[Snyk] Upgrade: , async-each, git-url-parse, ora, path-exists, shelljs, yargs #162
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade multiple dependencies.
👯♂ The following dependencies are linked and will therefore be updated together.ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
@babel/polyfill
⚠️ This is a major version upgrade, and may be a breaking change | 2 months ago
⚠️ This is a major version upgrade, and may be a breaking change | 9 months ago
⚠️ This is a major version upgrade, and may be a breaking change | 3 years ago
⚠️ This is a major version upgrade, and may be a breaking change | a year ago
from 7.2.5 to 7.12.1 | 12 versions ahead of your current version | 4 years ago
on 2020-10-15
async-each
from 1.0.1 to 1.0.6 | 5 versions ahead of your current version | 2 years ago
on 2023-02-04
git-url-parse
from 11.1.2 to 14.1.0 | 15 versions ahead of your current version
on 2024-07-15
ora
from 4.0.3 to 8.0.1 | 22 versions ahead of your current version
on 2023-12-23
path-exists
from 3.0.0 to 5.0.0 | 2 versions ahead of your current version
on 2021-08-12
shelljs
from 0.8.3 to 0.8.5 | 2 versions ahead of your current version | 3 years ago
on 2022-01-07
yargs
from 7.1.0 to 17.7.2 | 116 versions ahead of your current version
on 2023-04-27
Issues fixed by the recommended upgrade:
SNYK-JS-SEMVER-3247795
SNYK-JS-SHELLJS-2332187
SNYK-JS-Y18N-1021887
SNYK-JS-ANSIREGEX-1583908
SNYK-JS-PARSEPATH-2936439
SNYK-JS-PARSEURL-3024398
SNYK-JS-YARGSPARSER-560381
SNYK-JS-HOSTEDGITINFO-1088355
SNYK-JS-PARSEURL-2935944
SNYK-JS-PARSEURL-2935947
SNYK-JS-PARSEURL-2936249
SNYK-JS-PARSEURL-2942134
SNYK-JS-PARSEURL-3023021
Release notes
Package name: @babel/polyfill
Package name: async-each
No content.
No content.
Full Changelog: 1.0.3...1.0.4
Release 1.0.3.
Release 1.0.2.
Release 1.0.1.
Package name: git-url-parse
fix parsing with 'blob' in file path /cc #168
Reencode owner and repo names -- thanks @ lfcyja 🍰
fixed name and organization issue when parsing on the issue URL
Add edit filetype support /cc #146 -- thanks @ ggdaltoso! 🍰
git-url-parse@13.0.0
There are breaking changes due to the update to
parse-url@^8.0.0
. ✨git-url-parse
12.0.0This is a major release fixing several issues and improving the security of the project.
Breaking changes
href
property instead ofpathname
.user
andpassword
properties are now parsed separately.For other potential breaking changes, you may want to check out the release of
git-up
.Issues Fixed
If you have any suggestions and questions let me know. 😊
Fix parsing Bitbucket Server urls with files located in subfolders -- thanks @ goober! 🍰
Add support for Bitbucket Server repository root and commit endpoints /cc #128 -- thanks @ goober 🍰
Add Azure DevOps parsing git branch /cc #124 Thanks @ n2ygk! 🍰
Package name: ora
v8.0.0...v8.0.1
Breaking
Improvements
v7.0.1...v8.0.0
v7.0.0...v7.0.1
Breaking
v6.3.1...v7.0.0
v6.3.0...v6.3.1
suffixText
option (#223) 2378eafv6.2.0...v6.3.0
spinners
export to be able to access all available spinners (#222) f2ac111v6.1.2...v6.2.0
v6.1.1...v6.1.2
v6.1.0...v6.1.1
interval
as a getter 447812bv6.0.1...v6.1.0
Package name: path-exists
Breaking
v4.0.0...v5.0.0
Breaking:
Enhancements:
v3.0.0...v4.0.0
3.0.0
Package name: shelljs
This was a small security fix for #1058.
Small patch release to fix a circular dependency warning in node v14. See #973.
Closed issues:
.to\(file\)
does not mute STDIO output #146Merged pull requests:
Package name: yargs
17.7.2 (2023-04-27)
Bug Fixes
17.7.1 (2023-02-21)
Bug Fixes
17.7.0 (2023-02-13)
Features
Bug Fixes
17.6.2 (2022-11-03)
Bug Fixes
17.6.1 (2022-11-02)
Bug Fixes
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information: