fix(deps): update dependency debug to ~2.6.9 [security]#26
Open
renovate[bot] wants to merge 1 commit intomasterfrom
Open
fix(deps): update dependency debug to ~2.6.9 [security]#26renovate[bot] wants to merge 1 commit intomasterfrom
renovate[bot] wants to merge 1 commit intomasterfrom
Conversation
802ffd7 to
134ac73
Compare
b718b6d to
c595a95
Compare
c595a95 to
3cf46f8
Compare
3cf46f8 to
9ba7dbc
Compare
9ba7dbc to
9024c77
Compare
9024c77 to
36968d4
Compare
36968d4 to
1bb1167
Compare
1bb1167 to
ab59577
Compare
ab59577 to
d2cf4cb
Compare
d2cf4cb to
0b9906e
Compare
0b9906e to
46f06db
Compare
46f06db to
0d46830
Compare
0d46830 to
2060bb8
Compare
2060bb8 to
d23a5f8
Compare
8316cfb to
64b4314
Compare
64b4314 to
372120f
Compare
372120f to
56a5858
Compare
56a5858 to
e38b08c
Compare
e38b08c to
947b531
Compare
947b531 to
6b0e056
Compare
6b0e056 to
c0a9484
Compare
c0a9484 to
425f52e
Compare
425f52e to
435e64b
Compare
435e64b to
51b5566
Compare
51b5566 to
39ec5f1
Compare
39ec5f1 to
7aaca69
Compare
7aaca69 to
5bf6848
Compare
5bf6848 to
0ea2b14
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
~2.2.0→~2.6.9GitHub Vulnerability Alerts
CVE-2017-20165
A vulnerability classified as problematic has been found in debug-js debug up to 3.0.x. This affects the function useColors of the file src/node.js. The manipulation of the argument str leads to inefficient regular expression complexity. Upgrading to version 3.1.0 is able to address this issue. The name of the patch is c38a0166c266a679c8de012d4eaccec3f944e685. It is recommended to upgrade the affected component. The identifier VDB-217665 was assigned to this vulnerability. The patch has been backported to the 2.6.x branch in version 2.6.9.
Release Notes
debug-js/debug (debug)
v2.6.9Compare Source
Patches
%oformatter: #504Credits
Huge thanks to @zhuangya for their help!
v2.6.8Compare Source
v2.6.7Compare Source
v2.6.6Compare Source
v2.6.5Compare Source
v2.6.4Compare Source
v2.6.3Compare Source
v2.6.2Compare Source
v2.6.1Compare Source
v2.6.0Compare Source
v2.5.2Compare Source
v2.5.1Compare Source
v2.5.0Compare Source
v2.4.5Compare Source
v2.4.4Compare Source
v2.4.3Compare Source
v2.4.2Compare Source
v2.4.1Compare Source
v2.4.0Compare Source
v2.3.3Compare Source
v2.3.2Compare Source
v2.3.1Compare Source
v2.3.0Compare Source
Configuration
📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.