-
-
Notifications
You must be signed in to change notification settings - Fork 186
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
⬆️ Update dependency happy-dom to v15.10.2 [SECURITY] #5412
Conversation
|
Open in Stackblitz • @fast-check/examples commit: |
👋 A preview of the new documentation is available at: http://672ba846b965b804c9a8c3cc--dubzzz-fast-check.netlify.app |
Codecov ReportAll modified and coverable lines are covered by tests ✅
Additional details and impacted files@@ Coverage Diff @@
## main #5412 +/- ##
=======================================
Coverage 95.19% 95.19%
=======================================
Files 235 235
Lines 10644 10644
Branches 2838 2839 +1
=======================================
Hits 10133 10133
Misses 511 511
Flags with carried forward coverage won't be shown. Click here to find out more. ☔ View full report in Codecov by Sentry. |
df41183
to
1688b73
Compare
👋 A preview of the new documentation is available at: http://672bd7d4de4ba84df2eb3849--dubzzz-fast-check.netlify.app |
This PR contains the following updates:
15.9.0
->15.10.2
GitHub Vulnerability Alerts
CVE-2024-51757
Impact
Consumers of the NPM package
happy-dom
Patches
The security vulnerability has been patched in v15.10.2
Workarounds
No easy workarounds to my knowledge
References
#1585
happy-dom allows for server side code to be executed by a <script> tag
CVE-2024-51757 / GHSA-96g7-g7g9-jxw8
More information
Details
Impact
Consumers of the NPM package
happy-dom
Patches
The security vulnerability has been patched in v15.10.2
Workarounds
No easy workarounds to my knowledge
References
#1585
Severity
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
References
This data is provided by OSV and the GitHub Advisory Database (CC-BY 4.0).
Release Notes
capricorn86/happy-dom (happy-dom)
v15.10.2
Compare Source
v15.10.1
Compare Source
v15.10.0
Compare Source
Configuration
📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.