Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix(deps): update dependency express-session to v1.18.1 #231

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

renovate[bot]
Copy link

@renovate renovate bot commented Nov 21, 2023

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
express-session 1.17.3 -> 1.18.1 age adoption passing confidence

Release Notes

expressjs/session (express-session)

v1.18.1

Compare Source

==========

  • deps: cookie@0.7.2
    • Fix object assignment of hasOwnProperty
  • deps: cookie@0.7.1
    • Allow leading dot for domain
      • Although not permitted in the spec, some users expect this to work and user agents ignore the leading dot according to spec
    • Add fast path for serialize without options, use obj.hasOwnProperty when parsing
  • deps: cookie@0.7.0
    • perf: parse cookies ~10% faster
    • fix: narrow the validation of cookies to match RFC6265
    • fix: add main to package.json for rspack

v1.18.0

Compare Source

===================

  • Add debug log for pathname mismatch
  • Add partitioned to cookie options
  • Add priority to cookie options
  • Fix handling errors from setting cookie
  • Support any type in secret that crypto.createHmac supports
  • deps: cookie@0.6.0
    • Fix expires option to reject invalid dates
    • perf: improve default decode speed
    • perf: remove slow string split in parse
  • deps: cookie-signature@1.0.7

Configuration

📅 Schedule: Branch creation - "after 7am and before 11am every weekday" in timezone Europe/London, Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot added the dependencies Exempt label for stalebot label Nov 21, 2023
@renovate renovate bot changed the title fix(deps): update dependency express-session to v1.17.3 fix(deps): update dependency express-session to v1.18.0 Jan 30, 2024
@renovate renovate bot force-pushed the renovate/express-session-1.x-lockfile branch from 80cd19f to 3895edf Compare January 30, 2024 05:44
@renovate renovate bot force-pushed the renovate/express-session-1.x-lockfile branch from 3895edf to d17a2e9 Compare February 27, 2024 08:17
@renovate renovate bot force-pushed the renovate/express-session-1.x-lockfile branch from d17a2e9 to bfeb18c Compare July 1, 2024 09:20
@renovate renovate bot force-pushed the renovate/express-session-1.x-lockfile branch 2 times, most recently from 8682f5b to d3ebdb9 Compare July 18, 2024 15:44
Copy link

sonarcloud bot commented Jul 18, 2024

@renovate renovate bot force-pushed the renovate/express-session-1.x-lockfile branch from d3ebdb9 to 307019a Compare September 11, 2024 13:19
Copy link

sonarcloud bot commented Sep 11, 2024

@renovate renovate bot changed the title fix(deps): update dependency express-session to v1.18.0 fix(deps): update dependency express-session to v1.18.1 Oct 9, 2024
@renovate renovate bot force-pushed the renovate/express-session-1.x-lockfile branch from 307019a to 191d488 Compare October 9, 2024 05:22
@renovate renovate bot force-pushed the renovate/express-session-1.x-lockfile branch from 191d488 to 0af0af4 Compare November 13, 2024 12:31
Copy link

sonarcloud bot commented Nov 13, 2024

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Exempt label for stalebot
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants