Bump debug, grunt-contrib-watch, connect, morgan, serve-index and serve-static
Bumps debug to 2.6.9 and updates ancestor dependencies debug, grunt-contrib-watch, connect, morgan, serve-index and serve-static. These dependencies need to be updated together.
Updates debug from 0.7.4 to 2.6.9
Release notes
Sourced from debug's releases.
2.6.9
Patches
- Remove ReDoS regexp in
%oformatter: #504Credits
Huge thanks to
@zhuangyafor their help!release 2.6.7
No release notes provided.
release 2.6.6
No release notes provided.
release 2.6.5
No release notes provided.
release 2.6.4
No release notes provided.
release 2.6.3
No release notes provided.
release 2.6.2
No release notes provided.
release 2.6.1
No release notes provided.
release 2.6.0
No release notes provided.
release 2.5.2
No release notes provided.
release 2.5.1
No release notes provided.
release 2.4.5
No release notes provided.
release 2.4.4
No release notes provided.
release 2.4.3
No release notes provided.
release 2.4.2
No release notes provided.
... (truncated)
Changelog
Sourced from debug's changelog.
2.6.9 / 2017-09-22
- remove ReDoS regexp in %o formatter (#504)
2.6.8 / 2017-05-18
- Fix: Check for undefined on browser globals (#462,
@marbemac)2.6.7 / 2017-05-16
- Fix: Update ms to 2.0.0 to fix regular expression denial of service vulnerability (#458,
@hubdotcom)- Fix: Inline extend function in node implementation (#452,
@dougwilson)- Docs: Fix typo (#455,
@msasad)2.6.5 / 2017-04-27
- Fix: null reference check on window.documentElement.style.WebkitAppearance (#447,
@thebigredgeek)- Misc: clean up browser reference checks (#447,
@thebigredgeek)- Misc: add npm-debug.log to .gitignore (
@thebigredgeek)2.6.4 / 2017-04-20
- Fix: bug that would occure if process.env.DEBUG is a non-string value. (#444,
@LucianBuzzo)- Chore: ignore bower.json in npm installations. (#437,
@joaovieira)- Misc: update "ms" to v0.7.3 (
@tootallnate)2.6.3 / 2017-03-13
- Fix: Electron reference to
process.env.DEBUG(#431,@paulcbetts)- Docs: Changelog fix (
@thebigredgeek)2.6.2 / 2017-03-10
- Fix: DEBUG_MAX_ARRAY_LENGTH (#420,
@slavaGanzin)- Docs: Add backers and sponsors from Open Collective (#422,
@piamancini)- Docs: Add Slackin invite badge (
@tootallnate)2.6.1 / 2017-02-10
... (truncated)
Commits
13abeaeRelease 2.6.9f53962eremove ReDoS regexp in %o formatter (#504)52e1f21Release 2.6.82482e08Check for undefined on browser globals (#462)6bb07f7release 2.6.715850cbFix Regular Expression Denial of Service (ReDoS)4a6c85cupdate "debug" to v1.0.0 (#454)b68dbf8Fix typo (#455)1351d2fInline extend function in node implementation (#452)c211947update version for component- Additional commits viewable in compare view
Maintainer changes
This version was pushed to npm by tootallnate, a new releaser for debug since your current version.
Updates grunt-contrib-watch from 0.6.1 to 1.1.0
Changelog
Sourced from grunt-contrib-watch's changelog.
v1.1.0: date: 2018-05-12 changes: - Update to
[email protected],[email protected],[email protected]v1.0.1: date: 2018-04-20 changes: - Update to[email protected],lodash@4v1.0.0: date: 2016-03-12 changes: - Updated tiny-lr, gaze, async and lodash dependencies. - Fix endless loop issue withatBegin/nospawn. - Expose hostname parameter of tiny-lr. - Supportcwd.eventto emit events relative to path. - Removed peerDependencies setting.
Commits
3b7ddf4v1.1.072b1214Updating dependencies, async, lodash and tiny-lr5adb27cMerge pull request #543 from digitalbazaar/master6ec71e9v1.0.17d20933Update copyright yeare3d19dfUpdate ci configsd117574Updating ci configs99410a7README.md: Fixed typos (#536)f07311bUpdate tiny-lr dependency to 1.x7f8cf80Add local grunt-cli- Additional commits viewable in compare view
Updates connect from 3.4.0 to 3.7.0
Changelog
Sourced from connect's changelog.
3.7.0 / 2019-05-17
- deps: [email protected]
- Set stricter
Content-Security-Policyheader- Fix 404 output for bad / missing pathnames
- deps: encodeurl@~1.0.2
- deps: parseurl@~1.3.3
- deps: statuses@~1.4.0
- deps: parseurl@~1.3.3
- perf: remove substr call from FQDN mapping
3.6.6 / 2018-02-14
- deps: [email protected]
- Use
res.headersSentwhen available- perf: remove array read-past-end
3.6.5 / 2017-09-22
- deps: [email protected]
- deps: [email protected]
- deps: [email protected]
3.6.4 / 2017-09-20
- deps: [email protected]
- deps: parseurl@~1.3.2
- deps: parseurl@~1.3.2
- perf: reduce overhead for full URLs
- perf: unroll the "fast-path"
RegExp- deps: [email protected]
3.6.3 / 2017-08-03
- deps: [email protected]
- deps: [email protected]
- deps: [email protected]
3.6.2 / 2017-05-16
- deps: [email protected]
- deps: [email protected]
- deps: [email protected]
- deps: [email protected]
... (truncated)
Commits
fa8916e3.7.0bd0d23dperf: remove substr call from FQDN mapping1fcc562build: fix the nyc build commands0eeef74docs: add connect logoa83c2dddocs: switch badges to badgen56da514deps: [email protected]f4e0868build: [email protected]f85d157build: use yaml eslint configuration421f96cbuild: [email protected]683fcbebuild: support Node.js 12.x- Additional commits viewable in compare view
Updates morgan from 1.6.1 to 1.10.0
Release notes
Sourced from morgan's releases.
1.10.0
- Add
:total-timetoken- Fix trailing space in colored status code for
devformat- deps: basic-auth@~2.0.1
- deps: [email protected]
- deps: depd@~2.0.0
- Replace internal
evalusage withFunctionconstructor- Use instance methods on
processto check for listeners- deps: on-headers@~1.0.2
- Fix
res.writeHeadpatch missing return value1.9.1
- Fix using special characters in format
- deps: depd@~1.1.2
- perf: remove argument reassignment
1.9.0
- Use
res.headersSentwhen available- deps: basic-auth@~2.0.0
- Use
safe-bufferfor improved Buffer API- deps: [email protected]
- deps: depd@~1.1.1
- Remove unnecessary
Bufferloading1.8.2
- deps: [email protected]
- Fix
DEBUG_MAX_ARRAY_LENGTH- deps: [email protected]
1.8.1
- deps: [email protected]
- Fix deprecation messages in WebStorm and other editors
- Undeprecate
DEBUG_FDset to1or21.8.0
- Fix sending unnecessary
undefinedargument to token functions- deps: basic-auth@~1.1.0
- deps: [email protected]
- Allow colors in workers
- Deprecated
DEBUG_FDenvironment variable- Fix error when running under React Native
- Use same color for same namespace
- deps: [email protected]
- perf: enable strict mode in compiled functions
1.7.0
- Add
digitsargument toresponse-timetoken- deps: depd@~1.1.0
- Enable strict mode in more places
- Support web browser loading
... (truncated)
Changelog
Sourced from morgan's changelog.
1.10.0 / 2020-03-20
- Add
:total-timetoken- Fix trailing space in colored status code for
devformat- deps: basic-auth@~2.0.1
- deps: [email protected]
- deps: depd@~2.0.0
- Replace internal
evalusage withFunctionconstructor- Use instance methods on
processto check for listeners- deps: on-headers@~1.0.2
- Fix
res.writeHeadpatch missing return value1.9.1 / 2018-09-10
- Fix using special characters in format
- deps: depd@~1.1.2
- perf: remove argument reassignment
1.9.0 / 2017-09-26
- Use
res.headersSentwhen available- deps: basic-auth@~2.0.0
- Use
safe-bufferfor improved Buffer API- deps: [email protected]
- deps: depd@~1.1.1
- Remove unnecessary
Bufferloading1.8.2 / 2017-05-23
- deps: [email protected]
- Fix
DEBUG_MAX_ARRAY_LENGTH- deps: [email protected]
1.8.1 / 2017-02-04
- deps: [email protected]
- Fix deprecation messages in WebStorm and other editors
- Undeprecate
DEBUG_FDset to1or21.8.0 / 2017-02-04
- Fix sending unnecessary
undefinedargument to token functions- deps: basic-auth@~1.1.0
- deps: [email protected]
... (truncated)
Commits
c68d2ea1.10.0aa718d7Add :total-time tokence15462build: remove deprecated Travis CI directivee13e0d3build: [email protected]f023828build: use nyc for test coverage30c0871build: [email protected]8114639docs: document success color in dev format5d8176fdocs: update rotating-file-stream usage for 2.xc54194ctests: ignore branch coverage that varies5659d2fbuild: [email protected]- Additional commits viewable in compare view
Updates serve-index from 1.7.2 to 1.9.1
Release notes
Sourced from serve-index's releases.
1.9.1
- deps: accepts@~1.3.4
- deps: mime-types@~2.1.16
- deps: [email protected]
- deps: http-errors@~1.6.2
- deps: [email protected]
- deps: mime-types@~2.1.17
- Add new mime types
- deps: mime-db@~1.30.0
- deps: parseurl@~1.3.2
- perf: reduce overhead for full URLs
- perf: unroll the "fast-path"
RegExp1.9.0
- Set
X-Content-Type-Options: nosniffheader- deps: [email protected]
- deps: [email protected]
- Allow colors in workers
- Deprecated
DEBUG_FDenvironment variable set to3or higher- Fix
DEBUG_MAX_ARRAY_LENGTH- Fix error when running under React Native
- Use same color for same namespace
- deps: [email protected]
- deps: http-errors@~1.6.1
- Make
messageproperty enumerable forHttpErrors- deps: [email protected]
- deps: [email protected]
- deps: statuses@'>= 1.3.1 < 2'
- deps: mime-types@~2.1.15
- Add new mime types
- Add
audio/mp31.8.0
- Make inline file search case-insensitive
- deps: accepts@~1.3.3
- deps: mime-types@~2.1.11
- deps: [email protected]
- perf: improve header parsing speed
- deps: http-errors@~1.5.0
- Use
setprototypeofmodule to replace__proto__setting- deps: [email protected]
- deps: statuses@'>= 1.3.0 < 2'
- perf: enable strict mode
- deps: mime-types@~2.1.11
- Add new mime types
- Update primary extension for
audio/mp4- deps: mime-db@~1.23.0
1.7.3
- deps: accepts@~1.2.13
... (truncated)
Changelog
Sourced from serve-index's changelog.
1.9.1 / 2017-09-28
- deps: accepts@~1.3.4
- deps: mime-types@~2.1.16
- deps: [email protected]
- deps: http-errors@~1.6.2
- deps: [email protected]
- deps: mime-types@~2.1.17
- Add new mime types
- deps: mime-db@~1.30.0
- deps: parseurl@~1.3.2
- perf: reduce overhead for full URLs
- perf: unroll the "fast-path"
RegExp1.9.0 / 2017-05-25
- Set
X-Content-Type-Options: nosniffheader- deps: [email protected]
- deps: [email protected]
- Allow colors in workers
- Deprecated
DEBUG_FDenvironment variable set to3or higher- Fix
DEBUG_MAX_ARRAY_LENGTH- Fix error when running under React Native
- Use same color for same namespace
- deps: [email protected]
- deps: http-errors@~1.6.1
- Make
messageproperty enumerable forHttpErrors- deps: [email protected]
- deps: [email protected]
- deps: statuses@'>= 1.3.1 < 2'
- deps: mime-types@~2.1.15
- Add new mime types
- Add
audio/mp31.8.0 / 2016-06-17
- Make inline file search case-insensitive
- deps: accepts@~1.3.3
- deps: mime-types@~2.1.11
- deps: [email protected]
- perf: improve header parsing speed
- deps: http-errors@~1.5.0
- Use
setprototypeofmodule to replace__proto__setting- deps: [email protected]
- deps: statuses@'>= 1.3.0 < 2'
- perf: enable strict mode
- deps: mime-types@~2.1.11
... (truncated)
Commits
a399faa1.9.1fc69533deps: parseurl@~1.3.245dbe4fdocs: add express.static to the express example76e3c3adeps: [email protected]da37631build: [email protected]3e09fb2build: [email protected]0894f8cdeps: mime-types@~2.1.17a4f1ef3deps: http-errors@~1.6.2ccbeaebdeps: accepts@~1.3.4bc077cb1.9.0- Additional commits viewable in compare view
Updates serve-static from 1.10.0 to 1.15.0
Release notes
Sourced from serve-static's releases.
1.15.0
- deps: [email protected]
- Fix emitted 416 error missing headers property
- Limit the headers removed for 304 response
- deps: [email protected]
- deps: [email protected]
- deps: [email protected]
- deps: [email protected]
- deps: [email protected]
1.14.2
- deps: [email protected]
- deps: [email protected]
- deps: [email protected]
- pref: ignore empty http tokens
1.14.1
- Set stricter CSP header in redirect response
- deps: [email protected]
- deps: range-parser@~1.2.1
1.14.0
- deps: parseurl@~1.3.3
- deps: [email protected]
- deps: http-errors@~1.7.2
- deps: [email protected]
- deps: [email protected]
- deps: statuses@~1.5.0
- perf: remove redundant
path.normalizecall1.13.2
- Fix incorrect end tag in redirects
- deps: encodeurl@~1.0.2
- Fix encoding
%as last character- deps: [email protected]
- deps: depd@~1.1.2
- deps: encodeurl@~1.0.2
- deps: statuses@~1.4.0
1.13.1
- Fix regression when
rootis incorrectly set to a file- deps: [email protected]
1.13.0
- deps: [email protected]
- Add 70 new types for file extensions
- Add
immutableoption- Fix missing
</html>in default error & redirects- Set charset as "UTF-8" for .js and .json
- Use instance methods on steam to check for listeners
... (truncated)
Changelog
Sourced from serve-static's changelog.
1.15.0 / 2022-03-24
- deps: [email protected]
- Fix emitted 416 error missing headers property
- Limit the headers removed for 304 response
- deps: [email protected]
- deps: [email protected]
- deps: [email protected]
- deps: [email protected]
- deps: [email protected]
1.14.2 / 2021-12-15
- deps: [email protected]
- deps: [email protected]
- deps: [email protected]
- pref: ignore empty http tokens
1.14.1 / 2019-05-10
- Set stricter CSP header in redirect response
- deps: [email protected]
- deps: range-parser@~1.2.1
1.14.0 / 2019-05-07
- deps: parseurl@~1.3.3
- deps: [email protected]
- deps: http-errors@~1.7.2
- deps: [email protected]
- deps: [email protected]
- deps: statuses@~1.5.0
- perf: remove redundant
path.normalizecall1.13.2 / 2018-02-07
- Fix incorrect end tag in redirects
- deps: encodeurl@~1.0.2
- Fix encoding
%as last character- deps: [email protected]
- deps: depd@~1.1.2
- deps: encodeurl@~1.0.2
- deps: statuses@~1.4.0
1.13.1 / 2017-09-29
... (truncated)
Commits
9b5a12a1.15.0a39a0dfdocs: update CI linkd702ea2build: [email protected]ff1510adeps: [email protected]813c7e4build: [email protected]2e029f9build: [email protected]3269f31build: [email protected]71cd4f8build: [email protected]a5cdf62build: [email protected]9d11e38build: [email protected]- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)@dependabot use these labelswill set the current labels as the default for future PRs for this repo and language@dependabot use these reviewerswill set the current reviewers as the default for future PRs for this repo and language@dependabot use these assigneeswill set the current assignees as the default for future PRs for this repo and language@dependabot use this milestonewill set the current milestone as the default for future PRs for this repo and language
You can disable automated security fix PRs for this repo from the Security Alerts page.