Skip to content
This repository has been archived by the owner on Apr 29, 2021. It is now read-only.

[Snyk] Upgrade helmet from 3.12.1 to 3.23.3 #2

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

anowar-cloudknox
Copy link

Snyk has created this PR to upgrade helmet from 3.12.1 to 3.23.3.

merge advice
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 21 versions ahead of your current version.
  • The recommended version was released 8 months ago, on 2020-06-26.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Configuration Override
SNYK-JS-HELMETCSP-469436
539/1000
Why? Has a fix available, CVSS 6.5
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: helmet
  • 3.23.3 - 2020-06-26

    3.23.3

  • 3.23.2 - 2020-06-23

    3.23.2

  • 3.23.1 - 2020-06-16

    3.23.1

  • 3.23.0 - 2020-06-12

    3.23.0

  • 3.22.1 - 2020-06-10

    3.22.1

  • 3.22.0 - 2020-03-24

    3.22.0

  • 3.21.3 - 2020-02-24

    3.21.3

  • 3.21.2 - 2019-10-21

    3.21.2

  • 3.21.1 - 2019-09-20

    3.21.1

  • 3.21.0 - 2019-09-04

    3.21.0

  • 3.20.1 - 2019-08-28
  • 3.20.0 - 2019-07-24
  • 3.19.0 - 2019-07-17
  • 3.18.0 - 2019-05-05
  • 3.17.0 - 2019-05-03
  • 3.16.0 - 2019-03-10
  • 3.15.1 - 2019-02-10
  • 3.15.0 - 2018-11-07
  • 3.14.0 - 2018-10-09
  • 3.13.0 - 2018-07-22
  • 3.12.2 - 2018-07-20
  • 3.12.1 - 2018-05-16
from helmet GitHub release notes
Commit messages
Package name: helmet
  • 3edd5e1 3.23.3
  • 8662052 Include expect-ct and x-frame-options in npm package
  • 5c4a499 Update changelog for 3.23.3 release
  • 35b3e6d Proofread of SECURITY.md
  • 04d446c Update Jest and @ types/jest to their latest versions
  • 7906601 Import X-Frame-Options (frameguard) middleware
  • 837765d Minor formatting changes in license
  • d03c555 Import Expect-CT (expect-ct) middleware
  • 16243e6 3.23.2
  • 223edeb Update changelog for 3.23.2 release
  • 124e95e X-DNS-Prefetch-Control: remove redundant contributors from package
  • 0510abf Update outdated devDependencies
  • e933c28 Import X-DNS-Prefetch-Control (dns-prefetch-control) middleware
  • b120eb4 3.23.1
  • 978b402 Update changelog for 3.23.1 release
  • 1b7dc4b ienoopen@1.1.1
  • 13b496f Import X-Download-Options (ienoopen) middleware
  • 53a0299 Remove Feature-Policy middleware from documentation, as it is deprecated
  • d93cdb6 3.23.0
  • e40318d Update changelog for 3.23.0 release
  • e5d4aa1 Deprecate Feature-Policy
  • da4b623 Update code of conduct
  • 852abfc Jest should ignore files in /dist/
  • 39a8292 Add `prepublishOnly` script

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
2 participants