[Snyk] Upgrade gh-pages from 0.11.0 to 2.2.0 #9
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade gh-pages from 0.11.0 to 2.2.0.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.Warning: This is a major version upgrade, and may be a breaking change.
The recommended version fixes:
npm:qs:20170213
npm:q-io:20180212
Release notes
Package name: gh-pages
-
2.2.0 - 2020-01-07
-
2.1.1 - 2019-08-08
- #312 - Add default for '--git' option (@tschaub)
-
2.1.0 - 2019-07-31
- #307 - Dev dependency updates (@tschaub)
- #303 - Support '--git' CLI option (@JRJurman)
-
2.0.1 - 2018-10-04
- #268 - Continue even if no git configured user.
-
2.0.0 - 2018-09-16
- Requires Node 6 and above. If you require support for Node 4, stick with v1.2.0.
- The git user for commits is determined by running
- #264 - Better user handling (thanks @holloway for getting this going and @nuklearfiziks and @paulirish for pushing it over the edge)
- #263 - Infra: newer syntax and upgrade deps to latest stable versions (@AviVahl)
-
1.2.0 - 2018-06-01
- #252 - Update dependencies (@tschaub)
- #245 - Typos (@thekevinscott)
- #251 - Update async to the latest version 🚀 (@tschaub)
- #243 - docs(readme.md): add tips (@polyglotm)
- #241 - Update sinon to the latest version 🚀 (@tschaub)
- #240 - Update eslint-config-tschaub to the latest version 🚀 (@tschaub)
- #239 - Assorted updates (@tschaub)
- #238 - fix(package): update commander to version 2.15.1 (@tschaub)
- #237 - chore(package): update mocha to version 5.0.5 (@tschaub)
- #232 - Update sinon to the latest version 🚀 (@tschaub)
-
1.1.0 - 2017-11-17
- #218 - Update dependencies, test on Node 8 (@tschaub)
- #211 - Update async to the latest version 🚀 (@tschaub)
- #202 - chore(package): update sinon to version 3.2.1 (@tschaub)
- #201 - chore(package): update chai to version 4.1.1 (@tschaub)
- #196 - fix(package): update fs-extra to version 4.0.1 (@tschaub)
- #199 - Update tmp to the latest version 🚀 (@tschaub)
- #193 - Return the promise in the publish function (@Ambyjkl)
- #188 - chore(package): update sinon to version 2.3.3 (@tschaub)
- #185 - fix(package): update commander to version 2.11.0 (@tschaub)
- #186 - chore(package): update eslint to version 4.1.1 (@tschaub)
- #187 - fix(package): update async to version 2.5.0 (@tschaub)
- #175 - Removed unnecessary path require (@antialias)
-
1.0.0 - 2017-05-09
- Node 4+ is required.
- The
- #174 - Remove the logger option and use util.debuglog() (@tschaub)
- #173 - Dedicated cache directory per repo (@tschaub)
- #172 - Provision for root path when splitting (@esarbanis)
- #171 - Add a dest option (@lelandmiller)
- #73 - feat(plugin): add plugin support for semantic-release (@tusharmath)
- #170 - Integration tests (@tschaub)
- #21 - Document that git 1.9+ is required. (@warmhug)
- #169 - Fix noPush command argument and include regression tests for the CLI (@thiagofelix)
- #168 - Clone with depth 1 by default (@tschaub)
- #167 - Require Node 4+ (@tschaub)
- #166 - Updates (@tschaub)
- #158 - Update dependencies to enable Greenkeeper 🌴 (@tschaub)
- #150 - Fix small typo (@mandeldl)
-
1.0.0-beta.1 - 2017-05-08
-
0.12.0 - 2016-11-17
-
0.11.0 - 2016-03-02
from gh-pages GitHub release notes2.2.0
Breaking changes:
git config user.nameandgit config user.emailin the current working directory whengh-pagesis run. Ideally, this is what you want. In v1, the git user was determined based on thegh-pagesinstall directory. If the package was installed globally, the git user might not have been what you expected when running in a directory with a locally configured git user.Details:
This release includes a couple breaking changes:
loggeroption has been removed. SetNODE_DEBUG=gh-pagesto see debug output.If you are using Node 4+ and not using the
loggeroption, upgrades should be painless. See below for a full list of changes:1.0.0-beta.1
0.12.0
Commit messages
Package name: gh-pages
Compare
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:
🧐 View latest project report
🛠 Adjust upgrade PR settings
🔕 Ignore this dependency or unsubscribe from future upgrade PRs
[//]: # (snyk:metadata:{"dependencies":[{"name":"gh-pages","from":"0.11.0","to":"2.2.0"}],"packageManager":"npm","type":"auto","projectUrl":"https://app.snyk.io/org/saiichihashimoto/project/7d6180cf-f521-4b7d-88a4-b0bc39afc19b?utm_source=github&utm_medium=upgrade-pr","projectPublicId":"7d6180cf-f521-4b7d-88a4-b0bc39afc19b","env":"prod","prType":"upgrade","vulns":["npm:qs:20170213","npm:q-io:20180212"],"issuesToFix":[{"issueId":"npm:qs:20170213","severity":"high","title":"Prototype Override Protection Bypass","exploitMaturity":"no-known-exploit"},{"issueId":"npm:q-io:20180212","severity":"high","title":"Regular Expression Denial of Service (ReDoS)","exploitMaturity":"proof-of-concept"}],"upgrade":["npm:qs:20170213","npm:q-io:20180212"],"upgradeInfo":{"versionsDiff":10,"publishedDate":"2020-01-07T02:16:48.652Z"},"templateVariants":[],"hasFixes":true,"isMajorUpgrade":true,"isBreakingChange":true})