server icon indicating copy to clipboard operation
server copied to clipboard

[deps] Vault: Update AngleSharp to 1.1.2

Open renovate[bot] opened this issue 1 year ago • 2 comments

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
AngleSharp (source) 1.0.7 -> 1.1.2 age adoption passing confidence

Release Notes

AngleSharp/AngleSharp (AngleSharp)

v1.1.2

Released on Friday, March 8 2024.

  • Fixed exception when providing wrong response (#​1181)
  • Fixed handling of various inputs leading to timeouts (#​1180)

v1.1.1

Released on Friday, March 1 2024.

  • Fixed ISourceReference not using HtmlToken underneath
  • Fixed handling of replacement characters in escaped script blocks (#​1174)
  • Fixed handling of empty template element in SVG foreign mode (#​1176)
  • Fixed handling of <template> in foreign elements (#​1179)
  • Improved pre-release version to follow semver (#​1171) @​georg-jung
  • Improved NuGet package with link to repository (#​1168) @​thompson-tomo
  • Added PostAsMultipart helper for multipart/form-data to DocumentRequest (#​1173)

v1.1.0

Compare Source

Released on Thursday, January 18 2024.

  • Fixed priority calculations for selector lists (#​1161)
  • Fixed :where and :is selectors using forgiving lists
  • Added option for read only DOM (#​1154) @​dv00d00
  • Added more optimizations to reduce allocation rate (#​1159) @​dv00d00
  • Added support for nested selectors (&)

Configuration

📅 Schedule: Branch creation - "every 2nd week starting on the 2 week of the year before 4am on Monday" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • [ ] If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

renovate[bot] avatar Aug 19 '24 00:08 renovate[bot]

Internal tracking:

  • ID: PM-11059
  • Link: https://bitwarden.atlassian.net/browse/PM-11059

bitwarden-bot avatar Aug 19 '24 00:08 bitwarden-bot

Codecov Report

All modified and coverable lines are covered by tests :white_check_mark:

Project coverage is 41.57%. Comparing base (a1e4e47) to head (860fcf4). Report is 2 commits behind head on main.

Additional details and impacted files
@@           Coverage Diff           @@
##             main    #4662   +/-   ##
=======================================
  Coverage   41.57%   41.57%           
=======================================
  Files        1357     1357           
  Lines       64056    64056           
  Branches     5891     5891           
=======================================
  Hits        26631    26631           
  Misses      36208    36208           
  Partials     1217     1217           

:umbrella: View full report in Codecov by Sentry.
:loudspeaker: Have feedback on the report? Share it here.

codecov[bot] avatar Aug 19 '24 07:08 codecov[bot]

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.

You can manually request rebase by checking the rebase/retry box above.

⚠️ Warning: custom changes will be lost.

renovate[bot] avatar Oct 07 '24 09:10 renovate[bot]

Logo Checkmarx One – Scan Summary & Details4bf47ebc-5284-4ce7-b5de-96a318760159

New Issues

Severity Issue Source File / Package Checkmarx Insight
MEDIUM CSRF /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
MEDIUM CSRF /src/Api/Billing/Controllers/OrganizationsController.cs: 105 Attack Vector
MEDIUM CSRF /src/Api/Billing/Controllers/OrganizationsController.cs: 49 Attack Vector
MEDIUM CSRF /src/Api/SecretsManager/Controllers/SecretsTrashController.cs: 32 Attack Vector
MEDIUM CSRF /src/Api/SecretsManager/Controllers/SecretsController.cs: 128 Attack Vector
MEDIUM CSRF /src/Api/SecretsManager/Controllers/SecretsController.cs: 79 Attack Vector
MEDIUM Privacy_Violation /src/Core/Models/Data/UserWithCalculatedPremium.cs: 26 Attack Vector
MEDIUM Privacy_Violation /src/Core/Models/Data/UserWithCalculatedPremium.cs: 18 Attack Vector
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 1293 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Api/AdminConsole/Controllers/ProvidersController.cs: 72 Attack Vector
LOW Log_Forging /src/Api/AdminConsole/Controllers/ProvidersController.cs: 72 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/StripeController.cs: 164 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/StripeController.cs: 164 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Identity/Billing/Controller/AccountsController.cs: 23 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/StripeController.cs: 164 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/StripeController.cs: 164 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Api/Billing/Controllers/ProviderBillingController.cs: 52 Attack Vector

Fixed Issues

Severity Issue Source File / Package
MEDIUM CSRF /src/Api/Controllers/CollectionsController.cs: 247
MEDIUM CSRF /src/Api/Auth/Controllers/TwoFactorController.cs: 118
MEDIUM CSRF /src/Api/Auth/Controllers/AccountsController.cs: 366
MEDIUM CSRF /src/Billing/Controllers/StripeController.cs: 176
MEDIUM CSRF /src/Api/AdminConsole/Controllers/GroupsController.cs: 238
MEDIUM CSRF /src/Api/Controllers/CollectionsController.cs: 247
MEDIUM CSRF /src/Api/AdminConsole/Public/Controllers/OrganizationController.cs: 43
MEDIUM CSRF /src/Api/AdminConsole/Public/Controllers/OrganizationController.cs: 43
MEDIUM CSRF /src/Api/AdminConsole/Public/Controllers/OrganizationController.cs: 43
MEDIUM Privacy_Violation /src/Api/Vault/Models/Request/CipherRequestModel.cs: 198
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 860
MEDIUM Privacy_Violation /src/Core/Auth/UserFeatures/TdeOffboardingPassword/TdeOffboardingPasswordCommand.cs: 81
MEDIUM Privacy_Violation /src/Api/Auth/Controllers/TwoFactorController.cs: 380
MEDIUM Privacy_Violation /src/Api/Vault/Models/Request/CipherRequestModel.cs: 198
MEDIUM Privacy_Violation /src/Core/Auth/UserFeatures/UserMasterPassword/SetInitialMasterPasswordCommand.cs: 59
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 773
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 522
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 744
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 577
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 771
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 718
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 575
LOW Log_Forging /src/Notifications/Controllers/SendController.cs: 27
LOW Log_Forging /bitwarden_license/src/Scim/Controllers/v2/UsersController.cs: 114
LOW Log_Forging /bitwarden_license/src/Scim/Controllers/v2/GroupsController.cs: 98
LOW Log_Forging /src/Api/AdminConsole/Controllers/OrganizationUsersController.cs: 456
LOW Log_Forging /src/Notifications/Controllers/SendController.cs: 27
LOW Log_Forging /src/Api/Vault/Controllers/CiphersController.cs: 574
LOW Log_Forging /src/Api/Vault/Controllers/CiphersController.cs: 553
LOW Log_Forging /src/Api/Auth/Controllers/TwoFactorController.cs: 349
LOW Log_Forging /src/Api/Vault/Controllers/CiphersController.cs: 530
LOW Log_Forging /src/Api/Vault/Controllers/CiphersController.cs: 603
LOW Log_Forging /bitwarden_license/src/Scim/Controllers/v2/GroupsController.cs: 98
LOW Log_Forging /bitwarden_license/src/Scim/Controllers/v2/UsersController.cs: 114

github-actions[bot] avatar Oct 07 '24 10:10 github-actions[bot]