chore(deps): pin dependency karma to 0.13.22 [security]#113
Open
sc-renovate[bot] wants to merge 1 commit into
Open
chore(deps): pin dependency karma to 0.13.22 [security]#113sc-renovate[bot] wants to merge 1 commit into
sc-renovate[bot] wants to merge 1 commit into
Conversation
394ec38 to
335d394
Compare
e8237fb to
9141b1e
Compare
de02b70 to
abd2668
Compare
3aa2e2f to
790bf48
Compare
ac3893f to
a47ee4a
Compare
91f3a66 to
6b82e9a
Compare
f4ca83b to
395ea41
Compare
b0f972b to
7d6fec6
Compare
cbf4a01 to
1e2f0f3
Compare
a9eb3b9 to
7d3bb38
Compare
f9e1795 to
c35f3a1
Compare
b1130fa to
8d304b5
Compare
8d304b5 to
3a2e6e4
Compare
3a2e6e4 to
3346282
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
^0.13.3→0.13.22GitHub Vulnerability Alerts
CVE-2022-0437
karma prior to version 6.3.14 contains a cross-site scripting vulnerability.
CVE-2021-23495
Karma before 6.3.16 is vulnerable to Open Redirect due to missing validation of the return_url query parameter.
Add the preset
:preserveSemverRangesto your config if you don't want to pin your dependencies.Configuration
📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Renovate Bot.