[Snyk] Upgrade: , jssha, locutus, openpgp, papaparse, webextension-polyfill, passbolt-styleguide, validator #12
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade multiple dependencies.
👯♂ The following dependencies are linked and will therefore be updated together.ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
@xmldom/xmldom
from 0.7.9 to 0.8.10 | 15 versions ahead of your current version | a year ago
on 2023-07-19
jssha
from 3.2.0 to 3.3.1 | 2 versions ahead of your current version | a year ago
on 2023-08-04
locutus
from 2.0.16 to 2.0.32 | 4 versions ahead of your current version | 5 months ago
on 2024-04-06
openpgp
from 5.2.1 to 5.11.2 | 14 versions ahead of your current version | 3 months ago
on 2024-06-19
papaparse
from 5.3.2 to 5.4.1 | 2 versions ahead of your current version | a year ago
on 2023-03-23
webextension-polyfill
from 0.9.0 to 0.12.0 | 3 versions ahead of your current version | 4 months ago
on 2024-05-14
passbolt-styleguide
from 3.12.1 to 3.12.3 | 2 versions ahead of your current version | a year ago
on 2023-03-28
validator
from 13.7.0 to 13.12.0 | 3 versions ahead of your current version | 4 months ago
on 2024-05-09
Issues fixed by the recommended upgrade:
SNYK-JS-OPENPGP-5871276
Release notes
Package name: @xmldom/xmldom
Commits
Fixed
#514
/#499
Thank you, @ qtow, for your contributions
Commits
Fixed
#509
/#505
Thank you, @ cjbarth, for your contributions
Commits
Fixed
#514
/#499
Thank you, @ qtow, for your contributions
Commits
Fixed
#509
/#505
Thank you, @ cjbarth, for your contributions
Package name: jssha
.update()
method now returns a reference to the jsSHA object to allow for method chaining (#100, thanks @ ADTC!).Changelog for this release:
Package name: locutus
Release v2.0.32
Release v2.0.31
Release v2.0.30
Release v2.0.29
Package name: openpgp
What's Changed
openpgp.verify
: fix bug preventing verification of detached signatures over streamed data (#1762)Full Changelog: v5.11.1...v5.11.2
What's Changed
Full Changelog: v5.11.0...v5.11.1
What's Changed
crypto-refresh
: minor fixes and updates for X25519/Ed25519 (new format) (#1687)enums.publicKey.eddsaLegacy
, set to replaceenums.publicKey.eddsa
in v6enums.curve.ed25519Legacy
and.curve25519Legacy
, set to replaceenums.curve.ed25519
and.curve25519
in v6VerifyOptions
(#1644)Full Changelog: v5.10.2...v5.11.0
What's Changed
Full Changelog: v5.10.1...v5.10.2
Reject cleartext messages with extraneous data preceeding hash, addressing: GHSA-ch3c-v47x-4pgp.
crypto-refresh
: add support for new Ed25519/X25519 keys, signatures and messages (#1620)This release does not include any breaking changes.
Full Changelog: v5.9.0...v5.10.0
Package name: papaparse
Bugfix version bump
We are happy to annunce a new minor release of PapaParse.
This release includes the following change:
Handle parsing utf-8 bom encoded files (See #961)
Rename duplicate headers (See #956)
Improve iso-date regex (See #959)
Thanks to @ peteruithoven @ fortydegrees @ ChALkeR for contributing such features
Minor version bump
Package name: webextension-polyfill
Bug Fixes
See all changes for 0.12.0
Bug Fixes
See all changes for 0.11.0
Bug Fixes
See all changes for 0.10.0
Bug Fixes
See all changes for 0.9.0
Package name: passbolt-styleguide
v3.12.3
v3.12.2
v3.12.1
Package name: validator
What's Changed
New Features / Validators
isAbaRouting
@ songyuewFixes, New Locales and Enhancements
isLicensePlate
add Pakistanien-PK
locale @ anasshakilisPort
fix invalid leading zeros @ anasshakilisTaxID
added Argentinaes-AR
locale @ estefrareisDate
timezone offset fix @ tomaspanekisPassportNumber
addedZA
locale @ GMorris-professionalisMobilePhone
:en-MW
locale @ SimranSiddiquiam-AM
locale @ AlexKrupkoisPostalAddress
fixNL
locale @ RobinvanderVlietisISO4217
addSLE
currency @ urgisStrongPassword
fix symbolRegex to include\
@ nandavikasisVAT
fixedKZ
locale @ MatthieuLemoineisAlpha
,isAlphanumeric
addedeo
locale @ RobinvanderVlietisIBAN
add AlgeriaDZ
locale @ thibault-lrisVAT
improveAU
locale @ matthewberrymanisUUID
add support for v7 @ rusconisTaxID
add Ukraineuk-UA
locale @ arttigerisDate
disallow hiphen before year @ Sumit-tech-joshiNew Contributors
Full Changelog: 13.11.0...13.12.0
New Features / Validators
isFreightContainerID
: for shipping containers IDs @ songyuewisMailtoURI
@ uksarkarFixes, New Locales and Enhancements
isIBAN
addMA
locale @ lroudgeisCreditCard
refactor @ pano9000isLocale
add support for more language tags @ kwahomeisVAT
forCU
@ jimmyorpheusisJWT
@ Prathamesh061IsFQDN
test enhancements @ aalekhpatel07isAlpha
,isAlphanumeric
forkk-KZ
@ BekStar7isEmail
supportallow_underscores
@ guspowerisDate
enhance Date declaration compatibility across multiple environments @ CiprianSisIBAN
add white and blacklist options to the isIBAN validator @ edilsonisEmail
do not allow non-breaking space in user part @ jeremy21212121isMobilePhone
:so-SO
@ ohersifr-CF
@ cheboies-CU
@ klaframboisepl-PL
@ czerwony03fr-WF
@ aidos42ar-SD
@ HussienmaNew Contributors 🎉