barista icon indicating copy to clipboard operation
barista copied to clipboard

project barista - open source license and vulnerability management

Results 146 barista issues
Sort by recently updated
recently updated
newest added

Bumps [mermaid](https://github.com/mermaid-js/mermaid) from 8.10.1 to 8.14.0. Release notes Sourced from mermaid's releases. 8.14.0 Release Notes Main feature Adding new more secure security level 'sandbox' where all rendering happens in a...

dependencies
javascript

Bumps [@nestjs/passport](https://github.com/nestjs/passport) from 7.1.5 to 8.2.2. Release notes Sourced from @​nestjs/passport's releases. Release 8.2.2 chore(deps): update typescript-eslint monorepo to v5.28.0 (98929eb) chore(deps): update dependency ts-jest to v28.0.5 (f7c1b77) chore(deps): update...

dependencies
javascript

Bumps [string.prototype.trimstart](https://github.com/es-shims/String.prototype.trimStart) from 1.0.4 to 1.0.6. Changelog Sourced from string.prototype.trimstart's changelog. v1.0.6 - 2022-11-07 Commits [meta] use npmignore to autogenerate an npmignore file 0838ae4 [actions] update rebase action to use...

dependencies
javascript

Bumps [@babel/helper-function-name](https://github.com/babel/babel/tree/HEAD/packages/babel-helper-function-name) from 7.12.13 to 7.22.5. Release notes Sourced from @​babel/helper-function-name's releases. v7.22.5 (2023-06-08) :bug: Bug Fix babel-preset-env, babel-standalone #15675 Fix using syntax-unicode-sets-regex in standalone (@​nicolo-ribaudo) :nail_care: Polish babel-core #15683...

dependencies
javascript

Bumps [nodemailer](https://github.com/nodemailer/nodemailer) and [@types/nodemailer](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/nodemailer). These dependencies needed to be updated together. Updates `nodemailer` from 6.6.0 to 6.9.4 Changelog Sourced from nodemailer's changelog. 6.9.4 2023-07-19 Renamed SendinBlue to Brevo 6.9.3 2023-05-29...

dependencies
javascript

Bumps [ssri](https://github.com/npm/ssri) from 6.0.1 to 6.0.2. Changelog Sourced from ssri's changelog. 6.0.2 (2021-04-07) Bug Fixes backport regex change from 8.0.1 (b30dfdb), closes #19 Commits b7c8c7c chore(release): 6.0.2 b30dfdb fix: backport...

dependencies
javascript

Bumps majestic from 1.8.0 to 1.8.1. [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=majestic&package-manager=npm_and_yarn&previous-version=1.8.0&new-version=1.8.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a...

dependencies
javascript

Bumps [@types/istanbul-reports](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/istanbul-reports) from 3.0.0 to 3.0.1. Commits See full diff in compare view [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=@types/istanbul-reports&package-manager=npm_and_yarn&previous-version=3.0.0&new-version=3.0.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter...

dependencies
javascript

Bumps [@types/serve-static](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/serve-static) from 1.13.9 to 1.15.2. Commits See full diff in compare view [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=@types/serve-static&package-manager=npm_and_yarn&previous-version=1.13.9&new-version=1.15.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter...

dependencies
javascript

Bumps [@babel/plugin-syntax-top-level-await](https://github.com/babel/babel/tree/HEAD/packages/babel-plugin-syntax-top-level-await) from 7.12.13 to 7.14.5. Release notes Sourced from @​babel/plugin-syntax-top-level-await's releases. v7.14.5 (2021-06-09) Thanks @​Eyoatam, @​lightmare, @​ota-meshi, and @​tony-go for your first PRs! :eyeglasses: Spec Compliance babel-plugin-proposal-do-expressions, babel-traverse #13122...

dependencies
javascript