[Snyk] Upgrade pacote from 9.5.12 to 15.1.1 #2
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to upgrade pacote from 9.5.12 to 15.1.1.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
Warning: This is a major version upgrade, and may be a breaking change.
Release notes
Package name: pacote
15.1.1 (2023-02-21)
Bug Fixes
8f4e39c
#261 always ignore ownership from tar headers (#261) (@ nlf)15.1.0 (2023-02-13)
Features
2916b72
#259 verifyAttestations to registry.manifest (@ feelepxyz, @ bdehamer)Dependencies
f0bd19b
add sigstore 1.0.015.0.8 (2022-12-14)
Dependencies
40aa6fe
#253 bump fs-minipass from 2.1.0 to 3.0.015.0.7 (2022-12-07)
Dependencies
a734d61
#250 bump minipass from 3.3.6 to 4.0.015.0.6 (2022-11-02)
Dependencies
dbbda43
#246@ npmcli/run-script@6.0.0
15.0.5 (2022-11-01)
Dependencies
63797a8
#244 bump @ npmcli/promise-spawn from 5.0.0 to 6.0.1 (#244)15.0.4 (2022-10-26)
Dependencies
854fad1
#239 bump @ npmcli/promise-spawn from 4.0.0 to 5.0.0 (#239)15.0.3 (2022-10-19)
Dependencies
2a95ddb
#235 bump @ npmcli/installed-package-contents (#235)15.0.2 (2022-10-18)
Bug Fixes
95f9cd5
handle new npm-package-arg semantics (@ wraithgar)Dependencies
2ed4d22
npm-package-arg@10.0.0
15.0.1 (2022-10-17)
Dependencies
74821c2
#229 bump @ npmcli/run-script from 4.2.1 to 5.0.0 (#229)a9844d0
#226 bump @ npmcli/promise-spawn from 3.0.0 to 4.0.0 (#226)1058177
#227 bump read-package-json from 5.0.2 to 6.0.00f5ef8a
#228 bump @ npmcli/installed-package-contents from 1.0.7 to 2.0.07e3b4b5
#220 bump ssri from 9.0.1 to 10.0.04e7536d
#222 bump @ npmcli/git from 3.0.2 to 4.0.03bc7550
#223 bump npm-pick-manifest from 7.0.2 to 8.0.041fab27
#224 bump proc-log from 2.0.1 to 3.0.04abf24a
#218 bump npm-registry-fetch from 13.3.1 to 14.0.0 (#218)Commit messages
Package name: pacote
Compare
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:
🧐 View latest project report
🛠 Adjust upgrade PR settings
🔕 Ignore this dependency or unsubscribe from future upgrade PRs