The provided XML validation capabilities were explicitly hardened (via #1064; concerns #1061)
This is considered a security measure concerning XML external entity (XXE) injection.
The provided XML validation capabilities were explicitly hardened (via #1064; concerns #1061)
This is considered a security measure concerning XML external entity (XXE) injection.
The provided XML validation capabilities no longer supports external entities (via #1063; concerns #1061)
This is considered a security measure to prevent XML external entity (XXE) injection.
Bumps the npm group with 13 updates in the / directory:
6.5.1
6.7.2
6.0.0
6.0.1
19.2.2
19.3.0
20.12.7
20.12.11
6.12.0
7.8.0
6.12.0
7.8.0
1.5.0
1.6.0
8.12.0
8.13.0
8.54.0
9.2.0
4.14.3
4.17.2
23.0.8
23.1.1
1.5.0
1.6.0
4.2.0
4.2.1
Updates
@cyclonedx/cyclonedx-library
from 6.5.1 to 6.7.2Release notes
Sourced from
@cyclonedx/cyclonedx-library
's releases.... (truncated)
Changelog
Sourced from
@cyclonedx/cyclonedx-library
's changelog.Commits
07cb79f
6.7.29adb16d
chore: prep v6.7.28054a4c
ci: publish with provenance5bd28e7
refactor: XML validator explicitely harden against XXE injections (#1064)e7bc72e
6.7.15e5e1e0
fix: revert to v6.6.1974c558
6.7.020144a9
chore: prep v6.7.07c34096
feat: XML Validator prevent parsing XXE (#1063)309dd5a
6.6.1Updates
normalize-package-data
from 6.0.0 to 6.0.1Release notes
Sourced from normalize-package-data's releases.
Changelog
Sourced from normalize-package-data's changelog.
Commits
335a295
chore: release 6.0.1 (#219)27688b4
fix(linting): no-unused-vars02de832
chore: postinstall for dependabot template-oss PR3c74f51
chore: bump@npmcli/template-oss
to 4.22.0c367107
chore: postinstall for dependabot template-oss PRf6b1f8c
chore: bump@npmcli/template-oss
from 4.21.3 to 4.21.4c5b90cd
docs(readme): fix broken badge URL (#214)d3bfe73
chore: postinstall for dependabot template-oss PRa80c4a4
chore: bump@npmcli/template-oss
from 4.21.1 to 4.21.35c121d5
chore: postinstall for dependabot template-oss PRUpdates
@commitlint/cli
from 19.2.2 to 19.3.0Release notes
Sourced from
@commitlint/cli
's releases.Changelog
Sourced from
@commitlint/cli
's changelog.Commits
447fd3b
v19.3.0Updates
@types/node
from 20.12.7 to 20.12.11Commits
Updates
@typescript-eslint/eslint-plugin
from 6.12.0 to 7.8.0Release notes
Sourced from
@typescript-eslint/eslint-plugin
's releases.... (truncated)
Changelog
Sourced from
@typescript-eslint/eslint-plugin
's changelog.... (truncated)
Commits
ee677f6
chore(release): publish 7.8.08127873
fix(eslint-plugin): [no-unused-vars] clear error report range (#8640)216d1b0
fix(eslint-plugin): [no-unsafe-return] handle union types (#9001)51d2193
fix(eslint-plugin): [consistent-type-assertions] handle tagged templates (#8993)4bed24d
fix(eslint-plugin): [prefer-optional-chain] suggests optional chaining during...b0f7aa4
fix(eslint-plugin): [no-unsafe-argument] handle tagged templates (#8746)219b841
chore: resolve lint issues on main branch (#8966)3e19436
chore(release): publish 7.7.1b2552ca
fix(eslint-plugin): [no-unnecessary-type-assertion] allow non-null assertion ...fdeba42
fix(eslint-plugin): [no-for-in-array] refine report location (#8874)Updates
@typescript-eslint/parser
from 6.12.0 to 7.8.0Release notes
Sourced from
@typescript-eslint/parser
's releases.... (truncated)
Changelog
Sourced from
@typescript-eslint/parser
's changelog.... (truncated)
Commits
ee677f6
chore(release): publish 7.8.03e19436
chore(release): publish 7.7.1e44a1a2
chore(release): publish 7.7.0e1db872
chore(release): publish 7.6.0a6ab2cb
feat: bump npm dependency ranges (#8860)a14ba9d
chore(release): publish 7.5.0ecb6b55
docs: add homepage (#8742)d5615d7
fix(parser): disallowerrorOnTypeScriptSyntacticAndSemanticIssues
(#8784)5d24691
chore(release): publish 7.4.0e408b93
feat(eslint-plugin): [consistent-type-imports] ignore files with decorators, ...Updates
@vitest/coverage-v8
from 1.5.0 to 1.6.0Release notes
Sourced from
@vitest/coverage-v8
's releases.... (truncated)
Commits
6b29f3d
chore: release v1.6.0c9883f3
fix(coverage): applyvite-node
's wrapper only to executed files (#5642)a52964b
chore: release v1.5.381f57f4
chore: release v1.5.21be4510
chore: release v1.5.180265b4
fix(coverage):thresholds
to compare files relative to root (#5574)ea3c16e
fix(coverage): prevent crash whencleanOnRerun
is disabled (#5540)Updates
ajv
from 8.12.0 to 8.13.0Release notes
Sourced from ajv's releases.
Commits
857ecac
fix: bump node version in publish job (#2423)f74ecdb
bump version to 8.13.0 (#2421)c64f528
chore: update typescript to 5.3.3 (#2406)5370b84
chore: bump ajv-formats to 3.0.1 (#2402)32dc833
chore: update remaining deps except typescript (#2396)f4a4c8e
Add named exports for main classes (#2389) fixes #2381 #21325c7f3b6
chore: update prettier to 3.0.3 (#2393)27a88ea
Fixing broken links in the docs/packages readme file (#2221)45685de
docs: fix broken link to error logging (#2362)27178f5
Merge pull request #2366 from laurens/patch-2Updates
eslint
from 8.54.0 to 9.2.0Release notes
Sourced from eslint's releases.
... (truncated)
Changelog
Sourced from eslint's changelog.