This repository has been archived by the owner on Jan 19, 2024. It is now read-only.
-
Notifications
You must be signed in to change notification settings - Fork 0
fix(deps): update dependency next-auth to v4.3.2 [security] #155
Merged
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
github-actions
bot
temporarily deployed
to
mon-psy-sante-renovate-npm-next-auth-vulnerability-2uh8w3
April 22, 2022 21:37
Inactive
renovate
bot
force-pushed
the
renovate/npm-next-auth-vulnerability
branch
from
April 26, 2022 07:33
e1f092d
to
945a681
Compare
github-actions
bot
temporarily deployed
to
mon-psy-sante-renovate-npm-next-auth-vulnerability-2uh8w3
April 26, 2022 07:40
Inactive
renovate
bot
force-pushed
the
renovate/npm-next-auth-vulnerability
branch
from
April 26, 2022 13:04
945a681
to
7fc6bbc
Compare
github-actions
bot
temporarily deployed
to
mon-psy-sante-renovate-npm-next-auth-vulnerability-2uh8w3
April 26, 2022 13:10
Inactive
renovate
bot
force-pushed
the
renovate/npm-next-auth-vulnerability
branch
from
April 28, 2022 10:53
7fc6bbc
to
443b597
Compare
github-actions
bot
temporarily deployed
to
mon-psy-sante-renovate-npm-next-auth-vulnerability-2uh8w3
April 28, 2022 10:59
Inactive
renovate
bot
force-pushed
the
renovate/npm-next-auth-vulnerability
branch
from
April 29, 2022 12:31
443b597
to
99cb553
Compare
github-actions
bot
temporarily deployed
to
mon-psy-sante-renovate-npm-next-auth-vulnerability-2uh8w3
April 29, 2022 12:36
Inactive
renovate
bot
force-pushed
the
renovate/npm-next-auth-vulnerability
branch
2 times, most recently
from
May 2, 2022 03:22
21e380a
to
be5162a
Compare
github-actions
bot
temporarily deployed
to
mon-psy-sante-renovate-npm-next-auth-vulnerability-2uh8w3
May 2, 2022 03:28
Inactive
renovate
bot
force-pushed
the
renovate/npm-next-auth-vulnerability
branch
from
May 2, 2022 12:35
be5162a
to
35e7f2e
Compare
github-actions
bot
temporarily deployed
to
mon-psy-sante-renovate-npm-next-auth-vulnerability-2uh8w3
May 2, 2022 12:40
Inactive
renovate
bot
force-pushed
the
renovate/npm-next-auth-vulnerability
branch
2 times, most recently
from
May 3, 2022 07:35
f8eb7da
to
68ef02e
Compare
github-actions
bot
temporarily deployed
to
mon-psy-sante-renovate-npm-next-auth-vulnerability-2uh8w3
May 3, 2022 07:46
Inactive
renovate
bot
force-pushed
the
renovate/npm-next-auth-vulnerability
branch
from
May 3, 2022 08:08
68ef02e
to
04ecc77
Compare
Kudos, SonarCloud Quality Gate passed! |
github-actions
bot
temporarily deployed
to
mon-psy-sante-renovate-npm-next-auth-vulnerability-2uh8w3
May 3, 2022 08:14
Inactive
🎉 Deployment for commit 04ecc77 : Docker images
Debug
|
SocialGroovyBot
added a commit
that referenced
this pull request
May 3, 2022
## [1.28.5](v1.28.4...v1.28.5) (2022-05-03) ### Bug Fixes * **deps:** update dependency next-auth to v4.3.2 [security] ([#155](#155)) ([d5c8205](d5c8205))
🎉 This PR is included in version 1.28.5 🎉 The release is available on GitHub release Your semantic-release bot 📦🚀 |
Sign up for free
to subscribe to this conversation on GitHub.
Already have an account?
Sign in.
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
4.2.1
->4.3.2
GitHub Vulnerability Alerts
CVE-2022-24858
next-auth
v3 users before version 3.29.2 are impacted. (We recommend upgrading to v4 in most cases. See our migration guide).next-auth
v4 users before version 4.3.2 are impacted. Upgrading to 3.29.2 or 4.3.2 will patch this vulnerability. If you are not able to upgrade for any reason, you can add a configuration to yourcallbacks
option:If you already have a
redirect
callback, make sure that you match the incomingurl
origin against thebaseUrl
.Release Notes
nextauthjs/next-auth
v4.3.2
Compare Source
v4.3.1
Compare Source
v4.3.0
Compare Source
Configuration
📅 Schedule: "" in timezone Europe/Paris.
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by WhiteSource Renovate. View repository job log here.