From 90b8dfe67e5533cbb4d794b6e197efe734d362ce Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Fri, 5 Nov 2021 05:26:19 -0700 Subject: [PATCH] Bump node-fetch from 2.6.5 to 2.6.6 in /desktop (#3018) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Summary: Bumps [node-fetch](https://github.com/node-fetch/node-fetch) from 2.6.5 to 2.6.6.
Release notes

Sourced from node-fetch's releases.

v2.6.6

What's Changed

Full Changelog: https://github.com/node-fetch/node-fetch/compare/v2.6.5...v2.6.6

Commits

[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=node-fetch&package-manager=npm_and_yarn&previous-version=2.6.5&new-version=2.6.6)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) ---
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `dependabot rebase` will rebase this PR - `dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `dependabot merge` will merge this PR after your CI passes on it - `dependabot squash and merge` will squash and merge this PR after your CI passes on it - `dependabot cancel merge` will cancel a previously requested merge and block automerging - `dependabot reopen` will reopen this PR if it is closed - `dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Pull Request resolved: https://github.com/facebook/flipper/pull/3018 Reviewed By: passy Differential Revision: D32202504 Pulled By: mweststrate fbshipit-source-id: ae615c39872dcc10946fab4cbe096aa7f32437f9 --- desktop/package.json | 2 +- desktop/static/package.json | 2 +- desktop/yarn.lock | 8 ++++---- 3 files changed, 6 insertions(+), 6 deletions(-) diff --git a/desktop/package.json b/desktop/package.json index 766ca9580..0b09eca96 100644 --- a/desktop/package.json +++ b/desktop/package.json @@ -168,7 +168,7 @@ "metro": "^0.66.2", "metro-minify-terser": "^0.66.2", "metro-resolver": "^0.66.2", - "node-fetch": "^2.6.5", + "node-fetch": "^2.6.6", "p-filter": "^2.1.0", "p-map": "^4.0.0", "patch-package": "^6.4.7", diff --git a/desktop/static/package.json b/desktop/static/package.json index 2a03ff232..2ef57b509 100644 --- a/desktop/static/package.json +++ b/desktop/static/package.json @@ -9,7 +9,7 @@ "fix-path": "^3.0.0", "mac-ca": "^1.0.6", "mkdirp": "^1.0.4", - "node-fetch": "^2.6.5", + "node-fetch": "^2.6.6", "ws": "^8.2.3", "xdg-basedir": "^4.0.0", "yargs": "^16.2.0" diff --git a/desktop/yarn.lock b/desktop/yarn.lock index bf9da072d..34fcfa638 100644 --- a/desktop/yarn.lock +++ b/desktop/yarn.lock @@ -9978,10 +9978,10 @@ node-dir@^0.1.17: dependencies: minimatch "^3.0.2" -node-fetch@2.6.0, node-fetch@^2.2.0, node-fetch@^2.6.0, node-fetch@^2.6.1, node-fetch@^2.6.5: - version "2.6.5" - resolved "https://registry.yarnpkg.com/node-fetch/-/node-fetch-2.6.5.tgz#42735537d7f080a7e5f78b6c549b7146be1742fd" - integrity sha512-mmlIVHJEu5rnIxgEgez6b9GgWXbkZj5YZ7fx+2r94a2E+Uirsp6HsPTPlomfdHtpt/B0cdKviwkoaM6pyvUOpQ== +node-fetch@2.6.0, node-fetch@^2.2.0, node-fetch@^2.6.0, node-fetch@^2.6.1, node-fetch@^2.6.6: + version "2.6.6" + resolved "https://registry.yarnpkg.com/node-fetch/-/node-fetch-2.6.6.tgz#1751a7c01834e8e1697758732e9efb6eeadfaf89" + integrity sha512-Z8/6vRlTUChSdIgMa51jxQ4lrw/Jy5SOW10ObaA47/RElsAN2c5Pn8bTgFGWn/ibwzXTE8qwr1Yzx28vsecXEA== dependencies: whatwg-url "^5.0.0"