Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

patch: Patch high severity path-to-regexp vulnerability #215

Closed

Conversation

alana-cruickshank
Copy link

@alana-cruickshank alana-cruickshank commented Oct 12, 2024

closes #211
closes #212
see GHSA-9wv6-86v2-598j

Copy link

New and removed dependencies detected. Learn more about Socket for GitHub ↗︎

Package New capabilities Transitives Size Publisher
npm/@istanbuljs/[email protected] environment, filesystem +1 18.3 kB coreyfarrell
npm/[email protected] None 0 6.69 kB sindresorhus
npm/[email protected] None 0 8.33 kB jakxz
npm/[email protected] filesystem 0 10.1 kB coreyfarrell
npm/[email protected] None +1 20.6 kB bcoe
npm/[email protected] filesystem +1 7.25 kB sindresorhus
npm/[email protected] filesystem 0 6.79 kB sindresorhus
npm/[email protected] shell Transitive: environment, filesystem +3 170 kB isaacs
npm/[email protected] None 0 4.95 kB feross
npm/[email protected] filesystem 0 6.01 kB coreyfarrell
npm/[email protected] None 0 7.96 kB jonschlinkert
npm/[email protected] unsafe 0 17.9 kB coreyfarrell
npm/[email protected] Transitive: environment +19 8.83 MB oss-bot
npm/[email protected] environment, filesystem 0 16.1 kB isaacs
npm/[email protected] environment 0 9.22 kB coreyfarrell
npm/[email protected] environment, filesystem, unsafe +2 83.2 kB bcoe
npm/[email protected] None 0 25.8 kB blakeembrey
npm/[email protected] shell 0 7.47 kB coreyfarrell
npm/[email protected] environment, filesystem, shell, unsafe +1 43.5 kB coreyfarrell
npm/[email protected] None 0 23.6 kB coreyfarrell
npm/[email protected] None 0 116 kB ctavan
npm/[email protected] None +1 36.7 kB sindresorhus
npm/[email protected] environment, filesystem +1 302 kB oss-bot

🚮 Removed packages: npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected]

View full report↗︎

@alana-cruickshank alana-cruickshank changed the title patch: Patch path-to-regexp vulnerability patch: Patch high severity path-to-regexp vulnerability Oct 13, 2024
@AndyBitz
Copy link
Contributor

Thank you for your PR!

Since there were some other changes that caused this PR to have merge conflicts I've created #217 to get those changes into the next release.

@AndyBitz AndyBitz closed this Oct 15, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
2 participants