nos / client

The nOS Client
https://nos.io
MIT License
199 stars 73 forks source link

renovate(deps): update dependency lodash to v4.17.21 [security] #1434

Open renovate[bot] opened 2 years ago

renovate[bot] commented 2 years ago

Mend Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
lodash (source) 4.17.20 -> 4.17.21 age adoption passing confidence

GitHub Vulnerability Alerts

CVE-2021-23337

lodash versions prior to 4.17.21 are vulnerable to Command Injection via the template function.


Release Notes

lodash/lodash ### [`v4.17.21`](https://togithub.com/lodash/lodash/compare/4.17.20...4.17.21) [Compare Source](https://togithub.com/lodash/lodash/compare/4.17.20...4.17.21)

Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Mend Renovate. View repository job log here.

codecov[bot] commented 2 years ago

Codecov Report

Merging #1434 (eed749c) into develop (d01a0b3) will not change coverage. The diff coverage is n/a.

@@           Coverage Diff            @@
##           develop    #1434   +/-   ##
========================================
  Coverage    49.53%   49.53%           
========================================
  Files          249      249           
  Lines         2158     2158           
========================================
  Hits          1069     1069           
  Misses        1089     1089           
renovate[bot] commented 2 years ago

⚠ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

The artifact failure details are included below:

File name: yarn.lock
10.21.0: Pulling from renovate/node
23884877105a: Pulling fs layer
bc38caa0f5b9: Pulling fs layer
2910811b6c42: Pulling fs layer
36505266dcc6: Pulling fs layer
35303b102bed: Pulling fs layer
5709091d716c: Pulling fs layer
9e568ac7fb42: Pulling fs layer
d53c5908b81b: Pulling fs layer
65493e024a36: Pulling fs layer
a46f2f0c7998: Pulling fs layer
4cf51dfde572: Pulling fs layer
853f92c74184: Pulling fs layer
5e8ddd24aba3: Pulling fs layer
ff2e60f54531: Pulling fs layer
204c8fcfef89: Pulling fs layer
e66113faa851: Pulling fs layer
42dc6a7e31de: Pulling fs layer
36505266dcc6: Waiting
35303b102bed: Waiting
5709091d716c: Waiting
9e568ac7fb42: Waiting
d53c5908b81b: Waiting
65493e024a36: Waiting
a46f2f0c7998: Waiting
4cf51dfde572: Waiting
853f92c74184: Waiting
5e8ddd24aba3: Waiting
ff2e60f54531: Waiting
204c8fcfef89: Waiting
e66113faa851: Waiting
42dc6a7e31de: Waiting
bc38caa0f5b9: Verifying Checksum
bc38caa0f5b9: Download complete
2910811b6c42: Verifying Checksum
2910811b6c42: Download complete
36505266dcc6: Verifying Checksum
36505266dcc6: Download complete
35303b102bed: Verifying Checksum
35303b102bed: Download complete
23884877105a: Verifying Checksum
23884877105a: Download complete
5709091d716c: Download complete
9e568ac7fb42: Verifying Checksum
9e568ac7fb42: Download complete
a46f2f0c7998: Verifying Checksum
a46f2f0c7998: Download complete
d53c5908b81b: Verifying Checksum
d53c5908b81b: Download complete
4cf51dfde572: Verifying Checksum
4cf51dfde572: Download complete
5e8ddd24aba3: Verifying Checksum
5e8ddd24aba3: Download complete
65493e024a36: Verifying Checksum
65493e024a36: Download complete
ff2e60f54531: Verifying Checksum
ff2e60f54531: Download complete
204c8fcfef89: Verifying Checksum
204c8fcfef89: Download complete
e66113faa851: Verifying Checksum
e66113faa851: Download complete
42dc6a7e31de: Verifying Checksum
42dc6a7e31de: Download complete
23884877105a: Pull complete
bc38caa0f5b9: Pull complete
2910811b6c42: Pull complete
36505266dcc6: Pull complete
35303b102bed: Pull complete
5709091d716c: Pull complete
9e568ac7fb42: Pull complete
d53c5908b81b: Pull complete
renovate[bot] commented 1 year ago

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.

You can manually request rebase by checking the rebase/retry box above.

⚠️ Warning: custom changes will be lost.