Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump semver for CVE #894

Merged
merged 1 commit into from
Jul 21, 2023
Merged

Bump semver for CVE #894

merged 1 commit into from
Jul 21, 2023

Conversation

lucacome
Copy link
Member

Proposed changes

Bumps semver to address a CVE in 6.3.0 and other outdated dependencies.

GHSA-c2qf-rxjj-qqgw

Checklist

Before creating a PR, run through this checklist and mark each as complete.

  • I have read the CONTRIBUTING doc
  • I have added tests that prove my fix is effective or that my feature works
  • I have checked that all unit tests pass after adding my changes
  • I have updated necessary documentation
  • I have rebased my branch onto main
  • I will ensure my PR is targeting the main branch and pulling from my branch from my own fork

Bumps semver to adress a CVE in 6.3.0 and other outdated dependencies.
@lucacome lucacome self-assigned this Jul 21, 2023
@lucacome lucacome requested a review from a team as a code owner July 21, 2023 18:19
@github-actions github-actions bot added the dependencies Pull requests that update a dependency file label Jul 21, 2023
@lucacome lucacome merged commit 07587a0 into nginxinc:main Jul 21, 2023
16 checks passed
@lucacome lucacome deleted the deps/semver branch July 21, 2023 18:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
Archived in project
Development

Successfully merging this pull request may close these issues.

3 participants