René's URL Explorer Experiment


Title: Bump bower from 1.5.2 to 1.8.9 by dependabot[bot] · Pull Request #2 · forky-mcforkface/JavaScriptTraining · GitHub

Open Graph Title: Bump bower from 1.5.2 to 1.8.9 by dependabot[bot] · Pull Request #2 · forky-mcforkface/JavaScriptTraining

X Title: Bump bower from 1.5.2 to 1.8.9 by dependabot[bot] · Pull Request #2 · forky-mcforkface/JavaScriptTraining

Description: Bumps bower from 1.5.2 to 1.8.9. Release notes Sourced from bower's releases. v1.8.8 Fix security issue connected to extracting .tar.gz archives This bug allows to write arbitrary file on filesystem when Bower extracts malicious package Needlessly to say, please upgrade v1.8.7 Fixes side effect of fix from v1.8.6 that caused improper permissions for extracted folders bower/bower#2532 v1.8.6 Fix Zip Slip Vulnerability of decompress-zip package: https://snyk.io/research/zip-slip-vulnerability Note: v1.8.5 has been unpublished because of missing files v1.8.4 Fixes release 1.8.3 by publishing with npm@3 instead of npm@5 (to include lib/node_modules) v1.8.3 451c60e Do not store resolutions if --save is not used, fixes #2344 (#2508) 50ee729 Allow to disable shorthand resolver (#2507) bb17839 Allow shallow cloning when source is a ssh protocol (#2506) 5a6ae54 Add support for Arrays in Environment Variable replacement (#2411) 74af42c Only replace last @ after (if any) last / with # (#2395) 💯Make tests work on Windows / Linux / OSX on node versions 0.10 / 0.12 / 4 / 6 / 8 / 9 💅Format source code with prettier v1.8.2 Migrate registry url from http://bower.herokuapp.com to https://registry.bower.io It is so we leverage CDN and offload Heroku instance reducing costs. v1.8.0 Download tar archives from GitHub when possible (#2263) Change default shorthand resolver for github from git:// to https:// Fix ssl handling by not setting GIT_SSL_NO_VERIFY=false (#2361) Allow for removing components with url instead of name (#2368) Show in warning message location of malformed bower.json (#2357) Improve handling of non-semver versions in git resolver (#2316) Fix handling of cached releases pluginResolverFactory (#2356) Allow to type the entire version when conflict occured (#2243) Allow owner/reponame shorthand for registering components (#2248) Allow single-char repo names and package names (#2249) Make bower version no longer honor version in bower.json (#2232) Add postinstall hook (#2252) Allow for @ instead of # for install and info commands (#2322) Upgrade all bundled modules ... (truncated) Changelog Sourced from bower's changelog. Changelog Newer releases Please see: https://github.com/bower/bower/releases 1.8.0 - 2016-11-07 Download tar archives from GitHub when possible (#2263) Change default shorthand resolver for github from git:// to https:// Fix ssl handling by not setting GIT_SSL_NO_VERIFY=false (#2361) Allow for removing components with url instead of name (#2368) Show in warning message location of malformed bower.json (#2357) Improve handling of non-semver versions in git resolver (#2316) Fix handling of cached releases pluginResolverFactory (#2356) Allow to type the entire version when conflict occured (#2243) Allow owner/reponame shorthand for registering components (#2248) Allow single-char repo names and package names (#2249) Make bower version no longer honor version in bower.json (#2232) Add postinstall hook (#2252) Allow for @ instead of # for install and info commands (#2322) Upgrade all bundled modules 1.7.9 - 2016-04-05 Show warnings for invalid bower.json fields Update bower-json Less strict validation on package name (allow spaces, slashes, and "@") 1.7.8 - 2016-04-04 Don't ask for git credentials in non-interactive session, fixes #956 #1009 Prevent swallowing exceptions with programmatic api, fixes #2187 Update graceful-fs to 4.x in all dependences, fixes nodejs/node#5213 Resolve pluggable resolvers using cwd and fallback to global modules, fixes #1919 Upgrade handlebars to 4.0.5, closes #2195 Replace all % chatacters in defined scripts, instead of only first one, fixes #2174 Update opn package to fix issues with "bower open" command on Windows Update bower-config Do not interpolate environment variables in script hooks, fixes bower/config#47 Update bower-json Validate package name more strictly and allow only latin letters, dots, dashes and underscores Add support for "save" and "save-exact" in .bowerrc, #2161 1.7.7 - 2016-01-27 Revert locations of all files while still packaging node_modules. It's because people are depending on internals of bower, like bower/lib/renderers/StandardRenderer. We want to preserve this ... (truncated) Commits See full diff in compare view Maintainer changes This version was pushed to npm by sheerun, a new releaser for bower since your current version. Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase. Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: @dependabot rebase will rebase this PR @dependabot recreate will recreate this PR, overwriting any edits that have been made to it @dependabot merge will merge this PR after your CI passes on it @dependabot squash and merge will squash and merge this PR after your CI passes on it @dependabot cancel merge will cancel a previously requested merge and block automerging @dependabot reopen will reopen this PR if it is closed @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually @dependabot show ignore conditions will show all of the ignore conditions of the specified dependency @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the Security Alerts page.

Open Graph Description: Bumps bower from 1.5.2 to 1.8.9. Release notes Sourced from bower's releases. v1.8.8 Fix security issue connected to extracting .tar.gz archives This bug allows to write arbitrary file on fil...

X Description: Bumps bower from 1.5.2 to 1.8.9. Release notes Sourced from bower's releases. v1.8.8 Fix security issue connected to extracting .tar.gz archives This bug allows to write arbitrary file on...

Opengraph URL: https://github.com/forky-mcforkface/JavaScriptTraining/pull/2

X: @github

direct link

Domain: patch-diff.githubusercontent.com

route-pattern/:user_id/:repository/pull/:id/files(.:format)
route-controllerpull_requests
route-actionfiles
fetch-noncev2:b2df41c0-d65f-5adc-fe42-63372cbc9bf7
current-catalog-service-hashae870bc5e265a340912cde392f23dad3671a0a881730ffdadd82f2f57d81641b
request-idB6C0:154BC2:105786B:1752B5E:6978D211
html-safe-nonce71934843d2f7b2e7cf8471ab6cb1a6a80271baa71045674e7b7d301f375d1871
visitor-payloadeyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJCNkMwOjE1NEJDMjoxMDU3ODZCOjE3NTJCNUU6Njk3OEQyMTEiLCJ2aXNpdG9yX2lkIjoiNjA1Njc0NTk4MTg5MjQxNjAxNyIsInJlZ2lvbl9lZGdlIjoiaWFkIiwicmVnaW9uX3JlbmRlciI6ImlhZCJ9
visitor-hmac480cbc6fe28f1589f99386d8729562781fba9bf8e6f45a141ee75787fd58e790
hovercard-subject-tagpull_request:1867573415
github-keyboard-shortcutsrepository,pull-request-list,pull-request-conversation,pull-request-files-changed,copilot
google-site-verificationApib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I
octolytics-urlhttps://collector.github.com/github/collect
analytics-location///pull_requests/show/files
fb:app_id1401488693436528
apple-itunes-appapp-id=1477376905, app-argument=https://github.com/forky-mcforkface/JavaScriptTraining/pull/2/files
twitter:imagehttps://avatars.githubusercontent.com/in/29110?s=400&v=4
twitter:cardsummary_large_image
og:imagehttps://avatars.githubusercontent.com/in/29110?s=400&v=4
og:image:altBumps bower from 1.5.2 to 1.8.9. Release notes Sourced from bower's releases. v1.8.8 Fix security issue connected to extracting .tar.gz archives This bug allows to write arbitrary file on fil...
og:site_nameGitHub
og:typeobject
hostnamegithub.com
expected-hostnamegithub.com
None8a71ca1f7ab5436216e1df86f398ef7a51ed3152c90e3f7332fc70cf97fcb9d6
turbo-cache-controlno-preview
diff-viewunified
go-importgithub.com/forky-mcforkface/JavaScriptTraining git https://github.com/forky-mcforkface/JavaScriptTraining.git
octolytics-dimension-user_id111464788
octolytics-dimension-user_loginforky-mcforkface
octolytics-dimension-repository_id525983081
octolytics-dimension-repository_nwoforky-mcforkface/JavaScriptTraining
octolytics-dimension-repository_publictrue
octolytics-dimension-repository_is_forktrue
octolytics-dimension-repository_parent_id12532579
octolytics-dimension-repository_parent_nwomixi-inc/JavaScriptTraining
octolytics-dimension-repository_network_root_id12532579
octolytics-dimension-repository_network_root_nwomixi-inc/JavaScriptTraining
turbo-body-classeslogged-out env-production page-responsive full-width
disable-turbotrue
browser-stats-urlhttps://api.github.com/_private/browser/stats
browser-errors-urlhttps://api.github.com/_private/browser/errors
releaseeaed570eead52a9920afef75dc3eb6d826fdc5ef
ui-targetfull
theme-color#1e2327
color-schemelight dark

Links:

Skip to contenthttps://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/files#start-of-content
https://patch-diff.githubusercontent.com/
Sign in https://patch-diff.githubusercontent.com/login?return_to=https%3A%2F%2Fgithub.com%2Fforky-mcforkface%2FJavaScriptTraining%2Fpull%2F2%2Ffiles
GitHub CopilotWrite better code with AIhttps://github.com/features/copilot
GitHub SparkBuild and deploy intelligent appshttps://github.com/features/spark
GitHub ModelsManage and compare promptshttps://github.com/features/models
MCP RegistryNewIntegrate external toolshttps://github.com/mcp
ActionsAutomate any workflowhttps://github.com/features/actions
CodespacesInstant dev environmentshttps://github.com/features/codespaces
IssuesPlan and track workhttps://github.com/features/issues
Code ReviewManage code changeshttps://github.com/features/code-review
GitHub Advanced SecurityFind and fix vulnerabilitieshttps://github.com/security/advanced-security
Code securitySecure your code as you buildhttps://github.com/security/advanced-security/code-security
Secret protectionStop leaks before they starthttps://github.com/security/advanced-security/secret-protection
Why GitHubhttps://github.com/why-github
Documentationhttps://docs.github.com
Bloghttps://github.blog
Changeloghttps://github.blog/changelog
Marketplacehttps://github.com/marketplace
View all featureshttps://github.com/features
Enterpriseshttps://github.com/enterprise
Small and medium teamshttps://github.com/team
Startupshttps://github.com/enterprise/startups
Nonprofitshttps://github.com/solutions/industry/nonprofits
App Modernizationhttps://github.com/solutions/use-case/app-modernization
DevSecOpshttps://github.com/solutions/use-case/devsecops
DevOpshttps://github.com/solutions/use-case/devops
CI/CDhttps://github.com/solutions/use-case/ci-cd
View all use caseshttps://github.com/solutions/use-case
Healthcarehttps://github.com/solutions/industry/healthcare
Financial serviceshttps://github.com/solutions/industry/financial-services
Manufacturinghttps://github.com/solutions/industry/manufacturing
Governmenthttps://github.com/solutions/industry/government
View all industrieshttps://github.com/solutions/industry
View all solutionshttps://github.com/solutions
AIhttps://github.com/resources/articles?topic=ai
Software Developmenthttps://github.com/resources/articles?topic=software-development
DevOpshttps://github.com/resources/articles?topic=devops
Securityhttps://github.com/resources/articles?topic=security
View all topicshttps://github.com/resources/articles
Customer storieshttps://github.com/customer-stories
Events & webinarshttps://github.com/resources/events
Ebooks & reportshttps://github.com/resources/whitepapers
Business insightshttps://github.com/solutions/executive-insights
GitHub Skillshttps://skills.github.com
Documentationhttps://docs.github.com
Customer supporthttps://support.github.com
Community forumhttps://github.com/orgs/community/discussions
Trust centerhttps://github.com/trust-center
Partnershttps://github.com/partners
GitHub SponsorsFund open source developershttps://github.com/sponsors
Security Labhttps://securitylab.github.com
Maintainer Communityhttps://maintainers.github.com
Acceleratorhttps://github.com/accelerator
Archive Programhttps://archiveprogram.github.com
Topicshttps://github.com/topics
Trendinghttps://github.com/trending
Collectionshttps://github.com/collections
Enterprise platformAI-powered developer platformhttps://github.com/enterprise
GitHub Advanced SecurityEnterprise-grade security featureshttps://github.com/security/advanced-security
Copilot for BusinessEnterprise-grade AI featureshttps://github.com/features/copilot/copilot-business
Premium SupportEnterprise-grade 24/7 supporthttps://github.com/premium-support
Pricinghttps://github.com/pricing
Search syntax tipshttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
documentationhttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
Sign in https://patch-diff.githubusercontent.com/login?return_to=https%3A%2F%2Fgithub.com%2Fforky-mcforkface%2FJavaScriptTraining%2Fpull%2F2%2Ffiles
Sign up https://patch-diff.githubusercontent.com/signup?ref_cta=Sign+up&ref_loc=header+logged+out&ref_page=%2F%3Cuser-name%3E%2F%3Crepo-name%3E%2Fpull_requests%2Fshow%2Ffiles&source=header-repo&source_repo=forky-mcforkface%2FJavaScriptTraining
Reloadhttps://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/files
Reloadhttps://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/files
Reloadhttps://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/files
forky-mcforkface https://patch-diff.githubusercontent.com/forky-mcforkface
JavaScriptTraininghttps://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining
mixi-inc/JavaScriptTraininghttps://patch-diff.githubusercontent.com/mixi-inc/JavaScriptTraining
Notifications https://patch-diff.githubusercontent.com/login?return_to=%2Fforky-mcforkface%2FJavaScriptTraining
Fork 0 https://patch-diff.githubusercontent.com/login?return_to=%2Fforky-mcforkface%2FJavaScriptTraining
Star 0 https://patch-diff.githubusercontent.com/login?return_to=%2Fforky-mcforkface%2FJavaScriptTraining
Code https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining
Pull requests 2 https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pulls
Actions https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/actions
Projects 0 https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/projects
Security 0 https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/security
Insights https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pulse
Code https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining
Pull requests https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pulls
Actions https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/actions
Projects https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/projects
Security https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/security
Insights https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pulse
Sign up for GitHub https://patch-diff.githubusercontent.com/signup?return_to=%2Fforky-mcforkface%2FJavaScriptTraining%2Fissues%2Fnew%2Fchoose
terms of servicehttps://docs.github.com/terms
privacy statementhttps://docs.github.com/privacy
Sign inhttps://patch-diff.githubusercontent.com/login?return_to=%2Fforky-mcforkface%2FJavaScriptTraining%2Fissues%2Fnew%2Fchoose
dependabothttps://patch-diff.githubusercontent.com/apps/dependabot
2015https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/tree/2015
dependabot/npm_and_yarn/bower-1.8.9https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/tree/dependabot/npm_and_yarn/bower-1.8.9
Conversation 0 https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2
Commits 1 https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/commits
Checks 0 https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/checks
Files changed https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/files
Please reload this pagehttps://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/files
Bump bower from 1.5.2 to 1.8.9 https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/files#top
Show all changes 1 commit https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/files
2e6746c Bump bower from 1.5.2 to 1.8.9 dependabot[bot] May 13, 2024 https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/commits/2e6746c55ecac637786d7409235a5264ac28d0b5
Clear filters https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/files
Please reload this pagehttps://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/files
Please reload this pagehttps://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/files
npm-shrinkwrap.json https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/files#diff-44a7c69871c5958e657226d5552c9451606a778233fb824f68530d0cfd3f8994
package.json https://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/files#diff-7ae45ad102eab3b6d7e7896acd08c427a9b25b346470d7bc6507b6481575d519
Please reload this pagehttps://patch-diff.githubusercontent.com/forky-mcforkface/JavaScriptTraining/pull/2/files
https://github.com
Termshttps://docs.github.com/site-policy/github-terms/github-terms-of-service
Privacyhttps://docs.github.com/site-policy/privacy-policies/github-privacy-statement
Securityhttps://github.com/security
Statushttps://www.githubstatus.com/
Communityhttps://github.community/
Docshttps://docs.github.com/
Contacthttps://support.github.com?tags=dotcom-footer

Viewport: width=device-width


URLs of crawlers that visited me.