-
-
Notifications
You must be signed in to change notification settings - Fork 756
Merged
Conversation
ctcpip
approved these changes
Sep 10, 2024
wesleytodd
approved these changes
Sep 10, 2024
mergify bot
added a commit
to reisene/HulajDusza-serwis
that referenced
this pull request
Jan 23, 2025
![snyk-io[bot]](https://badgen.net/badge/icon/snyk-io%5Bbot%5D/green?label=)
[
src="](https://pullrequestbadge.com/?utm_medium=github&utm_source=reisene&utm_campaign=badge_info)

Snyk has created this PR to upgrade body-parser from 1.20.3 to
:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.
**Warning:** This PR contains major version upgrade(s), and may be a
breaking change.
- The recommended version is **4 versions** ahead of your current
version.
- The recommended version was released **4 months ago**.
2.0.0 - href="2024-09-10What">https://redirect.github.com/expressjs/body-parser/releases/tag/2.0.0">2024-09-10
>
Breaking Change: Node.js 18 is the minimum
supported version
2.0.0-beta.2 - href="2023-02-23
2.0.0-beta.1 - href="2021-12-18
1.20.3 - href="2024-09-09What">https://redirect.github.com/expressjs/body-parser/releases/tag/1.20.3">2024-09-09
>
from href="body-parser">https://redirect.github.com/expressjs/body-parser/releases">body-parser
GitHub release notes
---
> [!IMPORTANT]
>
> - **Warning:** This PR contains a major version upgrade, and may be a
breaking change.
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.
---
**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._
**For more information:**
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiJmY2NmMTA2MC1iZmM1LTRjOWItOGFlMS0xZjczODJhYjI4YjEiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6ImZjY2YxMDYwLWJmYzUtNGM5Yi04YWUxLTFmNzM4MmFiMjhiMSJ9fQ=="
width="0" height="0"/>
> - [View latest project
report](https://app.snyk.io/org/reisene/project/55e114f8-489e-4f14-b900-20574b041e59?utm_source=github-cloud-app&utm_medium=referral&page=upgrade-pr)
> - [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - [Adjust upgrade PR
settings](https://app.snyk.io/org/reisene/project/55e114f8-489e-4f14-b900-20574b041e59/settings/integration?utm_source=github-cloud-app&utm_medium=referral&page=upgrade-pr)
> - [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/reisene/project/55e114f8-489e-4f14-b900-20574b041e59/settings/integration?pkg=body-parser&utm_source=github-cloud-app&utm_medium=referral&page=upgrade-pr#auto-dep-upgrades)
[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"body-parser","from":"1.20.3","to":"2.0.1"}],"env":"prod","hasFixes":false,"isBreakingChange":true,"isMajorUpgrade":true,"issuesToFix":[],"prId":"fccf1060-bfc5-4c9b-8ae1-1f7382ab28b1","prPublicId":"fccf1060-bfc5-4c9b-8ae1-1f7382ab28b1","packageManager":"npm","priorityScoreList":[],"projectPublicId":"55e114f8-489e-4f14-b900-20574b041e59","projectUrl":"https://app.snyk.io/org/reisene/project/55e114f8-489e-4f14-b900-20574b041e59?utm_source=github-cloud-app&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":4,"publishedDate":"2024-09-10T04:15:36.065Z"},"vulns":[]}'
## Podsumowanie przez Sourcery
Ulepszenia:
- Aktualizacja body-parser do wersji 2.0.1, ktora obejmuje:
- Wsparcie dla kodowania Brotli
- Rezygnacje ze wsparcia dla starszych wersji Node.js
- Domyslne ustawienie "extended" na "false" dla parsera urlencoded
- Zmiane domyslnego poziomu glebokosci parsowania danych URL-encoded do
32
## Summary by Sourcery
Enhancements:
- Upgrade body-parser to version 2.0.1, which includes support for
Brotli encoding, drops support for older Node.js versions, defaults
"extended" to "false" for urlencoded parser, and changes the default
depth level for parsing URL-encoded data to 32.
[

Snyk has created this PR to upgrade body-parser from 1.20.3 to
2.0.1.
:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.
breaking change.
- The recommended version is **4 versions** ahead of your current
version.
- The recommended version was released **4 months ago**.
Release notes
Package name: body-parser
2.0.1 - href="2024-09-10What">https://redirect.github.com/expressjs/body-parser/releases/tag/2.0.1">2024-09-10
What's
Changed- Fix defaulting to extended url parsing by data-hovercard-url="/users/blakeembrey/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/blakeembrey">@ blakeembrey in class="issue-link js-issue-link"
data-id="2515346637"
data-url="expressjs/body-parser#536"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/536/hovercard"
href="#536 https://redirect.github.com/expressjs/body-parser/pull/536">#536
>- Fix defaulting to extended url parsing by data-hovercard-url="/users/blakeembrey/hovercard"
- Release: 2.0.1 by data-hovercard-type="user"
data-hovercard-url="/users/UlisesGascon/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/UlisesGascon">@ UlisesGascon in class="issue-link js-issue-link"
data-id="2515354674"
data-url="expressjs/body-parser#537"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/537/hovercard"
href="#537 https://redirect.github.com/expressjs/body-parser/pull/537">#537>
New Contributors
- data-hovercard-url="/users/blakeembrey/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/blakeembrey">@ blakeembrey made
their first contribution in data-error-text="Failed to load title"
data-permission-text="Title is private"
data-url="expressjs/body-parser#536"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/536/hovercard"
href="#536 https://redirect.github.com/expressjs/body-parser/pull/536">#536>
Full Changelog: href="2.0.0...2.0.1
https://redirect.github.com/expressjs/body-parser/compare/2.0.0...2.0.1">2.0.0...2.0.1>2.0.0 - href="2024-09-10
What">https://redirect.github.com/expressjs/body-parser/releases/tag/2.0.0">2024-09-10What's
Changed
Important
- add brotli support data-error-text="Failed to load title"
data-permission-text="Title is private"
data-url="expressjs/body-parser#406"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/406/hovercard"
href="#406 https://redirect.github.com/expressjs/body-parser/pull/406">#406
Changed
data-permission-text="Title is private"
data-url="expressjs/body-parser#406"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/406/hovercard"
href="#406
supported version
Details
- chore: add support for OSSF scorecard reporting by class="user-mention notranslate"
data-hovercard-url="/users/inigomarquinez/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/inigomarquinez">@ inigomarquinez
in data-url="expressjs/body-parser#522"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/522/hovercard"
href="#522 https://redirect.github.com/expressjs/body-parser/pull/522">#522> - ci: fix errors in ci github action for node 8 and 9 by class="user-mention notranslate"
data-hovercard-url="/users/inigomarquinez/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/inigomarquinez">@ inigomarquinez
in data-url="expressjs/body-parser#523"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/523/hovercard"
href="#523 https://redirect.github.com/expressjs/body-parser/pull/523">#523> - fix: pin to node@22.4.1 by data-hovercard-type="user"
data-hovercard-url="/users/wesleytodd/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/wesleytodd">@ wesleytodd in class="issue-link js-issue-link"
data-id="2417531497"
data-url="expressjs/body-parser#527"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/527/hovercard"
href="#527 https://redirect.github.com/expressjs/body-parser/pull/527">#527> - deps: qs@6.12.3 by data-hovercard-type="user"
data-hovercard-url="/users/melikhov-dev/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/melikhov-dev">@ melikhov-dev in class="issue-link js-issue-link"
data-id="2243775909"
data-url="expressjs/body-parser#521"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/521/hovercard"
href="#521 https://redirect.github.com/expressjs/body-parser/pull/521">#521> - Drop support for less than LTS node versions in v2 by class="user-mention notranslate"
data-hovercard-url="/users/wesleytodd/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/wesleytodd">@ wesleytodd in class="issue-link js-issue-link"
data-id="2423856942"
data-url="expressjs/body-parser#528"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/528/hovercard"
href="#528 https://redirect.github.com/expressjs/body-parser/pull/528">#528> - Also use the qs module for the simple parser by class="user-mention notranslate"
data-hovercard-url="/users/papandreou/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/papandreou">@ papandreou in class="issue-link js-issue-link"
data-id="562834397"
data-url="expressjs/body-parser#387"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/387/hovercard"
href="#387 https://redirect.github.com/expressjs/body-parser/pull/387">#387> raw-body@3by data-hovercard-type="user"
data-hovercard-url="/users/wesleytodd/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/wesleytodd">@ wesleytodd in class="issue-link js-issue-link"
data-id="2431088746"
data-url="expressjs/body-parser#529"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/529/hovercard"
href="#529 https://redirect.github.com/expressjs/body-parser/pull/529">#529>- urlencoded: Support iso-8859-1, utf8 sentinel, and numeric entities
by data-hovercard-url="/users/papandreou/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/papandreou">@ papandreou in class="issue-link js-issue-link"
data-id="346357762"
data-url="expressjs/body-parser#326"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/326/hovercard"
href="#326 https://redirect.github.com/expressjs/body-parser/pull/326">#326> - Added support for brotli ('br') content-encoding by class="user-mention notranslate"
data-hovercard-url="/users/danielgindi/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/danielgindi">@ danielgindi in class="issue-link js-issue-link"
data-id="656076290"
data-url="expressjs/body-parser#406"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/406/hovercard"
href="#406 https://redirect.github.com/expressjs/body-parser/pull/406">#406> - Add OSSF Scorecard badge by data-hovercard-type="user"
data-hovercard-url="/users/bjohansebas/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/bjohansebas">@ bjohansebas in class="issue-link js-issue-link"
data-id="2456555585"
data-url="expressjs/body-parser#531"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/531/hovercard"
href="#531 https://redirect.github.com/expressjs/body-parser/pull/531">#531> - Linter by data-hovercard-type="user"
data-hovercard-url="/users/UlisesGascon/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/UlisesGascon">@ UlisesGascon in class="issue-link js-issue-link"
data-id="2515064856"
data-url="expressjs/body-parser#534"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/534/hovercard"
href="#534 https://redirect.github.com/expressjs/body-parser/pull/534">#534> - Release: 1.20.3 by data-hovercard-type="user"
data-hovercard-url="/users/UlisesGascon/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/UlisesGascon">@ UlisesGascon in class="issue-link js-issue-link"
data-id="2515075091"
data-url="expressjs/body-parser#535"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/535/hovercard"
href="#535 https://redirect.github.com/expressjs/body-parser/pull/535">#535>
New Contributors
- data-hovercard-url="/users/inigomarquinez/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/inigomarquinez">@ inigomarquinez
made their first contribution in data-error-text="Failed to load title"
data-permission-text="Title is private"
data-url="expressjs/body-parser#522"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/522/hovercard"
href="#522 https://redirect.github.com/expressjs/body-parser/pull/522">#522> - data-hovercard-url="/users/wesleytodd/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/wesleytodd">@ wesleytodd made
their first contribution in data-error-text="Failed to load title"
data-permission-text="Title is private"
data-url="expressjs/body-parser#527"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/527/hovercard"
href="#527 https://redirect.github.com/expressjs/body-parser/pull/527">#527> - data-hovercard-url="/users/melikhov-dev/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/melikhov-dev">@ melikhov-dev made
their first contribution in data-error-text="Failed to load title"
data-permission-text="Title is private"
data-url="expressjs/body-parser#521"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/521/hovercard"
href="#521 https://redirect.github.com/expressjs/body-parser/pull/521">#521> - data-hovercard-url="/users/papandreou/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/papandreou">@ papandreou made
their first contribution in data-error-text="Failed to load title"
data-permission-text="Title is private"
data-url="expressjs/body-parser#387"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/387/hovercard"
href="#387 https://redirect.github.com/expressjs/body-parser/pull/387">#387> - data-hovercard-url="/users/danielgindi/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/danielgindi">@ danielgindi made
their first contribution in data-error-text="Failed to load title"
data-permission-text="Title is private"
data-url="expressjs/body-parser#406"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/406/hovercard"
href="#406 https://redirect.github.com/expressjs/body-parser/pull/406">#406> - data-hovercard-url="/users/bjohansebas/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/bjohansebas">@ bjohansebas made
their first contribution in data-error-text="Failed to load title"
data-permission-text="Title is private"
data-url="expressjs/body-parser#531"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/531/hovercard"
href="#531 https://redirect.github.com/expressjs/body-parser/pull/531">#531> - data-hovercard-url="/users/UlisesGascon/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/UlisesGascon">@ UlisesGascon made
their first contribution in data-error-text="Failed to load title"
data-permission-text="Title is private"
data-url="expressjs/body-parser#534"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/534/hovercard"
href="#534 https://redirect.github.com/expressjs/body-parser/pull/534">#534>
Full Changelog: href="1.20.2...2.0.0
https://redirect.github.com/expressjs/body-parser/compare/1.20.2...2.0.0">1.20.2...2.0.0>2.0.0-beta.2 - href="2023-02-23
This">https://redirect.github.com/expressjs/body-parser/releases/tag/v2.0.0-beta.2">2023-02-23
This
incorporates all changes after 1.19.1 up to 1.20.2.
- Remove deprecated
bodyParser()combination
middleware - deps: debug@3.1.0
- Add
DEBUG_HIDE_DATEenvironment variable - Change timer to per-namespace instead of global
- Change non-TTY date format
- Remove
DEBUG_FDenvironment variable support - Support 256 namespace colors
- Add
- deps: iconv-lite@0.5.2
- Add encoding cp720
- Add encoding UTF-32
- deps: raw-body@3.0.0-beta.1
2.0.0-beta.1 - href="2021-12-18
- https://redirect.github.com/expressjs/body-parser/releases/tag/v2.0.0-beta.1">2021-12-18
req.bodyis no longer always initialized to{}- it is left
undefinedunless a body is parsed
- it is left
urlencodedparser now defaultsextendedtofalse- Use
on-finishedto determine when body read
- >
1.20.3 - href="2024-09-09
What">https://redirect.github.com/expressjs/body-parser/releases/tag/1.20.3">2024-09-09What's
Changed
Important
- deps: qs@6.13.0
- add
depth option to customize the depth level in the
parser
- IMPORTANT: The default
depth level for
parsing URL-encoded data is now 32 (previously was
Infinity). href="Documentation https://redirect.github.com/expressjs/body-parser/blob/17529513673e39ba79886a7ce3363320cf1c0c50/README.md#depth">Documentation
Changed
depth option to customize the depth level in theparser
depth level forparsing URL-encoded data is now
32 (previously wasInfinity). href="DocumentationOther changes
- chore: add support for OSSF scorecard reporting by class="user-mention notranslate"
data-hovercard-url="/users/inigomarquinez/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/inigomarquinez">@ inigomarquinez
in data-url="expressjs/body-parser#522"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/522/hovercard"
href="#522 https://redirect.github.com/expressjs/body-parser/pull/522">#522> - ci: fix errors in ci github action for node 8 and 9 by class="user-mention notranslate"
data-hovercard-url="/users/inigomarquinez/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/inigomarquinez">@ inigomarquinez
in data-url="expressjs/body-parser#523"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/523/hovercard"
href="#523 https://redirect.github.com/expressjs/body-parser/pull/523">#523> - fix: pin to node@22.4.1 by data-hovercard-type="user"
data-hovercard-url="/users/wesleytodd/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/wesleytodd">@ wesleytodd in class="issue-link js-issue-link"
data-id="2417531497"
data-url="expressjs/body-parser#527"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/527/hovercard"
href="#527 https://redirect.github.com/expressjs/body-parser/pull/527">#527> - deps: qs@6.12.3 by data-hovercard-type="user"
data-hovercard-url="/users/melikhov-dev/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/melikhov-dev">@ melikhov-dev in class="issue-link js-issue-link"
data-id="2243775909"
data-url="expressjs/body-parser#521"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/521/hovercard"
href="#521 https://redirect.github.com/expressjs/body-parser/pull/521">#521> - Add OSSF Scorecard badge by data-hovercard-type="user"
data-hovercard-url="/users/bjohansebas/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/bjohansebas">@ bjohansebas in class="issue-link js-issue-link"
data-id="2456555585"
data-url="expressjs/body-parser#531"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/531/hovercard"
href="#531 https://redirect.github.com/expressjs/body-parser/pull/531">#531> - Linter by data-hovercard-type="user"
data-hovercard-url="/users/UlisesGascon/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/UlisesGascon">@ UlisesGascon in class="issue-link js-issue-link"
data-id="2515064856"
data-url="expressjs/body-parser#534"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/534/hovercard"
href="#534 https://redirect.github.com/expressjs/body-parser/pull/534">#534> - Release: 1.20.3 by data-hovercard-type="user"
data-hovercard-url="/users/UlisesGascon/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/UlisesGascon">@ UlisesGascon in class="issue-link js-issue-link"
data-id="2515075091"
data-url="expressjs/body-parser#535"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/535/hovercard"
href="#535 https://redirect.github.com/expressjs/body-parser/pull/535">#535>
New Contributors
- data-hovercard-url="/users/inigomarquinez/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/inigomarquinez">@ inigomarquinez
made their first contribution in data-error-text="Failed to load title"
data-permission-text="Title is private"
data-url="expressjs/body-parser#522"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/522/hovercard"
href="#522 https://redirect.github.com/expressjs/body-parser/pull/522">#522> - data-hovercard-url="/users/melikhov-dev/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/melikhov-dev">@ melikhov-dev made
their first contribution in data-error-text="Failed to load title"
data-permission-text="Title is private"
data-url="expressjs/body-parser#521"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/521/hovercard"
href="#521 https://redirect.github.com/expressjs/body-parser/pull/521">#521> - data-hovercard-url="/users/bjohansebas/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/bjohansebas">@ bjohansebas made
their first contribution in data-error-text="Failed to load title"
data-permission-text="Title is private"
data-url="expressjs/body-parser#531"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/531/hovercard"
href="#531 https://redirect.github.com/expressjs/body-parser/pull/531">#531> - data-hovercard-url="/users/UlisesGascon/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="@">https://redirect.github.com/UlisesGascon">@ UlisesGascon made
their first contribution in data-error-text="Failed to load title"
data-permission-text="Title is private"
data-url="expressjs/body-parser#534"
data-hovercard-type="pull_request"
data-hovercard-url="/expressjs/body-parser/pull/534/hovercard"
href="#534 https://redirect.github.com/expressjs/body-parser/pull/534">#534>
Full Changelog: href="1.20.2...1.20.3
https://redirect.github.com/expressjs/body-parser/compare/1.20.2...1.20.3">1.20.2...1.20.3>from href="body-parser">https://redirect.github.com/expressjs/body-parser/releases">body-parser
GitHub release notes
---
> [!IMPORTANT]
>
> - **Warning:** This PR contains a major version upgrade, and may be a
breaking change.
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.
---
**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._
**For more information:**
width="0" height="0"/>
> - [View latest project
report](https://app.snyk.io/org/reisene/project/55e114f8-489e-4f14-b900-20574b041e59?utm_source=github-cloud-app&utm_medium=referral&page=upgrade-pr)
> - [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - [Adjust upgrade PR
settings](https://app.snyk.io/org/reisene/project/55e114f8-489e-4f14-b900-20574b041e59/settings/integration?utm_source=github-cloud-app&utm_medium=referral&page=upgrade-pr)
> - [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/reisene/project/55e114f8-489e-4f14-b900-20574b041e59/settings/integration?pkg=body-parser&utm_source=github-cloud-app&utm_medium=referral&page=upgrade-pr#auto-dep-upgrades)
[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"body-parser","from":"1.20.3","to":"2.0.1"}],"env":"prod","hasFixes":false,"isBreakingChange":true,"isMajorUpgrade":true,"issuesToFix":[],"prId":"fccf1060-bfc5-4c9b-8ae1-1f7382ab28b1","prPublicId":"fccf1060-bfc5-4c9b-8ae1-1f7382ab28b1","packageManager":"npm","priorityScoreList":[],"projectPublicId":"55e114f8-489e-4f14-b900-20574b041e59","projectUrl":"https://app.snyk.io/org/reisene/project/55e114f8-489e-4f14-b900-20574b041e59?utm_source=github-cloud-app&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":4,"publishedDate":"2024-09-10T04:15:36.065Z"},"vulns":[]}'
## Podsumowanie przez Sourcery
Ulepszenia:
- Aktualizacja body-parser do wersji 2.0.1, ktora obejmuje:
- Wsparcie dla kodowania Brotli
- Rezygnacje ze wsparcia dla starszych wersji Node.js
- Domyslne ustawienie "extended" na "false" dla parsera urlencoded
- Zmiane domyslnego poziomu glebokosci parsowania danych URL-encoded do
32
Original summary in English
## Summary by Sourcery
Enhancements:
- Upgrade body-parser to version 2.0.1, which includes support for
Brotli encoding, drops support for older Node.js versions, defaults
"extended" to "false" for urlencoded parser, and changes the default
depth level for parsing URL-encoded data to 32.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.