nusmodifications / nusmods

🏫 Official course planning platform for National University of Singapore.
https://nusmods.com
MIT License
583 stars 316 forks source link

fix(deps): update dependency samlify to v2.8.10 #3599

Closed renovate[bot] closed 1 year ago

renovate[bot] commented 1 year ago

Mend Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
samlify 2.7.7 -> 2.8.10 age adoption passing confidence

Release Notes

tngan/samlify (samlify) ### [`v2.8.10`](https://togithub.com/tngan/samlify/releases/tag/v2.8.10) [Compare Source](https://togithub.com/tngan/samlify/compare/v2.8.9...v2.8.10) fix encryption for [@​xmldom/xmldom](https://togithub.com/xmldom/xmldom) 0.8.6 upgrade [https://github.com/tngan/samlify/pull/511](https://togithub.com/tngan/samlify/pull/511) ([@​mastermatt](https://togithub.com/mastermatt)) ### [`v2.8.9`](https://togithub.com/tngan/samlify/releases/tag/v2.8.9) [Compare Source](https://togithub.com/tngan/samlify/compare/v2.8.8...v2.8.9) fix: system locale effects camelcase conversion [https://github.com/tngan/samlify/pull/507](https://togithub.com/tngan/samlify/pull/507) ([@​ayZagen](https://togithub.com/ayZagen)) fix: support unencrypted [PKCS#8](https://togithub.com/PKCS/samlify/issues/8) keys again [https://github.com/tngan/samlify/pull/503](https://togithub.com/tngan/samlify/pull/503) ([@​mastermatt](https://togithub.com/mastermatt)) ### [`v2.8.8`](https://togithub.com/tngan/samlify/releases/tag/v2.8.8) [Compare Source](https://togithub.com/tngan/samlify/compare/v2.8.7...v2.8.8) - extract sessionIndex from LogoutRequest [#​501](https://togithub.com/tngan/samlify/issues/501) ([@​zentooo](https://togithub.com/zentooo)) - allow arrays of certs [#​499](https://togithub.com/tngan/samlify/issues/499) ([@​mastermatt](https://togithub.com/mastermatt)) - fix init issue in logoutResponseRedirectURL function [#​496](https://togithub.com/tngan/samlify/issues/496) ([@​wujjpp](https://togithub.com/wujjpp)) ### [`v2.8.7`](https://togithub.com/tngan/samlify/compare/v2.8.6...v2.8.7) [Compare Source](https://togithub.com/tngan/samlify/compare/v2.8.6...v2.8.7) ### [`v2.8.6`](https://togithub.com/tngan/samlify/releases/tag/v2.8.6) [Compare Source](https://togithub.com/tngan/samlify/compare/v2.8.5...v2.8.6) Upgrade [@​xmldom/xmldom](https://togithub.com/xmldom/xmldom) to v0.8.3 to include the security patch ([#​492](https://togithub.com/tngan/samlify/issues/492)) [@​dan-diaz](https://togithub.com/dan-diaz) Upgrade uuid version ([#​486](https://togithub.com/tngan/samlify/issues/486)) [@​andrew-m-civica](https://togithub.com/andrew-m-civica) ### [`v2.8.5`](https://togithub.com/tngan/samlify/releases/tag/v2.8.5) [Compare Source](https://togithub.com/tngan/samlify/compare/v2.8.4...v2.8.5) #### What's Changed - Fixes issue with SAMLSignature method not using default transformations by [@​stjeffrey](https://togithub.com/stjeffrey) in [https://github.com/tngan/samlify/pull/473](https://togithub.com/tngan/samlify/pull/473) - Makes normalizeCerString() handle inserted tabs (fixes issue with Okta) by [@​hackerceo](https://togithub.com/hackerceo) in [https://github.com/tngan/samlify/pull/481](https://togithub.com/tngan/samlify/pull/481) #### New Contributors - [@​stjeffrey](https://togithub.com/stjeffrey) made their first contribution in [https://github.com/tngan/samlify/pull/473](https://togithub.com/tngan/samlify/pull/473) - [@​hackerceo](https://togithub.com/hackerceo) made their first contribution in [https://github.com/tngan/samlify/pull/481](https://togithub.com/tngan/samlify/pull/481) *** This note is automatically generated. ### [`v2.8.4`](https://togithub.com/tngan/samlify/releases/tag/v2.8.4) [Compare Source](https://togithub.com/tngan/samlify/compare/v2.8.3...v2.8.4) - Update `node-xml-encryption` with the latest upstream update for security patch ([https://github.com/tngan/samlify/issues/474](https://togithub.com/tngan/samlify/issues/474)) - Fix broken tests after upgrade - Take default encryption key algorithm as `http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p` - The previous default is no longer to be recommended, for more detail, https://github.com/auth0/node-xml-encryption/blob/291f3f10d5d1d571a3b6da2d411aa323398f5650/lib/xmlenc.js#L54-L56 - Upgrade dev dependencies ### [`v2.8.3`](https://togithub.com/tngan/samlify/releases/tag/v2.8.3) [Compare Source](https://togithub.com/tngan/samlify/compare/v2.8.2...v2.8.3) This patch release includes the node-forge package upgrade in order to resolve a security issue. [node-forge v.1](https://togithub.com/tngan/samlify/pull/465) ### [`v2.8.2`](https://togithub.com/tngan/samlify/releases/tag/v2.8.2) [Compare Source](https://togithub.com/tngan/samlify/compare/v2.8.1...v2.8.2) This patch includes a proper fix and test after major dependencies upgrade. Thanks for the reports from [@​arthurrump](https://togithub.com/arthurrump) and [@​oniemela](https://togithub.com/oniemela). ### [`v2.8.1`](https://togithub.com/tngan/samlify/releases/tag/v2.8.1) [Compare Source](https://togithub.com/tngan/samlify/compare/v2.8.0...v2.8.1) Patch to fix import issue after upgrade ### [`v2.8.0`](https://togithub.com/tngan/samlify/releases/tag/v2.8.0) [Compare Source](https://togithub.com/tngan/samlify/compare/v2.7.7...v2.8.0) We have a great release candidate for v2.8.0 that support SimpleSign binding, contributed by [@​yanbilik](https://togithub.com/yanbilik)'s team. This pre-release includes the following changes. Support SAML response over HTTP-REDIRECT binding Add Login Request/Response over HTTP-POST SimpleSign binding Enable clock drifts parameters from IDP setting Fix NameIDFormat extraction from IDP metadata Add AttributeStatementTemplate, AttributeTemplate and LoginResponseAdditionalTemplates interfaces Modify attributeStatementBuilder

Configuration

πŸ“… Schedule: Branch creation - "every weekend" in timezone Asia/Singapore, Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

β™» Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

πŸ”• Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Mend Renovate. View repository job log here.

vercel[bot] commented 1 year ago

The latest updates on your projects. Learn more about Vercel for Git β†—οΈŽ

Name Status Preview Comments Updated (UTC)
nusmods-export βœ… Ready (Inspect) Visit Preview πŸ’¬ Add feedback Aug 13, 2023 7:36pm
nusmods-website βœ… Ready (Inspect) Visit Preview πŸ’¬ Add feedback Aug 13, 2023 7:36pm
codecov[bot] commented 1 year ago

Codecov Report

Patch and project coverage have no change.

Comparison is base (8489723) 53.44% compared to head (4c7395d) 53.44%.

Additional details and impacted files ```diff @@ Coverage Diff @@ ## master #3599 +/- ## ======================================= Coverage 53.44% 53.44% ======================================= Files 271 271 Lines 5862 5862 Branches 1396 1396 ======================================= Hits 3133 3133 Misses 2729 2729 ```

:umbrella: View full report in Codecov by Sentry.
:loudspeaker: Have feedback on the report? Share it here.