Skip to content

Bump the npm_and_yarn group across 9 directories with 22 updates #126

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

dependabot[bot]
Copy link

@dependabot dependabot bot commented on behalf of github May 8, 2024

update

Bumps the npm_and_yarn group with 4 updates in the /nodejs/axios/reactapp directory: [axios](https://github.com/axios/axios), [semver](https://github.com/npm/node-semver), [core-js-compat](https://github.com/zloirock/core-js/tree/HEAD/packages/core-js-compat) and [postcss-selector-parser](https://github.com/postcss/postcss-selector-parser).
Bumps the npm_and_yarn group with 1 update in the /nodejs/axios/serversideapp directory: [axios](https://github.com/axios/axios).
Bumps the npm_and_yarn group with 1 update in the /nodejs/url-shortener/urlbackend directory: [mongoose](https://github.com/Automattic/mongoose).
Bumps the npm_and_yarn group with 3 updates in the /nodejs/url-shortener/urlfrontend directory: [axios](https://github.com/axios/axios), [node-releases](https://github.com/chicoxyzzy/node-releases) and [postcss-selector-parser](https://github.com/postcss/postcss-selector-parser).
Bumps the npm_and_yarn group with 7 updates in the /pact/pact-angular directory:

| Package | From | To |
| --- | --- | --- |
| [semver](https://github.com/npm/node-semver) | `5.4.1` | `5.7.2` |
| [protractor](https://github.com/angular/protractor) | `5.1.2` | `5.4.4` |
| [lodash](https://github.com/lodash/lodash) | `4.17.4` | `4.17.21` |
| [@angular/core](https://github.com/angular/angular/tree/HEAD/packages/core) | `10.2.5` | `17.3.8` |
| [@angular/cli](https://github.com/angular/angular-cli) | `17.3.6` | `17.3.7` |
| [@pact-foundation/pact-node](https://github.com/pact-foundation/pact-node) | `6.21.5` | `10.18.0` |
| [handlebars](https://github.com/handlebars-lang/handlebars.js) | `4.0.11` | `4.7.8` |

Bumps the npm_and_yarn group with 1 update in the /pact/pact-node-provider directory: [debug](https://github.com/debug-js/debug).
Bumps the npm_and_yarn group with 2 updates in the /pact/pact-react-consumer directory: [axios](https://github.com/axios/axios) and [lodash](https://github.com/lodash/lodash).
Bumps the npm_and_yarn group with 5 updates in the /spring-boot/cors/configuring-cors-with-spring/cors-app directory:

| Package | From | To |
| --- | --- | --- |
| [semver](https://github.com/npm/node-semver) | `7.3.7` | `7.5.3` |
| [@angular/cli](https://github.com/angular/angular-cli) | `14.1.2` | `14.2.13` |
| [@angular/core](https://github.com/angular/angular/tree/HEAD/packages/core) | `17.3.7` | `17.3.8` |
| [karma](https://github.com/karma-runner/karma) | `6.4.0` | `6.4.3` |
| [@angular-devkit/build-angular](https://github.com/angular/angular-cli) | `17.3.6` | `17.3.7` |

Bumps the npm_and_yarn group with 4 updates in the /spring-boot/thymeleaf-vue/client directory: [node-releases](https://github.com/chicoxyzzy/node-releases), [postcss-selector-parser](https://github.com/postcss/postcss-selector-parser), [webpack-dev-middleware](https://github.com/webpack/webpack-dev-middleware) and [@storybook/vue](https://github.com/storybookjs/storybook/tree/HEAD/code/renderers/vue).


Updates `axios` from 0.28.0 to 1.6.8
- [Release notes](https://github.com/axios/axios/releases)
- [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md)
- [Commits](axios/axios@v0.28.0...v1.6.8)

Updates `semver` from 6.3.1 to 7.6.0
- [Release notes](https://github.com/npm/node-semver/releases)
- [Changelog](https://github.com/npm/node-semver/blob/main/CHANGELOG.md)
- [Commits](npm/node-semver@v6.3.1...v7.6.0)

Updates `core-js-compat` from 3.22.5 to 3.37.0
- [Release notes](https://github.com/zloirock/core-js/releases)
- [Changelog](https://github.com/zloirock/core-js/blob/master/CHANGELOG.md)
- [Commits](https://github.com/zloirock/core-js/commits/v3.37.0/packages/core-js-compat)

Updates `node-releases` from 2.0.4 to 2.0.14
- [Commits](chicoxyzzy/node-releases@v2.0.6...v2.0.14)

Updates `postcss-selector-parser` from 6.0.10 to 6.0.16
- [Release notes](https://github.com/postcss/postcss-selector-parser/releases)
- [Changelog](https://github.com/postcss/postcss-selector-parser/blob/master/CHANGELOG.md)
- [Commits](postcss/postcss-selector-parser@v6.0.10...v6.0.16)

Updates `axios` from 0.28.0 to 1.6.8
- [Release notes](https://github.com/axios/axios/releases)
- [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md)
- [Commits](axios/axios@v0.28.0...v1.6.8)

Updates `mongoose` from 6.12.8 to 8.3.4
- [Release notes](https://github.com/Automattic/mongoose/releases)
- [Changelog](https://github.com/Automattic/mongoose/blob/master/CHANGELOG.md)
- [Commits](Automattic/mongoose@6.12.8...8.3.4)

Updates `mongodb` from 4.17.2 to 6.5.0
- [Release notes](https://github.com/mongodb/node-mongodb-native/releases)
- [Changelog](https://github.com/mongodb/node-mongodb-native/blob/main/HISTORY.md)
- [Commits](mongodb/node-mongodb-native@v4.17.2...v6.5.0)

Updates `axios` from 0.28.0 to 1.6.8
- [Release notes](https://github.com/axios/axios/releases)
- [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md)
- [Commits](axios/axios@v0.28.0...v1.6.8)

Updates `node-releases` from 2.0.6 to 2.0.14
- [Commits](chicoxyzzy/node-releases@v2.0.6...v2.0.14)

Updates `postcss-selector-parser` from 6.0.10 to 6.0.16
- [Release notes](https://github.com/postcss/postcss-selector-parser/releases)
- [Changelog](https://github.com/postcss/postcss-selector-parser/blob/master/CHANGELOG.md)
- [Commits](postcss/postcss-selector-parser@v6.0.10...v6.0.16)

Updates `semver` from 5.4.1 to 5.7.2
- [Release notes](https://github.com/npm/node-semver/releases)
- [Changelog](https://github.com/npm/node-semver/blob/main/CHANGELOG.md)
- [Commits](npm/node-semver@v6.3.1...v7.6.0)

Updates `protractor` from 5.1.2 to 5.4.4
- [Release notes](https://github.com/angular/protractor/releases)
- [Changelog](https://github.com/angular/protractor/blob/5.4.4/CHANGELOG.md)
- [Commits](angular/protractor@5.1.2...5.4.4)

Updates `lodash` from 4.17.4 to 4.17.21
- [Release notes](https://github.com/lodash/lodash/releases)
- [Commits](lodash/lodash@4.17.4...4.17.21)

Updates `@angular/core` from 10.2.5 to 17.3.8
- [Release notes](https://github.com/angular/angular/releases)
- [Changelog](https://github.com/angular/angular/blob/main/CHANGELOG.md)
- [Commits](https://github.com/angular/angular/commits/17.3.8/packages/core)

Updates `@angular/cli` from 17.3.6 to 17.3.7
- [Release notes](https://github.com/angular/angular-cli/releases)
- [Changelog](https://github.com/angular/angular-cli/blob/main/CHANGELOG.md)
- [Commits](angular/angular-cli@17.3.6...17.3.7)

Updates `@pact-foundation/pact-node` from 6.21.5 to 10.18.0
- [Release notes](https://github.com/pact-foundation/pact-node/releases)
- [Changelog](https://github.com/pact-foundation/pact-js-core/blob/master/CHANGELOG.md)
- [Commits](https://github.com/pact-foundation/pact-node/commits)

Updates `tar` from 4.4.0 to 6.2.1
- [Release notes](https://github.com/isaacs/node-tar/releases)
- [Changelog](https://github.com/isaacs/node-tar/blob/main/CHANGELOG.md)
- [Commits](isaacs/node-tar@v4.4.0...v6.2.1)

Updates `handlebars` from 4.0.11 to 4.7.8
- [Release notes](https://github.com/handlebars-lang/handlebars.js/releases)
- [Changelog](https://github.com/handlebars-lang/handlebars.js/blob/v4.7.8/release-notes.md)
- [Commits](handlebars-lang/handlebars.js@v4.0.11...v4.7.8)

Updates `request` from 2.81.0 to 2.87.0
- [Changelog](https://github.com/request/request/blob/master/CHANGELOG.md)
- [Commits](request/request@v2.81.0...v2.87.0)

Updates `debug` from 3.1.0 to 4.3.4
- [Release notes](https://github.com/debug-js/debug/releases)
- [Commits](debug-js/debug@3.1.0...4.3.4)

Updates `axios` from 0.28.0 to 1.6.8
- [Release notes](https://github.com/axios/axios/releases)
- [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md)
- [Commits](axios/axios@v0.28.0...v1.6.8)

Updates `lodash` from 4.17.11 to 4.17.21
- [Release notes](https://github.com/lodash/lodash/releases)
- [Commits](lodash/lodash@4.17.4...4.17.21)

Updates `semver` from 7.3.7 to 7.5.3
- [Release notes](https://github.com/npm/node-semver/releases)
- [Changelog](https://github.com/npm/node-semver/blob/main/CHANGELOG.md)
- [Commits](npm/node-semver@v6.3.1...v7.6.0)

Updates `@angular/cli` from 14.1.2 to 14.2.13
- [Release notes](https://github.com/angular/angular-cli/releases)
- [Changelog](https://github.com/angular/angular-cli/blob/main/CHANGELOG.md)
- [Commits](angular/angular-cli@17.3.6...17.3.7)

Updates `@angular/core` from 17.3.7 to 17.3.8
- [Release notes](https://github.com/angular/angular/releases)
- [Changelog](https://github.com/angular/angular/blob/main/CHANGELOG.md)
- [Commits](https://github.com/angular/angular/commits/17.3.8/packages/core)

Updates `@angular/cli` from 14.1.2 to 14.2.13
- [Release notes](https://github.com/angular/angular-cli/releases)
- [Changelog](https://github.com/angular/angular-cli/blob/main/CHANGELOG.md)
- [Commits](angular/angular-cli@17.3.6...17.3.7)

Updates `karma` from 6.4.0 to 6.4.3
- [Release notes](https://github.com/karma-runner/karma/releases)
- [Changelog](https://github.com/karma-runner/karma/blob/master/CHANGELOG.md)
- [Commits](karma-runner/karma@v6.4.0...v6.4.3)

Updates `socket.io` from 4.5.1 to 4.7.5
- [Release notes](https://github.com/socketio/socket.io/releases)
- [Changelog](https://github.com/socketio/socket.io/blob/main/CHANGELOG.md)
- [Commits](socketio/socket.io@4.5.1...4.7.5)

Updates `socket.io-parser` from 4.0.5 to 4.2.4
- [Release notes](https://github.com/socketio/socket.io-parser/releases)
- [Changelog](https://github.com/socketio/socket.io-parser/blob/main/CHANGELOG.md)
- [Commits](socketio/socket.io-parser@4.0.5...4.2.4)

Updates `@angular-devkit/build-angular` from 17.3.6 to 17.3.7
- [Release notes](https://github.com/angular/angular-cli/releases)
- [Changelog](https://github.com/angular/angular-cli/blob/main/CHANGELOG.md)
- [Commits](angular/angular-cli@17.3.6...17.3.7)

Updates `node-releases` from 1.1.58 to 1.1.77
- [Commits](chicoxyzzy/node-releases@v2.0.6...v2.0.14)

Updates `postcss-selector-parser` from 6.0.2 to 6.0.16
- [Release notes](https://github.com/postcss/postcss-selector-parser/releases)
- [Changelog](https://github.com/postcss/postcss-selector-parser/blob/master/CHANGELOG.md)
- [Commits](postcss/postcss-selector-parser@v6.0.10...v6.0.16)

Updates `webpack-dev-middleware` from 3.7.3 to 5.3.4
- [Release notes](https://github.com/webpack/webpack-dev-middleware/releases)
- [Changelog](https://github.com/webpack/webpack-dev-middleware/blob/v5.3.4/CHANGELOG.md)
- [Commits](webpack/webpack-dev-middleware@v3.7.3...v5.3.4)

Updates `@storybook/vue` from 6.5.15 to 7.6.17
- [Release notes](https://github.com/storybookjs/storybook/releases)
- [Changelog](https://github.com/storybookjs/storybook/blob/v7.6.17/CHANGELOG.md)
- [Commits](https://github.com/storybookjs/storybook/commits/v7.6.17/code/renderers/vue)

---
updated-dependencies:
- dependency-name: axios
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: semver
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: core-js-compat
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: node-releases
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: postcss-selector-parser
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: axios
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: mongoose
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: mongodb
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: axios
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: node-releases
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: postcss-selector-parser
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: semver
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: protractor
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: lodash
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: "@angular/core"
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: "@angular/cli"
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: "@pact-foundation/pact-node"
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: tar
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: handlebars
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: request
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: debug
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: axios
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: lodash
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: semver
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: "@angular/cli"
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: "@angular/core"
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: "@angular/cli"
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: karma
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: socket.io
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: socket.io-parser
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: "@angular-devkit/build-angular"
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: node-releases
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: postcss-selector-parser
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: webpack-dev-middleware
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: "@storybook/vue"
  dependency-type: direct:development
  dependency-group: npm_and_yarn
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels May 8, 2024
@IamGuiSantos
Copy link

This pull request updates several dependencies in the nodejs/axios project, focusing primarily on upgrading axios and its related dependencies across both the React application and the server-side application. Additionally, other dependencies such as browserslist, core-js-compat, and caniuse-lite have been updated to newer versions, improving compatibility and security.

Dependency Updates

Major Updates:

  • Upgraded axios from version 0.28.0 to 1.6.8 in both reactapp and serversideapp, along with updates to its dependencies such as follow-redirects (from ^1.15.0 to ^1.15.6). (nodejs/axios/reactapp/package-lock.json [1] [2]], nodejs/axios/serversideapp/package-lock.json [3] [4]])

React App Updates:

  • Updated browserslist from version 4.20.3 to 4.23.0, along with its dependencies such as caniuse-lite (from ^1.0.30001332 to ^1.0.30001587) and added update-browserslist-db as a new dependency. (nodejs/axios/reactapp/package-lock.json [1] [2]])
  • Upgraded core-js-compat from version 3.22.5 to 3.37.0 and removed the nested dependency on semver. (nodejs/axios/reactapp/package-lock.json [1] [2]])
  • Updated electron-to-chromium from version 1.4.137 to 1.4.759. (nodejs/axios/reactapp/package-lock.json [1] [2]])

Server-Side App Updates:

These updates ensure the projects are using the latest stable versions of libraries, which include bug fixes, security patches, and performance improvements.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant