com/cypress-io/cypress) | `8.7.0` | `13.15.0` | | [ansi-html](https://github.com/Tjatse/ansi-html) | `0.0.7` | `removed` | | [@angular-devkit/build-angular](https://github.com/angular/angular-cli) | `12.1.4` | `12.2.18` | | [ansi-regex](https://github.com/chalk/ansi-regex) | `5.0.0` | `5.0.1` | | [ansi-regex](https://github.com/chalk/ansi-regex) | `3.0.0` | `5.0.1` | | [body-parser](https://github.com/expressjs/body-parser) | `1.19.0` | `1.20.3` | | [braces](https://github.com/micromatch/braces) | `3.0.2` | `3.0.3` | | [@angular-devkit/build-angular](https://github.com/angular/angular-cli) | `12.2.18` | `18.2.7` | | [follow-redirects](https://github.com/follow-redirects/follow-redirects) | `1.14.1` | `1.15.9` | | [http-cache-semantics](https://github.com/kornelski/http-cache-semantics) | `4.1.0` | `4.1.1` | | [minimatch](https://github.com/isaacs/minimatch) | `3.0.4` | `3.1.2` | | [minimist](https://github.com/minimistjs/minimist) | `1.2.5` | `1.2.8` | | [qs](https://github.com/ljharb/qs) | `6.5.2` | `6.13.0` | | [semver](https://github.com/npm/node-semver) | `6.3.0` | `7.6.3` | | [semver](https://github.com/npm/node-semver) | `7.3.5` | `7.6.3` | | [@angular/cli](https://github.com/angular/angular-cli) | `12.1.4` | `18.2.7` | | [url-parse](https://github.com/unshiftio/url-parse) | `1.5.3` | `1.5.10` | Updates `karma` from 6.3.4 to 6.3.16 - [Release notes](https://github.com/karma-runner/karma/releases) - [Changelog](https://github.com/karma-runner/karma/blob/master/CHANGELOG.md) - [Commits](karma-runner/karma@v6.3.4...v6.3.16) Updates `@babel/traverse` from 7.15.0 to 7.25.7 - [Release notes](https://github.com/babel/babel/releases) - [Changelog](https://github.com/babel/babel/blob/main/CHANGELOG.md) - [Commits](https://github.com/babel/babel/commits/v7.25.7/packages/babel-traverse) Updates `@cypress/request` from 2.88.5 to 3.0.5 - [Release notes](https://github.com/cypress-io/request/releases) - [Changelog](https://github.com/cypress-io/request/blob/master/CHANGELOG.md) - [Commits](cypress-io/request@v2.88.5...v3.0.5) Updates `cypress` from 8.7.0 to 13.15.0 - [Release notes](https://github.com/cypress-io/cypress/releases) - [Changelog](https://github.com/cypress-io/cypress/blob/develop/CHANGELOG.md) - [Commits](cypress-io/cypress@v8.7.0...v13.15.0) Removes `ansi-html` Updates `@angular-devkit/build-angular` from 12.1.4 to 12.2.18 - [Release notes](https://github.com/angular/angular-cli/releases) - [Changelog](https://github.com/angular/angular-cli/blob/12.2.18/CHANGELOG.md) - [Commits](angular/angular-cli@12.1.4...12.2.18) Updates `ansi-regex` from 5.0.0 to 5.0.1 - [Release notes](https://github.com/chalk/ansi-regex/releases) - [Commits](chalk/ansi-regex@v5.0.0...v5.0.1) Updates `ansi-regex` from 3.0.0 to 5.0.1 - [Release notes](https://github.com/chalk/ansi-regex/releases) - [Commits](chalk/ansi-regex@v5.0.0...v5.0.1) Updates `body-parser` from 1.19.0 to 1.20.3 - [Release notes](https://github.com/expressjs/body-parser/releases) - [Changelog](https://github.com/expressjs/body-parser/blob/master/HISTORY.md) - [Commits](expressjs/body-parser@1.19.0...1.20.3) Updates `braces` from 3.0.2 to 3.0.3 - [Changelog](https://github.com/micromatch/braces/blob/master/CHANGELOG.md) - [Commits](micromatch/braces@3.0.2...3.0.3) Updates `@angular-devkit/build-angular` from 12.2.18 to 18.2.7 - [Release notes](https://github.com/angular/angular-cli/releases) - [Changelog](https://github.com/angular/angular-cli/blob/12.2.18/CHANGELOG.md) - [Commits](angular/angular-cli@12.1.4...12.2.18) Updates `cookie` from 0.4.0 to 0.4.1 - [Release notes](https://github.com/jshttp/cookie/releases) - [Changelog](https://github.com/jshttp/cookie/blob/v0.4.1/HISTORY.md) - [Commits](jshttp/cookie@v0.4.0...v0.4.1) Updates `engine.io` from 4.1.1 to 6.6.1 - [Release notes](https://github.com/socketio/socket.io/releases) - [Changelog](https://github.com/socketio/socket.io/blob/main/CHANGELOG.md) - [Commits](https://github.com/socketio/socket.io/compare/[email protected]) Updates `express` from 4.17.1 to 4.21.0 - [Release notes](https://github.com/expressjs/express/releases) - [Changelog](https://github.com/expressjs/express/blob/4.21.0/History.md) - [Commits](expressjs/express@4.17.1...4.21.0) Updates `follow-redirects` from 1.14.1 to 1.15.9 - [Release notes](https://github.com/follow-redirects/follow-redirects/releases) - [Commits](follow-redirects/follow-redirects@v1.14.1...v1.15.9) Updates `http-cache-semantics` from 4.1.0 to 4.1.1 - [Commits](kornelski/http-cache-semantics@v4.1.0...v4.1.1) Updates `json5` from 1.0.1 to 2.2.0 - [Release notes](https://github.com/json5/json5/releases) - [Changelog](https://github.com/json5/json5/blob/main/CHANGELOG.md) - [Commits](json5/json5@v1.0.1...v2.2.0) Updates `loader-utils` from 1.4.0 to 2.0.0 - [Release notes](https://github.com/webpack/loader-utils/releases) - [Changelog](https://github.com/webpack/loader-utils/blob/master/CHANGELOG.md) - [Commits](webpack/loader-utils@v1.4.0...v2.0.0) Updates `log4js` from 6.3.0 to 6.9.1 - [Changelog](https://github.com/log4js-node/log4js-node/blob/master/CHANGELOG.md) - [Commits](log4js-node/log4js-node@v6.3.0...v6.9.1) Updates `micromatch` from 3.1.10 to 4.0.4 - [Release notes](https://github.com/micromatch/micromatch/releases) - [Changelog](https://github.com/micromatch/micromatch/blob/master/CHANGELOG.md) - [Commits](micromatch/micromatch@3.1.10...4.0.4) Updates `minimatch` from 3.0.4 to 3.1.2 - [Changelog](https://github.com/isaacs/minimatch/blob/main/changelog.md) - [Commits](isaacs/minimatch@v3.0.4...v3.1.2) Updates `minimist` from 1.2.5 to 1.2.8 - [Changelog](https://github.com/minimistjs/minimist/blob/main/CHANGELOG.md) - [Commits](minimistjs/minimist@v1.2.5...v1.2.8) Updates `nanoid` from 3.1.23 to 3.3.7 - [Release notes](https://github.com/ai/nanoid/releases) - [Changelog](https://github.com/ai/nanoid/blob/main/CHANGELOG.md) - [Commits](ai/nanoid@3.1.23...3.3.7) Updates `node-forge` from 0.10.0 to 1.3.1 - [Changelog](https://github.com/digitalbazaar/forge/blob/main/CHANGELOG.md) - [Commits](digitalbazaar/forge@0.10.0...v1.3.1) Updates `path-to-regexp` from 0.1.7 to 0.1.10 - [Release notes](https://github.com/pillarjs/path-to-regexp/releases) - [Changelog](https://github.com/pillarjs/path-to-regexp/blob/master/History.md) - [Commits](pillarjs/path-to-regexp@v0.1.7...v0.1.10) Updates `postcss` from 7.0.36 to 8.4.41 - [Release notes](https://github.com/postcss/postcss/releases) - [Changelog](https://github.com/postcss/postcss/blob/main/CHANGELOG.md) - [Commits](postcss/postcss@7.0.36...8.4.41) Updates `qs` from 6.5.2 to 6.13.0 - [Changelog](https://github.com/ljharb/qs/blob/main/CHANGELOG.md) - [Commits](ljharb/qs@v6.5.2...v6.13.0) Updates `semver` from 6.3.0 to 7.6.3 - [Release notes](https://github.com/npm/node-semver/releases) - [Changelog](https://github.com/npm/node-semver/blob/main/CHANGELOG.md) - [Commits](npm/node-semver@v6.3.0...v7.6.3) Updates `semver` from 7.3.5 to 7.6.3 - [Release notes](https://github.com/npm/node-semver/releases) - [Changelog](https://github.com/npm/node-semver/blob/main/CHANGELOG.md) - [Commits](npm/node-semver@v6.3.0...v7.6.3) Updates `@angular/cli` from 12.1.4 to 18.2.7 - [Release notes](https://github.com/angular/angular-cli/releases) - [Changelog](https://github.com/angular/angular-cli/blob/main/CHANGELOG.md) - [Commits](angular/angular-cli@12.1.4...18.2.7) Updates `send` from 0.17.1 to 0.19.0 - [Release notes](https://github.com/pillarjs/send/releases) - [Changelog](https://github.com/pillarjs/send/blob/master/HISTORY.md) - [Commits](pillarjs/send@0.17.1...0.19.0) Updates `serve-static` from 1.14.1 to 1.16.2 - [Release notes](https://github.com/expressjs/serve-static/releases) - [Changelog](https://github.com/expressjs/serve-static/blob/v1.16.2/HISTORY.md) - [Commits](expressjs/serve-static@v1.14.1...v1.16.2) Updates `socket.io-parser` from 4.0.4 to 4.2.4 - [Release notes](https://github.com/Automattic/socket.io-parser/releases) - [Changelog](https://github.com/socketio/socket.io-parser/blob/4.2.4/CHANGELOG.md) - [Commits](socketio/socket.io-parser@4.0.4...4.2.4) Updates `socket.io` from 3.1.2 to 4.8.0 - [Release notes](https://github.com/socketio/socket.io/releases) - [Changelog](https://github.com/socketio/socket.io/blob/main/CHANGELOG.md) - [Commits](https://github.com/socketio/socket.io/compare/[email protected]) Updates `tar` from 6.1.6 to 6.2.1 - [Release notes](https://github.com/isaacs/node-tar/releases) - [Changelog](https://github.com/isaacs/node-tar/blob/main/CHANGELOG.md) - [Commits](isaacs/node-tar@v6.1.6...v6.2.1) Updates `terser` from 5.7.0 to 5.31.6 - [Changelog](https://github.com/terser/terser/blob/master/CHANGELOG.md) - [Commits](terser/terser@v5.7.0...v5.31.6) Updates `tough-cookie` from 2.5.0 to 4.1.4 - [Release notes](https://github.com/salesforce/tough-cookie/releases) - [Changelog](https://github.com/salesforce/tough-cookie/blob/master/CHANGELOG.md) - [Commits](salesforce/tough-cookie@v2.5.0...v4.1.4) Updates `ua-parser-js` from 0.7.28 to 0.7.39 - [Release notes](https://github.com/faisalman/ua-parser-js/releases) - [Changelog](https://github.com/faisalman/ua-parser-js/blob/0.7.39/changelog.md) - [Commits](faisalman/ua-parser-js@0.7.28...0.7.39) Updates `url-parse` from 1.5.3 to 1.5.10 - [Commits](unshiftio/url-parse@1.5.3...1.5.10) Updates `webpack-dev-middleware` from 3.7.3 to 7.4.2 - [Release notes](https://github.com/webpack/webpack-dev-middleware/releases) - [Changelog](https://github.com/webpack/webpack-dev-middleware/blob/master/CHANGELOG.md) - [Commits](webpack/webpack-dev-middleware@v3.7.3...v7.4.2) Updates `webpack` from 5.44.0 to 5.94.0 - [Release notes](https://github.com/webpack/webpack/releases) - [Commits](webpack/webpack@v5.44.0...v5.94.0) Updates `ws` from 6.2.2 to 8.17.1 - [Release notes](https://github.com/websockets/ws/releases) - [Commits](websockets/ws@6.2.2...8.17.1) --- updated-dependencies: - dependency-name: karma dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: "@babel/traverse" dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@cypress/request" dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: cypress dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: ansi-html dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@angular-devkit/build-angular" dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: ansi-regex dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: ansi-regex dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: body-parser dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: braces dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@angular-devkit/build-angular" dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: cookie dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: engine.io dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: express dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: follow-redirects dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: http-cache-semantics dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: json5 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: loader-utils dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: log4js dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: micromatch dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: minimatch dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: minimist dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: nanoid dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: node-forge dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: path-to-regexp dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: postcss dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: qs dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: semver dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: semver dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@angular/cli" dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: send dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: serve-static dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: socket.io-parser dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: socket.io dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: tar dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: terser dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: tough-cookie dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: ua-parser-js dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: url-parse dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: webpack-dev-middleware dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: webpack dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: ws dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <[email protected]>
This was referenced Oct 8, 2024
Closed
Closed
@dependabot rebase
…On Tuesday, October 8th, 2024 at 05:36, dependabot[bot] ***@***.***> wrote:
This automated pull request fixes a [security vulnerability](https://github.com/reposman33/ng-12-app/security/dependabot/159) (low severity).
[Learn more about Dependabot security updates](https://docs.github.com/github/managing-security-vulnerabilities/configuring-dependabot-security-updates).
---------------------------------------------------------------
Bumps the npm_and_yarn group with 17 updates in the / directory:
Package From To
[karma](https://github.com/karma-runner/karma) 6.3.4 6.3.16
***@***.***/traverse](https://github.com/babel/babel/tree/HEAD/packages/babel-traverse) 7.15.0 7.25.7
***@***.***/request](https://github.com/cypress-io/request) 2.88.5 3.0.5
[cypress](https://github.com/cypress-io/cypress) 8.7.0 13.15.0
[ansi-html](https://github.com/Tjatse/ansi-html) 0.0.7 removed
***@***.***/build-angular](https://github.com/angular/angular-cli) 12.1.4 12.2.18
[ansi-regex](https://github.com/chalk/ansi-regex) 5.0.0 5.0.1
[ansi-regex](https://github.com/chalk/ansi-regex) 3.0.0 5.0.1
[body-parser](https://github.com/expressjs/body-parser) 1.19.0 1.20.3
[braces](https://github.com/micromatch/braces) 3.0.2 3.0.3
***@***.***/build-angular](https://github.com/angular/angular-cli) 12.2.18 18.2.7
[follow-redirects](https://github.com/follow-redirects/follow-redirects) 1.14.1 1.15.9
[http-cache-semantics](https://github.com/kornelski/http-cache-semantics) 4.1.0 4.1.1
[minimatch](https://github.com/isaacs/minimatch) 3.0.4 3.1.2
[minimist](https://github.com/minimistjs/minimist) 1.2.5 1.2.8
[qs](https://github.com/ljharb/qs) 6.5.2 6.13.0
[semver](https://github.com/npm/node-semver) 6.3.0 7.6.3
[semver](https://github.com/npm/node-semver) 7.3.5 7.6.3
***@***.***/cli](https://github.com/angular/angular-cli) 12.1.4 18.2.7
[url-parse](https://github.com/unshiftio/url-parse) 1.5.3 1.5.10
Updates karma from 6.3.4 to 6.3.16
Release notes
Sourced from [karma's releases](https://github.com/karma-runner/karma/releases).
> v6.3.16
>
> [6.3.16](karma-runner/karma@v6.3.15...v6.3.16) (2022-02-10)
>
> Bug Fixes
>
> - security: mitigate the "Open Redirect Vulnerability" ([ff7edbb](karma-runner/karma@ff7edbb))
>
> v6.3.15
>
> [6.3.15](karma-runner/karma@v6.3.14...v6.3.15) (2022-02-05)
>
> Bug Fixes
>
> - helper: make mkdirIfNotExists helper resilient to concurrent calls ([d9dade2](karma-runner/karma@d9dade2)), closes [karma-runner/karma-coverage#434](https://redirect.github.com//redirect.github.com/karma-runner/karma-coverage/issues/434/issues/issuecomment-1017939333)
>
> v6.3.14
>
> [6.3.14](karma-runner/karma@v6.3.13...v6.3.14) (2022-02-05)
>
> Bug Fixes
>
> - remove string template from client code ([91d5acd](karma-runner/karma@91d5acd))
> - warn when singleRun and autoWatch are false ([69cfc76](karma-runner/karma@69cfc76))
> - security: remove XSS vulnerability in returnUrl query param ([839578c](karma-runner/karma@839578c))
>
> v6.3.13
>
> [6.3.13](karma-runner/karma@v6.3.12...v6.3.13) (2022-01-31)
>
> Bug Fixes
>
> - deps: bump log4js to resolve security issue ([5bf2df3](karma-runner/karma@5bf2df3)), closes [#3751](https://redirect.github.com/karma-runner/karma/issues/3751)
>
> v6.3.12
>
> [6.3.12](karma-runner/karma@v6.3.11...v6.3.12) (2022-01-24)
>
> Bug Fixes
>
> - remove depreciation warning from log4js ([41bed33](karma-runner/karma@41bed33))
>
> v6.3.11
>
> [6.3.11](karma-runner/karma@v6.3.10...v6.3.11) (2022-01-13)
>
> Bug Fixes
>
> - deps: pin colors package to 1.4.0 due to security vulnerability ([a5219c5](karma-runner/karma@a5219c5))
... (truncated)
Changelog
Sourced from [karma's changelog](https://github.com/karma-runner/karma/blob/master/CHANGELOG.md).
> [6.3.16](karma-runner/karma@v6.3.15...v6.3.16) (2022-02-10)
>
> Bug Fixes
>
> - security: mitigate the "Open Redirect Vulnerability" ([ff7edbb](karma-runner/karma@ff7edbb))
>
> [6.3.15](karma-runner/karma@v6.3.14...v6.3.15) (2022-02-05)
>
> Bug Fixes
>
> - helper: make mkdirIfNotExists helper resilient to concurrent calls ([d9dade2](karma-runner/karma@d9dade2)), closes [karma-runner/karma-coverage#434](https://redirect.github.com//redirect.github.com/karma-runner/karma-coverage/issues/434/issues/issuecomment-1017939333)
>
> [6.3.14](karma-runner/karma@v6.3.13...v6.3.14) (2022-02-05)
>
> Bug Fixes
>
> - remove string template from client code ([91d5acd](karma-runner/karma@91d5acd))
> - warn when singleRun and autoWatch are false ([69cfc76](karma-runner/karma@69cfc76))
> - security: remove XSS vulnerability in returnUrl query param ([839578c](karma-runner/karma@839578c))
>
> [6.3.13](karma-runner/karma@v6.3.12...v6.3.13) (2022-01-31)
>
> Bug Fixes
>
> - deps: bump log4js to resolve security issue ([5bf2df3](karma-runner/karma@5bf2df3)), closes [#3751](https://redirect.github.com/karma-runner/karma/issues/3751)
>
> [6.3.12](karma-runner/karma@v6.3.11...v6.3.12) (2022-01-24)
>
> Bug Fixes
>
> - remove depreciation warning from log4js ([41bed33](karma-runner/karma@41bed33))
>
> [6.3.11](karma-runner/karma@v6.3.10...v6.3.11) (2022-01-13)
>
> Bug Fixes
>
> - deps: pin colors package to 1.4.0 due to security vulnerability ([a5219c5](karma-runner/karma@a5219c5))
>
> [6.3.10](karma-runner/karma@v6.3.9...v6.3.10) (2022-01-08)
>
> Bug Fixes
>
> - logger: create parent folders if they are missing ([0d24bd9](karma-runner/karma@0d24bd9)), closes [#3734](https://redirect.github.com/karma-runner/karma/issues/3734)
... (truncated)
Commits
- [ab4b328](karma-runner/karma@ab4b328) chore(release): 6.3.16 [skip ci]
- [ff7edbb](karma-runner/karma@ff7edbb) fix(security): mitigate the "Open Redirect Vulnerability"
- [c1befa0](karma-runner/karma@c1befa0) chore(release): 6.3.15 [skip ci]
- [d9dade2](karma-runner/karma@d9dade2) fix(helper): make mkdirIfNotExists helper resilient to concurrent calls
- [653c762](karma-runner/karma@653c762) ci: prevent duplicate CI tasks on creating a PR
- [c97e562](karma-runner/karma@c97e562) chore(release): 6.3.14 [skip ci]
- [91d5acd](karma-runner/karma@91d5acd) fix: remove string template from client code
- [69cfc76](karma-runner/karma@69cfc76) fix: warn when singleRun and autoWatch are false
- [839578c](karma-runner/karma@839578c) fix(security): remove XSS vulnerability in returnUrl query param
- [db53785](karma-runner/karma@db53785) chore(release): 6.3.13 [skip ci]
- Additional commits viewable in [compare view](karma-runner/karma@v6.3.4...v6.3.16)
Updates @babel/traverse from 7.15.0 to 7.25.7
Release notes
Sourced from [@babel/traverse's releases](https://github.com/babel/babel/releases).
> v7.25.7 (2024-10-02)
>
> Thanks [@DylanPiercey](https://github.com/DylanPiercey) and [@YuHyeonWook](https://github.com/YuHyeonWook) for your first PRs!
>
> 🐛 Bug Fix
>
> - babel-helper-validator-identifier
>
> - [#16825](https://redirect.github.com/babel/babel/pull/16825) fix: update identifier to unicode 16 ([@JLHwung](https://github.com/JLHwung))
>
> - babel-traverse
>
> - [#16814](https://redirect.github.com/babel/babel/pull/16814) fix: issue with node path keys updated on unrelated paths ([@DylanPiercey](https://github.com/DylanPiercey))
>
> - babel-plugin-transform-classes
>
> - [#16797](https://redirect.github.com/babel/babel/pull/16797) Use an inclusion rather than exclusion list for super() check ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
>
> - babel-generator
>
> - [#16788](https://redirect.github.com/babel/babel/pull/16788) Fix printing of TS infer in compact mode ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
> - [#16785](https://redirect.github.com/babel/babel/pull/16785) Print TS type annotations for destructuring in assignment pattern ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
> - [#16778](https://redirect.github.com/babel/babel/pull/16778) Respect [no LineTerminator here] after nodes ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
>
> 💅 Polish
>
> - babel-types
>
> - [#16852](https://redirect.github.com/babel/babel/pull/16852) Add deprecated JSDOC for fields ([@liuxingbaoyu](https://github.com/liuxingbaoyu))
>
> 🏠 Internal
>
> - babel-core
>
> - [#16820](https://redirect.github.com/babel/babel/pull/16820) Allow sync loading of ESM when --experimental-require-module ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
>
> - babel-helper-compilation-targets, babel-helper-plugin-utils, babel-preset-env
>
> - [#16858](https://redirect.github.com/babel/babel/pull/16858) Add browserslist config to external dependency ([@JLHwung](https://github.com/JLHwung))
>
> - babel-plugin-proposal-destructuring-private, babel-plugin-syntax-decimal, babel-plugin-syntax-import-reflection, babel-standalone
>
> - [#16809](https://redirect.github.com/babel/babel/pull/16809) Archive syntax-import-reflection and syntax-decimal ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
>
> - babel-generator
>
> - [#16779](https://redirect.github.com/babel/babel/pull/16779) Simplify logic for [no LineTerminator here] before nodes ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
>
> 🏃♀️ Performance
>
> - babel-plugin-transform-typescript
>
> - [#16875](https://redirect.github.com/babel/babel/pull/16875) perf: Avoid extra cloning of namespaces ([@liuxingbaoyu](https://github.com/liuxingbaoyu))
>
> - babel-types
>
> - [#16842](https://redirect.github.com/babel/babel/pull/16842) perf: Improve @babel/types builders ([@liuxingbaoyu](https://github.com/liuxingbaoyu))
> - [#16828](https://redirect.github.com/babel/babel/pull/16828) Only access BABEL_TYPES_8_BREAKING at startup ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
>
> Committers: 8
>
> - Babel Bot ([@babel-bot](https://github.com/babel-bot))
> - Dylan Piercey ([@DylanPiercey](https://github.com/DylanPiercey))
> - Huáng Jùnliàng ([@JLHwung](https://github.com/JLHwung))
> - Nicolò Ribaudo ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
> - [@liuxingbaoyu](https://github.com/liuxingbaoyu)
> - coderaiser ([@coderaiser](https://github.com/coderaiser))
> - fisker Cheung ([@fisker](https://github.com/fisker))
> - hwook ([@YuHyeonWook](https://github.com/YuHyeonWook))
>
> v7.25.6 (2024-08-29)
>
> Thanks [@j4k0xb](https://github.com/j4k0xb) for your first PR!
... (truncated)
Changelog
Sourced from [@babel/traverse's changelog](https://github.com/babel/babel/blob/main/CHANGELOG.md).
> v7.25.7 (2024-10-02)
>
> 🐛 Bug Fix
>
> - babel-helper-validator-identifier
>
> - [#16825](https://redirect.github.com/babel/babel/pull/16825) fix: update identifier to unicode 16 ([@JLHwung](https://github.com/JLHwung))
>
> - babel-traverse
>
> - [#16814](https://redirect.github.com/babel/babel/pull/16814) fix: issue with node path keys updated on unrelated paths ([@DylanPiercey](https://github.com/DylanPiercey))
>
> - babel-plugin-transform-classes
>
> - [#16797](https://redirect.github.com/babel/babel/pull/16797) Use an inclusion rather than exclusion list for super() check ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
>
> - babel-generator
>
> - [#16788](https://redirect.github.com/babel/babel/pull/16788) Fix printing of TS infer in compact mode ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
> - [#16785](https://redirect.github.com/babel/babel/pull/16785) Print TS type annotations for destructuring in assignment pattern ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
> - [#16778](https://redirect.github.com/babel/babel/pull/16778) Respect [no LineTerminator here] after nodes ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
>
> 💅 Polish
>
> - babel-types
>
> - [#16852](https://redirect.github.com/babel/babel/pull/16852) Add deprecated JSDOC for fields ([@liuxingbaoyu](https://github.com/liuxingbaoyu))
>
> 🏠 Internal
>
> - babel-core
>
> - [#16820](https://redirect.github.com/babel/babel/pull/16820) Allow sync loading of ESM when --experimental-require-module ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
>
> - babel-helper-compilation-targets, babel-helper-plugin-utils, babel-preset-env
>
> - [#16858](https://redirect.github.com/babel/babel/pull/16858) Add browserslist config to external dependency ([@JLHwung](https://github.com/JLHwung))
>
> - babel-plugin-proposal-destructuring-private, babel-plugin-syntax-decimal, babel-plugin-syntax-import-reflection, babel-standalone
>
> - [#16809](https://redirect.github.com/babel/babel/pull/16809) Archive syntax-import-reflection and syntax-decimal ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
>
> - babel-generator
>
> - [#16779](https://redirect.github.com/babel/babel/pull/16779) Simplify logic for [no LineTerminator here] before nodes ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
>
> 🏃♀️ Performance
>
> - babel-plugin-transform-typescript
>
> - [#16875](https://redirect.github.com/babel/babel/pull/16875) perf: Avoid extra cloning of namespaces ([@liuxingbaoyu](https://github.com/liuxingbaoyu))
>
> - babel-types
>
> - [#16842](https://redirect.github.com/babel/babel/pull/16842) perf: Improve @babel/types builders ([@liuxingbaoyu](https://github.com/liuxingbaoyu))
> - [#16828](https://redirect.github.com/babel/babel/pull/16828) Only access BABEL_TYPES_8_BREAKING at startup ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
>
> v7.25.6 (2024-08-29)
>
> 🐛 Bug Fix
>
> - babel-generator
>
> - [#16783](https://redirect.github.com/babel/babel/pull/16783) Properly print inner comments in TS array types ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
> - [#16775](https://redirect.github.com/babel/babel/pull/16775) fix: jsx whitespace is not properly preserved when retainLines ([@liuxingbaoyu](https://github.com/liuxingbaoyu))
>
> - babel-traverse
>
> - [#16727](https://redirect.github.com/babel/babel/pull/16727) fix: path.getAssignmentIdentifiers may be undefined ([@liuxingbaoyu](https://github.com/liuxingbaoyu))
>
> - babel-parser
>
> - [#16761](https://redirect.github.com/babel/babel/pull/16761) fix: improve static canFollowModifier checks ([@JLHwung](https://github.com/JLHwung))
>
> - babel-helpers, babel-plugin-transform-optional-chaining, babel-runtime-corejs3
>
> - [#16769](https://redirect.github.com/babel/babel/pull/16769) Only wrap functions in superPropertyGet helper ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
>
> 💅 Polish
>
> - babel-generator, babel-plugin-transform-async-to-generator, babel-plugin-transform-block-scoping, babel-plugin-transform-class-properties, babel-plugin-transform-classes, babel-plugin-transform-duplicate-named-capturing-groups-regex, babel-plugin-transform-named-capturing-groups-regex, babel-plugin-transform-react-jsx-development, babel-plugin-transform-react-jsx, babel-plugin-transform-react-pure-annotations, babel-plugin-transform-regenerator, babel-plugin-transform-runtime, babel-preset-env
>
> - [#16780](https://redirect.github.com/babel/babel/pull/16780) Do not enforce printing space between ( and comments ([@nicolo-ribaudo](https://github.com/nicolo-ribaudo))
... (truncated)
Commits
- [2533cfb](babel/babel@2533cfb) v7.25.7
- [611d958](babel/babel@611d958) [babel 8] Create TSClassImplements|TSInterfaceHeritage nodes ([#16731](https://github.com/babel/babel/tree/HEAD/packages/babel-traverse/issues/16731))
- [506bf91](babel/babel@506bf91) Remove BABEL_TYPES_8_BREAKING flag and enable it by default ([#16817](https://github.com/babel/babel/tree/HEAD/packages/babel-traverse/issues/16817))
- [9e14f7d](babel/babel@9e14f7d) chore: Enable more lint rules ([#16827](https://github.com/babel/babel/tree/HEAD/packages/babel-traverse/issues/16827))
- [e69a7e5](babel/babel@e69a7e5) fix: issue with node path keys updated on unrelated paths ([#16814](https://github.com/babel/babel/tree/HEAD/packages/babel-traverse/issues/16814))
- [7467c9d](babel/babel@7467c9d) [Babel 8] Remove some Scope methods ([#16705](https://github.com/babel/babel/tree/HEAD/packages/babel-traverse/issues/16705))
- [0a55713](babel/babel@0a55713) [Babel 8] Remove DecimalLiteral AST ([#16807](https://github.com/babel/babel/tree/HEAD/packages/babel-traverse/issues/16807))
- [69d65f1](babel/babel@69d65f1) [babel 8] Require Node.js ^18.20.0 || ^20.17.0 || >=22.8.0 ([#16800](https://github.com/babel/babel/tree/HEAD/packages/babel-traverse/issues/16800))
- [2f72b97](babel/babel@2f72b97) v7.25.6
- [faceae9](babel/babel@faceae9) fix: path.getAssignmentIdentifiers may be undefined ([#16727](https://github.com/babel/babel/tree/HEAD/packages/babel-traverse/issues/16727))
- Additional commits viewable in [compare view](https://github.com/babel/babel/commits/v7.25.7/packages/babel-traverse)
Updates @cypress/request from 2.88.5 to 3.0.5
Release notes
Sourced from [@cypress/request's releases](https://github.com/cypress-io/request/releases).
> v3.0.5
>
> [3.0.5](cypress-io/request@v3.0.4...v3.0.5) (2024-09-09)
>
> Bug Fixes
>
> - deps: update dependency form-data to v4 ([6b90580](cypress-io/request@6b90580))
>
> v3.0.4
>
> [3.0.4](cypress-io/request@v3.0.3...v3.0.4) (2024-09-05)
>
> Bug Fixes
>
> - deps: update dependency form-data to ~2.5.0 ([87b5e92](cypress-io/request@87b5e92))
>
> v3.0.3
>
> [3.0.3](cypress-io/request@v3.0.2...v3.0.3) (2024-09-05)
>
> Bug Fixes
>
> - deps: update dependency qs to v6.13.0 ([15e0900](cypress-io/request@15e0900))
>
> v3.0.2
>
> [3.0.2](cypress-io/request@v3.0.1...v3.0.2) (2024-09-05)
>
> Bug Fixes
>
> - deps: update dependency http-signature to ~1.4.0 ([675d849](cypress-io/request@675d849))
>
> v3.0.1
>
> [3.0.1](cypress-io/request@v3.0.0...v3.0.1) (2023-09-06)
>
> Bug Fixes
>
> - deps: peg qs to 6.10.4 ([fb9f625](cypress-io/request@fb9f625))
>
> v3.0.0
>
> [3.0.0](cypress-io/request@v2.88.12...v3.0.0) (2023-08-08)
>
> Features
>
> - Add allowInsecureRedirect option ([c5bcf21](cypress-io/request@c5bcf21))
>
> BREAKING CHANGES
... (truncated)
Commits
- [6acc813](cypress-io/request@6acc813) Merge pull request [#69](https://redirect.github.com/cypress-io/request/issues/69) from cypress-io/renovate/form-data-4.x
- [6b90580](cypress-io/request@6b90580) fix(deps): update dependency form-data to v4
- [411a5f4](cypress-io/request@411a5f4) Merge pull request [#67](https://redirect.github.com/cypress-io/request/issues/67) from cypress-io/renovate/circleci-node-17.x
- [4cafea9](cypress-io/request@4cafea9) chore(deps): update node.js to v17
- [d348a03](cypress-io/request@d348a03) Merge pull request [#53](https://redirect.github.com/cypress-io/request/issues/53) from cypress-io/renovate/form-data-2.x
- [0d77178](cypress-io/request@0d77178) Merge pull request [#56](https://redirect.github.com/cypress-io/request/issues/56) from cypress-io/renovate/qs-6.x
- [e54f9e3](cypress-io/request@e54f9e3) Merge pull request [#58](https://redirect.github.com/cypress-io/request/issues/58) from cypress-io/renovate/cimg-node-22.x
- [cdcc481](cypress-io/request@cdcc481) chore(deps): update node.js to v22
- [15e0900](cypress-io/request@15e0900) fix(deps): update dependency qs to v6.13.0
- [fe3d630](cypress-io/request@fe3d630) Merge pull request [#52](https://redirect.github.com/cypress-io/request/issues/52) from cypress-io/renovate/cimg-node-18.x
- Additional commits viewable in [compare view](cypress-io/request@v2.88.5...v3.0.5)
Updates cypress from 8.7.0 to 13.15.0
Release notes
Sourced from [cypress's releases](https://github.com/cypress-io/cypress/releases).
> v13.15.0
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-15-0
>
> v13.14.2
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-14-2
>
> v13.14.1
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-14-1
>
> v13.14.0
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-14-0
>
> v13.13.3
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-13-3
>
> v13.13.2
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-13-2
>
> v13.13.1
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-13-1
>
> v13.13.0
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-13-0
>
> v13.12.0
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-12-0
>
> v13.11.0
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-11-0
>
> v13.10.0
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-10-0
>
> v13.9.0
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-9-0
>
> v13.8.1
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-8-1
>
> v13.8.0
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-8-0
>
> v13.7.3
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-7-3
>
> v13.7.2
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-7-2
>
> v13.7.1
>
> Changelog: https://docs.cypress.io/guides/references/changelog#13-7-1
... (truncated)
Commits
- [5afb929](cypress-io/cypress@5afb929) chore: Update Chrome (stable) to 129.0.6668.70 ([#30279](https://redirect.github.com/cypress-io/cypress/issues/30279))
- [0d2248c](cypress-io/cypress@0d2248c) chore: release 13.15.0 ([#30292](https://redirect.github.com/cypress-io/cypress/issues/30292))
- [8d71cc4](cypress-io/cypress@8d71cc4) chore: Update changelog to 'addresses' rather than addressed in ([#30275](https://redirect.github.com/cypress-io/cypress/issues/30275))
- [1d84532](cypress-io/cypress@1d84532) feat: Improve UX when Test Replay upload fails due to slow upload ([#30235](https://redirect.github.com/cypress-io/cypress/issues/30235))
- [fbe51fc](cypress-io/cypress@fbe51fc) chore: fix net_stubbing flake ([#30276](https://redirect.github.com/cypress-io/cypress/issues/30276))
- [88900e7](cypress-io/cypress@88900e7) chore: update tests to skip the welcome screen on launchpad tests. ([#30240](https://redirect.github.com/cypress-io/cypress/issues/30240))
- [954cc50](cypress-io/cypress@954cc50) chore: [Snyk] Security upgrade express from 4.19.2 to 4.21.0 in packages/grap...
- [3ff88b7](cypress-io/cypress@3ff88b7) chore: Fix double bugfixes headings in changelog ([#30268](https://redirect.github.com/cypress-io/cypress/issues/30268))
- [0bdf495](cypress-io/cypress@0bdf495) chore: Update Chrome (beta) to 130.0.6723.6 ([#30256](https://redirect.github.com/cypress-io/cypress/issues/30256))
- [f7946de](cypress-io/cypress@f7946de) docs: update guides/building-release-artifacts.md ([#30257](https://redirect.github.com/cypress-io/cypress/issues/30257))
- Additional commits viewable in [compare view](cypress-io/cypress@v8.7.0...v13.15.0)
Maintainer changes
This version was pushed to npm by [cypress-npm-publisher](https://www.npmjs.com/~cypress-npm-publisher), a new releaser for cypress since your current version.
Removes ansi-html
Updates @angular-devkit/build-angular from 12.1.4 to 12.2.18
Changelog
Sourced from [@angular-devkit/build-angular's changelog](https://github.com/angular/angular-cli/blob/12.2.18/CHANGELOG.md).
> 12.2.18 (2022-07-21)
>
> @angular-devkit/build-angular
>
> Commit Type Description
> [4d723ca95](angular/angular-cli@4d723ca) fix update terser to address [CVE-2022-25858](https://github.com/advisories/GHSA-4wf5-vphf-c2xc)
>
> Special Thanks
>
> Alan Agius, Joey Perrott and Paul Gschwendtner
>
> 12.2.17 (2022-03-31)
>
> @angular-devkit/architect-cli
>
> Commit Type Description
> [ccb0f95f3](angular/angular-cli@ccb0f95) fix update minimist to 1.2.6
>
> @angular-devkit/schematics-cli
>
> Commit Type Description
> [abcdf4df2](angular/angular-cli@abcdf4d) fix update minimist to 1.2.6
>
> @angular-devkit/benchmark
>
> Commit Type Description
> [2656a330e](angular/angular-cli@2656a33) fix update minimist to 1.2.6
>
> Special Thanks
>
> Alan Agius
>
> 12.2.16 (2022-01-31)
>
> @angular-devkit/build-angular
>
> Commit Type Description
... (truncated)
Commits
- [455848f](angular/angular-cli@455848f) release: cut the v12.2.18 release
- [ed08d83](angular/angular-cli@ed08d83) test: use correct version of material
- [4d723ca](angular/angular-cli@4d723ca) fix(@angular-devkit/build-angular): update terser to address [CVE-2022-25858](https://github.com/advisories/GHSA-4wf5-vphf-c2xc)
- [7e33d1e](angular/angular-cli@7e33d1e) test: remove material-design-icons e2e test
- [789c4e3](angular/angular-cli@789c4e3) ci: add nightly CI run for 12.2.x branch
- [b61724e](angular/angular-cli@b61724e) build: update saucelabs key
- [6723a3c](angular/angular-cli@6723a3c) build: changes for primary branch rename to main.
- [60a756f](angular/angular-cli@60a756f) build: preparation for primary branch rename in the Angular repos
- [98b0867](angular/angular-cli@98b0867) release: cut the v12.2.17 release
- [2da68bf](angular/angular-cli@2da68bf) build: update minimist to 1.2.6
- Additional commits viewable in [compare view](angular/angular-cli@12.1.4...12.2.18)
Updates ansi-regex from 5.0.0 to 5.0.1
Release notes
Sourced from [ansi-regex's releases](https://github.com/chalk/ansi-regex/releases).
> v5.0.1
>
> Fixes (backport of 6.0.1 to v5)
>
> This is a backport of the minor ReDos vulnerability in ansi-regex@<6.0.1, as requested in [#38](https://redirect.github.com/chalk/ansi-regex/issues/38).
>
> - Fix [ReDoS](https://en.wikipedia.org/wiki/ReDoS) in certain cases ([#37](https://redirect.github.com/chalk/ansi-regex/issues/37)) You are only really affected if you run the regex on untrusted user input in a server context, which it's very unlikely anyone is doing, since this regex is mainly used in command-line tools.
>
> [CVE-2021-3807](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3807)
>
> https://github.com/chalk/ansi-regex/compare/v5.0.0..v5.0.1
>
> Thank you [@yetingli](https://github.com/yetingli) for the patch and reproduction case!
Commits
- [a9babce](chalk/ansi-regex@a9babce) 5.0.1
- [4657833](chalk/ansi-regex@4657833) fix incorrect format
- [c3c0b3f](chalk/ansi-regex@c3c0b3f) Fix potential ReDoS ([#37](https://redirect.github.com/chalk/ansi-regex/issues/37))
- [178363b](chalk/ansi-regex@178363b) Move to GitHub Actions ([#35](https://redirect.github.com/chalk/ansi-regex/issues/35))
- [0755e66](chalk/ansi-regex@0755e66) Add [@Qix](https://github.com/Qix)- to funding.yml
- See full diff in [compare view](chalk/ansi-regex@v5.0.0...v5.0.1)
Updates ansi-regex from 3.0.0 to 5.0.1
Release notes
Sourced from [ansi-regex's releases](https://github.com/chalk/ansi-regex/releases).
> v5.0.1
>
> Fixes (backport of 6.0.1 to v5)
>
> This is a backport of the minor ReDos vulnerability in ansi-regex@<6.0.1, as requested in [#38](https://redirect.github.com/chalk/ansi-regex/issues/38).
>
> - Fix [ReDoS](https://en.wikipedia.org/wiki/ReDoS) in certain cases ([#37](https://redirect.github.com/chalk/ansi-regex/issues/37)) You are only really affected if you run the regex on untrusted user input in a server context, which it's very unlikely anyone is doing, since this regex is mainly used in command-line tools.
>
> [CVE-2021-3807](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3807)
>
> https://github.com/chalk/ansi-regex/compare/v5.0.0..v5.0.1
>
> Thank you [@yetingli](https://github.com/yetingli) for the patch and reproduction case!
Commits
- [a9babce](chalk/ansi-regex@a9babce) 5.0.1
- [4657833](chalk/ansi-regex@4657833) fix incorrect format
- [c3c0b3f](chalk/ansi-regex@c3c0b3f) Fix potential ReDoS ([#37](https://redirect.github.com/chalk/ansi-regex/issues/37))
- [178363b](chalk/ansi-regex@178363b) Move to GitHub Actions ([#35](https://redirect.github.com/chalk/ansi-regex/issues/35))
- [0755e66](chalk/ansi-regex@0755e66) Add [@Qix](https://github.com/Qix)- to funding.yml
- See full diff in [compare view](chalk/ansi-regex@v5.0.0...v5.0.1)
Updates body-parser from 1.19.0 to 1.20.3
Release notes
Sourced from [body-parser's releases](https://github.com/expressjs/body-parser/releases).
> 1.20.3
>
> What's Changed
>
> Important
>
> - deps: ***@***.***
> - add depth option to customize the depth level in the parser
> - IMPORTANT: The default depth level for parsing URL-encoded data is now 32 (previously was Infinity). [Documentation](https://github.com/expressjs/body-parser/blob/17529513673e39ba79886a7ce3363320cf1c0c50/README.md#depth)
>
> Other changes
>
> - chore: add support for OSSF scorecard reporting by [@inigomarquinez](https://github.com/inigomarquinez) in [expressjs/body-parser#522](https://redirect.github.com/expressjs/body-parser/pull/522)
> - ci: fix errors in ci github action for node 8 and 9 by [@inigomarquinez](https://github.com/inigomarquinez) in [expressjs/body-parser#523](https://redirect.github.com/expressjs/body-parser/pull/523)
> - fix: pin to ***@***.*** by [@wesleytodd](https://github.com/wesleytodd) in [expressjs/body-parser#527](https://redirect.github.com/expressjs/body-parser/pull/527)
> - deps: ***@***.*** by [@melikhov-dev](https://github.com/melikhov-dev) in [expressjs/body-parser#521](https://redirect.github.com/expressjs/body-parser/pull/521)
> - Add OSSF Scorecard badge by [@bjohansebas](https://github.com/bjohansebas) in [expressjs/body-parser#531](https://redirect.github.com/expressjs/body-parser/pull/531)
> - Linter by [@UlisesGascon](https://github.com/UlisesGascon) in [expressjs/body-parser#534](https://redirect.github.com/expressjs/body-parser/pull/534)
> - Release: 1.20.3 by [@UlisesGascon](https://github.com/UlisesGascon) in [expressjs/body-parser#535](https://redirect.github.com/expressjs/body-parser/pull/535)
>
> New Contributors
>
> - [@inigomarquinez](https://github.com/inigomarquinez) made their first contribution in [expressjs/body-parser#522](https://redirect.github.com/expressjs/body-parser/pull/522)
> - [@melikhov-dev](https://github.com/melikhov-dev) made their first contribution in [expressjs/body-parser#521](https://redirect.github.com/expressjs/body-parser/pull/521)
> - [@bjohansebas](https://github.com/bjohansebas) made their first contribution in [expressjs/body-parser#531](https://redirect.github.com/expressjs/body-parser/pull/531)
> - [@UlisesGascon](https://github.com/UlisesGascon) made their first contribution in [expressjs/body-parser#534](https://redirect.github.com/expressjs/body-parser/pull/534)
>
> Full Changelog: ***@***.***(expressjs/body-parser@1.20.2...1.20.3)
>
> 1.20.2
>
> - Fix strict json error message on Node.js 19+
> - deps: content-type@~1.0.5
>
> - perf: skip value escaping when unnecessary
>
> - deps: ***@***.***
>
> 1.20.1
>
> - deps: ***@***.***
> - perf: remove unnecessary object clone
>
> 1.20.0
>
> - Fix error message for json parse whitespace in strict
> - Fix internal error when inflated body exceeds limit
> - Prevent loss of async hooks context
> - Prevent hanging when request already read
> - deps: ***@***.***
>
> - Replace internal eval usage with Function constructor
> - Use instance methods on process to check for listeners
>
> - deps: ***@***.***
>
> - deps: ***@***.***
> - deps: ***@***.***
>
> - deps: ***@***.***
> - deps: ***@***.***
... (truncated)
Changelog
Sourced from [body-parser's changelog](https://github.com/expressjs/body-parser/blob/master/HISTORY.md).
> 1.20.3 / 2024-09-10
>
> - deps: ***@***.***
> - add depth option to customize the depth level in the parser
> - IMPORTANT: The default depth level for parsing URL-encoded data is now 32 (previously was Infinity)
>
> 1.20.2 / 2023-02-21
>
> - Fix strict json error message on Node.js 19+
> - deps: content-type@~1.0.5
>
> - perf: skip value escaping when unnecessary
>
> - deps: ***@***.***
>
> 1.20.1 / 2022-10-06
>
> - deps: ***@***.***
> - perf: remove unnecessary object clone
>
> 1.20.0 / 2022-04-02
>
> - Fix error message for json parse whitespace in strict
> - Fix internal error when inflated body exceeds limit
> - Prevent loss of async hooks context
> - Prevent hanging when request already read
> - deps: ***@***.***
>
> - Replace internal eval usage with Function constructor
> - Use instance methods on process to check for listeners
>
> - deps: ***@***.***
>
> - deps: ***@***.***
> - deps: ***@***.***
>
> - deps: ***@***.***
> - deps: ***@***.***
> - deps: ***@***.***
>
> - deps: ***@***.***
>
> 1.19.2 / 2022-02-15
>
> - deps: ***@***.***
> - deps: ***@***.***
>
> - Fix handling of __proto__ keys
>
> - deps: ***@***.***
>
> - deps: ***@***.***
>
> 1.19.1 / 2021-12-10
... (truncated)
Commits
- [1752951](expressjs/body-parser@1752951) 1.20.3
- [39744cf](expressjs/body-parser@39744cf) chore: linter ([#534](https://redirect.github.com/expressjs/body-parser/issues/534))
- [b2695c4](expressjs/body-parser@b2695c4) Merge commit from fork
- [ade0f3f](expressjs/body-parser@ade0f3f) add scorecard to readme ([#531](https://redirect.github.com/expressjs/body-parser/issues/531))
- [99a1bd6](expressjs/body-parser@99a1bd6) deps: ***@***.*** ([#521](https://redirect.github.com/expressjs/body-parser/issues/521))
- [9478591](expressjs/body-parser@9478591) fix: pin to ***@***.***
- [83db46a](expressjs/body-parser@83db46a) ci: fix errors in ci github action for node 8 and 9 ([#523](https://redirect.github.com/expressjs/body-parser/issues/523))
- [9d4e212](expressjs/body-parser@9d4e212) chore: add support for OSSF scorecard reporting ([#522](https://redirect.github.com/expressjs/body-parser/issues/522))
- [ee91374](expressjs/body-parser@ee91374) 1.20.2
- [368a93a](expressjs/body-parser@368a93a) Fix strict json error message on Node.js 19+
- Additional commits viewable in [compare view](expressjs/body-parser@1.19.0...1.20.3)
Maintainer changes
This version was pushed to npm by [ulisesgascon](https://www.npmjs.com/~ulisesgascon), a new releaser for body-parser since your current version.
Updates braces from 3.0.2 to 3.0.3
Commits
- [74b2db2](micromatch/braces@74b2db2) 3.0.3
- [88f1429](micromatch/braces@88f1429) update eslint. lint, fix unit tests.
- [415d660](micromatch/braces@415d660) Snyk js braces 6838727 ([#40](https://redirect.github.com/micromatch/braces/issues/40))
- [190510f](micromatch/braces@190510f) fix tests, skip 1 test in test/braces.expand
- [716eb9f](micromatch/braces@716eb9f) readme bump
- [a5851e5](micromatch/braces@a5851e5) Merge pull request [#37](https://redirect.github.com/micromatch/braces/issues/37) from coderaiser/fix/vulnerability
- [2092bd1](micromatch/braces@2092bd1) feature: braces: add maxSymbols (https://github.com/micromatch/braces/issues/...
- [9f5b4cf](micromatch/braces@9f5b4cf) fix: vulnerability (https://security.snyk.io/vuln/SNYK-JS-BRACES-6838727)
- [98414f9](micromatch/braces@98414f9) remove funding file
- [665ab5d](micromatch/braces@665ab5d) update keepEscaping doc ([#27](https://redirect.github.com/micromatch/braces/issues/27))
- Additional commits viewable in [compare view](micromatch/braces@3.0.2...3.0.3)
Updates @angular-devkit/build-angular from 12.2.18 to 18.2.7
Changelog
Sourced from [@angular-devkit/build-angular's changelog](https://github.com/angular/angular-cli/blob/12.2.18/CHANGELOG.md).
> 12.2.18 (2022-07-21)
>
> @angular-devkit/build-angular
>
> Commit Type Description
> [4d723ca95](angular/angular-cli@4d723ca) fix update terser to address [CVE-2022-25858](https://github.com/advisories/GHSA-4wf5-vphf-c2xc)
>
> Special Thanks
>
> Alan Agius, Joey Perrott and Paul Gschwendtner
>
> 12.2.17 (2022-03-31)
>
> @angular-devkit/architect-cli
>
> Commit Type Description
> [ccb0f95f3](angular/angular-cli@ccb0f95) fix update minimist to 1.2.6
>
> @angular-devkit/schematics-cli
>
> Commit Type Description
> [abcdf4df2](angular/angular-cli@abcdf4d) fix update minimist to 1.2.6
>
> @angular-devkit/benchmark
>
> Commit Type Description
> [2656a330e](angular/angular-cli@2656a33) fix update minimist to 1.2.6
>
> Special Thanks
>
> Alan Agius
>
> 12.2.16 (2022-01-31)
>
> @angular-devkit/build-angular
>
> Commit Type Description
... (truncated)
Commits
- [455848f](angular/angular-cli@455848f) release: cut the v12.2.18 release
- [ed08d83](angular/angular-cli@ed08d83) test: use correct version of material
- [4d723ca](angular/angular-cli@4d723ca) fix(@angular-devkit/build-angular): update terser to address [CVE-2022-25858](https://github.com/advisories/GHSA-4wf5-vphf-c2xc)
- [7e33d1e](angular/angular-cli@7e33d1e) test: remove material-design-icons e2e test
- [789c4e3](angular/angular-cli@789c4e3) ci: add nightly CI run for 12.2.x branch
- [b61724e](angular/angular-cli@b61724e) build: update saucelabs key
- [6723a3c](angular/angular-cli@6723a3c) build: changes for primary branch rename to main.
- [60a756f](angular/angular-cli@60a756f) build: preparation for primary branch rename in the Angular repos
- [98b0867](angular/angular-cli@98b0867) release: cut the v12.2.17 release
- [2da68bf](angular/angular-cli@2da68bf) build: update minimist to 1.2.6
- Additional commits viewable in [compare view](angular/angular-cli@12.1.4...12.2.18)
Updates cookie from 0.4.0 to 0.4.1
Release notes
Sourced from [cookie's releases](https://github.com/jshttp/cookie/releases).
> 0.4.1
>
> - Fix maxAge option to reject invalid values
Changelog
Sourced from [cookie's changelog](https://github.com/jshttp/cookie/blob/v0.4.1/HISTORY.md).
> 0.4.1 / 2020-04-21
>
> - Fix maxAge option to reject invalid values
Commits
- [b22458d](jshttp/cookie@b22458d) 0.4.1
- [fa5fe95](jshttp/cookie@fa5fe95) build: fix typo in Travis CI directive
- [2436f3f](jshttp/cookie@2436f3f) build: use nyc for code coverage
- [08e98ee](jshttp/cookie@08e98ee) build: ***@***.***
- [80372a4](jshttp/cookie@80372a4) build: remove deprecated Travis CI directive
- [e248786](jshttp/cookie@e248786) Fix maxAge option to reject invalid values
- [7e1398f](jshttp/cookie@7e1398f) build: ***@***.***
- [cb5746d](jshttp/cookie@cb5746d) build: ***@***.***
- [9b4abbd](jshttp/cookie@9b4abbd) build: ***@***.***
- [004b693](jshttp/cookie@004b693) build: ***@***.***
- Additional commits viewable in [compare view](jshttp/cookie@v0.4.0...v0.4.1)
Updates engine.io from 4.1.1 to 6.6.1
Release notes
Sourced from [engine.io's releases](https://github.com/socketio/socket.io/releases).
> ***@***.***
>
> Bug Fixes
>
> - discard all pending packets when the server is closed ([923a12e](socketio/socket.io@923a12e))
> - uws: prevent the client from upgrading twice ([d5095fe](socketio/socket.io@d5095fe))
>
> Dependencies
>
> - [ws@~8.17.1](https://github.com/websockets/ws/releases/tag/8.17.1) (no change)
>
> ***@***.***
>
> Bug Fixes
>
> - move 'offline' event listener at the top ([8a2f5a3](socketio/socket.io@8a2f5a3))
> - only remove the event listener if it exists ([9b3c9ab](socketio/socket.io@9b3c9ab))
> - do not send a packet on an expired connection ([#5134](https://redirect.github.com/socketio/socket.io/issues/5134)) ([8adcfbf](socketio/socket.io@8adcfbf))
>
> Performance Improvements
>
> - do not reset the heartbeat timer on each packet ([7a23dde](socketio/socket.io@7a23dde))
>
> Dependencies
>
> - [ws@~8.17.1](https://github.com/websockets/ws/releases/tag/8.17.1) (no change)
Commits
- [2b60df1](socketio/socket.io@2b60df1) chore(release): ***@***.***
- [d4cb375](socketio/socket.io@d4cb375) ci: ignore tests when publishing to npm
- [c251ae7](socketio/socket.io@c251ae7) chore(release): ***@***.***
- [8a2f5a3](socketio/socket.io@8a2f5a3) fix(eio-client): move 'offline' event listener at the top
- [b04fa64](socketio/socket.io@b04fa64) fix(sio): allow to join a room in a middleware (uws)
- [7085f0e](socketio/socket.io@7085f0e) refactor(sio-client): mangle private attributes
- [4f66708](socketio/socket.io@4f66708) chore(sio-client): use babel loose mode when transpiling classes
- [1a95db2](socketio/socket.io@1a95db2) chore(sio-client): add a script to compute the bundle size
-
---------------------------------------------------------------
You can view, comment on, or merge this pull request online at:
#9
Commit Summary
- [463fc20](463fc20) Bump the npm_and_yarn group across 1 directory with 39 updates
File Changes
([3 files](https://github.com/reposman33/ng-12-app/pull/9/files))
- M [package-lock.json](https://github.com/reposman33/ng-12-app/pull/9/files#diff-053150b640a7ce75eff69d1a22cae7f0f94ad64ce9a855db544dda0929316519) (21114)
- M [package.json](https://github.com/reposman33/ng-12-app/pull/9/files#diff-7ae45ad102eab3b6d7e7896acd08c427a9b25b346470d7bc6507b6481575d519) (8)
- M [yarn.lock](https://github.com/reposman33/ng-12-app/pull/9/files#diff-51e4f558fae534656963876761c95b83b6ef5da5103c4adef6768219ed76c2de) (9414)
Patch Links:
- https://github.com/reposman33/ng-12-app/pull/9.patch
- https://github.com/reposman33/ng-12-app/pull/9.diff
—
Reply to this email directly, [view it on GitHub](#9), or [unsubscribe](https://github.com/notifications/unsubscribe-auth/AAYNOZVUL3GUHKCUFJJU4L3Z2NHMXAVCNFSM6AAAAABPRHNZTOVHI2DSMVQWIX3LMV43ASLTON2WKOZSGU3TCOJWGA3TONA).
You are receiving this because you are subscribed to this thread.Message ID: ***@***.***>
|
Looks like this PR is already up-to-date with master! If you'd still like to recreate it from scratch, overwriting any edits, you can request |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the npm_and_yarn group with 17 updates in the / directory:
6.3.4
6.3.16
7.15.0
7.25.7
2.88.5
3.0.5
8.7.0
13.15.0
0.0.7
removed
12.1.4
12.2.18
5.0.0
5.0.1
3.0.0
5.0.1
1.19.0
1.20.3
3.0.2
3.0.3
12.2.18
18.2.7
1.14.1
1.15.9
4.1.0
4.1.1
3.0.4
3.1.2
1.2.5
1.2.8
6.5.2
6.13.0
6.3.0
7.6.3
7.3.5
7.6.3
12.1.4
18.2.7
1.5.3
1.5.10
Updates
karma
from 6.3.4 to 6.3.16Release notes
Sourced from karma's releases.
... (truncated)
Changelog
Sourced from karma's changelog.
... (truncated)
Commits
ab4b328
chore(release): 6.3.16 [skip ci]ff7edbb
fix(security): mitigate the "Open Redirect Vulnerability"c1befa0
chore(release): 6.3.15 [skip ci]d9dade2
fix(helper): make mkdirIfNotExists helper resilient to concurrent calls653c762
ci: prevent duplicate CI tasks on creating a PRc97e562
chore(release): 6.3.14 [skip ci]91d5acd
fix: remove string template from client code69cfc76
fix: warn whensingleRun
andautoWatch
arefalse
839578c
fix(security): remove XSS vulnerability inreturnUrl
query paramdb53785
chore(release): 6.3.13 [skip ci]Updates
@babel/traverse
from 7.15.0 to 7.25.7Release notes
Sourced from
@babel/traverse
's releases.... (truncated)
Changelog
Sourced from
@babel/traverse
's changelog.... (truncated)
Commits
2533cfb
v7.25.7611d958
[babel 8] CreateTSClassImplements|TSInterfaceHeritage
nodes (#16731)506bf91
RemoveBABEL_TYPES_8_BREAKING
flag and enable it by default (#16817)9e14f7d
chore: Enable more lint rules (#16827)e69a7e5
fix: issue with node path keys updated on unrelated paths (#16814)7467c9d
[Babel 8] Remove someScope
methods (#16705)0a55713
[Babel 8] RemoveDecimalLiteral
AST (#16807)69d65f1
[babel 8] Require Node.js^18.20.0 || ^20.17.0 || >=22.8.0
(#16800)2f72b97
v7.25.6faceae9
fix:path.getAssignmentIdentifiers
may beundefined
(#16727)Updates
@cypress/request
from 2.88.5 to 3.0.5Release notes
Sourced from
@cypress/request
's releases.... (truncated)
Commits
6acc813
Merge pull request #69 from cypress-io/renovate/form-data-4.x6b90580
fix(deps): update dependency form-data to v4411a5f4
Merge pull request #67 from cypress-io/renovate/circleci-node-17.x4cafea9
chore(deps): update node.js to v17d348a03
Merge pull request #53 from cypress-io/renovate/form-data-2.x0d77178
Merge pull request #56 from cypress-io/renovate/qs-6.xe54f9e3
Merge pull request #58 from cypress-io/renovate/cimg-node-22.xcdcc481
chore(deps): update node.js to v2215e0900
fix(deps): update dependency qs to v6.13.0fe3d630
Merge pull request #52 from cypress-io/renovate/cimg-node-18.xUpdates
cypress
from 8.7.0 to 13.15.0Release notes
Sourced from cypress's releases.
... (truncated)
Commits
5afb929
chore: Update Chrome (stable) to 129.0.6668.70 (#30279)0d2248c
chore: release 13.15.0 (#30292)8d71cc4
chore: Update changelog to 'addresses' rather than addressed in (#30275)1d84532
feat: Improve UX when Test Replay upload fails due to slow upload (#30235)fbe51fc
chore: fix net_stubbing flake (#30276)88900e7
chore: update tests to skip the welcome screen on launchpad tests. (#30240)954cc50
chore: [Snyk] Security upgrade express from 4.19.2 to 4.21.0 in packages/grap...3ff88b7
chore: Fix double bugfixes headings in changelog (#30268)0bdf495
chore: Update Chrome (beta) to 130.0.6723.6 (#30256)f7946de
docs: update guides/building-release-artifacts.md (#30257)Maintainer changes
This version was pushed to npm by cypress-npm-publisher, a new releaser for cypress since your current version.
Removes
ansi-html
Updates
@angular-devkit/build-angular
from 12.1.4 to 12.2.18Changelog
Sourced from
@angular-devkit/build-angular
's changelog.... (truncated)
Commits
455848f
release: cut the v12.2.18 releaseed08d83
test: use correct version of material4d723ca
fix(@angular-devkit/build-angular
): update terser to address CVE-2022-258587e33d1e
test: remove material-design-icons e2e test789c4e3
ci: add nightly CI run for 12.2.x branchb61724e
build: update saucelabs key6723a3c
build: changes for primary branch rename tomain
.60a756f
build: preparation for primary branch rename in the Angular repos98b0867
release: cut the v12.2.17 release2da68bf
build: updateminimist
to1.2.6
Updates
ansi-regex
from 5.0.0 to 5.0.1Release notes
Sourced from ansi-regex's releases.
Commits
a9babce
5.0.14657833
fix incorrect formatc3c0b3f
Fix potential ReDoS (#37)178363b
Move to GitHub Actions (#35)0755e66
Add@Qix
- to funding.ymlUpdates
ansi-regex
from 3.0.0 to 5.0.1Release notes
Sourced from ansi-regex's releases.
Commits
a9babce
5.0.14657833
fix incorrect formatc3c0b3f
Fix potential ReDoS (#37)178363b
Move to GitHub Actions (#35)0755e66
Add@Qix
- to funding.ymlUpdates
body-parser
from 1.19.0 to 1.20.3Release notes
Sourced from body-parser's releases.
... (truncated)
Changelog
Sourced from body-parser's changelog.
... (truncated)
Commits
1752951
1.20.339744cf
chore: linter (#534)b2695c4
Merge commit from forkade0f3f
add scorecard to readme (#531)99a1bd6
deps: [email protected] (#521)9478591
fix: pin to [email protected]83db46a
ci: fix errors in ci github action for node 8 and 9 (#523)9d4e212
chore: add support for OSSF scorecard reporting (#522)ee91374
1.20.2368a93a
Fix strict json error message on Node.js 19+Maintainer changes
This version was pushed to npm by ulisesgascon, a new releaser for body-parser since your current version.
Updates
braces
from 3.0.2 to 3.0.3Commits
74b2db2
3.0.388f1429
update eslint. lint, fix unit tests.415d660
Snyk js braces 6838727 (#40)190510f
fix tests, skip 1 test in test/braces.expand716eb9f
readme bumpa5851e5
Merge pull request #37 from coderaiser/fix/vulnerability2092bd1
feature: braces: add maxSymbols (https://github.com/micromatch/braces/issues/...9f5b4cf
fix: vulnerability (https://security.snyk.io/vuln/SNYK-JS-BRACES-6838727)98414f9
remove funding file665ab5d
update keepEscaping doc (#27)Updates
@angular-devkit/build-angular
from 12.2.18 to 18.2.7Changelog
Sourced from
@angular-devkit/build-angular
's changelog.... (truncated)
Commits
455848f
release: cut the v12.2.18 releaseed08d83
test: use correct version of material4d723ca
fix(@angular-devkit/build-angular
): update terser to address CVE-2022-258587e33d1e
test: remove material-design-icons e2e test789c4e3
ci: add nightly CI run for 12.2.x branchb61724e
build: update saucelabs key6723a3c
build: changes for primary branch rename tomain
.60a756f
build: preparation for primary branch rename in the Angular repos98b0867
release: cut the v12.2.17 release2da68bf
build: updateminimist
to1.2.6
Updates
cookie
from 0.4.0 to 0.4.1Release notes
Sourced from cookie's releases.
Changelog
Sourced from cookie's changelog.
Commits
b22458d
0.4.1fa5fe95
build: fix typo in Travis CI directive2436f3f
build: use nyc for code coverage08e98ee
build: [email protected]80372a4
build: remove deprecated Travis CI directivee248786
Fix maxAge option to reject invalid values7e1398f
build: [email protected]cb5746d
build: [email protected]9b4abbd
build: [email protected]004b693
build: [email protected]Updates
engine.io
from 4.1.1 to 6.6.1Release notes
Sourced from engine.io's releases.
Commits
2b60df1
chore(release): [email protected]d4cb375
ci: ignore tests when publishing to npmc251ae7
chore(release): [email protected]8a2f5a3
fix(eio-client): move 'offline' event listener at the topb04fa64
fix(sio): allow to join a room in a middleware (uws)7085f0e
refactor(sio-client): mangle private attributes4f66708
chore(sio-client): use babel loose mode when transpiling classes1a95db2
chore(sio-client): add a script to compute the bundle size