Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependency minimist to ~1.2.3 #4

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

mend-for-github-com[bot]
Copy link

@mend-for-github-com mend-for-github-com bot commented Dec 4, 2022

This PR contains the following updates:

Package Type Update Change
minimist dependencies minor ~1.1.0 -> ~1.2.3

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score CVE
High High 9.8 CVE-2021-44906
Medium Medium 5.6 CVE-2020-7598

Release Notes

minimistjs/minimist

v1.2.3

Compare Source

Commits
  • more failing proto pollution tests 13c01a5
  • even more aggressive checks for protocol pollution 38a4d1c

v1.2.2

Compare Source

Commits

v1.2.1

Compare Source

Merged
  • move the opts['--'] example back where it belongs #63
Commits

v1.2.0

Compare Source

Commits

v1.1.3

Compare Source

Commits
  • add failing test - boolean alias array 0fa3c5b
  • fix boolean values with multiple aliases 9c0a6e7

v1.1.2

Compare Source

Commits
  • Convert boolean arguments to boolean values 8f3dc27
  • use non-ancient npm, node 0.12 and iojs 61ed1d0
  • an older npm for 0.8 25cf778

v1.1.1

Compare Source

Commits
  • check that they type of a value is a boolean, not just that it is currently set to a boolean 6863198
  • upgrade tape, fix type issues from old tape version 806712d
  • test for setting a boolean to a null default 8c444fe
  • if the previous value was a boolean, without an default (or with an alias) don't make an array either e5f419a

  • If you want to rebase/retry this PR, click this checkbox.

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by Mend label Dec 4, 2022
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/minimist-1.x branch from 3d2549a to 4c82ad7 Compare December 9, 2022 11:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security fix Security fix generated by Mend
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants