Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix(deps): update dependency npm to v7 #1185

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

mend-for-github-com[bot]
Copy link

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
npm (source) 6.14.13 -> 7.0.0 age adoption passing confidence

By merging this PR, the issue #1066 will be automatically resolved and closed:

Severity CVSS Score CVE Reachability
Medium Medium 5.3 CVE-2022-25881

Release Notes

npm/cli (npm)

v7.0.0

Compare Source

v7.0.0 (2020-10-12)

BUG FIXES
DOCUMENTATION
DEPENDENCIES
  • 15366a1cf npm-registry-fetch@8.1.5
  • f04a74140 init-package-json@2.0.0
    • 1de21dce0 fix: support dot-separated aliases defined in a .npmrc ini files for init-* configs (@​ruyadorno)
  • a67275cd9 eslint@7.11.0
  • 6fb83b78d hosted-git-info@3.0.6
  • 1ca30cc9b libnpmfund@1.0.0
  • 28a2d2ba4 @npmcli/arborist@1.0.0
    • npm/rfcs#239 Improve handling of conflicting peerDependencies in transitive dependencies, so that --force will always accept a best effort override, and --strict-peer-deps will fail faster on conflicts.
  • 9306c6833 libnpmfund@1.0.1
  • fafb348ef npm-package-arg@8.1.0
  • 365f2e756 read-package-json@3.0.0

v6.14.18

Compare Source

6.14.18 (2022-12-21)

DEPENDENCIES

v6.14.17

Compare Source

6.14.17 (2022-04-28)

DEPENDENCIES

v6.14.16

Compare Source

6.14.16 (2022-01-19)

CHORE
DEPENDENCIES

v6.14.15

Compare Source

6.14.15 (2021-08-23)

DEPENDENCIES

v6.14.14

Compare Source

6.14.14 (2021-07-27)

DEPENDENCIES

  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by WhiteSource label Oct 12, 2024
@mend-for-github-com mend-for-github-com bot changed the title fix(deps): update dependency npm to v7 fix(deps): update dependency npm to v7 - autoclosed Oct 17, 2024
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/npm-7.x branch October 17, 2024 04:04
@mend-for-github-com mend-for-github-com bot changed the title fix(deps): update dependency npm to v7 - autoclosed fix(deps): update dependency npm to v7 Oct 17, 2024
@mend-for-github-com mend-for-github-com bot restored the whitesource-remediate/npm-7.x branch October 17, 2024 07:23
@mend-for-github-com mend-for-github-com bot reopened this Oct 17, 2024
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/npm-7.x branch from db33c89 to 7334937 Compare October 17, 2024 07:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security fix Security fix generated by WhiteSource
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants