chore(deps): bump the production-dependencies group across 1 directory with 3 updates#217
Conversation
…y with 3 updates Bumps the production-dependencies group with 3 updates in the / directory: [google-auth-library](https://github.com/googleapis/google-cloud-node-core/tree/HEAD/packages/google-auth-library-nodejs), [googleapis](https://github.com/googleapis/google-api-nodejs-client) and [nodemailer](https://github.com/nodemailer/nodemailer). Updates `google-auth-library` from 10.6.2 to 10.7.0 - [Release notes](https://github.com/googleapis/google-cloud-node-core/releases) - [Changelog](https://github.com/googleapis/google-cloud-node-core/blob/main/packages/google-auth-library-nodejs/CHANGELOG.md) - [Commits](https://github.com/googleapis/google-cloud-node-core/commits/HEAD/packages/google-auth-library-nodejs) Updates `googleapis` from 171.4.0 to 173.0.0 - [Release notes](https://github.com/googleapis/google-api-nodejs-client/releases) - [Commits](googleapis/google-api-nodejs-client@googleapis-v171.4.0...googleapis-v173.0.0) Updates `nodemailer` from 8.0.7 to 8.0.10 - [Release notes](https://github.com/nodemailer/nodemailer/releases) - [Changelog](https://github.com/nodemailer/nodemailer/blob/master/CHANGELOG.md) - [Commits](nodemailer/nodemailer@v8.0.7...v8.0.10) --- updated-dependencies: - dependency-name: google-auth-library dependency-version: 10.7.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: googleapis dependency-version: 173.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: production-dependencies - dependency-name: nodemailer dependency-version: 8.0.10 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
|
|
Warning Review the following alerts detected in dependencies. According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.
|
Bundle ReportBundle size has no change ✅ |
Bumps the production-dependencies group with 3 updates in the / directory: google-auth-library, googleapis and nodemailer.
Updates
google-auth-libraryfrom 10.6.2 to 10.7.0Changelog
Sourced from google-auth-library's changelog.
Commits
Updates
googleapisfrom 171.4.0 to 173.0.0Release notes
Sourced from googleapis's releases.
Commits
9e92f53chore: release main (#3923)08443b4feat: run the generator (#3920)cf35f69chore: release main (#3922)dec51bffix: update release-please-config.json to remove non-existent package (#3921)b385d3ffeat: run the generator (#3919)7fa3d49feat: regenerate index files9fd8b53feat(walletobjects): update the API45054a1feat(servicecontrol): update the API0538d74fix(orgpolicy): update the APIefe33bafeat(dataflow): update the APIUpdates
nodemailerfrom 8.0.7 to 8.0.10Release notes
Sourced from nodemailer's releases.
Changelog
Sourced from nodemailer's changelog.
Commits
948ae3fchore(master): release 8.0.10 (#1823)9eedad9docs: add SECURITY.md policy (#1824)6d849dffix: fall back to lower-severity handler when custom logger lacks a level method07303cbchore(master): release 8.0.9 (#1821)5f69497fix: two pending security advisories (jsonTransport access bypass, List-* CRL...15138a8chore(master): release 8.0.8 (#1819)850bb91fix: four listener/stream leaks in SMTP transport, connection, pool (#1817)833d6e5fix: enforce strict TLS for OAuth2 and Ethereal credential requests (#1818)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions