MTry / homebridge-smart-irrigation

Turn any electrical irrigation valve into a smart-valve.. or run your pumps on a smart schedule based on your climate! This homebridge plugin exposes a multi-zone irrigation sprinkler dummy control system to Apple's HomeKit. Although a dummy, it brings smarts of an evapotranspiration based climate and plant adaptive irrigation controller with the use of OpenWeatherMap API. The plugin can optionally email you, and/or send you push notifications through Pushover or Pushcut, with the watering schedule it has calculated, or when a watering run is completed, along with the next 7-day weather forecast. Added option to expose system controls to Homekit allowing a user to enable/disable irrigation, rechecks, push and email notifications from within the Home App. Associated WaterLevel Characteristic shows the % of watering cycle remaining.
MIT License
78 stars 3 forks source link

[Snyk] Upgrade node-schedule from 2.1.0 to 2.1.1 #51

Open MTry opened 1 year ago

MTry commented 1 year ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade node-schedule from 2.1.0 to 2.1.1.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is **1 version** ahead of your current version. - The recommended version was released **22 days ago**, on 2023-01-11. The recommended version fixes: Severity | Issue | PriorityScore (*) | Exploit Maturity | :-------------------------:|:-------------------------|-------------------------|:------------------------- | Regular Expression Denial of Service (ReDoS)
[SNYK-JS-LUXON-3225081](https://snyk.io/vuln/SNYK-JS-LUXON-3225081) | **482/1000**
**Why?** Proof of Concept exploit, CVSS 7.5 | Proof of Concept (*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: node-schedule
  • 2.1.1 - 2023-01-11
  • 2.1.0 - 2021-11-28

    New features:

    • Implement support for graceful shutdown #583
    • Emit a success event after a successful job invocation. #643
from node-schedule GitHub release notes
Commit messages
Package name: node-schedule
  • c5a4d9a Prepare to release 2.1.1
  • 017c195 Bump actions/setup-node from 3.2.0 to 3.3.0 (#681)
  • 807ded5 Bump actions/setup-node from 3.1.1 to 3.2.0 (#674)
  • bd9cbe5 Bump actions/setup-node from 3.1.0 to 3.1.1 (#666)
  • 36076a6 Bump actions/setup-node from 3.0.0 to 3.1.0 (#661)
  • 727aff7 Bump actions/checkout from 2 to 3 (#660)
  • 38da19d Bump actions/setup-node from 2 to 3.0.0 (#658)
  • 2c55ac1 Bump fastify/github-action-merge-dependabot from 2.7.0 to 2.7.1 (#649)
  • 0555dcb Bump fastify/github-action-merge-dependabot from 2.5.0 to 2.7.0 (#647)
  • bea9186 Bump cron-parser from 3.5.0 to 4.2.0 (#642)
  • 7e51e27 Add minute to timezone RecurrenceRule example (#598)
Compare

**Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.* For more information: 🧐 [View latest project report](https://app.snyk.io/org/mtry/project/4a2451b8-5c99-47cd-bc5b-7c48873b970a?utm_source=github&utm_medium=referral&page=upgrade-pr) 🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/mtry/project/4a2451b8-5c99-47cd-bc5b-7c48873b970a/settings/integration?utm_source=github&utm_medium=referral&page=upgrade-pr) 🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/mtry/project/4a2451b8-5c99-47cd-bc5b-7c48873b970a/settings/integration?pkg=node-schedule&utm_source=github&utm_medium=referral&page=upgrade-pr#auto-dep-upgrades)