wp-discourse
wp-discourse copied to clipboard
Bump tough-cookie and @wordpress/scripts in /admin/discourse-sidebar
Bumps tough-cookie to 4.1.3 and updates ancestor dependency @wordpress/scripts. These dependencies need to be updated together.
Updates tough-cookie from 2.5.0 to 4.1.3
Release notes
Sourced from tough-cookie's releases.
4.1.3
Security fix for Prototype Pollution discovery in #282. This is a minor release, although output from the
inspectutility is affected by this change, we felt this change was important enough to be pushed into the next patch.4.1.2 -- Patch and Bugfix Release
What's Changed
- fix: allow set cookies with localhost by
@colincaseyin salesforce/tough-cookie#253Full Changelog: https://github.com/salesforce/tough-cookie/compare/v4.1.1...v4.1.2
4.1.1
Patch Release
What's Changed
- fix: allow special use domains by default by
@colincaseyin salesforce/tough-cookie#249- 4.1.1 Patch -- allow special use domains by default by
@awatermain salesforce/tough-cookie#250Full Changelog: https://github.com/salesforce/tough-cookie/compare/v4.1.0...v4.1.1
4.1.0
v4.1.0
Minor release, focused mainly on resolving reported issues and some minor feature work.
What's Changed
- Create CHANGELOG.md by
@ShivanKaulin salesforce/tough-cookie#189- Missing param validation issue145 by
@medelibero-sfdcin salesforce/tough-cookie#193- Create SECURITY.md by
@ShivanKaulin salesforce/tough-cookie#201- Create CODE_OF_CONDUCT.md by
@ShivanKaulin salesforce/tough-cookie#200- Fix for issue #195 by
@medelibero-sfdcin salesforce/tough-cookie#202- Add explanation and more special-use domains by
@ShivanKaulin salesforce/tough-cookie#203- Sync of constructor options for serialization by
@medelibero-sfdcin salesforce/tough-cookie#204- Returned null in case of empty cookie value by
@vsin12in salesforce/tough-cookie#196- 132 str trim not a function by
@awatermain salesforce/tough-cookie#209- Fix for issue #153 by
@medelibero-sfdcin salesforce/tough-cookie#210- Fix permuteDomain with trailing dot by
@ruoho-sfdcin salesforce/tough-cookie#216- Issue #213 -- added gh-actions flow for building and testing tough-co… by
@awatermain salesforce/tough-cookie#218- Issue #210 -- Updated workflow to use npm install. by
@awatermain salesforce/tough-cookie#220- @GH-215 -- Tests that document localhost behavior when set as domain. by
@awatermain salesforce/tough-cookie#221- fix: MemoryCookieStore methods should exist on the prototype, not on the class. by
@wjhsfin salesforce/tough-cookie#226- Unit test cases for
allowSpecialUseDomainoption by@colincaseyin salesforce/tough-cookie#225- [Snyk] Upgrade universalify from 0.1.2 to 0.2.0 by
@snyk-botin salesforce/tough-cookie#228- React Native Support by
@colincaseyin salesforce/tough-cookie#227- Adding Updating CODEOWNERS with ECCN as per Export Control Compliance by
@svc-scmin salesforce/tough-cookie#223- fix: domain match routine by
@colincaseyin salesforce/tough-cookie#236- Stop using the internal NodeJS punycode module by
@gboerin salesforce/tough-cookie#238- Initial documentation review by
@mcarey86in salesforce/tough-cookie#234- fix: distinguish between no samesite and samesite=none by
@colincaseyin salesforce/tough-cookie#240- Prepare tough-cookie 4.1 for publishing (updated GitHub actions, move… by
@awatermain salesforce/tough-cookie#242- 4.1.0 release to NPM by
@awatermain salesforce/tough-cookie#245
... (truncated)
Commits
4ff4d294.1.3 release preparation, update the package and lib/version to 4.1.3. (#284)12d4747Prevent prototype pollution in cookie memstore (#283)f06b72dFix documentation for store.findCookies, missing allowSpecialUseDomain proper...b1a8898fix: allow set cookies with localhost (#253)ec707964.1.1 Patch -- allow special use domains by default (#250)d4ac580fix: allow special use domains by default (#249)79c2f7d4.1.0 release to NPM (#245)4fafc17Prepare tough-cookie 4.1 for publishing (updated GitHub actions, move Dockerf...aa4396dfix: distinguish between no samesite and samesite=none (#240)b8d7511Modernize README (#234)- Additional commits viewable in compare view
Maintainer changes
This version was pushed to npm by awaterma, a new releaser for tough-cookie since your current version.
Updates @wordpress/scripts from 14.0.1 to 26.8.0
Release notes
Sourced from @wordpress/scripts's releases.
16.3.0 RC1
Changelog
Enhancements
Site Editor
- Add delay and fade-in animation to loading spinner. (51902)
- Make "My patterns" category permanently visible. (52531)
- Remove "Theme patterns" heading in Pattern library. (52570)
- Remove sidebar group descriptions. (52453)
- Show warning on removal of Post Template block in the site editor. (52666)
- Swap pattern creation options. (52726)
- Update Dashboard button tooltips in the site editor. (52465)
- Update Site Editor frame z-index. (52180)
- Update descriptions in Pattern library. (52468)
- Update locked pattern tooltips. (52497)
- Update navigation menu title size & weight in detail panels. (52477)
- Update pattern library copy. (52340)
- Show more intuitive archive titles on Query Title block. (52521)
Patterns
- Add hint to show template part move. (52395)
- Add renaming, duplication, and deletion options. (52270)
- Add sync tooltip. (52458)
- Display all custom template part areas in sidebar nav. (52355)
- Don't override the rootClientID in create menu - only set if undefined. (52713)
- Enable focus mode editing. (52427)
- Remove
reusabletext from menu once rename hint has been dismissed. (52664)- Stop endless snackbars appearing. (52012)
- Sticky header and pagination on Patterns page. (52663)
- Update manage pattern links to go to site editor if available. (52403)
- Separate sync status into a filter control. (52303)
Components
- Adapt template part hint copy. (52527)
- Adding support for defined IDs in
TextControlcomponent. (52028)- Updated "position" default value. (52148)
Interactivity API
- Add filter to turn off Interactivity API for a block. (52579)
- Add runtime support for the
wp-styledirective. (52645)Block Library
- Add back old Navigation and File blocks JavaScript implementation when Gutenberg is not installed. (52553)
- Home link block: Add 'current-menu-item'. (51478)
Block Editor
- Add maxLength to LinkControl search item URLs. (52523)
... (truncated)
Changelog
Sourced from @wordpress/scripts's changelog.
26.8.0 (2023-07-05)
26.7.0 (2023-06-23)
26.6.0 (2023-06-07)
Enhancements
- The bundled
terser-webpack-plugindependency has been updated from requiring^5.1.4to requiring^5.3.9(#50994).- Optimize updating render paths when developing blocks with the
startcommand (#51162).Bug Fixes
- Ensure files listed in
renderfield ofblock.jsonfiles are always copied to the build folder when using thestartcommand (#50939).26.5.0 (2023-05-24)
26.4.0 (2023-05-10)
26.3.0 (2023-04-26)
Enhancements
- License check script supports conjunctive (AND) licenses (46801).
26.2.0 (2023-04-12)
26.1.0 (2023-03-29)
Enhancements
- The bundled
wp-prettierdependency has been upgraded from2.6.2to2.8.5(#49258).26.0.0 (2023-03-15)
Breaking Changes
- Started using Jest v29 instead of v27 as a dependency. See breaking changes in Jest 28 and in jest 29 (#47388)
25.5.1 (2023-03-06)
Bug Fix
- Fix
render.phpisn't copied in Windows OS (#48735).25.5.0 (2023-03-01)
25.4.0 (2023-02-15)
New Features
... (truncated)
Commits
bcd13d5chore(release): publishbb24a90Update changelog filesd47d806chore(release): publish70d6c98Update changelog filesa92f606chore(release): publish882d769Update changelog filesfe8b591Merge changes published in the Gutenberg plugin "release/16.0" branchc7c79cbchore(release): publish98d28ffUpdate changelog filese936127chore(release): publish- Additional commits viewable in compare view
Maintainer changes
This version was pushed to npm by gutenbergplugin, a new releaser for @wordpress/scripts since your current version.
You can trigger a rebase of this PR by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the Security Alerts page.
Note Automatic rebases have been disabled on this pull request as it has been open for over 30 days.