cameri / nostream

A Nostr Relay written in TypeScript
MIT License
741 stars 190 forks source link

[Snyk] Upgrade joi from 17.7.0 to 17.8.4 #275

Closed cameri closed 1 year ago

cameri commented 1 year ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade joi from 17.7.0 to 17.8.4.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is **6 versions** ahead of your current version. - The recommended version was released **22 days ago**, on 2023-03-14.
Release notes
Package name: joi
  • 17.8.4 - 2023-03-14

    17.8.4

      </li>
      <li>
        <b>17.8.3</b> - <a href="https://snyk.io/redirect/github/hapijs/joi/releases/tag/v17.8.3">2023-02-21</a></br><p>17.8.3</p>
      </li>
      <li>
        <b>17.8.2</b> - <a href="https://snyk.io/redirect/github/hapijs/joi/releases/tag/v17.8.2">2023-02-21</a></br><p>17.8.2</p>
      </li>
      <li>
        <b>17.8.1</b> - <a href="https://snyk.io/redirect/github/hapijs/joi/releases/tag/v17.8.1">2023-02-19</a></br><p>17.8.1</p>
      </li>
      <li>
        <b>17.8.0</b> - <a href="https://snyk.io/redirect/github/hapijs/joi/releases/tag/v17.8.0">2023-02-19</a></br><p>17.8.0</p>
      </li>
      <li>
        <b>17.7.1</b> - <a href="https://snyk.io/redirect/github/hapijs/joi/releases/tag/v17.7.1">2023-02-10</a></br><p>17.7.1</p>
      </li>
      <li>
        <b>17.7.0</b> - <a href="https://snyk.io/redirect/github/hapijs/joi/releases/tag/v17.7.0">2022-11-01</a></br><p>17.7.0</p>
      </li>
    </ul>
    from <a href="https://snyk.io/redirect/github/hapijs/joi/releases">joi GitHub release notes</a>

Commit messages
Package name: joi
  • c191b99 17.8.4
  • ab91092 Merge pull request #2928 from hapijs/fix/validation-warning-types
  • 6b530c8 fix: validation warning types
  • 227e761 Merge pull request #2923 from hapijs/chore/docs
  • b0d8df8 chore: fix wrong usage of Joi.expression
  • ff3e5fc 17.8.3
  • ade2748 Merge pull request #2919 from hapijs/chore/revert-17.8
  • 09cbaaa chore: revert 17.8.x line
  • 04751f1 17.8.2
  • d49e029 Merge pull request #2916 from hapijs/fix/email-options
  • 245e0c9 fix: properly transform domain
  • cc88b68 17.8.1
  • 67b0923 Merge pull request #2910 from hapijs/fix/optional-chaining
  • 5036947 fix: transpile optional chaining
  • 79a2af4 17.8.0
  • 2998d86 Merge pull request #2909 from hapijs/chore/bump-address
  • 286dc6d chore: use latest address module
  • f8fab8c Merge pull request #2908 from madhavappaneni/patch-1
  • 32fbff6 Fix return spelling in the documentation
  • 8fc7273 17.7.1
  • 660f9a7 Merge pull request #2905 from bnussman/bump-sideway-formula-version
  • 162e1dd upgrade `@ sideway/formula` to `3.0.1` for `CVE-2023-25166`
  • ec9a319 Merge pull request #2888 from sashashura/patch-1
  • c09a2e4 Merge pull request #2892 from krymen/support-null-in-falsy-truthy-types
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

socket-security[bot] commented 1 year ago

New dependency changes detected. Learn more about Socket for GitHub ↗︎


👍 No new dependency issues detected in pull request

Bot Commands

To ignore an alert, reply with a comment starting with @SocketSecurity ignore followed by a space separated list of package-name@version specifiers. e.g. @SocketSecurity ignore foo@1.0.0 bar@* or ignore all packages with @SocketSecurity ignore-all

Pull request alert summary
Issue Status
Install scripts ✅ 0 issues
Native code ✅ 0 issues
Bin script shell injection ✅ 0 issues
Unresolved require ✅ 0 issues
Invalid package.json ✅ 0 issues
HTTP dependency ✅ 0 issues
Git dependency ✅ 0 issues
Potential typo squat ✅ 0 issues
Known Malware ✅ 0 issues
Telemetry ✅ 0 issues
Protestware/Troll package ✅ 0 issues

📊 Modified Dependency Overview:

⬆️ Updated Package Version Diff Added Capability Access +/- Transitive Count Publisher
joi@17.8.4 17.7.0...17.8.4 None +0/-0 marsup
coveralls commented 1 year ago

Pull Request Test Coverage Report for Build 4613943394

Warning: This coverage report may be inaccurate.

This pull request's base commit is no longer the HEAD commit of its target branch. This means it includes changes from outside the original pull request, including, potentially, unrelated coverage changes.

Details


Totals Coverage Status
Change from base Build 4343993912: 0.2%
Covered Lines: 1200
Relevant Lines: 2126

💛 - Coveralls
sonarcloud[bot] commented 1 year ago

Kudos, SonarCloud Quality Gate passed!    Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
No Duplication information No Duplication information