Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Dependencies/updates #1784

Merged
merged 48 commits into from
May 10, 2021
Merged

Dependencies/updates #1784

merged 48 commits into from
May 10, 2021

Conversation

xzyaoi
Copy link
Contributor

@xzyaoi xzyaoi commented May 10, 2021

No description provided.

dependabot-preview bot and others added 30 commits April 16, 2021 23:11
Bumps [ssri](https://github.com/npm/ssri) from 6.0.1 to 6.0.2. **This update includes a security fix.**
- [Release notes](https://github.com/npm/ssri/releases)
- [Changelog](https://github.com/npm/ssri/blob/v6.0.2/CHANGELOG.md)
- [Commits](npm/ssri@v6.0.1...v6.0.2)

Signed-off-by: dependabot-preview[bot] <[email protected]>
Bumps [github.com/mattn/go-sqlite3](https://github.com/mattn/go-sqlite3) from 1.14.5 to 1.14.7.
- [Release notes](https://github.com/mattn/go-sqlite3/releases)
- [Commits](mattn/go-sqlite3@v1.14.5...v1.14.7)

Signed-off-by: dependabot-preview[bot] <[email protected]>
Bumps [docutils](http://docutils.sourceforge.net/) from 0.16 to 0.17.1.

Signed-off-by: dependabot-preview[bot] <[email protected]>
Bumps [github.com/docker/docker](https://github.com/docker/docker) from 20.10.3+incompatible to 20.10.6+incompatible.
- [Release notes](https://github.com/docker/docker/releases)
- [Changelog](https://github.com/moby/moby/blob/master/CHANGELOG.md)
- [Commits](moby/moby@v20.10.3...v20.10.6)

Signed-off-by: dependabot-preview[bot] <[email protected]>
Bumps [github.com/go-git/go-git/v5](https://github.com/go-git/go-git) from 5.2.0 to 5.3.0.
- [Release notes](https://github.com/go-git/go-git/releases)
- [Commits](go-git/go-git@v5.2.0...v5.3.0)

Signed-off-by: dependabot-preview[bot] <[email protected]>
Bumps [y18n](https://github.com/yargs/y18n) from 4.0.0 to 4.0.3. **This update includes a security fix.**
- [Release notes](https://github.com/yargs/y18n/releases)
- [Changelog](https://github.com/yargs/y18n/blob/y18n-v4.0.3/CHANGELOG.md)
- [Commits](yargs/y18n@v4.0.0...y18n-v4.0.3)

Signed-off-by: dependabot-preview[bot] <[email protected]>
Bumps [hosted-git-info](https://github.com/npm/hosted-git-info) from 2.8.8 to 2.8.9. **This update includes a security fix.**
- [Release notes](https://github.com/npm/hosted-git-info/releases)
- [Changelog](https://github.com/npm/hosted-git-info/blob/v2.8.9/CHANGELOG.md)
- [Commits](npm/hosted-git-info@v2.8.8...v2.8.9)

Signed-off-by: dependabot-preview[bot] <[email protected]>
…onents/discovery/dependencies/updates/hosted-git-info-2.8.9

[Security] Bump hosted-git-info from 2.8.8 to 2.8.9 in /components/discovery
…onents/discovery/dependencies/updates/nestjs/jwt-7.2.0

Bump @nestjs/jwt from 7.1.0 to 7.2.0 in /components/discovery
…onents/discovery/dependencies/updates/swagger-ui-express-4.1.6

Bump swagger-ui-express from 4.1.4 to 4.1.6 in /components/discovery
…onents/discovery/dependencies/updates/admin-bro-3.4.0

Bump admin-bro from 3.2.5 to 3.4.0 in /components/discovery
…onents/discovery/dependencies/updates/typescript-3.9.9

Bump typescript from 3.9.7 to 3.9.9 in /components/discovery
…onents/discovery/dependencies/updates/express-rate-limit-5.2.6

Bump express-rate-limit from 5.1.3 to 5.2.6 in /components/discovery
…onents/discovery/dependencies/updates/nestjs/schematics-7.3.1

Bump @nestjs/schematics from 7.1.2 to 7.3.1 in /components/discovery
…onents/discovery/dependencies/updates/y18n-4.0.3

[Security] Bump y18n from 4.0.0 to 4.0.3 in /components/discovery
…ents/cmd/dependencies/updates/github.com/go-git/go-git/v5-5.3.0

Bump github.com/go-git/go-git/v5 from 5.2.0 to 5.3.0 in /components/cmd
…ents/cmd/dependencies/updates/github.com/docker/docker-20.10.6incompatible

Bump github.com/docker/docker from 20.10.3+incompatible to 20.10.6+incompatible in /components/cmd
…serve/dependencies/updates/docutils-0.17.1

Bump docutils from 0.16 to 0.17.1 in /components/mlserve
Bumps [elliptic](https://github.com/indutny/elliptic) from 6.5.3 to 6.5.4. **This update includes a security fix.**
- [Release notes](https://github.com/indutny/elliptic/releases)
- [Commits](indutny/elliptic@v6.5.3...v6.5.4)

Signed-off-by: dependabot-preview[bot] <[email protected]>
…serve/dependencies/updates/pytest-6.2.3

Bump pytest from 6.1.1 to 6.2.3 in /components/mlserve
xzyaoi and others added 17 commits May 10, 2021 12:10
…ents/cmd/dependencies/updates/github.com/mattn/go-sqlite3-1.14.7

Bump github.com/mattn/go-sqlite3 from 1.14.5 to 1.14.7 in /components/cmd
…serve/dependencies/updates/urllib3-1.26.4

Bump urllib3 from 1.25.10 to 1.26.4 in /components/mlserve
…onents/discovery/dependencies/updates/elliptic-6.5.4

[Security] Bump elliptic from 6.5.3 to 6.5.4 in /components/discovery
Bumps [tqdm](https://github.com/tqdm/tqdm) from 4.50.2 to 4.60.0.
- [Release notes](https://github.com/tqdm/tqdm/releases)
- [Commits](tqdm/tqdm@v4.50.2...v4.60.0)

Signed-off-by: dependabot-preview[bot] <[email protected]>
Bumps [jinja2](https://github.com/pallets/jinja) from 2.11.2 to 2.11.3. **This update includes a security fix.**
- [Release notes](https://github.com/pallets/jinja/releases)
- [Changelog](https://github.com/pallets/jinja/blob/master/CHANGES.rst)
- [Commits](pallets/jinja@2.11.2...2.11.3)

Signed-off-by: dependabot-preview[bot] <[email protected]>
…onents/discovery/dependencies/updates/ssri-6.0.2

[Security] Bump ssri from 6.0.1 to 6.0.2 in /components/discovery
Bumps [py](https://github.com/pytest-dev/py) from 1.9.0 to 1.10.0. **This update includes a security fix.**
- [Release notes](https://github.com/pytest-dev/py/releases)
- [Changelog](https://github.com/pytest-dev/py/blob/master/CHANGELOG.rst)
- [Commits](pytest-dev/py@1.9.0...1.10.0)

Signed-off-by: dependabot-preview[bot] <[email protected]>
…serve/dependencies/updates/jinja2-2.11.3

[Security] Bump jinja2 from 2.11.2 to 2.11.3 in /components/mlserve
…serve/dependencies/updates/py-1.10.0

[Security] Bump py from 1.9.0 to 1.10.0 in /components/mlserve
…serve/dependencies/updates/pillow-8.1.1

[Security] Bump pillow from 8.0.0 to 8.1.1 in /components/mlserve
…ents/cmd/dependencies/updates/github.com/sirupsen/logrus-1.8.1

Bump github.com/sirupsen/logrus from 1.7.0 to 1.8.1 in /components/cmd
…serve/dependencies/updates/keyring-23.0.1

Bump keyring from 21.4.0 to 23.0.1 in /components/mlserve
…serve/dependencies/updates/twine-3.4.1

Bump twine from 3.2.0 to 3.4.1 in /components/mlserve
…serve/dependencies/updates/tqdm-4.60.0

Bump tqdm from 4.50.2 to 4.60.0 in /components/mlserve
@changelogg
Copy link

changelogg bot commented May 10, 2021

Hey! Changelogs info seems to be missing or might be in incorrect format.
Please use the below template in PR description to ensure Changelogg can detect your changes:
- (tag) changelog_text
or
- tag: changelog_text
OR
You can add tag in PR header or while doing a commit too
(tag) PR header
or
tag: PR header
Valid tags: added / feat, changed, deprecated, fixed / fix, removed, security, build, ci, chore, docs, perf, refactor, revert, style, test
Thanks!
For more info, check out changelogg docs

@ghost
Copy link

ghost commented May 10, 2021

Sider has detected 1 error and 3 warnings on analyzing the commit 2fabb0e.

We recommend fixing them as possible by updating the dependencies, configuring the analysis tool, configuring sider.yml, turning off unused tools, and so on.

If you have problems or questions still, feel free to ask us via chat. 💬


You can turn off such notifications if unnecessary.

@xzyaoi xzyaoi merged commit 4632fd1 into main May 10, 2021
@xzyaoi xzyaoi deleted the dependencies/updates branch May 10, 2021 13:55
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant