chore(deps): bump the npm_and_yarn group across 1 directory with 28 updates#1
Open
dependabot[bot] wants to merge 1 commit intomainfrom
Open
chore(deps): bump the npm_and_yarn group across 1 directory with 28 updates#1dependabot[bot] wants to merge 1 commit intomainfrom
dependabot[bot] wants to merge 1 commit intomainfrom
Conversation
…pdates Bumps the npm_and_yarn group with 28 updates in the / directory: | Package | From | To | | --- | --- | --- | | [@openzeppelin/contracts](https://github.com/OpenZeppelin/openzeppelin-contracts) | `4.9.3` | `4.9.6` | | [@openzeppelin/contracts-upgradeable](https://github.com/OpenZeppelin/openzeppelin-contracts-upgradeable) | `4.9.3` | `5.4.0` | | [express](https://github.com/expressjs/express) | `4.21.2` | `5.0.0` | | [zod](https://github.com/colinhacks/zod) | `3.21.2` | `3.22.3` | | [vitest](https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest) | `1.4.0` | `1.6.1` | | [@solana/web3.js](https://github.com/solana-foundation/solana-web3.js) | `1.95.4` | `1.95.5` | | [tmp](https://github.com/raszi/node-tmp) | `0.2.3` | `0.2.4` | | [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) | `5.3.5` | `5.4.19` | | [@babel/helpers](https://github.com/babel/babel/tree/HEAD/packages/babel-helpers) | `7.23.9` | `7.28.3` | | [@babel/runtime](https://github.com/babel/babel/tree/HEAD/packages/babel-runtime) | `7.22.5` | `7.28.3` | | [@grpc/grpc-js](https://github.com/grpc/grpc-node) | `1.10.8` | `1.10.11` | | [axios](https://github.com/axios/axios) | `1.7.2` | `1.11.0` | | [base-x](https://github.com/cryptocoinjs/base-x) | `3.0.9` | `3.0.11` | | [braces](https://github.com/micromatch/braces) | `3.0.2` | `3.0.3` | | [cipher-base](https://github.com/crypto-browserify/cipher-base) | `1.0.4` | `1.0.6` | | [decode-uri-component](https://github.com/SamVerschueren/decode-uri-component) | `0.2.0` | `0.2.2` | | [es5-ext](https://github.com/medikoo/es5-ext) | `0.10.61` | `0.10.64` | | [follow-redirects](https://github.com/follow-redirects/follow-redirects) | `1.15.1` | `1.15.11` | | [get-func-name](https://github.com/chaijs/get-func-name) | `2.0.0` | `2.0.2` | | [http-cache-semantics](https://github.com/kornelski/http-cache-semantics) | `4.1.0` | `4.2.0` | | [micromatch](https://github.com/micromatch/micromatch) | `4.0.5` | `4.0.8` | | [pbkdf2](https://github.com/crypto-browserify/pbkdf2) | `3.1.2` | `3.1.3` | | [rollup](https://github.com/rollup/rollup) | `3.29.4` | `3.29.5` | | [semver](https://github.com/npm/node-semver) | `5.7.1` | `5.7.2` | | [sha.js](https://github.com/crypto-browserify/sha.js) | `2.4.11` | `2.4.12` | | [store2](https://github.com/nbubna/store) | `2.14.3` | `2.14.4` | | [tar-fs](https://github.com/mafintosh/tar-fs) | `1.16.4` | `1.16.5` | | [word-wrap](https://github.com/jonschlinkert/word-wrap) | `1.2.3` | `1.2.5` | Updates `@openzeppelin/contracts` from 4.9.3 to 4.9.6 - [Release notes](https://github.com/OpenZeppelin/openzeppelin-contracts/releases) - [Changelog](https://github.com/OpenZeppelin/openzeppelin-contracts/blob/master/CHANGELOG.md) - [Commits](OpenZeppelin/openzeppelin-contracts@v4.9.3...v4.9.6) Updates `@openzeppelin/contracts-upgradeable` from 4.9.3 to 5.4.0 - [Release notes](https://github.com/OpenZeppelin/openzeppelin-contracts-upgradeable/releases) - [Changelog](https://github.com/OpenZeppelin/openzeppelin-contracts-upgradeable/blob/master/CHANGELOG.md) - [Commits](OpenZeppelin/openzeppelin-contracts-upgradeable@v4.9.3...v5.4.0) Updates `express` from 4.21.2 to 5.0.0 - [Release notes](https://github.com/expressjs/express/releases) - [Changelog](https://github.com/expressjs/express/blob/master/History.md) - [Commits](expressjs/express@4.21.2...v5.0.0) Updates `zod` from 3.21.2 to 3.22.3 - [Release notes](https://github.com/colinhacks/zod/releases) - [Commits](colinhacks/zod@v3.21.2...v3.22.3) Updates `vitest` from 1.4.0 to 1.6.1 - [Release notes](https://github.com/vitest-dev/vitest/releases) - [Commits](https://github.com/vitest-dev/vitest/commits/v1.6.1/packages/vitest) Updates `@solana/web3.js` from 1.95.4 to 1.95.5 - [Release notes](https://github.com/solana-foundation/solana-web3.js/releases) - [Changelog](https://github.com/solana-foundation/solana-web3.js/blob/maintenance/v1.x/.releaserc.json) - [Commits](solana-foundation/solana-web3.js@v1.95.4...v1.95.5) Updates `tmp` from 0.2.3 to 0.2.4 - [Changelog](https://github.com/raszi/node-tmp/blob/master/CHANGELOG.md) - [Commits](raszi/node-tmp@v0.2.3...v0.2.4) Updates `vite` from 5.3.5 to 5.4.19 - [Release notes](https://github.com/vitejs/vite/releases) - [Changelog](https://github.com/vitejs/vite/blob/v5.4.19/packages/vite/CHANGELOG.md) - [Commits](https://github.com/vitejs/vite/commits/v5.4.19/packages/vite) Updates `@babel/helpers` from 7.23.9 to 7.28.3 - [Release notes](https://github.com/babel/babel/releases) - [Changelog](https://github.com/babel/babel/blob/main/CHANGELOG.md) - [Commits](https://github.com/babel/babel/commits/v7.28.3/packages/babel-helpers) Updates `@babel/runtime` from 7.22.5 to 7.28.3 - [Release notes](https://github.com/babel/babel/releases) - [Changelog](https://github.com/babel/babel/blob/main/CHANGELOG.md) - [Commits](https://github.com/babel/babel/commits/v7.28.3/packages/babel-runtime) Updates `@grpc/grpc-js` from 1.10.8 to 1.10.11 - [Release notes](https://github.com/grpc/grpc-node/releases) - [Commits](https://github.com/grpc/grpc-node/compare/@grpc/grpc-js@1.10.8...@grpc/grpc-js@1.10.11) Updates `axios` from 1.7.2 to 1.11.0 - [Release notes](https://github.com/axios/axios/releases) - [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md) - [Commits](axios/axios@v1.7.2...v1.11.0) Updates `base-x` from 3.0.9 to 3.0.11 - [Commits](cryptocoinjs/base-x@v3.0.9...v3.0.11) Updates `braces` from 3.0.2 to 3.0.3 - [Changelog](https://github.com/micromatch/braces/blob/master/CHANGELOG.md) - [Commits](micromatch/braces@3.0.2...3.0.3) Updates `cipher-base` from 1.0.4 to 1.0.6 - [Changelog](https://github.com/browserify/cipher-base/blob/master/CHANGELOG.md) - [Commits](browserify/cipher-base@v1.0.4...v1.0.6) Updates `decode-uri-component` from 0.2.0 to 0.2.2 - [Release notes](https://github.com/SamVerschueren/decode-uri-component/releases) - [Commits](SamVerschueren/decode-uri-component@v0.2.0...v0.2.2) Updates `es5-ext` from 0.10.61 to 0.10.64 - [Release notes](https://github.com/medikoo/es5-ext/releases) - [Changelog](https://github.com/medikoo/es5-ext/blob/main/CHANGELOG.md) - [Commits](medikoo/es5-ext@v0.10.61...v0.10.64) Updates `follow-redirects` from 1.15.1 to 1.15.11 - [Release notes](https://github.com/follow-redirects/follow-redirects/releases) - [Commits](follow-redirects/follow-redirects@v1.15.1...v1.15.11) Updates `get-func-name` from 2.0.0 to 2.0.2 - [Release notes](https://github.com/chaijs/get-func-name/releases) - [Commits](https://github.com/chaijs/get-func-name/commits/v2.0.2) Updates `http-cache-semantics` from 4.1.0 to 4.2.0 - [Commits](https://github.com/kornelski/http-cache-semantics/commits) Updates `micromatch` from 4.0.5 to 4.0.8 - [Release notes](https://github.com/micromatch/micromatch/releases) - [Changelog](https://github.com/micromatch/micromatch/blob/master/CHANGELOG.md) - [Commits](micromatch/micromatch@4.0.5...4.0.8) Updates `pbkdf2` from 3.1.2 to 3.1.3 - [Changelog](https://github.com/browserify/pbkdf2/blob/master/CHANGELOG.md) - [Commits](browserify/pbkdf2@v3.1.2...v3.1.3) Updates `rollup` from 3.29.4 to 3.29.5 - [Release notes](https://github.com/rollup/rollup/releases) - [Changelog](https://github.com/rollup/rollup/blob/master/CHANGELOG.md) - [Commits](rollup/rollup@v3.29.4...v3.29.5) Updates `semver` from 5.7.1 to 5.7.2 - [Release notes](https://github.com/npm/node-semver/releases) - [Changelog](https://github.com/npm/node-semver/blob/v5.7.2/CHANGELOG.md) - [Commits](npm/node-semver@v5.7.1...v5.7.2) Updates `sha.js` from 2.4.11 to 2.4.12 - [Changelog](https://github.com/browserify/sha.js/blob/master/CHANGELOG.md) - [Commits](browserify/sha.js@v2.4.11...v2.4.12) Updates `store2` from 2.14.3 to 2.14.4 - [Commits](nbubna/store@2.14.3...2.14.4) Updates `tar-fs` from 1.16.4 to 1.16.5 - [Commits](mafintosh/tar-fs@v1.16.4...v1.16.5) Updates `word-wrap` from 1.2.3 to 1.2.5 - [Release notes](https://github.com/jonschlinkert/word-wrap/releases) - [Commits](jonschlinkert/word-wrap@1.2.3...1.2.5) --- updated-dependencies: - dependency-name: "@openzeppelin/contracts" dependency-version: 4.9.6 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: "@openzeppelin/contracts-upgradeable" dependency-version: 5.4.0 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: express dependency-version: 5.0.0 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: zod dependency-version: 3.22.3 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: vitest dependency-version: 1.6.1 dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: "@solana/web3.js" dependency-version: 1.95.5 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: tmp dependency-version: 0.2.4 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: vite dependency-version: 5.4.19 dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: "@babel/helpers" dependency-version: 7.28.3 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@babel/runtime" dependency-version: 7.28.3 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@grpc/grpc-js" dependency-version: 1.10.11 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: axios dependency-version: 1.11.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: base-x dependency-version: 3.0.11 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: braces dependency-version: 3.0.3 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: cipher-base dependency-version: 1.0.6 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: decode-uri-component dependency-version: 0.2.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: es5-ext dependency-version: 0.10.64 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: follow-redirects dependency-version: 1.15.11 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: get-func-name dependency-version: 2.0.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: http-cache-semantics dependency-version: 4.2.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: micromatch dependency-version: 4.0.8 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: pbkdf2 dependency-version: 3.1.3 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: rollup dependency-version: 3.29.5 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: semver dependency-version: 5.7.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: sha.js dependency-version: 2.4.12 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: store2 dependency-version: 2.14.4 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: tar-fs dependency-version: 1.16.5 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: word-wrap dependency-version: 1.2.5 dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the npm_and_yarn group with 28 updates in the / directory:
4.9.34.9.64.9.35.4.04.21.25.0.03.21.23.22.31.4.01.6.11.95.41.95.50.2.30.2.45.3.55.4.197.23.97.28.37.22.57.28.31.10.81.10.111.7.21.11.03.0.93.0.113.0.23.0.31.0.41.0.60.2.00.2.20.10.610.10.641.15.11.15.112.0.02.0.24.1.04.2.04.0.54.0.83.1.23.1.33.29.43.29.55.7.15.7.22.4.112.4.122.14.32.14.41.16.41.16.51.2.31.2.5Updates
@openzeppelin/contractsfrom 4.9.3 to 4.9.6Release notes
Sourced from
@openzeppelin/contracts's releases.Changelog
Sourced from
@openzeppelin/contracts's changelog.Commits
dc44c9fRelease v4.9.6 (#4931)a6286d0Port Base64 tests to truffle (#4926) (#4929)bd325d5Release v4.9.5 (#4790)ad6a5b6Add changeset88ac712Replace doublefunctionDelegateCalla83918dBump node CI version to 16.x0d5f54eRelease v4.9.4 (#4784)ccfffe1Make Multicall context-aware9329cfaRemove Wizard page from 4.xe1b3d8cRemove Wizard from 4.x navigationUpdates
@openzeppelin/contracts-upgradeablefrom 4.9.3 to 5.4.0Release notes
Sourced from
@openzeppelin/contracts-upgradeable's releases.... (truncated)
Changelog
Sourced from
@openzeppelin/contracts-upgradeable's changelog.... (truncated)
Commits
e725abdTranspile c64a1edb614f68d0Transpile f19bf2900d95c31cTranspile 84a600ba7f163b61Transpile fffade5f960d6d81Transpile 54a8027af59ee474Transpile f12605ad429056a0Transpile 83b829e0d473630fTranspile 2e152ba69fe097cfTranspile a3418506073cfbceTranspile e1277f7adMaintainer changes
This version was pushed to npm by arr00, a new releaser for
@openzeppelin/contracts-upgradeablesince your current version.Updates
expressfrom 4.21.2 to 5.0.0Release notes
Sourced from express's releases.
... (truncated)
Changelog
Sourced from express's changelog.
... (truncated)
Commits
344b0225.0.00c49926fix(deps): send@^1.1.0b3906cbfix(deps): serve-static@^2.1.0fed8c2afix(deps): body-parser@^2.0.1bdd81f8Deletebackas a magic string (#5933)6c98f80🔧 update CI, remove unsupported versions, clean upf9256efMerge branch '5.0' into 5-mergee5feb9fMerge tag '4.20.0' into 5.00264908feat(deps)!: router@^2.0.0 (#5885)4d713d2update to fresh@2.0.0 (#5916)Updates
zodfrom 3.21.2 to 3.22.3Commits
1e61d763.22.32ba00fe[2609] fix ReDoS vulnerability in email regex (#2824)ae0f7a2docs: update ref to discriminated-unions docs (#2485)ad2ee9c2718 Updated Custom Schemas documentation example to use type narrowing (#2778)28c1927Update sponsors18115a8Formatting64dcc8eUpdate sponsorsf59be09clarify datetime ISO 8601 (#2673)9bd3879docs: remove obsolete text about readonly types (#2676)1e23990CommitUpdates
vitestfrom 1.4.0 to 1.6.1Release notes
Sourced from vitest's releases.
... (truncated)
Commits
017e1eechore: release v1.6.17ce9fbbfix: backport #7317 to v1 (#7319)6b29f3dchore: release v1.6.0f8d3d22feat(benchmark): support comparing benchmark result (#5398)21e58bdfeat(browser): allow injecting scripts (#5656)30f728bfeat: custom "snapshotEnvironment" option (#5449)2f91322feat(reporter): supportincludeConsoleOutputandaddFileAttributein juni...c571276perf: unnecessary rpc call when coverage is disabled (#5658)bdce0a2feat: support standalone mode (#5565)40c299ffix: don't panic on empty files in node_modulesUpdates
@solana/web3.jsfrom 1.95.4 to 1.95.5Release notes
Sourced from
@solana/web3.js's releases.Commits
526ce5ffix: addedprogramIdfield in TokenBalance type (#3592)474c5a9chore: bump commitlint from 19.5.0 to 19.6.0 (#3610)d8beaa7chore: bump@commitlint/config-conventionalfrom 19.5.0 to 19.6.0 (#3609)d961599chore: bump rollup from 4.27.2 to 4.27.3 (#3606)21ee79dchore: create a composite action that builds GitHub Pages7158228chore: bump rollup from 4.26.0 to 4.27.2 (#3590)48deec7chore: bump rollup from 4.25.0 to 4.26.0 (#3562)b790a64chore: bump rollup from 4.24.4 to 4.25.0 (#3551)fd9d1bfchore: bump mockttp from 3.15.3 to 3.15.4 (#3550)a240574chore: bump rollup from 4.24.3 to 4.24.4 (#3521)Updates
tmpfrom 0.2.3 to 0.2.4Commits
08fa3abUpdate version1cf4ec5Merge commit from fork188b25eFix GHSA-52f5-9888-hmc673b9fe4Add test case for GHSA-52f5-9888-hmc6b8e2f29Remove broken tests2892a02Remove outdated URLf592318Reformat package.json995ac8cMerge pull request #301 from raszi/dependabot/npm_and_yarn/braces-3.0.3caa758dBump braces from 3.0.2 to 3.0.3Updates
vitefrom 5.3.5 to 5.4.19Release notes
Sourced from vite's releases.
Changelog
Sourced from vite's changelog.
... (truncated)
Commits
80a333arelease: v5.4.19766947efix: backport #19965, check static serve file inside sirv (#19966)731b77drelease: v5.4.18823675bfix: backport #19830, reject requests with#in request-target (#19831)0a2518arelease: v5.4.1784b2b46fix: backport #19782, fs check with svg and relative paths (#19784)712cb71release: v5.4.16b627c50fix: backport #19761, fs check in transform middleware (#19762)9b0f4c8release: v5.4.15807d7f0fix: backport #19702, fs raw query with query separators (#19703)Updates
@babel/helpersfrom 7.23.9 to 7.28.3Release notes
Sourced from
@babel/helpers's releases.... (truncated)
Changelog
Sourced from
@babel/helpers's changelog.