Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependency morgan to ~1.9.1 #12

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

dev-mend-for-github-com[bot]
Copy link
Contributor

@dev-mend-for-github-com dev-mend-for-github-com bot commented Nov 2, 2022

This PR contains the following updates:

Package Type Update Change
morgan dependencies minor ~1.6.1 -> ~1.9.1

By merging this PR, the issue #4 will be automatically resolved and closed:

Severity CVSS Score CVE
Critical Critical 9.8 CVE-2019-5413
Medium Medium 4.3 CVE-2017-20162
Low Low 3.7 CVE-2017-16137
Low Low 3.5 CVE-2017-20165

Release Notes

expressjs/morgan (morgan)

v1.9.1

Compare Source

==================

  • Fix using special characters in format
  • deps: depd@~1.1.2
    • perf: remove argument reassignment

v1.9.0

Compare Source

==================

  • Use res.headersSent when available
  • deps: basic-auth@~2.0.0
    • Use safe-buffer for improved Buffer API
  • deps: debug@2.6.9
  • deps: depd@~1.1.1
    • Remove unnecessary Buffer loading

v1.8.2

Compare Source

==================

  • deps: debug@2.6.8
    • Fix DEBUG_MAX_ARRAY_LENGTH
    • deps: ms@2.0.0

v1.8.1

Compare Source

==================

  • deps: debug@2.6.1
    • Fix deprecation messages in WebStorm and other editors
    • Undeprecate DEBUG_FD set to 1 or 2

v1.8.0

Compare Source

==================

  • Fix sending unnecessary undefined argument to token functions
  • deps: basic-auth@~1.1.0
  • deps: debug@2.6.0
    • Allow colors in workers
    • Deprecated DEBUG_FD environment variable
    • Fix error when running under React Native
    • Use same color for same namespace
    • deps: ms@0.7.2
  • perf: enable strict mode in compiled functions

v1.7.0

Compare Source

==================

  • Add digits argument to response-time token
  • deps: depd@~1.1.0
    • Enable strict mode in more places
    • Support web browser loading
  • deps: on-headers@~1.0.1
    • perf: enable strict mode

  • If you want to rebase/retry this PR, check this box

@dev-mend-for-github-com dev-mend-for-github-com bot added the security fix Security fix generated by Mend label Nov 2, 2022
@dev-mend-for-github-com
Copy link
Contributor Author

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.
You can manually request rebase by checking the rebase/retry box above.

Warning: custom changes will be lost.

@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency morgan to ~1.9.1 Update dependency morgan to ~1.8.2 Dec 27, 2022
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/morgan-1.x branch from f271a0e to d99093b Compare December 27, 2022 16:50
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency morgan to ~1.8.2 Update dependency morgan to ~1.9.1 Feb 11, 2023
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/morgan-1.x branch from d99093b to 62f53d3 Compare February 11, 2023 15:09
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency morgan to ~1.9.1 Update dependency morgan to ~1.8.2 Feb 12, 2023
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/morgan-1.x branch from 62f53d3 to b135ccd Compare February 12, 2023 15:18
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency morgan to ~1.8.2 Update dependency morgan to ~1.9.1 Mar 9, 2023
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/morgan-1.x branch from b135ccd to 7c6b75f Compare March 9, 2023 18:56
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency morgan to ~1.9.1 Update dependency morgan to ~1.8.2 Mar 10, 2023
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/morgan-1.x branch from 7c6b75f to bb1d807 Compare March 10, 2023 19:05
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency morgan to ~1.8.2 Update dependency morgan to ~1.9.1 Mar 15, 2023
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/morgan-1.x branch from bb1d807 to 8e1aefa Compare March 15, 2023 20:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security fix Security fix generated by Mend
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants