Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(deps): bump express, @nestjs/core, @nestjs/platform-express, @nestjs/platform-ws, @nestjs/terminus, @nestjs/websockets and @nestjs/testing #1577

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Mar 27, 2024

Bumps express to 4.19.2 and updates ancestor dependencies express, @nestjs/core, @nestjs/platform-express, @nestjs/platform-ws, @nestjs/terminus, @nestjs/websockets and @nestjs/testing. These dependencies need to be updated together.

Updates express from 4.17.3 to 4.19.2

Release notes

Sourced from express's releases.

4.19.2

What's Changed

Full Changelog: expressjs/express@4.19.1...4.19.2

4.19.1

What's Changed

Full Changelog: expressjs/express@4.19.0...4.19.1

4.19.0

What's Changed

New Contributors

Full Changelog: expressjs/express@4.18.3...4.19.0

4.18.3

Main Changes

  • Fix routing requests without method
  • deps: body-parser@1.20.2
    • Fix strict json error message on Node.js 19+
    • deps: content-type@~1.0.5
    • deps: raw-body@2.5.2

Other Changes

... (truncated)

Changelog

Sourced from express's changelog.

4.19.2 / 2024-03-25

  • Improved fix for open redirect allow list bypass

4.19.1 / 2024-03-20

  • Allow passing non-strings to res.location with new encoding handling checks

4.19.0 / 2024-03-20

  • Prevent open redirect allow list bypass due to encodeurl
  • deps: cookie@0.6.0

4.18.3 / 2024-02-29

  • Fix routing requests without method
  • deps: body-parser@1.20.2
    • Fix strict json error message on Node.js 19+
    • deps: content-type@~1.0.5
    • deps: raw-body@2.5.2
  • deps: cookie@0.6.0
    • Add partitioned option

4.18.2 / 2022-10-08

  • Fix regression routing a large stack in a single route
  • deps: body-parser@1.20.1
    • deps: qs@6.11.0
    • perf: remove unnecessary object clone
  • deps: qs@6.11.0

4.18.1 / 2022-04-29

  • Fix hanging on large stack of sync routes

4.18.0 / 2022-04-25

  • Add "root" option to res.download
  • Allow options without filename in res.download
  • Deprecate string and non-integer arguments to res.status
  • Fix behavior of null/undefined as maxAge in res.cookie
  • Fix handling very large stacks of sync middleware
  • Ignore Object.prototype values in settings through app.set/app.get

... (truncated)

Commits
  • 04bc627 4.19.2
  • da4d763 Improved fix for open redirect allow list bypass
  • 4f0f6cc 4.19.1
  • a003cfa Allow passing non-strings to res.location with new encoding handling checks f...
  • a1fa90f fixed un-edited version in history.md for 4.19.0
  • 11f2b1d build: fix build due to inconsistent supertest behavior in older versions
  • 084e365 4.19.0
  • 0867302 Prevent open redirect allow list bypass due to encodeurl
  • 567c9c6 Add note on how to update docs for new release (#5541)
  • 69a4cf2 deps: cookie@0.6.0
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by wesleytodd, a new releaser for express since your current version.


Updates @nestjs/core from 8.4.1 to 10.3.6

Release notes

Sourced from @​nestjs/core's releases.

v10.3.6 (2024-03-27)

Bug fixes

Dependencies

Committers: 2

v10.3.4 (2024-03-18)

Bug fixes

Enhancements

Docs

Dependencies

... (truncated)

Commits

Updates @nestjs/platform-express from 8.4.1 to 10.3.6

Release notes

Sourced from @​nestjs/platform-express's releases.

v10.3.6 (2024-03-27)

Bug fixes

Dependencies

Committers: 2

v10.3.4 (2024-03-18)

Bug fixes

Enhancements

Docs

Dependencies

... (truncated)

Commits

Updates @nestjs/platform-ws from 8.4.1 to 10.3.6

Release notes

Sourced from @​nestjs/platform-ws's releases.

v10.3.6 (2024-03-27)

Bug fixes

Dependencies

Committers: 2

v10.3.4 (2024-03-18)

Bug fixes

Enhancements

Docs

Dependencies

... (truncated)

Commits

Updates @nestjs/terminus from 8.0.6 to 10.2.3

Release notes

Sourced from @​nestjs/terminus's releases.

Release 10.2.3

10.2.3 (2024-02-18)

Bug Fixes

Release 10.2.2

10.2.2 (2024-02-07)

Bug Fixes

  • MikroOrmHealthIndicators indicates as up even when disconnected (#2509) (#2511) (069b998), closes #2460
  • Swagger schema for health check result additional props set to type: 'object' instead of type: 'string', (44c06f6), closes #2516
  • mark result as required in the Swagger Schema for the health check result (01ce13b), @​srdanielillo

Dependencies

  • deps: update dependency reflect-metadata to v0.2.1 (e2420bd)
  • deps: update prisma monorepo to v5.9.1 (d88770c)
  • deps: update dependency class-validator to v0.14.1 (#2479) (a8585ce)
  • deps: update dependency typeorm to v0.3.20 (#2480) (72e7f7a)
  • deps: update mikro-orm monorepo to v5.9.7 (#2481) (1eaa605)
  • deps: update nest monorepo (#2482) (3c555e0)

Release 10.2.2-beta.0

10.2.2-beta.0 (2024-01-31)

Bug Fixes

Release 10.2.1

10.2.1 (2024-01-26)

Bug Fixes

Dependencies

  • deps: update dependency @​grpc/grpc-js to v1.9.14 (#2455) (6ba52e5)

... (truncated)

Changelog

Sourced from @​nestjs/terminus's changelog.

10.2.3 (2024-02-18)

Bug Fixes

  • additional props in openapi health schema (38425de), closes #2516

10.2.2 (2024-02-07)

Bug Fixes

  • @​nestjs/terminus: generate the correct openapi health schema (01ce13b)
  • deps: update dependency reflect-metadata to v0.2.1 (e2420bd)
  • deps: update prisma monorepo to v5.9.1 (d88770c)
  • swagger definition for health check result additional props (44c06f6), closes #2516

10.2.2-beta.0 (2024-01-31)

Bug Fixes

10.2.1 (2024-01-26)

Bug Fixes

10.2.0 (2023-11-27)

10.2.0-beta.0 (2023-11-27)

Bug Fixes

  • deps: update dependency @​grpc/grpc-js to v1.9.11 (8b9477e)
  • deps: update dependency @​grpc/grpc-js to v1.9.3 (8205d8e)
  • deps: update dependency @​grpc/proto-loader to v0.7.10 (#2398) (c16da49)
  • deps: update dependency @​mikro-orm/nestjs to v5.2.2 (0c72183)
  • deps: update dependency @​nestjs/axios to v3 (6f1d4bb)
  • deps: update dependency @​nestjs/axios to v3.0.1 (#2438) (7239bb0)

... (truncated)

Commits
  • 46f675c chore(): release v10.2.3
  • 38425de fix: additional props in openapi health schema
  • 67e532d chore(): release v10.2.2
  • 44c06f6 fix: swagger definition for health check result additional props
  • fa75778 chore: Remove unneeded Dockerfile
  • 211db53 chore: use --legacy-peer-deps temporarily
  • d45913d chore: update @nestjs/* dependencies
  • 18a8e6d chore: update package-lock.json
  • d811d44 Merge pull request #2498 from nestjs/renovate/actions-cache-4.x
  • 3188168 Merge pull request #2497 from nestjs/renovate/prisma-monorepo
  • Additional commits viewable in compare view

Updates @nestjs/websockets from 8.4.1 to 10.3.6

Release notes

Sourced from @​nestjs/websockets's releases.

v10.3.6 (2024-03-27)

Bug fixes

Dependencies

Committers: 2

v10.3.4 (2024-03-18)

Bug fixes

Enhancements

Docs

Dependencies

... (truncated)

Commits

Updates @nestjs/testing from 8.4.1 to 10.3.6

Release notes

Sourced from @​nestjs/testing's releases.

v10.3.6 (2024-03-27)

Bug fixes

Dependencies

Committers: 2

v10.3.4 (2024-03-18)

Bug fixes

Enhancements

Docs

Dependencies

... (truncated)

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.

[//]: # (dependabot-automerg...

Description has been truncated

…estjs/platform-ws, @nestjs/terminus, @nestjs/websockets and @nestjs/testing

Bumps [express](https://github.com/expressjs/express) to 4.19.2 and updates ancestor dependencies [express](https://github.com/expressjs/express), [@nestjs/core](https://github.com/nestjs/nest/tree/HEAD/packages/core), [@nestjs/platform-express](https://github.com/nestjs/nest/tree/HEAD/packages/platform-express), [@nestjs/platform-ws](https://github.com/nestjs/nest/tree/HEAD/packages/platform-ws), [@nestjs/terminus](https://github.com/nestjs/terminus), [@nestjs/websockets](https://github.com/nestjs/nest/tree/HEAD/packages/websockets) and [@nestjs/testing](https://github.com/nestjs/nest/tree/HEAD/packages/testing). These dependencies need to be updated together.


Updates `express` from 4.17.3 to 4.19.2
- [Release notes](https://github.com/expressjs/express/releases)
- [Changelog](https://github.com/expressjs/express/blob/master/History.md)
- [Commits](expressjs/express@4.17.3...4.19.2)

Updates `@nestjs/core` from 8.4.1 to 10.3.6
- [Release notes](https://github.com/nestjs/nest/releases)
- [Commits](https://github.com/nestjs/nest/commits/v10.3.6/packages/core)

Updates `@nestjs/platform-express` from 8.4.1 to 10.3.6
- [Release notes](https://github.com/nestjs/nest/releases)
- [Commits](https://github.com/nestjs/nest/commits/v10.3.6/packages/platform-express)

Updates `@nestjs/platform-ws` from 8.4.1 to 10.3.6
- [Release notes](https://github.com/nestjs/nest/releases)
- [Commits](https://github.com/nestjs/nest/commits/v10.3.6/packages/platform-ws)

Updates `@nestjs/terminus` from 8.0.6 to 10.2.3
- [Release notes](https://github.com/nestjs/terminus/releases)
- [Changelog](https://github.com/nestjs/terminus/blob/master/CHANGELOG.md)
- [Commits](nestjs/terminus@8.0.6...10.2.3)

Updates `@nestjs/websockets` from 8.4.1 to 10.3.6
- [Release notes](https://github.com/nestjs/nest/releases)
- [Commits](https://github.com/nestjs/nest/commits/v10.3.6/packages/websockets)

Updates `@nestjs/testing` from 8.4.1 to 10.3.6
- [Release notes](https://github.com/nestjs/nest/releases)
- [Commits](https://github.com/nestjs/nest/commits/v10.3.6/packages/testing)

---
updated-dependencies:
- dependency-name: express
  dependency-type: indirect
- dependency-name: "@nestjs/core"
  dependency-type: direct:production
- dependency-name: "@nestjs/platform-express"
  dependency-type: direct:production
- dependency-name: "@nestjs/platform-ws"
  dependency-type: direct:production
- dependency-name: "@nestjs/terminus"
  dependency-type: direct:production
- dependency-name: "@nestjs/websockets"
  dependency-type: direct:production
- dependency-name: "@nestjs/testing"
  dependency-type: direct:development
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot requested a review from mKeRix as a code owner March 27, 2024 23:01
@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Mar 27, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

0 participants