Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

fix(deps): update dependency express to v4.21.2 #14

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

renovate[bot]
Copy link

@renovate renovate bot commented Feb 17, 2022

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
express (source) 4.17.2 -> 4.21.2 age adoption passing confidence

Release Notes

expressjs/express (express)

v4.21.2

Compare Source

v4.21.1

Compare Source

What's Changed

Full Changelog: expressjs/express@4.21.0...4.21.1

v4.21.0

Compare Source

What's Changed

New Contributors

Full Changelog: expressjs/express@4.20.0...4.21.0

v4.20.0

Compare Source

==========

  • deps: serve-static@0.16.0
    • Remove link renderization in html while redirecting
  • deps: send@0.19.0
    • Remove link renderization in html while redirecting
  • deps: body-parser@0.6.0
    • add depth option to customize the depth level in the parser
    • IMPORTANT: The default depth level for parsing URL-encoded data is now 32 (previously was Infinity)
  • Remove link renderization in html while using res.redirect
  • deps: path-to-regexp@0.1.10
    • Adds support for named matching groups in the routes using a regex
    • Adds backtracking protection to parameters without regexes defined
  • deps: encodeurl@~2.0.0
    • Removes encoding of \, |, and ^ to align better with URL spec
  • Deprecate passing options.maxAge and options.expires to res.clearCookie
    • Will be ignored in v5, clearCookie will set a cookie with an expires in the past to instruct clients to delete the cookie

v4.19.2

Compare Source

==========

  • Improved fix for open redirect allow list bypass

v4.19.1

Compare Source

==========

  • Allow passing non-strings to res.location with new encoding handling checks

v4.19.0

Compare Source

v4.18.3

Compare Source

==========

  • Fix routing requests without method
  • deps: body-parser@1.20.2
    • Fix strict json error message on Node.js 19+
    • deps: content-type@~1.0.5
    • deps: raw-body@2.5.2

v4.18.2

Compare Source

===================

  • Fix regression routing a large stack in a single route
  • deps: body-parser@1.20.1
    • deps: qs@6.11.0
    • perf: remove unnecessary object clone
  • deps: qs@6.11.0

v4.18.1

Compare Source

===================

  • Fix hanging on large stack of sync routes

v4.18.0

Compare Source

===================

  • Add "root" option to res.download
  • Allow options without filename in res.download
  • Deprecate string and non-integer arguments to res.status
  • Fix behavior of null/undefined as maxAge in res.cookie
  • Fix handling very large stacks of sync middleware
  • Ignore Object.prototype values in settings through app.set/app.get
  • Invoke default with same arguments as types in res.format
  • Support proper 205 responses using res.send
  • Use http-errors for res.format error
  • deps: body-parser@1.20.0
    • Fix error message for json parse whitespace in strict
    • Fix internal error when inflated body exceeds limit
    • Prevent loss of async hooks context
    • Prevent hanging when request already read
    • deps: depd@2.0.0
    • deps: http-errors@2.0.0
    • deps: on-finished@2.4.1
    • deps: qs@6.10.3
    • deps: raw-body@2.5.1
  • deps: cookie@0.5.0
    • Add priority option
    • Fix expires option to reject invalid dates
  • deps: depd@2.0.0
    • Replace internal eval usage with Function constructor
    • Use instance methods on process to check for listeners
  • deps: finalhandler@1.2.0
    • Remove set content headers that break response
    • deps: on-finished@2.4.1
    • deps: statuses@2.0.1
  • deps: on-finished@2.4.1
    • Prevent loss of async hooks context
  • deps: qs@6.10.3
  • deps: send@0.18.0
    • Fix emitted 416 error missing headers property
    • Limit the headers removed for 304 response
    • deps: depd@2.0.0
    • deps: destroy@1.2.0
    • deps: http-errors@2.0.0
    • deps: on-finished@2.4.1
    • deps: statuses@2.0.1
  • deps: serve-static@1.15.0
    • deps: send@0.18.0
  • deps: statuses@2.0.1
    • Remove code 306
    • Rename 425 Unordered Collection to standard 425 Too Early

v4.17.3

Compare Source

===================

  • deps: accepts@~1.3.8
    • deps: mime-types@~2.1.34
    • deps: negotiator@0.6.3
  • deps: body-parser@1.19.2
    • deps: bytes@3.1.2
    • deps: qs@6.9.7
    • deps: raw-body@2.4.3
  • deps: cookie@0.4.2
  • deps: qs@6.9.7
    • Fix handling of __proto__ keys
  • pref: remove unnecessary regexp for trust proxy

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot changed the title fix(deps): update dependency express to v4.17.3 fix(deps): update dependency express to v4.18.1 May 15, 2022
@renovate renovate bot force-pushed the renovate/express-4.x branch from b5658a2 to 573c775 Compare May 15, 2022 19:56
@renovate renovate bot force-pushed the renovate/express-4.x branch from 573c775 to ab7385d Compare November 20, 2022 08:40
@renovate renovate bot changed the title fix(deps): update dependency express to v4.18.1 fix(deps): update dependency express to v4.18.2 Nov 20, 2022
@renovate renovate bot changed the title fix(deps): update dependency express to v4.18.2 fix(deps): update dependency express to v4.18.3 Mar 2, 2024
@renovate renovate bot force-pushed the renovate/express-4.x branch from ab7385d to 60b5038 Compare March 2, 2024 17:15
@renovate renovate bot changed the title fix(deps): update dependency express to v4.18.3 fix(deps): update dependency express to v4.19.0 Mar 20, 2024
@renovate renovate bot force-pushed the renovate/express-4.x branch 2 times, most recently from 77d1e1b to bc99e6c Compare March 20, 2024 23:52
@renovate renovate bot changed the title fix(deps): update dependency express to v4.19.0 fix(deps): update dependency express to v4.19.1 Mar 20, 2024
@renovate renovate bot force-pushed the renovate/express-4.x branch from bc99e6c to 09afcd7 Compare March 25, 2024 14:46
@renovate renovate bot changed the title fix(deps): update dependency express to v4.19.1 fix(deps): update dependency express to v4.19.2 Mar 25, 2024
@renovate renovate bot changed the title fix(deps): update dependency express to v4.19.2 fix(deps): update dependency express to v4.20.0 Sep 10, 2024
@renovate renovate bot force-pushed the renovate/express-4.x branch from 09afcd7 to 4ee2d90 Compare September 10, 2024 04:51
@renovate renovate bot changed the title fix(deps): update dependency express to v4.20.0 fix(deps): update dependency express to v4.21.0 Sep 12, 2024
@renovate renovate bot force-pushed the renovate/express-4.x branch from 4ee2d90 to dbd1f3b Compare September 12, 2024 01:25
@renovate renovate bot changed the title fix(deps): update dependency express to v4.21.0 fix(deps): update dependency express to v4.21.1 Oct 8, 2024
@renovate renovate bot force-pushed the renovate/express-4.x branch from dbd1f3b to 513c47d Compare October 8, 2024 19:25
@renovate renovate bot changed the title fix(deps): update dependency express to v4.21.1 fix(deps): update dependency express to v4.21.2 Dec 5, 2024
@renovate renovate bot force-pushed the renovate/express-4.x branch from 513c47d to aa335e1 Compare December 5, 2024 22:56
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants