dependabot-preview[bot]

Results 25244 issues of dependabot-preview[bot]

Bumps [tar](https://github.com/npm/node-tar) from 4.4.10 to 4.4.15. **This update includes security fixes.** Vulnerabilities fixed Sourced from The GitHub Security Advisory Database. Arbitrary File Creation/Overwrite due to insufficient absolute path sanitization Impact...

dependencies
security

Bumps [@babel/preset-env](https://github.com/babel/babel/tree/HEAD/packages/babel-preset-env) from 7.5.5 to 7.14.9. Release notes Sourced from @​babel/preset-env's releases. v7.14.9 (2021-08-01) Thanks @​SCLeoX for your first PR! :bug: Bug Fix babel-traverse #13596 Fix completion record for variable...

dependencies

Bumps [eslint](https://github.com/eslint/eslint) from 6.1.0 to 7.32.0. Release notes Sourced from eslint's releases. v7.32.0 3c78a7b Chore: Adopt eslint-plugin/prefer-message-ids rule internally (#14841) (Bryan Mishkin) faecf56 Update: change reporting location for curly rule...

dependencies

Bumps [eslint-plugin-jest](https://github.com/jest-community/eslint-plugin-jest) from 22.15.0 to 24.4.0. Release notes Sourced from eslint-plugin-jest's releases. v24.4.0 24.4.0 (2021-07-21) Features create max-nested-describe rule (#845) (8067405) v24.3.7 24.3.7 (2021-07-21) Bug Fixes valid-describe: report on concise-body...

dependencies

Bumps [@babel/core](https://github.com/babel/babel/tree/HEAD/packages/babel-core) from 7.5.5 to 7.14.8. Release notes Sourced from @​babel/core's releases. v7.14.8 (2021-07-20) Thanks @​colinaaa, @​jaeseokk and @​nme077 for your first PRs! :eyeglasses: Spec Compliance babel-helper-create-class-features-plugin, babel-plugin-proposal-class-static-block, babel-plugin-transform-new-target #13560...

dependencies

Bumps [jest](https://github.com/facebook/jest) from 24.8.0 to 27.0.6. Release notes Sourced from jest's releases. 27.0.6 Fixes [*] Publish all modules to include the build change in #11569 27.0.5 Features [@jest/fake-timers] Flush callbacks...

dependencies

_Dependabot Preview will be shut down on August 3rd, 2021. In order to keep getting Dependabot updates, please merge this PR and migrate to GitHub-native Dependabot before then._ Dependabot has...

dependencies

Bumps [ws](https://github.com/websockets/ws) from 5.2.2 to 5.2.3. **This update includes a security fix.** Vulnerabilities fixed Sourced from The GitHub Security Advisory Database. ReDoS in Sec-Websocket-Protocol header Impact A specially crafted value...

dependencies
security

Bumps [hosted-git-info](https://github.com/npm/hosted-git-info) from 2.7.1 to 2.8.9. **This update includes a security fix.** Vulnerabilities fixed Sourced from The GitHub Security Advisory Database. Regular Expression Denial of Service in hosted-git-info The npm...

dependencies
security

Bumps [documentation](https://github.com/documentationjs/documentation) from 12.1.1 to 13.2.5. Changelog Sourced from documentation's changelog. 13.2.5 (2021-04-24) Bug Fixes add gfm format for remark fixed #1374 (#1375) (6b5bc25) jsx should be included for tsx...

dependencies