toondaey / nestjs-pdf

Nest js pdf generator
MIT License
83 stars 37 forks source link

chore(deps): update dependency pug to v3.0.2 - autoclosed #111

Closed renovate[bot] closed 3 years ago

renovate[bot] commented 3 years ago

WhiteSource Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
pug (source) 3.0.0 -> 3.0.2 age adoption passing confidence

Release Notes

pugjs/pug ### [`v3.0.2`](https://togithub.com/pugjs/pug/releases/pug@3.0.2) [Compare Source](https://togithub.com/pugjs/pug/compare/pug@3.0.1...pug@3.0.2) #### Bug Fixes - Serialize Buffers to strings when storing sources for use with compileDebug: true ([#​3269](https://togithub.com/pugjs/pug/issues/3269)) ### [`v3.0.1`](https://togithub.com/pugjs/pug/releases/pug@3.0.1) [Compare Source](https://togithub.com/pugjs/pug/compare/pug@3.0.0...pug@3.0.1) #### Bug Fixes - Sanitise the `pretty` option ([#​3314](https://togithub.com/pugjs/pug/issues/3314)) If a malicious attacker could control the `pretty` option, it was possible for them to achieve remote code execution on the server rendering the template. All pug users should upgrade as soon as possible, see [#​3312](https://togithub.com/pugjs/pug/issues/3312) for more details.

Configuration

📅 Schedule: "every weekday" (UTC).

🚦 Automerge: Disabled due to failing status checks.

♻️ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by WhiteSource Renovate. View repository job log here.