TylorS / typed-prelude

Reliable, standards-oriented software for browsers & Node.
https://tylors.github.io/typed-prelude/
Other
49 stars 4 forks source link

chore(deps): update dependency thenify to 3.3.1 [security] - autoclosed #491

Closed renovate[bot] closed 1 year ago

renovate[bot] commented 2 years ago

Mend Renovate

This PR contains the following updates:

Package Change
thenify 3.3.0 -> 3.3.1

GitHub Vulnerability Alerts

CVE-2020-7677

Versions of thenify prior to 3.3.1 made use of unsafe calls to eval. Untrusted user input could thus lead to arbitrary code execution on the host. The patch in version 3.3.1 removes calls to eval.


Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

â™» Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Mend Renovate. View repository job log here.