Skip to content

Conversation

@mend-for-github-com
Copy link

@mend-for-github-com mend-for-github-com bot commented Feb 5, 2022

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
karma (source) 6.1.1 -> 6.3.16 age adoption passing confidence

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score CVE GitHub Issue
High 7.5 CVE-2022-21676 #1846
Medium 6.5 CVE-2022-0155 #1845
Medium 6.1 CVE-2022-0437 #1861
Medium 5.9 CVE-2022-0536 #1865
Medium 5.4 CVE-2021-23495 #1869
Medium 5.3 CVE-2021-32640 #1711

Release Notes

karma-runner/karma

v6.3.16

Compare Source

Bug Fixes
  • security: mitigate the "Open Redirect Vulnerability" (ff7edbb)

v6.3.15

Compare Source

Bug Fixes

v6.3.14

Compare Source

Bug Fixes
  • remove string template from client code (91d5acd)
  • warn when singleRun and autoWatch are false (69cfc76)
  • security: remove XSS vulnerability in returnUrl query param (839578c)

v6.3.13

Compare Source

Bug Fixes

v6.3.12

Compare Source

Bug Fixes
  • remove depreciation warning from log4js (41bed33)

v6.3.11

Compare Source

Bug Fixes
  • deps: pin colors package to 1.4.0 due to security vulnerability (a5219c5)

v6.3.10

Compare Source

Bug Fixes
  • logger: create parent folders if they are missing (0d24bd9), closes #​3734

v6.3.9

Compare Source

Bug Fixes

v6.3.8

Compare Source

Bug Fixes
  • reporter: warning if stack trace contains generated code invocation (4f23b14)

v6.3.7

Compare Source

Bug Fixes
  • middleware: replace %X_UA_COMPATIBLE% marker anywhere in the file (f1aeaec), closes #​3711

v6.3.6

Compare Source

Bug Fixes

v6.3.5

Compare Source

Bug Fixes
  • client: prevent socket.io from hanging due to mocked clocks (#​3695) (105da90)

v6.3.4

Compare Source

Bug Fixes

v6.3.3

Compare Source

Bug Fixes

v6.3.2

Compare Source

Bug Fixes

v6.3.1

Compare Source

Bug Fixes

v6.3.0

Compare Source

Features
  • support asynchronous config.set() call in karma.conf.js (#​3660) (4c9097a)

v6.2.0

Compare Source

Features
  • plugins: add support wildcard config for scoped package plugin (#​3659) (39831b1)

6.1.2 (2021-03-09)

Bug Fixes

6.1.1 (2021-02-12)

Bug Fixes

v6.1.2

Compare Source

Bug Fixes

  • If you want to rebase/retry this PR, click this checkbox.

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by WhiteSource label Feb 5, 2022
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/karma-6.x-lockfile branch from 43d64e9 to 56182f7 Compare February 6, 2022 16:34
@mend-for-github-com mend-for-github-com bot changed the title Update dependency karma to v6.1.2 Update dependency karma to v6.3.14 Feb 6, 2022
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/karma-6.x-lockfile branch 2 times, most recently from e324966 to c398c45 Compare February 23, 2022 12:48
@mend-for-github-com mend-for-github-com bot changed the title Update dependency karma to v6.3.14 Update dependency karma to v6.3.16 Mar 2, 2022
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/karma-6.x-lockfile branch from c398c45 to 08e87a9 Compare March 2, 2022 11:22
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/karma-6.x-lockfile branch from 08e87a9 to 0314b57 Compare March 3, 2022 01:20
@mend-for-github-com
Copy link
Author

mend-for-github-com bot commented Jun 22, 2022

Autoclosing Skipped

This PR has been flagged for autoclosing. However, it is being skipped due to the branch being already modified. Please close/delete it manually or report a bug if you think this is in error.

@mend-for-github-com mend-for-github-com bot changed the title Update dependency karma to v6.3.16 Update dependency karma to v6.3.16 - abandoned Jan 29, 2023
@mend-for-github-com
Copy link
Author

mend-for-github-com bot commented Mar 26, 2023

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.

You can manually request rebase by checking the rebase/retry box above.

⚠️ Warning: custom changes will be lost.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by WhiteSource

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant