dependabot[bot] opened a new pull request #3000: Bump serve from 1.4.0 to 7.1.3
URL: https://github.com/apache/incubator-weex/pull/3000
 
 
   Bumps [serve](https://github.com/zeit/serve) from 1.4.0 to 7.1.3.
   <details>
   <summary>Release notes</summary>
   
   *Sourced from [serve's releases](https://github.com/zeit/serve/releases).*
   
   > ## 7.1.3
   > ### Patches 
   > 
   > - Bumped middleware to the latest version: 
[#391](https://github-redirect.dependabot.com/zeit/serve/issues/391)
   > 
   > ## 7.1.2
   > ### Patches 
   > 
   > - Bumped our dependencies to the latest version: 
[#388](https://github-redirect.dependabot.com/zeit/serve/issues/388)
   > 
   > ## 7.1.1
   > ### Patches 
   > 
   > - Added example of using the middleware: 
[#385](https://github-redirect.dependabot.com/zeit/serve/issues/385)
   > 
   > ## 7.1.0
   > ### Minor Changes 
   > 
   > - Re-added `--single` and made `--listen` support ports: 
[#384](https://github-redirect.dependabot.com/zeit/serve/issues/384)
   > 
   > ### Patches 
   > 
   > - Fixed &quot;URL is not defined&quot; error: 
[#381](https://github-redirect.dependabot.com/zeit/serve/issues/381)
   > - Bumped `serve-handler` to the latest version: 
[#383](https://github-redirect.dependabot.com/zeit/serve/issues/383)
   > 
   > ### Credits 
   > 
   > Huge thanks to [@&#8203;jaeseok-park](https://github.com/jaeseok-park) for 
helping!
   > 
   > ## 7.0.1
   > ### Patches 
   > 
   > - Removed useless dependencies: 
[#377](https://github-redirect.dependabot.com/zeit/serve/issues/377)
   > 
   > ## 7.0.0
   > This release marks a completely fresh start for this project.
   > 
   > Over the years, the core of the package has gotten bigger and bigger, 
eventually containing features that should not be part of it at all. This led 
to `serve` becoming rather slow in certain situations. But not just in terms of 
serving requests, but also when installing (because of the dependency count).
   > 
   > As of today, the package is going into a completely new direction and 
we're re-evaluating any feature suggestions we're encoutering on the repository.
   > 
   > If you want to continue using the old `serve`, please lock it like this in 
your dependencies:
   > 
   > ```json
   > {
   >   "serve": "6.5.8"
   > }
   > ```
   > 
   > Notice that the version number is **not** prefixed with `^`.
   ></tr></table> ... (truncated)
   </details>
   <details>
   <summary>Commits</summary>
   
   - See full diff in [compare 
view](https://github.com/zeit/serve/commits/7.1.3)
   </details>
   <details>
   <summary>Maintainer changes</summary>
   
   This version was pushed to npm by [leo](https://www.npmjs.com/~leo), a new 
releaser for serve since your current version.
   </details>
   <br />
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=serve&package-manager=npm_and_yarn&previous-version=1.4.0&new-version=7.1.3)](https://help.github.com/articles/configuring-automated-security-fixes)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   <details>
   <summary>Dependabot commands and options</summary>
   <br />
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot ignore this [patch|minor|major] version` will close this PR 
and stop Dependabot creating any more for this minor/major version (unless you 
reopen the PR or upgrade to it yourself)
   - `@dependabot ignore this dependency` will close this PR and stop 
Dependabot creating any more for this dependency (unless you reopen the PR or 
upgrade to it yourself)
   - `@dependabot use these labels` will set the current labels as the default 
for future PRs for this repo and language
   - `@dependabot use these reviewers` will set the current reviewers as the 
default for future PRs for this repo and language
   - `@dependabot use these assignees` will set the current assignees as the 
default for future PRs for this repo and language
   - `@dependabot use this milestone` will set the current milestone as the 
default for future PRs for this repo and language
   
   You can disable automated security fix PRs for this repo from the [Security 
Alerts page](https://github.com/apache/incubator-weex/network/alerts).
   
   </details>

----------------------------------------------------------------
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.
 
For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


With regards,
Apache Git Services

Reply via email to