Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade: libsodium, nan, node-gyp #90

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

blinkhash
Copy link
Owner

snyk-top-banner

Snyk has created this PR to upgrade multiple dependencies.

👯‍♂ The following dependencies are linked and will therefore be updated together.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.

Name Versions Released on

libsodium
from 0.7.10 to 0.7.15 | 4 versions ahead of your current version | 25 days ago
on 2024-08-13
nan
from 2.15.0 to 2.20.0 | 5 versions ahead of your current version | 3 months ago
on 2024-06-12
node-gyp
from 9.0.0 to 9.4.1 | 6 versions ahead of your current version | 10 months ago
on 2023-10-27

Release notes
Package name: libsodium from libsodium GitHub release notes
Package name: nan from nan GitHub release notes
Package name: node-gyp
  • 9.4.1 - 2023-10-27

    Bug Fixes

    • Revert "update make-fetch-happen to 11.0.3 (#2796)" (82c2d64)

    Tests

    Miscellaneous

    • add release branches as ci targets (b68da05)
    • add release-please to v9 branch (5a65d03)
    • increase parallel install timeouts (fd77b34)
  • 9.4.0 - 2023-06-13

    Features

    • add support for native windows arm64 build tools (bb76021)
    • Upgrade Python linting from flake8 to ruff (#2815) (fc0ddc6)

    Bug Fixes

    • extract tarball to temp directory on Windows (#2846) (aaa117c)
    • log statement is for devDir not nodedir (#2840) (55048f8)

    Miscellaneous

    • get update-gyp.py to work with Python >= v3.5 (#2826) (337e8e6)

    Doc

    Tests

  • 9.3.1 - 2022-12-19

    Bug Fixes

    Miscellaneous

  • 9.3.0 - 2022-10-11

    Features

  • 9.2.0 - 2022-10-04

    Features

    • Add proper support for IBM i (a26494f)
    • gyp: update gyp to v0.13.0 (3e2a532)

    Bug Fixes

    • node.js debugger adds stderr (but exit code is 0) -> shouldn't throw (#2719) (c379a74)

    Core

    Miscellaneous

  • 9.1.0 - 2022-07-14

    Features

    • Update function getSDK() to support Windows 11 SDK (#2565) (ea8520e)

    Bug Fixes

    • extend tap timeout length to allow for slow CI (6f74c76)
    • new ca & server certs, bundle in .js file and unpack for testing (147e3d3)
    • re-label (#2689) (f0b7863)
    • typo on readme (bf81cd4)

    Doc

    • update docs/README.md with latest version number (62d2815)

    Core

    • update due to rename of primary branch (ca1f068)

    Tests

  • 9.0.0 - 2022-03-01

    ⚠ BREAKING CHANGES

    • increase "engines" to "node" : "^12.22 || ^14.13 || >=16" (#2601)

    Bug Fixes

    • _ in npm_config_ env variables (eef4eef)
    • update make-fetch-happen to a minimum of 10.0.3 (839e414)

    Miscellaneous

    Doc

    • Add notes/disclaimers for upgrading the copy of node-gyp that npm uses (#2585) (faf6d48)
    • Rename and update Common-issues.md --> docs/README.md (#2567) (2ef5fb8)
    • rephrase explanation of which node-gyp is used by npm (#2587) (a2f2988)
    • title match content (#2574) (6e8f93b)
    • Update Python versions (#2571) (e069f13)

    Core

    • add lib.target as path for searching libnode on z/OS (1d499dd)
    • increase "engines" to "node" : "^12.22 || ^14.13 || >=16" (#2601) (6562f92)
    • make-fetch-happen@10.0.1 (78f6660)
from node-gyp GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade:
  - libsodium from 0.7.10 to 0.7.15.
    See this package in npm: https://www.npmjs.com/package/libsodium
  - nan from 2.15.0 to 2.20.0.
    See this package in npm: https://www.npmjs.com/package/nan
  - node-gyp from 9.0.0 to 9.4.1.
    See this package in npm: https://www.npmjs.com/package/node-gyp

See this project in Snyk:
https://app.snyk.io/org/blinkhash/project/a8cae574-e147-4e0a-a2b1-f8af9070f810?utm_source=github&utm_medium=referral&page=upgrade-pr
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants