flaviuse / mern-authentication

MERN stack authentication boilerplate: password reset, email verification, server sessions, redux, typescript, hooks and docker for dev and prod.
https://mern-auth-client.herokuapp.com/login
MIT License
439 stars 95 forks source link

[Snyk] Upgrade helmet from 4.2.0 to 4.3.1 #56

Closed snyk-bot closed 3 years ago

snyk-bot commented 3 years ago

Snyk has created this PR to upgrade helmet from 4.2.0 to 4.3.1.

merge advice :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


Release notes
Package name: helmet from helmet GitHub release notes
Commit messages
Package name: helmet
  • 042ee40 4.3.1
  • 41e0947 Update changelog for 4.3.1 release
  • 5ca9792 Content-Security-Policy 3.3.1
  • f1afeb9 Fix TypeScript error
  • 08b5f46 Stop double-running CI jobs
  • 4a721ec 4.3.0
  • 471400a Update changelog for 4.3.0 release
  • c6f4ba5 Content-Security-Policy 3.3.0
  • f4520bb Switch to GitHub Actions for CI
  • e1c989e Update devDependencies to latest versions
  • b7f841c npm run clean: avoid deprecation error
  • 90da643 Add comma in SECURITY.md
  • 6fd0fbd X-Frame-Options: use `switch` for clarity
  • 383e83b Expect-CT: minor shortening of directive computation
  • cbc8bb6 Expect-CT and Strict-Transport-Security: shorten `maxAge` parsing
  • b05f151 Remove duplicate test for hidePoweredBy
  • 74aa032 Remove verbosity comment
  • 814055a Remove unnecessary undefined checks
  • 0f9c53d Content-Security-Policy: allow `default-src` to be disabled
  • a0d5fc8 Content-Security-Policy: allow `default-src` to be disabled
  • 05cb9fa Content-Security-Policy: mark an internal argument as Readonly
  • 8c25dd0 Add noUncheckedIndexedAccess flag
  • 1a2e828 Update devDependencies to latest versions
  • 43d7a14 X-Frame-Options 4.0.0
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs