tiny-care-terminal
tiny-care-terminal copied to clipboard
[Snyk] Upgrade gitlog from 4.0.0 to 4.0.8
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to upgrade gitlog from 4.0.0 to 4.0.8.
:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is 5 versions ahead of your current version.
- The recommended version was released 22 days ago, on 2023-05-16.
The recommended version fixes:
Severity | Issue | PriorityScore (*) | Exploit Maturity |
---|---|---|---|
![]() |
Command Injection SNYK-JS-GITLOG-1070779 |
696/1000 Why? Proof of Concept exploit, Has a fix available, CVSS 7.5 |
Proof of Concept |
(*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: gitlog
-
4.0.8 - 2023-05-16
π This release contains work from a new contributor!π Thank you, Vitali Lovich (@ vlovich), for all your work!
Release Notes
Make sure that errors throw Error instead of string (#92)
This release fixes how this library throws errors. Instead of throwing
string
it will throw an actual error. Implementations might need updating.
π Bug Fix- Make sure that errors throw Error instead of string #92 (@ vlovich)
- added tag field #76 (@ jigarzon)
β οΈ Pushed tomaster
- remove registry (@ hipstersmoothie)
- upgrade auto (@ hipstersmoothie)
- fix build (@ hipstersmoothie)
Authors: 3
- Andrew Lisowski (@ hipstersmoothie)
- Juan Ignacio GarzΓ³n (@ jigarzon)
- Vitali Lovich (@ vlovich)
-
4.0.4 - 2021-01-05
π Bug Fix- Fix build + lint #68 (@ hipstersmoothie)
- fix lint and run build/test/lint on PRs #66 (@ hipstersmoothie)
- Patch command injection vulnerability #65 (@ ron-checkmarx)
Authors: 2
- Andrew Lisowski (@ hipstersmoothie)
- Ron (@ ron-checkmarx)
-
4.0.3 - 2020-10-05
π Bug Fix- ensure large amount of renames doesn't break git log #63 (@ hipstersmoothie)
Authors: 1
- Andrew Lisowski (@ hipstersmoothie)
-
4.0.2 - 2020-10-02
π This release contains work from a new contributor!π Thank you, Chris NeJame (@ SalmonMode), for all your work!
π Bug Fix- Add support for getting commits of line range #61 (@ SalmonMode)
Authors: 1
- Chris NeJame (@ SalmonMode)
-
4.0.1 - 2020-10-01
π This release contains work from new contributors!π Thanks for all your work!
β€οΈ Asjid Kalam (@ Asjidkalam)β€οΈ Jamie Slome (@ JamieSlome)β€οΈ huntr-helper (@ huntr-helper)π Bug Fix- Revert "Security Fix for RCE on "gitlogplus" - huntr.dev" #62 (@ hipstersmoothie)
- Security Fix for RCE on "gitlogplus" - huntr.dev #59 (@ Asjidkalam @ JamieSlome @ huntr-helper)
Authors: 4
- Andrew Lisowski (@ hipstersmoothie)
- Asjid Kalam (@ Asjidkalam)
- huntr-helper (@ huntr-helper)
- Jamie Slome (@ JamieSlome)
-
4.0.0 - 2020-04-13
π₯ Breaking Change- update readme to fix cjs usage #53 (@ hipstersmoothie)
Authors: 1
- Andrew Lisowski (@ hipstersmoothie)
Commit messages
Package name: gitlog
- f121d24 Bump version to: 4.0.8 [skip ci]
- bbfe92c Update CHANGELOG.md [skip ci]
- b0ec4cb Bump version to: 4.0.7 [skip ci]
- 4697906 Update CHANGELOG.md [skip ci]
- c2825d9 remove registry
- 1ee97ff Bump version to: 4.0.6 [skip ci]
- 590e68c Update contributors [skip ci]
- b36b3ba Update CHANGELOG.md [skip ci]
- 1e9b6f4 upgrade auto
- cc867b7 Bump version to: 4.0.5 [skip ci]
- 3e01ca4 Update contributors [skip ci]
- b9f07fb Update CHANGELOG.md [skip ci]
- fe2e7d7 fix build
- 7ae02f8 Merge pull request #92 from vlovich/throw-error-instead-of-string
- ddcafc3 Make sure that errors throw Error instead of string
- 617373e Merge pull request #76 from jigarzon/master
- 029eac6 included tag in readme
- 4ae9266 added tag field
- 9c12a31 Bump version to: 4.0.4 [skip ci]
- c161191 Update contributors [skip ci]
- ba32713 Update CHANGELOG.md [skip ci]
- 572d9ca Merge pull request #68 from domharrington/fixes
- 165100a fix formatting and build
- ac30a13 fix build
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:
π§ View latest project report
π Adjust upgrade PR settings
π Ignore this dependency or unsubscribe from future upgrade PRs