Title: fix(deps): update dependency debug to v4.3.1 [security] by renovate[bot] · Pull Request #226 · 142vip/JavaScriptCollection · GitHub
Open Graph Title: fix(deps): update dependency debug to v4.3.1 [security] by renovate[bot] · Pull Request #226 · 142vip/JavaScriptCollection
X Title: fix(deps): update dependency debug to v4.3.1 [security] by renovate[bot] · Pull Request #226 · 142vip/JavaScriptCollection
Description: This PR contains the following updates: Package Change Age Adoption Passing Confidence debug 4.0.0 -> 4.3.1 WarningSome dependencies could not be looked up. Check the Dependency Dashboard for more information. GitHub Vulnerability Alerts CVE-2017-16137 Affected versions of debug are vulnerable to regular expression denial of service when untrusted user input is passed into the o formatter. As it takes 50,000 characters to block the event loop for 2 seconds, this issue is a low severity issue. This was later re-introduced in version v3.2.0, and then repatched in versions 3.2.7 and 4.3.1. Recommendation Version 2.x.x: Update to version 2.6.9 or later. Version 3.1.x: Update to version 3.1.0 or later. Version 3.2.x: Update to version 3.2.7 or later. Version 4.x.x: Update to version 4.3.1 or later. Release Notes debug-js/debug (debug) v4.3.1 Compare Source Patch release 4.3.1 Fixes a ReDOS regression (#458) - see #797 for details. v4.3.0 Compare Source Minor release Deprecated debugInstance.destroy(). Future major versions will not have this method; please remove it from your codebases as it currently does nothing. Fixed quoted percent sign Fixed memory leak within debug instances that are created dynamically v4.2.0 Compare Source Minor Release Replaced phantomJS with chrome backend for browser tests Deprecated and later removed Changelog.md in lieu of releases page Removed bower.json (#602) Removed .eslintrc (since we've switched to XO) Removed .coveralls.yml Removed the build system that was in place for various alternate package managers Removed the examples folder (#650) Switched to console.debug in the browser only when it is available (#600) Copied custom logger to namespace extension (#646) Added issue and pull request templates Added "engines" key to package.json Added ability to control selectColor (#747) Updated dependencies Marked supports-color as an optional peer dependency v4.1.1 Compare Source This backport fixes a bug in coveralls configuration as well as the .extend() function. Patches test: only run coveralls on travis (#663, #664, d0e498f) copy custom logger to namespace extension (#646, 57ef085) v4.1.0 Compare Source Minor Changes migrate Makefile to npm scripts (4236585) feat: Return namespaces string when invoking disable() (7ef8b41) Massive thank you to @mblarsen and @outsideris for knocking out two long-awaited changes. v4.0.1 Compare Source This patch restores browserify functionality as well as keeping the intended functionality with Unpkg.com. Patches fix browserify and supply alternative unpkg entry point (closes #606): 99c95e3 Configuration 📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined). 🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied. ♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 Ignore: Close this PR and you won't be reminded about this update again. If you want to rebase/retry this PR, check this box This PR was generated by Mend Renovate. View the repository job log.
Open Graph Description: This PR contains the following updates: Package Change Age Adoption Passing Confidence debug 4.0.0 -> 4.3.1 WarningSome dependencies could not be looked up. Check the Dependency D...
X Description: This PR contains the following updates: Package Change Age Adoption Passing Confidence debug 4.0.0 -> 4.3.1 WarningSome dependencies could not be looked up. Check the Dependen...
Opengraph URL: https://github.com/142vip/JavaScriptCollection/pull/226
X: @github
Domain: github.com
| route-pattern | /:user_id/:repository/pull/:id/files(.:format) |
| route-controller | pull_requests |
| route-action | files |
| fetch-nonce | v2:48ae7d7b-5e22-53d1-5059-8d1637630ba5 |
| current-catalog-service-hash | ae870bc5e265a340912cde392f23dad3671a0a881730ffdadd82f2f57d81641b |
| request-id | A5C6:B5AF7:3BF2A17:51A18A0:698DDF8C |
| html-safe-nonce | c9a7574c2f65698a254c1b7e5d6300071600d6221105c1c8141b31e444edba00 |
| visitor-payload | eyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJBNUM2OkI1QUY3OjNCRjJBMTc6NTFBMThBMDo2OThEREY4QyIsInZpc2l0b3JfaWQiOiIxMjY5NjQyNjE5OTQ1NjA3MDUyIiwicmVnaW9uX2VkZ2UiOiJpYWQiLCJyZWdpb25fcmVuZGVyIjoiaWFkIn0= |
| visitor-hmac | 354c9f09f81ee76750319f0454708dc1a873d2374c285ca776f1bb41585bed30 |
| hovercard-subject-tag | pull_request:2355224193 |
| github-keyboard-shortcuts | repository,pull-request-list,pull-request-conversation,pull-request-files-changed,copilot |
| google-site-verification | Apib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I |
| octolytics-url | https://collector.github.com/github/collect |
| analytics-location | / |
| fb:app_id | 1401488693436528 |
| apple-itunes-app | app-id=1477376905, app-argument=https://github.com/142vip/JavaScriptCollection/pull/226/files |
| twitter:image | https://avatars.githubusercontent.com/in/2740?s=400&v=4 |
| twitter:card | summary_large_image |
| og:image | https://avatars.githubusercontent.com/in/2740?s=400&v=4 |
| og:image:alt | This PR contains the following updates: Package Change Age Adoption Passing Confidence debug 4.0.0 -> 4.3.1 WarningSome dependencies could not be looked up. Check the Dependency D... |
| og:site_name | GitHub |
| og:type | object |
| hostname | github.com |
| expected-hostname | github.com |
| None | 51102c619bffd74bf95dcf3796f0e599d197c0206d70e9e8b5c241b1b9707ee3 |
| turbo-cache-control | no-preview |
| diff-view | unified |
| go-import | github.com/142vip/JavaScriptCollection git https://github.com/142vip/JavaScriptCollection.git |
| octolytics-dimension-user_id | 105834656 |
| octolytics-dimension-user_login | 142vip |
| octolytics-dimension-repository_id | 268041774 |
| octolytics-dimension-repository_nwo | 142vip/JavaScriptCollection |
| octolytics-dimension-repository_public | true |
| octolytics-dimension-repository_is_fork | false |
| octolytics-dimension-repository_network_root_id | 268041774 |
| octolytics-dimension-repository_network_root_nwo | 142vip/JavaScriptCollection |
| turbo-body-classes | logged-out env-production page-responsive full-width |
| disable-turbo | true |
| browser-stats-url | https://api.github.com/_private/browser/stats |
| browser-errors-url | https://api.github.com/_private/browser/errors |
| release | fcdeb213ace418f8a19d95dd6b93ba3337346169 |
| ui-target | full |
| theme-color | #1e2327 |
| color-scheme | light dark |
Links:
Viewport: width=device-width