-
-
Notifications
You must be signed in to change notification settings - Fork 2
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
chore(deps): bump the npm_and_yarn group with 11 updates #1086
base: dev
Are you sure you want to change the base?
chore(deps): bump the npm_and_yarn group with 11 updates #1086
Conversation
Bumps the npm_and_yarn group with 11 updates: | Package | From | To | | --- | --- | --- | | [esbuild](https://github.com/evanw/esbuild) | `0.23.1` | `0.25.0` | | [next](https://github.com/vercel/next.js) | `14.2.13` | `14.2.21` | | [axios](https://github.com/axios/axios) | `1.7.7` | `1.7.9` | | [@solana/web3.js](https://github.com/solana-labs/solana-web3.js) | `1.95.3` | `1.98.0` | | [elliptic](https://github.com/indutny/elliptic) | `6.5.7` | `6.6.0` | | [express](https://github.com/expressjs/express) | `4.21.0` | `4.21.2` | | [hono](https://github.com/honojs/hono) | `4.6.2` | `4.6.5` | | [secp256k1](https://github.com/cryptocoinjs/secp256k1-node) | `5.0.0` | `5.0.1` | | [nanoid](https://github.com/ai/nanoid) | `3.3.7` | `3.3.8` | | [path-to-regexp](https://github.com/pillarjs/path-to-regexp) | `0.1.10` | `0.1.12` | | [undici](https://github.com/nodejs/undici) | `5.28.4` | `5.28.5` | Updates `esbuild` from 0.23.1 to 0.25.0 - [Release notes](https://github.com/evanw/esbuild/releases) - [Changelog](https://github.com/evanw/esbuild/blob/main/CHANGELOG-2024.md) - [Commits](evanw/esbuild@v0.23.1...v0.25.0) Updates `next` from 14.2.13 to 14.2.21 - [Release notes](https://github.com/vercel/next.js/releases) - [Changelog](https://github.com/vercel/next.js/blob/canary/release.js) - [Commits](vercel/next.js@v14.2.13...v14.2.21) Updates `axios` from 1.7.7 to 1.7.9 - [Release notes](https://github.com/axios/axios/releases) - [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md) - [Commits](axios/axios@v1.7.7...v1.7.9) Updates `@solana/web3.js` from 1.95.3 to 1.98.0 - [Release notes](https://github.com/solana-labs/solana-web3.js/releases) - [Changelog](https://github.com/solana-labs/solana-web3.js/blob/maintenance/v1.x/.releaserc.json) - [Commits](solana-labs/solana-web3.js@v1.95.3...v1.98.0) Updates `elliptic` from 6.5.7 to 6.6.0 - [Commits](indutny/elliptic@v6.5.7...v6.6.0) Updates `express` from 4.21.0 to 4.21.2 - [Release notes](https://github.com/expressjs/express/releases) - [Changelog](https://github.com/expressjs/express/blob/4.21.2/History.md) - [Commits](expressjs/express@4.21.0...4.21.2) Updates `hono` from 4.6.2 to 4.6.5 - [Release notes](https://github.com/honojs/hono/releases) - [Commits](honojs/hono@v4.6.2...v4.6.5) Updates `secp256k1` from 5.0.0 to 5.0.1 - [Release notes](https://github.com/cryptocoinjs/secp256k1-node/releases) - [Commits](cryptocoinjs/secp256k1-node@v5.0.0...v5.0.1) Updates `nanoid` from 3.3.7 to 3.3.8 - [Release notes](https://github.com/ai/nanoid/releases) - [Changelog](https://github.com/ai/nanoid/blob/main/CHANGELOG.md) - [Commits](ai/nanoid@3.3.7...3.3.8) Updates `path-to-regexp` from 0.1.10 to 0.1.12 - [Release notes](https://github.com/pillarjs/path-to-regexp/releases) - [Changelog](https://github.com/pillarjs/path-to-regexp/blob/master/History.md) - [Commits](pillarjs/path-to-regexp@v0.1.10...v0.1.12) Updates `undici` from 5.28.4 to 5.28.5 - [Release notes](https://github.com/nodejs/undici/releases) - [Commits](nodejs/undici@v5.28.4...v5.28.5) --- updated-dependencies: - dependency-name: esbuild dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: next dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: axios dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: "@solana/web3.js" dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: elliptic dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: express dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: hono dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: secp256k1 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: nanoid dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: path-to-regexp dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: undici dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <[email protected]>
The latest updates on your projects. Learn more about Vercel for Git ↗︎
|
|
Bumps the npm_and_yarn group with 11 updates:
0.23.1
0.25.0
14.2.13
14.2.21
1.7.7
1.7.9
1.95.3
1.98.0
6.5.7
6.6.0
4.21.0
4.21.2
4.6.2
4.6.5
5.0.0
5.0.1
3.3.7
3.3.8
0.1.10
0.1.12
5.28.4
5.28.5
Updates
esbuild
from 0.23.1 to 0.25.0Release notes
Sourced from esbuild's releases.
... (truncated)
Changelog
Sourced from esbuild's changelog.
... (truncated)
Commits
e9174d6
publish 0.25.0 to npmc27dbeb
fixhosts
inplugin-tests.js
6794f60
fixhosts
innode-unref-tests.js
de85afd
Merge commit from forkda1de1b
fix #4065: bitwise operators can return bigintsf4e9d19
switch case liveness:default
is always last7aa47c3
fix #4028: minify live/deadswitch
cases better22ecd30
minify: more constant folding for strict equality4cdf03c
fix #4053: reordering of.tsx
innode_modules
dc71977
fix #3692:0
now picks a random ephemeral portUpdates
next
from 14.2.13 to 14.2.21Release notes
Sourced from next's releases.
Commits
2655f6e
v14.2.218803d2b
Backport (v14): Upgrade React from 14898b6a9 to 178c267a4e (#74115)6e35243
chore(docs): add missingsearch: ''
onremotePatterns
(#73925) (#73927)54919d2
chore(docs): update version history ofnext/image
(#73926)049a690
Backport: Fixunstable_allowDynamic
when used with pnpm (#73765)663fa9c
Fix SWC and React versions for14-2-1
branch (#73791)ed78a4a
v14.2.20530421d
[backport] Fix/dedupe fetch clone (#73532)cbc62ad
v14.2.1992280dc
[backport] Update max tag items limit in docs (#73445)Updates
axios
from 1.7.7 to 1.7.9Release notes
Sourced from axios's releases.
Changelog
Sourced from axios's changelog.
Commits
b2cb45d
chore(release): v1.7.9 (#6730)c44d2f2
Revert "fix(types): export CJS types from ESM (#6218)" (#6729)415ca94
chore(release): v1.7.8 (#6715)0a8d6e1
fix: use URL API instead of DOM to fix a potential vulnerability warning; (#6...c71811b
fix(types): export CJS types from ESM (#6218)4355a6d
chore(sponsor): update sponsor block (#6709)5d54d22
chore(sponsor): update sponsor block (#6707)eac4619
fix: allow passing a callback as paramsSerializer to buildURL (#6680)df956d1
fix(http): useglobalThis.TextEncoder
when available (#6634)7139ce9
chore(deps): bump cookie and socket.io (#6704)Updates
@solana/web3.js
from 1.95.3 to 1.98.0Release notes
Sourced from
@solana/web3
.js's releases.Commits
8ea27fc
feat: Agave v2 RPC: replacegetRecentBlockhash
withgetLatestBlockhash
(#...a805cb9
feat: agave v2 rpc: replacegetConfirmedTransaction
withgetTransaction
(...60e39a6
feat: Agave v2 RPC: replacegetConfirmedBlock
withgetBlock
(#3417)f554544
chore: link to new repo from issue template (#3717)eb3b362
chore: fix the GitHub pages workflow (#3716)de972e4
chore: migrate all Actions workflows to themaintenance/v1.x
branch (#3714)ae15920
chore: update link to web3.js@next line in README (#3713)79e6a87
chore: bump typedoc from 0.27.3 to 0.27.4 (#3699)093fbc4
chore: bump rollup from 4.28.0 to 4.28.1 (#3700)ee06179
chore: bump prettier from 3.4.1 to 3.4.2 (#3670)Maintainer changes
This version was pushed to npm by solana-devs, a new releaser for
@solana/web3
.js since your current version.Updates
elliptic
from 6.5.7 to 6.6.0Commits
b8a7edd
6.6.034c8534
fix: signature verification due to leading zerosUpdates
express
from 4.21.0 to 4.21.2Release notes
Sourced from express's releases.
Changelog
Sourced from express's changelog.
Commits
1faf228
4.21.22e0fb64
deps: bump [email protected] (#6209)59fc270
deps: [email protected] (#5956)51fc39c
docs: add funding (#6065)8e229f9
4.21.1a024c8a
fix(deps): [email protected]Maintainer changes
This version was pushed to npm by jonchurch, a new releaser for express since your current version.
Updates
hono
from 4.6.2 to 4.6.5Release notes
Sourced from hono's releases.
... (truncated)
Commits
89a0ac1
v4.6.5c4d19ec
chore: update the lockfile6cf01e5
fix(build): remove private fields (#3514)aa50e0a
Merge commit from forkf9e6ea7
fix(factory): revert PR #3498 (#3515)fc9cc6d
feat(powered-by): optional server name (#3492)cebf4e8
fix(cors): avoid settingAccess-Control-Allow-Origin
if there is no matchin...3311664
fix(types): rm ExcludeEmptyObject to fix massively increased type instantiati...bd9effe
ci: use Deno v2 for a test running for deno (#3509)9986b47
ci: use Denov2
(#3506)Updates
secp256k1
from 5.0.0 to 5.0.1Commits
b3f874f
5.0.19a15fff
elliptic: fix key verification in loadCompressedPublicKeydc37f41
Update elliptic to 6.5.7 (CVE-2024-42461) (#206)Updates
nanoid
from 3.3.7 to 3.3.8Changelog
Sourced from nanoid's changelog.
Commits
3044cd5
Release 3.3.8 version4fe3495
Update size limitd643045
Fix pool pollution, infinite loop (#510)Updates
path-to-regexp
from 0.1.10 to 0.1.12Release notes
Sourced from path-to-regexp's releases.
Commits
640e694
0.1.12f01c26a
Merge commit from fork0c71192
0.1.118f09549
Add error on bad input valuesUpdates
undici
from 5.28.4 to 5.28.5Release notes
Sourced from undici's releases.
Commits
6139ed2
Bumped v5.28.5711e207
Backport of c2d78cdDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.