| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Download Repo ZIP] [Original HTTPS Page] |
Sorry, something went wrong.
Bumps [on-headers](https://github.com/jshttp/on-headers) to 1.1.0 and updates ancestor dependencies [on-headers](https://github.com/jshttp/on-headers), [serve](https://github.com/vercel/serve) and [compression](https://github.com/expressjs/compression). These dependencies need to be updated together. Updates `on-headers` from 1.0.2 to 1.1.0 - [Release notes](https://github.com/jshttp/on-headers/releases) - [Changelog](https://github.com/jshttp/on-headers/blob/master/HISTORY.md) - [Commits](jshttp/on-headers@v1.0.2...v1.1.0) Updates `serve` from 14.2.4 to 14.2.5 - [Release notes](https://github.com/vercel/serve/releases) - [Commits](vercel/serve@14.2.4...v14.2.5) Updates `compression` from 1.7.4 to 1.8.1 - [Release notes](https://github.com/expressjs/compression/releases) - [Changelog](https://github.com/expressjs/compression/blob/master/HISTORY.md) - [Commits](expressjs/compression@1.7.4...v1.8.1) --- updated-dependencies: - dependency-name: on-headers dependency-version: 1.1.0 dependency-type: indirect - dependency-name: serve dependency-version: 14.2.5 dependency-type: direct:development - dependency-name: compression dependency-version: 1.8.1 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com>
|
Sorry, only users with push access can use that command. |
Sorry, something went wrong.
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file. If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
Sorry, something went wrong.
…thon#6168)" This reverts commit 272dd4d.
| Back | FazBrowse Home | New Git URL |
⚠️ Dependabot is rebasing this PR ⚠️
Rebasing might not happen immediately, so don't worry if this takes some time.
Note: if you make any changes to this PR yourself, they will take precedence over the rebase.
Bumps on-headers to 1.1.0 and updates ancestor dependencies on-headers, serve and compression. These dependencies need to be updated together.
Updates on-headers from 1.0.2 to 1.1.0
Release notesSourced from on-headers's releases.
ChangelogSourced from on-headers's changelog.
Commits- 4b017af 1.1.0
- b636f2d ♻️ refactor header array code
- 3e2c2d4 ✨ ignore falsy header keys, matching node behavior
- 172eb41 ✨ support duplicate headers
- c6e3849 🔒️ fix array handling
- 6893518 💚 update CI - add newer node versions
- 56a345d ✨ add script to update known hashes
- 175ab21 👷 add upstream change detection (#31)
- ce0b2c8 ci: apply OSSF Scorecard security best practices (#20)
- 1a38c54 fix: use ubuntu-latest as ci runner (#19)
- Additional commits viewable in compare view
Maintainer changesThis version was pushed to npm by ulisesgascon, a new releaser for on-headers since your current version.
Updates serve from 14.2.4 to 14.2.5
Release notesSourced from serve's releases.
CommitsUpdates compression from 1.7.4 to 1.8.1
Release notesSourced from compression's releases.
... (truncated)
ChangelogSourced from compression's changelog.
Commits- 83a0c45 1.8.1
- ce62713 deps: on-headers@1.1.0 (#246)
- f4acb23 build(deps-dev): bump eslint-plugin-import from 2.31.0 to 2.32.0 (#244)
- 6eaebe6 build(deps): bump actions/checkout from 4.1.1 to 4.2.2 (#241)
- 37e0623 build(deps): bump ossf/scorecard-action from 2.4.1 to 2.4.2 (#240)
- bc436b2 build(deps): bump actions/upload-artifact from 4.3.1 to 4.6.2 (#239)
- 2f9f572 build(deps): bump github/codeql-action from 3.28.15 to 3.29.2 (#243)
- 5f13b14 [StepSecurity] ci: Harden GitHub Actions (#235)
- 76e0945 build(deps-dev): bump supertest from 6.2.3 to 6.3.4 (#231)
- ae6ee80 build(deps-dev): bump eslint-plugin-import from 2.26.0 to 2.31.0 (#230)
- Additional commits viewable in compare view
Maintainer changesThis version was pushed to npm by ulisesgascon, a new releaser for compression since your current version.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
You can disable automated security fix PRs for this repo from the Security Alerts page.