Skip to content

chore(deps): bump the backend-compatible-updates group across 1 directory with 26 updates - #137

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/backend/backend-compatible-updates-22272115f2
Open

dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/backend/backend-compatible-updates-22272115f2

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 1, 2026

Copy link
Copy Markdown
Contributor

Bumps the backend-compatible-updates group with 26 updates in the /backend directory:

Package From To
@nestjs/bullmq 11.0.4 11.0.5
@nestjs/common 11.1.28 11.2.6
@nestjs/core 11.1.28 11.2.6
@nestjs/platform-express 11.1.28 11.2.6
@nestjs/platform-socket.io 11.1.28 11.2.6
@nestjs/swagger 11.4.4 11.4.7
@nestjs/throttler 6.5.0 6.7.1
@nestjs/websockets 11.1.28 11.2.6
@supabase/supabase-js 2.110.1 2.117.2
bullmq 5.78.0 5.81.5
dayjs 1.11.21 1.11.23
firebase-admin 14.1.0 14.5.0
helmet 8.2.0 8.3.0
nanoid 5.1.11 5.1.16
nodemailer 9.0.3 9.1.1
redis 6.0.0 6.2.1
socket.io 4.8.3 4.8.4
@eslint/js 9.39.4 9.39.5
@nestjs/cli 11.0.23 11.0.24
@nestjs/testing 11.1.28 11.2.6
@types/node 22.19.19 22.20.4
jest 30.4.2 30.5.2
socket.io-client 4.8.3 4.8.4
supertest 7.2.2 7.3.0
ts-jest 29.4.11 29.4.14
typescript-eslint 8.64.0 8.70.1

Updates @nestjs/bullmq from 11.0.4 to 11.0.5

Release notes

Sourced from @​nestjs/bullmq's releases.

@​nestjs/bullmq@​11.0.5

What's Changed

New Contributors

Full Changelog: https://github.com/nestjs/bull/compare/@​nestjs/bull-shared@11.0.0...@​nestjs/bullmq@11.0.5

Commits
  • 323149d chore(release): publish new releases
  • 38a9240 ci: fix config.yml
  • e84add6 feat: support bullmq v6
  • 998aeef chore(deps): update dependency oxlint to v1.77.0 (#2877)
  • 4c28d35 chore(deps): update dependency lerna to v10 (#2876)
  • 514a30e chore(deps): update dependency bullmq to v5.81.3 (#2874)
  • 0c16caa chore(deps): update dependency oxlint to v1.76.0 (#2873)
  • db9e38f chore(deps): update dependency typescript to v7 (#2872)
  • 99e494f chore(deps): update dependency sort-package-json to v4 (#2871)
  • 5ce1663 chore(deps): update dependency sort-package-json to v3.7.1 (#2870)
  • Additional commits viewable in compare view

Updates @nestjs/common from 11.1.28 to 11.2.6

Release notes

Sourced from @​nestjs/common's releases.

v11.2.6

What's changed

Full Changelog: nestjs/nest@v11.2.5...v11.2.6

v11.2.5

What's changed

Full Changelog: nestjs/nest@v11.2.4...v11.2.5

v11.2.4

What's changed

  • fix(microservices): handle unserializable patterns without crashing
  • fix(platform-fastify): absolute-form request target middleware bypass

v11.2.3

What's Changed

Full Changelog: nestjs/nest@v11.2.2...v11.2.3

v11.2.2

What's changed

v11.2.1

What's Changed

Full Changelog: nestjs/nest@v11.2.0...v11.2.1

v11.2.0

What's Changed

... (truncated)

Commits
  • c07cfb0 v11.2.6
  • e91618c chore(release): publish v11.2.5 release
  • d504622 chore(release): publish v11.2.4 release
  • 2b36ee5 chore(release): publish v11.2.3 release
  • 7e65752 chore(release): publish v11.2.2 release
  • 7ebaa88 chore: drop skip instrumentation - duplicated api
  • 4593b0a fix(core): preserve middleware arity #17554
  • 4535f43 chore(release): publish v11.2.1 release
  • f2a7e4b chore(release): publish v11.2.0 release
  • b2e7fb5 Merge pull request #17469 from nestjs/feat/sse-signal
  • Additional commits viewable in compare view

Updates @nestjs/core from 11.1.28 to 11.2.6

Release notes

Sourced from @​nestjs/core's releases.

v11.2.6

What's changed

Full Changelog: nestjs/nest@v11.2.5...v11.2.6

v11.2.5

What's changed

Full Changelog: nestjs/nest@v11.2.4...v11.2.5

v11.2.4

What's changed

  • fix(microservices): handle unserializable patterns without crashing
  • fix(platform-fastify): absolute-form request target middleware bypass

v11.2.3

What's Changed

Full Changelog: nestjs/nest@v11.2.2...v11.2.3

v11.2.2

What's changed

v11.2.1

What's Changed

Full Changelog: nestjs/nest@v11.2.0...v11.2.1

v11.2.0

What's Changed

... (truncated)

Commits
  • c07cfb0 v11.2.6
  • e91618c chore(release): publish v11.2.5 release
  • d504622 chore(release): publish v11.2.4 release
  • 2b36ee5 chore(release): publish v11.2.3 release
  • e12b47b fix(core): circular durable providers issue #17562
  • 7e65752 chore(release): publish v11.2.2 release
  • 7ebaa88 chore: drop skip instrumentation - duplicated api
  • 4593b0a fix(core): preserve middleware arity #17554
  • 35a29cc fix(core): instrument middleware fallback issue
  • 4535f43 chore(release): publish v11.2.1 release
  • Additional commits viewable in compare view

Updates @nestjs/platform-express from 11.1.28 to 11.2.6

Release notes

Sourced from @​nestjs/platform-express's releases.

v11.2.6

What's changed

Full Changelog: nestjs/nest@v11.2.5...v11.2.6

v11.2.5

What's changed

Full Changelog: nestjs/nest@v11.2.4...v11.2.5

v11.2.4

What's changed

  • fix(microservices): handle unserializable patterns without crashing
  • fix(platform-fastify): absolute-form request target middleware bypass

v11.2.3

What's Changed

Full Changelog: nestjs/nest@v11.2.2...v11.2.3

v11.2.2

What's changed

v11.2.1

What's Changed

Full Changelog: nestjs/nest@v11.2.0...v11.2.1

v11.2.0

What's Changed

... (truncated)

Commits
  • c07cfb0 v11.2.6
  • fb8ecdb fix(deps): update dependency multer to v2.4.0 [security]
  • 58c3634 fix(express): map multer errors by code instead of message
  • e91618c chore(release): publish v11.2.5 release
  • d504622 chore(release): publish v11.2.4 release
  • 2b36ee5 chore(release): publish v11.2.3 release
  • 7e65752 chore(release): publish v11.2.2 release
  • 4535f43 chore(release): publish v11.2.1 release
  • f2a7e4b chore(release): publish v11.2.0 release
  • 03587a1 chore(release): publish v11.1.29 release
  • Additional commits viewable in compare view

Updates @nestjs/platform-socket.io from 11.1.28 to 11.2.6

Release notes

Sourced from @​nestjs/platform-socket.io's releases.

v11.2.6

What's changed

Full Changelog: nestjs/nest@v11.2.5...v11.2.6

v11.2.5

What's changed

Full Changelog: nestjs/nest@v11.2.4...v11.2.5

v11.2.4

What's changed

  • fix(microservices): handle unserializable patterns without crashing
  • fix(platform-fastify): absolute-form request target middleware bypass

v11.2.3

What's Changed

Full Changelog: nestjs/nest@v11.2.2...v11.2.3

v11.2.2

What's changed

v11.2.1

What's Changed

Full Changelog: nestjs/nest@v11.2.0...v11.2.1

v11.2.0

What's Changed

... (truncated)

Commits
  • c07cfb0 v11.2.6
  • e91618c chore(release): publish v11.2.5 release
  • d504622 chore(release): publish v11.2.4 release
  • 2b36ee5 chore(release): publish v11.2.3 release
  • 7e65752 chore(release): publish v11.2.2 release
  • 4535f43 chore(release): publish v11.2.1 release
  • f2a7e4b chore(release): publish v11.2.0 release
  • 03587a1 chore(release): publish v11.1.29 release
  • 92bc05d chore: update readme
  • See full diff in compare view

Updates @nestjs/swagger from 11.4.4 to 11.4.7

Release notes

Sourced from @​nestjs/swagger's releases.

11.4.7

What's Changed

New Contributors

Full Changelog: nestjs/swagger@11.4.6...11.4.7

Release 11.4.6

11.4.6 (2026-07-17)

Features

Bug fixes

Enhancements

Dependencies

Committers: 4

11.4.5

What's Changed

... (truncated)

Commits
  • 77e3d46 chore(): release v11.4.7
  • 782cdc0 Merge pull request #4056 from nestjs/renovate/js-yaml-5.x-lockfile
  • 4a5a4b0 Merge pull request #4005 from y-hsgw/fix/plugin-object-example
  • 11b3fb6 chore(deps): update dependency js-yaml to v5.3.0
  • e5203bf Merge pull request #4019 from kyungseopk1m/fix/readonly-outdir-import-path
  • fccfa59 Merge pull request #4030 from kyungseopk1m/fix/deep-partial-type-plugin-metadata
  • 91e5917 Merge pull request #4047 from kyungseopk1m/feat/api-header-extensions
  • 1296583 Merge pull request #4053 from nestjs/renovate/js-yaml-5.x
  • f436f56 Merge pull request #4054 from nestjs/renovate/fastify-static-10.x
  • b293944 Merge pull request #4042 from jorenl/bugfix/plugin-get-identifier-from-name-p...
  • Additional commits viewable in compare view

Updates @nestjs/throttler from 6.5.0 to 6.7.1

Release notes

Sourced from @​nestjs/throttler's releases.

v6.7.1

Patch Changes

  • e8368b3: Set rate limit headers through res.setHeader() when the response has no res.header() method, so the guard no longer throws res.header is not a function on custom HTTP adapters. The logic lives in a new protected setResponseHeader() method that subclasses can override.
  • a482ef9: Coerce numeric strings for limit, ttl and blockDuration to numbers, as returned for example by ConfigService.get<number>() for environment variables. Previously Date.now() + '60000' concatenated instead of adding, which silently corrupted every expiry and X-RateLimit-Reset. A value that is not numeric now fails with an error naming the option and the throttler.
  • a9a28b9: Respect an explicit 0 for limit, ttl and blockDuration in @Throttle() and the module options instead of falling back to the default. blockDuration: 0 now means "no extra block": the in-memory storage rejects requests while the window is full and lets them through again as soon as the oldest hit expires, without recording the rejected ones.
  • bf81677: Import shared interfaces from the public Nest package entry point for Nest 12 compatibility.
  • caaabc9: Stop the in-memory storage from retaining request contexts. It used to schedule one setTimeout per counted hit, and each timer kept the request's AsyncLocalStorage stores (for example an ORM's per-request entity manager) in memory until the TTL expired. It now records when each hit expires and prunes expired hits on access. The idle-record sweep is also no longer tied to the context of the first request. With blockDuration: 0, Retry-After now reports when the oldest hit expires rather than when the window ends.
  • 7703c10: Log a warning when no throttler is configured. The guard limits nothing in that case and previously said nothing at boot, so ThrottlerModule.forRoot() and ThrottlerModule.forRoot([]) looked like a working setup.

v6.7.0

Minor Changes

  • 7004a97: Normalize IPv6 source addresses in the default tracker, and evict expired records from the in-memory storage.

    The built-in getTracker returned req.ip verbatim, so a client holding an IPv6 allocation could send every request from a different address within its own subnet and never share a counter, defeating the rate limit. Addresses are now masked to a /64 before being used as the tracker; the prefix length is configurable via the new ipv6SubnetPrefix module option. IPv4 addresses, IPv4-mapped addresses, the loopback, and custom getTracker implementations are unaffected.

    ThrottlerStorageService also never removed records, so a stream of requests from distinct trackers grew the internal map for the lifetime of the process. Idle records are now swept out once their window has fully elapsed. Limiting behaviour is unchanged: a record is only dropped after every pending hit has expired and any block has lapsed.

    Note that the tracker string for IPv6 clients changes shape (2001:db8:0:1::/64), so storage keys rotate once on upgrade.

v6.6.0

Minor Changes

  • c342bad: Declare the supported Node versions in engines, matching the range the CI matrix tests
  • c625e98: Update to allow for support for Nest version 12
Changelog

Sourced from @​nestjs/throttler's changelog.

6.7.1

Patch Changes

  • e8368b3: Set rate limit headers through res.setHeader() when the response has no res.header() method, so the guard no longer throws res.header is not a function on custom HTTP adapters. The logic lives in a new protected setResponseHeader() method that subclasses can override.
  • a482ef9: Coerce numeric strings for limit, ttl and blockDuration to numbers, as returned for example by ConfigService.get<number>() for environment variables. Previously Date.now() + '60000' concatenated instead of adding, which silently corrupted every expiry and X-RateLimit-Reset. A value that is not numeric now fails with an error naming the option and the throttler.
  • a9a28b9: Respect an explicit 0 for limit, ttl and blockDuration in @Throttle() and the module options instead of falling back to the default. blockDuration: 0 now means "no extra block": the in-memory storage rejects requests while the window is full and lets them through again as soon as the oldest hit expires, without recording the rejected ones.
  • bf81677: Import shared interfaces from the public Nest package entry point for Nest 12 compatibility.
  • caaabc9: Stop the in-memory storage from retaining request contexts. It used to schedule one setTimeout per counted hit, and each timer kept the request's AsyncLocalStorage stores (for example an ORM's per-request entity manager) in memory until the TTL expired. It now records when each hit expires and prunes expired hits on access. The idle-record sweep is also no longer tied to the context of the first request. With blockDuration: 0, Retry-After now reports when the oldest hit expires rather than when the window ends.
  • 7703c10: Log a warning when no throttler is configured. The guard limits nothing in that case and previously said nothing at boot, so ThrottlerModule.forRoot() and ThrottlerModule.forRoot([]) looked like a working setup.

6.7.0

Minor Changes

  • 7004a97: Normalize IPv6 source addresses in the default tracker, and evict expired records from the in-memory storage.

    The built-in getTracker returned req.ip verbatim, so a client holding an IPv6 allocation could send every request from a different address within its own subnet and never share a counter, defeating the rate limit. Addresses are now masked to a /64 before being used as the tracker; the prefix length is configurable via the new ipv6SubnetPrefix module option. IPv4 addresses, IPv4-mapped addresses, the loopback, and custom getTracker implementations are unaffected.

    ThrottlerStorageService also never removed records, so a stream of requests from distinct trackers grew the internal map for the lifetime of the process. Idle records are now swept out once their window has fully elapsed. Limiting behaviour is unchanged: a record is only dropped after every pending hit has expired and any block has lapsed.

    Note that the tracker string for IPv6 clients changes shape (2001:db8:0:1::/64), so storage keys rotate once on upgrade.

6.6.0

Minor Changes

  • c342bad: Declare the supported Node versions in engines, matching the range the CI matrix tests
  • c625e98: Update to allow for support for Nest version 12

6.4.0

6.5.1

Patch Changes

  • 603cb82: handles edge case where multiple clients making frequent requests interfere with each other
Commits
  • 91f4912 Merge pull request #2706 from nestjs/changeset-release/master
  • c5e8c90 chore: version packages
  • 9ec3aa3 Merge pull request #2668 from nestjs/renovate/major-nest-monorepo
  • 5d3b9ae Merge pull request #2712 from nestjs/fix/coerce-numeric-options
  • 4335230 Merge pull request #2711 from nestjs/fix/timer-free-storage
  • a482ef9 fix(guard): coerce numeric string options
  • e082222 chore(deps): update nest monorepo to v12
  • caaabc9 fix(storage): do not retain request contexts in timers
  • 4ab8c63 Merge pull request #2697 from nestjs/renovate/node-24.x
  • c36f011 Merge pull request #2703 from nestjs/renovate/nest-graphql-monorepo
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by GitHub Actions, a new releaser for @​nestjs/throttler since your current version.


Updates @nestjs/websockets from 11.1.28 to 11.2.6

Release notes

Sourced from @​nestjs/websockets's releases.

v11.2.6

What's changed

Full Changelog: nestjs/nest@v11.2.5...v11.2.6

v11.2.5

What's changed

Full Changelog: nestjs/nest@v11.2.4...v11.2.5

v11.2.4

What's changed

  • fix(microservices): handle unserializable patterns without crashing
  • fix(platform-fastify): absolute-form request target middleware bypass

v11.2.3

What's Changed

Full Changelog: nestjs/nest@v11.2.2...v11.2.3

v11.2.2

What's changed

v11.2.1

What's Changed

Full Changelog: nestjs/nest@v11.2.0...v11.2.1

v11.2.0

What's Changed

... (truncated)

Commits
  • c07cfb0 v11.2.6
  • e91618c chore(release): publish v11.2.5 release
  • d504622 chore(release): publish v11.2.4 release
  • 2b36ee5 chore(release): publish v11.2.3 release
  • 7e65752 chore(release): publish v11.2.2 release
  • 4535f43 chore(release): publish v11.2.1 release
  • f2a7e4b chore(release): publish v11.2.0 release
  • 03587a1 chore(release): publish v11.1.29 release
  • 92bc05d chore: update readme
  • See full diff in compare view

Updates @supabase/supabase-js from 2.110.1 to 2.117.2

Release notes

Sourced from @​supabase/supabase-js's releases.

v2.117.2

2.117.2 (2026-09-25)

🩹 Fixes

  • postgrest: avoid instantiation depth errors for large relationship unions (#2701)

❤️ Thank You

v2.117.2-canary.0

2.117.2-canary.0 (2026-09-24)

🩹 Fixes

  • postgrest: avoid instantiation depth errors for large relationship unions (#2701)

❤️ Thank You

v2.117.1

2.117.1 (2026-09-23)

🩹 Fixes

  • auth: return stored session when a refresh loses to another tab (#2698)

❤️ Thank You

v2.117.1-canary.0

2.117.1-canary.0 (2026-09-23)

🩹 Fixes

  • auth: return stored session when a refresh loses to another tab (#2698)

❤️ Thank You

v2.117.0

2.117.0 (2026-09-22)

🚀 Features

  • auth: forward options.mediation to navigator.credentials.get in signInWithPasskey (#2675)

... (truncated)

Changelog

Sourced from @​supabase/supabase-js's changelog.

2.117.2 (2026-09-25)

This was a version bump only for @​supabase/supabase-js to align it with other projects, there were no code changes.

2.117.1 (2026-09-23)

🩹 Fixes

  • auth: return stored session when a refresh loses to another tab (#2698)

❤️ Thank You

2.117.0 (2026-09-22)

🚀 Features

  • auth: enable passkey API by default and deprecate experimental passkey opt-in (#2695)

❤️ Thank You

  • fadymak

2.116.0 (2026-09-07)

🚀 Features

  • auth: add MFA recovery codes API (#2676)

🩹 Fixes

  • supabase: warn when schema is passed outside db options (#2663)

❤️ Thank You

2.115.0 (2026-09-03)

🚀 Features

  • postgrest: add getOpenApiSpec() (#2651)

❤️ Thank You

2.114.0 (2026-09-02)

... (truncated)

Commits

…tory with 26 updates

Bumps the backend-compatible-updates group with 26 updates in the /backend directory:

| Package | From | To |
| --- | --- | --- |
| [@nestjs/bullmq](https://github.com/nestjs/bull) | `11.0.4` | `11.0.5` |
| [@nestjs/common](https://github.com/nestjs/nest/tree/HEAD/packages/common) | `11.1.28` | `11.2.6` |
| [@nestjs/core](https://github.com/nestjs/nest/tree/HEAD/packages/core) | `11.1.28` | `11.2.6` |
| [@nestjs/platform-express](https://github.com/nestjs/nest/tree/HEAD/packages/platform-express) | `11.1.28` | `11.2.6` |
| [@nestjs/platform-socket.io](https://github.com/nestjs/nest/tree/HEAD/packages/platform-socket.io) | `11.1.28` | `11.2.6` |
| [@nestjs/swagger](https://github.com/nestjs/swagger) | `11.4.4` | `11.4.7` |
| [@nestjs/throttler](https://github.com/nestjs/throttler) | `6.5.0` | `6.7.1` |
| [@nestjs/websockets](https://github.com/nestjs/nest/tree/HEAD/packages/websockets) | `11.1.28` | `11.2.6` |
| [@supabase/supabase-js](https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js) | `2.110.1` | `2.117.2` |
| [bullmq](https://github.com/taskforcesh/bullmq) | `5.78.0` | `5.81.5` |
| [dayjs](https://github.com/iamkun/dayjs) | `1.11.21` | `1.11.23` |
| [firebase-admin](https://github.com/firebase/firebase-admin-node) | `14.1.0` | `14.5.0` |
| [helmet](https://github.com/helmetjs/helmet) | `8.2.0` | `8.3.0` |
| [nanoid](https://github.com/ai/nanoid) | `5.1.11` | `5.1.16` |
| [nodemailer](https://github.com/nodemailer/nodemailer) | `9.0.3` | `9.1.1` |
| [redis](https://github.com/redis/node-redis) | `6.0.0` | `6.2.1` |
| [socket.io](https://github.com/socketio/socket.io) | `4.8.3` | `4.8.4` |
| [@eslint/js](https://github.com/eslint/eslint/tree/HEAD/packages/js) | `9.39.4` | `9.39.5` |
| [@nestjs/cli](https://github.com/nestjs/nest-cli) | `11.0.23` | `11.0.24` |
| [@nestjs/testing](https://github.com/nestjs/nest/tree/HEAD/packages/testing) | `11.1.28` | `11.2.6` |
| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `22.19.19` | `22.20.4` |
| [jest](https://github.com/jestjs/jest/tree/HEAD/packages/jest) | `30.4.2` | `30.5.2` |
| [socket.io-client](https://github.com/socketio/socket.io) | `4.8.3` | `4.8.4` |
| [supertest](https://github.com/ladjs/supertest) | `7.2.2` | `7.3.0` |
| [ts-jest](https://github.com/kulshekhar/ts-jest) | `29.4.11` | `29.4.14` |
| [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint) | `8.64.0` | `8.70.1` |



Updates `@nestjs/bullmq` from 11.0.4 to 11.0.5
- [Release notes](https://github.com/nestjs/bull/releases)
- [Commits](https://github.com/nestjs/bull/compare/@nestjs/bullmq@11.0.4...@nestjs/bullmq@11.0.5)

Updates `@nestjs/common` from 11.1.28 to 11.2.6
- [Release notes](https://github.com/nestjs/nest/releases)
- [Commits](https://github.com/nestjs/nest/commits/v11.2.6/packages/common)

Updates `@nestjs/core` from 11.1.28 to 11.2.6
- [Release notes](https://github.com/nestjs/nest/releases)
- [Commits](https://github.com/nestjs/nest/commits/v11.2.6/packages/core)

Updates `@nestjs/platform-express` from 11.1.28 to 11.2.6
- [Release notes](https://github.com/nestjs/nest/releases)
- [Commits](https://github.com/nestjs/nest/commits/v11.2.6/packages/platform-express)

Updates `@nestjs/platform-socket.io` from 11.1.28 to 11.2.6
- [Release notes](https://github.com/nestjs/nest/releases)
- [Commits](https://github.com/nestjs/nest/commits/v11.2.6/packages/platform-socket.io)

Updates `@nestjs/swagger` from 11.4.4 to 11.4.7
- [Release notes](https://github.com/nestjs/swagger/releases)
- [Commits](nestjs/swagger@11.4.4...11.4.7)

Updates `@nestjs/throttler` from 6.5.0 to 6.7.1
- [Release notes](https://github.com/nestjs/throttler/releases)
- [Changelog](https://github.com/nestjs/throttler/blob/master/CHANGELOG.md)
- [Commits](nestjs/throttler@v6.5.0...v6.7.1)

Updates `@nestjs/websockets` from 11.1.28 to 11.2.6
- [Release notes](https://github.com/nestjs/nest/releases)
- [Commits](https://github.com/nestjs/nest/commits/v11.2.6/packages/websockets)

Updates `@supabase/supabase-js` from 2.110.1 to 2.117.2
- [Release notes](https://github.com/supabase/supabase-js/releases)
- [Changelog](https://github.com/supabase/supabase-js/blob/master/packages/core/supabase-js/CHANGELOG.md)
- [Commits](https://github.com/supabase/supabase-js/commits/v2.117.2/packages/core/supabase-js)

Updates `bullmq` from 5.78.0 to 5.81.5
- [Release notes](https://github.com/taskforcesh/bullmq/releases)
- [Commits](taskforcesh/bullmq@v5.78.0...v5.81.5)

Updates `dayjs` from 1.11.21 to 1.11.23
- [Release notes](https://github.com/iamkun/dayjs/releases)
- [Changelog](https://github.com/iamkun/dayjs/blob/v1.11.23/CHANGELOG.md)
- [Commits](iamkun/dayjs@v1.11.21...v1.11.23)

Updates `firebase-admin` from 14.1.0 to 14.5.0
- [Release notes](https://github.com/firebase/firebase-admin-node/releases)
- [Changelog](https://github.com/firebase/firebase-admin-node/blob/main/CHANGELOG.md)
- [Commits](firebase/firebase-admin-node@v14.1.0...v14.5.0)

Updates `helmet` from 8.2.0 to 8.3.0
- [Changelog](https://github.com/helmetjs/helmet/blob/main/CHANGELOG.md)
- [Commits](helmetjs/helmet@v8.2.0...v8.3.0)

Updates `nanoid` from 5.1.11 to 5.1.16
- [Release notes](https://github.com/ai/nanoid/releases)
- [Changelog](https://github.com/ai/nanoid/blob/main/CHANGELOG.md)
- [Commits](ai/nanoid@5.1.11...5.1.16)

Updates `nodemailer` from 9.0.3 to 9.1.1
- [Release notes](https://github.com/nodemailer/nodemailer/releases)
- [Changelog](https://github.com/nodemailer/nodemailer/blob/master/CHANGELOG.md)
- [Commits](nodemailer/nodemailer@v9.0.3...v9.1.1)

Updates `redis` from 6.0.0 to 6.2.1
- [Release notes](https://github.com/redis/node-redis/releases)
- [Changelog](https://github.com/redis/node-redis/blob/master/CHANGELOG.md)
- [Commits](https://github.com/redis/node-redis/compare/redis@6.0.0...redis@6.2.1)

Updates `socket.io` from 4.8.3 to 4.8.4
- [Release notes](https://github.com/socketio/socket.io/releases)
- [Changelog](https://github.com/socketio/socket.io/blob/main/CHANGELOG.md)
- [Commits](https://github.com/socketio/socket.io/compare/socket.io@4.8.3...socket.io@4.8.4)

Updates `@eslint/js` from 9.39.4 to 9.39.5
- [Release notes](https://github.com/eslint/eslint/releases)
- [Commits](https://github.com/eslint/eslint/commits/v9.39.5/packages/js)

Updates `@nestjs/cli` from 11.0.23 to 11.0.24
- [Release notes](https://github.com/nestjs/nest-cli/releases)
- [Commits](nestjs/nest-cli@11.0.23...11.0.24)

Updates `@nestjs/testing` from 11.1.28 to 11.2.6
- [Release notes](https://github.com/nestjs/nest/releases)
- [Commits](https://github.com/nestjs/nest/commits/v11.2.6/packages/testing)

Updates `@types/node` from 22.19.19 to 22.20.4
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)

Updates `jest` from 30.4.2 to 30.5.2
- [Release notes](https://github.com/jestjs/jest/releases)
- [Changelog](https://github.com/jestjs/jest/blob/main/CHANGELOG.md)
- [Commits](https://github.com/jestjs/jest/commits/v30.5.2/packages/jest)

Updates `socket.io-client` from 4.8.3 to 4.8.4
- [Release notes](https://github.com/socketio/socket.io/releases)
- [Changelog](https://github.com/socketio/socket.io/blob/main/CHANGELOG.md)
- [Commits](https://github.com/socketio/socket.io/compare/socket.io-client@4.8.3...socket.io-client@4.8.4)

Updates `supertest` from 7.2.2 to 7.3.0
- [Release notes](https://github.com/ladjs/supertest/releases)
- [Commits](forwardemail/supertest@v7.2.2...v7.3.0)

Updates `ts-jest` from 29.4.11 to 29.4.14
- [Release notes](https://github.com/kulshekhar/ts-jest/releases)
- [Changelog](https://github.com/kulshekhar/ts-jest/blob/main/CHANGELOG.md)
- [Commits](kulshekhar/ts-jest@v29.4.11...v29.4.14)

Updates `typescript-eslint` from 8.64.0 to 8.70.1
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.70.1/packages/typescript-eslint)

---
updated-dependencies:
- dependency-name: "@nestjs/bullmq"
  dependency-version: 11.0.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: backend-compatible-updates
- dependency-name: "@nestjs/common"
  dependency-version: 11.2.6
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: "@nestjs/core"
  dependency-version: 11.2.6
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: "@nestjs/platform-express"
  dependency-version: 11.2.6
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: "@nestjs/platform-socket.io"
  dependency-version: 11.2.6
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: "@nestjs/swagger"
  dependency-version: 11.4.7
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: backend-compatible-updates
- dependency-name: "@nestjs/throttler"
  dependency-version: 6.7.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: "@nestjs/websockets"
  dependency-version: 11.2.6
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: "@supabase/supabase-js"
  dependency-version: 2.117.2
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: bullmq
  dependency-version: 5.81.5
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: dayjs
  dependency-version: 1.11.23
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: backend-compatible-updates
- dependency-name: firebase-admin
  dependency-version: 14.5.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: helmet
  dependency-version: 8.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: nanoid
  dependency-version: 5.1.16
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: backend-compatible-updates
- dependency-name: nodemailer
  dependency-version: 9.1.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: redis
  dependency-version: 6.2.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: socket.io
  dependency-version: 4.8.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: backend-compatible-updates
- dependency-name: "@eslint/js"
  dependency-version: 9.39.5
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: backend-compatible-updates
- dependency-name: "@nestjs/cli"
  dependency-version: 11.0.24
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: backend-compatible-updates
- dependency-name: "@nestjs/testing"
  dependency-version: 11.2.6
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: "@types/node"
  dependency-version: 22.20.4
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: jest
  dependency-version: 30.5.2
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: socket.io-client
  dependency-version: 4.8.4
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: backend-compatible-updates
- dependency-name: supertest
  dependency-version: 7.3.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
- dependency-name: ts-jest
  dependency-version: 29.4.14
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: backend-compatible-updates
- dependency-name: typescript-eslint
  dependency-version: 8.70.1
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: backend-compatible-updates
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Oct 1, 2026
@dependabot
dependabot Bot requested a review from JasonTM17 as a code owner October 1, 2026 06:40
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Oct 1, 2026
@vercel

vercel Bot commented Oct 1, 2026 •

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated
food-delivery-app Ready Ready Preview Oct 1, 2026 6:45am UTC
foodflow-restaurant Ready Ready Preview Oct 1, 2026 6:45am UTC

This branch was successfully deployed

2 active deployments
Preview – food-delivery-app — 98d0f2f9 Deployed Oct 1, 2026 by vercel[bot]
Preview – foodflow-restaurant — 98d0f2f9 Deployed Oct 1, 2026 by vercel[bot]
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants