Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

dependabot #164

Open
wants to merge 46 commits into
base: master
Choose a base branch
from
Open

dependabot #164

wants to merge 46 commits into from

Conversation

ValentinGratz
Copy link

update dependabot of github

dependabot bot and others added 30 commits October 24, 2023 11:34
Bumps [hosted-git-info](https://github.com/npm/hosted-git-info) from 2.5.0 to 2.8.9.
- [Release notes](https://github.com/npm/hosted-git-info/releases)
- [Changelog](https://github.com/npm/hosted-git-info/blob/v2.8.9/CHANGELOG.md)
- [Commits](npm/hosted-git-info@v2.5.0...v2.8.9)

---
updated-dependencies:
- dependency-name: hosted-git-info
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [y18n](https://github.com/yargs/y18n) from 3.2.1 to 3.2.2.
- [Release notes](https://github.com/yargs/y18n/releases)
- [Changelog](https://github.com/yargs/y18n/blob/master/CHANGELOG.md)
- [Commits](https://github.com/yargs/y18n/commits)

---
updated-dependencies:
- dependency-name: y18n
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [ua-parser-js](https://github.com/faisalman/ua-parser-js) from 0.7.14 to 0.7.36.
- [Release notes](https://github.com/faisalman/ua-parser-js/releases)
- [Changelog](https://github.com/faisalman/ua-parser-js/blob/master/CHANGELOG.md)
- [Commits](faisalman/ua-parser-js@0.7.14...0.7.36)

---
updated-dependencies:
- dependency-name: ua-parser-js
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [elliptic](https://github.com/indutny/elliptic) from 6.4.0 to 6.5.4.
- [Commits](indutny/elliptic@v6.4.0...v6.5.4)

---
updated-dependencies:
- dependency-name: elliptic
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [lodash](https://github.com/lodash/lodash) from 4.17.4 to 4.17.21.
- [Release notes](https://github.com/lodash/lodash/releases)
- [Commits](lodash/lodash@4.17.4...4.17.21)

---
updated-dependencies:
- dependency-name: lodash
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
…sh-4.17.21

Bump lodash from 4.17.4 to 4.17.21
Bumps [crypto-js](https://github.com/brix/crypto-js) from 3.1.9-1 to 3.2.1.
- [Commits](brix/crypto-js@3.1.9-1...3.2.1)

---
updated-dependencies:
- dependency-name: crypto-js
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
…ptic-6.5.4

Bump elliptic from 6.4.0 to 6.5.4
Bumps [bootstrap](https://github.com/twbs/bootstrap) from 4.0.0-beta to 4.0.0-beta.2.
- [Release notes](https://github.com/twbs/bootstrap/releases)
- [Commits](twbs/bootstrap@v4.0.0-beta...v4.0.0-beta.2)

---
updated-dependencies:
- dependency-name: bootstrap
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
…ed-git-info-2.8.9

Bump hosted-git-info from 2.5.0 to 2.8.9
…arser-js-0.7.36

Bump ua-parser-js from 0.7.14 to 0.7.36
Bumps [ini](https://github.com/npm/ini) from 1.3.5 to 1.3.8.
- [Release notes](https://github.com/npm/ini/releases)
- [Changelog](https://github.com/npm/ini/blob/main/CHANGELOG.md)
- [Commits](npm/ini@v1.3.5...v1.3.8)

---
updated-dependencies:
- dependency-name: ini
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps the npm_and_yarn at /. security update group with 2 updates: [node-sass](https://github.com/sass/node-sass) and [tough-cookie](https://github.com/salesforce/tough-cookie).


Updates `node-sass` from 4.5.3 to 7.0.0
- [Release notes](https://github.com/sass/node-sass/releases)
- [Changelog](https://github.com/sass/node-sass/blob/master/CHANGELOG.md)
- [Commits](sass/node-sass@v4.5.3...v7.0.0)

Removes `tough-cookie`

Updates `node-sass` from 7.0.0 to 9.0.0
- [Release notes](https://github.com/sass/node-sass/releases)
- [Changelog](https://github.com/sass/node-sass/blob/master/CHANGELOG.md)
- [Commits](sass/node-sass@v4.5.3...v7.0.0)

---
updated-dependencies:
- dependency-name: node-sass
  dependency-type: direct:production
- dependency-name: tough-cookie
  dependency-type: indirect
- dependency-name: node-sass
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
…e-sass-and-tough-cookie-and-node-sass-7.0.0

Bump the npm_and_yarn at /. security update group with 2 updates
…to-js-3.2.1

Bump crypto-js from 3.1.9-1 to 3.2.1
…strap-4.0.0-beta.2

Bump bootstrap from 4.0.0-beta to 4.0.0-beta.2
Bumps the npm_and_yarn at /. security update group with 3 updates: [mkdirp](https://github.com/isaacs/node-mkdirp), [minimist](https://github.com/minimistjs/minimist) and [loader-fs-cache](https://github.com/viankakrisna/loader-fs-cache).


Updates `mkdirp` from 0.5.0 to 0.5.1
- [Changelog](https://github.com/isaacs/node-mkdirp/blob/main/CHANGELOG.md)
- [Commits](isaacs/node-mkdirp@0.5.0...0.5.1)

Updates `minimist` from 1.2.0 to 1.2.8
- [Changelog](https://github.com/minimistjs/minimist/blob/main/CHANGELOG.md)
- [Commits](minimistjs/minimist@v1.2.0...v1.2.8)

Updates `loader-fs-cache` from 1.0.1 to 1.0.3
- [Commits](https://github.com/viankakrisna/loader-fs-cache/commits)

---
updated-dependencies:
- dependency-name: mkdirp
  dependency-type: indirect
- dependency-name: minimist
  dependency-type: indirect
- dependency-name: loader-fs-cache
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps the npm_and_yarn at /. security update group with 3 updates: [redux-form](https://github.com/redux-form/redux-form), [braces](https://github.com/micromatch/braces) and [watchpack](https://github.com/webpack/watchpack).


Updates `redux-form` from 7.1.1 to 8.3.10
- [Release notes](https://github.com/redux-form/redux-form/releases)
- [Changelog](https://github.com/redux-form/redux-form/blob/master/CHANGELOG.md)
- [Commits](redux-form/redux-form@v7.1.1...v8.3.10)

Updates `braces` from 1.8.5 to 3.0.2
- [Changelog](https://github.com/micromatch/braces/blob/master/CHANGELOG.md)
- [Commits](micromatch/braces@1.8.5...3.0.2)

Updates `watchpack` from 1.4.0 to 1.7.5
- [Release notes](https://github.com/webpack/watchpack/releases)
- [Commits](webpack/watchpack@v1.4.0...v1.7.5)

---
updated-dependencies:
- dependency-name: redux-form
  dependency-type: direct:production
- dependency-name: braces
  dependency-type: indirect
- dependency-name: watchpack
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
…irp-and-minimist-and-loader-fs-cache-0.5.1

Bump the npm_and_yarn at /. security update group with 3 updates
…ux-form-and-braces-and-watchpack-8.3.10

Bump the npm_and_yarn at /. security update group with 3 updates
Bumps [fsevents](https://github.com/fsevents/fsevents) from 1.2.9 to 1.2.13.
- [Release notes](https://github.com/fsevents/fsevents/releases)
- [Commits](fsevents/fsevents@v1.2.9...v1.2.13)

---
updated-dependencies:
- dependency-name: fsevents
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [moment](https://github.com/moment/moment) from 2.19.0 to 2.29.4.
- [Changelog](https://github.com/moment/moment/blob/develop/CHANGELOG.md)
- [Commits](moment/moment@2.19.0...2.29.4)

---
updated-dependencies:
- dependency-name: moment
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
…ents-1.2.13

Bump fsevents from 1.2.9 to 1.2.13
Bumps [async](https://github.com/caolan/async) from 2.5.0 to 2.6.4.
- [Release notes](https://github.com/caolan/async/releases)
- [Changelog](https://github.com/caolan/async/blob/v2.6.4/CHANGELOG.md)
- [Commits](caolan/async@v2.5.0...v2.6.4)

---
updated-dependencies:
- dependency-name: async
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [minimatch](https://github.com/isaacs/minimatch) from 3.0.4 to 3.0.8.
- [Changelog](https://github.com/isaacs/minimatch/blob/main/changelog.md)
- [Commits](isaacs/minimatch@v3.0.4...v3.0.8)

---
updated-dependencies:
- dependency-name: minimatch
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
…ent-2.29.4

Bump moment from 2.19.0 to 2.29.4
…imatch-3.0.8

Bump minimatch from 3.0.4 to 3.0.8
dependabot bot and others added 16 commits October 24, 2023 12:01
Bumps [lodash-es](https://github.com/lodash/lodash) from 4.17.4 to 4.17.21.
- [Release notes](https://github.com/lodash/lodash/releases)
- [Commits](lodash/lodash@4.17.4...4.17.21)

---
updated-dependencies:
- dependency-name: lodash-es
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps the npm_and_yarn at /. security update group with 3 updates: [copy-webpack-plugin](https://github.com/webpack-contrib/copy-webpack-plugin), [webpack](https://github.com/webpack/webpack) and [loader-utils](https://github.com/webpack/loader-utils).


Updates `copy-webpack-plugin` from 4.1.1 to 11.0.0
- [Release notes](https://github.com/webpack-contrib/copy-webpack-plugin/releases)
- [Changelog](https://github.com/webpack-contrib/copy-webpack-plugin/blob/master/CHANGELOG.md)
- [Commits](webpack-contrib/copy-webpack-plugin@v4.1.1...v11.0.0)

Updates `webpack` from 2.7.0 to 5.89.0
- [Release notes](https://github.com/webpack/webpack/releases)
- [Commits](webpack/webpack@v2.7.0...v5.89.0)

Updates `loader-utils` from 1.1.0 to 1.4.2
- [Release notes](https://github.com/webpack/loader-utils/releases)
- [Changelog](https://github.com/webpack/loader-utils/blob/v1.4.2/CHANGELOG.md)
- [Commits](webpack/loader-utils@v1.1.0...v1.4.2)

---
updated-dependencies:
- dependency-name: copy-webpack-plugin
  dependency-type: direct:development
- dependency-name: webpack
  dependency-type: direct:development
- dependency-name: loader-utils
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [macaddress](https://github.com/scravy/node-macaddress) from 0.2.8 to 0.2.9.
- [Release notes](https://github.com/scravy/node-macaddress/releases)
- [Commits](scravy/node-macaddress@0.2.8...0.2.9)

---
updated-dependencies:
- dependency-name: macaddress
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
…address-0.2.9

Bump macaddress from 0.2.8 to 0.2.9
…y-webpack-plugin-and-webpack-and-loader-utils-11.0.0

Bump the npm_and_yarn at /. security update group with 3 updates
…ash-es-4.17.21

Bump lodash-es from 4.17.4 to 4.17.21
Bumps [react-dom](https://github.com/facebook/react/tree/HEAD/packages/react-dom) from 16.0.0 to 16.0.1.
- [Release notes](https://github.com/facebook/react/releases)
- [Changelog](https://github.com/facebook/react/blob/main/CHANGELOG.md)
- [Commits](https://github.com/facebook/react/commits/HEAD/packages/react-dom)

---
updated-dependencies:
- dependency-name: react-dom
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [ajv](https://github.com/ajv-validator/ajv) to 6.12.6 and updates ancestor dependencies [ajv](https://github.com/ajv-validator/ajv), [eslint](https://github.com/eslint/eslint) and [postcss-loader](https://github.com/webpack-contrib/postcss-loader). These dependencies need to be updated together.


Updates `ajv` from 5.2.3 to 6.12.6
- [Release notes](https://github.com/ajv-validator/ajv/releases)
- [Commits](ajv-validator/ajv@v5.2.3...v6.12.6)

Updates `eslint` from 4.8.0 to 8.52.0
- [Release notes](https://github.com/eslint/eslint/releases)
- [Changelog](https://github.com/eslint/eslint/blob/main/CHANGELOG.md)
- [Commits](eslint/eslint@v4.8.0...v8.52.0)

Updates `postcss-loader` from 2.0.7 to 2.1.6
- [Release notes](https://github.com/webpack-contrib/postcss-loader/releases)
- [Changelog](https://github.com/webpack-contrib/postcss-loader/blob/master/CHANGELOG.md)
- [Commits](webpack-contrib/postcss-loader@v2.0.7...v2.1.6)

---
updated-dependencies:
- dependency-name: ajv
  dependency-type: indirect
- dependency-name: eslint
  dependency-type: direct:development
- dependency-name: postcss-loader
  dependency-type: direct:development
...

Signed-off-by: dependabot[bot] <[email protected]>
…-and-eslint-and-postcss-loader-6.12.6

Bump ajv, eslint and postcss-loader
…ct-dom-16.0.1

Bump react-dom from 16.0.0 to 16.0.1
Bumps [qs](https://github.com/ljharb/qs) from 6.5.1 to 6.5.3.
- [Changelog](https://github.com/ljharb/qs/blob/main/CHANGELOG.md)
- [Commits](ljharb/qs@v6.5.1...v6.5.3)

---
updated-dependencies:
- dependency-name: qs
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [jszip](https://github.com/Stuk/jszip) from 3.1.4 to 3.8.0.
- [Changelog](https://github.com/Stuk/jszip/blob/main/CHANGES.md)
- [Commits](Stuk/jszip@v3.1.4...v3.8.0)

---
updated-dependencies:
- dependency-name: jszip
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [debug](https://github.com/debug-js/debug) from 2.6.8 to 2.6.9.
- [Release notes](https://github.com/debug-js/debug/releases)
- [Changelog](https://github.com/debug-js/debug/blob/2.6.9/CHANGELOG.md)
- [Commits](debug-js/debug@2.6.8...2.6.9)

---
updated-dependencies:
- dependency-name: debug
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant