Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix(deps): update dependency express to v5.0.1 #626

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Oct 25, 2024

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
express (source) 5.0.0-beta.3 -> 5.0.1 age adoption passing confidence

Release Notes

expressjs/express (express)

v5.0.1

Compare Source

==========

v5.0.0

Compare Source

=========================

  • remove:
    • path-is-absolute dependency - use path.isAbsolute instead
  • breaking:
    • res.status() accepts only integers, and input must be greater than 99 and less than 1000
      • will throw a RangeError: Invalid status code: ${code}. Status code must be greater than 99 and less than 1000. for inputs outside this range
      • will throw a TypeError: Invalid status code: ${code}. Status code must be an integer. for non integer inputs
    • deps: [email protected]
    • res.redirect('back') and res.location('back') is no longer a supported magic string, explicitly use req.get('Referrer') || '/'.
  • change:
    • res.clearCookie will ignore user provided maxAge and expires options
  • deps: cookie-signature@^1.2.1
  • deps: [email protected]
  • deps: merge-descriptors@^2.0.0
  • deps: serve-static@^2.1.0
  • deps: [email protected]
  • deps: accepts@^2.0.0
  • deps: mime-types@^3.0.0
    • application/javascript => text/javascript
  • deps: type-is@^2.0.0
  • deps: content-disposition@^1.0.0
  • deps: finalhandler@^2.0.0
  • deps: fresh@^2.0.0
  • deps: body-parser@^2.0.1
  • deps: send@^1.1.0

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot added the renovate label Oct 25, 2024
Copy link

socket-security bot commented Oct 25, 2024

New and removed dependencies detected. Learn more about Socket for GitHub ↗︎

Package New capabilities Transitives Size Publisher
npm/@babel/[email protected] Transitive: environment +13 2.7 MB nicolo-ribaudo
npm/@rollup/[email protected] Transitive: environment +8 2.72 MB shellscape
npm/@rollup/[email protected] filesystem +10 928 kB shellscape
npm/@rollup/[email protected] filesystem Transitive: environment, unsafe +13 445 kB shellscape
npm/@rollup/[email protected] None +5 716 kB shellscape
npm/@rollup/[email protected] eval Transitive: environment, filesystem, shell +15 4.26 MB shellscape
npm/[email protected] environment, filesystem Transitive: shell +10 13.5 MB gustavohenke
npm/[email protected] None 0 41 kB mingchuno
npm/[email protected] environment +4 112 kB dougwilson
npm/[email protected] Transitive: environment, filesystem, network, unsafe +25 1.38 MB blakeembrey, dougwilson, linusu, ...4 more
npm/[email protected] network Transitive: environment, eval +11 3.97 MB vkarpov15
npm/[email protected] environment, filesystem, shell Transitive: network +12 498 kB remy
npm/[email protected] Transitive: network +5 196 kB jaredhanson
npm/[email protected] network +2 75.2 kB jaredhanson
npm/[email protected] environment Transitive: eval, network +15 4.66 MB gaearon
npm/[email protected] Transitive: environment +15 2.45 MB afram
npm/[email protected] environment Transitive: eval, network +16 3.18 MB gaearon
npm/[email protected] environment, filesystem, unsafe 0 6.45 MB lukastaegert

🚮 Removed packages: npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected]

View full report↗︎

Copy link

socket-security bot commented Oct 25, 2024

👍 Dependency issues cleared. Learn more about Socket for GitHub ↗︎

This PR previously contained dependency changes with security issues that have been resolved, removed, or ignored.

View full report↗︎

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants