Bump the npm_and_yarn group across 2 directories with 13 updates#3
Open
dependabot[bot] wants to merge 1 commit into
Open
Conversation
Bumps the npm_and_yarn group with 7 updates in the /angular-material-app directory: | Package | From | To | | --- | --- | --- | | [@angular/common](https://github.com/angular/angular/tree/HEAD/packages/common) | `20.0.0` | `20.3.14` | | [@angular/compiler](https://github.com/angular/angular/tree/HEAD/packages/compiler) | `20.0.0` | `20.3.16` | | [@angular/core](https://github.com/angular/angular/tree/HEAD/packages/core) | `20.0.0` | `20.3.17` | | [playwright](https://github.com/microsoft/playwright) | `1.52.0` | `1.58.2` | | [qs](https://github.com/ljharb/qs) | `6.13.0` | `6.14.2` | | [tar](https://github.com/isaacs/node-tar) | `6.2.1` | `7.5.9` | | [lodash](https://github.com/lodash/lodash) | `4.17.21` | `4.17.23` | Bumps the npm_and_yarn group with 6 updates in the /express-backend directory: | Package | From | To | | --- | --- | --- | | [qs](https://github.com/ljharb/qs) | `6.14.0` | `6.15.0` | | [body-parser](https://github.com/expressjs/body-parser) | `2.2.0` | `2.2.2` | | [lodash](https://github.com/lodash/lodash) | `4.17.21` | `4.17.23` | | [jws](https://github.com/brianloveswords/node-jws) | `3.2.2` | `3.2.3` | | [on-headers](https://github.com/jshttp/on-headers) | `1.0.2` | `1.1.0` | | [validator](https://github.com/validatorjs/validator.js) | `13.12.0` | `13.15.26` | Updates `@angular/common` from 20.0.0 to 20.3.14 - [Release notes](https://github.com/angular/angular/releases) - [Changelog](https://github.com/angular/angular/blob/main/CHANGELOG.md) - [Commits](https://github.com/angular/angular/commits/20.3.14/packages/common) Updates `@angular/compiler` from 20.0.0 to 20.3.16 - [Release notes](https://github.com/angular/angular/releases) - [Changelog](https://github.com/angular/angular/blob/main/CHANGELOG.md) - [Commits](https://github.com/angular/angular/commits/v20.3.16/packages/compiler) Updates `@angular/core` from 20.0.0 to 20.3.17 - [Release notes](https://github.com/angular/angular/releases) - [Changelog](https://github.com/angular/angular/blob/main/CHANGELOG.md) - [Commits](https://github.com/angular/angular/commits/v20.3.17/packages/core) Updates `playwright` from 1.52.0 to 1.58.2 - [Release notes](https://github.com/microsoft/playwright/releases) - [Commits](microsoft/playwright@v1.52.0...v1.58.2) Updates `qs` from 6.13.0 to 6.14.2 - [Changelog](https://github.com/ljharb/qs/blob/main/CHANGELOG.md) - [Commits](ljharb/qs@v6.13.0...v6.14.2) Updates `tar` from 6.2.1 to 7.5.9 - [Release notes](https://github.com/isaacs/node-tar/releases) - [Changelog](https://github.com/isaacs/node-tar/blob/main/CHANGELOG.md) - [Commits](isaacs/node-tar@v6.2.1...v7.5.9) Updates `tmp` from 0.0.33 to 0.2.3 - [Changelog](https://github.com/raszi/node-tmp/blob/master/CHANGELOG.md) - [Commits](raszi/node-tmp@v0.0.33...v0.2.3) Updates `form-data` from 4.0.2 to 4.0.5 - [Release notes](https://github.com/form-data/form-data/releases) - [Changelog](https://github.com/form-data/form-data/blob/master/CHANGELOG.md) - [Commits](form-data/form-data@v4.0.2...v4.0.5) Updates `lodash` from 4.17.21 to 4.17.23 - [Release notes](https://github.com/lodash/lodash/releases) - [Commits](lodash/lodash@4.17.21...4.17.23) Updates `qs` from 6.14.0 to 6.15.0 - [Changelog](https://github.com/ljharb/qs/blob/main/CHANGELOG.md) - [Commits](ljharb/qs@v6.13.0...v6.14.2) Updates `body-parser` from 2.2.0 to 2.2.2 - [Release notes](https://github.com/expressjs/body-parser/releases) - [Changelog](https://github.com/expressjs/body-parser/blob/master/HISTORY.md) - [Commits](expressjs/body-parser@v2.2.0...v2.2.2) Updates `lodash` from 4.17.21 to 4.17.23 - [Release notes](https://github.com/lodash/lodash/releases) - [Commits](lodash/lodash@4.17.21...4.17.23) Updates `jws` from 3.2.2 to 3.2.3 - [Release notes](https://github.com/brianloveswords/node-jws/releases) - [Changelog](https://github.com/auth0/node-jws/blob/master/CHANGELOG.md) - [Commits](auth0/node-jws@v3.2.2...v3.2.3) Updates `on-headers` from 1.0.2 to 1.1.0 - [Release notes](https://github.com/jshttp/on-headers/releases) - [Changelog](https://github.com/jshttp/on-headers/blob/master/HISTORY.md) - [Commits](jshttp/on-headers@v1.0.2...v1.1.0) Updates `validator` from 13.12.0 to 13.15.26 - [Release notes](https://github.com/validatorjs/validator.js/releases) - [Changelog](https://github.com/validatorjs/validator.js/blob/master/CHANGELOG.md) - [Commits](validatorjs/validator.js@13.12.0...13.15.26) --- updated-dependencies: - dependency-name: "@angular/common" dependency-version: 20.3.14 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: "@angular/compiler" dependency-version: 20.3.16 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: "@angular/core" dependency-version: 20.3.17 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: playwright dependency-version: 1.58.2 dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: qs dependency-version: 6.14.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: tar dependency-version: 7.5.9 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: tmp dependency-version: 0.2.3 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: form-data dependency-version: 4.0.5 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: lodash dependency-version: 4.17.23 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: qs dependency-version: 6.15.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: body-parser dependency-version: 2.2.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: lodash dependency-version: 4.17.23 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: jws dependency-version: 3.2.3 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: on-headers dependency-version: 1.1.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: validator dependency-version: 13.15.26 dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the npm_and_yarn group with 7 updates in the /angular-material-app directory:
20.0.020.3.1420.0.020.3.1620.0.020.3.171.52.01.58.26.13.06.14.26.2.17.5.94.17.214.17.23Bumps the npm_and_yarn group with 6 updates in the /express-backend directory:
6.14.06.15.02.2.02.2.24.17.214.17.233.2.23.2.31.0.21.1.013.12.013.15.26Updates
@angular/commonfrom 20.0.0 to 20.3.14Release notes
Sourced from
@angular/common's releases.... (truncated)
Changelog
Sourced from
@angular/common's changelog.... (truncated)
Commits
0276479fix(http): prevent XSRF token leakage to protocol-relative URLsa8c577ddocs: add reference to Built-in Pipes in multiple pipe files8922caeRevert "refactor(http): migrate XSRF classes to use inject() function"5047849fix(common): remove placeholder image listeners once view is removed4c66fe4refactor(core): markVERSIONas@__PURE__for better tree-shaking2ad6b72refactor(http): migrate XSRF classes to use inject() functionee578d3build: format md files744cd5crefactor(http): simplifies destruction tracking using destroyed property5ce9d88docs: Adds guide links to HTTP API docs for better discoverability020f176feat(common): Blocks IPv6 localhost from preconnect checksUpdates
@angular/compilerfrom 20.0.0 to 20.3.16Release notes
Sourced from
@angular/compiler's releases.... (truncated)
Changelog
Sourced from
@angular/compiler's changelog.... (truncated)
Commits
c2c2b4afix(core): sanitize sensitive attributes on SVG script elementsd1ca8aefix(compiler): prevent XSS via SVG animationattributeNameand MathML/SVG URLsf689269Revert "fix(compiler): support one additional level of nesting in :host()"7b2e6caRevert "fix(compiler): support arbitrary nesting in :host-context()"6036eefRevert "fix(compiler): support commas in :host() argument"a44658bRevert "fix(compiler): support complex selectors in :nth-child()"9419ea3fix(compiler): support complex selectors in :nth-child()2531863test(compiler): add test for :host:has(> .foo)106b904fix(compiler): support commas in :host() argumentf9d0818fix(compiler): support arbitrary nesting in :host-context()Updates
@angular/corefrom 20.0.0 to 20.3.17Release notes
Sourced from
@angular/core's releases.... (truncated)
Changelog
Sourced from
@angular/core's changelog.... (truncated)
Commits
7f9de3cfix(core): block creation of sensitive URI attributes from ICU messagesc2c2b4afix(core): sanitize sensitive attributes on SVG script elementsd1ca8aefix(compiler): prevent XSS via SVG animationattributeNameand MathML/SVG URLs820bb39Revert "refactor(core): let the profiler handle asymmetric events leniently"2dccdcdRevert "fix(core): notify profiler events in case of errors"a966ff1refactor(core): let the profiler handle asymmetric events leniently52cf658fix(core): notify profiler events in case of errorsdaae263docs: Adds links to relevant guides for APIs in core packaged10f110docs: add documentation for HostAttributeToken2c3691ddocs: add documentation for DOCUMENT injection token usage in SSRUpdates
playwrightfrom 1.52.0 to 1.58.2Release notes
Sourced from playwright's releases.
... (truncated)
Commits
ce480a9cherry-pick(#39171): devops: add ubuntu-22.04-arm bote40c137chore: mark v1.58.2 (#39155)50b7296cherry-pick(#39152): chore: fix execSync inheriting stdiof3dcf50cherry-pick(#39129): fix: do not force swiftshader on chromium mac8684e08cherry-pick(#39121): fix(trace viewer): make paths via stdin work97bc385cherry-pick(#38995): chore(webkit): disable frame sessions on fronzen buildsad625fechore: mark v1.58.1 (#39055)f07234dcherry-pick(#39036): fix(msedge): fix local network permissions (#39053)ab8136ccherry-pick(#39037): chore: update cft download location (#39052)aa6ffebcherry-pick(#39014): docs: add 1.58 release notes for Java, Python, and C#Maintainer changes
This version was pushed to npm by [GitHub Actions](https://www.npmjs.com/~GitHub Actions), a new releaser for playwright since your current version.
Updates
qsfrom 6.13.0 to 6.14.2Changelog
Sourced from qs's changelog.
... (truncated)
Commits
bdcf0c7v6.14.2294db90[readme] document thataddQueryPrefixdoes not add?to empty output5c308e5[readme] clarifyparseArraysandarrayLimitdocumentation6addf8c[Fix]parse: mark overflow objects for indexed notation exceedingarrayLimitcfc108f[Fix]arrayLimitmeans max count, not max index, incombine/merge/`pars...febb644[Fix]parse: throw onarrayLimitexceeded with indexed notation when `thr...f6a7abf[Fix]parse: enforcearrayLimitoncomma-parsed valuesfbc5206[Fix]parse: fix error message to reflect arrayLimit as max index; remove e...1b9a8b4[actions] fix rebase workflow permissions2a35775[meta] fix changelog typo (arrayLength→arrayLimit)Updates
tarfrom 6.2.1 to 7.5.9Changelog
Sourced from tar's changelog.
... (truncated)
Commits
1f0c2c97.5.9fbb0851build minified version as default export6b8eba07.5.82cb1120fix(unpack): improve UnpackSync symlink error "into" path accuracyd18e4e1fix: do not write linkpaths through symlinks4a37eb97.5.7f4a7aa9fix: properly sanitize hard links containing ..394ece67.5.67d4cc17fix race puting a Link ahead of its target File26ab9047.5.5Maintainer changes
This version was pushed to npm by isaacs, a new releaser for tar since your current version.
Install script changes
This version adds
preparescript that runs during installation. Review the package contents before updating.Updates
tmpfrom 0.0.33 to 0.2.3Changelog
Sourced from tmp's changelog.
... (truncated)
Commits
5f0b252Merge pull request #297 from raszi/feat/release-v0.2.3998eec5Fix formatting7a82d1fAdd .tool-versions4057ffaUpdate changelog4aba61eIgnore .env062efbbAdd a small note about the compatibilityb8f7d78Update version6ed89d5Merge pull request #296 from kevinoid/drop-rimrafeafb034Use fs.rm() instead of rimraf9fcf3ceMerge pull request #294 from raszi/fix/update-versionUpdates
form-datafrom 4.0.2 to 4.0.5Release notes
Sourced from form-data's releases.
Changelog
Sourced from form-data's changelog.