anonrig / nestjs-keycloak-admin

Keycloak client and admin provider for Nest.js applications with built-in User Managed Access (UMA) and ACL support.
https://npmjs.com/package/nestjs-keycloak-admin
MIT License
181 stars 25 forks source link

[Snyk] Upgrade openid-client from 5.1.8 to 5.4.2 #175

Open anonrig opened 1 year ago

anonrig commented 1 year ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade openid-client from 5.1.8 to 5.4.2.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is **12 versions** ahead of your current version. - The recommended version was released **2 months ago**, on 2023-04-25.
Release notes
Package name: openid-client
  • 5.4.2 - 2023-04-25

    Fixes

  • 5.4.1 - 2023-04-21

    This release contains only code refactoring, dependency, or documentation updates. The release process now also uses provenance statements.

      </li>
      <li>
        <b>5.4.0</b> - <a href="https://snyk.io/redirect/github/panva/node-openid-client/releases/tag/v5.4.0">2023-02-05</a></br><h3>Features</h3>
    • allow third party initiated login requests to trigger strategy (568709a), closes #510 #564
      </li>
      <li>
        <b>5.3.4</b> - <a href="https://snyk.io/redirect/github/panva/node-openid-client/releases/tag/v5.3.4">2023-02-02</a></br><h3>Refactor</h3>

    Fixes

    • regression introduced in v5.3.3 (4f6e847)
      </li>
      <li>
        <b>5.3.3</b> - <a href="https://snyk.io/redirect/github/panva/node-openid-client/releases/tag/v5.3.3">2023-02-02</a></br><p>chore(release): 5.3.3</p>
      </li>
      <li>
        <b>5.3.2</b> - <a href="https://snyk.io/redirect/github/panva/node-openid-client/releases/tag/v5.3.2">2023-01-20</a></br><h3>Fixes</h3>
    • passport: ignore static state and nonce passed to Strategy() (#556) (43daff3)
      </li>
      <li>
        <b>5.3.1</b> - <a href="https://snyk.io/redirect/github/panva/node-openid-client/releases/tag/v5.3.1">2022-11-28</a></br><h3>Fixes</h3>
    • typescript: requestResource returns a Promise (#546) (8bc9519), closes #488
      </li>
      <li>
        <b>5.3.0</b> - <a href="https://snyk.io/redirect/github/panva/node-openid-client/releases/tag/v5.3.0">2022-11-09</a></br><h3>Features</h3>
    • JARM is now a stable feature (10e3a37)
      </li>
      <li>
        <b>5.2.1</b> - <a href="https://snyk.io/redirect/github/panva/node-openid-client/releases/tag/v5.2.1">2022-10-20</a></br><h3>Fixes</h3>
    • typescript: add client_id and logout_hint to EndSessionParameters (b7b5438)
      </li>
      <li>
        <b>5.2.0</b> - <a href="https://snyk.io/redirect/github/panva/node-openid-client/releases/tag/v5.2.0">2022-10-19</a></br><h3>Features</h3>
    • add client_id to endSessionUrl query strings (6fd9350)

    Fixes

    • allow endSessionUrl defaults to be overriden (7cc2402)
      </li>
      <li>
        <b>5.1.10</b> - 2022-09-28
      </li>
      <li>
        <b>5.1.9</b> - 2022-08-23
      </li>
      <li>
        <b>5.1.8</b> - 2022-07-04
      </li>
    </ul>
    from <a href="https://snyk.io/redirect/github/panva/node-openid-client/releases">openid-client GitHub release notes</a>

Commit messages
Package name: openid-client
  • 69bab2f chore(release): 5.4.2
  • 20607e9 fix: bump oidc-token-hash
  • f623eb0 build: no need to npm i -g npm for provenance on lts/hydrogen
  • 23a7bb8 build: add default title to gh release
  • 5e4862e chore(release): 5.4.1
  • f3776e4 chore: bump dependencies
  • 7275d52 build: update release process
  • 4d221a5 build: automate releases with provenance
  • ae1222c ci: update lock.yml (#577)
  • 563fc64 ci: add check-latest to node tests
  • d364229 ci: cleanup workflows
  • 4e8644a chore: bump deps
  • 20bb524 ci: remove check-latest
  • bece815 ci: make npm audit a reusable workflow
  • 8307eb4 ci: make build a reusable workflow
  • 6b3d234 ci: add --single-branch to conformance.yml
  • 05df47d ci: cleanup conformance.yml
  • e9ac6de ci: update npm audit job
  • 2d8c1ad ci: update conformance workflow name
  • 17a04bf ci: split test and conformance workflow files
  • bd8a12f ci: update ci triggers
  • a6f3f0a chore(release): 5.4.0
  • 568709a feat: allow third party initiated login requests to trigger strategy
  • 363c215 chore(release): 5.3.4
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs