Commit Graph

35 Commits

Author SHA1 Message Date
Abijeet
10718b6a44 Node: Update eslint to 8.52.0 2023-10-25 11:13:48 +03:00
Abijeet
26619f821d Node: Fix npm audit issues
semver  7.0.0 - 7.5.1
Severity: moderate
semver vulnerable to Regular Expression Denial of Service - https://github.com/advisories/GHSA-c2qf-rxjj-qqgw
2023-10-25 11:13:20 +03:00
Amir E. Aharoni
91844c17e5 Remove assert from package.json (#309)
It appears to be included in Mocha.

Co-authored-by: Abijeet Patro <abijeetpatro@gmail.com>
2023-07-24 13:07:54 +05:30
Abijeet
02902425b8 Add release notes and update npm versions
Bug: https://phabricator.wikimedia.org/T340730
2023-07-17 13:07:41 +03:00
Abijeet
6cfc8f11ee Node: Update dependencies
Fixes some audit issues, some remain but that's OK since these are
just dev dependencies.

Remaining issue:

```
semver  7.0.0 - 7.5.1
Severity: moderate
https://github.com/advisories/GHSA-c2qf-rxjj-qqgw
fix available via `npm audit fix --force`
Will install eslint-config-wikimedia@0.17.0, which is a breaking change
```
Bug: https://phabricator.wikimedia.org/T340730
2023-07-17 12:59:13 +03:00
Abijeet
dc85045298 Update Changelog file and version in package.json
Bug: https://phabricator.wikimedia.org/T333823
2023-04-18 20:34:19 +03:00
Abijeet
75bd6a4d59 Node: Update dependencies
npm outdated

Package  Current  Wanted  Latest  Location             Depended by
eslint    8.32.0  8.32.0  8.38.0  node_modules/eslint  language-data

npm update output:

added 1 package, removed 3 packages, changed 23 packages, and audited
262 packages in 2s

Bug: https://phabricator.wikimedia.org/T333823
2023-04-18 14:46:47 +03:00
Abijeet
37e096a7ad Add MLEB release notes 2023.01
Bug: https://phabricator.wikimedia.org/T326539
2023-01-25 12:50:59 +05:30
Abijeet
3d68489a08 Update npm dependencies
npm outdated showed the following:

* eslint - 8.26.0 --> 8.32.0
* eslint-config-wikimedia - 0.23.0 --> 0.24.0
* mocha - 10.1.0 --> 10.2.0
2023-01-22 07:14:39 +05:30
Abijeet Patro
b2e4a3a4d6 Release notes for 1.1.1 (2022-10-27) (#257) 2022-10-27 21:29:21 +05:30
Abijeet Patro
d53c2429b5 Update NPM dependencies (#255)
Updated as per output of npm outdated. Also ran npm update
2022-10-27 21:27:02 +05:30
Abijeet
a029addbc1 Release notes for 1.1.0 (2022-07-07) 2022-07-08 21:02:54 +05:30
Abijeet
d078c170d8 Update NPM dependencies
Updated as per the output for npm outdated
2022-07-08 16:47:49 +05:30
Abijeet Patro
b1fd23de1e Release notes for 1.0.9 (2022-04-20) (#221) 2022-04-21 11:27:49 +05:30
Amir E. Aharoni
2c7f225ae0 Bump minimist version
Audotmatically by `npm audit fix`.
2022-04-04 12:43:11 +05:30
Amir E. Aharoni
c8830f0657 Update npm packages using npm audit fix 2022-01-31 11:08:20 +02:00
Abijeet Patro
e63398559f Add release notes for 2022.01 (#198)
Update Node.js package version to 1.0.8 to be same as PHP library

Bug: T298891
2022-01-20 01:05:30 +05:30
Abijeet Patro
b25ce367fb Update npm modules and drop support for Node.js 10 (#196)
Following packages have been updated:

* eslint
* eslint-config-wikimedia
* mocha
2022-01-18 19:56:41 +05:30
Abijeet Patro
f86cab48f3 Add MLEB release notes 2021.10 (#182)
Changes from: https://github.com/wikimedia/language-data/compare/1.0.6...master
2021-10-25 15:48:39 +05:30
Abijeet
ba2be5c72b Security fix: Update ansi-regex for CVE-2021-3807 2021-10-25 08:29:30 +03:00
Santhosh Thottingal
3762fb7b94 Update CI and dependencies for latest node versions (#173)
* Update dependencies

* Test in latest node versions
2021-09-07 21:24:56 +05:30
Amir E. Aharoni
b23d267c26 Update package.json
Done automatically using npm audit.
2021-09-05 20:03:30 +03:00
Abijeet Patro
c338401525 Add release notes 2021.07 (#167)
Bug: T286476
2021-07-19 20:33:31 +05:30
Abijeet
4410ba4c10 Security fix: Update glob-parent to 5.1.2 2021-07-08 09:25:10 +03:00
Amir Aharoni
ccb6f6dd53 Update package-lock.json
Generated by `npm audit fix`. Resolves security issues.
2021-05-11 09:52:05 +03:00
Abijeet
f692c69a9f Update Node.js versions to 1.0.2 2021-04-01 11:28:45 +03:00
Abijeet
48afd1c4ac Fix y18n (required by mocha) related security warning
Fixes CVE-2020-7774

Not a major issue for us since it's only a dev dependency.
2021-04-01 11:04:08 +03:00
Abijeet
3a0ca41914 Update node package.json version 2021-01-28 10:40:22 +02:00
Abijeet Patro
61d3d26e4c Bump eslint-config-wikimedia to 0.17.0 (#120)
Had to update eslint to ^7.9.0 since we are using new rules:
* no-loss-of-precision
* no-unreachable-loop

Bug: T266462
2020-10-27 17:09:39 +05:30
Abijeet Patro
da729f4635 Update lodash to 4.17.19 (#111)
See: https://github.com/advisories/GHSA-p6mc-m468-83gw

Co-authored-by: James D. Forrester <jforrester@wikimedia.org>
2020-07-23 13:39:32 +02:00
Abijeet
a19900efef Unify package.json and composer.json, update version before release 2020-05-20 16:54:32 +03:00
Amir Aharoni
cbeb0b7150 Set latest and specific versions of devDependencies
This fixes all npm audit warnings.
2020-04-01 09:03:21 +03:00
Amir Aharoni
a8da492367 Update acorn version in package-lock.json
Done automatically by npm audit fix
2020-03-31 23:19:49 +03:00
Abijeet
7c970cb247 Replace Travis with Github actions
Two workflows have been added,

  * PHP build - Runs tests on version 7.2, 7.3, also runs phpcs
  * Node.js build - Runs tests on version 8.x, 10.x, 12.x, also
    runs ESLint

Bug: T218639
2020-01-31 23:06:26 +05:30
Santhosh Thottingal
e53d7d1250 Move to @wikimedia, version update, dependecy updates 2019-08-29 16:58:54 +05:30