Skip to content
This repository was archived by the owner on Oct 22, 2021. It is now read-only.

[patch] Update dependency path-parse to 1.0.7 [SECURITY] #133

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Aug 11, 2021

WhiteSource Renovate

This PR contains the following updates:

Package Change
path-parse 1.0.6 -> 1.0.7

GitHub Vulnerability Alerts

CVE-2021-23343

Affected versions of npm package path-parse are vulnerable to Regular Expression Denial of Service (ReDoS) via splitDeviceRe, splitTailRe, and splitPathRe regular expressions. ReDoS exhibits polynomial worst-case time complexity.


Configuration

📅 Schedule: At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, click this checkbox.

This PR has been generated by WhiteSource Renovate. View repository job log here.

@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch 2 times, most recently from 86d28e5 to 2865aa3 Compare August 14, 2021 13:28
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch 5 times, most recently from 9ffaa7e to 7b2bfdb Compare August 28, 2021 03:52
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch 2 times, most recently from 3fd7a9d to ef6054a Compare September 3, 2021 13:03
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch from ef6054a to 0cbbe99 Compare September 24, 2021 16:00
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch from 0cbbe99 to 710e469 Compare October 3, 2021 11:02
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch 2 times, most recently from 4877679 to 00fe85c Compare October 16, 2021 04:45
@renovate renovate bot force-pushed the renovate/npm-path-parse-vulnerability branch from 00fe85c to cf873e3 Compare October 20, 2021 17:01
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant