Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(deps): update dependency path-parse to 1.0.7 [security] #60

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Sep 22, 2021

Mend Renovate

This PR contains the following updates:

Package Change
path-parse 1.0.6 -> 1.0.7

GitHub Vulnerability Alerts

CVE-2021-23343

Affected versions of npm package path-parse are vulnerable to Regular Expression Denial of Service (ReDoS) via splitDeviceRe, splitTailRe, and splitPathRe regular expressions. ReDoS exhibits polynomial worst-case time complexity.


Configuration

📅 Schedule: Branch creation - "" in timezone Europe/Oslo, Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, click this checkbox.

This PR has been generated by Mend Renovate. View repository job log here.

@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch 10 times, most recently from 697270c to 69ca82a Compare September 30, 2021 00:04
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch 7 times, most recently from 5d3e8cf to 50254ff Compare October 8, 2021 00:09
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch 7 times, most recently from 490c301 to 71873eb Compare October 12, 2021 02:02
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch 6 times, most recently from 998a32b to 3445273 Compare October 20, 2021 00:59
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch 6 times, most recently from 0384751 to 8a530fe Compare November 5, 2021 01:00
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch 5 times, most recently from d4dd06b to 2db3b99 Compare November 12, 2021 01:57
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch 7 times, most recently from 40e023c to cf14bf5 Compare November 19, 2021 02:52
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch 5 times, most recently from af9b951 to 48190f3 Compare November 27, 2021 23:22
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch 5 times, most recently from 8d0b6ef to 8d533cb Compare December 4, 2021 17:42
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch from 8d533cb to 8d6e255 Compare December 8, 2021 01:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant