Skip to content

chore(deps): update dependency minimatch to 3.0.5 [security]#804

Merged
leomp12 merged 1 commit into
masterfrom
renovate/npm-minimatch-vulnerability
Oct 25, 2022
Merged

chore(deps): update dependency minimatch to 3.0.5 [security]#804
leomp12 merged 1 commit into
masterfrom
renovate/npm-minimatch-vulnerability

Conversation

@renovate

@renovate renovate Bot commented Oct 24, 2022

Copy link
Copy Markdown
Contributor

Mend Renovate

This PR contains the following updates:

Package Change
minimatch 3.0.4 -> 3.0.5

GitHub Vulnerability Alerts

CVE-2022-3517

A vulnerability was found in the minimatch package. This flaw allows a Regular Expression Denial of Service (ReDoS) when calling the braceExpand function with specific arguments, resulting in a Denial of Service.


Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, click this checkbox.

This PR has been generated by Mend Renovate. View repository job log here.

@renovate renovate Bot added the dependencies Issue or PR by renovate/dependabot label Oct 24, 2022
@renovate renovate Bot force-pushed the renovate/npm-minimatch-vulnerability branch from e677ff2 to f60cf06 Compare October 25, 2022 00:33
@renovate renovate Bot force-pushed the renovate/npm-minimatch-vulnerability branch from f60cf06 to 7ccaa99 Compare October 25, 2022 04:10
@leomp12 leomp12 merged commit 25e563d into master Oct 25, 2022
@leomp12 leomp12 deleted the renovate/npm-minimatch-vulnerability branch October 25, 2022 20:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Issue or PR by renovate/dependabot

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant