Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

AysherPull #2

Open
wants to merge 41 commits into
base: master
Choose a base branch
from
Open

AysherPull #2

wants to merge 41 commits into from

Conversation

SherfeyInv
Copy link

Updates

dependabot bot and others added 30 commits March 12, 2024 13:06
Bumps the maven group with 1 update in the / directory: org.apache.solr:solr-solrj.


Updates `org.apache.solr:solr-solrj` from 6.6.0 to 8.11.3

---
updated-dependencies:
- dependency-name: org.apache.solr:solr-solrj
  dependency-type: direct:production
  dependency-group: maven-security-group
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps the npm_and_yarn group with 20 updates in the /web/src/main/resources directory:

| Package | From | To |
| --- | --- | --- |
| [handlebars](https://github.com/handlebars-lang/handlebars.js) | `4.0.11` | `4.7.7` |
| [jquery](https://github.com/jquery/jquery) | `3.3.1` | `3.5.0` |
| [lodash](https://github.com/lodash/lodash) | `4.17.10` | `4.17.21` |
| [bootstrap-sass](https://github.com/twbs/bootstrap-sass) | `3.3.7` | `3.4.1` |
| [node-sass](https://github.com/sass/node-sass) | `4.9.2` | `7.0.0` |
| [browserify-sign](https://github.com/crypto-browserify/browserify-sign) | `4.0.4` | `4.2.3` |
| [chownr](https://github.com/isaacs/chownr) | `1.0.1` | `1.1.4` |
| [css-what](https://github.com/fb55/css-what) | `2.1.0` | `2.1.3` |
| [decode-uri-component](https://github.com/SamVerschueren/decode-uri-component) | `0.2.0` | `0.2.2` |
| [dns-packet](https://github.com/mafintosh/dns-packet) | `1.3.1` | `1.3.4` |
| [elliptic](https://github.com/indutny/elliptic) | `6.4.0` | `6.5.5` |
| [express](https://github.com/expressjs/express) | `4.16.3` | `4.19.2` |
| [follow-redirects](https://github.com/follow-redirects/follow-redirects) | `1.5.1` | `1.15.6` |
| [fsevents](https://github.com/fsevents/fsevents) | `1.2.4` | `1.2.13` |
| [hosted-git-info](https://github.com/npm/hosted-git-info) | `2.7.1` | `2.8.9` |
| [http-proxy](https://github.com/http-party/node-http-proxy) | `1.17.0` | `1.18.1` |
| [ip](https://github.com/indutny/node-ip) | `1.1.5` | `1.1.9` |
| [minimatch](https://github.com/isaacs/minimatch) | `3.0.4` | `3.0.8` |
| [path-parse](https://github.com/jbgutierrez/path-parse) | `1.0.5` | `1.0.7` |
| [y18n](https://github.com/yargs/y18n) | `3.2.1` | `3.2.2` |



Updates `handlebars` from 4.0.11 to 4.7.7
- [Release notes](https://github.com/handlebars-lang/handlebars.js/releases)
- [Changelog](https://github.com/handlebars-lang/handlebars.js/blob/master/release-notes.md)
- [Commits](handlebars-lang/handlebars.js@v4.0.11...v4.7.7)

Updates `jquery` from 3.3.1 to 3.5.0
- [Release notes](https://github.com/jquery/jquery/releases)
- [Commits](jquery/jquery@3.3.1...3.5.0)

Updates `lodash` from 4.17.10 to 4.17.21
- [Release notes](https://github.com/lodash/lodash/releases)
- [Commits](lodash/lodash@4.17.10...4.17.21)

Updates `bootstrap-sass` from 3.3.7 to 3.4.1
- [Release notes](https://github.com/twbs/bootstrap-sass/releases)
- [Changelog](https://github.com/twbs/bootstrap-sass/blob/master/CHANGELOG.md)
- [Commits](twbs/bootstrap-sass@v3.3.7...v3.4.1)

Updates `node-sass` from 4.9.2 to 7.0.0
- [Release notes](https://github.com/sass/node-sass/releases)
- [Changelog](https://github.com/sass/node-sass/blob/master/CHANGELOG.md)
- [Commits](sass/node-sass@v4.9.2...v7.0.0)

Updates `browserify-sign` from 4.0.4 to 4.2.3
- [Changelog](https://github.com/browserify/browserify-sign/blob/main/CHANGELOG.md)
- [Commits](browserify/browserify-sign@v4.0.4...v4.2.3)

Updates `chownr` from 1.0.1 to 1.1.4
- [Commits](isaacs/chownr@v1.0.1...v1.1.4)

Updates `css-what` from 2.1.0 to 2.1.3
- [Release notes](https://github.com/fb55/css-what/releases)
- [Commits](fb55/css-what@v2.1.0...v2.1.3)

Updates `decode-uri-component` from 0.2.0 to 0.2.2
- [Release notes](https://github.com/SamVerschueren/decode-uri-component/releases)
- [Commits](SamVerschueren/decode-uri-component@v0.2.0...v0.2.2)

Updates `dns-packet` from 1.3.1 to 1.3.4
- [Changelog](https://github.com/mafintosh/dns-packet/blob/master/CHANGELOG.md)
- [Commits](mafintosh/dns-packet@v1.3.1...v1.3.4)

Updates `elliptic` from 6.4.0 to 6.5.5
- [Commits](indutny/elliptic@v6.4.0...v6.5.5)

Updates `express` from 4.16.3 to 4.19.2
- [Release notes](https://github.com/expressjs/express/releases)
- [Changelog](https://github.com/expressjs/express/blob/master/History.md)
- [Commits](expressjs/express@4.16.3...4.19.2)

Updates `follow-redirects` from 1.5.1 to 1.15.6
- [Release notes](https://github.com/follow-redirects/follow-redirects/releases)
- [Commits](follow-redirects/follow-redirects@v1.5.1...v1.15.6)

Updates `fsevents` from 1.2.4 to 1.2.13
- [Release notes](https://github.com/fsevents/fsevents/releases)
- [Commits](fsevents/fsevents@v1.2.4...v1.2.13)

Updates `hosted-git-info` from 2.7.1 to 2.8.9
- [Release notes](https://github.com/npm/hosted-git-info/releases)
- [Changelog](https://github.com/npm/hosted-git-info/blob/v2.8.9/CHANGELOG.md)
- [Commits](npm/hosted-git-info@v2.7.1...v2.8.9)

Updates `http-proxy` from 1.17.0 to 1.18.1
- [Release notes](https://github.com/http-party/node-http-proxy/releases)
- [Changelog](https://github.com/http-party/node-http-proxy/blob/master/CHANGELOG.md)
- [Commits](http-party/node-http-proxy@1.17.0...1.18.1)

Updates `ip` from 1.1.5 to 1.1.9
- [Commits](indutny/node-ip@v1.1.5...v1.1.9)

Updates `minimatch` from 3.0.4 to 3.0.8
- [Changelog](https://github.com/isaacs/minimatch/blob/main/changelog.md)
- [Commits](isaacs/minimatch@v3.0.4...v3.0.8)

Updates `path-parse` from 1.0.5 to 1.0.7
- [Commits](https://github.com/jbgutierrez/path-parse/commits/v1.0.7)

Updates `qs` from 6.4.0 to 6.5.3
- [Changelog](https://github.com/ljharb/qs/blob/main/CHANGELOG.md)
- [Commits](ljharb/qs@v6.4.0...v6.5.3)

Updates `request` from 2.81.0 to 2.88.2
- [Changelog](https://github.com/request/request/blob/master/CHANGELOG.md)
- [Commits](https://github.com/request/request/commits)

Updates `semver` from 5.3.0 to 5.5.0
- [Release notes](https://github.com/npm/node-semver/releases)
- [Changelog](https://github.com/npm/node-semver/blob/main/CHANGELOG.md)
- [Commits](npm/node-semver@v5.3.0...v5.5.0)

Updates `tar` from 2.2.1 to 6.2.1
- [Release notes](https://github.com/isaacs/node-tar/releases)
- [Changelog](https://github.com/isaacs/node-tar/blob/main/CHANGELOG.md)
- [Commits](isaacs/node-tar@v2.2.1...v6.2.1)

Updates `tough-cookie` from 2.3.4 to 2.5.0
- [Release notes](https://github.com/salesforce/tough-cookie/releases)
- [Changelog](https://github.com/salesforce/tough-cookie/blob/master/CHANGELOG.md)
- [Commits](salesforce/tough-cookie@v2.3.4...v2.5.0)

Updates `y18n` from 3.2.1 to 3.2.2
- [Release notes](https://github.com/yargs/y18n/releases)
- [Changelog](https://github.com/yargs/y18n/blob/master/CHANGELOG.md)
- [Commits](https://github.com/yargs/y18n/commits)

---
updated-dependencies:
- dependency-name: handlebars
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: jquery
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: lodash
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: bootstrap-sass
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: node-sass
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: browserify-sign
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: chownr
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: css-what
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: decode-uri-component
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: dns-packet
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: elliptic
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: express
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: follow-redirects
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: fsevents
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: hosted-git-info
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: http-proxy
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: ip
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: minimatch
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: path-parse
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: qs
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: request
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: semver
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: tar
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: tough-cookie
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: y18n
  dependency-type: indirect
  dependency-group: npm_and_yarn
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [ini](https://github.com/npm/ini) from 1.3.5 to 1.3.8.
- [Release notes](https://github.com/npm/ini/releases)
- [Changelog](https://github.com/npm/ini/blob/main/CHANGELOG.md)
- [Commits](npm/ini@v1.3.5...v1.3.8)

---
updated-dependencies:
- dependency-name: ini
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [lodash.mergewith](https://github.com/lodash/lodash) from 4.6.1 to 4.6.2.
- [Release notes](https://github.com/lodash/lodash/releases)
- [Commits](https://github.com/lodash/lodash/commits)

---
updated-dependencies:
- dependency-name: lodash.mergewith
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
… 0.3.0 to 0.4.1

Snyk has created this PR to upgrade pl.allegro.tech.boot:handlebars-spring-boot-starter from 0.3.0 to 0.4.1.

See this package in Maven Repository:
https://mvnrepository.com/artifact/pl.allegro.tech.boot/handlebars-spring-boot-starter/

See this project in Snyk:
https://app.snyk.io/org/sherfeyinv/project/3553cec4-15f7-4122-8886-87f78103fd93?utm_source=github&utm_medium=referral&page=upgrade-pr
…56683968789

[Snyk] Security upgrade nginx from 1.14-alpine to 1.25.5-alpine
…7823d2c3cfc

[Snyk] Security upgrade nginx from 1.14-alpine to 1.25.4-alpine
…6831fdc82ff

[Snyk] Security upgrade nginx from 1.14-alpine to 1.25.1-alpine
…49e67ed8149

[Snyk] Security upgrade nginx from 1.14-alpine to 1-alpine
…6d07385bba330bb

[Snyk] Upgrade org.apache.solr:solr-solrj from 6.6.0 to 6.6.6
…adc4b298508385

[Snyk] Upgrade com.google.guava:guava from 23.0 to 23.6.1-jre
…42b610174359eb

[Snyk] Upgrade ch.qos.logback:logback-access from 1.1.11 to 1.4.14
…/main/resources/lodash.mergewith-4.6.2

Bump lodash.mergewith from 4.6.1 to 4.6.2 in /web/src/main/resources
…/main/resources/ini-1.3.8

Bump ini from 1.3.5 to 1.3.8 in /web/src/main/resources
…/main/resources/npm_and_yarn-16d28425a7

Bump the npm_and_yarn group across 1 directory with 25 updates
SherfeyInv and others added 11 commits May 27, 2024 03:50
…-group-4934c7c916

Bump the maven group across 1 directory with 1 update
Snyk has created this PR to upgrade org.apache.commons:commons-csv from 1.5 to 1.11.0.

See this package in maven:
org.apache.commons:commons-csv

See this project in Snyk:
https://app.snyk.io/org/sherfeyinv/project/3553cec4-15f7-4122-8886-87f78103fd93?utm_source=github&utm_medium=referral&page=upgrade-pr
…tarter from 2.7.1 to 2.12.0

Snyk has created this PR to upgrade net.rakugakibox.spring.boot:logback-access-spring-boot-starter from 2.7.1 to 2.12.0.

See this package in maven:
net.rakugakibox.spring.boot:logback-access-spring-boot-starter

See this project in Snyk:
https://app.snyk.io/org/sherfeyinv/project/3553cec4-15f7-4122-8886-87f78103fd93?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade jquery from 3.5.0 to 3.7.1.

See this package in yarn:
jquery

See this project in Snyk:
https://app.snyk.io/org/sherfeyinv/project/eb0bf84d-3598-402c-b879-5c3ec227416e?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade pubsub-js from 1.6.0 to 1.9.4.

See this package in yarn:
pubsub-js

See this project in Snyk:
https://app.snyk.io/org/sherfeyinv/project/eb0bf84d-3598-402c-b879-5c3ec227416e?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade handlebars from 4.7.7 to 4.7.8.

See this package in yarn:
handlebars

See this project in Snyk:
https://app.snyk.io/org/sherfeyinv/project/eb0bf84d-3598-402c-b879-5c3ec227416e?utm_source=github&utm_medium=referral&page=upgrade-pr
…488a964b673e78e

[Snyk] Upgrade handlebars from 4.7.7 to 4.7.8
…71a1ad72333aed8

[Snyk] Upgrade pubsub-js from 1.6.0 to 1.9.4
…1fa6f400832c668

[Snyk] Upgrade jquery from 3.5.0 to 3.7.1
…721a7c4d80f6065

[Snyk] Upgrade org.apache.commons:commons-csv from 1.5 to 1.11.0
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants