Image-Reverse-Search-WebExtension
Image-Reverse-Search-WebExtension copied to clipboard
Bump fast-json-patch and web-ext
Bumps fast-json-patch to 3.1.1 and updates ancestor dependency web-ext. These dependencies need to be updated together.
Updates fast-json-patch from 2.2.1 to 3.1.1
Release notes
Sourced from fast-json-patch's releases.
3.1.1
Security Fix for Prototype Pollution - huntr.dev #262
Bug fixes and ES6 modules
Use ES6 Modules
- package now exports non-bundled ES module Starcounter-Jack/JSON-Patch#232
mainstill points to CommonJS module for backward compatibility- README recommends use of named ES imports
List of changes https://github.com/Starcounter-Jack/JSON-Patch/compare/v2.2.1...3.0.0-0
Use ES6 Modules
- package now exports non-bundled ES module Starcounter-Jack/JSON-Patch#232
mainstill points to CommonJS module for backward compatibility- README recommends use of named ES imports
Full list of changes https://github.com/Starcounter-Jack/JSON-Patch/compare/v2.2.1...3.0.0-0
Commits
9d313acfix(tests): Updated tests to reflect new error messagee4f4eb33.1.1d7903fbfix: typescript codegen changes5f04488Bumping version number7e9fe13Typescript provided097864aDocumentation updated51964edfeat: Cleaned up vars vs consts8a6a360New buildadeb422Update .gitignore59336feMerge pull request #292 from Starcounter-Jack/dependabot/npm_and_yarn/ajv-6.12.6- Additional commits viewable in compare view
Maintainer changes
This version was pushed to npm by mountain-jack, a new releaser for fast-json-patch since your current version.
Updates web-ext from 7.1.1 to 7.6.1
Release notes
Sourced from web-ext's releases.
7.6.1
main changes
- Update
xml2jsandfirefox-profile(#2721)7.6.0
Features
- web-ext lint: updated to use
addons-linterto 5.32.0 (#2680)- web-ext sign: add a CLI option to disable the progress bar (#2625)
Bug Fixes
- web-ext run: fix help message to mention "deved" alias for "firefoxdeveloperedition" (#2637)
- Other dependencies updated:
See all changes: https://github.com/mozilla/web-ext/compare/7.5.0...7.6.0
Note: this will very likely be the last
web-extversion that officially supports Node 14.7.5.0
Features
- web-ext lint: updated to use addons-linter v5.27.0 (#2573, #2583, #2602, #2619)
- import Firefox
109.0b9API schema- ensure empty ZIP files will output results when auto-close feature is disabled
- switch to vendored
ajv-merge-patchlibrary to fix a potential security issue- prevent errors when
permissionsin manifest.json isn't an array- web-ext sign: send user agent header with signing requests (#2540)
Bug Fixes
... (truncated)
Commits
37c02427.6.14122f94chore(deps): bump xml2js and firefox-profile (#2721)00fda6a7.6.03c54b36chore(deps): bump addons-linter from 5.31.0 to 5.32.0 (#2680)b827e37chore(deps-dev): bump eslint from 8.35.0 to 8.36.0 (#2668)9ba86d2chore(deps): ignore https://github.com/advisories/GHSA-p8p7-x288-28g6 for now...6fe7ba1chore(deps-dev): bump prettier from 2.8.4 to 2.8.5 (#2677)345ebd8chore(deps-dev): bump@babel/corefrom 7.21.0 to 7.21.3 (#2674)44e0f8fchore(deps-dev): bump@babel/eslint-parserfrom 7.19.1 to 7.21.3 (#2673)ec31073chore(deps): bump ws from 8.12.1 to 8.13.0 (#2671)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the Security Alerts page.