Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

build(deps): bump dd-trace from 3.20.0 to 4.13.1 in /backend #3008

Closed

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Aug 28, 2023

Bumps dd-trace from 3.20.0 to 4.13.1.

Release notes

Sourced from dd-trace's releases.

v4.13.1

Bug Fixes

  • core: fix esm tracing for kafkajs and add esm integration test (#3571)
  • core: mongodb-core: fix serialization of BigInt values in query (#3575)
  • appsec: Fix evidence redaction with empty sensitive ranges (#3520)
  • appsec: Add vulnerabilities loaded before starting recollect (#3531)
  • core: Send instrumentation telemetry app-heartbeat events in uniform intervals (#3553)

Improvements

  • core: enable lib injection images on v3 release line (#3573)

v4.13.0

Bug Fixes

  • core: add webpack5 for nextjs v9.5 (#3572)
  • core: fix google-cloud-pubsub and startup test (#3561)
  • core: add logging to esm integration tests (#3559)
  • esbuild: early bailout when loading app local modules (#3551)
  • core: fix socketPath for Named Pipe UDS cases (#3501)
  • core: limiting library range (#3552)
  • core: remove wrapObjectProperty wrapper for Next.js (#3558)

Improvements

  • profiling: update pprof version (#3560)

Features

  • core: adding support for Next.js >=13.4.13 (#3538)
  • core: drop v2.x support (#3544)

v4.12.0

Bug Fixes

  • core: fix grpc tests (#3522)
  • esbuild: honor the .external build setting (#3492)
  • iast: fix vulnerability location with pg.Pool (#3308)
  • core: fix duplicate next spans and incorrect req/res in hooks (#3494)
  • core: fix Resource Name Not Bubbling to Web Span in Next.js (#3537)
  • ci-visibility: fix jest parameters being modified (#3526)
  • iast: fix taint object method (#3505)

Improvements

  • iast: enable iast telemetry metrics if iast is enabled (#3482)
  • core: add esm integration test for hapi (#3509)
  • core: esm now should be supported for node 20, so no need for esmTestSkipper (#3506)
  • core: remove hardcoded string literals for tags, use predefined constants instead (#3503)
  • ci-visibility: send suites and tests skipped by ITR (#3497)
  • core: add esm integration tests for many plugins (#3436)
  • core: add Testing To Ensure Support for Next.js Standalone (#3493)

Features

... (truncated)

Commits
  • 19efaa2 v4.13.1
  • bc196cd Send instrumentation telemetry app-heartbeat events in uniform intervals (#3553)
  • aa41e00 Add vulnerabilities loaded before starting recollect (#3531)
  • 13a5b97 Fix evidence redaction with empty sensitive ranges (#3520)
  • f1e6a4d reduce test flakiness from cp -R command (#3574)
  • ecbd731 enable lib injection images on v3 release line (#3573)
  • 68c46af mongodb-core: fix serialization of BigInt values in query (#3575)
  • 9cbd635 fix esm tracing for kafkajs and add esm integration test (#3571)
  • 2d4c0bb v4.13.0
  • b72f68b add webpack5 for nextjs v9.5 (#3572)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [dd-trace](https://github.com/DataDog/dd-trace-js) from 3.20.0 to 4.13.1.
- [Release notes](https://github.com/DataDog/dd-trace-js/releases)
- [Commits](DataDog/dd-trace-js@v3.20.0...v4.13.1)

---
updated-dependencies:
- dependency-name: dd-trace
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Aug 28, 2023
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Aug 31, 2023

Superseded by #3012.

@dependabot dependabot bot closed this Aug 31, 2023
@dependabot dependabot bot deleted the dependabot/npm_and_yarn/backend/dd-trace-4.13.1 branch August 31, 2023 11:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants