Sašo Vučič
|
b9ec98fee7
|
fix(express): Update body-parser to 1.20.4 for CVE-2025-15284
|
2026-01-09 20:23:55 +01:00 |
|
Kamil Myśliwiec
|
cd2bd3e1b4
|
chore: upgrade lerna to the latest version
|
2026-01-08 10:40:26 +01:00 |
|
Kamil Myśliwiec
|
2e55ee1883
|
chore: upgrade lerna to the latest version
|
2026-01-08 10:37:58 +01:00 |
|
Sašo Vučič
|
eb0f29d3b7
|
fix(express): update express to 4.22.1 to address CVE-2025-15284
Refs: CVE-2025-15284
|
2026-01-05 10:45:45 +01:00 |
|
Chathula
|
983216b10e
|
chore: update package lock
|
2025-04-11 15:07:40 +02:00 |
|
Chathula
|
ac04c340f3
|
chore: use load-esm to use file type package
|
2025-04-11 14:44:39 +02:00 |
|
renovate[bot]
|
27aaa560e1
|
chore(deps): update dependency @fastify/middie to v8.3.3
|
2024-12-09 09:17:53 +00:00 |
|
Kamil Mysliwiec
|
fd7d10f69f
|
Merge pull request #14285 from nestjs/renovate/typescript-eslint-monorepo
chore(deps): update dependency @typescript-eslint/parser to v8.17.0
|
2024-12-09 10:12:34 +01:00 |
|
dependabot[bot]
|
a9a7a9095c
|
chore(deps-dev): bump prettier from 3.3.3 to 3.4.2
Bumps [prettier](https://github.com/prettier/prettier) from 3.3.3 to 3.4.2.
- [Release notes](https://github.com/prettier/prettier/releases)
- [Changelog](https://github.com/prettier/prettier/blob/main/CHANGELOG.md)
- [Commits](https://github.com/prettier/prettier/compare/3.3.3...3.4.2)
---
updated-dependencies:
- dependency-name: prettier
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-12-09 00:26:34 +00:00 |
|
renovate[bot]
|
0d0b5f7098
|
chore(deps): update dependency @typescript-eslint/parser to v8.17.0
|
2024-12-06 14:58:59 +00:00 |
|
renovate[bot]
|
03e0af6440
|
fix(deps): update dependency mongoose to v8.8.4
|
2024-12-06 11:06:42 +00:00 |
|
Kamil Mysliwiec
|
9e5e4f6db3
|
Merge pull request #14280 from nestjs/renovate/commitlint-monorepo
chore(deps): update dependency @commitlint/cli to v19.6.0
|
2024-12-06 12:02:51 +01:00 |
|
renovate[bot]
|
4971ef3a5a
|
chore(deps): update dependency @commitlint/cli to v19.6.0
|
2024-12-06 07:19:17 +00:00 |
|
renovate[bot]
|
f4b242a6aa
|
fix(deps): update dependency express to v4.21.2
|
2024-12-06 07:18:47 +00:00 |
|
Kamil Mysliwiec
|
fb72d01118
|
Merge pull request #14275 from nestjs/renovate/amqplib-0.x
chore(deps): update dependency @types/amqplib to v0.10.6
|
2024-12-05 13:39:23 +01:00 |
|
renovate[bot]
|
42c4316777
|
fix(deps): update nest-graphql monorepo to v12.2.2
|
2024-12-05 07:42:01 +00:00 |
|
renovate[bot]
|
a03363f9ca
|
chore(deps): update dependency @types/amqplib to v0.10.6
|
2024-12-05 07:41:40 +00:00 |
|
dependabot[bot]
|
84ab3145a9
|
chore(deps-dev): bump @grpc/grpc-js from 1.12.2 to 1.12.4
Bumps [@grpc/grpc-js](https://github.com/grpc/grpc-node) from 1.12.2 to 1.12.4.
- [Release notes](https://github.com/grpc/grpc-node/releases)
- [Commits](https://github.com/grpc/grpc-node/compare/@grpc/grpc-js@1.12.2...@grpc/grpc-js@1.12.4)
---
updated-dependencies:
- dependency-name: "@grpc/grpc-js"
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-12-05 00:28:49 +00:00 |
|
dependabot[bot]
|
07886bf320
|
chore(deps-dev): bump @typescript-eslint/eslint-plugin
Bumps [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) from 8.15.0 to 8.17.0.
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/eslint-plugin/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.17.0/packages/eslint-plugin)
---
updated-dependencies:
- dependency-name: "@typescript-eslint/eslint-plugin"
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-12-04 00:26:06 +00:00 |
|
renovate[bot]
|
06349b61cd
|
chore(deps): update dependency @types/bytes to v3.1.5
|
2024-12-03 10:41:23 +00:00 |
|
Kamil Mysliwiec
|
bc50321c7a
|
Merge pull request #14245 from nestjs/renovate/mqtt-5.x
chore(deps): update dependency mqtt to v5.10.3
|
2024-12-03 09:35:52 +01:00 |
|
dependabot[bot]
|
425121d809
|
chore(deps-dev): bump graphql-tools from 9.0.3 to 9.0.5
Bumps [graphql-tools](https://github.com/ardatan/graphql-tools/tree/HEAD/packages/graphql-tools) from 9.0.3 to 9.0.5.
- [Release notes](https://github.com/ardatan/graphql-tools/releases)
- [Changelog](https://github.com/ardatan/graphql-tools/blob/master/packages/graphql-tools/CHANGELOG.md)
- [Commits](https://github.com/ardatan/graphql-tools/commits/graphql-tools@9.0.5/packages/graphql-tools)
---
updated-dependencies:
- dependency-name: graphql-tools
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-12-02 00:24:21 +00:00 |
|
renovate[bot]
|
d7b460c8b8
|
chore(deps): update dependency mqtt to v5.10.3
|
2024-12-01 19:16:43 +00:00 |
|
renovate[bot]
|
c0a87b868f
|
chore(deps): update dependency @types/chai to v4.3.20
|
2024-11-28 10:37:21 +00:00 |
|
dependabot[bot]
|
d51448cae6
|
chore(deps-dev): bump @commitlint/config-angular from 19.5.0 to 19.6.0
Bumps [@commitlint/config-angular](https://github.com/conventional-changelog/commitlint/tree/HEAD/@commitlint/config-angular) from 19.5.0 to 19.6.0.
- [Release notes](https://github.com/conventional-changelog/commitlint/releases)
- [Changelog](https://github.com/conventional-changelog/commitlint/blob/master/@commitlint/config-angular/CHANGELOG.md)
- [Commits](https://github.com/conventional-changelog/commitlint/commits/v19.6.0/@commitlint/config-angular)
---
updated-dependencies:
- dependency-name: "@commitlint/config-angular"
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-11-28 00:46:51 +00:00 |
|
renovate[bot]
|
ffaa6de5c4
|
fix(deps): update dependency path-to-regexp to v3.3.0 [security]
|
2024-11-27 11:16:04 +00:00 |
|
renovate[bot]
|
09f1d002f3
|
chore(deps): update dependency @types/node to v22.10.0
|
2024-11-27 10:22:41 +00:00 |
|
Kamil Mysliwiec
|
feb75da3ce
|
Merge pull request #14209 from nestjs/renovate/amqplib-0.x
chore(deps): update dependency amqplib to v0.10.5
|
2024-11-27 08:50:02 +01:00 |
|
renovate[bot]
|
46db58c196
|
chore(deps): update dependency amqplib to v0.10.5
|
2024-11-27 07:47:07 +00:00 |
|
renovate[bot]
|
afb889dd21
|
chore(deps): update dependency husky to v9.1.7
|
2024-11-27 07:22:52 +00:00 |
|
dependabot[bot]
|
c90553bb05
|
chore(deps-dev): bump mongoose from 8.8.1 to 8.8.3
Bumps [mongoose](https://github.com/Automattic/mongoose) from 8.8.1 to 8.8.3.
- [Release notes](https://github.com/Automattic/mongoose/releases)
- [Changelog](https://github.com/Automattic/mongoose/blob/master/CHANGELOG.md)
- [Commits](https://github.com/Automattic/mongoose/compare/8.8.1...8.8.3)
---
updated-dependencies:
- dependency-name: mongoose
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-11-27 00:39:08 +00:00 |
|
dependabot[bot]
|
646c663366
|
chore(deps): bump light-my-request from 6.1.0 to 6.3.0
Bumps [light-my-request](https://github.com/fastify/light-my-request) from 6.1.0 to 6.3.0.
- [Release notes](https://github.com/fastify/light-my-request/releases)
- [Commits](https://github.com/fastify/light-my-request/compare/v6.1.0...v6.3.0)
---
updated-dependencies:
- dependency-name: light-my-request
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-11-22 00:26:01 +00:00 |
|
dependabot[bot]
|
76e73c26d5
|
chore(deps-dev): bump @types/mocha from 10.0.9 to 10.0.10
Bumps [@types/mocha](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/mocha) from 10.0.9 to 10.0.10.
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/mocha)
---
updated-dependencies:
- dependency-name: "@types/mocha"
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-11-21 00:23:58 +00:00 |
|
dependabot[bot]
|
70c18e9e7b
|
chore(deps-dev): bump @typescript-eslint/parser from 8.14.0 to 8.15.0
Bumps [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) from 8.14.0 to 8.15.0.
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.15.0/packages/parser)
---
updated-dependencies:
- dependency-name: "@typescript-eslint/parser"
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-11-20 07:42:35 +00:00 |
|
dependabot[bot]
|
d4e5743c9b
|
chore(deps-dev): bump @typescript-eslint/eslint-plugin
Bumps [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) from 8.14.0 to 8.15.0.
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/eslint-plugin/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.15.0/packages/eslint-plugin)
---
updated-dependencies:
- dependency-name: "@typescript-eslint/eslint-plugin"
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-11-19 00:49:10 +00:00 |
|
Kamil Myśliwiec
|
f00192f4f1
|
chore: regenerate package-lock
|
2024-11-16 20:32:25 +01:00 |
|
Kamil Myśliwiec
|
d9a592d899
|
chore: update package json
|
2024-11-16 20:01:52 +01:00 |
|
pabloaguilarm
|
4d3d39158a
|
build(socket.io): update engine.io dependencies for cookie vulnerability
|
2024-10-16 19:59:59 +02:00 |
|
Kamil Mysliwiec
|
508d2f3428
|
Merge pull request #14060 from ezintz/fix-express-vulnerabilities
build(express): upgrade to express 4.2.1
|
2024-10-16 12:36:34 +02:00 |
|
Patricia Ahern
|
980eb5bb0a
|
build(fastify): upgrade light-my-request to 6.1.0
|
2024-10-10 19:14:57 -05:00 |
|
Eduard Zintz
|
160c3b37d8
|
build(express): upgrade to express 4.2.1
fixes vulnerabilites with cookie and path-to-regexp, see
https://github.com/jshttp/cookie/security/advisories/GHSA-pxg6-pf52-xh8x
https://github.com/advisories/GHSA-9wv6-86v2-598j
|
2024-10-10 09:31:46 +02:00 |
|
Kamil Mysliwiec
|
9d9b03366f
|
Merge pull request #13992 from nestjs/dependabot/npm_and_yarn/concurrently-9.0.1
chore(deps-dev): bump concurrently from 8.2.2 to 9.0.1
|
2024-09-18 09:44:53 +02:00 |
|
Kamil Mysliwiec
|
51ba90249d
|
Merge pull request #13995 from nestjs/dependabot/npm_and_yarn/nodemon-3.1.5
chore(deps-dev): bump nodemon from 3.1.4 to 3.1.5
|
2024-09-18 09:43:29 +02:00 |
|
Kamil Mysliwiec
|
545061c0b2
|
Merge pull request #13996 from nestjs/dependabot/npm_and_yarn/sinon-19.0.2
chore(deps-dev): bump sinon from 18.0.0 to 19.0.2
|
2024-09-18 09:43:13 +02:00 |
|
dependabot[bot]
|
3149bbca59
|
chore(deps-dev): bump @types/mocha from 10.0.7 to 10.0.8
Bumps [@types/mocha](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/mocha) from 10.0.7 to 10.0.8.
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/mocha)
---
updated-dependencies:
- dependency-name: "@types/mocha"
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-09-18 01:00:54 +00:00 |
|
dependabot[bot]
|
a77a55291d
|
chore(deps-dev): bump sinon from 18.0.0 to 19.0.2
Bumps [sinon](https://github.com/sinonjs/sinon) from 18.0.0 to 19.0.2.
- [Release notes](https://github.com/sinonjs/sinon/releases)
- [Changelog](https://github.com/sinonjs/sinon/blob/main/docs/changelog.md)
- [Commits](https://github.com/sinonjs/sinon/compare/v18.0.0...v19.0.2)
---
updated-dependencies:
- dependency-name: sinon
dependency-type: direct:development
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-09-18 01:00:04 +00:00 |
|
dependabot[bot]
|
d68a7c1e55
|
chore(deps-dev): bump nodemon from 3.1.4 to 3.1.5
Bumps [nodemon](https://github.com/remy/nodemon) from 3.1.4 to 3.1.5.
- [Release notes](https://github.com/remy/nodemon/releases)
- [Commits](https://github.com/remy/nodemon/compare/v3.1.4...v3.1.5)
---
updated-dependencies:
- dependency-name: nodemon
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-09-18 00:59:33 +00:00 |
|
dependabot[bot]
|
b5e34f4cfc
|
chore(deps-dev): bump concurrently from 8.2.2 to 9.0.1
Bumps [concurrently](https://github.com/open-cli-tools/concurrently) from 8.2.2 to 9.0.1.
- [Release notes](https://github.com/open-cli-tools/concurrently/releases)
- [Commits](https://github.com/open-cli-tools/concurrently/compare/v8.2.2...v9.0.1)
---
updated-dependencies:
- dependency-name: concurrently
dependency-type: direct:development
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-09-18 00:57:49 +00:00 |
|
Kamil Mysliwiec
|
2009e9b6af
|
Revert "chore(deps-dev): bump @typescript-eslint/eslint-plugin from 7.18.0 to 8.6.0"
|
2024-09-17 09:35:13 +02:00 |
|
Kamil Mysliwiec
|
00ae6c523a
|
Merge pull request #13976 from nestjs/dependabot/npm_and_yarn/typescript-5.6.2
chore(deps-dev): bump typescript from 5.5.4 to 5.6.2
|
2024-09-17 09:19:55 +02:00 |
|