Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

An in-range update of helmet is breaking the build 🚨 #438

Closed
greenkeeper bot opened this issue May 5, 2019 · 0 comments
Closed

An in-range update of helmet is breaking the build 🚨 #438

greenkeeper bot opened this issue May 5, 2019 · 0 comments

Comments

@greenkeeper
Copy link
Contributor

greenkeeper bot commented May 5, 2019

The dependency helmet was updated from 3.17.0 to 3.18.0.

🚨 View failing branch.

This version is covered by your current version range and after updating it in your project the build failed.

helmet is a direct dependency of this project, and it is very likely causing it to break. If other packages depend on yours, this update is probably also breaking those in turn.

Status Details
  • Better Code Hub: ✅ Better Code Hub approves this code (Details).
  • ci/circleci: Your tests passed on CircleCI! (Details).
  • codecov/project: No report found to compare against (Details).
  • codecov/patch: Coverage not affected. (Details).
  • WhiteSource Security Check: The Security Check found 5 vulnerabilities.

Severity CVSS Score CVE GitHub Issue
High 8.0 WS-2019-0063 None
High 8.0 WS-2019-0064 None
Medium 5.0 WS-2019-0019 #136
Medium 5.0 WS-2019-0032 None
Medium 5.0 WS-2019-0047 None

Commits

The new version differs by 3 commits.

  • 238d3a4 3.18.0
  • 65a5d23 Update expect-ct, feature-policy, frameguard, and nocache
  • 6ac5e84 Minor: remove line breaks from CHANGELOG markdown

See the full diff

FAQ and help

There is a collection of frequently asked questions. If those don’t help, you can always ask the humans behind Greenkeeper.


Your Greenkeeper Bot 🌴

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant