express-rest-boilerplate
express-rest-boilerplate copied to clipboard
chore(deps): bump moment-timezone from 0.5.33 to 0.5.41
Bumps moment-timezone from 0.5.33 to 0.5.41.
Release notes
Sourced from moment-timezone's releases.
Release 0.5.41
- Updated
momentnpm dependency to2.29.4to remove automated warnings about insecure dependencies #1004. Moment Timezone still works with core Moment2.9.0and higher.- Updated all dev dependencies including UglifyJS, which produces the minified builds.
- Added deprecation warning to the pre-built
moment-timezone-with-data-2012-2022bundles #1035. Use the rollingmoment-timezone-with-data-10-year-rangefiles instead.Release 0.5.40
- Updated data to IANA TZDB
2022gRelease 0.5.39
- Updated data to IANA TZDB
2022fRelease 0.5.38
- Updated data to IANA TZDB
2022e- Added
moment.tz.dataVersionproperty to TypeScript definitions #930- Removed temporary
.tar.gzfiles from npm releases #1000Release 0.5.37
- Re-publish npm package, because of extra folder present in 0.5.36, check moment/moment-timezone#999
Release 0.5.36
- Updated data to IANA TZDB
2022c- Improvements/fixes to data pipeline
Release 0.5.35
- Fix command injection in data pipeline https://github.com/moment/moment-timezone/security/advisories/GHSA-56x4-j7p9-fcf9
- Fix cleartext transmission of sensitive information https://github.com/moment/moment-timezone/security/advisories/GHSA-v78c-4p63-2j6c
Thanks to the OpenSSF Alpha-Omega project for reporting these!
Release 0.5.34
- Updated data to IANA TZDB
2021e
Changelog
Sourced from moment-timezone's changelog.
0.5.412023-02-25
- Updated
momentnpm dependency to2.29.4to remove automated warnings about insecure dependencies. Moment Timezone still works with core Moment2.9.0and higher.- Updated all dev dependencies including UglifyJS, which produces the minified builds.
- Added deprecation warning to the pre-built
moment-timezone-with-data-2012-2022bundles #1035. Use the rollingmoment-timezone-with-data-10-year-rangefiles instead.
0.5.402022-12-11
- Updated data to IANA TZDB
2022g
0.5.392022-11-13
- Updated data to IANA TZDB
2022f
0.5.382022-10-15
- Updated data to IANA TZDB
2022e- Added
moment.tz.dataVersionproperty to TypeScript definitions #930- Removed temporary
.tar.gzfiles from npm releases #1000
0.5.372022-08-25
- Re-publish npm package, because of extra folder present in 0.5.36, check moment/moment-timezone#999
0.5.362022-08-25
- IANA TZDB 2022c
- improvements/fixes to data pipeline
0.5.352022-08-23
- Fix command injection in data pipeline https://github.com/moment/moment-timezone/security/advisories/GHSA-56x4-j7p9-fcf9
- Fix cleartext transmission of sensitive information https://github.com/moment/moment-timezone/security/advisories/GHSA-v78c-4p63-2j6c
Thanks to the OpenSSF Alpha-Omega project for reporting these!
0.5.342021-11-10
- Updated data to IANA TZDB
2021e
Commits
98d3addBuild moment-timezone 0.5.4178cf3adchangelog: Add 0.5.41cd35dc6Bump version to 0.5.4176f5a75Re-number build tasks to match new running orderace9a77Fix broken badges in README8080504Bump moment dependency to 2.29.4 (#1004)61b14d6Add deprecation warning to 2012-2022 pre-built files (#1036)fc29369Bump remaining grunt-contrib packagesc83479etests: Fix guess tests for 2023e501621Bump y18n from 4.0.0 to 4.0.3 (#1026)- Additional commits viewable in compare view
Maintainer changes
This version was pushed to npm by gilmoreorless, a new releaser for moment-timezone since your current version.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)