openziti / ziti-webhook-action

Github Action to post a Webhook over a Ziti network
Apache License 2.0
3 stars 0 forks source link

[Snyk] Upgrade @openziti/ziti-sdk-nodejs from 0.13.2 to 0.17.0 #26

Open mikegorman-nf opened 4 months ago

mikegorman-nf commented 4 months ago

This PR was automatically created by Snyk using the credentials of a real user.


![snyk-top-banner](https://github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)

Snyk has created this PR to upgrade @openziti/ziti-sdk-nodejs from 0.13.2 to 0.17.0.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is **7 versions** ahead of your current version. - The recommended version was released on **21 days ago**. #### Issues fixed by the recommended upgrade: | | Issue | Score | Exploit Maturity | :-------------------------:|:-------------------------|:-------------------------|:------------------------- ![high severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/h.png 'high severity') | Regular Expression Denial of Service (ReDoS)
[SNYK-JS-SEMVER-3247795](https://snyk.io/vuln/SNYK-JS-SEMVER-3247795) | **482** | Proof of Concept ![high severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/h.png 'high severity') | Regular Expression Denial of Service (ReDoS)
[SNYK-JS-SEMVER-3247795](https://snyk.io/vuln/SNYK-JS-SEMVER-3247795) | **482** | Proof of Concept ![medium severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png 'medium severity') | Uncontrolled Resource Consumption ('Resource Exhaustion')
[SNYK-JS-TAR-6476909](https://snyk.io/vuln/SNYK-JS-TAR-6476909) | **482** | Proof of Concept
Release notes
Package name: @openziti/ziti-sdk-nodejs
  • 0.17.0 - 2024-05-31
    No content.
  • 0.16.0 - 2024-04-11

    expose ziti_services_refresh() func (#81)

    * expose ziti_services_refresh() func

      </li>
      <li>
        <b>0.15.0</b> - <a href="https://github.com/openziti/ziti-sdk-nodejs/releases/tag/0.15.0">2024-03-25</a></br><ul>
  • zrok support
  • update embedded c-sdk to 0.36.9

  • 0.14.2 - 2023-11-09

    Add support for NodeJS v21

  •   <li>
        <b>0.14.1</b> - <a href="https://github.com/openziti/ziti-sdk-nodejs/releases/tag/0.14.1">2023-11-08</a></br><p>Correct some exceptions seen in the <code>0.14.0</code> release by making the <code>on_req</code> &amp; <code>on_resp</code> callbacks truly optional on <code>Ziti_http_request</code> API.</p>
      </li>
      <li>
        <b>0.14.0</b> - <a href="https://github.com/openziti/ziti-sdk-nodejs/releases/tag/0.14.0">2023-11-01</a></br><h2>What's Changed</h2>

    Major change in build and release process:

    • build is now using CMake (via CMake.js)
    • release build/publish process is triggered by creating a Github release

    changes

    New Contributors

    Full Changelog: 0.1.43...0.14.0

      </li>
      <li>
        <b>0.13.3</b> - 2022-10-07
      </li>
      <li>
        <b>0.13.2</b> - 2022-10-03
      </li>
    </ul>
    from <a href="https://github.com/openziti/ziti-sdk-nodejs/releases">@openziti/ziti-sdk-nodejs GitHub release notes</a>


    [!IMPORTANT]

    • Check the changes in this PR to ensure they won't cause issues with your project.
    • This PR was automatically created by Snyk using the credentials of a real user.
    • Max score is 1000. Note that the real score may have changed since the PR was raised.

    Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

    For more information: