pacexy / flow

Browser-based ePub Reader.
https://flowoss.com
GNU Affero General Public License v3.0
1.6k stars 112 forks source link

chore(deps): update dependency minimatch to 3.0.5 [security] - autoclosed #40

Closed renovate[bot] closed 1 year ago

renovate[bot] commented 1 year ago

Mend Renovate

This PR contains the following updates:

Package Change
minimatch 3.0.4 -> 3.0.5

GitHub Vulnerability Alerts

CVE-2022-3517

A vulnerability was found in the minimatch package. This flaw allows a Regular Expression Denial of Service (ReDoS) when calling the braceExpand function with specific arguments, resulting in a Denial of Service.


Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Mend Renovate. View repository job log here.

renovate[bot] commented 1 year ago

⚠ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

The artifact failure details are included below:

File name: pnpm-lock.yaml
installing v2 tool node v18.12.1
linking tool node v18.12.1
node: v18.12.1 /usr/local/bin/node
npm: 8.19.2  /usr/local/bin/npm
Installed v2 /usr/local/buildpack/tools/v2/node.sh in 7 seconds
skip cleanup, not a docker build: 7d1554eb1514
installing v2 tool pnpm v7.10.0

added 1 package in 3s
linking tool pnpm v7.10.0
7.10.0
Installed v2 /usr/local/buildpack/tools/v2/pnpm.sh in 4 seconds
skip cleanup, not a docker build: 7d1554eb1514
Scope: all 6 workspace projects

   ╭──────────────────────────────────────────────────────────────────╮
   │                                                                  │
   │                Update available! 7.10.0 → 7.17.0.                │
   │   Changelog: https://github.com/pnpm/pnpm/releases/tag/v7.17.0   │
   │                Run "pnpm add -g pnpm" to update.                 │
   │                                                                  │
   │      Follow @pnpmjs for updates: https://twitter.com/pnpmjs      │
   │                                                                  │
   ╰──────────────────────────────────────────────────────────────────╯

Progress: resolved 1, reused 0, downloaded 0, added 0
Progress: resolved 11, reused 0, downloaded 0, added 0
packages/epubjs                          |  WARN  deprecated @types/localforage@0.0.34
Progress: resolved 19, reused 0, downloaded 13, added 0
Progress: resolved 23, reused 0, downloaded 17, added 0
Progress: resolved 28, reused 0, downloaded 25, added 0
Progress: resolved 35, reused 0, downloaded 30, added 0
Progress: resolved 44, reused 0, downloaded 39, added 0
Progress: resolved 48, reused 0, downloaded 42, added 0
Progress: resolved 53, reused 0, downloaded 47, added 0
Progress: resolved 58, reused 0, downloaded 49, added 0
Progress: resolved 63, reused 0, downloaded 54, added 0
Progress: resolved 65, reused 0, downloaded 55, added 0
Progress: resolved 70, reused 0, downloaded 61, added 0
Progress: resolved 71, reused 0, downloaded 63, added 0
packages/epubjs                          |  WARN  deprecated core-js@3.21.1
Progress: resolved 80, reused 0, downloaded 73, added 0
Progress: resolved 87, reused 0, downloaded 82, added 0
Progress: resolved 92, reused 0, downloaded 90, added 0
Progress: resolved 98, reused 0, downloaded 95, added 0
Progress: resolved 100, reused 0, downloaded 96, added 0
Progress: resolved 103, reused 0, downloaded 98, added 0
Progress: resolved 105, reused 0, downloaded 101, added 0
Progress: resolved 107, reused 0, downloaded 103, added 0
Progress: resolved 109, reused 0, downloaded 105, added 0
Progress: resolved 110, reused 0, downloaded 109, added 0
Progress: resolved 111, reused 0, downloaded 110, added 0
Progress: resolved 111, reused 0, downloaded 111, added 0
Progress: resolved 112, reused 0, downloaded 111, added 0
Progress: resolved 112, reused 0, downloaded 112, added 0
Progress: resolved 113, reused 0, downloaded 112, added 0
Progress: resolved 114, reused 0, downloaded 113, added 0
Progress: resolved 147, reused 0, downloaded 124, added 0
Progress: resolved 202, reused 0, downloaded 173, added 0
Progress: resolved 236, reused 0, downloaded 214, added 0
Progress: resolved 256, reused 0, downloaded 234, added 0
Progress: resolved 287, reused 0, downloaded 269, added 0
Progress: resolved 308, reused 0, downloaded 288, added 0
packages/epubjs                          |  WARN  deprecated phantomjs-prebuilt@2.1.16
Progress: resolved 321, reused 0, downloaded 300, added 0
Progress: resolved 338, reused 0, downloaded 317, added 0
packages/epubjs                          |  WARN  deprecated chokidar@2.1.8
Progress: resolved 373, reused 0, downloaded 349, added 0
Progress: resolved 393, reused 0, downloaded 372, added 0
Progress: resolved 412, reused 0, downloaded 390, added 0
apps/reader                              |  WARN  deprecated crypto@1.0.1
Progress: resolved 422, reused 0, downloaded 399, added 0
Progress: resolved 428, reused 0, downloaded 406, added 0
Progress: resolved 438, reused 0, downloaded 419, added 0
Progress: resolved 449, reused 0, downloaded 428, added 0
Progress: resolved 470, reused 0, downloaded 449, added 0
Progress: resolved 485, reused 0, downloaded 463, added 0
Progress: resolved 508, reused 0, downloaded 489, added 0
Progress: resolved 525, reused 0, downloaded 504, added 0
Progress: resolved 543, reused 0, downloaded 521, added 0
Progress: resolved 555, reused 0, downloaded 542, added 0
packages/epubjs                          |  WARN  deprecated request@2.88.2
Progress: resolved 577, reused 0, downloaded 563, added 0
packages/epubjs                          |  WARN  deprecated uuid@3.4.0
Progress: resolved 615, reused 0, downloaded 607, added 0
Progress: resolved 643, reused 0, downloaded 631, added 0
Progress: resolved 670, reused 0, downloaded 657, added 0
Progress: resolved 688, reused 0, downloaded 676, added 0
Progress: resolved 718, reused 0, downloaded 706, added 0
Progress: resolved 729, reused 0, downloaded 720, added 0
Progress: resolved 746, reused 0, downloaded 733, added 0
Progress: resolved 779, reused 0, downloaded 764, added 0
Progress: resolved 804, reused 0, downloaded 780, added 0
Progress: resolved 817, reused 0, downloaded 784, added 0
Progress: resolved 845, reused 0, downloaded 791, added 0
Progress: resolved 871, reused 0, downloaded 806, added 0
Progress: resolved 907, reused 0, downloaded 845, added 0
Progress: resolved 935, reused 0, downloaded 872, added 0
Progress: resolved 970, reused 0, downloaded 910, added 0
Progress: resolved 995, reused 0, downloaded 945, added 0
Progress: resolved 1035, reused 0, downloaded 982, added 0
Progress: resolved 1065, reused 0, downloaded 1010, added 0
Progress: resolved 1093, reused 0, downloaded 1038, added 0
Progress: resolved 1114, reused 0, downloaded 1057, added 0
Progress: resolved 1144, reused 0, downloaded 1091, added 0
Progress: resolved 1171, reused 0, downloaded 1118, added 0
packages/epubjs                          |  WARN  deprecated debug@4.1.1
Progress: resolved 1199, reused 0, downloaded 1145, added 0
Progress: resolved 1237, reused 0, downloaded 1181, added 0
packages/epubjs                          |  WARN  deprecated querystring@0.2.0
Progress: resolved 1263, reused 0, downloaded 1211, added 0
packages/epubjs                          |  WARN  deprecated fsevents@1.2.13
Progress: resolved 1292, reused 0, downloaded 1236, added 0
Progress: resolved 1310, reused 0, downloaded 1256, added 0
Progress: resolved 1326, reused 0, downloaded 1275, added 0
Progress: resolved 1349, reused 0, downloaded 1296, added 0
.                                        |  WARN  deprecated smartwrap@1.2.5
Progress: resolved 1368, reused 0, downloaded 1315, added 0
Progress: resolved 1386, reused 0, downloaded 1333, added 0
Progress: resolved 1405, reused 0, downloaded 1355, added 0
Progress: resolved 1420, reused 0, downloaded 1366, added 0
Progress: resolved 1426, reused 0, downloaded 1372, added 0
Progress: resolved 1449, reused 0, downloaded 1396, added 0
packages/epubjs                          |  WARN  deprecated har-validator@5.1.5
Progress: resolved 1461, reused 0, downloaded 1409, added 0
Progress: resolved 1472, reused 0, downloaded 1420, added 0
Progress: resolved 1488, reused 0, downloaded 1437, added 0
Progress: resolved 1497, reused 0, downloaded 1445, added 0
Progress: resolved 1509, reused 0, downloaded 1456, added 0
Progress: resolved 1533, reused 0, downloaded 1476, added 0
Progress: resolved 1547, reused 0, downloaded 1493, added 0
Progress: resolved 1577, reused 0, downloaded 1520, added 0
packages/epubjs                          |  WARN  deprecated source-map-resolve@0.5.3
Progress: resolved 1595, reused 0, downloaded 1540, added 0
packages/epubjs                          |  WARN  deprecated resolve-url@0.2.1
packages/epubjs                          |  WARN  deprecated source-map-url@0.4.1
packages/epubjs                          |  WARN  deprecated urix@0.1.0
Progress: resolved 1618, reused 0, downloaded 1563, added 0
Progress: resolved 1652, reused 0, downloaded 1597, added 0
Progress: resolved 1678, reused 0, downloaded 1622, added 0
Progress: resolved 1703, reused 0, downloaded 1648, added 0
Progress: resolved 1737, reused 0, downloaded 1681, added 0
Progress: resolved 1764, reused 0, downloaded 1707, added 0
Progress: resolved 1787, reused 0, downloaded 1735, added 0
Progress: resolved 1809, reused 0, downloaded 1755, added 0
Progress: resolved 1841, reused 0, downloaded 1789, added 0
Progress: resolved 1884, reused 0, downloaded 1829, added 0
Progress: resolved 1917, reused 0, downloaded 1871, added 0
Progress: resolved 1921, reused 0, downloaded 1878, added 0
Progress: resolved 1921, reused 0, downloaded 1882, added 0
Progress: resolved 1921, reused 0, downloaded 1883, added 0
Progress: resolved 1921, reused 0, downloaded 1884, added 0
Progress: resolved 1921, reused 0, downloaded 1885, added 0
Progress: resolved 1921, reused 0, downloaded 1885, added 0, done
 ERR_PNPM_PEER_DEP_ISSUES  Unmet peer dependencies

.
├─┬ @typescript-eslint/eslint-plugin 5.19.0
│ └── ✕ missing peer @typescript-eslint/parser@^5.0.0
├─┬ eslint-config-next 12.1.5
│ └── ✕ missing peer next@>=10.2.0
└─┬ rollup-plugin-typescript2 0.31.2
  └─┬ @yarn-tool/resolve-package 1.0.46
    └─┬ upath2 3.1.12
      └── ✕ missing peer @types/node@"*"
Peer dependencies that should be installed:
  @types/node@"*"
  @typescript-eslint/parser@^5.0.0
  next@>=10.2.0

apps/reader
├─┬ next-pwa 5.6.0
│ ├─┬ babel-loader 8.2.5
│ │ ├── ✕ missing peer @babel/core@^7.0.0
│ │ └── ✕ missing peer webpack@>=2
│ ├─┬ clean-webpack-plugin 4.0.0
│ │ └── ✕ missing peer webpack@">=4.0.0 <6.0.0"
│ ├─┬ terser-webpack-plugin 5.3.6
│ │ └── ✕ missing peer webpack@^5.1.0
│ └─┬ workbox-webpack-plugin 6.5.4
│   └── ✕ missing peer webpack@"^4.4.0 || ^5.9.0"
├─┬ next 12.1.5
│ └─┬ styled-jsx 5.0.1
│   └── ✕ missing peer @babel/core@"*"
├─┬ @sentry/nextjs 7.12.1
│ ├── ✕ missing peer webpack@">= 4.0.0"
│ └─┬ jscodeshift 0.13.1
│   └── ✕ missing peer @babel/preset-env@^7.1.6
└─┬ dropbox 10.32.0
  └── ✕ missing peer @types/node-fetch@^2.5.7
Peer dependencies that should be installed:
  @babel/core@">=7.0.0 <8.0.0"
  @babel/preset-env@^7.1.6
  @types/node-fetch@^2.5.7
  webpack@">=5.9.0 <6.0.0"

apps/website
├─┬ @mdx-js/loader 2.1.1
│ └── ✕ missing peer webpack@>=4
├─┬ babel-loader 8.2.5
│ ├── ✕ missing peer webpack@>=2
│ └── ✕ missing peer @babel/core@^7.0.0
└─┬ next 12.1.5
  └─┬ styled-jsx 5.0.1
    └── ✕ missing peer @babel/core@"*"
Peer dependencies that should be installed:
  @babel/core@">=7.0.0 <8.0.0"
  webpack@>=4.0.0

packages/epubjs
└─┬ mocha-loader 5.1.5
  └── ✕ unmet peer mocha@"^5.0.0 || ^6.0.0 || ^7.0.0 || ^8.0.0": found 9.2.2

hint: If you want peer dependencies to be automatically installed, add "auto-install-peers=true" to an .npmrc file at the root of your project.
hint: If you don't want pnpm to fail on peer dependency issues, add "strict-peer-dependencies=false" to an .npmrc file at the root of your project.
vercel[bot] commented 1 year ago

The latest updates on your projects. Learn more about Vercel for Git ↗︎

Name Status Preview Updated
flow-reader ❌ Failed (Inspect) Nov 22, 2022 at 2:48PM (UTC)
flow-website ❌ Failed (Inspect) Nov 22, 2022 at 2:48PM (UTC)