abaplint-sci-server
abaplint-sci-server copied to clipboard
Bump helmet from 4.6.0 to 7.1.0
Bumps helmet from 4.6.0 to 7.1.0.
Changelog
Sourced from helmet's changelog.
7.1.0 - 2023-11-07
Added
helmet.crossOriginEmbedderPolicynow supports theunsafe-nonedirective. See #4777.0.0 - 2023-05-06
Changed
- Breaking:
Cross-Origin-Embedder-Policymiddleware is now disabled by default. See #411Removed
- Breaking: Drop support for Node 14 and 15. Node 16+ is now required
- Breaking:
Expect-CTis no longer part of Helmet. If you still need it, you can use theexpect-ctpackage. See #3786.2.0 - 2023-05-06
- Expose header names (e.g.,
strictTransportSecurityfor theStrict-Transport-Securityheader, instead ofhsts)- Rework documentation
6.1.5 - 2023-04-11
Fixed
- Fixed yet another issue with TypeScript exports. See #420
6.1.4 - 2023-04-10
Fixed
- Fix another issue with TypeScript default exports. See #418
6.1.3 - 2023-04-10
Fixed
- Fix issue with TypeScript default exports. See #417
6.1.2 - 2023-04-09
Fixed
- Retored
mainto package to help with some build tools6.1.1 - 2023-04-08
Fixed
... (truncated)
Commits
9d932807.1.0b8eedf9Update changelog for 7.1.0 release19d2295Add additional package keywords977466fUpdate devDependencies to latest versions466ffadUpdate changelog for recent COEP changee0baa58Supportunsafe-nonein COEP3123831CI: update setup-node action to version 4ea8cfc9Update devDependencies to latest versions69294adCI should use the latest Node version14b8519CI should test on Node 20- Additional commits viewable in compare view
You can trigger a rebase of this PR by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Note Automatic rebases have been disabled on this pull request as it has been open for over 30 days.