Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

An in-range update of helmet is breaking the build 🚨 #613

Open
greenkeeper bot opened this issue Jul 24, 2019 · 6 comments
Open

An in-range update of helmet is breaking the build 🚨 #613

greenkeeper bot opened this issue Jul 24, 2019 · 6 comments

Comments

@greenkeeper
Copy link
Contributor

greenkeeper bot commented Jul 24, 2019

The dependency helmet was updated from 3.19.0 to 3.20.0.

🚨 View failing branch.

This version is covered by your current version range and after updating it in your project the build failed.

helmet is a direct dependency of this project, and it is very likely causing it to break. If other packages depend on yours, this update is probably also breaking those in turn.

Status Details
  • ci/circleci: Your tests passed on CircleCI! (Details).
  • codecov/project: No report found to compare against (Details).
  • codecov/patch: Coverage not affected. (Details).
  • Better Code Hub: ✅ Better Code Hub approves this code (Details).
  • WhiteSource Security Check: The Security Check found 7 vulnerabilities.

Severity CVSS Score CVE GitHub Issue
High 8.0 WS-2019-0064 #433
High 7.5 CVE-2019-10746 #595
High 7.4 CVE-2019-10744 #590
High 7.4 CVE-2019-10747 #612
Medium 5.5 WS-2018-0236 #584
Medium 5.0 WS-2019-0047 #418
Medium 5.0 WS-2019-0019 #136

Scan token: 3ed3d0d343994e7f96a3adbfa7c0c94b

Commits

The new version differs by 5 commits.

  • b2a3700 3.20.0
  • 87d7323 Update changelog for 3.20.0 release
  • a711731 Update Mocha and Standard to latest versions
  • 6aab72d Update helmet-csp to 2.8.0
  • ac46aaf Minor: in changelog, change "updated" header in under 3.19.0

See the full diff

FAQ and help

There is a collection of frequently asked questions. If those don’t help, you can always ask the humans behind Greenkeeper.


Your Greenkeeper Bot 🌴

@greenkeeper
Copy link
Contributor Author

greenkeeper bot commented Aug 28, 2019

  • The dependency helmet was updated from 3.20.0 to 3.20.1.

Your tests for group default are passing again with this update. Explicitly upgrade default to this version 🚀

Commits

The new version differs by 4 commits.

  • 968fabd 3.20.1
  • d588453 Update changelog for 3.20.1 release
  • a5a9679 Update Sinon and Standard to latest versions
  • 844739c Update helmet-csp to v2.9.0

See the full diff

@greenkeeper
Copy link
Contributor Author

greenkeeper bot commented Sep 4, 2019

  • The dependency helmet was updated from 3.20.1 to 3.21.0.

Your tests for group default are passing again with this update. Explicitly upgrade default to this version 🚀

Commits

The new version differs by 11 commits.

  • 0dad3c2 3.21.0
  • 33cfd10 Update changelog for 3.21.0 release
  • 349117f Update helmet-csp to 2.9.1
  • 03d4fa6 Update x-xss-protection from 1.2.0 to 1.3.0
  • 3b9d0e8 Update devDependencies to latest versions
  • 80fe85f Remove old HISTORY.md
  • e3ea074 Use sinon's default sandbox feature
  • 968fabd 3.20.1
  • d588453 Update changelog for 3.20.1 release
  • a5a9679 Update Sinon and Standard to latest versions
  • 844739c Update helmet-csp to v2.9.0

See the full diff

@greenkeeper
Copy link
Contributor Author

greenkeeper bot commented Sep 20, 2019

  • The dependency helmet was updated from 3.21.0 to 3.21.1.

Your tests for group default are passing again with this update. Explicitly upgrade default to this version 🚀

Commits

The new version differs by 15 commits.

  • 5d964d4 3.21.1
  • 1e9b8ea Update changelog for 3.21.1 release
  • 86f1f59 Update helmet-csp to 2.9.2
  • 76ca5bd Update Standard devDependency to latest version
  • 0dad3c2 3.21.0
  • 33cfd10 Update changelog for 3.21.0 release
  • 349117f Update helmet-csp to 2.9.1
  • 03d4fa6 Update x-xss-protection from 1.2.0 to 1.3.0
  • 3b9d0e8 Update devDependencies to latest versions
  • 80fe85f Remove old HISTORY.md
  • e3ea074 Use sinon's default sandbox feature
  • 968fabd 3.20.1
  • d588453 Update changelog for 3.20.1 release
  • a5a9679 Update Sinon and Standard to latest versions
  • 844739c Update helmet-csp to v2.9.0

See the full diff

@greenkeeper
Copy link
Contributor Author

greenkeeper bot commented Oct 22, 2019

  • The dependency helmet was updated from 3.21.1 to 3.21.2.

Your tests for group default are passing again with this update. Explicitly upgrade default to this version 🚀

Commits

The new version differs by 19 commits.

  • 2b37fcf 3.21.2
  • a238c49 Update changelog for 3.21.2 release
  • 7b87cf1 Update Mocha and Sinon to latest versions
  • 675540b Update helmet-csp to v2.9.4
  • 5d964d4 3.21.1
  • 1e9b8ea Update changelog for 3.21.1 release
  • 86f1f59 Update helmet-csp to 2.9.2
  • 76ca5bd Update Standard devDependency to latest version
  • 0dad3c2 3.21.0
  • 33cfd10 Update changelog for 3.21.0 release
  • 349117f Update helmet-csp to 2.9.1
  • 03d4fa6 Update x-xss-protection from 1.2.0 to 1.3.0
  • 3b9d0e8 Update devDependencies to latest versions
  • 80fe85f Remove old HISTORY.md
  • e3ea074 Use sinon's default sandbox feature

There are 19 commits in total.

See the full diff

@greenkeeper
Copy link
Contributor Author

greenkeeper bot commented Feb 24, 2020

  • The dependency helmet was updated from 3.21.2 to 3.21.3.

Your tests for group default are passing again with this update. Explicitly upgrade default to this version 🚀

Commits

The new version differs by 25 commits.

There are 25 commits in total.

See the full diff

@greenkeeper
Copy link
Contributor Author

greenkeeper bot commented Mar 24, 2020

  • The dependency helmet was updated from 3.21.3 to 3.22.0.

Your tests for group default are passing again with this update. Explicitly upgrade default to this version 🚀

Commits

The new version differs by 32 commits.

  • 6b78d65 3.22.0
  • 9a7de88 Update changelog for 3.22.0 release
  • 1fa85d0 Omit deprecated submodules (hpkp and noCache) from readme
  • 83115f5 Update helmet-csp to 2.10.0
  • a7ab71f Update license year for 2020
  • 7ef38b7 Update outdated devDependencies
  • 210b78c Deprecate helmet.noCache
  • 903c88e 3.21.3
  • 9c359ba Update changelog for 3.21.3 release
  • a857597 Update helmet-csp to v2.9.5
  • d911036 Stop testing on Node 6, start testing on Node 12
  • a7b5b0e Update Sinon to 9.0.0
  • ebf480e Update Mocha to 7.0.1
  • 2b37fcf 3.21.2
  • a238c49 Update changelog for 3.21.2 release

There are 32 commits in total.

See the full diff

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

0 participants