deps(deps): bump the npm_and_yarn group with 2 updates
Type: Pull Request
State: Open
![dependabot[bot]](https://github.com/dependabot.png)
Association: None
Comments: 0
(15 days ago)
(15 days ago)
dependencies javascript
Bumps the npm_and_yarn group with 2 updates: path-to-regexp and @nestjs/serve-static.
Updates path-to-regexp
from 0.1.12 to 3.3.0
Release notes
Sourced from path-to-regexp's releases.
Add backtracking protection
Fixed
- Add backtrack protection to 3.x release (#321) d31670a
https://github.com/pillarjs/path-to-regexp/compare/v3.2.0...v3.3.0
Match Function
Added
- Add native
match
function to libraryValidate and sensitive options
Fix backtracking in 1.x
Fixed
- Add backtrack protection to 1.x release (#320) 925ac8e
- Fix
re.exec(&[#39](https://github.com/pillarjs/path-to-regexp/issues/39);/test/route&[#39](https://github.com/pillarjs/path-to-regexp/issues/39);)
result (#267) 32a14b0https://github.com/pillarjs/path-to-regexp/compare/v1.8.0...v1.9.0
Backport token to function options
Added
- Backport
TokensToFunctionOptions
Changelog
Sourced from path-to-regexp's changelog.
Moved to GitHub Releases
3.0.0 / 2019-01-13
- Always use prefix character as delimiter token, allowing any character to be a delimiter (e.g.
/:att1-:att2-:att3-:att4-:att5
)- Remove
partial
support, prefer escaping the prefix delimiter explicitly (e.g.\\/(apple-)?icon-:res(\\d+).png
)2.4.0 / 2018-08-26
- Support
start
option to disable anchoring from beginning of the string2.3.0 / 2018-08-20
- Use
delimiter
when processing repeated matching groups (e.g.foo/bar
has no prefix, but has a delimiter)2.2.1 / 2018-04-24
- Allow empty string with
end: false
to match both relative and absolute paths2.2.0 / 2018-03-06
- Pass
token
as second argument toencode
option (e.g.encode(value, token)
)2.1.0 / 2017-10-20
- Handle non-ending paths where the final character is a delimiter
- E.g.
/foo/
before required either/foo/
or/foo//
to match in non-ending mode2.0.0 / 2017-08-23
- New option! Ability to set
endsWith
to match paths like/test?query=string
up to the query string- New option! Set
delimiters
for specific characters to be treated as parameter prefixes (e.g./:test
)- Remove
isarray
dependency- Explicitly handle trailing delimiters instead of trimming them (e.g.
/test/
is now treated as/test/
instead of/test
when matching)- Remove overloaded
keys
argument that acceptedoptions
- Remove
keys
list attached to theRegExp
output- Remove asterisk functionality (it's a real pain to properly encode)
- Change
tokensToFunction
(e.g.compile
) to accept anencode
function for pretty encoding (e.g. pass your own implementation)1.7.0 / 2016-11-08
- Allow a
delimiter
option to be passed in withtokensToRegExp
which will be used for "non-ending" token match situations1.6.0 / 2016-10-03
- Populate
RegExp.keys
when using thetokensToRegExp
method (making it consistent with the main export)- Allow a
delimiter
option to be passed in withparse
- Updated TypeScript definition with
Keys
andOptions
updated1.5.3 / 2016-06-15
... (truncated)
Commits
2eb1293
3.3.0d31670a
Add backtrack protection to 3.x release (#321)6d2e8db
3.2.00e0dce9
Add nativematch
function to librarydd966ea
Fixvalidate: false
examples in READMEead0298
Changed coverage tool to nyc (#201)1aa2238
Bump node version testsf232e6d
3.1.0cb331c6
Update dev dependencies36344dc
RenamenoValidate
option tovalidate
- Additional commits viewable in compare view
Updates @nestjs/serve-static
from 4.0.2 to 5.0.3
Release notes
Sourced from @nestjs/serve-static
's releases.
Release 5.0.3
What's Changed
- fix(fastify): serve index file when it exists by
@SteadEXE
in nestjs/serve-static#1587New Contributors
@SteadEXE
made their first contribution in nestjs/serve-static#1587Full Changelog: https://github.com/nestjs/serve-static/compare/5.0.2...5.0.3
Release 5.0.2
What's Changed
- fix: pass unhandled error on to next express error handler by
@luddwichr
in nestjs/serve-static#1572New Contributors
@luddwichr
made their first contribution in nestjs/serve-static#1572Full Changelog: https://github.com/nestjs/serve-static/compare/5.0.1...5.0.2
Release 5.0.1
- fix: dont send enoent error for routes under the excluded path (2cbaaaa)
Release 5.0.0
v5.0.0 (2025-01-20)
Migration guide: https://docs.nestjs.com/migration-guide
Improvements/features
- send 404 when file does not exist
- support
preCompressed
,decorateReply
configuration options (Fastify)- support
useGlobalPrefix
to auto-prepend all routes with the application's global prefix- support Fastify v5
- support Express v5
Breaking changes
- Express v5 uses the latest version of
path-to-regexp
, so wildcards must now be defined differently than before, see https://docs.nestjs.com/migration-guide#express-v5
Commits
afdc74b
chore(): release v5.0.354b3e4f
Merge pull request #1587 from SteadEXE/mastercad5d89
fix(fastify): inverse fallthrough conditioneb0ab9e
feat(fastify): implement fallthrough option for fastify adapter4a3c08c
test: remove 404 test has code always fallback to index.html00d2275
fix(fastify): serve index file when it exists117fe43
chore(deps): update dependency typescript-eslint to v8.24.1 (#1586)cf93ff6
chore(deps): update nest monorepo to v11.0.10 (#1585)46464a8
chore(deps): update dependency@fastify/static
to v8.1.1 (#1584)72c22f8
chore(deps): update dependency@types/node
to v22.13.4 (#1582)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase
.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions
You can disable automated security fix PRs for this repo from the Security Alerts page.
Pull Request Statistics
1
2
+555
-120
Package Dependencies
Technical Details
ID: | 5649876 |
UUID: | 2767193315 |
Node ID: | PR_kwDOPdC0ls6k8ATj |
Host: | GitHub |
Repository: | mdd255/github-ci-practice |
Merge State: | Unknown |