Skip to content

Conversation

@mend-for-github.amrom.workers.dev
Copy link
Contributor

@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot commented Jul 24, 2024

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
@cyclonedx/cyclonedx-npm 1.19.3 -> 1.20.0 age adoption passing confidence
@types/chai (source) 4.3.16 -> 4.3.20 age adoption passing confidence
@types/compression (source) 1.7.5 -> 1.8.1 age adoption passing confidence
@types/config (source) 3.3.4 -> 3.3.5 age adoption passing confidence
@types/cookie-parser (source) 1.4.7 -> 1.4.10 age adoption passing confidence
@types/cors (source) 2.8.17 -> 2.8.19 age adoption passing confidence
@types/express-serve-static-core (source) 4.19.5 -> 4.19.7 age adoption passing confidence
@types/i18n (source) ^0.12.0 -> ^0.13.0 age adoption passing confidence
@types/jasmine (source) ~3.9.1 -> ~3.10.0 age adoption passing confidence
@types/morgan (source) 1.9.9 -> 1.9.10 age adoption passing confidence
@types/multer (source) 1.4.11 -> 1.4.13 age adoption passing confidence
@types/on-finished (source) 2.3.4 -> 2.3.5 age adoption passing confidence
@types/pdfkit (source) ^0.10.6 -> ^0.17.0 age adoption passing confidence
@types/request (source) 2.48.12 -> 2.48.13 age adoption passing confidence
@types/semver (source) 7.5.8 -> 7.7.1 age adoption passing confidence
@types/swagger-ui-express (source) 4.1.6 -> 4.1.8 age adoption passing confidence
@types/unzipper (source) 0.10.9 -> 0.10.11 age adoption passing confidence
@types/validator (source) 13.12.0 -> 13.15.4 age adoption passing confidence
@typescript-eslint/eslint-plugin (source) 6.18.1 -> 6.21.0 age adoption passing confidence
@typescript-eslint/parser (source) 6.18.1 -> 6.21.0 age adoption passing confidence
body-parser 1.20.2 -> 1.20.3 age adoption passing confidence
canvas-confetti 1.9.3 -> 1.9.4 age adoption passing confidence
chai (source) 4.4.1 -> 4.5.0 age adoption passing confidence
codemirror 5.65.17 -> 5.65.20 age adoption passing confidence
compression 1.7.4 -> 1.8.1 age adoption passing confidence
cookie-parser 1.4.6 -> 1.4.7 age adoption passing confidence
cross-spawn 7.0.3 -> 7.0.6 age adoption passing confidence
cypress (source) 13.13.1 -> 13.17.0 age adoption passing confidence
eslint (source) 8.57.0 -> 8.57.1 age adoption passing confidence
eslint-config-prettier 7.1.0 -> 7.2.0 age adoption passing confidence
eslint-plugin-import 2.29.1 -> 2.32.0 age adoption passing confidence
ethers (source) 6.13.1 -> 6.15.0 age adoption passing confidence
ethers (source) 5.7.2 -> 5.8.0 age adoption passing confidence
express (source) 4.19.2 -> 4.21.2 age adoption passing confidence
http-server ^0.12.3 -> ^0.13.0 age adoption passing confidence
i18n ^0.11.1 -> ^0.15.0 age adoption passing confidence
jasmine-core (source) ~3.9.0 -> ~3.99.0 age adoption passing confidence
karma (source) 6.4.3 -> 6.4.4 age adoption passing confidence
karma-chrome-launcher ~3.1.0 -> ~3.2.0 age adoption passing confidence
material-icons (source) ^0.3.1 -> ^0.7.0 age adoption passing confidence
morgan 1.10.0 -> 1.10.1 age adoption passing confidence
multer 1.4.5-lts.1 -> 1.4.5-lts.2 age adoption passing confidence
node-pre-gyp ^0.15.0 -> ^0.17.0 age adoption passing confidence
pdfkit (source) ^0.11.0 -> ^0.17.0 age adoption passing confidence
rxjs (source) 6.6.3 -> 6.6.7 age adoption passing confidence
sanitize-html 1.4.2 -> 1.27.5 age adoption passing confidence
sass 1.77.8 -> 1.93.3 age adoption passing confidence
sequelize (source) 6.37.3 -> 6.37.7 age adoption passing confidence
shelljs ^0.8.4 -> ^0.10.0 age adoption passing confidence
typescript (source) ~4.6.0 -> ~4.9.0 age adoption passing confidence
typescript (source) ~4.8.4 -> ~4.9.0 age adoption passing confidence
unzipper 0.9.15 -> 0.12.3 age adoption passing confidence
winston 3.13.1 -> 3.18.3 age adoption passing confidence
zustand 4.4.1 -> 4.5.7 age adoption passing confidence

Release Notes

CycloneDX/cyclonedx-node-npm (@​cyclonedx/cyclonedx-npm)

v1.20.0

Compare Source

  • Added
    • Official support for npm@11 (#​1245 via #​1249)
    • Capability to gather license text evidences (#​256 via #​1243)
      This feature can be controlled via CLI switch --gather-license-texts.
      This feature is experimental. This feature is disabled per default.
  • Dependencies
    • No longer directly depend on packageurl-js (via #​1237)
  • Build
typescript-eslint/typescript-eslint (@​typescript-eslint/eslint-plugin)

v6.21.0

Compare Source

🚀 Features
  • export plugin metadata

  • allow parserOptions.project: false

  • eslint-plugin: add rule prefer-find

🩹 Fixes
  • eslint-plugin: [no-unused-vars] don't report on types referenced in export assignment expression

  • eslint-plugin: [switch-exhaustiveness-check] better support for intersections, infinite types, non-union values

  • eslint-plugin: [consistent-type-imports] dont report on types used in export assignment expressions

  • eslint-plugin: [no-unnecessary-condition] handle left-hand optional with exactOptionalPropertyTypes option

  • eslint-plugin: [class-literal-property-style] allow getter when same key setter exists

  • eslint-plugin: [no-unnecessary-type-assertion] provide valid fixes for assertions with extra tokens before as keyword

❤️ Thank You
  • auvred
  • Brad Zacher
  • Kirk Waiblinger
  • Pete Gonzalez
  • YeonJuan

You can read about our versioning strategy and releases on our website.

v6.20.0

Compare Source

🚀 Features
  • eslint-plugin: [member-ordering] allow easy reuse of the default ordering
🩹 Fixes
  • eslint-plugin: [no-useless-template-literals] incorrect bigint autofix result

  • eslint-plugin: [prefer-nullish-coalescing] treat any/unknown as non-nullable

  • eslint-plugin: [no-useless-template-literals] report Infinity & NaN

  • eslint-plugin: [prefer-readonly] disable checking accessors

❤️ Thank You
  • Alex Parloti
  • auvred
  • James Browning
  • StyleShit
  • YeonJuan

You can read about our versioning strategy and releases on our website.

v6.19.1

Compare Source

🩹 Fixes
  • type-utils: preventing isUnsafeAssignment infinite recursive calls

  • eslint-plugin: [no-unnecessary-condition] fix false positive for type variable

❤️ Thank You
  • YeonJuan

You can read about our versioning strategy and releases on our website.

v6.19.0

Compare Source

🚀 Features
  • eslint-plugin: [prefer-promise-reject-errors] add rule

  • eslint-plugin: [no-array-delete] add new rule

  • eslint-plugin: [no-useless-template-literals] add fix suggestions

🩹 Fixes
  • eslint-plugin: [no-unnecessary-type-assertion] detect unnecessary non-null-assertion on a call expression

  • eslint-plugin: [no-unnecesary-type-assertion] treat unknown/any as nullable

❤️ Thank You
  • auvred
  • Brad Zacher
  • Josh Goldberg ✨
  • Joshua Chen
  • LJX
  • Steven
  • StyleShit

You can read about our versioning strategy and releases on our website.

typescript-eslint/typescript-eslint (@​typescript-eslint/parser)

v6.21.0

Compare Source

🚀 Features
  • allow parserOptions.project: false
❤️ Thank You
  • auvred
  • Brad Zacher
  • Kirk Waiblinger
  • Pete Gonzalez
  • YeonJuan

You can read about our versioning strategy and releases on our website.

v6.20.0

Compare Source

This was a version bump only for parser to align it with other projects, there were no code changes.

You can read about our versioning strategy and releases on our website.

v6.19.1

Compare Source

This was a version bump only for parser to align it with other projects, there were no code changes.

You can read about our versioning strategy and releases on our website.

v6.19.0

Compare Source

This was a version bump only for parser to align it with other projects, there were no code changes.

You can read about our versioning strategy and releases on our website.

expressjs/body-parser (body-parser)

v1.20.3

Compare Source

===================

  • deps: qs@​6.13.0
  • add depth option to customize the depth level in the parser
  • IMPORTANT: The default depth level for parsing URL-encoded data is now 32 (previously was Infinity)
catdad/canvas-confetti (canvas-confetti)

v1.9.4

Compare Source

What's Changed

Maintenance

New Contributors

Full Changelog: catdad/canvas-confetti@1.9.3...1.9.4

chaijs/chai (chai)

v4.5.0

Compare Source

What's Changed

Full Changelog: chaijs/chai@v4.4.1...v4.5.0

codemirror/basic-setup (codemirror)

v5.65.20

Compare Source

v5.65.19

Compare Source

v5.65.18

Compare Source

expressjs/compression (compression)

v1.8.1

Compare Source

==========

v1.8.0

Compare Source

==================

  • Use res.headersSent when available
  • Replace _implicitHeader with writeHead property
  • add brotli support for versions of node that support it
  • Add the enforceEncoding option for requests without Accept-Encoding header

v1.7.5

Compare Source

==================

  • deps: Replace accepts with negotiator@~0.6.4
    • Add preference option
  • deps: bytes@​3.1.2
    • Add petabyte (pb) support
    • Fix "thousandsSeparator" incorrecting formatting fractional part
    • Fix return value for un-parsable strings
  • deps: compressible@~2.0.18
    • Mark font/ttf as compressible
    • Remove compressible from multipart/mixed
    • deps: mime-db@'>= 1.43.0 < 2'
  • deps: safe-buffer@​5.2.1
expressjs/cookie-parser (coo

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot force-pushed the whitesource-remediate/mend-high-confidence-minor-and-patch-dependency-updates branch 5 times, most recently from bac6350 to e1b47b1 Compare August 2, 2024 08:45
@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot force-pushed the whitesource-remediate/mend-high-confidence-minor-and-patch-dependency-updates branch 10 times, most recently from 41098d8 to 3c73492 Compare August 9, 2024 00:50
@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot force-pushed the whitesource-remediate/mend-high-confidence-minor-and-patch-dependency-updates branch 8 times, most recently from ae44222 to fe521b0 Compare August 17, 2024 08:35
@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot force-pushed the whitesource-remediate/mend-high-confidence-minor-and-patch-dependency-updates branch 7 times, most recently from ffd2a21 to 81d04c6 Compare August 25, 2024 07:43
@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot force-pushed the whitesource-remediate/mend-high-confidence-minor-and-patch-dependency-updates branch 7 times, most recently from 18f7ba2 to 3912e4f Compare October 6, 2025 21:06
@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot force-pushed the whitesource-remediate/mend-high-confidence-minor-and-patch-dependency-updates branch 3 times, most recently from cde41b7 to 662c012 Compare October 11, 2025 04:06
@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot force-pushed the whitesource-remediate/mend-high-confidence-minor-and-patch-dependency-updates branch 3 times, most recently from ed86622 to f931d93 Compare October 21, 2025 11:01
@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot force-pushed the whitesource-remediate/mend-high-confidence-minor-and-patch-dependency-updates branch 9 times, most recently from e9a6cbb to 1181a52 Compare October 29, 2025 08:11
@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot force-pushed the whitesource-remediate/mend-high-confidence-minor-and-patch-dependency-updates branch 6 times, most recently from 28b116a to ebe10b5 Compare November 6, 2025 00:07
@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot force-pushed the whitesource-remediate/mend-high-confidence-minor-and-patch-dependency-updates branch from ebe10b5 to 1e37aec Compare November 6, 2025 18:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant