Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependency @braintree/sanitize-url to 6.0.0 [SECURITY] - abandoned #881

Open
wants to merge 2 commits into
base: master
Choose a base branch
from

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Apr 7, 2022

Mend Renovate

This PR contains the following updates:

Package Change
@​braintree/sanitize-url 5.0.2 -> 6.0.0

⚠ Dependency Lookup Warnings ⚠

Warnings were logged while processing this repo. Please check the logs for more information.

GitHub Vulnerability Alerts

CVE-2021-23648

The package @braintree/sanitize-url before 6.0.0 is vulnerable to Cross-site Scripting (XSS) due to improper sanitization in the sanitizeUrl function.


Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Renovate will not automatically rebase this PR, because other commits have been found.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate. View repository job log here.

@codecov
Copy link

codecov bot commented Apr 7, 2022

Codecov Report

Merging #881 (6a46b9f) into master (ae443e7) will not change coverage.
The diff coverage is n/a.

@@            Coverage Diff            @@
##             master     #881   +/-   ##
=========================================
  Coverage     89.41%   89.41%           
  Complexity     1942     1942           
=========================================
  Files           325      325           
  Lines          8628     8628           
  Branches       1288     1288           
=========================================
  Hits           7715     7715           
  Misses          651      651           
  Partials        262      262           
Flag Coverage Δ
integration 53.64% <ø> (ø)
jest 86.38% <ø> (ø)
karma 95.09% <ø> (ø)
unittests 88.82% <ø> (ø)

Flags with carried forward coverage won't be shown. Click here to find out more.


Continue to review full report at Codecov.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update ae443e7...6a46b9f. Read the comment docs.

@renovate renovate bot force-pushed the renovate/npm-@braintree/sanitize-url-vulnerability branch from b92e246 to 6fd4ec7 Compare April 11, 2022 09:14
@renovate renovate bot force-pushed the renovate/npm-@braintree/sanitize-url-vulnerability branch from 6fd4ec7 to 943cf8e Compare April 21, 2022 13:23
@renovate renovate bot changed the title Update dependency @braintree/sanitize-url to 6.0.0 [SECURITY] Update dependency @braintree/sanitize-url to 6.0.0 [SECURITY] - autoclosed Apr 27, 2022
@renovate renovate bot closed this Apr 27, 2022
@renovate renovate bot deleted the renovate/npm-@braintree/sanitize-url-vulnerability branch April 27, 2022 17:12
@renovate renovate bot changed the title Update dependency @braintree/sanitize-url to 6.0.0 [SECURITY] - autoclosed Update dependency @braintree/sanitize-url to 6.0.0 [SECURITY] Apr 27, 2022
@renovate renovate bot reopened this Apr 27, 2022
@renovate renovate bot restored the renovate/npm-@braintree/sanitize-url-vulnerability branch April 27, 2022 20:47
@renovate renovate bot force-pushed the renovate/npm-@braintree/sanitize-url-vulnerability branch 9 times, most recently from 560d760 to 4fa13e0 Compare May 3, 2022 10:41
@renovate renovate bot force-pushed the renovate/npm-@braintree/sanitize-url-vulnerability branch 2 times, most recently from a5e8db1 to 36186b9 Compare May 16, 2022 13:14
@renovate renovate bot force-pushed the renovate/npm-@braintree/sanitize-url-vulnerability branch from 36186b9 to 2665b8a Compare May 16, 2022 16:17
@renovate
Copy link
Contributor Author

renovate bot commented Aug 25, 2022

Autoclosing Skipped

This PR has been flagged for autoclosing. However, it is being skipped due to the branch being already modified. Please close/delete it manually or report a bug if you think this is in error.

@renovate renovate bot changed the title Update dependency @braintree/sanitize-url to 6.0.0 [SECURITY] Update dependency @braintree/sanitize-url to 6.0.0 [SECURITY] - abandoned Nov 14, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants