Moliholy / QuantumFS

Highly-distributed censorship-resistant ethereum-based file system
BSD 3-Clause "New" or "Revised" License
3 stars 0 forks source link

Bump decompress from 4.2.0 to 4.2.1 in /ethereum #3

Open dependabot[bot] opened 3 years ago

dependabot[bot] commented 3 years ago

Bumps decompress from 4.2.0 to 4.2.1.

Release notes

Sourced from [decompress's releases](https://github.com/kevva/decompress/releases).

v4.2.1

  • Prevent directory traversal ([#73](https://github-redirect.dependabot.com/kevva/decompress/issues/73)) 967146e

[https://github.com/kevva/decompress/compare/v4.2.0...v4.2.1](https://github.com/kevva/decompress/compare/v4.2.0...v4.2.1)

Commits
  • 84a8c10 4.2.1
  • fafff47 Meta tweaks
  • 967146e Prevent directory traversal ([#73](https://github-redirect.dependabot.com/kevva/decompress/issues/73))
  • 74a462a Meta tweaks
  • 7ddadd9 Add note about filter option
  • See full diff in [compare view](https://github.com/kevva/decompress/compare/v4.2.0...v4.2.1)


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: * `@dependabot rebase` will rebase this PR * `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it * `@dependabot merge` will merge this PR after your CI passes on it * `@dependabot squash and merge` will squash and merge this PR after your CI passes on it * `@dependabot cancel merge` will cancel a previously requested merge and block automerging * `@dependabot reopen` will reopen this PR if it is closed * `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually * `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) * `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) * `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) * `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language * `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language * `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language * `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/Moliholy/QuantumFS/network/alerts).

┆Issue is synchronized with this Trello card by Unito