2motion / emotion-be

μˆœκ°„μ˜ 감정을 κΈ°λ‘ν•˜κ³ , κ³΅μœ ν•˜μ„Έμš”.
https://api.gamstagram.com/
0 stars 0 forks source link

chore(deps): update dependency validator to 13.7.0 [security] - autoclosed #298

Closed renovate[bot] closed 1 year ago

renovate[bot] commented 2 years ago

Mend Renovate

This PR contains the following updates:

Package Change
validator 13.0.0 -> 13.7.0
validator 10.11.0 -> 13.7.0

GitHub Vulnerability Alerts

GHSA-xx4c-jj58-r7x6

Impact

Versions of validator prior to 13.7.0 are affected by an inefficient Regular Expression complexity when using the rtrim and trim sanitizers.

Patches

The problem has been patched in validator 13.7.0

CVE-2021-3765

validator.js prior to 13.7.0 is vulnerable to Inefficient Regular Expression Complexity


Configuration

πŸ“… Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

β™» Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

πŸ”• Ignore: Close this PR and you won't be reminded about these updates again.



This PR has been generated by Mend Renovate. View repository job log here.