<#1202 [Snyk] Security upgrade express from 4.18.2...
# pact-js-development
g
#1202 [Snyk] Security upgrade express from 4.18.2 to 4.19.2 Pull request opened by mefellows This PR was automatically created by Snyk using the credentials of a real user. Snyk has created this PR to fix one or more vulnerable packages in the
npm
dependencies of this project.
Changes included in this PR • Changes to the following files to upgrade the vulnerable dependencies to a fixed version: • package.json • package-lock.json Vulnerabilities that will be fixed With an upgrade: (*) Note that the real score may have changed since the PR was raised. Commit messages Package name: express The new version differs by 59 commits. • b28db2c 4.19.2 • 0b74695 Improved fix for open redirect allow list bypass • 4f0f6cc 4.19.1 • a003cfa Allow passing non-strings to res.location with new encoding handling checks fixes #5554 #5555 • a1fa90f fixed un-edited version in history.md for 4.19.0 • 11f2b1d build: fix build due to inconsistent supertest behavior in older versions • 084e365 4.19.0 • 0867302 Prevent open redirect allow list bypass due to encodeurl • 567c9c6 Add note on how to update docs for new release (#5541) • 69a4cf2 deps: cookie@0.6.0 • 4ee853e docs: loosen TC activity rules • 414854b docs: nominating @ wesleytodd to be project captian • 06c6b88 docs: update release date • 1b51eda 4.18.3 • b625132 build: pin Node 21.x to minor • e3eca80 build: pin Node 21.x to minor • 23b44b3 build: support Node.js 21.6.2 • b9fea12 build: support Node.js 21.x in appveyor • c259c34 build: support Node.js 21.x • fdeb1d3 build: support Node.js 20.x in appveyor • 734b281 build: support Node.js 20.x • 0e3ab6e examples: improve view count in cookie-sessions • 59af63a build: Node.js@18.19 • e720c5a docs: add documentation for benchmarks See the full diff Check the changes in this PR to ensure they won't cause issues with your project. * * * Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs. For more information: https://camo.githubusercontent.com/85b41f42127f51b8cb9b4c048694d35cf88629f4afdf9e3225892e2e00ae4e0f/68747470733a2f2f6170692e7365676d656e742e696f2f76312f706978656c2f747261636b3f646174613d65794a33636d6c305a55746c65534936496e4a79576d785a634564485932527954485a7362306c596430645563566734576b4652546e4e434f5545774969776959573576626e6c746233567a535751694f694a6b5a6a4933593251354d7930355a6a526a4c54526a5a6d4d74595464694e5330784e7a45325a54566a4f5755315a546b694c434a6c646d567564434936496c425349485a705a58646c5a434973496e42796233426c636e52705a584d694f6e736963484a4a5a434936496d526d4d6a646a5a446b7a4c546c6d4e474d744e474e6d597931684e3249314c5445334d545a6c4e574d355a54566c4f534a3966513d3d 🧐 View latest project report 🛠️ Adjust project settings 📚 Read more about Snyk's upgrade and patch logic * * * Learn how to fix vulnerabilities with free interactive lessons: 🦉 Open Redirect pact-foundation/pact-js GitHub Actions: build-and-test (16.x, macos-latest) ✅ 18 other checks have passed 18/19 successful checks