-
Notifications
You must be signed in to change notification settings - Fork 10
[renovate] Update all dependencies #28
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Open
renovate
wants to merge
1
commit into
master
Choose a base branch
from
renovate/all-dependencies
base: master
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Open
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
68ef54a to
e7814be
Compare
e7814be to
051a1b3
Compare
40b7f5a to
fb1ef8b
Compare
fb1ef8b to
5db33e5
Compare
57a97b6 to
d40185b
Compare
dea193a to
9357723
Compare
9357723 to
0cfde43
Compare
0cfde43 to
2782be9
Compare
2782be9 to
e2893f0
Compare
e2893f0 to
73ffe2b
Compare
73ffe2b to
be0e7ae
Compare
d63512a to
9bae7b0
Compare
83eb2b8 to
efc1ab2
Compare
efc1ab2 to
988df23
Compare
03270fd to
52cef70
Compare
9210ca8 to
3a88487
Compare
3a88487 to
7b1b4a0
Compare
7b1b4a0 to
65bb563
Compare
65bb563 to
6581079
Compare
717d53c to
9d6c2bd
Compare
9d6c2bd to
74baae6
Compare
74baae6 to
d200092
Compare
d200092 to
5830e26
Compare
1631700 to
75d9c62
Compare
75d9c62 to
bc9d581
Compare
bc9d581 to
4667272
Compare
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
^9.0.0→^9.0.1^7.1.0→^7.1.3^4.3.4→^4.5.0^7.23.0→^7.32.0^5.0.0→^5.0.3^0.5.0-rcv.44→^0.5.9^6.1.0→^6.2.0^8.3.2→^8.4.016→16.20.214→14.21.319→19.0.5^14.0.0→^14.0.2Release Notes
semantic-release/git (@semantic-release/git)
v9.0.1Compare Source
Bug Fixes
semantic-release/npm (@semantic-release/npm)
v7.1.3Compare Source
Bug Fixes
v7.1.2Compare Source
Bug Fixes
v7.1.1Compare Source
Bug Fixes
chaijs/chai (chai)
v4.5.0Compare Source
1a36d35What's Changed
Full Changelog: chaijs/chai@v4.4.1...v4.5.0
v4.4.1Compare Source
What's Changed
??for node compat by @43081j in #1574Full Changelog: chaijs/chai@v4.4.0...v4.4.1
v4.4.0Compare Source
What's Changed
Full Changelog: chaijs/chai@v4.3.10...v4.4.0
v4.3.10Compare Source
This release simply bumps all dependencies to their latest non-breaking versions.
What's Changed
Full Changelog: chaijs/chai@v4.3.9...v4.3.10
v4.3.9Compare Source
Upgrade dependencies.
This release upgrades dependencies to address CVE-2023-43646 where a large function name can cause "catastrophic backtracking" (aka ReDOS attack) which can cause the test suite to hang.
Full Changelog: chaijs/chai@v4.3.8...v4.3.9
v4.3.8Compare Source
What's Changed
New Contributors
Full Changelog: chaijs/chai@v4.3.7...v4.3.8
v4.3.7Compare Source
What's Changed
Full Changelog: chaijs/chai@v4.3.6...v4.3.7
v4.3.6Compare Source
Update loupe to 2.3.1
v4.3.5Compare Source
fca5bb1747eb4e022c2fa5276af6c8a4e00eslint/eslint (eslint)
v7.32.0Compare Source
3c78a7bChore: Adopteslint-plugin/prefer-message-idsrule internally (#14841) (Bryan Mishkin)faecf56Update: change reporting location forcurlyrule (refs #12334) (#14766) (Nitin Kumar)d7dc07aFix: ignore lines with empty elements (fixes #12756) (#14837) (Soufiane Boutahlil)1bfbefdNew: Exit on fatal error (fixes #13711) (#14730) (Antonios Katopodis)ed007c8Chore: Simplify internalno-invalid-metarule (#14842) (Bryan Mishkin)d53d906Docs: Prepare data for website to indicate rules with suggestions (#14830) (Bryan Mishkin)d28f2ffDocs: Reference eslint-config-eslint to avoid potential for staleness (#14805) (Brett Zamir)8be8a36Chore: Adopteslint-plugin/require-meta-docs-urlrule internally (#14823) (Bryan Mishkin)f9c164fDocs: New syntax issue template (#14826) (Nicholas C. Zakas)eba0c45Chore: assertions on reporting loc inunicode-bom(refs #12334) (#14809) (Nitin Kumar)ed945bdDocs: fix multiple broken links (#14833) (Sam Chen)60df44cChore: useactions/setup-node@v2(#14816) (Nitin Kumar)6641d88Docs: Update README team and sponsors (ESLint Jenkins)v7.31.0Compare Source
efdbb12Upgrade: @eslint/eslintrc to v0.4.3 (#14808) (Brandon Mills)a96b05fUpdate: add end location to report inconsistent-return(refs #12334) (#14798) (Nitin Kumar)e0e8e30Docs: update BUG_REPORT template (#14787) (Nitin Kumar)39115c8Docs: provide more context to no-eq-null (#14801) (gfyoung)9a3c73cDocs: fix a broken link (#14790) (Sam Chen)ddffa8aUpdate: Indicating the operator in question (#14764) (Paul Smith)bba714cUpdate: Clarifying what changes need to be made in no-mixed-operators (#14765) (Paul Smith)b0d22e3Docs: Mention benefit of providingmeta.docs.url(#14774) (Bryan Mishkin)000cc79Sponsors: Sync README with website (ESLint Jenkins)a6a7438Chore: pin fs-teardown@0.1.1 (#14771) (Milos Djermanovic)v7.30.0Compare Source
5f74642Chore: don't check Program.start in SourceCode#getComments (refs #14744) (#14748) (Milos Djermanovic)19a871aDocs: Suggest linting plugins for ESLint plugin developers (#14754) (Bryan Mishkin)aa87329Docs: fix broken links (#14756) (Sam Chen)278813aDocs: fix and add more examples for new-cap rule (fixes #12874) (#14725) (Nitin Kumar)ed1da5dUpdate: ecmaVersion allows "latest" (#14720) (薛定谔的猫)104c0b5Update: improve use-isnan rule to detectNumber.NaN(fixes #14715) (#14718) (Nitin Kumar)b08170bUpdate: Implement FlatConfigArray (refs #13481) (#14321) (Nicholas C. Zakas)f113cddChore: upgrade eslint-plugin-eslint-plugin (#14738) (薛定谔的猫)1b8997aDocs: Fix getRulesMetaForResults link syntax (#14723) (Brandon Mills)aada733Docs: fix two broken links (#14726) (Sam Chen)8972529Docs: Update README team and sponsors (ESLint Jenkins)v7.29.0Compare Source
bfbfe5cNew: Add only to RuleTester (refs eslint/rfcs#73) (#14677) (Brandon Mills)c2cd7b4New: Add ESLint#getRulesMetaForResults() (refs #13654) (#14716) (Nicholas C. Zakas)eea7e0dChore: remove duplicate code (#14719) (Nitin Kumar)6a1c7a0Fix: allow fallthrough comment inside block (fixes #14701) (#14702) (Kevin Gibbons)a47e5e3Docs: Add Mega-Linter to the list of integrations (#14707) (Nicolas Vuillamy)353ddf9Chore: enable reportUnusedDisableDirectives in eslint-config-eslint (#14699) (薛定谔的猫)757c495Chore: add some rules to eslint-config-eslint (#14692) (薛定谔的猫)c93a222Docs: fix a broken link (#14697) (Sam Chen)655c118Sponsors: Sync README with website (ESLint Jenkins)e2bed2eSponsors: Sync README with website (ESLint Jenkins)8490fb4Sponsors: Sync README with website (ESLint Jenkins)ddbe877Sponsors: Sync README with website (ESLint Jenkins)v7.28.0Compare Source
1237705Upgrade: @eslint/eslintrc to 0.4.2 (#14672) (Milos Djermanovic)123fb86Docs: Add Feedback Needed triage description (#14670) (Nicholas C. Zakas)c545163Update: support multiline /eslint-env/ directives (fixes #14652) (#14660) (薛定谔的猫)8d1e75aUpgrade: glob-parent version in package.json (#14658) (Hamza Najeeb)1f048cbFix: no-implicit-coercion false positive withString()(fixes #14623) (#14641) (Milos Djermanovic)d709abfChore: fix comment location in no-unused-vars (#14648) (Milos Djermanovic)e44ce0aFix: no-duplicate-imports allow unmergeable (fixes #12758, fixes #12760) (#14238) (Soufiane Boutahlil)bb66a3dNew: addgetPhysicalFilename()method to rule context (fixes #11989) (#14616) (Nitin Kumar)2e43dacDocs: fixno-sequencesexample (#14643) (Nitin Kumar)958ff4eDocs: add note for arrow functions in no-seq rule (#14578) (Nitin Kumar)e4f111bFix: arrow-body-style crash with object pattern (fixes #14633) (#14635) (Milos Djermanovic)ec28b5aChore: upgrade eslint-plugin-eslint-plugin (#14590) (薛定谔的猫)85a2725Docs: Update README team and sponsors (ESLint Jenkins)v7.27.0Compare Source
2c0868cChore: merge all html formatter files intohtml.js(#14612) (Milos Djermanovic)9e9b5e0Update: no-unused-vars false negative with comma operator (fixes #14325) (#14354) (Nitin Kumar)afe9569Chore: use includes instead of indexOf (#14607) (Mikhail Bodrov)c0f418eChore: Remove lodash (#14287) (Stephen Wade)52655ddUpdate: no-restricted-imports custom message for patterns (fixes #11843) (#14580) (Alex Holden)967b1c4Chore: Fix typo in large.js (#14589) (Ikko Ashimine)2466a05Sponsors: Sync README with website (ESLint Jenkins)fe29f18Sponsors: Sync README with website (ESLint Jenkins)086c1d6Chore: add more test cases forno-sequences(#14579) (Nitin Kumar)6a2ced8Docs: Update README team and sponsors (ESLint Jenkins)v7.26.0Compare Source
aaf65e6Upgrade: eslintrc for ModuleResolver fix (#14577) (Brandon Mills)ae6dbd1Fix: track variables, not names in require-atomic-updates (fixes #14208) (#14282) (Patrick Ahmetovic)6a86e50Chore: remove loose-parser tests (fixes #14315) (#14569) (Milos Djermanovic)ee3a3eaFix: create.eslintrc.cjsformoduletype (#14304) (Nitin Kumar)6791decDocs: fix example for require-atomic-updates (#14562) (Milos Djermanovic)388eb7eSponsors: Sync README with website (ESLint Jenkins)f071d1eUpdate: Add automated suggestion toradixrule for parsing decimals (#14291) (Bryan Mishkin)0b6a3f3New: Include XO style guide ineslint --init(#14193) (Federico Brigante)v7.25.0Compare Source
5df5e4aUpdate: highlight last write reference for no-unused-vars (fixes #14324) (#14335) (Nitin Kumar)0023872Docs: Add deprecated note toworking-with-rules-deprecatedpage (#14344) (Michael Novotny)36fca70Chore: Upgrade eslump to 3.0.0 (#14350) (Stephen Wade)59b689aChore: add node v16 (#14355) (薛定谔的猫)35a1f5eSponsors: Sync README with website (ESLint Jenkins)fb0a92bChore: rename misspelled identifier in test (#14346) (Tobias Nießen)f2babb1Docs: update pull request template (#14336) (Nitin Kumar)02dde29Docs: Fix anchor in 'docs/developer-guide/working-with-rules.md' (#14332) (Nate-Wilkins)07d14c3Chore: remove extraneous command from lint-staged config (#14314) (James George)41b3570Update: lint code block with same extension but different content (#14227) (JounQin)eb29996Docs: add more examples with arrow functions for no-sequences rule (#14313) (Nitin Kumar)v7.24.0Compare Source
0c346c8Chore: ignorepnpm-lock.yaml(#14303) (Nitin Kumar)f06ecdfUpdate: Add disallowTemplateShorthand option in no-implicit-coercion (#13579) (Remco Haszing)71a80e3Docs: fix broken links in Node.js API docs toc (#14296) (u-sho (Shouhei Uechi))bd46dc4Docs: Fix incorrect reference to "braces" in arrow-parens (#14300) (emclain)0d6235eDocs: update header in max-lines (#14273) (Shinigami)70c9216Docs: Update issue triage to include blocked column (#14275) (Nicholas C. Zakas)abca186Docs: Fix typo in suggestions section (#14293) (Kevin Partington)c4d8b0dFix: no-unused-vars ignoreRestSiblings check assignments (fixes #14163) (#14264) (YeonJuan)b51d077Update: add ignoreNonDeclaration to no-multi-assign rule (fixes #12545) (#14185) (t-mangoe)c981fb1Chore: Upgrade mocha to 8.3.2 (#14278) (Stephen Wade)147fc04Docs: Fixrepro:neededlabel in bug report template (#14285) (Milos Djermanovic)e1cfde9Docs: Update bug report template (#14276) (Nicholas C. Zakas)c85c2f1Docs: Add fatal to Node.js API LintMessage type (#14251) (Brandon Mills)oprogramador/eslint-config-airbnb-improved (eslint-config-airbnb-improved)
v5.0.3Compare Source
v5.0.2Compare Source
v5.0.1Compare Source
json-schema-faker/json-schema-faker (json-schema-faker)
v0.5.9Compare Source
v0.5.8Compare Source
v0.5.7Compare Source
v0.5.6Compare Source
v0.5.5Compare Source
v0.5.4Compare Source
v0.5.3Compare Source
v0.5.2Compare Source
v0.5.1Compare Source
v0.5.0Compare Source
v0.5.0-rcv.46Compare Source
v0.5.0-rcv.45Compare Source
jprichardson/node-jsonfile (jsonfile)
v6.2.0Compare Source
import { readFileSync } from 'jsonfile') (#162)mochajs/mocha (mocha)
v8.4.0Compare Source
🎉 Enhancements
🐛 Fixes
📖 Documentation
options.requireto Mocha constructor forroot hookplugins on parallel runs (@juergba)top-level awaitand ESM test files (@juergba)Also thanks to @outsideris for various improvements on our GH actions workflows.
nodejs/node (node)
v16.20.2: 2023-08-09, Version 16.20.2 'Gallium' (LTS), @RafaelGSSCompare Source
This is a security release.
Notable Changes
The following CVEs are fixed in this release:
More detailed information on each of the vulnerabilities can be found in August 2023 Security Releases blog post.
Commits
40c3958a5a] - deps: update archs files for OpenSSL-1.1.1v (RafaelGSS) #49043a9ac9da89a] - deps: fix openssl crypto clean (RafaelGSS) #49043362d4c7494] - deps: upgrade openssl sources to OpenSSL_1_1_1v (RafaelGSS) #49043d8ccfe9ad4] - policy: handle Module.constructor and main.extensions bypass (RafaelGSS) nodejs-private/node-private#445242aaa0caa] - policy: disable process.binding() when enabled (Tobias Nießen) nodejs-private/node-private#459v16.20.1: 2023-06-20, Version 16.20.1 'Gallium' (LTS), @RafaelGSSCompare Source
This is a security release.
Notable Changes
The following CVEs are fixed in this release:
mainModule.__proto__Bypass Experimental Policy Mechanism (High)More detailed information on each of the vulnerabilities can be found in June 2023 Security Releases blog post.
Commits
5a92ea7a3b] - crypto: handle cert with invalid SPKI gracefully (Tobias Nießen)5df04e893a] - deps: setCARES_RANDOM_FILEfor c-ares (Richard Lau) #48156c171cbd124] - deps: update c-ares to 1.19.1 (RafaelGSS) #48115155d3aac02] - deps: update archs files for OpenSSL-1.1.1u+quic (RafaelGSS) #483698d4c8f8ebe] - deps: upgrade openssl sources to OpenSSL_1_1_1u (RafaelGSS) #483691a5c9284eb] - doc,test: clarify behavior of DH generateKeys (Tobias Nießen) nodejs-private/node-private#426e42ff4b018] - http: disable request smuggling via empty headers (Paolo Insogna) nodejs-private/node-private#42910042683c8] - msi: do not create AppData\Roaming\npm (Tobias Nießen) nodejs-private/node-private#408a6f4e87bc9] - policy: handle mainModule.__proto__ bypass (RafaelGSS) nodejs-private/node-private#416b77000f4d7] - test: allow SIGBUS in signal-handler abort test (Michaël Zasso) #47851v16.20.0: 2023-03-29, Version 16.20.0 'Gallium' (LTS), @BethGriggsCompare Source
Notable Changes
Commits
de6dd67790] - crypto: avoid hang when no algorithm available (Richard Lau) #462374617512788] - crypto: ensure auth tag set for chacha20-poly1305 (Ben Noordhuis) #4618524972164fc] - deps: update undici to 5.20.0 (Node.js GitHub Bot) #4671185f88c6a8d] - deps: V8: cherry-pick90be99f(Michaël Zasso) #46646b4ebe6d47b] - deps: update c-ares to 1.19.0 (Michaël Zasso) #4641556cbc7fdda] - deps: V8: cherry-pickc2792e5(Jiawen Geng) #449617af9bdb31e](https://redirect.github.com/nodejs/node/Configuration
📅 Schedule: Branch creation - "after 7am on saturday" (UTC), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.