chore(deps): bump the npm_and_yarn group across 1 directory with 3 updates
Bumps the npm_and_yarn group with 3 updates in the / directory: @grpc/grpc-js, ejs and ws.
Updates @grpc/grpc-js from 1.8.17 to 1.10.9
Release notes
Sourced from @grpc/grpc-js's releases.
@grpc/grpc-js1.10.9
- Avoid buffering significantly more than
grpc.max_receive_message_sizeper received message.
@grpc/grpc-js1.10.8
- Fix a bug that caused channels with
unix:targets to not reconnect after the channel goes idle (#2750)
@grpc/grpc-js1.10.7
- Improve reporting of HTTP error codes (#2723)
- Update dependency on
@grpc/proto-loaderto the latest version (#2732)
@grpc/grpc-js1.10.6
- Fix a bug that could cause a server to sometimes send the status early (#2708)
@grpc/grpc-js1.10.5
- Resolve exception when
Error.stackTraceLimitisundefined(#2701 contributed by@davidfiala)- Call configured
checkServerIdentitywhengrpc.ssl_target_name_overrideis set (#2704)- Add more information to DEADLINE_EXCEEDED error details strings (#2692)
@grpc/grpc-js1.10.4
- Fix a bug that caused server interceptors to crash when using partially-populated
ResponderBuilderandListenerBuilderobjects (#2696)- Avoid sending RST_STREAM from the client when the server has already finished its side of the stream (#2695)
@grpc/grpc-js1.10.3
@grpc/grpc-js1.10.2
- Implement server connection idle timeouts and improve channelz performance (#2677 contributed by
@AVVS)- Fix a bug that caused clients to automatically reconnect even when there were no active requests (#2680)
- Modify order of server call events to more closely match pre-1.10.x behavior (#2683)
@grpc/grpc-js1.10.1
- Fix a bug causing channels using the
round_robinLB policy to fail to reconnect after a connection drops (#2667)
@grpc/grpc-js-xds1.10.1
- Update dependency on
@grpc/proto-loaderto the latest version (#2732)
@grpc/grpc-js-xds1.10.0
- Implement gRFC A52: gRPC xDS Custom Load Balancer Configuration (#2555)
- Implement gRFC A42: xDS Ring Hash LB Policy (#2568)
- Note: This feature is not compatible with Node 14 or below. To disable it in those versions, set the environment variable
GRPC_XDS_EXPERIMENTAL_ENABLE_RING_HASH=false.- Implement the xDS part of gRFC A62:
pick_first: sticky TRANSIENT_FAILURE and address order randomization (Currently experimental, enabled by environment variableGRPC_EXPERIMENTAL_PICKFIRST_LB_CONFIG) (#2572)
@grpc/grpc-js1.10.0Changelog
... (truncated)
Commits
674f4e3Merge pull request from GHSA-7v5v-9h63-cj867ecaa2dgrpc-js: Bump to 1.10.9e64d816grpc-js: Avoid buffering significantly more than max_receive_message_size per...45e5fe5Merge pull request #2750 from murgatroid99/grpc-js_idle_uds_fix87a3541grpc-js: Fix UDS channels not reconnecting after going idle3105791Merge pull request #2740 from sergiitk/backport-1.10-psm-interop-common-prod-...fec135aMerge pull request #2729 from sergiitk/psm-interop-common-prod-tests76fe802Merge pull request #2739 from murgatroid99/backport-1.10-grpc-js_linkify-it_fixd5edf49Merge pull request #2735 from murgatroid99/grpc-js_linkify-it_fix23c05fcMerge pull request #2732 from murgatroid99/grpc-js_proto-loader_update- Additional commits viewable in compare view
Updates ejs from 3.1.8 to 3.1.10
Commits
d3f807dVersion 3.1.109ee26ddMocha TDDe469741Basic pollution protection715e950Merge pull request #756 from Jeffrey-mu/maincabe314Include advanced usage examples29b076cAdded header11503c7Merge branch 'main' of github.com:mde/ejs into main7690404Added security banner to READMEf47d7aeUpdate SECURITY.md828cea1Update SECURITY.md- Additional commits viewable in compare view
Updates ws from 7.5.9 to 7.5.10
Release notes
Sourced from ws's releases.
7.5.10
Bug fixes
- Backported e55e5106 to the 7.x release line (22c28763).
Commits
d962d70[dist] 7.5.1022c2876[security] Fix crash when the Upgrade header cannot be read (#2231)- See full diff in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebasewill rebase this PR -
@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it -
@dependabot mergewill merge this PR after your CI passes on it -
@dependabot squash and mergewill squash and merge this PR after your CI passes on it -
@dependabot cancel mergewill cancel a previously requested merge and block automerging -
@dependabot reopenwill reopen this PR if it is closed -
@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency -
@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) -
@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) -
@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) -
@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency -
@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions You can disable automated security fix PRs for this repo from the Security Alerts page.
BundleMon
Unchanged files (12)
| Status | Path | Size | Limits |
|---|---|---|---|
| :white_check_mark: | main.(hash).js |
479.42KB | - |
| :white_check_mark: | JS files 521.(hash).js |
403.95KB | - |
| :white_check_mark: | JS files 785.(hash).js |
258.66KB | - |
| :white_check_mark: | JS files 601.(hash).js |
54.38KB | - |
| :white_check_mark: | JS files 476.(hash).js |
32.33KB | - |
| :white_check_mark: | JS files 350.(hash).js |
29.06KB | - |
| :white_check_mark: | JS files ReportPage.(hash).js |
14.69KB | - |
| :white_check_mark: | JS files LoginPage.(hash).js |
12.81KB | - |
| :white_check_mark: | JS files ReportsPage.(hash).js |
6.64KB | - |
| :white_check_mark: | JS files ReportsChart.(hash).js |
4.49KB | - |
| :white_check_mark: | JS files CreateProjectPage.(hash).js |
2.45KB | - |
| :white_check_mark: | index.html |
766B | - |
No change in files bundle size
Unchanged groups (2)
| Status | Path | Size | Limits |
|---|---|---|---|
| :white_check_mark: | JS files **/*.js |
1.27MB | - |
| :white_check_mark: | Images **/*.png |
370.53KB | - |
Final result: :white_check_mark:
View report in BundleMon website ➡️
@dependabot rebase
Looks like these dependencies are no longer updatable, so this is no longer needed.