mailchimp-client-lib-codegen
mailchimp-client-lib-codegen copied to clipboard
Bump tough-cookie and jsdom
Bumps tough-cookie and jsdom. These dependencies needed to be updated together.
Updates tough-cookie from 2.5.0 to 4.1.3
Release notes
Sourced from tough-cookie's releases.
4.1.3
Security fix for Prototype Pollution discovery in #282. This is a minor release, although output from the
inspectutility is affected by this change, we felt this change was important enough to be pushed into the next patch.4.1.2 -- Patch and Bugfix Release
What's Changed
- fix: allow set cookies with localhost by
@colincaseyin salesforce/tough-cookie#253Full Changelog: https://github.com/salesforce/tough-cookie/compare/v4.1.1...v4.1.2
4.1.1
Patch Release
What's Changed
- fix: allow special use domains by default by
@colincaseyin salesforce/tough-cookie#249- 4.1.1 Patch -- allow special use domains by default by
@awatermain salesforce/tough-cookie#250Full Changelog: https://github.com/salesforce/tough-cookie/compare/v4.1.0...v4.1.1
4.1.0
v4.1.0
Minor release, focused mainly on resolving reported issues and some minor feature work.
What's Changed
- Create CHANGELOG.md by
@ShivanKaulin salesforce/tough-cookie#189- Missing param validation issue145 by
@medelibero-sfdcin salesforce/tough-cookie#193- Create SECURITY.md by
@ShivanKaulin salesforce/tough-cookie#201- Create CODE_OF_CONDUCT.md by
@ShivanKaulin salesforce/tough-cookie#200- Fix for issue #195 by
@medelibero-sfdcin salesforce/tough-cookie#202- Add explanation and more special-use domains by
@ShivanKaulin salesforce/tough-cookie#203- Sync of constructor options for serialization by
@medelibero-sfdcin salesforce/tough-cookie#204- Returned null in case of empty cookie value by
@vsin12in salesforce/tough-cookie#196- 132 str trim not a function by
@awatermain salesforce/tough-cookie#209- Fix for issue #153 by
@medelibero-sfdcin salesforce/tough-cookie#210- Fix permuteDomain with trailing dot by
@ruoho-sfdcin salesforce/tough-cookie#216- Issue #213 -- added gh-actions flow for building and testing tough-co… by
@awatermain salesforce/tough-cookie#218- Issue #210 -- Updated workflow to use npm install. by
@awatermain salesforce/tough-cookie#220- @GH-215 -- Tests that document localhost behavior when set as domain. by
@awatermain salesforce/tough-cookie#221- fix: MemoryCookieStore methods should exist on the prototype, not on the class. by
@wjhsfin salesforce/tough-cookie#226- Unit test cases for
allowSpecialUseDomainoption by@colincaseyin salesforce/tough-cookie#225- [Snyk] Upgrade universalify from 0.1.2 to 0.2.0 by
@snyk-botin salesforce/tough-cookie#228- React Native Support by
@colincaseyin salesforce/tough-cookie#227- Adding Updating CODEOWNERS with ECCN as per Export Control Compliance by
@svc-scmin salesforce/tough-cookie#223- fix: domain match routine by
@colincaseyin salesforce/tough-cookie#236- Stop using the internal NodeJS punycode module by
@gboerin salesforce/tough-cookie#238- Initial documentation review by
@mcarey86in salesforce/tough-cookie#234- fix: distinguish between no samesite and samesite=none by
@colincaseyin salesforce/tough-cookie#240- Prepare tough-cookie 4.1 for publishing (updated GitHub actions, move… by
@awatermain salesforce/tough-cookie#242- 4.1.0 release to NPM by
@awatermain salesforce/tough-cookie#245
... (truncated)
Commits
4ff4d294.1.3 release preparation, update the package and lib/version to 4.1.3. (#284)12d4747Prevent prototype pollution in cookie memstore (#283)f06b72dFix documentation for store.findCookies, missing allowSpecialUseDomain proper...b1a8898fix: allow set cookies with localhost (#253)ec707964.1.1 Patch -- allow special use domains by default (#250)d4ac580fix: allow special use domains by default (#249)79c2f7d4.1.0 release to NPM (#245)4fafc17Prepare tough-cookie 4.1 for publishing (updated GitHub actions, move Dockerf...aa4396dfix: distinguish between no samesite and samesite=none (#240)b8d7511Modernize README (#234)- Additional commits viewable in compare view
Maintainer changes
This version was pushed to npm by awaterma, a new releaser for tough-cookie since your current version.
Updates jsdom from 16.3.0 to 16.7.0
Release notes
Sourced from jsdom's releases.
Version 16.7.0
- Added
AbortSignal.abort(). (ninevra)- Added dummy
xandyproperties to the return value ofgetBoundingClientRect(). (eiko)- Implemented wrapping for
textareaEl.valueif thewrap=""attribute is specified. (ninevra)- Changed newline normalization in
<textarea>s according to recent HTML Standard updates. (ninevra)- Fixed some bad cascade computation in
getComputedStyle(). (romain-trotard)Version 16.6.0
- Added
parentNode.replaceChildren(). (@ninevra)- Fixed jsdom's handling of when code running inside the jsdom throws
nullorundefinedas an exception. (@mbest)- Removed the dependency on the deprecated
requestpackage, in the process fixing several issues with theXMLHttpRequestimplementation around header processing. Thanks go to@tobyhinloopen,@andrewaylett, and especially@vegardbb, for completing this months-long effort!Version 16.5.3
- Fixed infinite recursion when using
MutationObservers to observe elements inside aMutationObservercallback.Version 16.5.2
- Fixed
Access-Control-Allow-Headers: *to work withXMLHttpRequest. (silviot)- Fixed
xhr.responseto strip any leading BOM whenxhr.responseTypeis"json".- Fixed
new Text()andnew Comment()constructors to properly set the resulting node'sownerDocument.- Fixed
customElements.whenDefined()to resolve its returned promise with the custom element constructor, per recent spec updates. (ExE-Boss)- Fixed parsing to ensure that
<svg>\<template></template></svg>does not throw an exception, but instead correctly produces a SVG-namespace\<template>element.- Fixed
domParser.parseFromString()to treat<noscript>elements appropriately.- Fixed form control validity checking when the control was outside the
<form>element and instead associated using theform=""attribute.- Fixed
legendEl.formto return the correct result based on its parent<fieldset>.- Fixed
optionEl.textto exclude<script>descendants.- Fixed radio buttons and checkboxes to not fire
inputandchangeevents when disconnected.- Fixed
inputEl.indeterminateto reset to its previous value when canceling aclickevent on a checkbox or radio button.- Fixed the behavior of event handler attributes (e.g.
onclick="...code...") when there were global variables namedelementorformOwner. (ExE-Boss)- On Node.js v14.6.0+ where
WeakRefs are available, fixedNodeIteratorto no longer stop working when more than tenNodeIteratorinstances are created, and to use less memory due to inactiveNodeIterators sticking around. (ExE-Boss)Version 16.5.1
- Fixed a regression that broke
customElements.get()in v16.5.0. (fdesforges)- Fixed
window.eventto have a setter which overwrites thewindow.eventproperty with the given value, per the specification. This fixes an issue where after upgrading to jsdom v16.5.0 you would no longer be able to set a global variable namedeventin the jsdom context.Version 16.5.0
- Added
window.queueMicrotask().- Added
window.event.- Added
inputEvent.inputType. (diegohaz)- Removed
ondragexitfromWindowand friends, per a spec update.- Fixed the URL of
about:blankiframes. Previously it was getting set to the parent's URL. (SimonMueller)- Fixed the loading of subresources from the filesystem when they had non-ASCII filenames.
- Fixed the
hidden=""attribute to causedisplay: noneper the user-agent stylesheet. (ph-fritsche)- Fixed the
new File()constructor to no longer convert/to:, per a pending spec update.- Fixed mutation observer callbacks to be called with the
MutationObserverinstance as theirthisvalue.- Fixed
<input type=checkbox>and<input type=radio>to be mutable even when disabled, per a spec update.- Fixed
XMLHttpRequestto not fire a redundant finalprogressevent if aprogressevent was previously fired with the sameloadedvalue. This would usually occur with small files.- Fixed
XMLHttpRequestto expose theContent-Lengthheader on cross-origin responses.- Fixed
xhr.responseto returnnullfor failures that occur during the middle of the download.- Fixed edge cases around passing callback functions or event handlers. (ExE-Boss)
- Fixed edge cases around the properties of proxy-like objects such as
localStorageordataset. (ExE-Boss)
... (truncated)
Changelog
Sourced from jsdom's changelog.
16.7.0
- Added
AbortSignal.abort(). (ninevra)- Added dummy
xandyproperties to the return value ofgetBoundingClientRect(). (eiko)- Implemented wrapping for
textareaEl.valueif thewrap=""attribute is specified. (ninevra)- Changed newline normalization in
<textarea>s according to recent HTML Standard updates. (ninevra)- Fixed some bad cascade computation in
getComputedStyle(). (romain-trotard)16.6.0
- Added
parentNode.replaceChildren(). (ninevra)- Fixed jsdom's handling of when code running inside the jsdom throws
nullorundefinedas an exception. (mbest)- Removed the dependency on the deprecated
requestpackage, in the process fixing several issues with theXMLHttpRequestimplementation around header processing. Special thanks to vegardbb for completing this months-long effort!16.5.3
- Fixed infinite recursion when using
MutationObservers to observe elements inside aMutationObservercallback.16.5.2
- Fixed
Access-Control-Allow-Headers: *to work withXMLHttpRequest. (silviot)- Fixed
xhr.responseto strip any leading BOM whenxhr.responseTypeis"json".- Fixed
new Text()andnew Comment()constructors to properly set the resulting node'sownerDocument.- Fixed
customElements.whenDefined()to resolve its returned promise with the custom element constructor, per recent spec updates. (ExE-Boss)- Fixed parsing to ensure that
<svg>\<template></template></svg>does not throw an exception, but instead correctly produces a SVG-namespace\<template>element.- Fixed
domParser.parseFromString()to treat<noscript>elements appropriately.- Fixed form control validity checking when the control was outside the
<form>element and instead associated using theform=""attribute.- Fixed
legendEl.formto return the correct result based on its parent<fieldset>.- Fixed
optionEl.textto exclude<script>descendants.- Fixed radio buttons and checkboxes to not fire
inputandchangeevents when disconnected.- Fixed
inputEl.indeterminateto reset to its previous value when canceling aclickevent on a checkbox or radio button.- Fixed the behavior of event handler attributes (e.g.
onclick="...code...") when there were global variables namedelementorformOwner. (ExE-Boss)- On Node.js v14.6.0+ where
WeakRefs are available, fixedNodeIteratorto no longer stop working when more than tenNodeIteratorinstances are created, and to use less memory due to inactiveNodeIterators sticking around. (ExE-Boss)16.5.1
- Fixed a regression that broke
customElements.get()in v16.5.0. (fdesforges)- Fixed
window.eventto have a setter which overwrites thewindow.eventproperty with the given value, per the specification. This fixes an issue where after upgrading to jsdom v16.5.0 you would no longer be able to set a global variable namedeventin the jsdom context.16.5.0
- Added
window.queueMicrotask().- Added
window.event.- Added
inputEvent.inputType. (diegohaz)- Removed
ondragexitfromWindowand friends, per a spec update.- Fixed the URL of
about:blankiframes. Previously it was getting set to the parent's URL. (SimonMueller)- Fixed the loading of subresources from the filesystem when they had non-ASCII filenames.
- Fixed the
hidden=""attribute to causedisplay: noneper the user-agent stylesheet. (ph-fritsche)- Fixed the
new File()constructor to no longer convert/to:, per a pending spec update.- Fixed mutation observer callbacks to be called with the
MutationObserverinstance as theirthisvalue.
... (truncated)
Commits
1aa3cbcVersion 16.7.0df1f551Don't run WebSocketStream testseb105b2Fix browser tests by enabling SharedArrayBuffer0dedfc0Fix some bad cascade computation in getComputedStyle()8021a56Fix "configuation" typo (#3213)a7febe3Fix typo in level2/html.js (#3222)c9896c0Return x, y properties from Element.getBoundingClientRect (#3187)346ea98Update web-platform tests (#3203)364c77dBump to ws 7.4.693ba6a0We are now on Matrix (#3207)- Additional commits viewable in compare view
You can trigger a rebase of this PR by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the Security Alerts page.
Note Automatic rebases have been disabled on this pull request as it has been open for over 30 days.