Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

build(deps): bump express, @mikro-orm/nestjs, @nestjs/core, @nestjs/platform-express, @nestjs/swagger and @nestjs/testing #55

Closed
wants to merge 1 commit into from

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jul 3, 2024

Bumps express to 4.19.2 and updates ancestor dependencies express, @mikro-orm/nestjs, @nestjs/core, @nestjs/platform-express, @nestjs/swagger and @nestjs/testing. These dependencies need to be updated together.

Updates express from 4.18.2 to 4.19.2

Release notes

Sourced from express's releases.

4.19.2

What's Changed

Full Changelog: expressjs/express@4.19.1...4.19.2

4.19.1

What's Changed

Full Changelog: expressjs/express@4.19.0...4.19.1

4.19.0

What's Changed

New Contributors

Full Changelog: expressjs/express@4.18.3...4.19.0

4.18.3

Main Changes

  • Fix routing requests without method
  • deps: body-parser@1.20.2
    • Fix strict json error message on Node.js 19+
    • deps: content-type@~1.0.5
    • deps: raw-body@2.5.2

Other Changes

... (truncated)

Changelog

Sourced from express's changelog.

4.19.2 / 2024-03-25

  • Improved fix for open redirect allow list bypass

4.19.1 / 2024-03-20

  • Allow passing non-strings to res.location with new encoding handling checks

4.19.0 / 2024-03-20

  • Prevent open redirect allow list bypass due to encodeurl
  • deps: cookie@0.6.0

4.18.3 / 2024-02-29

  • Fix routing requests without method
  • deps: body-parser@1.20.2
    • Fix strict json error message on Node.js 19+
    • deps: content-type@~1.0.5
    • deps: raw-body@2.5.2
  • deps: cookie@0.6.0
    • Add partitioned option
Commits
  • 04bc627 4.19.2
  • da4d763 Improved fix for open redirect allow list bypass
  • 4f0f6cc 4.19.1
  • a003cfa Allow passing non-strings to res.location with new encoding handling checks f...
  • a1fa90f fixed un-edited version in history.md for 4.19.0
  • 11f2b1d build: fix build due to inconsistent supertest behavior in older versions
  • 084e365 4.19.0
  • 0867302 Prevent open redirect allow list bypass due to encodeurl
  • 567c9c6 Add note on how to update docs for new release (#5541)
  • 69a4cf2 deps: cookie@0.6.0
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by wesleytodd, a new releaser for express since your current version.


Updates @mikro-orm/nestjs from 5.1.8 to 5.2.3

Release notes

Sourced from @​mikro-orm/nestjs's releases.

v5.2.3

What's Changed

  • fix: defer automatic clear call on autoLoadEntities cache done on shutdown 8b670e

Full Changelog: mikro-orm/nestjs@v5.2.2...v5.2.3

v5.2.2

Full Changelog: mikro-orm/nestjs@v5.2.1...v5.2.2

Features

  • clear the autoLoadEntities cache automatically on app shutdown (#4733) (aca7c01)

v5.2.1

Bug Fixes

  • fix weird bugs when vitest is used with autoLoadEntities (cd7767a), closes #134

Features

v5.2.0

What's Changed

  • support NestJS 10

Full Changelog: mikro-orm/nestjs@v5.1.8...v5.2.0

Changelog

Sourced from @​mikro-orm/nestjs's changelog.

5.2.3 (2023-08-23)

Features

  • defer automatic clear call on autoLoadEntities cache done on shutdown (8b670eb)

5.2.2 (2023-08-23)

Features

  • clear the autoLoadEntities cache automatically on app shutdown (#4733) (aca7c01)

5.2.1 (2023-08-16)

Bug Fixes

  • fix weird bugs when vitest is used with autoLoadEntities (cd7767a), closes #134

Features

5.2.0 (2023-06-24)

  • support NestJS 10
Commits
  • 1f8046a chore: release v5.2.3
  • 8b670eb fix: defer automatic clear call on autoLoadEntities cache done on shutdown
  • 6d04209 chore(deps): update dependency typescript to v5.3.3
  • 55defed chore(deps): update dependency typescript to v5.3.2
  • 1d3d7c5 chore(deps): update yarn to v4.0.2
  • 46451e6 ci: dont test on node 14
  • de5e8f6 ci: remove caching
  • 8a22059 ci: try to fix caching
  • 702d59e chore: fix workflow
  • 712bc14 chore: update yarn
  • Additional commits viewable in compare view

Updates @nestjs/core from 9.4.0 to 10.3.10

Release notes

Sourced from @​nestjs/core's releases.

v10.3.10 (2024-07-01)

Bug fixes

Enhancements

  • platform-fastify

Dependencies

... (truncated)

Commits

Updates @nestjs/platform-express from 9.4.0 to 10.3.10

Release notes

Sourced from @​nestjs/platform-express's releases.

v10.3.10 (2024-07-01)

Bug fixes

Enhancements

  • platform-fastify

Dependencies

... (truncated)

Commits

Updates @nestjs/swagger from 6.3.0 to 7.4.0

Release notes

Sourced from @​nestjs/swagger's releases.

Release 7.4.0

  • Merge pull request #2870 from arkraft/fix/array-enums-queries-or-params (d3bad9d)
  • Merge pull request #2835 from lit26/feature/add-response-decorator-from-comment (6c5a7f6)
  • Merge pull request #2992 from nestjs/renovate/release-it-17.x (29adc2d)
  • Merge pull request #2993 from nestjs/renovate/nest-monorepo (5e01879)
  • chore(deps): update nest monorepo to v10.3.10 (6fd3c1c)
  • chore(deps): update dependency release-it to v17.4.1 (4933f9e)
  • Merge pull request #2827 from nestjs/renovate/swagger-ui-dist-5.x (71f7af1)
  • Merge pull request #2994 from nestjs/revert-2909-fix-exclusive-min-max-types (6f1ee0c)
  • Merge pull request #2840 from lucas-gregoire/feat/allow-to-disable-swagger-ui (c541886)
  • Revert "fix: exclusive minimum and exclusive maximum are numbers" (9614b1d)
  • Merge pull request #2836 from lit26/feature/add-more-apiresponse (91a7c76)
  • Merge pull request #2869 from jinyongp/fix/cannot-find-typename-containing-promise-or-observable (91a40a3)
  • Merge pull request #2871 from lit26/feature/add-response-example (56622e8)
  • Merge pull request #2909 from mastermatt/fix-exclusive-min-max-types (d675211)
  • Merge pull request #2930 from nestjs/renovate/cimg-node-22.x (b7eeffd)
  • Merge pull request #2935 from slukes/add-enum-function (adb6561)
  • Merge pull request #2952 from voriteam/clintonb/name-bug (a57f853)
  • Merge pull request #2962 from nestjs/renovate/microsoft-tsdoc-0.x (d0a58e0)
  • Merge pull request #2985 from Azbesciak/patch-2 (b165909)
  • Merge branch 'nestjs:master' into fix/array-enums-queries-or-params (d74136b)
  • chore(deps): update dependency @​types/lodash to v4.17.6 (2245084)
  • (fix) invalid return value of refs shim (325ba73)
  • chore(deps): update dependency @​types/node to v20.14.9 (29331c7)
  • Merge branch 'nestjs:master' into feature/add-response-example (ff2cd2e)
  • Merge branch 'nestjs:master' into feature/add-response-decorator-from-comment (3baf1de)
  • Merge branch 'nestjs:master' into feature/add-more-apiresponse (2358cae)
  • chore(deps): update typescript-eslint monorepo to v7.14.1 (bdc3fde)
  • chore(deps): update dependency @​types/node to v20.14.8 (1805b12)
  • chore(deps): update dependency @​types/node to v20.14.7 (24ca49c)
  • chore(deps): update dependency release-it to v17.4.0 (1718d8b)
  • fix: add missing refs declaration in swagger-shim (bc1edc5)
  • chore(deps): update node.js to v22 (d286317)
  • chore(deps): update dependency @​types/node to v20.14.6 (0edbbfa)
  • chore(deps): update dependency @​types/node to v20.14.5 (5b8f7fa)
  • chore(deps): update dependency @​types/node to v20.14.4 (53f7023)
  • chore(deps): update typescript-eslint monorepo to v7.13.1 (45cfe0d)
  • chore(deps): update dependency ts-jest to v29.1.5 (9372130)
  • chore(deps): update dependency lint-staged to v15.2.7 (7e64f94)
  • chore(deps): update dependency lint-staged to v15.2.6 (6f07fa0)
  • chore(deps): update typescript-eslint monorepo to v7.13.0 (6d25f5a)
  • chore(deps): update dependency @​types/lodash to v4.17.5 (04f199a)
  • chore(deps): update dependency @​types/node to v20.14.2 (61fdb23)
  • chore(deps): update dependency @​types/node to v20.14.1 (d4b66f8)
  • chore(deps): update typescript-eslint monorepo to v7.12.0 (ffa315a)
  • chore(deps): update nest monorepo to v10.3.9 (3edab81)
  • chore(deps): update dependency @​types/node to v20.14.0 (96858e9)
  • chore(deps): update dependency @​types/node to v20.13.0 (b913771)
  • chore(deps): update dependency @​types/node to v20.12.13 (9c2e270)
  • fix(deps): update dependency @​microsoft/tsdoc to ^0.15.0 (910b677)

... (truncated)

Commits
  • 3eb32c9 chore(): release v7.4.0
  • d3bad9d Merge pull request #2870 from arkraft/fix/array-enums-queries-or-params
  • 6c5a7f6 Merge pull request #2835 from lit26/feature/add-response-decorator-from-comment
  • 29adc2d Merge pull request #2992 from nestjs/renovate/release-it-17.x
  • 5e01879 Merge pull request #2993 from nestjs/renovate/nest-monorepo
  • 6fd3c1c chore(deps): update nest monorepo to v10.3.10
  • 4933f9e chore(deps): update dependency release-it to v17.4.1
  • 71f7af1 Merge pull request #2827 from nestjs/renovate/swagger-ui-dist-5.x
  • 6f1ee0c Merge pull request #2994 from nestjs/revert-2909-fix-exclusive-min-max-types
  • c541886 Merge pull request #2840 from lucas-gregoire/feat/allow-to-disable-swagger-ui
  • Additional commits viewable in compare view

Updates @nestjs/testing from 9.4.0 to 10.3.10

Release notes

Sourced from @​nestjs/testing's releases.

v10.3.10 (2024-07-01)

Bug fixes

Enhancements

  • platform-fastify

Dependencies

... (truncated)

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

@dependabot dependabot bot added the Type: dependencies Pull requests that update a dependency file. label Jul 3, 2024
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/multi-75f3472943 branch from 04536a3 to 862aa65 Compare July 3, 2024 12:55
…latform-express, @nestjs/swagger and @nestjs/testing

Bumps [express](https://github.com/expressjs/express) to 4.19.2 and updates ancestor dependencies [express](https://github.com/expressjs/express), [@mikro-orm/nestjs](https://github.com/mikro-orm/nestjs), [@nestjs/core](https://github.com/nestjs/nest/tree/HEAD/packages/core), [@nestjs/platform-express](https://github.com/nestjs/nest/tree/HEAD/packages/platform-express), [@nestjs/swagger](https://github.com/nestjs/swagger) and [@nestjs/testing](https://github.com/nestjs/nest/tree/HEAD/packages/testing). These dependencies need to be updated together.


Updates `express` from 4.18.2 to 4.19.2
- [Release notes](https://github.com/expressjs/express/releases)
- [Changelog](https://github.com/expressjs/express/blob/master/History.md)
- [Commits](expressjs/express@4.18.2...4.19.2)

Updates `@mikro-orm/nestjs` from 5.1.8 to 5.2.3
- [Release notes](https://github.com/mikro-orm/nestjs/releases)
- [Changelog](https://github.com/mikro-orm/nestjs/blob/master/CHANGELOG.md)
- [Commits](mikro-orm/nestjs@v5.1.8...v5.2.3)

Updates `@nestjs/core` from 9.4.0 to 10.3.10
- [Release notes](https://github.com/nestjs/nest/releases)
- [Commits](https://github.com/nestjs/nest/commits/v10.3.10/packages/core)

Updates `@nestjs/platform-express` from 9.4.0 to 10.3.10
- [Release notes](https://github.com/nestjs/nest/releases)
- [Commits](https://github.com/nestjs/nest/commits/v10.3.10/packages/platform-express)

Updates `@nestjs/swagger` from 6.3.0 to 7.4.0
- [Release notes](https://github.com/nestjs/swagger/releases)
- [Changelog](https://github.com/nestjs/swagger/blob/master/.release-it.json)
- [Commits](nestjs/swagger@6.3.0...7.4.0)

Updates `@nestjs/testing` from 9.4.0 to 10.3.10
- [Release notes](https://github.com/nestjs/nest/releases)
- [Commits](https://github.com/nestjs/nest/commits/v10.3.10/packages/testing)

---
updated-dependencies:
- dependency-name: express
  dependency-type: indirect
- dependency-name: "@mikro-orm/nestjs"
  dependency-type: direct:production
- dependency-name: "@nestjs/core"
  dependency-type: direct:production
- dependency-name: "@nestjs/platform-express"
  dependency-type: direct:production
- dependency-name: "@nestjs/swagger"
  dependency-type: direct:production
- dependency-name: "@nestjs/testing"
  dependency-type: direct:development
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/multi-75f3472943 branch from 862aa65 to b6f65da Compare July 3, 2024 13:18
Copy link
Contributor Author

dependabot bot commented on behalf of github Jul 4, 2024

Looks like these dependencies are up-to-date now, so this is no longer needed.

@dependabot dependabot bot closed this Jul 4, 2024
@dependabot dependabot bot deleted the dependabot/npm_and_yarn/multi-75f3472943 branch July 4, 2024 06:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Type: dependencies Pull requests that update a dependency file.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants