Skip to content

chore(deps): update dependency sockjs to 0.3.20 [security] - #264

Open
renovate[bot] wants to merge 1 commit into
masterfrom
renovate/npm-sockjs-vulnerability
Open

chore(deps): update dependency sockjs to 0.3.20 [security]#264
renovate[bot] wants to merge 1 commit into
masterfrom
renovate/npm-sockjs-vulnerability

Conversation

@renovate

@renovate renovate Bot commented Apr 26, 2021

Copy link
Copy Markdown

WhiteSource Renovate

This PR contains the following updates:

Package Change
sockjs 0.3.19 -> 0.3.20

GitHub Vulnerability Alerts

CVE-2020-7693

Incorrect handling of Upgrade header with the value websocket leads in crashing of containers hosting sockjs apps. This affects the package sockjs before 0.3.20.


Configuration

📅 Schedule: "" in timezone UTC.

🚦 Automerge: Disabled due to failing status checks.

♻️ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box.

This PR has been generated by WhiteSource Renovate. View repository job log here.

@renovate renovate Bot changed the title chore(deps): update dependency sockjs to 0.3.20 [security] Apr 27, 2021
@renovate renovate Bot closed this Apr 27, 2021
@renovate
renovate Bot deleted the renovate/npm-sockjs-vulnerability branch April 27, 2021 21:05
@renovate renovate Bot changed the title chore(deps): update dependency sockjs to 0.3.20 [security] - autoclosed Apr 29, 2021
@renovate renovate Bot reopened this Apr 29, 2021
@renovate
renovate Bot restored the renovate/npm-sockjs-vulnerability branch April 29, 2021 18:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

1 participant