-
Notifications
You must be signed in to change notification settings - Fork 0
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
fix(deps): update dependency file-type to v16 [security] - autoclosed #39
Conversation
Run & review this pull request in StackBlitz Codeflow. |
|
c226059
to
b477aad
Compare
b477aad
to
e094f91
Compare
e094f91
to
e7a87b8
Compare
27edeff
to
a38e776
Compare
a38e776
to
9075d55
Compare
9075d55
to
0719ffe
Compare
0719ffe
to
f095bf1
Compare
This PR contains the following updates:
^15.0.1
->^16.0.0
GitHub Vulnerability Alerts
CVE-2022-36313
An issue was discovered in the file-type package from 13.0.0 until 16.5.4 and 17.x before 17.1.3 for Node.js. A malformed MKV file could cause the file type detector to get caught in an infinite loop. This would make the application become unresponsive and could be used to cause a DoS attack when used on a web server.
Release Notes
sindresorhus/file-type (file-type)
v16.5.4
Compare Source
v16.5.3
Compare Source
v16.5.2
Compare Source
strtok3
dependencyv16.5.1
Compare Source
mimeTypes
TypeScript type (#464)0012c56
v16.5.0
Compare Source
57ecf2d
07101ac
3df0ed1
v16.4.0
Compare Source
29618c8
6ab25f3
v16.3.0
Compare Source
9319167
v16.2.0
Compare Source
9736aa3
7f95cd2
v16.1.0
Compare Source
e43cdc9
v16.0.1
Compare Source
eab48da
v16.0.0
Compare Source
Breaking
fe331be
Improvements
f227ac2
Configuration
📅 Schedule: Branch creation - "" in timezone GMT, Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate. View repository job log here.